similar to: Routing setup with pfSense package

Displaying 20 results from an estimated 5000 matches similar to: "Routing setup with pfSense package"

2018 Aug 29
3
Routing setup with pfSense package
WOW! OK! The light bulb above my head just came on. I added the script to the Subnet Up Script section, and now all the routes I need have been added in to the table for me. I did have to modify the line a little since I'm using pfSense (FreeBSD). I changed it to... route add "$SUBNET" -iface "$INTERFACE" ...I also used... route del "$SUBNET" -iface
2018 Aug 29
2
Routing setup with pfSense package
I just found that the VPN Netmask option in the pfSense tinc GUI is related to the "netmask" option in /usr/local/etc/tinc/tinc-up ifconfig $INTERFACE 192.168.117.1 netmask 255.255.0.0 What exactly is this line doing? Is it assigning the address that my lan adapter has to the tunnel interface as well? I'm interested in using tinc in production, so I'm trying to learn as much
2018 Aug 28
0
Routing setup with pfSense package
Hello Corey, Am Tue, 28 Aug 2018 16:23:02 -0400 schrieb Corey Boyle <coreybrett at gmail.com>: > See this thread for more details... > > https://forum.netgate.com/topic/134218/tinc-initial-setup I think, the crucial misunderstanding in the above thread is the following: > However, the routeing table on each router does not reflect this information > and only has a
2018 Sep 01
1
multi-wan / multi-path
Is tinc able to use multiple gateways for outgoing connections? Or is it restricted to the default gateway? In other words... If I have a branch office with a cable connection and a dsl connection, could it use both in an active/hot-standby fashion?
2018 Aug 29
0
Routing setup with pfSense package
Hello Corey, Am Wed, 29 Aug 2018 16:33:30 -0400 schrieb Corey Boyle <coreybrett at gmail.com>: > I just found that the VPN Netmask option in the pfSense tinc GUI is > related to the "netmask" option in /usr/local/etc/tinc/tinc-up > > ifconfig $INTERFACE 192.168.117.1 netmask 255.255.0.0 > > What exactly is this line doing? Is it assigning the address that my
2018 Sep 01
2
keeping someone out / daemon keys
Interesting! So if I have 5 nodes; A B C D E F... I can just configure each node with A's public key (and A with theirs), and that will allow all of them to communicate directly?
2018 Sep 01
1
keeping someone out / daemon keys
Thanks for all your help. I've been reading thru the tinc manual, but was having a hard time finding an explanation of the security/trust model. I'm interested in using tinc in a business production environment, so I just want to make sure I have it secured properly. Would spokes loose their connection we each other if the hub went offline? Also, what's the minimum required exchange
2018 Sep 01
2
keeping someone out / daemon keys
Is it possible for daemonA and daemonB to communicate without having exchanged public keys? If daemonA and daemonB have exchanged keys, and daemonA and daemonC have exchanged keys, can daemonA and daemonC communicate with each other? To ask it another way, how do I prevent an unauthorized daemon from joining the VPN?
2018 Aug 29
0
Routing setup with pfSense package
On Wed, Aug 29, 2018 at 12:46 PM, Corey Boyle <coreybrett at gmail.com> wrote: > Do you know if the "VPN Netmask" option is specific to the pfSense > implementation, or does it correspond to a tinc config item? In Tinc, I believe each host has it's own Subnet, and that each such Subnet has whatever netmask it has. I believe there is no "VPN(-wide) Netmask" in
2019 Jun 20
2
pfSense DHCP integration with Samba AD DDNS
Hi all, Has anybody got it working? My struggle is briefly described here but the pfSense community is dead silent: https://forum.netgate.com/topic/138881/dhcp-dyndns-intergration-with-samba-dns Regards, Adam
2020 Mar 15
2
Q: Samba AD, Pfsense, Windows 10, vpn
> Am 15.03.2020 um 08:21 schrieb S?rgio Basto via samba <samba at lists.samba.org>: > > ?On Sat, 2020-03-14 at 07:43 -0700, gabben via samba wrote: >> Your pfSense firewall has OpenVPN built into it already, and you can >> point pfSense authentication back to your samba AD. We support over >> 400 users in this model. The configuration file for OpenVPN is common
2020 Sep 15
5
PFsense via Samba Authentication Server -> ERROR! ldap_get_groups() could not bind
I've been trying to setup OPENVPN on a Netgate appliance running pfsense. Initially, the authentication server I created appears to function. A connection is made, the "bind" is completed and the organizational units are fetched from the server and returned. A few minutes later - without making any changes - the same test returns the following errors: php-fpm 67757
2019 Jun 20
2
pfSense DHCP integration with Samba AD DDNS
That's helpful. About half of our DHCP clients are Unixes. Maybe I'll find a way to make pfSense perform a Kerberos handshake with Samba for the sake of updating DNS. If not, I'll just install isc-dhcp-server on the Debian container running Samba AD. On 20/06/19 13:25, Rowland penny via samba wrote: > The problem is that Windows machines can update their own records in > AD,
2020 Mar 14
4
Q: Samba AD, Pfsense, Windows 10, vpn
Your pfSense firewall has OpenVPN built into it already, and you can point pfSense authentication back to your samba AD. We support over 400 users in this model. The configuration file for OpenVPN is common to all users, and they authenticate with their AD credentials. > On Mar 14, 2020, at 7:21 AM, Michael Howard via samba <samba at lists.samba.org> wrote: > > On 14/03/2020
2018 Oct 02
4
Per host key authentication
*Problem I want to solve:* We have 3 sites: A, B, and C. Network admins should have access to all three. (this works as-is). Desktop support should only have access to their site. (Tech A to site A, Tech B to site B, Tech C to site C). *How I think I can do it:* Working with keys? Admin's public key will be on all the client machines, and thus, the client machines will always
2015 Jun 29
2
Using a CentOS 6 Machine as a gateway/router/home server
On 6/28/2015 11:11 PM, Sorin Srbu wrote: > May I ask why you don't just use a made-for-the-purpose-distro like > Smoothwall to do this? indeed, I use pfSense, running on a APU1D4 [1] router board as my firewall, and a separate home server on a HP Microserver [2]. IMHO, keeping the firewall function completely separate simplifies security. that router board can handle 300 Mbit/sec of
2017 Oct 24
3
Tinc on PFSENSE box can join mesh, share keys, connect out, but doesn't reply to pings or connections
I've tried IRC in #tinc and #pfsense on freenode for this, not luck yet, figured I'd try the mailing list. A summary of my problem is here: https://www.reddit.com/r/PFSENSE/comments/789xus/tinc_vpn_can_do_everything_but_be_accessed/ If there are any details I can provide that would help I'll be more than happy to. I'm hoping it will be something obvious that someone can say
2020 Oct 31
1
APC Back-UPS 1500 RS - looking for help with strange behaviour
Hi All, hoping someone might have some insights to what is going wrong with my NUT setup and my APC Back - UPS RS 1500 (specifically a BR1500GI) using the usbhid driver. https://download.schneider-electric.com/files?p_File_Name=AHUG-9JU4RH_R0_EN.pdf&p_Doc_Ref=SPD_AHUG-9JU4RH_EN&p_enDocType=User%20guide Main issue: NUT successfully shuts down my server when it goes on battery but when
2018 May 26
3
Q: Samba4 AD DC & small office file sharing
In lieu of virtualization, I wouldn't be opposed to some small, inexpensive appliance type device (sort of like the Netgate firewalls that run pfsense). I came across the MintBox Mini Pro (http://www.fit-pc.com/web/products/mintbox/mintbox-mini-pro/) Any experience or alternate suggestions? On Fri, May 25, 2018 2:27 pm, Robert Marcano via samba wrote: > On 05/25/2018 12:54 PM, Marco
2020 Mar 16
0
Q: Samba AD, Pfsense, Windows 10, vpn
Am 15.03.20 um 10:46 schrieb Christian Naumer via samba: > > >> Am 15.03.2020 um 08:21 schrieb S?rgio Basto via samba <samba at lists.samba.org>: >> >> ?On Sat, 2020-03-14 at 07:43 -0700, gabben via samba wrote: >>> Your pfSense firewall has OpenVPN built into it already, and you can >>> point pfSense authentication back to your samba AD. We