Welcome, Guest. Please login or register.
Did you miss your activation email?
+  pfSense Forum
Username:
Password:
 
 

  Show Posts
Pages: [1] 2 3 4 5 ... 67
1  pfSense English Support / Packages / Re: squid 3.3.4 package for pfsense with ssl filtering on: May 13, 2013, 03:42:24 pm
it installs now but its missing a shared object.. I haven't had a chance to to see if its on the box and just needs to be linked.


Code:
php: : The command '/usr/pbi/squid-i386/sbin/squid -f /usr/pbi/squid-i386/etc/squid/squid.conf' returned exit code '1', the output was '/libexec/ld-elf.so.1: Shared object "libgssapi.so.10" not found, required by "squid"'
2  pfSense English Support / Packages / Re: squid 3.3.4 package for pfsense with ssl filtering on: May 13, 2013, 01:36:52 pm
just tried to install it and it failed :-(
2.1-BETA1 (i386) built on Fri May 10 16:28:23 EDT 2013

Code:
Beginning package installation for squid3-dev .
Downloading package configuration file... done.
Saving updated package information... done.
Downloading squid3-dev and its dependencies...
Checking for package installation...
 Downloading http://files.pfsense.org/packages/8/All/squid-3.3.4-i386.pbi ...  (extracting)
Loading package configuration... done.
Configuring package components...
Additional files... sqpmon.sh failed.
Backing up libraries...
Removing package...
Starting package deletion for squid-3.3.4-i386...
3  pfSense English Support / Packages / Re: "monit" package for pfSense part 2 on: May 07, 2013, 12:03:39 pm
I've been using monit for a few years now to restart services that have failed. Works great!
4  pfSense English Support / Packages / Re: Snort 2.9.4.1 pkg v. 2.5.5 Issue(s) on: April 15, 2013, 07:53:31 pm

Anyone else having this issue? IPs are removed from the block list after 5 minutes when the cron job is run. I've check the snort2c table and they aren't there anymore. Any ideas?


I have not timed mine, but I think the blocks are lasting for an hour.  That's what I have mine set for.  How is the time on your firewall synchronized?  Does it have a NTP source to sync with, and is it holding the correct time?

Bill

It syncs with a local NTP server in my time zone and if its not available then it syncs with couple from pool.ntp.org. The time is holding as far as I can tell...
5  pfSense English Support / Packages / Re: Snort 2.9.4.1 pkg v. 2.5.5 Issue(s) on: April 15, 2013, 05:59:08 pm
I'm using Snort Basic VRT Rules, Snort GPLv2, and Emerging Threats rule sets.  I've also noticed that auto blocking is removing IPs after 5 minutes instead of an hour. The cron job looks like this

Are you still seeing this Cino?  I'm not getting this at all using the same rulesets, same cron job.

Anyone else having this issue? IPs are removed from the block list after 5 minutes when the cron job is run. I've check the snort2c table and they aren't there anymore. Any ideas?
6  pfSense English Support / Packages / Re: Snort 2.9.4.1 pkg v. 2.5.5 Issue(s) on: April 13, 2013, 09:07:53 am
i spoke too soon, its still removing IPs from the block list... I doesn't if you manually run the cron job
7  pfSense English Support / Packages / Re: Snort 2.9.4.1 pkg v. 2.5.5 Issue(s) on: April 12, 2013, 10:33:53 am
I'm using Snort Basic VRT Rules, Snort GPLv2, and Emerging Threats rule sets.  I've also noticed that auto blocking is removing IPs after 5 minutes instead of an hour. The cron job looks like this

Are you still seeing this Cino?  I'm not getting this at all using the same rulesets, same cron job.

I did a full re-install of the package this morning.. deleted everything before hand... installed.... then i went each interface main settings page and clicked save... when to global settings... changed remove blocked ip to never, saved; then changed it back to 1 hour, saved.

so far so good.... i've ran the cron job from cmd and its not removing the ip... also, all my interfaces started without copying the classification.config file over

i should had done this the other night, but when snort goes thru changes and if you re-using your old settings... you need to re-save the settings for some reason (i think even a little xml change throws off the settings) Now keep in mind, my settings were first created a couple of years ago... but have gone thru many many tweaks while the pfsense snort package has been maturing.


great work btw!! keep it up....
8  pfSense English Support / Packages / Re: pfBlocker on: April 12, 2013, 09:59:56 am
Code:
Crash report begins.  Anonymous machine information:

amd64
8.3-RELEASE-p7
FreeBSD 8.3-RELEASE-p7 #1: Thu Apr  4 13:16:33 EDT 2013     root@snapshots-8_3-amd64.builders.pfsense.org:/usr/obj.pfSense/usr/pfSensesrc/src/sys/pfSense_SMP.8

Crash report details:

PHP Errors:
 in /usr/local/pkg/pfblocker.inc on line 262
 in /usr/local/pkg/pfblocker.inc on line 262
 in /usr/local/pkg/pfblocker.inc on line 262
 in /usr/local/pkg/pfblocker.inc on line 262
 in /usr/local/pkg/pfblocker.inc on line 262

I keep getting this error report all the time on 2.1 for the past month or so. Nothing interesting going on in the system log.

I've had the same issue for the past couple of months. I haven't dug deeper to see if it causing any problems
9  pfSense English Support / Packages / Re: Snort 2.9.4.1 pkg v. 2.5.5 Issue(s) on: April 11, 2013, 05:05:14 am

i had to copy the files over to get snort to work also... but good work on the update

So far I have been unable to reproduce this problem.  Are you guys having this issue with an empty classification.config file using JUST the new Snort GPLv2 rules by chance?  They do not include any *.config nor *.map files.  Just trying to get a basis for reproducing the problem.

Bill

I'm using Snort Basic VRT Rules, Snort GPLv2, and Emerging Threats rule sets.  I've also noticed that auto blocking is removing IPs after 5 minutes instead of an hour. The cron job looks like this:
Code:
*/5  root  /usr/bin/nice -n20 /usr/local/sbin/expiretable -t 3600 snort2c
10  pfSense English Support / Packages / Re: Snort 2.9.4.1 pkg v. 2.5.5 Issue(s) on: April 10, 2013, 07:23:25 pm
If that still fails, check for a zero-length classification.config file in the Snort interface directories under /usr/pbi/snort-i386/etc/snort.

Report back.

Bill

i had to copy the files over to get snort to work also... but good work on the update
11  pfSense English Support / 2.1 Snapshot Feedback and Problems / Re: New status queues page on: February 27, 2013, 09:28:58 am
Hey,
   everything should be fixed in the next release...

Ciao,
Michele

Thank you Michele... The page looks sweet!
12  pfSense English Support / 2.1 Snapshot Feedback and Problems / Re: IPv6 tunnel interface incorrectly configured? on: February 25, 2013, 07:30:37 am
I've noticed the same issue on box today after a firmware/gitsync update this weekend. Default route for IPv6 disappeared.  I went to System-Routing and re-saved the default route for my HE tunnel and that resolved the issue.. I'm using a HE tunnel setup as /64.

I haven't rebooted but hopefully it will stick instead of me re-saving the route/gateway config...  Last time something like this happen, was when the IPv6 code in pfsense was first implement.
13  pfSense English Support / 2.1 Snapshot Feedback and Problems / Re: New status queues page on: February 23, 2013, 04:35:33 pm
Do we have an ETA when the new queue status page will be fully operational?
14  pfSense English Support / 2.1 Snapshot Feedback and Problems / Re: New status queues page on: February 14, 2013, 11:32:22 am
i'm using PRIQ :-(
15  pfSense English Support / 2.1 Snapshot Feedback and Problems / Re: New status queues page on: February 14, 2013, 07:04:56 am
any update when this page will display the interface then the queues?
Pages: [1] 2 3 4 5 ... 67
 

Page created in 0.033 seconds with 19 queries.