Ahmed Abdallah | 1 Jul 11:02 2008
Picon

Re: Error while building pfSense on FreeBSD 6.3 and 7

Is there no way of building pfSense now ? I need to do that urgently, so plz if anyone knows how to build it in this state advice me ?

Gary, This is the same post I saw before so we're on the same tune now :)

On Mon, Jun 30, 2008 at 6:37 PM, Gary Buckmaster <gary-+oj2b/mWtm+O2/wZUiRoQ5qQE7yCjDx5@public.gmane.org> wrote:
Check out the 6/23 email from Chris Buechler entitled: build_iso.sh Error during compiling.



Ahmed Abdallah wrote:
Thanks Gary,and I surely read the mailing list, and found some stuff talking about that but not in the past "few" days, but I also found some guys talking about being able to build it successfully, so I didn't know if the building process is still broken or not. Anyway, thanks for the reply


--
Ahmed Abdalla
--Systems Engineer
Linux-Plus Information Systems L.L.C
Tel : +20 2 2527 6616
EXT : 806
Fax : +20 2 2526 1055
Mobile : +20 10 688 9009
email : ahmed-0CLIJ1TBDLlByuSxxbvQtw@public.gmane.org <mailto:ahmed-0CLIJ1TBDLlByuSxxbvQtw@public.gmane.org>


---------------------------------------------------------------------
To unsubscribe, e-mail: support-unsubscribe-zsHM3v2T5LBBDgjK7y7TUQ@public.gmane.org
For additional commands, e-mail: support-help-zsHM3v2T5LBBDgjK7y7TUQ@public.gmane.org




--
Ahmed Abdalla
--Systems Engineer
Linux-Plus Information Systems L.L.C
Tel : +20 2 2527 6616
EXT : 806
Fax : +20 2 2526 1055
Mobile : +20 10 688 9009
email : ahmed-0CLIJ1TBDLlByuSxxbvQtw@public.gmane.org
website : http://www.linux-plus.com
Paul Mansfield | 1 Jul 11:41 2008

Re: Error while building pfSense on FreeBSD 6.3 and 7

> Ahmed Abdallah wrote:
>> Is there no way of building pfSense now ? I need to do that urgently, 
>> so plz if anyone knows how to build it in this state advice me ?
>>
> 
what is it you're lookign for?
you can still find working mirrors of freebsd6.2 if you need packages to
add.
Ahmed Abdallah | 1 Jul 13:34 2008
Picon

Re: Error while building pfSense on FreeBSD 6.3 and 7

On Tue, Jul 1, 2008 at 12:41 PM, Paul Mansfield <it-admin-pfsense-s68hnM6uneIAvxtiuMwx3w@public.gmane.org> wrote:
what is it you're lookign for?
I want to add some customization in the web interface,so I guess I need to build pfSense
Is there no way of building pfSense now ? I need to do that urgently, so plz if anyone knows how to build it in this state advice me ?
 You mean to be able to build it using the DevIso ?


On Tue, Jul 1, 2008 at 12:41 PM, Paul Mansfield <it-admin-pfsense-s68hnM6uneIAvxtiuMwx3w@public.gmane.org> wrote:
Ahmed Abdallah wrote:
Is there no way of building pfSense now ? I need to do that urgently, so plz if anyone knows how to build it in this state advice me ?


what is it you're lookign for?
you can still find working mirrors of freebsd6.2 if you need packages to
add.



---------------------------------------------------------------------
To unsubscribe, e-mail: support-unsubscribe-zsHM3v2T5LBBDgjK7y7TUQ@public.gmane.org
For additional commands, e-mail: support-help-zsHM3v2T5LBBDgjK7y7TUQ@public.gmane.org




--
Ahmed Abdalla
--Systems Engineer
Linux-Plus Information Systems L.L.C
Tel : +20 2 2527 6616
EXT : 806
Fax : +20 2 2526 1055
Mobile : +20 10 688 9009
email : ahmed-0CLIJ1TBDLlByuSxxbvQtw@public.gmane.org
website : http://www.linux-plus.com
Bill Marquette | 1 Jul 15:01 2008
Picon

Re: Error while building pfSense on FreeBSD 6.3 and 7

On Tue, Jul 1, 2008 at 4:02 AM, Ahmed Abdallah
<eng.a.abdalla@...> wrote:
> Is there no way of building pfSense now ? I need to do that urgently, so plz
> if anyone knows how to build it in this state advice me ?

Did you bother to try the document I pointed you at?

--Bill
Gary Buckmaster | 1 Jul 17:58 2008

Re: Error while building pfSense on FreeBSD 6.3 and 7

If you want to customize the web interface, you can do that on the 
working system, you don't need to build a new ISO for that.  Simply edit 
the php.  If you're trying to make a pfSense clone with your 
customizations, that's another thing entirely and then yes, you would 
need to be able to build.  The link that Bill provided you should be 
everything you need. 

Ahmed Abdallah wrote:
>
> I want to add some customization in the web interface,so I guess I 
> need to build pfSense
>
>
> Ahmed Abdalla
> --Systems Engineer
> Linux-Plus Information Systems L.L.C
> Tel : +20 2 2527 6616
> EXT : 806
> Fax : +20 2 2526 1055
> Mobile : +20 10 688 9009
> email : ahmed@... <mailto:ahmed@...>
> website : http://www.linux-plus.com 
Atkins, Dwane P | 1 Jul 20:07 2008
Picon

Disable SSH to the private side interface

Is there a way that I can disable SSH from my private side address to the default gateway or in this case, the LAN address?  Can I do it via a Linux command?

 

In other words, if my LAN interface is 10.6.5.8 and my DHCP (private side) addresses are 10.6.5.10 - .100. I want to ensure that those addresses cannot SSH into the private side address.

 

Thank you

 

Dwane Atkins

210-567-0158

atkinsd-nNFbEISdY72Vc3sceRu5cw@public.gmane.org

 

Ron Blanchett | 1 Jul 20:17 2008
Picon

Re: Disable SSH to the private side interface

Just add a reject or drop rule on the lan interface
Specify a source range and make the  destination address your lan
interface address and the port 22.

Simple as that.

-Ron

On Tue, Jul 1, 2008 at 2:07 PM, Atkins, Dwane P <ATKINSD@...> wrote:
> Is there a way that I can disable SSH from my private side address to the
> default gateway or in this case, the LAN address?  Can I do it via a Linux
> command?
>
>
>
> In other words, if my LAN interface is 10.6.5.8 and my DHCP (private side)
> addresses are 10.6.5.10 - .100. I want to ensure that those addresses cannot
> SSH into the private side address.
>
>
>
> Thank you
>
>
>
> Dwane Atkins
>
> 210-567-0158
>
> atkinsd@...
>
>

--

-- 
Ronald Reagan  - "Recession is when a neighbour loses his job.
Depression is when you lose yours."
Atkins, Dwane P | 1 Jul 20:20 2008
Picon

RE: Disable SSH to the private side interface

Ron,

Thanks for the quick answer.  

I have a LAN rule that I assumed stated deny tcp any Lan Interface eq
ssh.  

If the DHCP address and the lan gateway are in the same subnet, it
doesn't appear to work.  

Another question about Firewall Rules are do they read for top to
bottom?  I have put these denies above the permit ip any any statement
in the Lan rules.

Am I doing something wrong?

Dwane

-----Original Message-----
From: Ron Blanchett [mailto:muteid10t@...] 
Sent: Tuesday, July 01, 2008 1:17 PM
To: support@...
Subject: Re: [pfSense Support] Disable SSH to the private side interface

Just add a reject or drop rule on the lan interface
Specify a source range and make the  destination address your lan
interface address and the port 22.

Simple as that.

-Ron

On Tue, Jul 1, 2008 at 2:07 PM, Atkins, Dwane P <ATKINSD@...>
wrote:
> Is there a way that I can disable SSH from my private side address to
the
> default gateway or in this case, the LAN address?  Can I do it via a
Linux
> command?
>
>
>
> In other words, if my LAN interface is 10.6.5.8 and my DHCP (private
side)
> addresses are 10.6.5.10 - .100. I want to ensure that those addresses
cannot
> SSH into the private side address.
>
>
>
> Thank you
>
>
>
> Dwane Atkins
>
> 210-567-0158
>
> atkinsd@...
>
>

--

-- 
Ronald Reagan  - "Recession is when a neighbour loses his job.
Depression is when you lose yours."

---------------------------------------------------------------------
To unsubscribe, e-mail: support-unsubscribe@...
For additional commands, e-mail: support-help@...
RB | 1 Jul 20:26 2008
Picon

Re: Disable SSH to the private side interface

> If the DHCP address and the lan gateway are in the same subnet, it
> doesn't appear to work.
Because it's not that simple, pfSense has an anti-lockout rule by
default.  To disable, check:

Advanced -> Misc -> "webGUI anti-lockout"

> Another question about Firewall Rules are do they read for top to
> bottom?  I have put these denies above the permit ip any any statement
> in the Lan rules.

Yes, they read as the English language would, top to bottom.
Ron Blanchett | 1 Jul 20:27 2008
Picon

Re: Disable SSH to the private side interface

Yes rules reas top to bottom.

Please attach a copy of your rule as it is displayed in on the Lan fw
tab. this will help in finding the problem with the rule.

-Ron

On Tue, Jul 1, 2008 at 2:20 PM, Atkins, Dwane P <ATKINSD@...> wrote:
> Ron,
>
> Thanks for the quick answer.
>
> I have a LAN rule that I assumed stated deny tcp any Lan Interface eq
> ssh.
>
> If the DHCP address and the lan gateway are in the same subnet, it
> doesn't appear to work.
>
> Another question about Firewall Rules are do they read for top to
> bottom?  I have put these denies above the permit ip any any statement
> in the Lan rules.
>
> Am I doing something wrong?
>
> Dwane
>
> -----Original Message-----
> From: Ron Blanchett [mailto:muteid10t@...]
> Sent: Tuesday, July 01, 2008 1:17 PM
> To: support@...
> Subject: Re: [pfSense Support] Disable SSH to the private side interface
>
> Just add a reject or drop rule on the lan interface
> Specify a source range and make the  destination address your lan
> interface address and the port 22.
>
> Simple as that.
>
> -Ron
>
>
> On Tue, Jul 1, 2008 at 2:07 PM, Atkins, Dwane P <ATKINSD@...>
> wrote:
>> Is there a way that I can disable SSH from my private side address to
> the
>> default gateway or in this case, the LAN address?  Can I do it via a
> Linux
>> command?
>>
>>
>>
>> In other words, if my LAN interface is 10.6.5.8 and my DHCP (private
> side)
>> addresses are 10.6.5.10 - .100. I want to ensure that those addresses
> cannot
>> SSH into the private side address.
>>
>>
>>
>> Thank you
>>
>>
>>
>> Dwane Atkins
>>
>> 210-567-0158
>>
>> atkinsd@...
>>
>>
>
>
>
> --
> Ronald Reagan  - "Recession is when a neighbour loses his job.
> Depression is when you lose yours."
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: support-unsubscribe@...
> For additional commands, e-mail: support-help@...
>
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: support-unsubscribe@...
> For additional commands, e-mail: support-help@...
>
>

--

-- 
Steven Wright  - "A lot of people are afraid of heights. Not me, I'm
afraid of widths."

Gmane