ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login
    1. Topics
    2. Tags
    3. firewall
    Log in to post
    • All categories
    • gjacobseG

      Security while Traveling -

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion firewall security securityawarenesstraining security while travelling linux linux mint fedora ubuntu
      20
      0 Votes
      20 Posts
      2k Views
      scottalanmillerS

      @gjacobse said in Security while Traveling -:

      Could something like this or similar be supplemental?

      Seems pretty silly.

      So here is the question....

      What threat do you perceive there being? How do you feel this device addresses that thread?

      I don't really see any threat in the first place, and so that makes it extra hard to know how to assuage your fears. But how this device is supposed to help, I'm really unsure.

    • mroth911M

      Ubiquiti ER3 to ER4 Upgrade?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion ubnt ubiquiti erl er4 firewall networking router edgerouter edgerouter lite
      6
      1 Votes
      6 Posts
      2k Views
      JaredBuschJ

      @jaredbusch said in Ubiquiti ER3 to ER4 Upgrade?:

      @scottalanmiller said in Ubiquiti ER3 to ER4 Upgrade?:

      @mroth911 said in ubiquiti Er3 to 4 Upgrade?:

      Can I just back up my er3 and upload it to the 4

      I believe so.

      I have never tried, but it should handle it because it only bring the /config folder in, and nothing in the hardware of the 3 vs 4 is all that different.

      To clarify, I have migrated from ERL to ER4 a couple times. But I manually migrate. I don’t try to restore the old config.

    • dave247D

      Anyone running SonicOS 6.5.0.2-8n?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion sonicos sonicwall firewall patching router sonicwall nsa 3600
      3
      1 Votes
      3 Posts
      1k Views
      dave247D

      @dbeato said in Anyone running SonicOS 6.5.0.2-8n?:

      @dave247 said in Anyone running SonicOS 6.5.0.2-8n?:

      We run a SonicWall NSA 3600 where I work and I am staring to look into upgrading to the new 6.5 firmware (6.5.0.2-8n). I have heard of some issues with the last two updates, and wanted to get more input if anyone has any to give..

      I am not, I am using the 6.2.9 on the production Sonicwalls we have. I would recommend to test it out if possible.

      Unfortunately I can't realistically test it out. Even if I had an extra, non-production unit, I doubt I could effectively detect issues since production factors would not be present enough to fully test. I suppose I could just always roll back if necessary... but I think I will probably be waiting a few more releases.. that or just move to a different UTM all together..

    • scottalanmillerS

      FreePBX Site Disconnects All Phones At Once

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion pbx voip freepbx firewall fail2ban responsive firewall security intrusion detection freepbx 14
      1
      6 Votes
      1 Posts
      714 Views
      No one has replied
    • scottalanmillerS

      FreePBX 14 Firewall Start Warning

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion freepbx freepbx 14 freepbx adaptive firewall fwconsole pbx voip firewall
      9
      0 Votes
      9 Posts
      2k Views
      JaredBuschJ

      @scottalanmiller said in FreePBX 14 Firewall Start Warning:

      @jaredbusch said in FreePBX 14 Firewall Start Warning:

      @scottalanmiller said in FreePBX 14 Firewall Start Warning:

      Well, we are one step newer, so that might be it.

      # fwconsole ma list | grep firewall | firewall | 13.0.46.1 | Enabled | AGPLv3+ |

      I do not know the CLI command to revert, but it is simple to do in the GUI.

      CLick "Check upgrades and then expand the Firewall and you will have a previous versions option.

      Tested and you are right, rolling back to 45.5 and the message goes away.

      You could upgrade to edge and see if it is different, but I would just wait for the next update.

    • M

      Home Hardware Recommendations

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion access point router firewall switch ubiquiti hardware
      20
      0 Votes
      20 Posts
      2k Views
      brandon220B

      ERL with an AC Lite AP at home as well as many clients. Zero issues.

    • EddieJenningsE

      Responsive Firewall and external FreePBX users

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion freepbx 14 firewall responsive firewall
      19
      0 Votes
      19 Posts
      4k Views
      bigbearB

      @dashrender you could see opensips as a software version of this, but in high load scenarios or in transcoding the example @scottalanmiller gives about restricted instruction sets on the video chip is a great example.

      If Asterisk was created after SIP standards were made it probably would have some type of domain filtering that would make the mobile issue a very easy fix.

      That being said the responsive firewall was a huge leap forward, but i don’t see anything in their big requests that indicates they are going to go further. I’ve not tried to use the Sangoma SBC or to fix the issue since I’ve moved on. I’m guessing the domain for mobile access is very low amongst FreePBX users, or maybe it’s used on desktops inside a LAN that is not using the responsive firewall.

    • EddieJenningsE

      FreePBX Firewall Status

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion freepbx 14 firewall performance issues
      7
      0 Votes
      7 Posts
      1k Views
      bigbearB

      All the time. I only know this from having to log in every time the firewall gets behind and blocks the remote phones using responsive firewall.

      I do think FreePBX is great, don't get me wrong. These are some the reasons I still prefer a freeswitch based deployment and enforcing domains as part of authentication. Almost all attempts to brute force authenticate are dropped simply because they don't know the domain (realm) being used and they quickly give up.

      There is a lot more that I like over FreePBX in my current setup but that has more to do with trying to be a service provider.

      For a single installation my only gripe is the way the firewall works, how do people use Bria and roam around. That being said they could close that gap at any moment and my only complaint would be the delicacy of updating systems or uploading the wrong format of an audio file. Which apparently only bigbear has ever had problems with. Lol.

    • EddieJenningsE

      Provisioning phones in the wild - FreePBX

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion freepbx 14 provisioning freepbx setup firewall yealink t42s yealink t42s configuration
      14
      1 Votes
      14 Posts
      2k Views
      bigbearB

      The resellers used to do it manually and charged $1 a phone, which is why I think adoption stalled. Plus documentation is horrible. Once you are in the portal its pretty obvious what can be done.

      I have linked my GUI so that when you add a phone's mac address to my service it uses Yealink API to automatically configured RPS.

    • wrx7mW

      Replacing a UTM in an SMB - With What?

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion utm ids ips proxy firewall security network security filtering
      18
      1 Votes
      18 Posts
      2k Views
      wrx7mW

      @jaredbusch - I thought that is what you meant but did a double-take. LOL

    • DashrenderD

      FreePBX - site being added to the Blocked Host list

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion freepbx ucp firewall
      2
      0 Votes
      2 Posts
      938 Views
      DashrenderD

      Additionally, I'm looking at the firewall settings

      qCbus6z.png

      Is this expected? I get the list of my trusted items, it shows an empty list for other, but local, internet, and rejected all provide zero feedback.

      I have the Let's Encrypt sites added to local on the same page as I have my trusted sites added, yet they don't show up as seen above.

      Thoughts?

      This makes me think that I have somehow disabled the local zone

    • DustinB3403D

      Port - What server OS to use

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion newbie server desktops lan firewall
      42
      1 Votes
      42 Posts
      7k Views
      Mike DavisM

      Before you can get in to what OS to run the clients on, do you have to ask what apps the business needs to run? If they need some kind of CAD package and it's only offered on Windows, the linux client goes out the window. (pun intended)

    • scottalanmillerS

      Comparing Ubiquiti EdgeRouter and Cisco ASA PPS Performance and Cost

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion cisco ubiquiti edgerouter edgerouter lite cisco asa firewall router
      51
      5 Votes
      51 Posts
      10k Views
      DashrenderD

      @jaredbusch said in Comparing Ubiquiti EdgeRouter and Cisco ASA PPS Performance and Cost:

      @nashbrydges said in Comparing Ubiquiti EdgeRouter and Cisco ASA PPS Performance and Cost:

      @jaredbusch said in Comparing Ubiquiti EdgeRouter and Cisco ASA PPS Performance and Cost:

      @nashbrydges said in Comparing Ubiquiti EdgeRouter and Cisco ASA PPS Performance and Cost:

      @brandon220 said in Comparing Ubiquiti EdgeRouter and Cisco ASA PPS Performance and Cost:

      I've been using an ERL at home for a while and have them deployed at several business. Zero complaints and I recommend them all the time.

      I wish I could use it at home. I'm on Bell Canada ftth and they use a different vlan for iptv and internet. All of the online guides I've seen haven't been able to get me to use my ERL and Bell won't give up which VLANs they use.

      No one hasd figured this information out yet?

      Sadly not yet, at least not that my Google-fu has allowed me to find.

      I am a bit amazed because it should only take a mirrored switch port and wireshark to find VLAN tags.

      This was my thinking as I was reading the posts. This is /should be pretty easy to figure out.

    • W

      Switchvox phone issues

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion switchvox sip voip pbx sonicwall cisco cisco asa firewall
      28
      0 Votes
      28 Posts
      5k Views
      scottalanmillerS

      @whoolly said in Switchvox phone issues:

      Vendor insisted he has never had any VOIP issues with Sonicwall and didn't want to budge on that.

      Even while it doesn't work. So you know that he'll say this to other customers now, even after this one. Chances are, he's had problems at all customers. SonicWall is culprit #1 for VoIP issues. I mean that literally. I get a call that someone has VoIP audio issues, my first question is always "Do you have a SonicWall?" Nine times out of ten, the answer is yes and nine times out of those ten, the SW was the issue. It's nearly a sure bet with audio issues.

      Had you led this question purely with "I have these audio issues..." we'd have said "I bet you have a SonicWall."

    • bjB

      Firewalls, the good, the bad, and the ugly.

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion firewall pfsense asa sonicwall palo alto security ubnt ubiquiti
      66
      0 Votes
      66 Posts
      10k Views
      bigbearB

      Just wanted to add @bj to this thread that I think a $100-ish Cloud Router from Mikrotik would blow most hardware away, including Ubiquiti, on pure performance. With the $50 and under models you are still getting 1 million PPS. The new cloud router series really has a crazy amount of power.

      This still coming from a pure PPS (packets per second) point of view.

      I think the cheapest cloud router has 12 to 16 cores That would only count for the core routers I am more familiar with (12 to 24 now) in the $500 range.

      Very poor marketing in the states but very popular with western country WISPS.

    • DustinB3403D

      Cross Post - Help sorting out a Firewall Issue on a Debian Box

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion firewall routing icmp debian help crossover
      7
      0 Votes
      7 Posts
      2k Views
      stacksofplatesS

      @Dashrender said in Cross Post - Help sorting out a Firewall Issue on a Debian Box:

      A default gateway on the debian box?

      My thought. I don't think I've seen a system firewall not accept icmp by default.

      If you stop iptables and still can't ping it's not the firewall.

    • A

      KVM pfSense Issue

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion pfsense freebsd firewall kvm
      23
      0 Votes
      23 Posts
      4k Views
      A

      Factory Reset, Setup, Disable Hardware Checksum Offloading, Works Prefect.

    • A

      Firewall Issue - VNC

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion firewall firewalld centos rhel linux vnc
      15
      0 Votes
      15 Posts
      2k Views
      dafyreD

      Oops. 🙂

    • StrongBadS

      Vultr Adds a Free Firewall Service

      Watching Ignoring Scheduled Pinned Locked Moved News firewall vultr cloud computing iaas vps
      7
      3 Votes
      7 Posts
      2k Views
      scottalanmillerS

      @aaronstuder said in Vultr Adds a Free Firewall Service:

      Is it just me, or is Vultr killing it recently?

      Are they? With Linode's improved pricing, Vultr still is trailing for us in most use cases. It's a bit too costly and a bit too slow. We just get way more bang for the buck with Linode and Linode has load balancers which I think are a bit more important than firewalls. Vultr is doing well, but killing it seems a bit far as we are migrating off in several cases because it just isn't the best value compared to it's more mature competitor any longer. It's definitely doing better than Digital Ocean these days, though.

    • KellyK

      Fortinet Experiences

      Watching Ignoring Scheduled Pinned Locked Moved IT Discussion fortinet networking firewall router fips
      26
      2 Votes
      26 Posts
      4k Views
      KellyK

      @Reid-Cooper said in Fortinet Experiences:

      I guess it matters then... who else is on the list? What about Sophos, are they an option?

      Looks like only their disk encryption is.

      Here is the list: http://csrc.nist.gov/groups/STM/cmvp/documents/140-1/1401vend.htm.

    • 1
    • 2
    • 3
    • 4
    • 2 / 4