Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - craftnix

#1
Hi Abdullah,

Looks like the issue has resolved itself now. The database was downloaded yesterday at 21:00 my time. I'll monitor if the next update succeeds also.

Other people seem to have had the same issue where it might take a day or two for the download to succeed.
#2
I just did a fresh installation and now see the same errors:

geoip update failed : File is not a zip file
geoip update failed : You have reached your 10 downloads per day limit for ipinfo_lite.csv.gz from x.x.x.x. Please reach out to increase your limit via support@ipinfo.io. [http_code: 429]

So seems like the issue has reoccurred or has not been fixed in certain regions.
#3
Thanks! Didn't think to look there, I guess I was assuming it would be under System:Settings:Administration.
#4
25.7, 25.10 Series / Deny admin login to user portal
October 17, 2025, 05:39:36 PM
I have the Business Edition user portal working, but how do I allow user login to the portal from WAN but allow admin login only from LAN side? Is this possible? I couldn't find a place where to set management networks.

I will limit access from WAN to user portal eventually after onboarding since it can't be setup to require OTP after the initial seed generation, but as an added measure I'd like to deny any admin user login from WAN altogether.
#5
I got the Business Edition for the User Portal functionality. What's the currently recommended, most user friendly but still administratively flexible way to provide road warrior OpenVPN configuration and group based access?

I'm looking to have separated access for IT staff, regular employees and external contractors to different internal resources. User accounts will be in Active Directory.

I've used client specific overrides before with pfSense but found them to be cumbersome if there's more than a couple of them. Completely separate OpenVPN server instances seem overkill. Do OpenVPN Group aliases allow me to this simply based on OpenVPN interface access rules?

Any recommendations and best practices?