OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Profile of richardm »
  • Show Posts »
  • Messages
  • Profile Info
    • Summary
    • Show Stats
    • Show Posts...
      • Messages
      • Topics
      • Attachments

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

  • Messages
  • Topics
  • Attachments

Messages - richardm

Pages: [1]
1
18.7 Legacy Series / Re: System | Access | Users displays only the "GUI" category
« on: September 18, 2018, 04:49:32 am »
Never did.  I'll try again soon with 18.7 and try to remember to post here.

2
18.7 Legacy Series / IDS Rules "Enable Selected" works under Firefox bot not chrome?
« on: September 16, 2018, 10:07:24 pm »
18.7.1 and 18.7.2 both exhibit this behavior.  Under Services: Intrusion Detection: Administration, Rules tab, the little "enable/disable selected" buttons under the first column do nothing in Chrome 69.  In Firefox 61 they work as intended.  Is this a known bug?

3
Intrusion Detection and Prevention / VMware ESXi tuning for Suricata?
« on: September 07, 2018, 07:19:53 pm »
I've seen the guidance for disabling CRC/TSO/LSO within OPNsense when running an IDS.

What about NIC parameters at the ESXi level?  TSO can be killed globally with Net.UseHwTSO.  Should I be looking into other ESXi params as well?  I've been seeing IDS alerts similar to the ones normally blamed on TSO...

4
18.7 Legacy Series / System | Access | Users displays only the "GUI" category
« on: August 30, 2018, 12:18:27 am »
My apologies if this is a known issue with a known fix.  I searched and couldn't find anything.

Under System: Access: Users I am trying to assign VPN privs to a new user account.  On this page, only the GUI category is displayed.  Should there be other privs from additional categories in the list?


5
General Discussion / Re: OPNsense versus pfSense
« on: July 06, 2018, 06:14:14 pm »
My reason for choosing OPNsense is simple.  With pfsense I spent probably 10 hours across several days trying to get traffic shaping to work properly and actually help my bufferbloat without creating new issues.  With OPNsense I had it up and running in about 20 minutes helping with my latency challenges.  I didn't have to fight with fine-tuning queues or floating rules.

6
General Discussion / Re: Traffic Shaping vs vmxnet3
« on: July 06, 2018, 06:05:40 pm »
I remember seeing it when googling traffic shaper guidance and scenarios.  But I did read a lot of pfsense info and indeed this issue may be relevant to only pfsense (if at all).

What about TCP Segment Offload and other pNIC offloads at the VMware host level?  I've read that these can thwart various packet schedulers...

7
General Discussion / Traffic Shaping vs vmxnet3
« on: July 05, 2018, 09:16:01 pm »
I've seen some chatter on the 'net regarding traffic shaping not working well with the otherwise superior vmxnet3 interface.  Seems e1000e was/is the go-to interface for this scenario.  Where does this issue stand today?

Pages: [1]
OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2