My account: Login | Sign Up
Loading... 

pfsense, two subnets, jumboframes etc. | Thread profile

Thread profile page for "pfsense, two subnets, jumboframes etc." on http://www.pfsense.org. This report page is a snippet summary view from a single thread "pfsense, two subnets, jumboframes etc.", located on the Message Board at http://www.pfsense.org. This thread profile page shows the thread statistics for: Total Authors, Total Thread Posts, and Thread Activity, which are reported in a table below. Additional thread profile information is also shown in the following ways:

1) Top Contributing Authors
2) Related Threads on "eBay Auctions"
3) Related Threads on Other Sites

Warning: These statistics are generated using 'best efforts' and can experience delays and reporting errors at times. Please note that such statistics do not constitute a thread's popularity and/or exact posting volumes at any given reporting period.

Title: pfsense, two subnets, jumboframes etc.
Site: pfSense Forum  pfSense Forum - site profile
Forum: General Questions  General Questions - forum profile
Total authors: 5 authors
Total thread posts: 11 posts
Thread activity: no new posts during last week
Domain info for: pfsense.org

Thread posts in pfsense, two subnets, jumboframes etc.:

1. 
Started 1 month, 2 weeks ago (2008-10-03 10:09:00)  by juosukai
Hi, I have a setup that differes quite a bit form the norm (apparently): We have 3 subnets: 192.168.140.0/24, 192.168.210.0/24 and 192.168.190.0/24. The .140 subnet is our normal office network, with it's own firewall and normal access to the internet. The .210 subnet is our production network and uses jumboframes (mtu 9000) thruout. One layer3 switch and several smaller layer2 ...
Size: 6,829 bytes
Customize:  Customize "pfsense, two subnets, jumboframes etc. :: General Questions :: pfSense Forum"
2. 
Started 1 month, 2 weeks ago (2008-10-03 18:44:00)  by wallabybob
Have you checked the firewall logs (Status -> System Logs Firewall tab)? tcpdump can be very helpful to verify packets arriving at a particular interface or going out a particular interface. On pfSense and other unix like systems, # pfsense -i <interface> will display traffic on the specified interface. You can use this to verify that the packets are being seen at each of the hops ...
Size: 1,186 bytes
Customize:  Customize "<b>Reply 1</b>: pfsense, two subnets, jumboframes etc. :: General Questions :: pfSense Forum"
3. 
Started 1 month, 2 weeks ago (2008-10-04 13:50:00)  by juosukai
Quote from: wallabybob on October 03, 2008, 06:44:12 pm Have you checked the firewall logs (Status -> System Logs Firewall tab)? Yes, I have also monitored what's happening via ssh from the pfsense box. The problem here is that there is an obscene amount of things in the log, due to several windows machines and servers sending broadcast and udp traffic everywhere on the network. ...
Size: 2,131 bytes
Customize:  Customize "<b>Reply 2</b>: pfsense, two subnets, jumboframes etc. :: General Questions :: pfSense Forum"
4. 
Started 1 month, 1 week ago (2008-10-06 04:04:00)  by juosukai
This is what I see in the filter logs: pass in on fxp0: 192.168.140.77.1549 > 192.168.210.113.22: tcp 28 [bad hdr length 0 - too short, < 20] And nothing after that, form either of those IP's. /jussi
Size: 335 bytes
Customize:  Customize "<b>Reply 3</b>: pfsense, two subnets, jumboframes etc. :: General Questions :: pfSense Forum"
5. 
Started 1 month, 1 week ago (2008-10-06 17:10:00)  by wallabybob
Quote from: juosukai on Yesterday at 04:04:15 am This is what I see in the filter logs: pass in on fxp0: 192.168.140.77.1549 > 192.168.210.113.22: tcp 28 [bad hdr length 0 - too short, < 20] And nothing after that, form either of those IP's. /jussi This might be the reason the box was "lying around". I presume fxp0 is the motherboard NIC. That trace would lead me to ...
Size: 1,665 bytes
Customize:  Customize "<b>Reply 4</b>: pfsense, two subnets, jumboframes etc. :: General Questions :: pfSense Forum"
6. 
Started 1 month, 1 week ago (2008-10-06 20:15:00)  by nocer
Hi One quick. Put ifconfig in the very last of /etc/rc. Quote instead after each reboot I need to set it up by hand using ifconfig. Any solutions to this? cheers,
Size: 326 bytes
Customize:  Customize "<b>Reply 5</b>: pfsense, two subnets, jumboframes etc. :: General Questions :: pfSense Forum"
7. 
Started 1 month, 1 week ago (2008-10-08 05:49:00)  by pan_2
Quote pass in on fxp0: 192.168.140.77.1549 > 192.168.210.113.22: tcp 28 [bad hdr length 0 - too short, < 20] first, disable hardware checksum offloading (in advanced) second - try different NIC
Size: 356 bytes
Customize:  Customize "<b>Reply 6</b>: pfsense, two subnets, jumboframes etc. :: General Questions :: pfSense Forum"
8. 
Started 1 month, 1 week ago (2008-10-08 12:41:00)  by juosukai
Hi Guys, thanks for the tips. Quote from: pan_2 on Yesterday at 05:49:04 am Quote pass in on fxp0: 192.168.140.77.1549 > 192.168.210.113.22: tcp 28 [bad hdr length 0 - too short, < 20] first, disable hardware checksum offloading (in advanced) second - try different NIC Tried this. Still not succeeding with the NAT. I also changed a new 3COM NIC in instead of the built in ...
Size: 9,535 bytes
Customize:  Customize "<b>Reply 7</b>: pfsense, two subnets, jumboframes etc. :: General Questions :: pfSense Forum"
9. 
Started 1 month, 1 week ago (2008-10-08 22:08:00)  by nocer
Hi, Just MTU thingy put a side for now and focusing on port forwarding issue, I've experienced most likely the same issue with the latest 1.3-AA build yesterday. Everything on the WAN gets port forwarded by the rule are dropped with the [too short] messages. Although yours isn't 1.3 nor the latest 1.2.1 so it might not your case but I strongly recommend that you try some OLDER builds....
Size: 605 bytes
Customize:  Customize "<b>Reply 8</b>: pfsense, two subnets, jumboframes etc. :: General Questions :: pfSense Forum"
10. 
Started 1 month, 1 week ago (2008-10-09 04:51:00)  by ermal
Are you allowing icmp otherwise you break path mtu discovery?! Can you monitor if RST packets are being sent by pfsense to the .140 network? Are you sure that ssh on pfSense is not running on that port(ssh:22)?
Size: 323 bytes
Customize:  Customize "<b>Reply 9</b>: pfsense, two subnets, jumboframes etc. :: General Questions :: pfSense Forum"
 

Top contributing authors for pfsense, two subnets, jumboframes etc.

Name Posts
juosukai 5
wallabybob 2
nocer 2
pan_2 1
ermal 1