Categories

  • 459 Topics
    1k Posts
    D
    Hi @Tyronejackson839, Thanks for the awesome advice! Your ACL tips worked perfectly—enabling fragment-checking and lean rules secured my nginx webserver without sacrificing performance. Really appreciate your detailed help! Best, David James | Founder of The Yes No Button!
  • 120k Topics
    764k Posts
    C
    Okay, finally! Updated to 25.07 - everything looks normal. Switched to using if_pppoe. Nothing fell off, etc. But in the system log I see a lot of spam "pppoe: alien host unique tag, no session found". What is this and how to overcome it? Do I understand correctly that I need to specify some value in PPPoE Configuration - Service name or not?
  • 20k Topics
    128k Posts
    GertjanG
    @rasputinthegreatest said in pfBlockerNG not logging anything by default?: It is a Ubuntu device Ah, ok. I'm not familiar with Unbuntu but I do use Debian myself. Like pfSense (based upon FreeBSD) there is file called /etc/resolv.conf which contains something like : nameserver 127.0.0.1 nameserver ::1 .... which means that programs process running on that system know where to go with their DNS requests. Guess who listens on port 127.0.0.:53 on pfSense ? Let's ask ;) [25.07-RELEASE][root@pfSense.bhf.tld]/root: sockstat -4 | grep ':53' avahi avahi-daem 61533 13 udp4 *:5353 : unbound unbound 14531 5 udp4 *:53 : unbound unbound 14531 6 tcp4 *:53 : .... If you Ubuntu was told that DNS requests have to send to 127.0.0.53 (probably port 53) then there must be a process that handles DNS requests listening on that address:port. If there is none, then you get a service fail or "SERV FAIL" as no DNS service is avaible. That needs to be set up correced ^^ @rasputinthegreatest said in pfBlockerNG not logging anything by default?: I have my ISP router (running Quad9DNS) I have also a ISP 'upstream' router. Somewhat mandatory for me as that device knows how to talk to the 'laser led wire' (fiber) and handles the login against my ISP. My ISP router probably uses the ISP's DNS servers, I'm not sure. pfSense gets a WAN IP from this ISP router, which will be a RFC1918 like 192.168.10.4. By default, pfSense won't use an DNS suggestion that comes with the lease from the ISP routers DHCP server, as (my) pfSense resolves. Here are my Unbound settings. General Setup I already showed above Pretty default so you're good.
  • 43k Topics
    267k Posts
    G
    Nachtrag 2 Stunden später.... Mir hat das alles keine Ruhe mehr gelassen - hab jetzt vor Ort (Client Seite) die Pfsense ausgetauscht gegen eine frisch installierte Variante - nur mal ganz schnell WAN, Lan DHCP und OpenVPN eingerichtet - und die Verbindung ist da und stabil.... Ich fress nen Besen Quer .... Entweder hats beim Update irgend eine Einstellung zerschossen die ich trotz 20 mal drüber schauen nicht gesehen habe oder es hat was am System zerlegt..... Pffffff - spannend ... Grüße GTR
  • Information about hardware available from Netgate

    3k Topics
    20k Posts
    stephenw10S
    Hmm, do you only see it when connected to that one external switch though. I've never seen that but I also don't have that switch. That would seem very odd though.
  • Information about hardware available from Netgate

    44 Topics
    211 Posts
    AriKellyA
    It looks like unified web management could be coming soon. It would be great if it means easier control and management of all web services in one place. Let's see if any companies announce more details about it!
  • Feel free to talk about anything and everything here

    3k Topics
    19k Posts
    AndyRHA
    @dennypage PoE is definitely on our feature list.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.