Subcategories

  • Discussions about packages which handle caching and proxy functions such as squid, lightsquid, squidGuard, etc.

    4k Topics
    21k Posts
    perikoP
    @aGeekhere dns_v4_first...have years and they still don't clean the code. But won't affect.
  • Discussions about packages whose functions are Intrusion Detection and Intrusion Prevention such as snort, suricata, etc.

    2k Topics
    16k Posts
    bmeeksB
    @NRgia said in Suricata on Pfsense: @bmeeks Thank you for what you did for Snort or Suricata. I'm not sure what you want me to do on Redmine, due to is a bug tracker. My question is for Product Management, which I will ask it here to be public: What is the plan for these 2 packages, Suricata and Snort? Thank you Yes, Redmine is for both bug reports and feature requests. Asking for the Suricata binary to be updated to the latest 7.0.11 version from upstream is a legitimate Redmine request. I would suggest simply asking for the binary version update instead of asking about future Netgate strategy (such as the support plans for the packages). Strategy discussions typically don't get very far because they deal with proprietary information or plans that a company may not want to publicly discuss. Redmine is where the Netgate developer team tracks all the code changes they make for pfSense. They will see Redmine reports much quicker than a forum post.
  • Discussions about packages that handle bandwidth and network traffic monitoring functions such as bandwidtd, ntopng, etc.

    571 Topics
    3k Posts
    dennypageD
    @Leon-Straathof Data retention settings are handled inside of ntopng. Documentation here. Pay attention to the RRD note. Also, if you've turned on some of the slice and dice time series information (is off by default), I'd suggest turning them back off. These balloon the storage requirements and are of little actual use.
  • Discussions about the pfBlockerNG package

    3k Topics
    20k Posts
    fireodoF
    @tinfoilmatt said in Failed or invalid Mime Type: [application/SIMH-tape-data|0]: (ASN data is IPinfo, not Maxmind) Thats correct but "GeoLite2-Country" is from Maxmind ... (that confused me) I'm considering simply adding "application/SIMH-tape-data" to the list to test. Thats what i tought too ... I'll try when I have the time for it ... Edit: I can confirm - adding "application/SIMH-tape-data" to the list at line 257 in /usr/local/pkg/pfblockerng/pfblockerng.inc did the trick - no more error! Edit: OK, problem resolved but I would like to know, whats the cause for that error! Thanks a lot!
  • Discussions about Network UPS Tools and APCUPSD packages for pfSense

    101 Topics
    2k Posts
    dennypageD
    @jhg said in NUT fails to start after 2.7.2 -> 2.8.0 upgrade: Interesting. I would have thought the initial reboot, which occurred as part of the upgrade, would have done the trick, but it took a second reboot, just now, to get things working. Glad you have it sorted. There was no difference in the output of usbconfig show_ifdrv at any point -- before or after unplugging/replugging the USB cable, nor after rebooting. ... Question: What would tell me whether or not a driver was loaded? If there were an attached driver, it should have shown up with the show_ifdrv command. If you use the command and look at the other usb devices, I think they will show attached drivers. I don't expect to see a driver attached to the ups, because there is a quirk that tells the OS to ignore that device (and not attach a driver). Look for idVendor and idProduct in the above output. The Vendor ID for your device is 0764, which corresponds to Cyber Power Systems, and the Product ID for your device is 0601, which is registered as "PR1500LCDRT2U UPS" (don't sweat an exact match for the name). You can see the quirk with the following command: [25.07-RC][root@fw]/root: usbconfig dump_device_quirks | grep 0764 VID=0x0764 PID=0x0005 REVLO=0x0000 REVHI=0xffff QUIRK=UQ_HID_IGNORE VID=0x0764 PID=0x0501 REVLO=0x0000 REVHI=0xffff QUIRK=UQ_HID_IGNORE VID=0x0764 PID=0x0601 REVLO=0x0000 REVHI=0xffff QUIRK=UQ_HID_IGNORE [25.07-RC][root@fw]/root: Your device is third on the list. The HID_IGNORE quirk says to ignore the device and not attach a driver. @jhg said in NUT fails to start after 2.7.2 -> 2.8.0 upgrade: You might consider adding this resolution to the release notes for 2.8. LOL... sorry, I don't have input to the release notes (I don't work here). While I wrote and maintain various packages, including NUT, I'm still just a volunteer. Most packages are actually written by volunteers.
  • Discussions about the ACME / Let’s Encrypt package for pfSense

    495 Topics
    3k Posts
    M
    @raidflex said in updating to acme 1.0 breaks system beyond repair: need to restore from backup: maybe uninstall Crowdsec when applying other updates first. It seems like it doesn't help at least from what I see on my system... it changes something.. so it must be definitely reported to their github. I have never experienced that before and crowsec was installed.. maybe with 2.8.0 something have changed
  • Discussions about the FRR Dynamic Routing package on pfSense

    294 Topics
    1k Posts
    yon 0Y
    said in Please update frr on Pfsense+ to FRR 10.3: https://redmine.pfsense.org/issues/15785 now frr 10.4.1
  • Discussions about the Tailscale package

    90 Topics
    598 Posts
    E
    Updated CE 2.7.2 to 1.86.4 Changelog pkg add -f https://pkg.freebsd.org/FreeBSD:14:amd64/latest/All/tailscale-1.86.4.pkg Freshports
  • Discussions about WireGuard

    693 Topics
    4k Posts
    L
    @boyan1 said in Wireguard Gateway not coming up after reboot.: W Hey man, im trying to make the SITE A use internet of SITE B as you did, but there is no means of making that works. How did you make that works? Could you tell me please? Thanks!
  • SquidGuard Blacklist Loading Memory Issue

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Proxy server on wan pack configuration ?

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    marcellocM
    Any squid tutorial will work, just apply rules on wan instead of lan and do not try transparent proxy.
  • 0 Votes
    3 Posts
    1k Views
    M
    ok but i was trying first to setup only squid without havp.. and squid in transparent mode isn't working… :((
  • Proxy server: Authentication with Active Directory

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    N
    @dvserg: SquidGuard Group ACL: Client names must be enter in the quotes. Sir, I had inserted the DC users names with the quotes and i am able to browse via ACL. But problem for other OUs users other than IT OU remains same. This attachment shows my config. Please let me know what should i uses in LDAP base domain field insted of OU=IT,DC=RFCL,DC=mmclgroup,DC=com so that my other OU users can also able to browse. [image: 4.jpg] [image: 4.jpg_thumb]
  • Help me with havp - i can't start it..

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    D
    Probably you have squid/havp configuration conflict
  • Just how good is Squid?

    Locked
    9
    0 Votes
    9 Posts
    4k Views
    L
    Yes that is what i understood.. which is why it is strange that i am using Squid2 and still having this problem
  • How to get pkg_add -r py27-mako (ftp packages-8.1-release already out)

    Locked
    3
    0 Votes
    3 Posts
    1k Views
    H
    Thanks, marcelloc i use this command line setenv PACKAGESITE http://ftp-archive.freebsd.org/pub/FreeBSD-Archive/old-releases/i386/8.1-RELEASE/packages/Latest/ pkg_add -r py26-mako
  • Imspector not logging yahoo messenger in android environment

    Locked
    3
    0 Votes
    3 Posts
    1k Views
    H
    ok thank you
  • LightSquid and 500 - Internal Server Error (pfsense 2.1)

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    J
    I already have 2 months worth of data but still no monthly graph. My other pfsense box has the same problem but after new year, the graph is working.
  • Hardware recommended for Haproxy?

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    marcellocM
    Take a look on this doc http://doc.pfsense.org/index.php/Hardware_requirements
  • Pkg_add manually does not show up in web GUI

    Locked
    3
    0 Votes
    3 Posts
    1k Views
    B
    Nachtfalke, Thank You for the info. Unfortunatley,,clicking on the + to add HAVP,,,within package manager,,does in fact start buts fails. I have tried for two days,,,there ar no remnants of HAVP at /usr/local/pkgs. As I stated earlier the version number showing in package manager is 0.91,,even for v 1.2.3 when in fact the version residing at files pfsense org is only 0.88 for 7/aka 1.2.3. I realize v 1.2.3 is pretty much outdated,and I am sure everyone should be running 2.x at this point. thank You, Barry
  • Snort Blocked Alert Description Error

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    E
    Probably this is a side effect of the parser in php for the alerts that was never written to handle dst alerts.
  • Rpcapd wokring on pfSense

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Nut & Powerware/Eaton 5110 problem: package needs patch?

    Locked
    4
    0 Votes
    4 Posts
    3k Views
    marcellocM
    You can create an account at github and pull your file change request to Fix this package.
  • Squidguard: how to redirect each category to it's URL?

    Locked
    5
    0 Votes
    5 Posts
    4k Views
    K
    I've been looking in squidguard_configurator.inc where I think the function sg_create_config() is what generates the squidguard conf. I've altered the section related to the destinations:    # --- Destinations ---    if ($squidguard_config[F_DESTINATIONS]) {        $temp_str = '';        foreach($squidguard_config[F_DESTINATIONS][F_ITEM] as $dst) {            $dstname = $dst[F_NAME];            $sg_tag->clear();            $sg_tag->set("dest", $dst[F_NAME], "", $dst[F_DESCRIPTION]);            if ($dst[F_DOMAINS])                $sg_tag->items[] = "domainlist $dstname/domains";            if ($dst[F_EXPRESSIONS])                $sg_tag->items[] = "expressionlist $dstname/expressions";            if ($dst[F_URLS])                $sg_tag->items[] = "urllist $dstname/urls";            if ($dst[F_RMOD] != RMOD_NONE)                $sg_tag->items[] = "redirect " . sg_redirector_base_url($dst[F_REDIRECT], $dst[F_RMOD]);            if ($squidguard_config[F_ENABLELOG] == 'on' ) {                if ($dst[F_LOG])                    $sg_tag->items[] = "log " . SQUIDGUARD_LOGFILE;            } [b]    if ($dst[F_NAME] == 'blk_BL_adv')  $sg_tag->items[] = "redirect http://MyWebServer/blockedADV.html"; [/b]            $sgconf[] = "";            $sgconf[] = $sg_tag->tag_text();            # log            $temp_str .= " $dstname;";        }        # log        $temp_str = !empty($temp_str) ? $temp_str : "Nothing.";        sg_addlog("sg_create_config", "Add destinations: $temp_str", SQUIDGUARD_INFO);    } I've just added the part in bold, but this could not generate the directive in the squidguard config to redirect destination blk_BL_adv.
  • Redirect and then allow original request squid

    Locked
    4
    0 Votes
    4 Posts
    1k Views
    B
    back to basics , In squid how do I actually create a custom redirect to bbc.co.uk went to 192.168.0.5 for example, I can seem to get it working. Do I create a new targer category and add it to the common acl?
  • Calamaris Squid Reporting package perhaps?

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    jimpJ
    I've never heard of that one … but the last note in their changelog is from 2006. I'm not sure how well a 6-year-old software package would run these days, but who knows. It looks like the FreeBSD port is still there, so if someone wanted to, they could give it a try, but I'm not very fond of the format of their report examples. Seems like the existing Lightsquid package does a bit better job there.
  • Quagga (with CoreGUI)

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    J
    As CMB said, if this is working and ready to go, am also happy to donate something towards you time on this to get this package up and out there Cheers J
  • Imspector msn logout ?

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    marcellocM
    Take a look on this post. http://forum.pfsense.org/index.php/topic,42824.msg223765.html#msg223765
  • HAPROXY 1.4.18 pkg v 1.2 PHP Error on PFSense 2.0.1-RELEASE AMD64

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    marcellocM
    Not sure, But if you reinstall in few minutes I'll be 100% sure you got the fix. I did not changed package version, just fixed the array check. att, Marcello Coutinho
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.