Subcategories

  • Discussions about packages which handle caching and proxy functions such as squid, lightsquid, squidGuard, etc.

    4k Topics
    21k Posts
    N

    Can I use pgblockerng aliases in Haproxy?

    80758505-9bad-4dad-a80b-c159be1045a2-image.png

    If it was a firewall rule, typing pfb would produce a dropdown to select.

    Here it has to be written, but will it work? Is it supported?

  • Discussions about packages whose functions are Intrusion Detection and Intrusion Prevention such as snort, suricata, etc.

    2k Topics
    16k Posts
    bmeeksB

    I saw where the Netgate kernel developer updated the Suricata package in the pfSense 25.07 development branch to work with the new kernel PPPoE driver. But so far as I know that updated package has not been migrated to 2.8 CE.

    Here is the commit into the DEVEL branch: https://github.com/pfsense/FreeBSD-ports/commit/68a06b3a33c690042b61fb4ccfe96f3138e83b72.

  • Discussions about packages that handle bandwidth and network traffic monitoring functions such as bandwidtd, ntopng, etc.

    571 Topics
    3k Posts
    K

    @pulsartiger
    The database name is vnstat.db and its location is under /var/db/vnstat.
    With "Backup Files/Dir" we are able to do backup or also with a cron.

  • Discussions about the pfBlockerNG package

    3k Topics
    20k Posts
    GertjanG

    @AlexK-0 said in Can't receive GeoIP databases updates anymore, banned:

    Days ago, I received from MaxMind an email, notifying me that my country has been banned to receive GeoLite City database updates.

    You've found a reason to use a VPN.

  • Discussions about Network UPS Tools and APCUPSD packages for pfSense

    99 Topics
    2k Posts
    K

    @elvisimprsntr thanks for your suggestion. I will give it a try.

  • Discussions about the ACME / Let’s Encrypt package for pfSense

    493 Topics
    3k Posts
    johnpozJ

    @MacUsers

    https://help.zerossl.com/hc/en-us/articles/360060119933-Certificate-Revocation

    edit: oh you prob out of luck

    You can revoke any certificate issued via the ZeroSSL portal. Currently, certificates issued via ACME can not be revoked from inside the portal - please follow the instructions of your ACME client for revoking those certificates.

    the gui in pfsense does not have the ability to revoke - you prob have to move the certs to something you have certbot installed to and revoke that way.

  • Discussions about the FRR Dynamic Routing package on pfSense

    294 Topics
    1k Posts
    R

    I had a similar issue with Routed VTI over IPsec recently. FRR lost its neighbors after rebooting or when a tunnel went down. It never re-discovered it automatically. Only restarting FRR (either in GUI or via CLI) brought the neighbors back.

    When I manually added those under the OSPF neighbors tab in the GUI it seems to solve the problem as well.

  • Discussions about the Tailscale package

    88 Topics
    573 Posts
    luckman212L

    For 25.07 RC, this worked for me (run sh first)

    [25.07-RC][root@r1.lan]/root: sh # export IGNORE_OSVERSION=yes # pkg add https://pkg.freebsd.org/FreeBSD:15:amd64/latest/All/tailscale-1.84.2.pkg # service tailscaled restart # tailscale up # tailscale version 1.84.2 go version: go1.24.4 # tailscaled -version 1.84.2 go version: go1.24.4
  • Discussions about WireGuard

    689 Topics
    4k Posts
    P

    @patient0 Thanks for further suggestions. The tunnel is definitely up and so I don't think this is a CGNAT issue after all. WAN firewall rule is in place for UDP on port 51823 (otherwise the tunnel wouldn't work, right?). I can ping from client 1 -> client 2 and visa versa and also ping all points in between like you suggest. I just can't open an HTTPS connection from pfSenseB from Client 1 using a browser. But I can do this the other way round i.e. from Client 2 to pfSenseA

    I will try and do some packet capture to see if that reveals anything.

  • Ookla Speedtest Mini

    2
    0 Votes
    2 Posts
    2k Views
    pttP

    For what it's worth…..  ;)

    https://forum.pfsense.org/index.php?topic=59501.msg320248#msg320248

  • PHPsysinfo error.

    3
    0 Votes
    3 Posts
    1k Views
    J

    Thanks, downloaded new version and it works about 90%. Will play with .ini file and see if i can detect the hardware elements.

  • DansGuardian Reporting 'Access Denied' settings not working

    13
    0 Votes
    13 Posts
    4k Views
    S

    Bryan:

    Thank you for your help on this. I finally got around to following your advice to uninstall DansGuardian from the gui, then from a terminal session I deleted all of the dansguardian files from your steps #2-3.

    I upgraded pfsense to 2.1.2.

    I then reinstalled DansGuardian from the gui, and everything seems to be working correctly. The correct symlinks are there, and I can edit the configurations using the gui. Almost all of my previous settings are still there– I'm glad about that but I am curious where those configuration settings are stored.

    ** Tip: After reinstalling DansGuardian, I had trouble getting DansGuardian to start until I deleted .dguardianipc and .dgaurdianurlipc in /tmp.
    Rebooted and it works again.  (see this message for this tip: https://forum.pfsense.org/index.php?topic=75068.msg409652#msg409652)

  • Auto backup restore hash not matching though it should

    8
    0 Votes
    8 Posts
    2k Views
    C

    A phantom new line has showed up for some reason out of nowhere, unrelated to anything that's changed recently. We're still looking for the source of it, but in the mean time, a new package v1.23 is out there that fixes the issue. If it's something we can fix only server-side, we will, for now if you upgrade the package it'll work.

  • Pfsense GUI & Dansguardian woes …

    18
    0 Votes
    18 Posts
    7k Views
    A

    Worked perfectly, I can edit the template, save, and the changes take effect immediately!

    Many thanks for your help.

    The DG/Squid combo appears to be working nicely now, I don't notice any browsing difference going through the proxy compared to a direct connection except of course the filtering - but I am only 1 user. Monday I'll point a group of students at it - that's when the problems began last few times with timeouts, slowness, etc.. Hopefully it won't this time.

    Again, thanks for your help.

  • Package Install on 2.1.1 after Upgrade

    2
    0 Votes
    2 Posts
    1k Views
    D

    I can confirm I ran into this same issue, I however didn't need to have the proxy set, just used it to allow caching.  Since https isn't cached on my Squid setup I just removed it, and problem was resolved.

    The autoupdate firmware check was still able to find updates, and the problem persisted after the 2.1.2 update which was done on my system which had this problem, prior to fixing the issue.

    However its definitely a repeatable scenario that should be resolve in the case where the proxy is required.

  • Can't install OpenVPN Client Export Utility

    7
    0 Votes
    7 Posts
    2k Views
    I

    @priller:

    There is a new option you can select to bypass the check.

    System: Advanced: Miscellaneous: Packages settings

    Just what I needed! Many thanks.

  • Squid authentication with logged on user possible?

    2
    0 Votes
    2 Posts
    962 Views
    jimpJ

    It's been covered on here before a few times in other threads. Try searching for squid and NTLM and similar topics.

  • PfBlocker no longer updating aliases since upgrading to pfSense 2.1.1

    5
    0 Votes
    5 Posts
    1k Views
    D

    Well, is should not keep disabling itself on every damn reinstall, dunno what's the bug there. Reported many times but this thing is pretty much in need of major rewrite, dropping all those not anymore useful features, like years old geoIP lists.

  • 0 Votes
    3 Posts
    1k Views
    P

    It is thank you! Although there now appears to be a problem with the Emerging Threats Open rule set, specifically one of the rules in "emerging-web_client.rules" that is causing a fatal error and preventing Snort from starting. I have disabled those rules for now.

  • Siproxd URLMAP is full

    2
    0 Votes
    2 Posts
    1k Views
    W

    Guys can anyone help me to recompile Siproxd package?

  • Sarg system log error how to fix?

    1
    0 Votes
    1 Posts
    629 Views
    No one has replied
  • Hyperlink PFblocker Dashboard Widget Label

    6
    0 Votes
    6 Posts
    2k Views
    F

    Edit - try this

    Create a backup of /usr/local/www/widgets

    Save http://www.filedropper.com/pfblockerlink

    Transfer pfBlockerLink.tar to /tmp/
    tar xf pfBlockerLink.tar
    cd pfBlockerLink
    ./patch.sh

  • PfBlocker not blocking addresses

    15
    0 Votes
    15 Posts
    4k Views
    F

    Is the status for the dashboard widget a green up arrow or a red down arrow?

    Can you check your Firewall \ Rules \ WAN - to see if there is a pfblocker auto rule that has been created for each of your pfblocker lists ?

    This page https://forum.pfsense.org/index.php?topic=42543.705 talks about a bug that might be causing your problem.

  • Snort upgrade fails, now cannot reinstall Snort…

    3
    0 Votes
    3 Posts
    975 Views
    M

    Perfect! Thanks!

  • Snort update

    5
    0 Votes
    5 Posts
    1k Views
    R

    Cheers CMB

    At least I was not that silly to report that the file was not on the repo instead of just searching for something there on the forum.  :-)

  • Snort Installation on pfS 2.1.1

    4
    0 Votes
    4 Posts
    1k Views
    C

    try again, it's fixed

  • Postfix Error

    9
    0 Votes
    9 Posts
    1k Views
    C

    This is true after all its pfsense :-) im gonna upgrade!

  • OpenVPN with MS Mobile 5

    2
    0 Votes
    2 Posts
    777 Views
    G

    Hi Windows Mobile 5 is a bit long in the tooth to say the least. which vpn software are you running on the device  is the CPU on the device capable of doing the maths behind Openvpn ?
    do you have a the device on a public APN or a private one , I would guess public

  • Squid Transparent and Windows 8 Modern UI (aka Metro) Apps

    1
    0 Votes
    1 Posts
    548 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.