Subcategories

  • Discussions about packages which handle caching and proxy functions such as squid, lightsquid, squidGuard, etc.

    4k Topics
    21k Posts
    JonathanLeeJ
    Squid can be configured externally, I would love a how to guide on how to do this correctly.
  • Discussions about packages whose functions are Intrusion Detection and Intrusion Prevention such as snort, suricata, etc.

    2k Topics
    16k Posts
    DARAD
    Hello team, I have a Netgate 8200 running 24.11-RELEASE (amd64) with Suricata 7.0.8_5 package installed. Suricata doesn't seem to start. It loops to red once I press the Play button on the interface. It leaves no logs in the System logs, it leaves no logs in suricata.log at /var/log/suricata/suricata_ovpns933787/suricata.log I tried launching it manually: # /usr/local/bin/suricata -V or # /usr/local/bin/suricata -c /usr/local/etc/suricata/suricata_33787_ovpns9/suricata.yaml -i suricata_ovpns933787 and I get this output ld-elf.so.1: /usr/local/bin/suricata: Undefined symbol "__strlcpy_chk@FBSD_1.8" Thanks in advance, Dara
  • Discussions about packages that handle bandwidth and network traffic monitoring functions such as bandwidtd, ntopng, etc.

    573 Topics
    3k Posts
    dennypageD
    @kabeda If memory serves, that old version of ntopng did not run as user ntopng, but as user nobody. There are lots of problems in that old version. Anyway, check the ownership and permissions of /var/db/ntopng and make sure it matches the user that ntopng runs as. You may need to set ownership of the entire hierarchy. Example: /usr/sbin/chown -R nobody:nobody /var/db/ntopng However, the better choice would be to upgrade to a more recent version.
  • Discussions about the pfBlockerNG package

    3k Topics
    20k Posts
    tinfoilmattT
    @Draco said in New pfblockerNG install Database Sanity check Failed: I turned off pFBlocker and hit RUN on Update. You what?
  • Discussions about Network UPS Tools and APCUPSD packages for pfSense

    102 Topics
    3k Posts
    C
    @dennypage Nicely done sir!
  • Discussions about the ACME / Let’s Encrypt package for pfSense

    503 Topics
    3k Posts
    GPz1100G
    @agitelzon I have no issue connecting to LE servers from pf shell. The issue is cloudflare security setting is configured as a whitelist for api zone record changes. The whitelist includes my ipv4 address only, as a /32. As I mentioned, I could add the ipv6 prefix as a /64. Given that pf is configured to prefer ipv4, I thought that would carry over to acme as well.
  • Discussions about the FRR Dynamic Routing package on pfSense

    296 Topics
    1k Posts
    C
    This one has been tricky still not sure what to try. Any ideas?
  • Discussions about the Tailscale package

    93 Topics
    657 Posts
    C
    @lbm_ I have the same problem: pfSense v25.07.1 on FreeBSD 15-Current, Netgate 6100. Could you let me know if you found a solution? I haven't. I have been updating Tailscales from Freshports while keeping the Tailscale Package installed. I have recently read that this can cause problems with routes, interfaces, firewall rules, and others. I am leaning towards deleting the Tailscale package.
  • Discussions about WireGuard

    716 Topics
    4k Posts
    chpalmerC
    @tinfoilmatt Thanks! I have done that and it worked when forcing just her TV out the Centurylink.. My problem is my local box here. Im missing something because I can not get it to pass traffic from the WAN to the Wireguard tunnel. Ive got some time today so will chip away on my lab setup to see if I can finally accomplish it here first.
  • How to make a new package of lcdproc-0.5.4 incl hd44780-lcd2usb?

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    marcellocM
    Find the manteiner of this package on other posts and ask him how to build/help.
  • Varnish HTTP purge

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    marcellocM
    Purge is on the TODO list. Today varnish setup at pfsense respects client CTRL+F5 and no-cache directives. If you look at varnish docs, you will see that PURGE is done only by administrators and also can be done by console. If you realy need this at pfsense package gui, let me know how you need this and I Tell you if i can inplement or not.
  • [HELP]Hylafax on pfsense 2.0 release

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    marcellocM
    Do you have a faxmodem plugged and detected on your pfsense box?
  • Ident with Squid Auth

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    marcellocM
    If you can see ident auth helpers at filesystem, you can enable it including all directives you need on squid custom options at package gui or edit squid.inc file to include your conf. Ident can be easily forged, consider changing your auth method.
  • After Upgrade to pfsense 2.0, NUT will not start

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    knight-of-niK
    Looks like FreeBSD decided to change /dev/ttyd0 to /dev/ttyu0. Changing the port in /usr/local/etc/nut/ups.conf to /dev/ttyu0, as described in the link below, "fixes" the problem. http://forum.pfsense.org/index.php/topic,37471.0.html
  • Freeradius disconect issue using gui

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Double decoding attack

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    E
    What do you mean by old?
  • Vnstat2 not installing

    Locked
    6
    0 Votes
    6 Posts
    2k Views
    P
    Might be luck or whatever but I clicked "Save" everywhere in the config of vnstat and now it works…
  • Spamd - service running w/ nothing happening

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    M
    I got the OpenBSD files to download, but the other sites I have in there for spamhaus.org and spamcop don't seem to go get anything, so I'm guessing I will need to stick with file/list downloads for now.  The one thing I am not too sure on is when does the system do updates to the database or list the blacklist items?  Right now I'm seeing only whitelist numbers and 0s for blacklist.  Yesterday they were all 0s, so sometime in the evening/late the database was populated. Should I worry about greylist; it seems beneficial, but I'm just curious if it is going to block anything other than port 25 traffic requests. Thanks!
  • OpenVPN Client Export Utility 0.9.1 Fails to Install

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    S
    @jedblack: should be fixed now… http://redmine.pfsense.org/issues/1930 Thank you, yes indeed it does work! :)  8)
  • Multiple package install failures on fresh 2.0 install

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    J
    issued fixed… http://redmine.pfsense.org/issues/1930 Thanks Scott!
  • PFsense 2.0 packages.

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    M
    Thanks TommyBoy for the link. I've been wasting hours of my time looking for phpSysInfo for pfSense 2.0 with nobody on IRC responding to my request. So finding anything at all was a blessing. Thanks again.
  • Squid and CARP

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    S
    Excellent, thank you. Simon
  • PfSense + Squid + SquidGuard

    Locked
    3
    0 Votes
    3 Posts
    5k Views
    A
    I ever did it several times. Is there a mode of correct this issues without uninstall/install the packages? I think that it is a problem that affect the squid package permissions in use the squidguard. Can someone help me about set the correct permissions? Thanks a lot!  ???
  • Squid Memory Useage /leak?

    Locked
    2
    0 Votes
    2 Posts
    4k Views
    N
    The squid memory usage depends on many things. On is your HARD DISK CACHE size. Every GB HDD is using ~10-15MB RAM. The 256MB of RAM is NOT the maximum squid is using. It is the MINIMUM squid uses. If squid needs more RAM it takes more RAM. But you do not have to worry. If squid is using mem and hdd it is a good sign because than squid is working as it should - caching. The high and low watermakrs will prevent your system to overload. If HDD or RAM reaches low water mark than squid starts to throw out "old" files. High watermark increases speed of throwing things out of mem and cache.
  • LCDProc not working on amd64 version release 2.0

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    M
    Hi, I confirm you that picolcd driver now works only on x86, to let it work on x64 we should upgrade the package to lcdproc 0.5.4 (see http://forum.pfsense.org/index.php/topic,41060.msg212067.html#msg212067) Ciao, Michele
  • Reinstall Squid 2.7.9_4.1?

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    J
    Good to hear that. Thanks to LostInIgnorance's advice.  ;D
  • Squid add extra delay pool

    Locked
    3
    0 Votes
    3 Posts
    4k Views
    N
    After each package upgrade you need to do these changes again in squid.inc. But you do not need to reboot the box for the changes to take effect. After changing the squid.inc by hand just go to Services -> Proxy Server and then just click "save" in the "general" tab and than an new squid.conf will be created.
  • Package installation and uninstallation not stable?

    Locked
    9
    0 Votes
    9 Posts
    8k Views
    R
    Good post… worked fine for me...
  • What is the most basic HTTP proxy (plugin) that pfSense supports?

    Locked
    7
    0 Votes
    7 Posts
    3k Views
    S
    Thanks… I'll definitely look into that. I've also posted over in the Packages forum since I didn't realize there was a forum specifically for that.  Hopefully the double-post isn't a problem.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.