Subcategories

  • Discussions about packages which handle caching and proxy functions such as squid, lightsquid, squidGuard, etc.

    4k Topics
    21k Posts
    JonathanLeeJ
    Squid can be configured externally, I would love a how to guide on how to do this correctly.
  • Discussions about packages whose functions are Intrusion Detection and Intrusion Prevention such as snort, suricata, etc.

    2k Topics
    16k Posts
    DARAD
    Hello team, I have a Netgate 8200 running 24.11-RELEASE (amd64) with Suricata 7.0.8_5 package installed. Suricata doesn't seem to start. It loops to red once I press the Play button on the interface. It leaves no logs in the System logs, it leaves no logs in suricata.log at /var/log/suricata/suricata_ovpns933787/suricata.log I tried launching it manually: # /usr/local/bin/suricata -V or # /usr/local/bin/suricata -c /usr/local/etc/suricata/suricata_33787_ovpns9/suricata.yaml -i suricata_ovpns933787 and I get this output ld-elf.so.1: /usr/local/bin/suricata: Undefined symbol "__strlcpy_chk@FBSD_1.8" Thanks in advance, Dara
  • Discussions about packages that handle bandwidth and network traffic monitoring functions such as bandwidtd, ntopng, etc.

    573 Topics
    3k Posts
    dennypageD
    @kabeda If memory serves, that old version of ntopng did not run as user ntopng, but as user nobody. There are lots of problems in that old version. Anyway, check the ownership and permissions of /var/db/ntopng and make sure it matches the user that ntopng runs as. You may need to set ownership of the entire hierarchy. Example: /usr/sbin/chown -R nobody:nobody /var/db/ntopng However, the better choice would be to upgrade to a more recent version.
  • Discussions about the pfBlockerNG package

    3k Topics
    20k Posts
    GertjanG
    @shady28 Click on the round "I" for more info. After reading, you'll know now that "unbound mode" is the old legacy mode, it's advised to use Python mode which : Is faster Is faster to reload Offers more options Etc.
  • Discussions about Network UPS Tools and APCUPSD packages for pfSense

    102 Topics
    3k Posts
    C
    @dennypage Nicely done sir!
  • Discussions about the ACME / Let’s Encrypt package for pfSense

    503 Topics
    3k Posts
    GPz1100G
    @agitelzon I have no issue connecting to LE servers from pf shell. The issue is cloudflare security setting is configured as a whitelist for api zone record changes. The whitelist includes my ipv4 address only, as a /32. As I mentioned, I could add the ipv6 prefix as a /64. Given that pf is configured to prefer ipv4, I thought that would carry over to acme as well.
  • Discussions about the FRR Dynamic Routing package on pfSense

    296 Topics
    1k Posts
    C
    This one has been tricky still not sure what to try. Any ideas?
  • Discussions about the Tailscale package

    93 Topics
    657 Posts
    C
    @lbm_ I have the same problem: pfSense v25.07.1 on FreeBSD 15-Current, Netgate 6100. Could you let me know if you found a solution? I haven't. I have been updating Tailscales from Freshports while keeping the Tailscale Package installed. I have recently read that this can cause problems with routes, interfaces, firewall rules, and others. I am leaning towards deleting the Tailscale package.
  • Discussions about WireGuard

    716 Topics
    4k Posts
    chpalmerC
    @tinfoilmatt Thanks! I have done that and it worked when forcing just her TV out the Centurylink.. My problem is my local box here. Im missing something because I can not get it to pass traffic from the WAN to the Wireguard tunnel. Ive got some time today so will chip away on my lab setup to see if I can finally accomplish it here first.
  • Ntop on 2.0B3 full update 2.0-BETA3-20100727-1745

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    jimpJ
    Linking libraries that aren't the right version number is going to have some issues. It may startup, but it may not work for long. The dependency list for ntop is insane these days, including parts of X, gnome, and who knows what else, no matter how it's setup. It still needs some work.
  • Ntop on 1.2.3 embedded

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    jimpJ
    ntop is not compatible with the embedded images. It wants constant write access to the system, and stores too much data.
  • Unable to download snort rules

    Locked
    6
    0 Votes
    6 Posts
    4k Views
    F
    NOp, it downloading, After reinstall, i did not press Save on Global settingS!!!! after i press save on global settings, its downloading Thanks
  • FreeSWITCH config advice (lan & external)

    Locked
    6
    0 Votes
    6 Posts
    6k Views
    M
    mcrane: Thank you for your help. I tried connecting with an xlite softphone at the lan, and calling the external user on the wan. Works fine. Along with your answers it suggests my FS configuration is correct, so it might be something wrong with the lan linksys config, or maybe the pfsense firewall config. Maybe some firewall rules, port forwarding or dns setting… Anyhow, I will have another bash after my annual leave, which starts tomorrow for 2 weeks - hoorrah! :)
  • Quick question on snort's default rules directory

    Locked
    4
    0 Votes
    4 Posts
    5k Views
    D
    jimp has a proposed fix at the thread he links to above…
  • Phpsysinfo

    Locked
    8
    0 Votes
    8 Posts
    6k Views
    jimpJ
    It isn't fatal for most statistics, but it does mean you probably won't see temperature data. So yes, mostly a warning.
  • Spam detection

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    ?
    That's a pretty tall order.  Are you hoping someone with the necessary knowledge will just do this out of the goodness of their heart or are you planning on offering some sort of incentive?
  • NUT 2.2.2_3a & Beta3

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Custom error page error on squidguard with https

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    D
    Pls Look demo info Here:
  • Anti-spam and Clamd in pfsense 1.2.3

    Locked
    4
    0 Votes
    4 Posts
    3k Views
    ?
    No.
  • 0 Votes
    1 Posts
    1k Views
    No one has replied
  • Snort Best Practice

    Locked
    2
    0 Votes
    2 Posts
    3k Views
    D
    Snort isn't updating at the moment - keep an eye on this thread: http://forum.pfsense.org/index.php/topic,26382.0.html
  • Updates Open-VM-Tools packages

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    C
    same here.. would definitely appreciate if someone could guide as to how to upgrade the open-vm-tools on pfsense … :)
  • What content filtering package to use with my setup?

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Correctly configuring SNORT to block limewire from the LAN side

    Locked
    10
    0 Votes
    10 Posts
    7k Views
    jimpJ
    @weselko: First of all PfSense is not a L7 firewall. It is in 2.0 :-)
  • Squid Warning:

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    J
    we have same problem… deleting n reinstall .. this message still happen..
  • Squid configured as transparent proxy to reflect client IP address

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    N
    Thank your for the suggestion.  Actually I also noticed that feature and also haven't tried it yet.  maybe i would create a separate environment to test the configuration.
  • Pls help Windows Security Pops when squid is up

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    J
    ok thanks..works fine already…
  • Snort / barnyard, please explain the feature for a noob

    Locked
    4
    0 Votes
    4 Posts
    5k Views
    G
    Well I gave you that link because it gives you the necessary information to get barynyard2 up and running. With barnyard2 not only does it make snort work faster by using mysql it also allows you to use one of the many frontends for snort such as snorby.
  • Lcdproc on fw8888+ (LCM-162?)

    Locked
    1
    0 Votes
    1 Posts
    3k Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.