Subcategories

  • Discussions about packages which handle caching and proxy functions such as squid, lightsquid, squidGuard, etc.

    4k Topics
    21k Posts
    A
    Docker image for squid 7.3 and above https://hub.docker.com/r/fredbcode/squid If pfsense does not push the update.
  • Discussions about packages whose functions are Intrusion Detection and Intrusion Prevention such as snort, suricata, etc.

    2k Topics
    16k Posts
    DARAD
    Hello team, I have a Netgate 8200 running 24.11-RELEASE (amd64) with Suricata 7.0.8_5 package installed. Suricata doesn't seem to start. It loops to red once I press the Play button on the interface. It leaves no logs in the System logs, it leaves no logs in suricata.log at /var/log/suricata/suricata_ovpns933787/suricata.log I tried launching it manually: # /usr/local/bin/suricata -V or # /usr/local/bin/suricata -c /usr/local/etc/suricata/suricata_33787_ovpns9/suricata.yaml -i suricata_ovpns933787 and I get this output ld-elf.so.1: /usr/local/bin/suricata: Undefined symbol "__strlcpy_chk@FBSD_1.8" Thanks in advance, Dara
  • Discussions about packages that handle bandwidth and network traffic monitoring functions such as bandwidtd, ntopng, etc.

    573 Topics
    3k Posts
    dennypageD
    @kabeda If memory serves, that old version of ntopng did not run as user ntopng, but as user nobody. There are lots of problems in that old version. Anyway, check the ownership and permissions of /var/db/ntopng and make sure it matches the user that ntopng runs as. You may need to set ownership of the entire hierarchy. Example: /usr/sbin/chown -R nobody:nobody /var/db/ntopng However, the better choice would be to upgrade to a more recent version.
  • Discussions about the pfBlockerNG package

    3k Topics
    20k Posts
    tinfoilmattT
    @vicking said in No blocks on IP: Is it a bad idea to have the action set to deny both instead of inbound only? Question is squarely for admin. Per the infoblock which explains, in part, the "Deny Inbound", "Deny Outbound", and "Deny Both" actions: 'Deny' Rules: 'Deny' rules create high priority 'block' or 'reject' rules on the stated interfaces. They don't change the 'pass' rules on other interfaces. Typical uses of 'Deny' rules are: Deny Both - blocks all traffic in both directions, if the source or destination IP is in the block list Deny Inbound/Deny Outbound - blocks all traffic in one direction unless it is part of a session started by traffic sent in the other direction. Does not affect traffic in the other direction. One way 'Deny' rules can be used to selectively block unsolicited incoming (new session) packets in one direction, while still allowing deliberate outgoing sessions to be created in the other direction. In other words: When set to "Deny Inbound", incoming connection requests from WAN hosts are blocked and therefore no state will be created. However a LAN host can still establish state to an otherwise listed IP. If set to "Deny Outbound", outgoing connection requests from LAN hosts are blocked and therefore no state will be created. However an incoming connection request from an otherwise listed IP to an 'open' WAN port can still establish state. If set to "Deny Both", both incoming connection requests and outbound connections requests are blocked and therefore no state will be created regardless of connection direction.
  • Discussions about Network UPS Tools and APCUPSD packages for pfSense

    102 Topics
    3k Posts
    C
    @dennypage Nicely done sir!
  • Discussions about the ACME / Let’s Encrypt package for pfSense

    503 Topics
    3k Posts
    M
    I am using the DNS-Update method I have to use a DNS-Sleep of 5 minutes to let the letsencrypt txt dns record update propagate. During this 5 minutes the acme-webgui times out. when the acme-webgui times out the Action list is NOT executed. How can I solve this ? Would it maybe be an idea to let the acme.sh script execute the actions in the action list as a post-hook instead of the web-gui? Or maybe add an option to add post-hooks in the webUI ?
  • Discussions about the FRR Dynamic Routing package on pfSense

    296 Topics
    1k Posts
    C
    This one has been tricky still not sure what to try. Any ideas?
  • Discussions about the Tailscale package

    93 Topics
    654 Posts
    C
    @luckman212, Thanks for your suggestion. I will check what I have in /usr/local/pkg/tailscale/state, and also the RAM disk settings others have brought up. I could learn more about where Tailscale and pfSense store system files. If I find anything worth sharing, I will let you know.
  • Discussions about WireGuard

    715 Topics
    4k Posts
    patient0P
    @andresbraga if you still have the firewall rules as you posted, then I don't know why from the laptop you can't ping the pfSense Wireguard address 10.10.6.1 nor the pfSense gateway 10.10.1.1 What is the routing table of the laptop. And I would run a packet capture on pfSense and check what you see if you run the ping to 10.10.1.1 or 10.10.6.1.
  • Squid guard Blacklist URL update

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    R
    It would be great to have it automatically updated! Would that be possible?
  • Brute force - login solution

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    Cry HavokC
    But free doesn't mean that it can be used in an open source project.  There's a world of difference between free, GPL<versionx>, BSD, MPL, etc. Plus, frankly, if you switched to using key only logins, it wouldn't be a problem as the attacker would need both your private key and your passphrase.</versionx>
  • Need help on setting up 10 DIDs with freeswitch package

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    C
    You want each extension to have its own caller id that matches its DID. On the extensions tab for each extension there is place to put caller id information per extension. Make sure you didn't define the caller id on the gateway because that could override the caller id defined on the extension.
  • SQUID UPSTREAM PROXY

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • [HELP] HOW TO change error page squidguard ???

    Locked
    8
    0 Votes
    8 Posts
    5k Views
    T
    sorry double post
  • XMLRPC problem when pfSense is behind a proxy

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    belleraB
    Nobody?
  • Confusion with HVAP installation/utilization

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    D
    @Roodawakening: By 'non-transparent mode' do you mean Standard mode? Yes
  • Solved: packages on 1.2.2

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • LCDproc and HD44780 error

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    S
    Sorry, this problem is old, I've fixed it but arrived with a new problem wich is abit more complicated… The problem is that pfSense can not control the service proberly since it is basically a php-script run as a service... I think I will try to use the original client instead, with modified screens But thanks for trying!
  • Dynamic DNS support in Fit123 package

    Locked
    3
    0 Votes
    3 Posts
    5k Views
    W
    I have DNS-O-Matic configured to update a dyndns.org account as well as the opendns account. Since I posted the original message I have had only one error notification from the DNS-O-matic service (16-Jul-2009) and it said DynDNS response for '***.dyndns.org': –------------------ <title>502 Proxy Error</title> Proxy Error The proxy server received an invalid response from an upstream server. The proxy server could not handle the request GET /nic/update. Reason: Error reading from remote server which I didn't understand but since I've seen it only the once in more than a month I've assumed it was a temporary error. The history entries at dnsomatic seem to cover about a week and the only error entry was that one on 16-Jul.
  • Snort And XMLRPC Synching Configs Between PFSense Boxes

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • SQUID with 25M fiber is running at 1M speed

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    Y
    Next Time search the forum… make our forum clean please. http://forum.pfsense.org/index.php/topic,14657.0.html
  • SOLVED! SQUID speed issue

    Locked
    9
    0 Votes
    9 Posts
    17k Views
    W
    i have applied the recommanded config and it seeems faster but when i use the speakeasy speed test, it is still at 1M.. hmmmm..
  • Snort rules modifications gone after updating rules

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    A
    yeah. I've checked snort_download_rules.php, the script that updates rules, it actually removes the all files under /usr/local/etc/snort/. /*  Make Clean Snort Directory */ if ($snort_md5_check_ok != on && $emerg_md5_check_chk_ok != on && $pfsense_md5_check_ok != on) { if (file_exists("{$snortdir}/rules")) {     update_status(gettext("Cleaning the snort Directory..."));     update_output_window(gettext("removing..."));         exec("/bin/rm {$snortdir}/*");         exec("/bin/rm {$snortdir}/rules/*");     exec("/bin/rm /usr/local/lib/snort/dynamicrules/*");        } else {     update_status(gettext("Making Snort Directory..."));     update_output_window(gettext("should be fast..."));     exec("/bin/mkdir {$snortdir}");         exec("/bin/mkdir {$snortdir}/rules");         exec("/bin/rm /usr/local/lib/snort/dynamicrules/*");     update_status(gettext("Done making snort direcory."));   } } So it works as expected. Since updates happen once a month unless you are subscribed, it wont be a big problem. Thanks, Abraham
  • Squid do not proxy option

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    C
    hacking squid.inc add the no rdr $rules .= "no rdr on $iface proto tcp from {10.10.1.1/24} to any port 80\n"; $rules .= "rdr on $iface proto tcp from any to !($iface) port 80 -> 127.0.0.1 port 80\n";
  • Squid Auth

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    M
    only squid
  • Squidguard - Permit URL blocked in URLBlacklist

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    S
    Each ACL worked (catch and filter URL's) by self Source only, not by Dest or Time. If you have more one ACL with equivalent Source, then will work only first ACL. In you situation create Dest's FaceBook and Popcap set Time 08:00-17:00 FaseBook block ontime and allow overtime Popcap block ontime & overtime thanks … i have some direction from here ... i have to try it ... here what squidguard i need for http://forum.pfsense.org/index.php/topic,17859.0.html maybe some more direction ... :)
  • [Squid] Define several different acl

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    S
    Ok.. i have readed this: In pfSense, squid.conf gets rewritten at startup from squid.inc.  If you manually edit squid.conf your changes will be lost when you reboot the box.  If you edit squid.inc, your changes will be saved/reloaded each time you boot.
  • Freeswitch - ZRTP in PFSense FreeSWITCH?

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    J
    Contact master mcrane in #pfsense-freeswitch. He always hangout there and can answer it. :)
  • Squid wont go to web

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    J
    Please post the errors so that everyone can see the errors. Also did you try reinstalling the squid?Works perfect on my 1.2.2 jigp Davao City 1.2.2
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.