Subcategories

  • Discussions about packages which handle caching and proxy functions such as squid, lightsquid, squidGuard, etc.

    4k Topics
    21k Posts
    A
    Docker image for squid 7.3 and above https://hub.docker.com/r/fredbcode/squid If pfsense does not push the update.
  • Discussions about packages whose functions are Intrusion Detection and Intrusion Prevention such as snort, suricata, etc.

    2k Topics
    16k Posts
    DARAD
    Hello team, I have a Netgate 8200 running 24.11-RELEASE (amd64) with Suricata 7.0.8_5 package installed. Suricata doesn't seem to start. It loops to red once I press the Play button on the interface. It leaves no logs in the System logs, it leaves no logs in suricata.log at /var/log/suricata/suricata_ovpns933787/suricata.log I tried launching it manually: # /usr/local/bin/suricata -V or # /usr/local/bin/suricata -c /usr/local/etc/suricata/suricata_33787_ovpns9/suricata.yaml -i suricata_ovpns933787 and I get this output ld-elf.so.1: /usr/local/bin/suricata: Undefined symbol "__strlcpy_chk@FBSD_1.8" Thanks in advance, Dara
  • Discussions about packages that handle bandwidth and network traffic monitoring functions such as bandwidtd, ntopng, etc.

    573 Topics
    3k Posts
    dennypageD
    @kabeda If memory serves, that old version of ntopng did not run as user ntopng, but as user nobody. There are lots of problems in that old version. Anyway, check the ownership and permissions of /var/db/ntopng and make sure it matches the user that ntopng runs as. You may need to set ownership of the entire hierarchy. Example: /usr/sbin/chown -R nobody:nobody /var/db/ntopng However, the better choice would be to upgrade to a more recent version.
  • Discussions about the pfBlockerNG package

    3k Topics
    20k Posts
    tinfoilmattT
    @vicking said in No blocks on IP: Is it a bad idea to have the action set to deny both instead of inbound only? Question is squarely for admin. Per the infoblock which explains, in part, the "Deny Inbound", "Deny Outbound", and "Deny Both" actions: 'Deny' Rules: 'Deny' rules create high priority 'block' or 'reject' rules on the stated interfaces. They don't change the 'pass' rules on other interfaces. Typical uses of 'Deny' rules are: Deny Both - blocks all traffic in both directions, if the source or destination IP is in the block list Deny Inbound/Deny Outbound - blocks all traffic in one direction unless it is part of a session started by traffic sent in the other direction. Does not affect traffic in the other direction. One way 'Deny' rules can be used to selectively block unsolicited incoming (new session) packets in one direction, while still allowing deliberate outgoing sessions to be created in the other direction. In other words: When set to "Deny Inbound", incoming connection requests from WAN hosts are blocked and therefore no state will be created. However a LAN host can still establish state to an otherwise listed IP. If set to "Deny Outbound", outgoing connection requests from LAN hosts are blocked and therefore no state will be created. However an incoming connection request from an otherwise listed IP to an 'open' WAN port can still establish state. If set to "Deny Both", both incoming connection requests and outbound connections requests are blocked and therefore no state will be created regardless of connection direction.
  • Discussions about Network UPS Tools and APCUPSD packages for pfSense

    102 Topics
    3k Posts
    C
    @dennypage Nicely done sir!
  • Discussions about the ACME / Let’s Encrypt package for pfSense

    503 Topics
    3k Posts
    M
    I am using the DNS-Update method I have to use a DNS-Sleep of 5 minutes to let the letsencrypt txt dns record update propagate. During this 5 minutes the acme-webgui times out. when the acme-webgui times out the Action list is NOT executed. How can I solve this ? Would it maybe be an idea to let the acme.sh script execute the actions in the action list as a post-hook instead of the web-gui? Or maybe add an option to add post-hooks in the webUI ?
  • Discussions about the FRR Dynamic Routing package on pfSense

    296 Topics
    1k Posts
    C
    This one has been tricky still not sure what to try. Any ideas?
  • Discussions about the Tailscale package

    93 Topics
    654 Posts
    C
    @luckman212, Thanks for your suggestion. I will check what I have in /usr/local/pkg/tailscale/state, and also the RAM disk settings others have brought up. I could learn more about where Tailscale and pfSense store system files. If I find anything worth sharing, I will let you know.
  • Discussions about WireGuard

    715 Topics
    4k Posts
    patient0P
    @andresbraga if you still have the firewall rules as you posted, then I don't know why from the laptop you can't ping the pfSense Wireguard address 10.10.6.1 nor the pfSense gateway 10.10.1.1 What is the routing table of the laptop. And I would run a packet capture on pfSense and check what you see if you run the ping to 10.10.1.1 or 10.10.6.1.
  • How to start IMspector

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    J
    Try re-install the package. This is what i did awhile ago and it works in 1.2.2 :) jigp Davao City
  • Who is online now ?

    Locked
    8
    0 Votes
    8 Posts
    4k Views
    J
    Ntop eats alot of RAM . My RAM is 3gb and users 15.. jigp Davao City
  • Change default block time in snort2c, how?

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    J
    Is it possible? Whats the command? Thanks jigp Davao City
  • Where is Snort?

    Locked
    4
    0 Votes
    4 Posts
    5k Views
    J
    Snort is working in 1.2.2 which is im using it now. You should try 1.2.2 and download the latest snort rules. But again, my Q is can we block torrents ports in snort? Ive tried blocking the torrent ports though using firewall rules LAN and open the ports only e.g http/https/53 … jigp Davao City
  • Snort does not update

    Locked
    6
    0 Votes
    6 Posts
    2k Views
    M
    I noticed that after updating 1.2.3 RC1 the snort install and updates are working great.  Just FYI.
  • Dashboard : unable to add widgets (only system info shows up)

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    M
    Ok forget about it :) Turns out my microdrive was bad. It crapped on me right after I tried reinstalling the project again. Now the box won't boot anymore. I will be waiting for a new microdrive which I should receive in a few days.
  • Can not browse the web

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • HAVP installation problems

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    D
    What version pfSense you use? And VMWare or no ?
  • Can i know How to set simple local VOIP(only softphone) in pfsense?

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    C
    First you want to create the extension after you have done that go to the 'Status' tab and click on 'reloadxml' for it to read the change. If you have a static ip for your WAN you can skip this step. If you do not have a static ip then you would want to setup dynamic dns and then set the domain that you chose on the 'Vars' tab. Make sure you have the dynamic dns getting updated with pfsense Services->Dynamic DNS so that the domain stays updated with the right IP Address. Then restart freeswitch so that it uses the new domain name. Then register configure your phone with the dynamic dns domain name. (Remember: by default FreeSWITCH binds to the WAN ip and your phone needs to register to that IP). At this point your phone should now be able to register to FreeSWITCH and you can test to make sure it works by dialing *9999 and you should hear music. Dial *5000 to hear the default auto attendant. Wiki:  http://doc.pfsense.org/index.php/FreeSWITCH IRC:  #pfsense-freeswitch
  • Snort stop blocking even alerts is shown !!?

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    G
    I have been edit my snort.sh file as shown in the forums a while back open and edit yours to match the example if you need more help past your snort.sh file
  • Problem with Squidguard ACL's

    Locked
    8
    0 Votes
    8 Posts
    15k Views
    D
    Basic error - use several ACL with same or overlapping Source setting. Will used only one - first by order ( Highlander)
  • Snort

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    K
    I think this https://services.netscreen.com/restricted/sigupdates/nsm-updates/HTML/SHELLCODE:X86:NOOP-TCP.html would help you.
  • Services Status in Dashboard - does it refresh?

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    jimpJ
    No, the services status widget does not use any AJAX, and thus is static. As you found, it will only update when the entire page has been refreshed.
  • SIPorxd - 7 VOIP cisco 7960 - States -

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    A
    Ok so I solved the issue, It seems that at least for this office configuration changing the Outbound NAT to Manual solves the issue …. Pfsense 1.2.2 will create the default automatic NAT and that will be a great starting point ...
  • Squid Proxy very slow

    Locked
    5
    0 Votes
    5 Posts
    8k Views
    E
    Ok. I found my error. I found in this forum that internal https redirection doesn't work for squidguard. Thanks to all. Kind regards Ernie
  • Squid hapv sandwich setup? (is there a guide, is it possible?)

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    T
    Just clarification.  I use squid with a parent proxy of HAVP.  And, at current, that is set up to be transparent proxy.
  • Old package repo

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    W
    his update fixed the filter reload but it didn't remove all the errors. i still get this Warning: Invalid argument supplied for foreach() in /etc/inc/pkg-utils.inc(303) : eval()'d code on line 1 squid
  • Squid Startup Error with PPTP

    Locked
    17
    0 Votes
    17 Posts
    9k Views
    W
    still get this error that i never got before Generating RRD graphs... ERROR: unknown DS name 'qPenaltyUp' done. and this one Warning: Invalid argument supplied for foreach() in /etc/inc/pkg-utils.inc(303) : eval()'d code on line 1 squid
  • Ftp proxy with antivirus

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Ntop is NOT gone! (pfsense 1.2.* instruction for installation)

    Locked
    23
    0 Votes
    23 Posts
    25k Views
    ?
    ntop is in the 1.2.2 package list and beyond so this thread is now moot.  Do not follow these instructions with 1.2.2 and beyond or you will absolutely, positively break something.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.