Subcategories

  • Discussions about packages which handle caching and proxy functions such as squid, lightsquid, squidGuard, etc.

    4k Topics
    21k Posts
    A
    Docker image for squid 7.3 and above https://hub.docker.com/r/fredbcode/squid If pfsense does not push the update.
  • Discussions about packages whose functions are Intrusion Detection and Intrusion Prevention such as snort, suricata, etc.

    2k Topics
    16k Posts
    DARAD
    Hello team, I have a Netgate 8200 running 24.11-RELEASE (amd64) with Suricata 7.0.8_5 package installed. Suricata doesn't seem to start. It loops to red once I press the Play button on the interface. It leaves no logs in the System logs, it leaves no logs in suricata.log at /var/log/suricata/suricata_ovpns933787/suricata.log I tried launching it manually: # /usr/local/bin/suricata -V or # /usr/local/bin/suricata -c /usr/local/etc/suricata/suricata_33787_ovpns9/suricata.yaml -i suricata_ovpns933787 and I get this output ld-elf.so.1: /usr/local/bin/suricata: Undefined symbol "__strlcpy_chk@FBSD_1.8" Thanks in advance, Dara
  • Discussions about packages that handle bandwidth and network traffic monitoring functions such as bandwidtd, ntopng, etc.

    573 Topics
    3k Posts
    dennypageD
    @kabeda If memory serves, that old version of ntopng did not run as user ntopng, but as user nobody. There are lots of problems in that old version. Anyway, check the ownership and permissions of /var/db/ntopng and make sure it matches the user that ntopng runs as. You may need to set ownership of the entire hierarchy. Example: /usr/sbin/chown -R nobody:nobody /var/db/ntopng However, the better choice would be to upgrade to a more recent version.
  • Discussions about the pfBlockerNG package

    3k Topics
    20k Posts
    tinfoilmattT
    @vicking said in No blocks on IP: Is it a bad idea to have the action set to deny both instead of inbound only? Question is squarely for admin. Per the infoblock which explains, in part, the "Deny Inbound", "Deny Outbound", and "Deny Both" actions: 'Deny' Rules: 'Deny' rules create high priority 'block' or 'reject' rules on the stated interfaces. They don't change the 'pass' rules on other interfaces. Typical uses of 'Deny' rules are: Deny Both - blocks all traffic in both directions, if the source or destination IP is in the block list Deny Inbound/Deny Outbound - blocks all traffic in one direction unless it is part of a session started by traffic sent in the other direction. Does not affect traffic in the other direction. One way 'Deny' rules can be used to selectively block unsolicited incoming (new session) packets in one direction, while still allowing deliberate outgoing sessions to be created in the other direction. In other words: When set to "Deny Inbound", incoming connection requests from WAN hosts are blocked and therefore no state will be created. However a LAN host can still establish state to an otherwise listed IP. If set to "Deny Outbound", outgoing connection requests from LAN hosts are blocked and therefore no state will be created. However an incoming connection request from an otherwise listed IP to an 'open' WAN port can still establish state. If set to "Deny Both", both incoming connection requests and outbound connections requests are blocked and therefore no state will be created regardless of connection direction.
  • Discussions about Network UPS Tools and APCUPSD packages for pfSense

    102 Topics
    3k Posts
    C
    @dennypage Nicely done sir!
  • Discussions about the ACME / Let’s Encrypt package for pfSense

    503 Topics
    3k Posts
    M
    I am using the DNS-Update method I have to use a DNS-Sleep of 5 minutes to let the letsencrypt txt dns record update propagate. During this 5 minutes the acme-webgui times out. when the acme-webgui times out the Action list is NOT executed. How can I solve this ? Would it maybe be an idea to let the acme.sh script execute the actions in the action list as a post-hook instead of the web-gui? Or maybe add an option to add post-hooks in the webUI ?
  • Discussions about the FRR Dynamic Routing package on pfSense

    296 Topics
    1k Posts
    C
    This one has been tricky still not sure what to try. Any ideas?
  • Discussions about the Tailscale package

    93 Topics
    654 Posts
    C
    @luckman212, Thanks for your suggestion. I will check what I have in /usr/local/pkg/tailscale/state, and also the RAM disk settings others have brought up. I could learn more about where Tailscale and pfSense store system files. If I find anything worth sharing, I will let you know.
  • Discussions about WireGuard

    715 Topics
    4k Posts
    patient0P
    @andresbraga if you still have the firewall rules as you posted, then I don't know why from the laptop you can't ping the pfSense Wireguard address 10.10.6.1 nor the pfSense gateway 10.10.1.1 What is the routing table of the laptop. And I would run a packet capture on pfSense and check what you see if you run the ping to 10.10.1.1 or 10.10.6.1.
  • BIND forwarding is not working

    28
    0 Votes
    28 Posts
    13k Views
    B
    In case somebody is still having this issue: https://forum.netgate.com/topic/139262/query-forwarding-in-bind9-is-not-working
  • NUT Package Eaton Ellipse Pro

    3
    0 Votes
    3 Posts
    604 Views
    A
    Hi Reboot was the solution. Thx Admins
  • Install HA on PFSense Environment

    3
    0 Votes
    3 Posts
    2k Views
    W
    @jimp Thanks a lot for your answer!!! :-D
  • Does NUT package display on the Dashboard

    4
    0 Votes
    4 Posts
    445 Views
    V
    Thanks for that
  • another tftp server question

    1
    0 Votes
    1 Posts
    300 Views
    No one has replied
  • DLNA across VLAN subnets with IGMP Proxy not working

    14
    0 Votes
    14 Posts
    8k Views
    QinnQ
    Update....I was far too quick in my judgement, after say 25 sec it worked . Pimd did it, with the above conf, but now I would like to know why, for instance what I don't understand is why don't I have to define an up- or downstream. Could you give me some insight how and why this works. Cheers Qinn
  • how to Load many users on freeradius automatically?

    Moved
    7
    0 Votes
    7 Posts
    887 Views
    mike69M
    @aliadam Great.
  • FreeRADIUS3: Starting up too late for IPSEC?

    radius freeradius ipsec
    1
    0 Votes
    1 Posts
    670 Views
    No one has replied
  • LCSproc on XTM5

    9
    0 Votes
    9 Posts
    1k Views
    chpalmerC
    @rosiakc Either port on board is bad or LCD is bad.
  • Get Auto Configuration Backup to skip backing up when pfblocker updates

    Locked
    8
    0 Votes
    8 Posts
    2k Views
    lawrencedolL
    @doktornotor : Why the antagonism? The fact is that the backups triggered by pfBlockerNg (an excellent package) are useless to the firewall Administrator. It would be nice if they could be eliminated, or reduced to once a day or only once-since-the-last-non-pfBlockerNg-triggered backup. I can't help but wonder at some of the (hopefully only apparent) arrogance of some of the posters on this forum. It's not constructive, and it's off-putting. We ge it,t OK? You (the snarky, elitist responders) are brilliant and we are just worthless plebeians. You could, and should, be courteous regardless of that (pseudo) fact.
  • Spamed by Arpwatch Notification : Cron

    1
    0 Votes
    1 Posts
    286 Views
    No one has replied
  • how to disable squid

    17
    0 Votes
    17 Posts
    3k Views
    vallumV
    @mcuddy said in how to disable squid: @vallum said in how to disable squid: Psec or Gre That would be my problem. I did not create a tunnel. All I did was change the dns addresses. Check their documentation for further details At the moment, I don't know how to add the tunnel, nor the implications of doing it (am I likely to take the internet down while setting it up? etc.) I'll look into it. Do you have any direction here? You can create IPsec tunnel in pfsense , I don't see any issue with that. at securly end you need to create tunnel parameters like preshared key and IP address of site, subnet details etc. Then same information in Pfsense while setting up tunnel.
  • OpenNTPD vs. NTP

    6
    0 Votes
    6 Posts
    2k Views
    I
    With external you hopefully do not mean those in package manager too?
  • SNORT

    20
    0 Votes
    20 Posts
    3k Views
    bmeeksB
    @modesty said in SNORT: @bmeeks Hi. I only run windows + pfsense so Graylog is not for me. Can it be that there is no opensource log analyzer for snort logs? For pretty much all of the open source stuff out there for log consolidation and analysis, you are going to need a Linux box to host the software. I suggest a VMware host and then one or more Linux virtual machines. If you are a Windows shop, then Hyper-V can be your host and you can run the Linux VMs on it. The new fad these days is JSON logging, so most of the tools that ingest log files are tending toward accepting that format natively. However, some can still take plain text logs. You just might have to fiddle around with regular expressions and other minutia to get it working.
  • Question about snort + squid

    2
    0 Votes
    2 Posts
    522 Views
    bmeeksB
    @derklaus said in Question about snort + squid: Hello. I have a question regarding Snort + Squid package. Is it possible to add a Windows application to a whitelist with Snort? After that i want bypass a OpenVPN connection with the whitelist over squid. Would that be possible? You can only whitelist IP addresses in Snort, so if your Windows application runs on a specific server (as in on some host with a static IP), then the answer might be "yes". You can't whitelist by any kind of name, though.
  • manually installed package doesn't appear on lists

    8
    0 Votes
    8 Posts
    2k Views
    jimpJ
    Because you installed it "offline" and not from the pfSense repository, it won't display in the GUI list. https://www.netgate.com/docs/pfsense/releases/2-4-4-new-features-and-changes.html#errata
  • TINC Restarting every few seconds

    1
    0 Votes
    1 Posts
    482 Views
    No one has replied
  • Preinstalled packages in 2.4.4-p1

    1
    0 Votes
    1 Posts
    485 Views
    No one has replied
  • clamd / freshclam and a control panel

    1
    0 Votes
    1 Posts
    350 Views
    No one has replied
  • Email Notification haproxy

    10
    0 Votes
    10 Posts
    4k Views
    K
    @piba "I think the order is important, can you move the serverhealth_smtpmail.lua as the last script" That did the trick. Tested by deliberately shutting down the site, all worked perfectly. Thanks again!!
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.