• Cloudflare DDNS not working

    10
    0 Votes
    10 Posts
    1k Views
    johnpozJ
    @NasKar yeah thats borked..
  • DHCP Server to Specific Interface Only

    9
    0 Votes
    9 Posts
    747 Views
    N
    @johnpoz Okay, a silly oversight on my part. Hard to justify a mask that's all network side. I should have caught that. However, my opinion is you're correct. A /24 would be far more common and useful as a default. Anyway, have a great new year!
  • Quickstart guide for DHCP Relay

    dhcp-relay
    8
    0 Votes
    8 Posts
    3k Views
    V
    @ODY-GB Yeah, both, server and client should use the same default gateway to communicate properly. The traffic seems to stop dead at this point. I'm not sure if it's because the pfSense isn't able to match up the DHCP OFFER with the original request it received as it isn't on the expected interface, or if I do need to put a firewall rule in place here. The respond from the DHCP server never reaches the client. So the client continuous sending requests as the packet capture on the guest wifi shows.
  • Error when assigning static to device

    3
    0 Votes
    3 Posts
    315 Views
    F
    @viragomann thanks. I understand the issue now.
  • Clear pfSense DNS Resolver Cache effect?

    9
    0 Votes
    9 Posts
    3k Views
    VerticalTechnikV
    @johnpoz well noted, thx a lot.
  • DHCP Relay Not Possible w/ DHCP Server re: VLAN

    4
    0 Votes
    4 Posts
    227 Views
    planedropP
    @keyser Ended up opening a redmine on it: https://redmine.pfsense.org/issues/15125
  • KEA DHCP not serving IP-Addresses

    3
    0 Votes
    3 Posts
    2k Views
    S
    @NetRunner8050 said in KEA DHCP not serving IP-Addresses: cannot lock socket lockfile https://redmine.pfsense.org/issues/14977 I also suggest staying with ISC DHCP unless you are actively testing something in Kea. There are several limitations: https://docs.netgate.com/pfsense/en/latest/releases/23-09.html#kea-dhcp-server-feature-preview-now-available
  • DNS Resolver

    4
    0 Votes
    4 Posts
    521 Views
    johnpozJ
    @antgalla I do believe pfblocker can be set to return NX, but you can also just do it in unbound under custom options like posted. I am not up to speed on all the features of pfblocker, I just use it for its fancy lists that I use in my own rules.
  • Switch to Kea DHCP not revert-able, broken ISC DHCP

    4
    0 Votes
    4 Posts
    468 Views
    johnpozJ
    @starbug no biggy, now you know..
  • PfSense & NextDns

    6
    0 Votes
    6 Posts
    3k Views
    A
    @yegor I was able to get this going with little effort from the online documents - Thank you for adding this extra URL
  • DHCP gateway not reachable once the lease has been given

    4
    0 Votes
    4 Posts
    315 Views
    johnpozJ
    @Methraton on your vlan 100 your blocking access to anything on the 192.168.50 network, So no that vlan100 would not be able to start a conversation to anything in that network. And you blocking access to every IP on the firewall, so no you wouldn't be able to ping pfsense IP address on the 192.168.100 or any other IP of pfsense. Unless the device on the vlan100 was using some external dns, it wouldn't be able to ask pfsense for dns either with those rules.. So Its not going to be able to go to www.google.com even unless it was using something external to resolve www.google.com Rules are evaluated top down, first rule to trigger wins, as traffic enters the interface from the network its attached too. edit: these rules look pointless.. What is the network on your LAN, sure isn't 192.168.100 or 192.168.50? That traffic would never be source into pfsense lan.. Is your lan network 192.168.100/27 ?? how would that be source of traffic into the lan interface? Going to anything on the firewall or the 192.168.50/27 network?? [image: 1703523460182-pointless.jpg] The only traffic that would be source inbound into the lan interface, is the lan subnet.. What network do you have on LAN, that is the only thing that could be source into the lan interface. Unless you were using lan as a transit/connector network - and if that was the cause you wouldn't create vlan interfaces on pfsense.. To be honest the whole thing looks a mess, all those rules on floating only make for complexity.. If you don't want vlan X to go so some where, or you want to allow it to do something - put the rule on the interface not floating..
  • DNS Leak while trying to route DNS queries through VPN

    4
    0 Votes
    4 Posts
    345 Views
    V
    @Grid3374 said in DNS Leak while trying to route DNS queries through VPN: "However, easier than this is to forward any DNS traffic to a public server." - which public server? You can use any public server. The points are that you forward any DNS traffic to a public server and policy route any DNS traffic (to this server) from the certain source devices to the VPN server. So all DNS traffic goes out over the VPN and hence get the VPN providers public IP.
  • bandwidthd and name resolution

    13
    0 Votes
    13 Posts
    734 Views
    H
    @johnpoz pfSense is new for me. Everything else has been running a long time. I only noticed pfSense couldn't resolve local names when I installed bandwidthd. There was no need for pfSense to resolve local names before that. Thank you for the pointers to DNS overrides.
  • Unable to PXE boot on same LAN

    1
    0 Votes
    1 Posts
    325 Views
    No one has replied
  • Pfsense and network DNS

    dns pfsense 2.7
    27
    0 Votes
    27 Posts
    3k Views
    S
    @swampland7794 I changed the DNS address to 1.1.1.1 and changed the subnet... I messed my home network and I don't have access. I'll fix it when I get home tonight and we'll see if that resolved my issue.
  • Kea DHCPv4 crashing Netgate 4100

    3
    0 Votes
    3 Posts
    264 Views
    jimpJ
    https://redmine.pfsense.org/issues/14977
  • Host override and OpenVPN

    3
    0 Votes
    3 Posts
    319 Views
    Z
    @viragomann Thanks, this seems to have done it! Couldn't figure out that the first IP in the OpenVPN servers subnet is the actually the Pfsenses Resolver.
  • RESOLVED: Diagnostics/DNS Lookup + Add Alias

    3
    0 Votes
    3 Posts
    159 Views
    JonathanLeeJ
    it took a bit but now seen [image: 1703007549700-screenshot-2023-12-19-at-9.38.45-am-resized.png]
  • Dynamic DNS with DigitalOcean - Must provide Hostname and Domain name

    2
    0 Votes
    2 Posts
    250 Views
    J
    Ugh. Well I figured this out seconds after I posted. Hopefully this will help someone in the future... The syntax is the same as DigitalOcean: "Use @ to create the record at the root of the domain"
  • host names 23.09.1-RELEASE (amd64)

    9
    0 Votes
    9 Posts
    544 Views
    johnpozJ
    @gjkrisa said in host names 23.09.1-RELEASE (amd64): you say i should not allow static reservation? No static reservations don't reload unbound at every renewal - normal dhcp registration does those.. See the link provided by @SteveITS I reserve all the the things I would ever want to resolve, which is pretty much everything.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.