• Release and renew DHCP IP address via Shell

    1
    0 Votes
    1 Posts
    237 Views
    No one has replied
  • DHCP pool wrong

    2
    0 Votes
    2 Posts
    439 Views
    S

    a8cf5bc6-b3e8-49dd-b574-8e066cf81380-image.png

    7eeb1397-29a0-4640-a107-b555519c0762-image.png

    4fe8a97a-f834-4e02-a5b5-f4e6273a7316-image.png

    URL: https://router/services_dhcp_edit.php?if=opt4&mac=xxxxxx&hostname=Latitude-E5530-non-vPro

    Should not have if=opt4, this is the LAN.

  • Looking for Web Filtering Guide

    4
    0 Votes
    4 Posts
    422 Views
    KOMK

    @starles Yes I understand what you want and you can do it with squid and squidguard but you need to get squid working first before you can use squidguard on top of it.

  • Intermittent WAN issues caused by pfSense DHCP Clients?

    3
    0 Votes
    3 Posts
    522 Views
    J

    @bingo600 Thanks Bingo,

    After changing that setting all seems to be working.

    Thanks very much for your help,

    James.

  • CloludFlare Teams and DoH

    1
    0 Votes
    1 Posts
    615 Views
    No one has replied
  • Cannot resolve DNS - OpenVPN issues

    3
    0 Votes
    3 Posts
    501 Views
    M

    @thatguy thank you for detailed response and helping me to understand more about this beautiful software. I'm happy to report that I found the error to be that of my ISP's Fibre Modem/Router device. They confimed that here was a faulty firmware update that caused bugs. The bug I was experiencing in particular was that for some reason that I do not know, certain addresses were not resolving DNS as I mentioned above, 116 being one of them which was the 'WAN' address of my pfsense. Even when I changed that IP address, and altered that port mapping rule, the firewall logging of my Fibre modem/router is showing attempts to pass that VPN client connection to that 116 address still. I was able to speak to the ISP about the issue and I was able to reset their device. From there, I was able
    to Renter the port mapping rule (I actually use Port Control Protocol (PCP) instead and this resolved the issue. Thank you for your response and for furthering my knowledge.

  • DNS leak on WAN but not on OpenVPN gateway

    6
    0 Votes
    6 Posts
    768 Views
    A
    I also had to change General setup: DNS Resolution Behavior: Use remote DNS servers, ignore local DNS I cleared all entered DNS server-Gateway assignments and reenabled "Allow DNS server list to be overridden by DHCP/PPP on WAN" I limited DNS Resolver only to LAN and my OpenVPN gateway and disabled DNS forwarding

    According to DNS leak tests there's no leakage, neither on WAN nor on VPN.

  • Super long DNS times intermittently

    12
    0 Votes
    12 Posts
    1k Views
    M

    @andyrh Thanks for that idea.

    I did a packet capture on my pfSense HW for just DNS queries on the LAN, and it's not showing hundreds per second. I guess it just shows cumulative totals, rather than totals per my one minute output. Interpreting the data that way results in a much smaller amount of queries per minute.
    Thanks for your thoughts.

  • After using pfSense for a few days, DNS refuse to work

    7
    0 Votes
    7 Posts
    744 Views
    GertjanG

    Then that traffic should be NATted to device that is a Wordpress web server.
    Right now, your pfSense GUI is exposed to the Internet.
    That's a major security issue.

    Edit : The nginx log line tells you that.

  • cannot resolve any name

    2
    0 Votes
    2 Posts
    785 Views
    N

    Apparently, another corporate router CISCO ASA connected to DMZ was the troublemaker. After physical disconnect and reboot of that device, everything started to work fine again :-)

  • DNS lookups failing periodically on VPN VLAN

    12
    0 Votes
    12 Posts
    2k Views
    GertjanG

    Things changed.
    As things do, over time.

    www.cnn.com is using DNSSEC now.

    See it for yourself :https://dnsviz.net/d/www.cnn.com/dnssec/

    Although, not with issues, as there are warnings.

    I tend to say : call them to have it fixed ?!

  • Pfsense 2.3.1 with OpenDNS (Web filtering)

    15
    0 Votes
    15 Posts
    33k Views
    T

    @comprev

    Thanks for the follow-up. I will redo the rules again and make sure the order is correct (Maybe that was the issue). I will report back once I have this completed.
    Thanks again,
    Truckin

  • Use WAN dhcp server on a vlan

    4
    0 Votes
    4 Posts
    845 Views
    V

    @gsemet
    In Interfaces > Bridges you can define a new bridge and add interfaces to it. The go to Interface Assignments, assing an interface to the new bridge and enable it. No further settings are needed on the bridge interface.
    But befor you have to ensure that there is no configuration on the vlan 10 interface. It has only to be enabled.

    However, with this setting results in the vlan 10 going down, when WAN goes down. To avoid that you can move the IP settings from the WAN interface to the bridge.

  • mDNS blocked on WAN - Only when Avahi package is enabled

    1
    1 Votes
    1 Posts
    270 Views
    No one has replied
  • Windows Work PC Can't Resolve Local DNS without FQDN

    11
    0 Votes
    11 Posts
    1k Views
    Bob.DigB

    @striker-pl One last thing, maybe it helps you, didn't helped me though, but it is the same topic: 2.5 connecting via hostname not working across interfaces

    But notice that I changed topic after the gap of "24 Days later", where an ACL in Unbound was the problem, not related to the original problem anymore.

  • PFSense/Unbound Rejecting Queries

    10
    0 Votes
    10 Posts
    2k Views
    P

    Same problem here. I need to toggle the option in the GUI twice,
    after that in works properly. Removing the ACL afterwards doesnt change anything.

    91865051-b24b-4f72-9502-d412e4ffca91-image.png

    It looks like, there is a glitch in the GUI.

    It works for some time, but afterwards it needs the ACL again. So no great news here.

  • Name resolution issue with static IP, DHCP Static Mapping works

    12
    0 Votes
    12 Posts
    2k Views
    GertjanG

    @latency0ms said in Name resolution issue with static IP, DHCP Static Mapping works:

    (even though there are quite a few posts on this)

    Ok, a quicky :
    The DHCP server maintains a file on disk with outstanding an outdated leases.
    See it here : /var/dhcpd/var/db/dhcpd6.leases : a small file with an extremely readable content.

    When you check this box :

    a13f3a6c-d832-4f4a-9a3c-f7daaca2ee5b-image.png

    It does not interact with unbound, the Resolver. Neither with the" dhcpd" daemon, the dhpc server for one or more LAN's.
    Checking this box launches another program that keeps on running - another daemon.
    I'll check the box or a minute so I can show it to you :

    [2.5.1-RELEASE][admin@pfsense.my-networkl.net]/root: ps ax | grep leases .... 89854 - Ss 0:00.00 /usr/local/sbin/dhcpleases -l /var/dhcpd/var/db/dhcpd.leases -d my-network.net -p /var/run/unbound.pid -u /var/unbound/dhcpleases_entries.conf -h /etc/hosts ....

    And to see what it does, well ..... here it is https://github.com/pfsense/FreeBSD-ports/blob/devel/sysutils/dhcpleases/files/dhcpleases.c

    Look at the program - it's open source so a click opens the source and you can read it.
    I'll recap :
    It puts a 'watch' on the /var/dhcpd/var/db/dhcpd.leases file. When it changes (because a new lease came in, and the dhcpd server updates the file), the daemon dhcpleases reads it, reads the host file, and writes it to /var/unbound/dhcpleases_entries.conf. unbound reads this file when it starts. Open it to see what's in it ^^
    Finally, the process dhcpleases restart unbound.
    Cool, right ?
    Depends.
    It restarts unbound on every new or renewed DHCP lease.
    You have one PC ? => No big deal.
    You have 8 LAN's and 6000 devices ? => unbound gets chain gunned.

    Example : you bought this nice home automation thingy device on AliExpress - let's say : your new your door bell with web cam . It asks a new lease every 60 seconds (because it looses its wifi radio signal, reconnects, launches a DHCP request and again and again). And unbound gets restart every 60 seconds. People wind up posting here to ask "why".

  • DDNS RFC 2136 Client uses ULA instead of GUA for AAAA

    6
    0 Votes
    6 Posts
    910 Views
    Bob.DigB

    While we're at it, there is always a visual problem for me, that the AAAA is shown in red, even if it is working just fine.

    Capture22.png

    Maybe @viragomann has an idea?

    When I nslookup the address with google, the answer is also correct. Is this a glitch with dynv6.com or within pfSense?

  • 0 Votes
    1 Posts
    187 Views
    No one has replied
  • 2.5.1 DNS problems ARP and Snort

    2
    0 Votes
    2 Posts
    301 Views
    VioletDragonV

    @violetdragon Update,

    When the problem with resolving websites occurs restarting DNS Resolver fixes the issue but then it acts up again, have to keep restarting it in order for it to work.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.