Subcategories

  • Discussions and feedback related to this forum

    608 Topics
    3k Posts
    johnpozJ
    @Popolou well that is recent for sure.. I don't recall putting that in - maybe?? Fixed now it seems which is the good thing. Thanks for bringing to attention.
  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    27 Topics
    114 Posts
    w0wW
    @sef1414 Name it "run.sh", copy to pf and chmod according documentation https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option You will see messages in the system log like those quoted in the script after logger command.
  • Version 2.3.5-RELEASE-p1 (i386) cant add anthing in web GUI

    3
    0 Votes
    3 Posts
    6k Views
    jimpJ
    sounds like your user may have the 'deny config write' privilege preventing it from making changes.
  • Feature Ideas

    1
    0 Votes
    1 Posts
    537 Views
    No one has replied
  • Network Jumps Pf Sense with OpenVpn

    7
    0 Votes
    7 Posts
    1k Views
    A
    Thanks KOM, I'm going to post the topic in that forum. Regards,
  • MOVED: PFSENSE TROUBLE WITH YOUTUBE

    Locked
    1
    0 Votes
    1 Posts
    330 Views
    No one has replied
  • SoftEther third party source code review

    2
    0 Votes
    2 Posts
    538 Views
    ivorI
    We don't plan on including SoftEther with pfSense however that shouldn't stop you or anyone else from developing SoftEther package for pfSense.
  • Project Honalulu aka Windows Admin Center now available

    1
    0 Votes
    1 Posts
    336 Views
    No one has replied
  • Hardware Reccomendation

    2
    0 Votes
    2 Posts
    753 Views
    H
    I like upbeat posts  ;D
  • How could I block NAT or routing from users of my LAN

    3
    0 Votes
    3 Posts
    759 Views
    S
    @johnpoz: Why would you not just create a firewall rule to stop them from going outbound?  And only allow the stuff you want, and actually limit that as will with a limiter. They are not going to the outbound directly, they are managed by el proxy server wich have full access to the WAN interface of the pfsense (www). I do not want to block them at all, I just want to know whem an user is using NAT before enter to the infraestructure.
  • Session Replay Company ip addresses to block

    2
    0 Votes
    2 Posts
    3k Views
    ?
    Looked into this more, to be honest, I did not see this coming. Have not done any website work for some time, damn. Downloaded the CSV file for complete list. WTF! If you were sleeping at the keyboard like I was, link below for more info. https://freedom-to-tinker.com/2017/11/15/no-boundaries-exfiltration-of-personal-data-by-session-replay-scripts/ Easy Privacy should have all the site domains in the block list. PfBlocker with Easy listings enabled will stop it and UBlock or NoScript would also. Did I ever tell you how much I hate javascript. >:(
  • Daisy chaining firewalls

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Mikrotik owners heads up.

    1
    0 Votes
    1 Posts
    525 Views
    No one has replied
  • Securing a virtual environment with pfsense

    2
    0 Votes
    2 Posts
    457 Views
    GrimsonG
    https://doc.pfsense.org/index.php/Main_Page https://doc.pfsense.org/index.php/Port_Forward_Troubleshooting
  • 2.4.3 dropping soon?

    8
    0 Votes
    8 Posts
    1k Views
    JailerJ
    Just updated my APU2C4 without issue. Thanks for another great release!
  • Issues with school Chromebook and Sophos Web Gateway

    3
    0 Votes
    3 Posts
    602 Views
    A
    Thanks, I'll do that.
  • Help setting up QOS in pfsense for google fiber setup

    2
    0 Votes
    2 Posts
    800 Views
    KOMK
    Either General Questions or Traffic Shaping would be a better place for your question.
  • Arp2wol, small hack to send wake on lan frames based on arp requests.

    19
    0 Votes
    19 Posts
    7k Views
    O
    Anyone have any suggestions .. TIA
  • Topic: geting started questions

    2
    0 Votes
    2 Posts
    518 Views
    D
    i have learned that what i am looking for is called a utm (unified threat management) i can not get a copy to play with for experimentation, and it looks like it is a standalone that will not play with sense OS now, seeing as how this would be a total game changer and everyone would benefit from it, and everyone needs it the #1)  question is why do we not already have it and 2)  what do we have to do in order to get it so this leads me to wonder if there is a plug in, or set of accumulative  plug-ins available that i am not seeing again after all this i want to keep a diligent focus on my end goal i NEED to be able to watch  traffic real time GUI, with a line of data classified how and what you chose to show. the ability to right click on it, stop the flow, and chose what type of restrictions to implement into the firewall for that specific address, or general domain as a incredible volume more effective, faster, and efficient that a CLI table modification.
  • Fq_Codel UI

    7
    0 Votes
    7 Posts
    1k Views
    T
    @Harvy66: Looks like this got pushed back until at least 2.4.4  Makes sense. Lots of bugs fixed in 2.4.3 and no point delaying longer that needed. I would say that this one feature could almost warrant its own release if 2.4.4 starts taking too long. fq_codel is magic for the cares of most who use it. No rules, no priorities, just set your bandwidth and done for most situations. 100% agree with you on this.  There's only a handful of parameters that can be tweaked on the fq_codel algorithm and the performance (from what I've been able to test so far) is excellent given its simplicity.  Including it in the GUI would really drive up adoption and we could then focus just on recommendations for tweaking parameters. In the meantime, setting it up manually doesn't require all too much effort.  All one needs to do is create a pair of limiters, with queues underneath them.  Apply the queues to the appropriate firewall rules and then enable fq_codel for the queues using the CLI.  The changes can easily be made persistent through reboots by using ShellCmd.
  • MOVED: squid + squidguard web filtering problem

    Locked
    1
    0 Votes
    1 Posts
    302 Views
    No one has replied
  • Bogons if ISP has private IP addresses

    4
    0 Votes
    4 Posts
    689 Views
    johnpozJ
    Also doesn't pfsense pull rfc1918 out of the bogon? if you look in the pfsense table bogon, the rf1918 networks are not there.. https://github.com/pfsense/pfsense/blob/master/src/etc/rc.update_bogons.sh if [ $ENTRIES_MAX -gt $((2*ENTRIES_TOT-${ENTRIES_V4:-0}+LINES_V4)) ]; then egrep -v "^192.168.0.0/16|^172.16.0.0/12|^10.0.0.0/8" /tmp/bogons > /etc/bogons RESULT=/sbin/pfctl -t bogons -T replace -f /etc/bogons 2>&1
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.