Subcategories

  • Discussions and feedback related to this forum

    608 Topics
    3k Posts
    johnpozJ
    @Popolou well that is recent for sure.. I don't recall putting that in - maybe?? Fixed now it seems which is the good thing. Thanks for bringing to attention.
  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    27 Topics
    114 Posts
    w0wW
    @sef1414 Name it "run.sh", copy to pf and chmod according documentation https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option You will see messages in the system log like those quoted in the script after logger command.
  • Replace Palo Alto Firewalls with PFSense Appliances

    1
    0 Votes
    1 Posts
    240 Views
    No one has replied
  • Best way using pfSense to block Torrent / P2P

    22
    0 Votes
    22 Posts
    16k Views
    bmeeksB
    @provels said in Best way using pfSense to block Torrent / P2P: @WD_Doug Include use of P2P and Torrenting as violations in your employee computer use policy and fire the SOB. Worked for me. +1 I worked for a very large Fortune 500 corporation in the U.S., and that was exactly the policy in place. Depending on the particular severity of the offense, you got one free "forgiveness" (but a write up still went in your file to potentially be used against you at annual review time), but a subsequent offense got you the door (as in "out the door"). Some first-time offenses (such as a downloading/viewing or heaven forbid, distributing, porn) got you fired right away. No second chance.
  • TIL netflix is using freebsd to serve content ;)

    5
    0 Votes
    5 Posts
    412 Views
    stephenw10S
    And now I want Super Mario on my firewall....
  • SMB network advice - what next?

    4
    0 Votes
    4 Posts
    487 Views
    awebsterA
    You can certainly isolate access to only certain hosts and not others. In addition, you can choose what protocols, for instance, you could allow SMB access to your file server, but not allow RDP. SSH is a bit trickier since you can tunnel other protocols through it, so you might need to disable that functionality on the SSH server first.
  • I think your book needs to be update.....

    9
    0 Votes
    9 Posts
    882 Views
    johnpozJ
    Dude I hear you... And I don't get it either.. What is written is correct, but I think he doesn't like that the term private was used vs say unallocated and now allocated.. Because 1/8 was never in the private space - it was reserved and not allocated.. Thats my take on it.. I think its fine as written.. His confusion over something that is quite clear, is what is confusing to me ;) I think he should suggest the "wording/update" that he thinks would be less confusing ;)
  • Slower Internet speed with pfsense router attached.

    pfsense wan spe
    2
    0 Votes
    2 Posts
    440 Views
    KOMK
    This isn't a support forum. Try General pfSense Questions.
  • Help Diagnose Network Delay At Specific Time

    4
    0 Votes
    4 Posts
    481 Views
    NogBadTheBadN
    @ParadiseStudios Yup.
  • Limiting bandwidth in day

    3
    0 Votes
    3 Posts
    459 Views
    H
    I'm trying to get started Thank you
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    7 Views
    No one has replied
  • 0 Votes
    22 Posts
    15k Views
    raellicR
    Shockingly, the CPU on my system ended up being defective! Lol. I replaced the motherboard/CPU and haven't had a problem ever since.
  • Exfiltration of personal data by session-replay scripts

    Locked
    12
    1 Votes
    12 Posts
    11k Views
    jimpJ
    Locking this thread as it has become a magnet for spambots.
  • query NNTP strings

    networking nntp newsgroups remote-access
    1
    0 Votes
    1 Posts
    503 Views
    No one has replied
  • feature request: pfSense cloud image

    6
    0 Votes
    6 Posts
    2k Views
    johnpozJ
    So you want pfsense/netgate to create ready to boot images for every possible virtual software? Just install from the iso, or usb installer Once you have it installed once - you can take your own image, and then whenever you want another copy there you go.. I do this for most any os I install on any hypervisor.
  • Content filtering

    2
    0 Votes
    2 Posts
    405 Views
    KOMK
    Unless you're authenticating against a user backend, then squid would have no concept of 'user'. All it would know is that IP address X requested URL Y.
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    13 Views
    No one has replied
  • How do i access a computer on the DMZ?

    4
    0 Votes
    4 Posts
    485 Views
    johnpozJ
    Access from where? And opening RDP would be a BAD freaking idea!! https://msrc-blog.microsoft.com/2019/08/13/patch-new-wormable-vulnerabilities-in-remote-desktop-services-cve-2019-1181-1182/ Just one example of why its BAD idea to expose rdp to the public.
  • Network interface mismatch

    7
    0 Votes
    7 Posts
    858 Views
    C
    I couldn't find a hardware problem, but i suspect it was a cpu issue. Anyway, I replaced it with a used Dell optiplex 390 with core i5 and things are running smoothly. Thank you for the replys
  • Hoping that the Home app on IOS 13 will alert when switches are off

    1
    0 Votes
    1 Posts
    247 Views
    No one has replied
  • Unable to connect local network to PFSense Private LAN

    7
    0 Votes
    7 Posts
    4k Views
    stephenw10S
    Ah, OK. Yes you would need firewall rules to pass the traffic. That should have appeared as blocked traffic in the firewall log before you added that TCP rule. You might want to just change that rule to allow 'any' protocol but set the source as WANnet and destination as LANnet. That will restrict it to local connections only. You will still need the static route to the .20.x subnet on every client that needs to access it. An alternative would be to put the static route on your upstream router instead. However you will hit asymmetric routing issues if you do. Steve
  • Problem in 192.168.1.1

    3
    0 Votes
    3 Posts
    551 Views
    P
    @chpalmer said in Problem in 192.168.1.1: Try each.. http://192.168.1.1 https://192.168.1.1 Have you changed the port to anything else? Thank you
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.