Subcategories

  • Discussions and feedback related to this forum

    607 Topics
    3k Posts
    johnpozJ

    @microserfs and what IP was that - clearly your current IPv6 address is not block that I show you connected with.. And the only other IPv4 I see you using is not blocked.. You would have to let me know what IP you were coming from that was blocked.. Send it to me via PM if you don't want to make it public.

  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    27 Topics
    114 Posts
    w0wW

    @sef1414
    Name it "run.sh", copy to pf and chmod according documentation
    https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option
    You will see messages in the system log like those quoted in the script after logger command.

  • This topic is deleted!

    1
    0 Votes
    1 Posts
    9 Views
    No one has replied
  • Merry Christmas

    2
    1 Votes
    2 Posts
    541 Views
    fireodoF

    @nollipfsense

    Merry Christmas and all the best!

  • S30 Thermostat dhcp log spam?

    5
    0 Votes
    5 Posts
    645 Views
    M

    I am having similar issue with EcoBee thermostat. It happens only after firmware updates. Unfortunately there is no means to disable it. If I try to reconnect ecobee back to AP it fails.
    The fix for me is to reboot the AP and things start to work.

  • Custom build or...

    5
    0 Votes
    5 Posts
    1k Views
    keyserK

    @joeseph said in Custom build or...:

    Thank you for the reply.

    Yes, definitely will support as reviews are great!

    By managed do you mean this for example? "TP-Link 8 Port Gigabit Easy Smart Switch (TL-SG108E)"
    And can you explain vlan, dmz or iot?

    [https://www.amazon.ca/TP-Link-Ethernet-Unmanaged-Replacement-TL-SG108E/dp/B00K4DS5KU?th=1](link url)

    Yes, a smart switch (managed) like that will do the trick :-)

  • 0 Votes
    4 Posts
    993 Views
    N8LBVN

    @rcoleman-netgate I am exactly doing this for fun and education.
    And at this point am curious why the drive does not come back.
    If you can turn on/off hot swapping/plugging in the hardware's bios it us usually supported.

  • This topic is deleted!

    1
    0 Votes
    1 Posts
    8 Views
    No one has replied
  • NAS or plates

    27
    0 Votes
    27 Posts
    3k Views
    keyserK

    @rcoleman-netgate While I do agree that ZFS is the superior storage filesystem because of the many many features, I would like to argue it’s use for “small home installs”. In my book it has no use in home installs unless you max out the possible disk count from the very start.

    THE most painfull thing is the fact you cannot expand ZFS pools with one disk at a time like with both software and hardware RAID if the filesystem on top supports it (which almost all filesystems does).
    So small home NAS builds should only be using ZFS if ALL disk slots are filled from the beginning. Expanding is not possible unless you add a whole new vdev. And unless that consists of the same drive count, performance will suffer greatly because data is not migrated/leveled across vdevs.

    So use ZFS with care in home builds. You need to know in advance what capacity you need and what performance you need. Expanding into more capacity and speed is VERY painfull for most small installs (involves whiping the intire layout and starting over).
    But if your do know your capacity and speed needs and can buy it up front…. Then ZFS is top dog because of the massive amount of features it provides.

  • OpenVPN Connection to pfSense

    4
    0 Votes
    4 Posts
    1k Views
    C

    Thank you for the answers! It turned out to be unrelated to pfsense issue, which is now resolved.

  • This topic is deleted!

    2
    0 Votes
    2 Posts
    56 Views
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    8 Views
    No one has replied
  • Adding Sophos Firewall OS to Netgate SG 3100

    2
    0 Votes
    2 Posts
    1k Views
    stephenw10S

    Is that even available for ARM? Even if it is ARM is not like x86, you would need an image specifically for that platform or at least for something very close to it. I doubt it is possible but I'd check those things first.

    Steve

  • This 12yrs Old Boy

    12
    0 Votes
    12 Posts
    2k Views
    R

    @nollipfsense said in This 12yrs Old Boy:

    https://twitter.com/CNET/status/1582763509623836673

    I watched 22 seconds of this.
    it's not a hack of the your WAP password.

    It's decrypting the traffic after getting in. Which is usually due to poor SSID deployment, using weak passwords, etc.

    I was asked last year (and still haven't completed) by a higher up here at Netgate to write a blog post about securing your home WiFi and why firmware updates are important for all devices... I should get back to that.

    The issue here is manufacturers are building sub-par, poorly secured devices and selling them to consumers as a solution. Weak encryption is just that – weak.

    I've been doing WiFi design for more than a decade and these are the things I design against.

  • How to secure my ip address

    4
    0 Votes
    4 Posts
    762 Views
    R

    @mcdvoiceo1 You will need to determine what you want to "secure" your IP address means and what you want to do with it.

    If you don't open anything on the firewall to the outside then you only have to worry about things inside talking to the internet. Snort or Suricata might be the best options for you.

    If you want to make it appear you are coming from somewhere that you are not then a VPN would be a good bet. Nord specifically? Probably not. The most popular things are rarely the best. They might be "good enough", however.

    Basically what is your level of concern exactly?

  • Trying to setup network failover with lan to wan configuration

    2
    0 Votes
    2 Posts
    951 Views
    stephenw10S

    Ideally you want to setup a separate subnet (a transport network) between them that isn't used anywhere else. Doing that avoids any asymmetric routing issues that might otherwise hit.

    So, yes, you could use a VLAN between them with nothing else on it if you have a physical link already in place. Or just a separate link if you're adding it.

    Otherwise there's nothing special required in pfSense, it just sees the Fortinet as a host and routes it's traffic. It becomes more complex if you want, say, the pfSense LAN clients to be able to reach the Forinet LAN clients. Easily doable if you have a transport subnet to roue across.

    Steve

  • This topic is deleted!

    1
    0 Votes
    1 Posts
    2 Views
    No one has replied
  • pfSense -> OpenVPN Ubuntu site-to-site throubleshooting help

    20
    0 Votes
    20 Posts
    2k Views
    KpuCkoK

    @stephenw10 said in pfSense -> OpenVPN Ubuntu site-to-site throubleshooting help:

    It should be: 10.0.1.0 255.255.255.0

    Of course :-)))

    Sorry about that, I have really fast fingers =]]

  • This topic is deleted!

    1
    0 Votes
    1 Posts
    9 Views
    No one has replied
  • SmartTV spamming pc

    1
    0 Votes
    1 Posts
    589 Views
    No one has replied
  • For Sale post deleted without warning and other Netgate support failures

    12
    0 Votes
    12 Posts
    2k Views
    stephenw10S

    Not your fault, it wasn't hidden when you moved it. That was all on me. 😉

  • Force source IP address

    4
    0 Votes
    4 Posts
    1k Views
    S

    @viragomann , thanks!

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.