Subcategories

  • Discussions and feedback related to this forum

    607 Topics
    3k Posts
    johnpozJ

    @microserfs and what IP was that - clearly your current IPv6 address is not block that I show you connected with.. And the only other IPv4 I see you using is not blocked.. You would have to let me know what IP you were coming from that was blocked.. Send it to me via PM if you don't want to make it public.

  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    27 Topics
    114 Posts
    w0wW

    @sef1414
    Name it "run.sh", copy to pf and chmod according documentation
    https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option
    You will see messages in the system log like those quoted in the script after logger command.

  • WebServers behind two pfSenses do not work

    8
    0 Votes
    8 Posts
    962 Views
    johnpozJ

    When you say "LAN-to-LAN link." you just mean some form of point to point L2 connection?

    So you have an interface on pfsense that you put some transit IP range on - see attached simple drawing.

    So you are not natting to this transit?  Are you using any transparent proxy on either pfsense on these interfaces?  What are the firewall rules on these interfaces on each pfsense, on the transit network, any sort of floating rules?  What is the static routes you create on each pfsense for the different networks.. I assume your routing is correct since you say all works other than 80..

    Maybe issue with using a proxy, or your natting?  Always helps to have the full picture of the setup to try and figure out what is not right..

    yournetwork.png
    yournetwork.png_thumb

  • Smartphone poll: which OS and brand?

    21
    0 Votes
    21 Posts
    3k Views
    GilG

    Hmm.. Spectre - perhaps iOS is not so secure?

  • Question about pfSense (Software Development)

    2
    0 Votes
    2 Posts
    502 Views
    jahonixJ

    It is certified open source software. See for yourself on GitHub.

  • IPSEC Tunnel Creation

    2
    0 Votes
    2 Posts
    692 Views
  • *RANT* Why pfsense is popular

    Locked
    59
    0 Votes
    59 Posts
    13k Views
    ivorI

    Thread locked, OP is welcome to look for help elsewhere.

  • Identifying Corrected Atom Hardware

    11
    0 Votes
    11 Posts
    3k Views
    D

    I have the same A1SRi-2758F motherboard in my pfSense box.

    I contacted Supermicro support a couple weeks back, and they confirmed that my board needs the fix based on the serial number.

  • Switching to AT&T fiber

    5
    0 Votes
    5 Posts
    1k Views
    wgstarksW

    Yeah. I don’t trust their sales department much either. Especially when they tell me that one of their expert technicians will be here to install my new system and do a complete setup without any problems. ???

  • Merry Christmas and Happy New Year

    1
    0 Votes
    1 Posts
    353 Views
    No one has replied
  • NBase-T Buffalo

    6
    0 Votes
    6 Posts
    953 Views
    johnpozJ

    Wow those cards look promising… And now those prices are great actually... Well within home/lab budgets..

    Those would be a cheap way to get host to host running 10ge over copper... I might have to get a few of those... Thanks for mention of those!

  • New Netgate software platforms sclr / tnsr

    6
    0 Votes
    6 Posts
    3k Views
    J

    @athurdent:

    Thanks, any plans on adding Application Visibility / Filtering and maybe IPS/IDS to this?

    Yes, but this isn't really the right forum for detailed information about tnsr and future plans.

  • Login does not open captive portal when browser uses https site

    3
    0 Votes
    3 Posts
    1k Views
    johnpozJ

    https://forum.pfsense.org/index.php?topic=122999.0

    Did you enable https in your captive portal - if so then your browser would throw you an error like below..

    You would think users understand this problem already ;)  Per the thread many OSes understand captive portals and when you connect via wireless they would direct you to the portal page via http url they try and go to in the background, etc.

    edit: ah jimp beat me too it ;)

    httpscaptiveportal.png
    httpscaptiveportal.png_thumb

  • Old/retiring pfsense hardware sought…

    Locked
    4
    0 Votes
    4 Posts
    743 Views
    J

    Well, it's funny how the prices on ebay et al can't really compete with the price of netgate's sg-1000.

    So I am going to close this thread out.

    Thanks for your time!

  • Don't forget handy Cert Manger for all your Cert Needs ;)

    3
    0 Votes
    3 Posts
    1k Views
    johnpozJ

    For all those unifi controller users.. Same thing for adding the SAN to cert your using for unifi controller..

    sudo su -

    cd <unifi_base># on Windows, "%USERPROFILE%/Ubiquiti Unifi"

    cd /usr/lib/unifi

    create new certificate (with csr)

    java -jar lib/ace.jar new_cert <hostname><company><city><state><country># your CSR can be found at /var/lib/unifi

    - unifi_certificate.csr.der - unifi_certificate.csr.pem have this CSR signed by a CA, you'll get a few certificates back… copy the signed certificate(s) to <unifi_base># import the signed certificate and other intermediate certificates

    java -jar lib/ace.jar import_cert <signed_cert>[<other_intermediate_root_certs>…]

    Just add SANs you want on your cert.. Before you sign the csr on pfsense.

    unifi-trusted-cert.png
    unifi-trusted-cert.png_thumb</other_intermediate_root_certs></signed_cert></unifi_base></country></state></city></company></hostname></unifi_base>

  • Want to remove the band 3 and 5 antennas of my LTE router

    2
    0 Votes
    2 Posts
    698 Views
    chpalmerC

    Good luck!

    Generally they try to design their antennas to do multiband capability..  One could put a jack in place and run to an external directional antenna that is "in band" but that won't stop the other bands from making their presence known..  Just be more inefficient as the device tries to transmit back to them..

    Maybe another device is the answer such as a Cradlepoint or Sierra Wireless..

  • Port forwarding questions

    2
    0 Votes
    2 Posts
    582 Views
    DerelictD

    https://doc.pfsense.org/index.php/How_can_I_forward_ports_with_pfSense

    https://doc.pfsense.org/index.php/Port_Forward_Troubleshooting

  • Hey, pfSense team: no love for old hardware?

    Locked
    26
    0 Votes
    26 Posts
    6k Views
    ivorI

    Let's not revive old threads please. The 64bit and AES-NI requirements have been discussed many times, it's time to move on. Thank you.

  • Pfsense 2.4.2 upnp bug?

    6
    0 Votes
    6 Posts
    1k Views
    H

    pfSense by default trusts the LAN and not the WAN. The deny by default logic only applies for untrusted interfaces. LAN side, UPNP, DHCP, DNS, management, SSH, etc are all allowed.

  • I have issue

    2
    0 Votes
    2 Posts
    712 Views
    johnpozJ

    https://doc.pfsense.org/index.php/Why_was_FreeBSD_chosen_instead_of_another_OS

  • SG-1000: my results of playing around with it. It works ;)

    1
    0 Votes
    1 Posts
    593 Views
    No one has replied
  • Which Wake-On-Lan software on pfSense?

    2
    0 Votes
    2 Posts
    594 Views
    jimpJ

    pfSense uses wol ( https://www.freshports.org/net/wol/ ) to send wol packets. It doesn't have a daemon to listen for them.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.