Subcategories

  • Discussions and feedback related to this forum

    610 Topics
    3k Posts
    G
    @stephenw10 This is my final note since it seem you will always look at this as an endpoint. It doesn't appear, it actually is, the facts are the facts. Still, moderator usually have a way to remove posts and ban single users, not just the entire herd, or at least the ones use. Perhaps those are more advance, or perhaps netgate forums lack that functionality. I never said negate took this issue lightly, I was just looking for some feedback. I have seen this process many times and for the looks of it, pfsense CE is very much in maintenance mode. Just because netgate wants to be politically correct does not mean it is not. The fact are there and they are fallowing the same path as others did. Again, this subject is just becoming redundant and it is affecting other users in the forum.
  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    29 Topics
    117 Posts
    w0wW
    @sef1414 Name it "run.sh", copy to pf and chmod according documentation https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option You will see messages in the system log like those quoted in the script after logger command.
  • Comprehensive list of viable pfSense chassis/barebones?

    2
    0 Votes
    2 Posts
    552 Views
    Dobby_D
    @oguruma First place I would have a look at the Netgate store if there will be something (devices) matching your needs or according to your whole situation. If not you could; Devices from the Netgate store Qotom mini PCs on Alibaba HSIPC devices on amazon.xy older Intel J1900 devices on eBay used Atom till Xeon E3 servers at eBay or refurbished elsewhere There will be for sure something that is matching your budget and fitting your needs. But without knowing your entire use case or installation you will do, we are all only doing guesswork here. So perhaps you may provide us with some more informations about your usage case!? Internet speed, provider DSL, VDSL, Fiber,..... Packets for installation like snort, Squid & SquidGuard, pfBlocker-NG, ClamAV, cellular,....... OpnVPN, WireGuard or plain IPSec?
  • The Netgate forums. . .

    1
    1
    0 Votes
    1 Posts
    250 Views
    No one has replied
  • My FF just had a DOH brainfart (Solved - user error)

    10
    2
    0 Votes
    10 Posts
    1k Views
    bingo600B
    @johnpoz The github ip's seems to have been removed from the list , the pfSense would only have logged those if they were in there. dhylands.github.io has address 185.199.108.153 dhylands.github.io has address 185.199.110.153 dhylands.github.io has address 185.199.111.153 dhylands.github.io has address 185.199.109.153 https://raw.githubusercontent.com/jpgpi250/piholemanual/master/DOHipv4.txt https://raw.githubusercontent.com/jpgpi250/piholemanual/master/DOHexceptionsIPv4.txt Here i suppose Mar 23 12:30:55 php-cgi 6601 rc.update_urltables: /etc/rc.update_urltables: Updated UA_DOH_IPV4_JGPI content from https://raw.githubusercontent.com/jpgpi250/piholemanual/master/DOHipv4.txt: 80 addresses added. But as mentioned above .. It got us to dig a bit deeper in FF and DOH (prevention). And i have learned a lesson in "blindly trust" external lists. But it's only the 2'nd time in like a year, that i have had issues w. that list. So it seems OK'ish /Bingo
  • Forum extremely slow today

    4
    1 Votes
    4 Posts
    944 Views
    O
    I am fin here too
  • Weird APR behavor

    6
    0 Votes
    6 Posts
    1k Views
    stephenw10S
    Hmm, well likely something sent a gratuitous ARP for every IP somehow. Or pfSense queries everything but that would really only happen if you ran a scan. As I said it's just odd though it's unlikely to hurt anything.
  • Windows - Ping with remote code execution (CVE-2023-23415)

    1
    0 Votes
    1 Posts
    423 Views
    No one has replied
  • Wireless networks- dns

    8
    0 Votes
    8 Posts
    1k Views
    johnpozJ
    @michmoor what would it take you 3 seconds to know if pihole is not answering, or unbound is not answering? if dns is not working and I query unbound, and it works - its pretty much a given that pihole is the problem ;) I don't recall pihole ever going down btw ;) And while some users report issues with unbound - I can not recall the last time I had any issues with it, mine never restarts, unless I do it on purpose sort of thing. Nor does it just stop.. Both have been pretty rock solid if you ask me.. Then again I am not loading 47 million things into dnsbl, nor do I forward, and sure and the hell if I did forward it wouldn't be doing it over tls nor would I be having dnssec set if I forwarded. And I don't register dhcp clients either, where unbound needs to restart every few minutes because some update to a dhcp client ;) And my isp is pretty much rock solid.. I always have a cmd prompt open, it takes what 3 seconds to do a dig directly to pfsense IP vs the default dns of unbound. I currently show unbound up for 12 hours, I made some adjustments this morning to my static reservations for some lightbulbs and needed to change some names, so unbound restarted. Other than my changes I pretty sure unbound would be running for the last 20 and half days.. which is the time pfsense has been up.
  • Installing MC on FreeBDS 11.3 (pfSense 2.4.5)

    7
    0 Votes
    7 Posts
    1k Views
    B
    @stephenw10 said in Installing MC on FreeBDS 11.3 (pfSense 2.4.5): If it's a 3100 (armv7/v6) that makes it even more difficult. It is simply impossible because indeed, the Netgate box has the arm CPU and I run pfSense in a virtual machine on Linux x64 i.e. compiled binaries are absolutely incompatible. Either way, I upgraded 2.3.5 (running mc) to 2.4.4.3 and later to 2.4.5. Obviously I had to change the paths to pfSense repositories before each upgrade but eventually all worked out just fine. I would like to thank Netgate staff for not killing the repositories with deprecated/outdated versions of pfSense and making them available to their users !
  • Custom skins for Netgate Forum settings?

    1
    0 Votes
    1 Posts
    207 Views
    No one has replied
  • Aruba S2500 switch

    10
    0 Votes
    10 Posts
    1k Views
    NogBadTheBadN
    @andyrh ah sorry I thought that it ran the same is as the 2930m switches.
  • Anybody know what these were used in? Cisco PS.

    9
    1
    0 Votes
    9 Posts
    1k Views
    Dobby_D
    6000-WATT AC Power Supply for the Cisco Catalyst 6500 Series Chassis Cisco Astec Aa23200 Power Supply 341-0077-04 Catalyst 6500 Series
  • Whats Next?

    14
    0 Votes
    14 Posts
    1k Views
    Dobby_D
    @digiguy pfSense Documentation You could have a look in, if you find something you may interested or it is matching your needs or fitting the rest of your network. If you find something configure it out following that docu.
  • 0 Votes
    10 Posts
    4k Views
    noplanN
    @noplan said in Ideas how to block certain webs (youtube) for kid's PC with possibility to enabling it for some hours.: time based rules [image: 1675882649995-4ef62a83-acbd-41c2-a9ca-b04a60e9379e-grafik.png] configure your time range and add looks like something like that [image: 1675882787882-63cd6497-a933-4056-b845-7c965b2ea1a3-grafik.png] save lets go build a firewall rule but 1st set up an alias for all your kids devices if you have em put not togehter in a VLAN [image: 1675883013986-90e4be13-0378-4f14-837d-72bd779846d9-grafik.png] then [image: 1675883035846-7672a23d-3b1e-4284-90bd-0959cea50e21-grafik.png] Action= Pass Source = ALIAS of your devices DESTINATION = the pfB Alias pfB created [image: 1675883113079-f4d9a175-3d18-4237-9fb2-c14e3f38f53d-grafik.png] Fire and forget ! could be usefull but think about it carefull [image: 1675883629094-6c4c2155-1a73-4208-baf8-e54f29276800-grafik.png] if needed or not [image: 1675883650519-17de044f-4c94-4be7-97c6-837b34d70a9a-grafik.png] **BUT IMPORTANT TO CHECK ** [image: 1675883732800-666900a9-6ef1-49e8-8f18-36f24d0948f7-grafik.png] [image: 1675883776457-db4967b4-ad2a-4043-9e5f-d140c4a55c43-grafik.png] so that should do teh magic have fun and keep us posted !
  • How do I uninstall PF sense Community Edition from my laptop

    Moved
    33
    0 Votes
    33 Posts
    4k Views
    S
    @patch ok
  • Hardware for custom build

    5
    0 Votes
    5 Posts
    953 Views
    Dobby_D
    Firewall Micro Appliance, 6 Port i225 2.5GbE LAN Fanless Mini PC Celeron N5105, No Ram No SSD Gigabit Ethernet AES-NI VPN Router Openwrt Barebone £ 212.34 Micro Appliance 4 Port i226 2.5G LAN Fanless Mini PC Celeron N6005,8GB 2666Mhz DDR4 128GB NVMe SSD Gigabit Ethernet AES-NI VPN £ 350.14
  • Software Testing Resources - Suggestions

    Locked
    5
    0 Votes
    5 Posts
    1k Views
    MauroPlanctonM
    It's great that you're trying hard. While online cources can be a great starting point, it's also important to consider other options such as attending workshops, attending a bootcamp or finding a mentor in the field.
  • ntopng helping you troubleshoot

    3
    0 Votes
    3 Posts
    890 Views
    M
    @keyser @keyser said in ntopng helping you troubleshoot: so it’s not worth much when it comes to forensics. Oh i absolutely agree. Im just trying to see how much i can do on a budget of nothing. :) Considering NTOPNG is the community edition and there really isnt much in the way of usefulness that can really be gathered by the traffic identification i figured it was neat that the flows Suricata saw NTOP saw and reported it. That certainly wont be the case all the time. From what i can tell, ntop is really good at figuring out current top talkers. For more historical data im looking at NFSEN but i cant get that to run on Ubuntu 20.04. Documentation is very dated.
  • Proxmox or ESXI

    8
    0 Votes
    8 Posts
    2k Views
    V
    I use PVE. Everything is very stable and no problems.
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    8 Views
    No one has replied
  • 0 Votes
    3 Posts
    3k Views
    B
    @backspacemild Thank you.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.