Subcategories

  • Discussions and feedback related to this forum

    607 Topics
    3k Posts
    johnpozJ

    @microserfs and what IP was that - clearly your current IPv6 address is not block that I show you connected with.. And the only other IPv4 I see you using is not blocked.. You would have to let me know what IP you were coming from that was blocked.. Send it to me via PM if you don't want to make it public.

  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    27 Topics
    114 Posts
    w0wW

    @sef1414
    Name it "run.sh", copy to pf and chmod according documentation
    https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option
    You will see messages in the system log like those quoted in the script after logger command.

  • Blocking IP ranges

    4
    0 Votes
    4 Posts
    2k Views
    stephenw10S

    Yes you can enter a range like that in a pfBlocker and it will create it from CIDRs. For example:
    Screenshot from 2022-03-30 18-15-46.png

    Resulting in an alias table:
    Screenshot from 2022-03-30 18-16-10.png

    Steve

  • Squid ClamAV Hard at work with I/O Stream

    1
    2 Votes
    1 Posts
    770 Views
    No one has replied
  • Snort Block's Proxy Chains Now!!!

    1
    0 Votes
    1 Posts
    768 Views
    No one has replied
  • TOR + KILL SWITCH

    4
    0 Votes
    4 Posts
    2k Views
    stephenw10S

    That's not something I can do for you and it's probably not something we can help with in Netgate support because it's a completely unsupported config.

    Steve

  • Basic firewall blocking for TCP:RA and TCP:PA

    3
    0 Votes
    3 Posts
    2k Views
    stephenw10S

    Those two packets look like they are ~30mins after the rest of the session. TCP states normally close as soon as the session is complete so they would certainly be closed at that point.

    Steve

  • TAC Lite Form Submission Blocked - Cross Site Origin Issues

    4
    0 Votes
    4 Posts
    2k Views
    stephenw10S

    So it only failed in Tor Browser?

    Probably some additional security setting in there to prevent cross-site tracking. I'm not sure there's much we can do about that.

    Steve

  • reestablish relayd

    22
    0 Votes
    22 Posts
    5k Views
    J

    @mike115 said in reestablish relayd:

    Anyways, have you tried an interface trigger? It may be a little redundant. I like those in my C# programs because then I don't have to write conditional tests at the granular level, although checking the IP like you did is good too because the interface may not always be reported as down. I also imagine you could further simplify this by using the built in watchdog.

    I'm not sure if we are talking about the same thing here?
    Interface triggers could possible be used on the FW to determine if/when the FW interface changes (for tracking the CARP IP, for example), but it can not be used to determine if a web server on the internal network is working properly. For that functionality we need to use ping och http requests.
    The reason for not using interface triggers for CARP monitoring is mainly simplicity. I'm not sure if interface triggers will survive a pfSense version upgrade.

  • Love my pfsense..Needs more

    2
    0 Votes
    2 Posts
    1k Views
    No one has replied
  • 0 Votes
    2 Posts
    1k Views
    DaddyGoD

    @bingo600 said in Critical Bugs Could Let Attackers Remotely Hack, Damage APC Smart UPS Devices:

    Looks like a nasty one

    shit case, that's why we use CyberPower šŸ˜‰

  • Got a virus and need advice please

    Moved
    10
    0 Votes
    10 Posts
    2k Views
    johnpozJ

    @furom said in Got a virus and need advice please:

    triggered the alert

    triggered alert from what?

  • 0 Votes
    1 Posts
    837 Views
    No one has replied
  • Connectivity issue with RealVNC

    1
    0 Votes
    1 Posts
    792 Views
    No one has replied
  • Help with a Home (complex) project

    2
    0 Votes
    2 Posts
    1k Views
    stephenw10S

    One step at a time!

    VLAN assignment via radius is by far the most complex part of that. I'm not sure I've seen that done with Freeradius in pfSense.

    But I'd start out doing the other parts one at a time and troubleshooting as you go.
    Remote Access OpenVPN, VLANs and 1:1NAT are all relatively simple.

    Steve

  • Hardware check

    11
    1 Votes
    11 Posts
    2k Views
    S

    @stephenw10 Yeah. They asked me to email their technical support team, which also deals with this. They did confirm in writing. It is what it is. 😊

  • This topic is deleted!

    2
    0 Votes
    2 Posts
    103 Views
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    4 Views
    No one has replied
  • This topic is deleted!

    2
    0 Votes
    2 Posts
    42 Views
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    12 Views
    No one has replied
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    16 Views
    No one has replied
  • This topic is deleted!

    3
    0 Votes
    3 Posts
    77 Views
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.