Subcategories

  • Discussions and feedback related to this forum

    610 Topics
    3k Posts
    G
    @stephenw10 This is my final note since it seem you will always look at this as an endpoint. It doesn't appear, it actually is, the facts are the facts. Still, moderator usually have a way to remove posts and ban single users, not just the entire herd, or at least the ones use. Perhaps those are more advance, or perhaps netgate forums lack that functionality. I never said negate took this issue lightly, I was just looking for some feedback. I have seen this process many times and for the looks of it, pfsense CE is very much in maintenance mode. Just because netgate wants to be politically correct does not mean it is not. The fact are there and they are fallowing the same path as others did. Again, this subject is just becoming redundant and it is affecting other users in the forum.
  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    29 Topics
    117 Posts
    w0wW
    @sef1414 Name it "run.sh", copy to pf and chmod according documentation https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option You will see messages in the system log like those quoted in the script after logger command.
  • FreeBSD's Release Engineering Lead Departs The Foundation, Joins Netgate

    1
    0 Votes
    1 Posts
    485 Views
    No one has replied
  • The problem with not working the gateway

    pf cluster
    10
    0 Votes
    10 Posts
    920 Views
    johnpozJ
    Your saying stuff behind pfsense doesn't have internet.. Just at a loss to why your vip would be .6? Whenever you setup a carp or hsrp or anything where there is a vip that is moved between 2 devices.. It is almost always in sequence with the actual physical IPs .1 .2 .3 would normally be the vip.. .252 .253 .254 would be the vip etc.. Where did you come up with .6???? and .1 and 3 for your physical??? So if your traffic comes in from some other path and not through the cluster, and your trying to use the cluster as your gateway for the webserver - then again NO shit its not going to work.. What I would suggest you do is get 1 pfsense working... Then graduate to a HA setup.. If your going to use some other path to and from internet or other networks, then this path needs to be connected via a transit network off your pfsense box.. Again I suggest you DRAW!!! your network so we are all clear how you have everything connected.. You understand for port forwards to work you would need them to point to the wan carp VIP!! this looks like you have your pf1 and 2 in line with each other? Traffic hits your wan carp vip, and would be forwarded to your webserver IP. dns load balancer >> pf1 - pf2 >> webservers
  • Surfshark Openvpn Configuration

    6
    0 Votes
    6 Posts
    3k Views
    A
    Here is a generic guide on how to run any VPN provider as a WAN connection: https://www.netgate.com/resources/videos/openvpn-as-a-wan-on-pfsense.html Jeff
  • Restrict-access-to-management-interface

    2
    1
    0 Votes
    2 Posts
    448 Views
    KOMK
    Did you reset the states for that ip address to be blocked? Pre-existing states are not affected by new rules or modifications to current rules.
  • Accessing File Shares Through VPN

    6
    0 Votes
    6 Posts
    1k Views
    KOMK
    Again it boils down to LAN security, and it's easy to get hung up on endless onion layers when it might be overkill for your particular environment. Is your LAN used by hostile actors? Or is it a home LAN used by you, the wife and kids? Is the data you're trying to secure that sensitive? These are all questions that need to be answered before you can choose the correct approach.
  • I got Hacked By Unlock through my Borrower

    5
    0 Votes
    5 Posts
    868 Views
    KOMK
    @anttechs said in I got Hacked By Unlock through my Borrower: I did try squidguard but I couldn't get it to stay running so I'm guessing it was because I didn't install squid? Yes, squidguard relies on squid to be installed first.
  • Combine Internet Speed with Pfsense!

    5
    0 Votes
    5 Posts
    2k Views
    JeGrJ
    @chrispeddler said in Combine Internet Speed with Pfsense!: Then you can combine them by grouping together. Still it is NOT 3x10=30Mbps or 2x10+1x20Mbps = 40Mbps. People have to understand that outbound WAN loadbalancing will not double/triple/x-tuple their speed depending on their bandwith but will balance multiple clients or client connections over those links to better saturate every one of them. But you can still end up using a line that is saturated ATM as there is not deeper intelligence in outbound routing that detects e.g. link 1 is used 100% so take link 2 or 3. Also connections that only does single connections will not gain much speed (if at all) and if your application/client is sensitive to IP address changes that can be a PITA, too.
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    12 Views
    No one has replied
  • NetData web gui not accessible

    18
    0 Votes
    18 Posts
    2k Views
    johnpozJ
    @manjotsc said in NetData web gui not accessible: didn't knew it was public ip. What did you think they were?
  • Advice on VPN product to use.

    10
    0 Votes
    10 Posts
    1k Views
    stephenw10S
    We don't really know what the goals of the project are / were so it's hard to advise usefully but... If you just needs to access EC2 instances from a laptop you could install pfSense in AWS and then use OpenVPN to connect to it from almost anything. Steve
  • Redundant Failover Internet Connection for SMB

    3
    0 Votes
    3 Posts
    524 Views
    RicoR
    Check out https://www.netgate.com/resources/videos/multi-wan-on-pfsense-23.html -Rico
  • How to allow and deny websites (HTTPS)

    7
    0 Votes
    7 Posts
    519 Views
    R
    Hi @chrispeddler! Your topic is the same solution of bouke, here works well. You need create aliases and create a firewall rule with the alias to block or allow HTTPS sites. Here I use squid guard to block HTTP.
  • What happened with the User Manager link after upgrade to 2.4.4-p3?

    3
    0 Votes
    3 Posts
    711 Views
    W
    Wow! Really thanks! My pfSense is fine now.
  • Intermittent Network Slowdown - General networking

    1
    0 Votes
    1 Posts
    274 Views
    No one has replied
  • Access by public IP

    2
    0 Votes
    2 Posts
    418 Views
    RicoR
    https://docs.netgate.com/pfsense/en/latest/nat/accessing-port-forwards-from-local-networks.html -Rico
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    13 Views
    No one has replied
  • 0 Votes
    5 Posts
    823 Views
    K
    @johnpoz Understood. But I am very new to pfSense, so as you would understand in the early stages of troubleshooting an issue, it would not be clear where the root cause of the problem would lie. It was the very first time I was configuring vlans in pfSense so I thought I had them wrong or was forgetting something. Also too, I decided to just give a summary of how I resolved the issue for the benefit of any future person who run into a similar issue as I did. Anyhow, thanks for your assistance. I appreciate it.
  • More details about BlueKeep, the Microsoft RDP vulnerability

    1
    1 Votes
    1 Posts
    331 Views
    No one has replied
  • 0 Votes
    13 Posts
    4k Views
    johnpozJ
    Not sure what shenanigans they could be up too.. Could be something to do with a ipv6 to ipv4 gateway, they could be running you through some sort of tcp proxy, etc. But tell you for sure testing such stuff over cell can be misleading info.. Could be a form of optimization.. where their handing you back a syn,ack before any sort of connection is actually made, etc. etc..
  • 0 Votes
    15 Posts
    2k Views
    G
    @stephenw10 Thanks Steve! I've been reading more and more and I really want to grow PFSense. Maybe use it as a backup for the Fortinet Firewalls in the corporate environment I work on.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.