Subcategories

  • Discussions and feedback related to this forum

    607 Topics
    3k Posts
    johnpozJ

    @microserfs and what IP was that - clearly your current IPv6 address is not block that I show you connected with.. And the only other IPv4 I see you using is not blocked.. You would have to let me know what IP you were coming from that was blocked.. Send it to me via PM if you don't want to make it public.

  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    27 Topics
    114 Posts
    w0wW

    @sef1414
    Name it "run.sh", copy to pf and chmod according documentation
    https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option
    You will see messages in the system log like those quoted in the script after logger command.

  • ESPRESSObin FreeBSD

    5
    1 Votes
    5 Posts
    1k Views
    stephenw10S

    I've never tried but I believe that is a uboot env you can set. Kind of surprised not to find more discussion of this on the FreeBSD mailing lists / forum, but there doesn't seem to be. Asking about this on the FreeBSD forum might be better though.

    Steve

  • Why not forward RDP?

    1
    5 Votes
    1 Posts
    220 Views
    No one has replied
  • 2 Pfsense with snort in bridged mode CARP setup

    6
    0 Votes
    6 Posts
    727 Views
    bmeeksB

    Yeah, the SYNC replication feature in Snort and Suricata is really designed to help admins who need to push the same IDS/IPS configuration to a number of identical boxes such as remote firewalls in branch offices, for example. It was not designed to replicate the parameters needed for an active-active cluster.

  • Internet not working on pfsense system

    12
    0 Votes
    12 Posts
    2k Views
    GertjanG

    @patelsaheb said in Internet not working on pfsense system:

    @Gertjan

    have added like this DNSdns-entry.png

    Yeah, I know. Welcome to the club (half - if not more, of all DNS problems start with 8.8.8.8 ...).
    You sold all your 'private' DNS info to Google, and add to that : it broke DNS.
    Go back to 'normal resolver settings (no forwarding) '(remove dot 8 and 4.2.2.2 - ), until you figure out how to set up things correctly.

  • Date/Time on Posts Here

    14
    0 Votes
    14 Posts
    1k Views
    F

    Yay! I took the mahoosive leap and moved onto Chrome, Still Win 7 but let's say baby steps for now :)

    Thanks all for you input.

  • Multiple wan working in same network

    2
    0 Votes
    2 Posts
    373 Views
    KOMK

    https://docs.netgate.com/pfsense/en/latest/routing/multi-wan.html

    Intro to Multi-WAN on pfSense

    Multi WAN on pfSense 2.3

  • firewall block rule not working

    6
    0 Votes
    6 Posts
    679 Views
    KOMK

    @patelsaheb said in firewall block rule not working:

    So can you please share snap for same on wan interface.

    No idea what you are trying to say here.

    Post screenshots of your port-forwards and WAN rules and we can try to help you.

    Also, it's generally best if you limited your posts to one issue per post, and please do not cross-post to several different forums with the same post or they will be deleted by mods.

  • Multi-Cloud DNS Management

    Moved
    5
    0 Votes
    5 Posts
    885 Views
    C

    SOA is in route 53. Multiple domains. DNS endpoints are in Azure. Pfsense deployed in AWS and on premise. I’m still piecing this together as previous IT person just left

  • Default web page using Pfsense

    3
    0 Votes
    3 Posts
    729 Views
    Y

    thanks!! i'll try that ✌

  • Basic SSH Commands, Most used putty commands

    Moved
    4
    0 Votes
    4 Posts
    8k Views
    johnpozJ

    For what possible reason does a someone post such a thing in their first post??

    Ah - its spam.. who removed the link that was in the original post? I see it in the revision history..

  • HP Server nic

    7
    0 Votes
    7 Posts
    926 Views
    provelsP

    @matt211 Well, you could do Hyper-V then...

  • FreeRADIUS3 OTP and WiFi

    6
    0 Votes
    6 Posts
    660 Views
    johnpozJ

    I guess it could replace the password with the otp... But that would really be such a pain the ass... What happens when wifi drops or something and you need to reauth.

  • how come my vlan ain't working anymore

    4
    0 Votes
    4 Posts
    535 Views
    johnpozJ

    Removed linked to shit site...
    "Last revised 28 January 2018."

    Yeah that is current <rolleyes>

  • First time Pfsense build

    18
    0 Votes
    18 Posts
    2k Views
    johnpozJ

    So many devices? there is a router, a switch and AP... Do you mean there are so many options to choose from - and you don't know which one of the unifi AP models to get?

    Comes down to budget and your clients really.. The AC lite prob a good starter AP and will give great performance..

    Pro is 3x3 mimo, while the lite is only 2x2... But what clients are you using, how many.. If your clients can not do 3x3 and don't have that many clients then you really wont see much difference between lite and pro model.

  • Best modem only for the job

    11
    0 Votes
    11 Posts
    1k Views
    randombitsR

    @monster169 SPAM

  • This topic is deleted!

    1
    0 Votes
    1 Posts
    6 Views
    No one has replied
  • no internet in my ubuntu clients please help

    40
    0 Votes
    40 Posts
    5k Views
    KOMK

    I spin up Ubuntu servers all the time, both static and dynamic, and they never have any problems talking. If it's working for you then great. I suspected it might be something totally weird, but you had it with three different boxes.

  • This topic is deleted!

    1
    0 Votes
    1 Posts
    4 Views
    No one has replied
  • NAT through OpenVPN? How to set up outbound NAT?

    4
    0 Votes
    4 Posts
    545 Views
    V

    @sgtpepperaut said in NAT through OpenVPN? How to set up outbound NAT?:

    Anyways unfortunately pfsense is only running on site A ...site B runs OpenWrt in the router/modem.

    The point here is that pfSense has the the reply-to function, which directs response packets back to the gateway where the requests came from. This function would be helpful at site B.

    Another way to get it work is by adding an outbound NAT rule on site A:
    interface: <that one you have assigned to the site-to-site VPN or even OpenVPN>
    Protocol: TCP (or what you need)
    source: any
    destination: 192.168.20.89, port: 80
    Translation address: Interface address

    However, with that rule in place there is no possibility to determine at the destination host the origin source IP of concerned connections.

    If you don't want that masquerading rule to be applied to connections from site A, copy that rule, and enter the site A LAN at source and check "Do not NAT". Then put the new rule above the other one.

  • Can Pfsense do this???

    6
    0 Votes
    6 Posts
    772 Views
    JeGrJ

    @netizen-uk said in Can Pfsense do this???:

    Is this totally wrong?

    As I'm not that deep into (private) BGP, it could be possible. But at the end AFAIK at least the upstream provider on your DC side has to allow you to speak BGP to him and almost no mainstream provider (or low-cost) do that, as you only have access to their IP space. If it would be your own IP space you get from RIPE etc. I'd guess it possible.

    But nevertheless your initial idea is to have one of the IPs on the DC node routed to your SOHO node / network and that's an easy setup using OpenVPN for example, so I'd go down that route to try it out.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.