Subcategories

  • Discussions and feedback related to this forum

    607 Topics
    3k Posts
    johnpozJ

    @microserfs and what IP was that - clearly your current IPv6 address is not block that I show you connected with.. And the only other IPv4 I see you using is not blocked.. You would have to let me know what IP you were coming from that was blocked.. Send it to me via PM if you don't want to make it public.

  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    27 Topics
    114 Posts
    w0wW

    @sef1414
    Name it "run.sh", copy to pf and chmod according documentation
    https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option
    You will see messages in the system log like those quoted in the script after logger command.

  • STUN server package?

    3
    0 Votes
    3 Posts
    2k Views
    P

    Are you able to share this package? Interested in the same thing.

  • Freerad iphone eap-tls log spam?

    3
    0 Votes
    3 Posts
    1k Views
    johnpozJ

    yeah that is what it seems like to me as well.  I for now have just turned off logging of the auth.  Maybe I am just having a brain fart but I don't see a way to log just failures and not log good auth which would be better than no logging at all.

    While they are not doing it like every minute its does produce quite a bit of spam in the logs when you have 2 of them doing it every few minutes all night long, etc.

    Or be nice if you could set it somewhere on the phone to only do it say every hour or something when they are sleeping.  I will have to look through the iphone settings, but what is odd is not seeing it from the ipad and its on the same eap-tls network.  When I get a chance I will explore the difference in settings on the ipad vs the iphones.

  • OpenSSH DSA keys deprecated in FreeBSD 11

    3
    0 Votes
    3 Posts
    2k Views
    jimpJ

    We have generated them in a while and we stopped using them completely in 2.3.2. So if you're on 2.3.2 and working fine, you're ahead of the curve.

    Only a few people have had issues that we've seen. Most all of them easily solved by a client software upgrade or tweak in the settings.

  • Smooth upgrade from 2.0.3 to 2.3.1

    1
    0 Votes
    1 Posts
    911 Views
    No one has replied
  • MOVED: "Assertion failed" from pkg durign 2.3.2 upgrade

    Locked
    1
    0 Votes
    1 Posts
    998 Views
    No one has replied
  • 2.3.2 ready?

    24
    0 Votes
    24 Posts
    13k Views
    N

    @cmb:

    There almost certainly won't be a 2.3.3 release. There will be 2.3.2_x updates no doubt, especially since that's the end of the road for 32 bit.

    Hmmmm, Would have thought 2.6.4 would be more fitting end of the road for 32 bit. ;)

  • Pfsense logging to security onion snorby mysql how to

    4
    0 Votes
    4 Posts
    6k Views
    C

    I would also appreciate any insight into logging from pfsense to security onion now that snortby is depreciated from the security-onion iso.

  • When the Boss Says "Jump", Don't ('CEO FRAUD')

    5
    0 Votes
    5 Posts
    2k Views
    H

    She was. She had a Masters and PHD related to computer systems security. We'd talk for hours after class since she mostly taught just a handful of high level courses. She taught 4 of my courses, server administration, securing servers, network design, and network security. Something like 5-6 credits per class and something I enjoyed, so easy As. GPA boost! I graduated with a little more than 2x my required credits for my major.

    I got to work with her husband who was head of IT security. Now my brother is working with him on a research project for AI learning intrusion detection. He's working towards a PHD in AI. My brother is leader("because no one else knows what they're doing") for like 4 different research projects at the same time while helping my University redesign their datacenter for their own personal cloud, while doing an intern project for programming a super computer. And he has exclusive access to the super computer and is allowed to pretty much program whatever he wants.

    He and I rarely talk, but when we do, it's a total geek fest. Not many people understand us. He's a lot more ambitious than I am.

  • Alternative for "Anubis"?

    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Glad they arn't that honest

    2
    0 Votes
    2 Posts
    1k Views
    M

    Lol 😊

  • How to block internet at time interval

    2
    0 Votes
    2 Posts
    1k Views
    P
    Go to Firewall->Schedules. Add a schedule for the days and times that you want to allow access. Add a rule at the top of the rules for the interface that allows (pass) all traffic, click "Display Advanced" at the bottom of the rule settings, choose the schedule. After the pass rule, put a block rule that blocks the traffic at all times.

    During the schedule period the pass will be in effect. Outside of the schedule, the pass rule will be disabled and the block rule will be in effect.

    If you have no other rules on the interface, then you can omit the block rule at step (3), if you like. The default action is to block anyway.

  • Blog post involving pfSense in Azure

    5
    0 Votes
    5 Posts
    3k Views
    C

    @jdillard:

    article not found.

    Sorry about that…I had a problem where the article kept reverting to draft. When I re-published, it was the next day which chaged the url.

    Thanks mhab12, for posting the right link.

    Steve

  • Binding LAN with WAN

    6
    0 Votes
    6 Posts
    6k Views
    johnpozJ

    With phil on this dns has nothing to do with ping at all..  When you say you can not ping IP, that points to you tried to ping the IP address, not resolve some name that never resolved..

    I would want to do know what he is trying to use for dns in pfsense.  It default to using unbound that would actually try to resolve.. Did you change it to the forwarder?  You have a static IP on your wan that is rfc1918 and your asking it?  Do you have the block rfc1918 set?

    Your nat device in front of pfsense could be blocking dns to the authoritative servers which is what resolver does, your isp could be doing that, etc.

  • Best Practices for Installing Custom Scripts

    3
    0 Votes
    3 Posts
    1k Views
    G

    Thanks, that's half the problem solved.  If someone could make a suggestion as to best practices for storing/backup/recovery of custom scripts that would be much appreciated.

  • Upcoming new Atom - light on details

    4
    0 Votes
    4 Posts
    2k Views
    JailerJ

    That board pictured would make a killer FreeNAS rig.

  • New pfsense 2.3.1 install with wonky internet access

    1
    0 Votes
    1 Posts
    574 Views
    No one has replied
  • You ever had a switch just up and die on you?

    3
    0 Votes
    3 Posts
    981 Views
    chpalmerC

    Lightning strike nearby a site. Lost more than the switch..

  • LOGS

    2
    0 Votes
    2 Posts
    850 Views
    I

    no one know ????????????????

  • FreeBSD 11

    1
    0 Votes
    1 Posts
    722 Views
    No one has replied
  • Patch panel test

    8
    0 Votes
    8 Posts
    2k Views
    M

    I've just completed tests… I let 2-3gb trough each port :)
    Found 5 faulty on walls...

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.