Subcategories

  • Discussions and feedback related to this forum

    607 Topics
    3k Posts
    johnpozJ

    @microserfs and what IP was that - clearly your current IPv6 address is not block that I show you connected with.. And the only other IPv4 I see you using is not blocked.. You would have to let me know what IP you were coming from that was blocked.. Send it to me via PM if you don't want to make it public.

  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    27 Topics
    114 Posts
    w0wW

    @sef1414
    Name it "run.sh", copy to pf and chmod according documentation
    https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option
    You will see messages in the system log like those quoted in the script after logger command.

  • OpenSSH mild security bug

    5
    0 Votes
    5 Posts
    1k Views
    C

    It's specific to a configuration that seemingly only FreeBSD uses by default. It's really a non-issue, should disable password logins if you're opened to the Internet, and if your password is guessable in the amount of tries you could get through you're doing it wrong. We dropped the grace time to limit the potential impact in 2.2.4 and newer.  https://redmine.pfsense.org/issues/4875

  • WAN LAN and LAN2

    2
    0 Votes
    2 Posts
    1k Views
    N

    1 YES - setup rule on LAN2 to allow traffic to go anywhere ( similar rule like in LAN1, but use interface LAN2 for rules that apply on LAN2 ) or if you want some restriction according to your design.

    2 YES - you can also setup a pfSense in Virtual Machine if you don't have spare HW for test - firewall.

  • Weird SSL errors [SOLVED]

    4
    0 Votes
    4 Posts
    1k Views
    KOMK

    Fixed it.  I grabbed their bundle cert and used that instead of their class 1 intermediary server cert. When I looked up the chain of my cert when using their class 1 server cert, some of the intermediaries were SHA1-encoded.  Chrome seems happy now.

  • 2.2.4 - soon™

    7
    0 Votes
    7 Posts
    2k Views
    K

    I keep things simple and don't require many features so don't experience many feature issues.

  • Email Notifications on New MAC Address on DHCP Network

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • MOVED: Adding a Port

    Locked
    1
    0 Votes
    1 Posts
    553 Views
    No one has replied
  • PfSense Gold question

    4
    0 Votes
    4 Posts
    1k Views
    P

    Not a FreeBSD guy at all until I came across pfSense. Actually a long-time OpenVMS guy.

    I seem to learn a new language every year - Cobol, Fortran, Pascal, MUMPS (look that up!), C, C++ and nowadays I have to do HTML, PHP, JavaScript… and now Python is coming.

    Actually it is all the same. If you make useful subroutines with proper parameters and don't just make everything a global variable then code "just works". OO forces you to do it a bit more, but actually you could write good code in those old languages also.

  • Ebay Idiots

    4
    0 Votes
    4 Posts
    1k Views
    ?

    Idiot may be a strong word as well, but when you put pfSense in your title you are going to get looked at.. Obviously he sells off-lease firewalls and gets more hits with pfSense in his title. Maybe his version doesn't have the jumpers..I dunno.

  • Weird network issue not related to pfSense

    10
    0 Votes
    10 Posts
    2k Views
    B

    @KOM:

    I keep tight control over my networks and IP conflicts just don't happen here.

    Somehow I just knew this claim would come back to haunt me.

    Hey, I was being nice, I didn't even mention it  ;D
    Just kidding. Relax, be happy that you figured it out…

  • Problem With configuration

    4
    0 Votes
    4 Posts
    910 Views
    R

    10x for your advice

  • PfSense love from Slashdot commenters

    1
    0 Votes
    1 Posts
    562 Views
    No one has replied
  • It happened, no more bridge mode

    1
    0 Votes
    1 Posts
    801 Views
    No one has replied
  • Upcoming OpenSSL severe bug fix

    15
    0 Votes
    15 Posts
    3k Views
    dennypageD

    @jimp:

    Ssshhhh… don't kill the mood. It's a rare day we get to practically ignore an OpenSSL SA. :-)

    :)

  • Quote

    6
    0 Votes
    6 Posts
    1k Views
    KOMK

    You may say Linux is used by a lot of sysadmins, but most Linux servers are not properly maintained, so expect the "sysadmin" to only be one in title.

    I never said any such thing.  I said that Linux was the dominant computing platform these days.  How it got there can be debated, but for backend infrastructure it is judged on its merits because it can do the job.  As for but most Linux servers are not properly maintained, I don't have any such knowledge, nor do I think it's relevant to anything we're talking about here.

    the Linux kernel is far superior to the dev community that surrounds it. Linus has his hands full keeping people from ruining it.

    I don't know where you're getting this information.  The vast majority of active Linux kernel devs (or at least the majority of commits) are on payroll at places like Intel and RedHat.  There are multiple levels of maintainers that are responsible for specific areas of Linux.  Bad patches don't usually get through.  The hierarchy is in place such that if Linus disappeared tomorrow, everything would carry on without him.

  • Norton Connect Safe DNS

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Firewall patent troll

    2
    0 Votes
    2 Posts
    982 Views
    jdillardJ

    It is a republished EFF story: https://www.eff.org/deeplinks/2015/06/stupid-patent-month-wetro-lan-sues-entire-network-security-industry-expired

  • Thank you for pfSense!

    1
    0 Votes
    1 Posts
    674 Views
    No one has replied
  • 0 Votes
    4 Posts
    1k Views
    H

    And the government thinks they can do better with backdoors. Security, it's a process and all it takes is one flaw.

  • I made a pfSense icon - you can have it too!

    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • 2.2.3 is so close!

    6
    0 Votes
    6 Posts
    2k Views
    P

    Just upgraded my 2.2.3-development cluster to 2.2.3-release. All went smoothly. Super happy!

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.