Subcategories

  • Discussions and feedback related to this forum

    608 Topics
    3k Posts
    johnpozJ
    @Popolou well that is recent for sure.. I don't recall putting that in - maybe?? Fixed now it seems which is the good thing. Thanks for bringing to attention.
  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    27 Topics
    114 Posts
    w0wW
    @sef1414 Name it "run.sh", copy to pf and chmod according documentation https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option You will see messages in the system log like those quoted in the script after logger command.
  • The infamous port 32764!

    3
    0 Votes
    3 Posts
    2k Views
    M
    Yup that's what I was talking about. With all this NSA stuff going on its got a lot of people including me paranoid.
  • Automation

    4
    0 Votes
    4 Posts
    3k Views
    stephenw10S
    There was an effort to write an Android app to make interaction with the webgui easier on a small screen: http://forum.pfsense.org/index.php/topic,61416.0.html Not really ideal though in my opinion. I think most people here would agree that pfSense would be better with greater front-end/back-end separation. At the moment it's difficult to write an alternative gui because so much is tied to the front end code. Steve
  • FreeBSD 10.0 Kernel Comes To Debian

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Extraneous Logging Entries

    2
    0 Votes
    2 Posts
    900 Views
    P
    Before the "unseen default deny rule" I put explicit deny rule/s on WAN that block and not log whatever garbage there is on WAN that I cannot do anything about and do not care about. For example, one of my ISPs has a lot of rubbish floating about on their internal network that provides the final metro wireless hop to us. Status->System Logs->Settings you can also disable logging of the default deny rule. Then put rules yourself to explicitly block and log stuff you want to see. But usually you want to see the stuff that you are not expecting, i.e. things that do not match any of the rules you thought up.
  • OpenLdap + squidGuard

    1
    0 Votes
    1 Posts
    943 Views
    No one has replied
  • Networking Debacle

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Post your pfSense build!

    2
    0 Votes
    2 Posts
    2k Views
    jimpJ
    Here is the main thread where people normally post these things: http://forum.pfsense.org/index.php/topic,57028.0.html
  • Filter HTTPS websites

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Mac Filtering

    4
    0 Votes
    4 Posts
    14k Views
    H
    Hi to all. Please give me an advise how to use the mac filtering of pfsense. Thank you in advance.
  • CCNA questions

    2
    0 Votes
    2 Posts
    1k Views
    F
    http://www.techexams.net/forums/ I absolutely love the Tech Exams forums and have gotten good advice there on everything related to certifications and recommended study materials.  There's a very active CCNA/CCNP/etc subforum there.
  • WAN down

    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • PFsense with Snort in Bridge mode Failed LOIC pentest

    3
    0 Votes
    3 Posts
    2k Views
    ?
    @jflsakfja: Snort in a bridge can't assign proper IP addresses to the network variables. Solution:http://forum.pfsense.org/index.php/topic,65858.msg358457.html#msg358457
  • 3 Days of ssh penetration attempts…

    3
    0 Votes
    3 Posts
    3k Views
    GruensFroeschliG
    More importantly: why is your ssh port of your firewall open to the internet at all? If you REALLY have to have it open, at least move it to something else than 22.
  • Kernel Panic m_getzone: m_getjcl: invalid cluster

    4
    0 Votes
    4 Posts
    3k Views
    S
    thanks for your answer… After a few weeks after i posted the previous message - i have restarted pfSense (with the usb keyboard connected) and i somehow had another Kernel Panic with the same message, so i guess connecting that USB keyboard wasn't really the solution. After googling around i found that if i add "hw.pci.enable_msix=0" in the loader.conf should bring the system up to bootable state. And indeed it did, although i still keep the USB keyboard connected to have peace of mind. I'll keep your proposition at hand just in case i experience the problem again. Thanks again.
  • A connected question about huawei switch and h3c router

    2
    0 Votes
    2 Posts
    1k Views
    P
    I can't really answer your question. But why are those addresses 192.169? That is public address space - 192.169.1.1 shows as being in Kansas, USA. I'm sure you mean to use 192.168.n.n - so maybe you have some entries in your configs with 192.168 and some with typo 192.169?
  • 1:1 NAT for a Data Center Move

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Apuntamiento Ip Publica

    3
    0 Votes
    3 Posts
    2k Views
    J
    Como informan esto es en ingles, pero te escribo esta respuesta que te puede servir. Crea un alias para el equipo interno menu superior >firewall > aliases creas un nombre ejemplo serverDVR y lo relacionas con una IP estática de tu red privada. Luego te diriges a: menu superior >firewall > nat y creas una regla donde con la siguiente configuración interface: wan protocols: tcp destination : WAN ADDRESS DESTINATION PORT: ESCOGER EL PUERTO DONDE LA LA GENTE SE COMUNICA GENERALMENTE ES HTTP REDIRECT TARGET: COLOCAS EL ALIAS QUE CREASTE REDIRECT PORT: DIGITAS EL PUERTO DONDE SE PUBLICA EL DVR PUEDE SER DIFERENTE AL HTTP REVISAR. Espero te sirva.
  • How many users can I pass through from squidguard via pfsense

    7
    0 Votes
    7 Posts
    3k Views
    N
    Not more than 180 at maximum. Around 15Mbit/s downloading from the internet. Xeon with quad core 2.1GHz 8GB RAM with Intel Gigabit NICs. 72GB HDD 10k SAS RAID1 Most time the CPU usage is around 2-3%. Some time increases up to 10%. RAM usage around 85%. Swap space 0%. Latest Squid2.7 Squid 40GB HDD cache size 2GB RAM for caching Squidguard with www.shallalist.de as blacklist
  • Difference between SQUID and SQUID3

    6
    0 Votes
    6 Posts
    33k Views
    N
    After using Squid3, I had bad experience while using gmail.com, before login in it needs url needs to be refreshed and also after loging out from Gmail it does not to the home screen of gmail, for that url has to be again refreshed. Even while using any banking HTTPS sites after completing any transactions, it does not shows any thing. And  in banking sites url are not allowed to be refreshed. Please resolve the issue of Squid3 Thanks & Regards, Prashant
  • Nfi0: Timeout after xxxx seconds

    3
    0 Votes
    3 Posts
    2k Views
    D
    Thanks, that makes sense. The server has an LSI controller with year old firmware on it. I've updated it and I've yet to have the error again (cross fingers!) Thanks again.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.