Subcategories

  • Discussions and feedback related to this forum

    607 Topics
    3k Posts
    johnpozJ
    @microserfs and what IP was that - clearly your current IPv6 address is not block that I show you connected with.. And the only other IPv4 I see you using is not blocked.. You would have to let me know what IP you were coming from that was blocked.. Send it to me via PM if you don't want to make it public.
  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    27 Topics
    114 Posts
    w0wW
    @sef1414 Name it "run.sh", copy to pf and chmod according documentation https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option You will see messages in the system log like those quoted in the script after logger command.
  • Multiple lan interfaces(ports)

    4
    0 Votes
    4 Posts
    788 Views
    johnpozJ
    Yes you can "bridge" interfaces to somewhat simulate a "switch" It is going to SUCK performance wise and completely over complicate the configuration. Are you filtering on each member, are you filtering just on the bridge interface, etc. Oh did I say it SUCKS before compared to an actual switch port - right? If you have a switch - there is ZERO reason to contemplate WASTING a very useful router interface that could be used for you know another network so you could actually firewall between your networks/vlans on your "router" vs using it as a switch port ;) If you need/want a switch on your router/firewall - then buy hardware that actually as built in switch ports. The sg3100 for example, or the 7100.. Pretty sure their other new models coming will also include actual switch ports. Yes you can bridge - No you have no reason to do it.. Is like you CAN if you really wanted to poke yourself in the eye with a stick.. But normally people tend to think this a bad idea.. Same goes for using router interfaces as switch ports via bridging them ;)
  • Renumbering my network. Any pitfalls?

    11
    0 Votes
    11 Posts
    2k Views
    DerelictD
    Let this thread serve as an example of seeing the problem, setting a maintenance window, and renumbering. It can be a MUCH better path than trying to NAT all the things because you decided to deploy 192.168.1.0/24 or, much worse, 10.0.0.0/8.
  • No longer need to shape

    3
    0 Votes
    3 Posts
    568 Views
    H
    @kom It actually seems they made some sort of changes since the last time I did testing over a year ago. I did some new testing before the bandwidth upgrade and noticed these changes.
  • error: Jul 10 17:19:26 dpinger WANGW *.*.*.*: sendto error: 64

    3
    0 Votes
    3 Posts
    6k Views
    C
    @derelict Thank you. How to suppress these error messages? This IP is not down, and the device is under our control.
  • WOL over internet, pfsense support for "iproute2"

    5
    0 Votes
    5 Posts
    1k Views
    A
    Well i got it to work. installed package "ShellCmd". This package is to simply run the following command at every bootup of the router so that the arp entry is always there. shellcmd: command: arp -s 10.0.0.254 ff:ff:ff:ff:ff:ff where 10.0.0.254 is the broadcast IP of my network ff:ff:ff:ff:ff:ff is the MAC broadcast address. Use this as is! Finally setup NAT port forwarding to 10.0.0.254 and the port you want to use for WOL, eg UDP 9
  • 0 Votes
    10 Posts
    2k Views
    M
    @sunnyg "What's even more odd is that if I ping the external FDQN when connected to the VPN the packets respond back from the external IP address, so I am pretty that something on pfSense is blocking the request." If that's true, then while connected to VPN, you should be able to browse the FQDN (public IP) of your pfSense box on port 7001, and the target webserver should be there. Unless... your work firewall is blocking port 7001 outbound. Sounds like you'll have to choose... access your internal server or be connected to work (or use a different machine). It's pretty normal to not be able to do both.
  • pfsense 2.4.3 ssh password authentication

    8
    0 Votes
    8 Posts
    1k Views
    A
    @jimp Thanks. I had gotten this sorted out. now im banging my head against setting WOL (wake on lan) to work over WAN(internet). I have that working in my oepnwrt router but im new to pfsense so dont know much. Is that something you know about :) Thanks again.
  • Ethernet Relay board connection with Netgate

    3
    0 Votes
    3 Posts
    508 Views
    stephenw10S
    So you just need to setup a VPN to Azure so the board can connect to an instance there? Steve
  • plex server running behind pfsense

    4
    0 Votes
    4 Posts
    2k Views
    P
    @horse2370 i figured it out, i had to set the static lease for freenas and plex also opened port 32400 in the firewal
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    23 Views
    No one has replied
  • SCLR Development/Announcements?

    2
    0 Votes
    2 Posts
    745 Views
    ivorI
    SCLR is still in development, we will reveal more information about it over time.
  • Port 8081 ; IDS or DNSBL

    8
    0 Votes
    8 Posts
    1k Views
    johnpozJ
    You can listen on 1000's of ports if you want on pfsense, you can forward 100's of them... Doesn't matter if your wan rules do not allow for the traffic then they would not be open from outside.
  • This topic is deleted!

    Moved
    5
    0 Votes
    5 Posts
    73 Views
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    23 Views
    No one has replied
  • This topic is deleted!

    2
    0 Votes
    2 Posts
    36 Views
  • Packet drops

    5
    0 Votes
    5 Posts
    1k Views
    A
    I can see number of lost packets in Wireshark analysis. The ratio between lost and all packets is something like 30/150000. PF shows 0 packet loss during the capture period. This is an example of one sample of course. So.. even if PF detects few lost packets and wireshark displays few dozen, I can't tell which one of those is actually detected by PF. And furthermore should I be worried about lost packets detected by PF anyway? At least some of the lost packets detected by WS I was able to link to one workstation.
  • quickbook spam?

    5
    0 Votes
    5 Posts
    858 Views
    NogBadTheBadN
    Click on the ... and flag post for moderation
  • (HTC) smartphone on Android OS accessing the Captive Portal

    1
    1 Votes
    1 Posts
    626 Views
    No one has replied
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    2 Views
    No one has replied
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    2 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.