Subcategories

  • Discussions and feedback related to this forum

    607 Topics
    3k Posts
    johnpozJ
    @microserfs and what IP was that - clearly your current IPv6 address is not block that I show you connected with.. And the only other IPv4 I see you using is not blocked.. You would have to let me know what IP you were coming from that was blocked.. Send it to me via PM if you don't want to make it public.
  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    27 Topics
    114 Posts
    w0wW
    @sef1414 Name it "run.sh", copy to pf and chmod according documentation https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option You will see messages in the system log like those quoted in the script after logger command.
  • NVME 1.3

    1
    0 Votes
    1 Posts
    578 Views
    No one has replied
  • 15% Packet loss in pfSense..

    3
    0 Votes
    3 Posts
    686 Views
    M
    This? https://forum.pfsense.org/index.php?topic=126200.0
  • PfSense 3.0 Inquiry to Gonzo : will rsyslogd replace syslogd?

    3
    0 Votes
    3 Posts
    1k Views
    jimpJ
    Convince FreeBSD to include a different syslog distribution in the base system, then we'll talk. We use what they use. :-) You can use the syslog-ng package if you want so you are not limited to what's in the base system. It's too late for such a change in 2.4, maybe 2.5, not sure what will be in that role for 3.0 but it's still early there. We've already been talking about dropping clog in favor of sensible log rotation and retention since space constraints are not what they used to be in the past, even with RAM disks since most systems have more RAM available. Once we remove the clog-style log requirement then it frees up a lot of options like using syslog-ng in base.
  • Unable to connect via Cisco AnyConnect

    3
    0 Votes
    3 Posts
    1k Views
    johnpozJ
    And what mode are you using with your anyconnect TLS, DTLS, ipsec/IKEv2 ?? By default 500 is static, so you want to add 4500 UDP as also static outbound nat?  Are you trying to vpn in or out to an anyconnect? "I also want to be able to connect via Cisco AnyConnect. " After you mention that your using ipsec and openvpn, that you also want to be able to connect to pfsense vpn with anyconnect?
  • AMD Ryzen pfSense

    4
    0 Votes
    4 Posts
    3k Views
    W
    I wasn't measuring bandwidth but user experience latency. Stupid fast!
  • 2.3.3 to 2.3.3_1 Killed my unit

    5
    0 Votes
    5 Posts
    1k Views
    M
    @hongkonger: i cant even go into bios.. This is the main problem the above people are suggesting it is not related to pfsense  :)
  • Shitty Chinese WIFICAM cameras 0day root exploit alert

    40
    0 Votes
    40 Posts
    7k Views
    A
    @bilbo: Is it possible to securely access the cameras via the vpn server, blocking outbound over the normal wan gateway or is that still to much of a risk? Thats how i did it. 12 Hikvision IP cams connected to a Hikvision POE NVR. The NVE is connected direct to its own interface on my pfSense appliance with all outbound blocked (as well as access to/from any of the other interfaces). I VPN in to the network to view the live feeds when needed… FYI the industry is starting to wake up. http://z-wavealliance.org/mandatory-security-implementation-z-wave-certified-iot-devices-takes-effect-today/
  • Puppet on pfSense

    12
    0 Votes
    12 Posts
    9k Views
    M
    @uenal10: The Hyperlink for the Package in the installation Guide for the Puppet Agent is Down. I need a Puppet Agent on my pfSense for my Project. Can anyone Upload a new Package? If your looking for remote monitoring and administration of pfsense, you might try this: https://forum.pfsense.org/index.php?topic=120972.0
  • Web Managed Switch Recommendations? (USED)

    24
    0 Votes
    24 Posts
    5k Views
    johnpozJ
    Ah the wording on the amazon page was a bit hazy..  But from the spec site it does show both https://www.zyxel.com/products_services/8-10-16-24-48-port-GbE-Smart-Managed-Switch-GS1900-Series/ IEEE 802.3af PoE (GS1900-8HP/10HP/24HP/48HP) IEEE 802.3at PoE plus (GS1900-8HP/10HP/24HP/48HP) But on the amazon site it just says High-power PoE+ support IEEE 802.3at (70W Budget) Looks like a pretty good choice.. Have fun with it!!!
  • Intel AMT - quick temporary fix until new BIOS release

    8
    0 Votes
    8 Posts
    3k Views
    BBcan177B
    @seanmcb: Is/was AMT enabled by default on any of the hardware sold at the pfsense/netgate store? https://www.reddit.com/r/PFSENSE/comments/68opmm/are_any_of_the_pfsense_appliances_vulnerable_to/
  • Finally seeing FTP be killed off by major player..

    2
    0 Votes
    2 Posts
    879 Views
    jimpJ
    It's progress! Wake me when they remove the FTP client though.  :D
  • One way to get iot devices more secure ;)

    3
    0 Votes
    3 Posts
    1k Views
    johnpozJ
    I did read that they were used as source in the original attack.  Why would your AP or any other unifi device directly exposed to the internet… Here is a unifi forum thread that exactly about what you stated https://community.ubnt.com/t5/UniFi-Routing-Switching/BrickerBot/td-p/1890896
  • OwnCloud X Released

    16
    0 Votes
    16 Posts
    4k Views
    KOMK
    My new Nextcloud, my next Newcloud… it's all the same  ;D If you like ownCloud, you will love Nextcloud.  They even let you change the theme easily.  The default blue cloud thingy was ugly.
  • How to enable the connection to 70 sip phones to a pbx in the cloud?

    2
    0 Votes
    2 Posts
    693 Views
    KOMK
    This is a General Discussion forum. You're more likely to get help if you post in one of the many Support forums that you scrolled past to get here.  Perhaps try Installation and Upgrades or General Questions.
  • New prices

    10
    0 Votes
    10 Posts
    2k Views
    H
    All of the above prices are for business class dedicated connections with dedicated bandwidth. There is no SLA, but they do make a good best effort. In addition, I can purchase many /29s for $10/month on any of those packages. Their connections are also over GPON, but they promise to not oversubscribe the ports. They actively claim that their edge and core network can handle all customers at 100% of their provisioned rates.
  • Super weird case

    14
    0 Votes
    14 Posts
    2k Views
    M
    OMG… Found the cause... I had LZ4 enabled on both ends. Disabled and things fly like normal... OK, OK... Reenabled, rebooted everything, problem again. Disabled and rebooted again and things are back to normal. WTF?
  • Just another thanks for being amazing thread.

    1
    0 Votes
    1 Posts
    570 Views
    No one has replied
  • Pfsense integration into existing network cache and web filter

    1
    0 Votes
    1 Posts
    592 Views
    No one has replied
  • 0 Votes
    3 Posts
    814 Views
    stephenw10S
    Hmm, yeah it pretty much doesn't work like that. Unless maybe the upstream provider is artificially limiting you to 4Mbps per IP address in that subnet but allowing you to use multiple IPs.  Like they expect you to be using multiple clients in that subnet for example. You still can't combine those IPs to one one link of multiples of 4Mbps but if you have a number of things making connections thought pfSense you could NAT them to a range of IPs on the WAN to get 4Mbps per connection. Steve
  • Secure Zone Monitor

    1
    0 Votes
    1 Posts
    688 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.