• RFC 3927

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • HA public service

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    C

    Right now both links are from the same ISP, fibre + WiMax. In the near future the secondary link will be switched to another ISP.

    We'll be doing some tests with DNS failover (not load balancing), we'll see how it goes…

  • Vlan Interface listed wrong, als listed wrong for netif

    Locked
    7
    0 Votes
    7 Posts
    2k Views
    jimpJ

    The vlan interface names on 1.2.3 (vlan1, vlan2, etc) have no correlation to the vlan tag. If you have four VLAN tags setup, you'll have vlan0..vlan3.

    On pfSense 2.0 the interfaces are renamed to reflect the proper tag and parent interface. For example if you have vlan tag 20 set on bge0, it gets named bge0_vlan20.

  • WAN1 -> Comp1 | WAN2 -> Comp2 (Regardless of traffic type) [SOLVED]

    Locked
    17
    0 Votes
    17 Posts
    5k Views
    M

    Maybe i'll travel around a globe someday, but not today. there is no way that personal budget can stand that kind of investment.
    Good that it was solved. Can you tag first post subject field with [solved] or similar

  • 2x WAN, 2x LAN, assign each WAN to a specific LAN, *no load balancing*

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    I

    ok will try. thank you!

  • I can only serf on Vlan1

    Locked
    10
    0 Votes
    10 Posts
    2k Views
    M

    It seems that the latest fix was the real one

  • Configurar balanceador de 2wan con filover

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    pttP

    You are posting in the "English" section of the forum ( not spanish )

    Which version of pfSense are using you ?

    Have you checked / readed the Docs ?  http://doc.pfsense.org/index.php/Main_Page

    Have you used the "search" option before post ?

    estas posteando en la seccion en ingles, utiliza ese idioma

    con que version de pfSense estas trabajando ?

    Consultaste la documentacion ? usaste el buscador antes de postear ?

    Saludos

  • Http/htpps to WAN1&2, all else to WAN3&4 ???

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    N

    All you did is ok.
    The rules are applied from top to down.

    So if there ist traffic with destination port 80 and 443 your rules for GW1 will be applied. All other traffic will use you GW2

  • 2 WAN, 1 LAN. A little problem with voip !

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Other two Interfaces are not Displaying

    Locked
    4
    0 Votes
    4 Posts
    1k Views
    H

    update !

    atleast to a stable 1.2.3 release , but i'd suggest you try the 2.0 latest rc3

  • Multi-Provider with T1 and Business Cable

    Locked
    15
    0 Votes
    15 Posts
    4k Views
    M

    You don't have to have nat on servers, but if you do it would be easier to access those servers in same subnet. create a virtual pfsense machine to see what it's capable of or try to read documentation. then you see that this product can do almost everything except brew coffee or shave my beard

  • Linux Based Firewall & Flood Blocking Server

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    M
    with filtering bridge you should use 3 interfaces for management. filtering bridge is transparent in network means, so it has no ip-address to show to clients ok as usual using search helps a lot and ofcourse documentation wiki helps with how-to's and tutorials. you can block websites with transparent squid+squidguard
  • 2 WAN, torrents on WAN1, everything else on WAN2

    Locked
    13
    0 Votes
    13 Posts
    4k Views
    M

    that subnet from where you want to ftp trafic to go out, usually lan.
    but if you have like opt3 from where you want to trafic to go out then you should change the rule to opt3 interface and any other concerning things also

  • Wireless Modem router >>Pfsense>>LAN(All use wireless)

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    M

    you should not use ap in modem, you should have wireless nic in pfsense or other ap device after pfsense to get that desired protection

  • [Solved]Two NICs with same subnet

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    E

    I repair it whit LAGG ;)

    INTERFACES -> LAG

    yeee!  Thanks
    ;)

  • Upload speed is VERY slow on 2.0RC3

    Locked
    4
    0 Votes
    4 Posts
    3k Views
  • 2.0 RC3 - Can PPP L2TP be used to create an L2TP tunnel?

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Policy based routing for DNS queries

    Locked
    4
    0 Votes
    4 Posts
    3k Views
    M

    great then

  • Multi WAN (ADSl + Wireless USB Dlink N150)

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Authenticating Proxy

    Locked
    7
    0 Votes
    7 Posts
    5k Views
    M

    @stramato:

    @Nachtfalke:

    Or just use Captive Portal.

    +1

    Then authenticate your Captive Portal using RADIUS.

    Step 2 would be to setup NPS in your Windows 2008 R2 machine and add the pfSense machine as a RADIUS client.

    Step 3 would be to create an Active Directory group, call it something like "pfSense Users" then use that in your NPS Policy.

    There are a bunch of steps really, you can get this thread moved to the Captive Portal section of the forum

    I apologize for the late response. I really need to check this more often :-X. I've looked at that option before, and its not that were simply trying to give control user access. We need to be able to have different ACL's for different users. E.G. an account for students, teachers, and administration. With each account having different access rights, kids are denied access to youtube, teachers allowed access to youtube, but denied spyware, etc. Currently i've got NPS setup on the Server 2008 machine and squid is authenticating against that. I'd like to be able to "pass" the username and password from the captive portal to the squid server. Or, if their is a way to authenticate squid with a web page that'd work to. The problem is our teachers aren't all "tech savvy or even tech comfortable, its terrible". The proxy authentication window in windows xp throws them off. If it can't be setup like this, thats fine, they'll live. I'm just looking for something that's a bit more streamlined and easy for them.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.