• Best way to deny access to webgui after some failed logins

    2
    0 Votes
    2 Posts
    651 Views
    C
    That's done by default after 15 failed login attempts. That's not configurable. Still, you shouldn't leave the GUI (or any management interface of any sort on any device) open WAN-side, that's asking for trouble.
  • Web UI can not start correctly on a clone pfsense-2.3 VM

    3
    0 Votes
    3 Posts
    1k Views
    J
    Are both proxmox servers on same cluster? If so, check that you are not using same vmbr and same ip´s for fw's interfaces.
  • Monitor total data

    2
    0 Votes
    2 Posts
    726 Views
    jdillardJ
    Traffic Totals are coming back soon as a separate package. if you want more details as to why you can search or go through my post history.
  • New DNS Resolver Overrides Page

    5
    0 Votes
    5 Posts
    1k Views
    N
    Right.  Thanks. Maybe something like this would work: Keep that page and make it a link in the DNS Resolver page menu, like the access lists is (do the same for DNS Forwarder), and remove the overrides section at bottom of the pages.  Then the few who need access to the overrides without also having access to the main DNS Forwarder/Resolver page can use a shortcut in their favorites or on desktop, etc. This would provide the desired access control, retain consistency between resolver and forwarder,  without cluttering the main menu.
  • Own logo

    11
    0 Votes
    11 Posts
    4k Views
    T
    @johnpoz: "to identify which firewall I am working on." So you don't know what firewall is what based upon name, fqdn, IP? Couldn't you just use names like pf-sitename.domain.tld or pfsense.sitename.domain.tld, pfsense.sitedomain.tld, pfsense.othersitedomain.tld, etc.. or if just using IP would they be different IP? I like to apply different themes to the 3 pfsense boxes that I administer. Have you ever tried to compare 3 sets of ipsec settings across 3 different firewalls? It can get very confusing, and having a strong visual reference helps keep my head on straight. Sure, the address in the URL bar is a logical equivalent, but a different theme and image is more reliable when dealing with humans.
  • Status / Monitoring

    4
    0 Votes
    4 Posts
    1k Views
    N
    @Dawie_Kabouter: Does anyone know If there is a setting for the graph to update automatically? I constantly need to manually refresh the graph for it to update. This has been available since near the beginning of the monitoring graphs.  I've been using it all along. Status / monitoring auto updating #95 https://github.com/pfsense/FreeBSD-ports/pull/95 WARNING: This has not been "blessed" and is not supported.  Running it is on your own.
  • Monitoring Graph: Anyway to include these in "set as default"

    3
    0 Votes
    3 Posts
    1k Views
    jdillardJ
    It can't be done easily and I think other features have a higher priority. Doesn't mean it won't ever happen, just will take some time to shake the code out to a point where it fits nicely.
  • Status queue graph doesn't add up

    1
    0 Votes
    1 Posts
    576 Views
    No one has replied
  • Typo on captive portal Radius Options

    2
    0 Votes
    2 Posts
    696 Views
    jimpJ
    Fixed, thanks!
  • Possible PfSense Bug

    16
    0 Votes
    16 Posts
    4k Views
    C
    It wasn't crashing anything, you were communicating with two diff devices and switching back and forth between them, which obviously isn't going to work right.
  • Firewall rules - Toggle enable/disable status

    5
    0 Votes
    5 Posts
    2k Views
    G
    It is just that I started with NAT changes first and I noticed the X when disabled. After, I worked on Rules and was looking for the X change. When it did not changed to X I was under the wrong impression that it did not toggle properly. It is all good now.
  • Status / Monitoring Custom Period Suggestion

    6
    0 Votes
    6 Posts
    1k Views
    jdillardJ
    Ticket #6464 is fixed and should show up in the next 2.3.2 snapshots if you happen to run those and want to test it out.
  • Add to WOL List Bug & Suggestion

    1
    0 Votes
    1 Posts
    724 Views
    No one has replied
  • Multi Domain/Subdomain SSL Certeficate

    2
    0 Votes
    2 Posts
    1k Views
    johnpozJ
    So you want to use the same cert on all your devices, ie wildcard cert?  And you want to use it with a single label domain .home as well?  Yeah that is broken setup just thinking about it.  What is using the cert?  Most browsers will not like that, many browsers will want for a wildcard a valid tld so .home would be out, other would want 2 labels home.tld, etc. I don't think there is anything in the rfc that says you can not have a single label wildcard but seems like a really really bad idea… To me those are not host names, those are domain names you always have host.domain.tld so you are trying to create a wildcard cert for different domains the way I look at it. Your certs are FREE, and take like 3 seconds to produce, why would you want a wildcard in this setup in the firstplace?
  • [Solved] Radius - Access WebUI

    17
    0 Votes
    17 Posts
    7k Views
    P
    @yrebrac - your patch to set the NAS-IP to a different value, was that merged into the project?  I am running into a problem where the RADIUS server I am using will not accept 0.0.0.0 as the NAS-IP.  I am running the latest 2.3.1 release.  Can you post the diff? Patch works  :) :) :) v2.2.6
  • Status > Interfaces Feedback/Suggestions

    8
    1 Votes
    8 Posts
    1k Views
    GTAXLG
    Great, glad to hear you like my changes Chris! :) I did start doing some of the php coding myself, I was able to get this done so far, IPv4 address append configuration type add CIDR to subnet mask change ISP DNS Servers to just DNS Server(s), very simple change lmao. display NIC name Here's what it looks like, and no I didn't edit the HTML this time ;) [image: 07_06_16_22_50_59.png] What I'll probably not be able to figure out is how to parse the dhclient.leases file to pull the DHCP lease info, but you never know I could figure it out. I'm new to PHP, but I've had my foot in the water a few times with it so it's nothing terribly new to me.
  • [User Manager] I can not know the expiration date of a user set out above

    14
    0 Votes
    14 Posts
    3k Views
    jdillardJ
    I didn't make it in the last release, it is (will be) in 2.3.2 though.
  • Prevent webui from issuing a cached 301 redirect?

    2
    0 Votes
    2 Posts
    841 Views
    jimpJ
    That's up to the client, but you can disable the port 80 redirect on pfSense, which would also stop that from being a problem. Though you'll have to remember to go to https://x.x.x.x manually and not rely on the redirect in that case. The option is under System > Advanced on the Admin Access tab
  • The 2.3 new interface very nice !!!! + suggestions

    1
    0 Votes
    1 Posts
    791 Views
    No one has replied
  • Dark Scheme for Traffic Graph

    4
    0 Votes
    4 Posts
    1k Views
    jdillardJ
    The traffic graphs are in the process of being redone with nvd3 so that the styling can stay within the stylesheets. Nice work, but this won't end up in the main repo because of the way it was (read:  had to be) implemented.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.