• CloudWatch Agent

    1
    0 Votes
    1 Posts
    214 Views
    No one has replied
  • SCSI error on VM

    Moved
    28
    1 Votes
    28 Posts
    9k Views
    W

    @ethanthekiwi said in SCSI error on VM:

    For me this issue was caused by thin provisioning on the virtual hard drive. I followed VMware's instructions to "inflate" the disk to thick provisioning and I stopped getting these errors.

    Reply

    Yeap same solution (https://techdocs.broadcom.com/us/en/vmware-cis/vsphere/vsphere/8-0/vsphere-storage-8-0/working-with-datastores-in-vsphere-storage-environment/using-datastore-browser-in-vsphere-environment.html#GUID-C371B88F-C407-4A69-8F3B-FA877D6955F8-en) worked for myself as well. :)

  • Wired issue that only happens on linux guest VMs in Proxmox

    9
    0 Votes
    9 Posts
    1k Views
    J

    Just an update for my posted problem.
    It turns out that it caused by unstable SDN of Proxmox.

    People in Proxmox forum suggest me to use the more robust "Network Bridge".
    Now, the connection between the VMs seem to be more stable.
    In other words, pfSense has no problem at all.

    Thanks to those who've read and replied to my post.

  • 0 Votes
    2 Posts
    1k Views
    G

    @seyed said in Best Practice for Connecting Physical Machines to Proxmox LAN Managed by pfSense:

    Network Configuration:
    vmbr0 – Proxmox management bridge (Public IP)
    vmbr1 – pfSense WAN interface (Public IP)
    vmbr2 – pfSense LAN interface for internal VMs

    Goal:
    I have two physical machines, each with public IP addresses assigned to their primary NICs. I would like to route these machines through pfSense by connecting their secondary NICs to the Proxmox LAN (vmbr2), effectively placing them behind the pfSense firewall.

    What do you mean with Public IPs, especially wrt vmbr0 and your 2 physical machines? Does your ISP provide multiple IP's and are these machines not behind some firewall (other than perhaps the built in one in Proxmox)?

    Proposed Solution:

    The Proxmox host has two unused NICs.
    I am considering connecting the secondary NICs of the physical machines to the unused NICs on the Proxmox server.
    These unused NICs would be bridged to vmbr2, allowing the physical machines to communicate with pfSense and other internal resources.

    This sounds like you would connect one interface to the internet and the other to your LAN, and only having the "machine" in between? Do you trust that solution? What is your intent with pfsense here?
    To connect anything to the LAN side of pfsense, I'd use a physical switch rather than trying to use the switching in Proxmox. It will work but may suffer performance wise and it sure makes life more complicated...

  • 0 Votes
    2 Posts
    366 Views
    G

    @s0ulf3re So what you are showing are the Proxmox interfaces you have set up, right?
    vmbr0 with 192.168.1.234 is your Proxmox interface, isn't it??

    If you only have one port on Proxmox, I'm thinking you need to use VLANs to be able to separate pfsense LAN away from your main LAN. Otherwise you will have a DHCP and subnet conflict.

    Perhaps if you can show your pfsense HW setup in Proxmox?
    You have to attach vmbr0 first (as this will be WAN) and then vmbr2. For vmbr2 you add a VLAN tag in Proxmox, and then all your VM's need to have the same ID on their interfaces. Also assuming you have a VLAN capable switch attached where the same VLAN tag i TAGGED on the port.

  • Unable to install pfsense

    Moved
    6
    0 Votes
    6 Posts
    900 Views
    stephenw10S

    Indeed there is no aarch64 ISO installer.

    You are ending up at the UEFI shell because it's failing to boot anything else.

    Do you see it trying and failing to boot the ISO image? You might have to choose to boot it.

  • pfSense 2.7.2 SFXGE Virtual Function (Solarflare SFC9100 family)

    1
    0 Votes
    1 Posts
    257 Views
    No one has replied
  • pfsense VM disk becomes full - please help identify the culprit?

    22
    0 Votes
    22 Posts
    5k Views
    triksT

    @triks for anyone in the same boat, it ended up being NTOPNG that was filling the RAMDISK. Followed many posts but couldn't get it to save to SSD so removed it and that resolved the issue.

  • pfsense 2.7.2 in eve-ng

    Moved
    1
    0 Votes
    1 Posts
    398 Views
    No one has replied
  • pfSense+ licensing on Proxmox HA cluster

    12
    0 Votes
    12 Posts
    2k Views
    G

    @SteveITS said in pfSense+ licensing on Proxmox HA cluster:

    @Gblenn Yes it calculates the NDI based on detected hardware.

    I haven’t tried but you might add a few extra NICs just in case for future use.

    I guess the way @griffincash should do it is to wait with registration until decided on a good config.

    Also you’ll need two Plus licenses for two routers.

    Agree, since they are both active in a HA config. But I don't see that he should need more licenses when virtualizing vs the alternative of running two 6100s...?

  • Failed to set partition scheme

    1
    0 Votes
    1 Posts
    258 Views
    No one has replied
  • which cpu for pfsense on proxmox without nic passthrough

    1
    0 Votes
    1 Posts
    266 Views
    No one has replied
  • 0 Votes
    13 Posts
    2k Views
    D

    @Gblenn I too run pfsense virtualised (proxmox) on old hardware (i7-3770S) alongside containers. I don't see any performance issues with pfsense either, in the webUI or otherwise.
    I don't use pfBlocker's DNSBL just the IP blocking. Whilst I understand downloading and updating DNSBL may be CPU intensive, why would that impact performance on every visit to the dashboard? Is the pfblocker widget CPU intensive with respect to building DNSBL stats counters?

  • pfsense and virtualbox compact disk space

    3
    0 Votes
    3 Posts
    466 Views
    AndyRHA

    With my attempts to build small images with VB, I found the easiest way to get the image to be small is to do the install on as small of a virtual disk as possible. In your case try installing pfSense on a 1.3 or 1.4GB disk. I do not know what the minimum install disk size is, but experimentation will get you there. Once there you can always restore the config you have if needed.

    There are VB options to reduce the disk, but in this case I suspect it will be easier to just re-install.

  • 0 Votes
    4 Posts
    626 Views
    N

    @jprez1980 Well., this hardware is 12 years old and considered obsolete.
    So what do you mean by lower priced?
    If you consider power consumption, this equipment is a money burner.

    Gut feeling it probably tops at 3Gbit routing but you should check it with iperf and two pc's connected at 10g speeds with pf in between to be sure.
    Of courseif we add packet filtering ids/ips etc this will be much less.

  • PfSense + HyperV

    3
    0 Votes
    3 Posts
    735 Views
    S

    @JonathanLee Yeah maybe a virtual router. I'll consider that,
    Thanks for the advice.

  • installing pfsense in xcp-ng

    8
    0 Votes
    8 Posts
    1k Views
    patient0P

    If you followed the guide (Tx checksuming of for the NICs, guest tools installed, etc), the VM is hardware virtualised (HVM), same CPU and RAM parameter as the one of ESXi and the XCP-NG host is reasonably fast then I can't see a reason why you have that limit.

    I ran pfsense (plus 3 other VMs) with XCP-NG on a J3455 CPU with 16GB RAM on a 400/90 MBits PPPoE connection. That was pretty much the limit but your can be done with even quite slow hardware

    What hardware to you use as a host. And what is the output of top -HaSP while you do the speedtest. I assume you run the speedtest from a client (client -> pfsense -> ISP -> speedtest server), not from pfsense itself.

    And again, a network diagram would help. How are you connecting to the ISP?

  • Wi-Fi AP drops Internet after 2 minutes and no DHCP

    8
    0 Votes
    8 Posts
    841 Views
    E

    @eiger3970-0 It appears I may have to move the virtual pfSense router to a hardware device.
    However, I'm unsure if I could also build some 24 hour systems on the hardware device as well?

    For example, a separate hardware device rather than this Desktop with 2 NICs, running a type 1 hypervisor with various 24 hour VMs.

    Can a new and separate hardware device be run for a 24 hour router and 24 hour VMs?

    Then this desktop can be powered on and off when needed.

  • pfSense with wireguard on Proxmox. Client cannot access Proxmox host

    7
    0 Votes
    7 Posts
    1k Views
    A

    @viragomann Thanks!

  • pfSense won't ping LAN device

    8
    0 Votes
    8 Posts
    1k Views
    E

    @viragomann The machine's Ethernet is set to a static IP 192.168.1.110/24 gateway 192.168.1.170.
    The Wi-Fi is DHCP I guess?
    I set up a new Network location on the machine and the Ethernet DHCP would not connect, so I switched back to the original network with the Ethernet static IP and it connected.
    Guess I'll see how long it stays online until the problem returns.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.