• Need some help. Random pfSense crashes.

    25
    0 Votes
    25 Posts
    3k Views
    A
    @rcoleman-netgate Duely-noted.
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    4 Views
    No one has replied
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    4 Views
    No one has replied
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    2 Views
    No one has replied
  • Able to ping, nslookup and curl in pfSense box but curl failed in clients

    Moved
    31
    0 Votes
    31 Posts
    3k Views
    stephenw10S
    Ah, that will do it. I should have pressed that question when I asked it earlier. Lesson for today. Good result. Steve
  • 22.05 and NordVPN tunneling

    23
    0 Votes
    23 Posts
    2k Views
    stephenw10S
    Probably something in the crypto-routing that is generated by the allowed subnets. Also remember that Wireguard doesn't add any routing for you so you must add that manually if you need it. Though you're probably using policy routing here. Steve
  • Setting Speed/Duplex so you can get to the WebConfigurator

    2
    0 Votes
    2 Posts
    391 Views
    stephenw10S
    If you assign the lagg interface and leave as type none you should be able to set the speed/duplex there and have the members inherit it. Using DACs can be a problem though as they often don't present any selectable speeds to use. Steve
  • Amazon and Default route 0.0.0.0

    17
    1 Votes
    17 Posts
    1k Views
    JonathanLeeJ
    @stephenw10 I will try that next. Thanks for the recommendation.
  • Anyone Tried Bell Canada Fibe w/Home Hub 3000???

    5
    0 Votes
    5 Posts
    1k Views
    M
    @192-168-1-0 Okay - thanks for that too. My HH 2K is currently plugged into the 2x analog trunks coming into the house (Bell bonds them within the HH 2K). From there, my only cabled device is a data switch that I have for pretty much everything that is cabled into the network. There is a secondary cable connection, which is coax as I said and that runs to the TV in the family room. For some reason, if the cabled/coax PVR loses power or stops working, then I lose all of the wirelessly connected PVRs. It seems the HH 2K is really dependent on the coax-connected PVR. The Bell support person told me one time it's what stores my recordings (from any in-home PVRs, wireless) and so when I play them back, it comes off of the coax-connected PVR. As I say, if I lose the coax-connected PVR, I have no TV at all - just internet at that point. With the websites I use for watching TV - I almost don't need the "tv service" from Bell anymore. I'm considering dropping it, but I will wait and see what options they offer me to get off of the analog trunks and onto fiber...
  • move auto lock out rule?

    4
    0 Votes
    4 Posts
    590 Views
    terry.cT
    @NogBadTheBad @stephenw10 thanks guys!
  • Traffic size monitoring

    8
    0 Votes
    8 Posts
    973 Views
    stephenw10S
    Then I'm not really sure where you are getting the traffic data from currently. The logs don't record that. You need Netflow data to see session bytes remotely. Steve
  • IPv4 Upstream Gateway on WAN cause PfSense malfunction

    14
    0 Votes
    14 Posts
    1k Views
    stephenw10S
    You can reply here any time. There is no time limit on threads currently.
  • Dpinger/DNS problem after upgrade - wireguard related?

    Moved
    6
    0 Votes
    6 Posts
    996 Views
    JeGrJ
    @stephenw10 Just as a side note: still seeing that phenomenom in current snapshots / dev versions of the package. Install seems fine I guess (no immediate DNS/dpinger problem) but after upgrading/reinstalling the package you'll get it again.
  • Move from Mikrotik to pfSense

    Moved
    10
    0 Votes
    10 Posts
    2k Views
    NollipfSenseN
    @castle You positively run both. I use pfSense as my edge router and Mikrotik (RB450x2) for my LAN, the best of both world and love it. The downside is it could be expensive having two devices plus the learning curve.
  • pfSense flushes default route when second gateway is starting

    17
    0 Votes
    17 Posts
    1k Views
    stephenw10S
    That seemed likely since it's specific to starlink but you would see something in the routing log. And it has to actually receive a new dhcp lease to get that and your issue looks to be during the timeout where it's failing to pull a lease. So you have no IPv6 configured on any interface? They are all set as 'none'?
  • LDAP wrong query

    6
    0 Votes
    6 Posts
    708 Views
    stephenw10S
    Hmm I expect that to be entered in the extended query options if you need it: https://docs.netgate.com/pfsense/en/latest/usermanager/ldap.html?highlight=extended query
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    6 Views
    No one has replied
  • WEBCONFIGURATOR WRONG CERT, NO LOGIN POSSIBLE

    2
    0 Votes
    2 Posts
    320 Views
    GertjanG
    @sl3390 said in WEBCONFIGURATOR WRONG CERT, NO LOGIN POSSIBLE: Webconfigurator See tip number 4. edit : Before posting, I actually tried out the command myself. [22.05-RELEASE][admin@pfSense.xxxxx.net]/root: pfSsh.php playback generateguicert Generating a new self-signed SSL/TLS certificate for the GUI...Done. Restarting webConfigurator...Done. But I saw a : pfsense.xxxxxx.net has a security policy called HTTP Strict Transport Security (HSTS), which means that Firefox can only connect to it securely. You can’t add an exception to visit this site. because I was 'stupid' enough to activate HSTS for the cert I use for the GUI access. So, Plan B: Console/ssh option 15, and restore a previous config. And then option 11 for good manners. That did it for me.
  • Telegram what notifications I will get?

    2
    0 Votes
    2 Posts
    430 Views
    GertjanG
    @periko Notifications will get dispatches over all available notification destinations. See /etc/notices.inc : ..... /* Notify via remote methods only - not via GUI. */ function notify_all_remote($msg) { notify_via_smtp($msg); notify_via_telegram($msg); notify_via_pushover($msg); notify_via_slack($msg);
  • Using a GRE Tunnel to route VMs network and IP to external network.

    36
    0 Votes
    36 Posts
    6k Views
    stephenw10S
    Cool. Yeah you'd need a rule to pass traffic from 192.168.2.X to any on that interface. Not just v4 ICMP as shown in that screenshot. Steve
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.