• license question

    6
    0 Votes
    6 Posts
    434 Views
    stephenw10S
    If you can still see available packages then it's still valid and would be valid for any Plus version.
  • 0 Votes
    6 Posts
    485 Views
    stephenw10S
    Yup, you won't reach that through an 1100.
  • pfSense + for Home User

    23
    0 Votes
    23 Posts
    2k Views
    F
    @stephenw10 Everything working fine now. OpenVPN suddenly started working as well. All good. Thanks for everyone's help. As an aside, I'm totally bummed that Netgate is moving to a subscription based service. I understand no company makes money giving stuff away for free. However, that's not how it was presented to us when Netgate encouraged us to move to PfSense + Home/Lab, only to then take it way from us. I really like pfSense, but for $129 a year it seems a little overpriced for home use.. I know I can downgrade to CE, but how long will that be free, or even in existence? I'll stay on pfSense + until I no longer can, but I will likely move to another product e.g. OpenSense when the time comes. I even have the pfSense swag all over my computer and comms closet in my home. Oh well, such is life in the world of business.
  • Native VLAN on sg6100?

    13
    0 Votes
    13 Posts
    749 Views
    M
    @stephenw10 said in Native VLAN on sg6100?: Including due to things I have done! Who never ?
  • Telegram bot not returning interaction for internal machine

    12
    0 Votes
    12 Posts
    713 Views
    stephenw10S
    Well I'd be checking it works still when behind something else because it doesn't look like anything special should be required in pfSense.
  • Specifying "self" in NTP configuration?

    3
    0 Votes
    3 Posts
    254 Views
    U
    Could you use ::1 for the IPv6 server 1 network? Or what about setting up a ULA fc::/7 for ntp for networks that have dynamic IPv6 and use track interface. Would this work?
  • PPPoE WAN not establishing over vodafone

    8
    0 Votes
    8 Posts
    633 Views
    stephenw10S
    Ah, nice. Probably tagged in the modem already then.
  • Logs on a separate SSD

    ssd logs
    3
    0 Votes
    3 Posts
    398 Views
    D
    @stephenw10 I understand. Thanks for the info. Then syslog. That was my second thought.
  • conditional dns forwarding

    5
    0 Votes
    5 Posts
    342 Views
    stephenw10S
    Mmm, if it's account based are they using a local AD server or similar?
  • Gui DHCP ISC KEA DNS Resolver all crashed 24.11 reinstall didn't work

    Moved
    5
    0 Votes
    5 Posts
    480 Views
    GertjanG
    @gritdesigned7930 said in Gui DHCP ISC KEA DNS Resolver all crashed 24.11 reinstall didn't work: kea-dhcp6.dhcpsrv.0x9ac02a12000] DHCPSRV_NO_SOCKETS_OPEN no interface configured to listen to DHCP traffic You have a "Kea DHCP server for IPv6" configured, but the interface is down. The Kea DHCP server IPv4 log lines are the normal startup log lines. My Kea, both IPv4 and IPv6 are up and running on several interfaces. I see only INFO messages, when leases get renewed etc. And "Write include: /var/unbound/leases/leases4.conf" ... And "Add record: "iphone-xii-gertjan.bhf.tld. 28800 IN A 192.168.1.35" Etc.
  • DNS Resolver : Pfsense re-install

    16
    0 Votes
    16 Posts
    2k Views
    stephenw10S
    So like: /usr/local/bin/php -f /usr/local/sbin/pfSsh.php playback svc restart unbound
  • QNAP pfSense dropout

    37
    0 Votes
    37 Posts
    3k Views
    stephenw10S
    Well I would start by just enabling the igmp proxy and see if that accomplishes what you need with the default options. https://docs.netgate.com/pfsense/en/latest/services/igmp-proxy.html There are some custom options you can use via a custom conf file if required: https://man.freebsd.org/cgi/man.cgi?query=igmpproxy.conf But igmpproxy is best avoided if at all possible IMO. What are you actually trying to do?
  • How to change hostname of dynamic DNS

    21
    0 Votes
    21 Posts
    2k Views
    R
    @netboy Really not a problem.
  • Can not see NAS

    9
    0 Votes
    9 Posts
    925 Views
    B
    Thanks Much. I will give it a try and update what I find but it maybe a few days until I have time. Thanks Again!!
  • PFsense reboots at the same time every day

    12
    0 Votes
    12 Posts
    1k Views
    keyserK
    @bennetbj11 said in PFsense reboots at the same time every day: Also, as it has been a while the reboot has moved back exactly 1 hour to 03:05 each day now since the clocks have changed. Any other Ideas? I am lost as to why this device is doing it. Okay that really is a strange case. Since the reboots moved back exactly one hour with daylight saving i assume, then the cause has to be external. Since the hardware/pfsense clock moved with daylight saving, then the reboot should remain at 4:05 if it was some internal service/timebased scripts or such. since it didn’t it must be external. So I would look at @stephenw10’s suggestions about power surges. But I don’t think you’ll diagnose this unless you attempt sitting at the console on the box when it happens. Does it throw any errors before hardbooting - fx. No diskstorage found/as in dead SSD/eMMC.
  • Had PfSense. Had to reinstall. Not getting a connection

    8
    0 Votes
    8 Posts
    1k Views
    stephenw10S
    @Master-Henry said in Had PfSense. Had to reinstall. Not getting a connection: There is nothing on LAN. Blank. Like at the console in the menu? Is your client pulling a dhcp lease even?
  • Block by MAC address to LAN

    33
    0 Votes
    33 Posts
    4k Views
    johnpozJ
    @netboy I only allow eap-tls auth to my "trusted" wifi network. You could issue the certs and install on their PCs - but not on their portable devices. What is the point of allowing them to connect to both with their PC.. Why would they switch between the 2 in the first place. But yeah if its just a psk they would be able to use that on any device to connect. But why would they? This is your family right - tell them use ssid B for their tablets/phones and ssid A for their PC. And don't even give them the psk to be honest. You connect the pc to the ssid you want them to connect too. Sure they know the psk they could use it on any device they want. That is why you use a more strict auth method on a trusted SSID. I find it highly unlikely they would have the know how to export a cert you installed on their PCs and move it to their mobile devices.
  • LAN cannot access internet

    Moved lan connection traffic issues
    16
    0 Votes
    16 Posts
    2k Views
    johnpozJ
    @syorke what part are you not getting that if your rule says only 192.168.1/24 can use this interface with the lan2port subnets, how would 192.168.0.x be able to use it? You need to allow both 192.168.1 and 192.168.0 - you can do that with a 2nd rule, you could do that with using a cidr of 192.168.0/23 you could create an alias that has both networks in it.. Or you could just make it an any with the "*" like your antilock out rule. No you shouldn't use a modem vip I created for use on my network.. I posted up a screen shot of my outbound nats - I highlighted the part you should be looking for that downstream network to be in.
  • Dpinger issue

    10
    0 Votes
    10 Posts
    767 Views
    dennypageD
    @cheleby Were you able to start dpinger via the command line to check the error as @stephenw10 suggested?
  • Confused since the introduction of pfSense Plus

    3
    0 Votes
    3 Posts
    646 Views
    S
    @louis2 said in Confused since the introduction of pfSense Plus: Could I go back You can install CE and restore your config file if the "config rev" is the same or earlier: https://docs.netgate.com/pfsense/en/latest/releases/versions.html https://docs.netgate.com/pfsense/en/latest/backup/restore-different-version.html @louis2 said in Confused since the introduction of pfSense Plus: what would happen when updating the FW-hardware If the generated NDI changes (based on hardware changes) the license is invalidated.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.