• Haproxy Configuration - Local Network Access?

    4
    0 Votes
    4 Posts
    3k Views
    Z
    I've been trying to get this to work for a long time but just can't get HAproxy setup correctly with Ombi. Any chance you can do a step by step? Also, are you using SSL? Cheers, Zane
  • Understanding pfInfo Status

    3
    0 Votes
    3 Posts
    2k Views
    M
    https://www.freebsd.org/cgi/man.cgi?query=pf.conf&sektion=5&n=1 urgent Generate debug messages only for serious errors. The pfSense devs are using "debug urgent" so it only shows debug messages for serious errors.
  • Virtualbox IDS configuration

    6
    0 Votes
    6 Posts
    1k Views
    KOMK
    Probably not.  All your traffic is going to be within your switch but it depends on where you're putting these clients relative to your bridge. I don't know why you don't just create a fake WAN and LAN.  Make the WAN a bridged adapter on your LAN, and make the LAN an intnet interface.  Then put server on LAN and attacker on WAN.  Then you have pfSense acting as routing firewall between them.  You can use pfSense's Suricata package instead of needing a third system.
  • What is the EOL for 2.4.3-RELEASE ?

    11
    0 Votes
    11 Posts
    1k Views
    S
    @johnpoz: Huh… Where did Gertjan say you should do a fresh install? A fresh install might be good idea if your on say 2.1 trying to go to 2.4 etc.. But you should never be there, you should upgrade asap after new versions are released.. 2.4.x+1 and p1 and p2, if they release, etc.. When they make a statement on if any upgrade caveats, etc.. But I had upgraded through all the 2.x to 2.4... I only went fresh install when I moved to sg4860 vs VM, etc. Sorry English is not my language so I struggle a bit. Okay If an in place upgrade is possible there is nothing better than that. Thanks.
  • NTP server 4 seconds slow

    3
    0 Votes
    3 Posts
    447 Views
    chpalmerC
    set the desktop here to an outside source this morning earlier..    Ill play some more later this weekend. [image: time2.jpg] [image: time2.jpg_thumb]
  • Softflowd does not export MAC addresses

    5
    0 Votes
    5 Posts
    795 Views
    jimpJ
    Sure, but I said "most", not "all". Can your switches export the Netflow instead?
  • Blocking company ranges

    6
    0 Votes
    6 Posts
    858 Views
    johnpozJ
    Yeah it happens ;)  Just wanted to clarify it since users might take it as gospel vs just a typo…
  • There was an error loading the rules

    2
    0 Votes
    2 Posts
    358 Views
    S
    UPDATE: Noticed some threads describing same isssue here https://forum.pfsense.org/index.php?topic=145990.0 SYSTEM > ADVANCED > FIREWALL and NAT > Firewall Max Table Entries increased from 200000 to 500000 Will see if that fixes it.
  • How do I stop all network traffic that's not 100% needed or a OpenVPN?

    9
    0 Votes
    9 Posts
    518 Views
    J
    @Pippin: @JohnSCarter: To anyone who's interested what I was referring to is called a VPN Kill switch, it disables all network traffic that's not going through the VPN to ensure 100% that all traffic is VPN'd. Not exactly. A kill switch prevents traffic going out WAN if VPN is down. What almost never comes up as a question is NTP, pfSense update servers and maybe more. Can put it in an alias, etc…... Do a tcpdump to see what is not leaving through the VPN. I can't find tcpdump within pfSense, is there a command or somthing? Also do you happen to know how I would router one OpenVPN connection through another OpenVPN connection?
  • What about fstrim for SSD ?

    5
    0 Votes
    5 Posts
    1k Views
    KOMK
    For my answer I just did a forum search and Ivor definitively answered it last year. https://forum.pfsense.org/index.php?topic=138273.0
  • Data usage Monitoring

    4
    0 Votes
    4 Posts
    616 Views
    GertjanG
    Munin doesn't make Excel sheets neither (Excel does  ;)) But it does work on pfSense.
  • MOVED: cant install from USB

    Locked
    1
    0 Votes
    1 Posts
    170 Views
    No one has replied
  • UDP Payload Size / Allowed Fragmented Packets

    8
    0 Votes
    8 Posts
    2k Views
    T
    Hi Kevin, Sorry to resurect an old post but did the System Tunables resolve your Vonage phone BLF issues? I'm having similar with some Polycom phones on a Gamme PBX system. Packet capture shows successful UDP defragmentation on one ofSense box and not on the other!? Comments would be appreciated. Tim
  • Hanging pfsense

    3
    0 Votes
    3 Posts
    459 Views
    R
    You are right, I move my post to "Virtualization installations and techniques" @Admins Please remove this post.
  • Pfsense as vpn concentrator. What protocol and cpu?

    3
    0 Votes
    3 Posts
    502 Views
    W
    It's a Kirby Lake generation Xeon so it's pretty new and supports AES-NI. I've also understood from multiple sources that oVPN should support multithreading if multiple tunnels are used. Guess I'll have to test to find out if I can get the required throughpit. Thanks :)
  • Question about NIC configuration and dual port NICs

    2
    0 Votes
    2 Posts
    266 Views
    NollipfSenseN
    @ethanh100: Hi, I am setting up my first Pfsense box and have a few questions about NICs. The system I am planning on getting (Dell Poweredge 1950 III) has dual gigabit lan. I planned on having one of these on WAN, and then getting a newtwork card for the output of the LAN. THe other mobo port would be used for the other virtualized systems on that server. Does this make sense? If I were to get a NIC however, it would most likely have 2 ports, so should I just have LAN/WAN on that one card or in the way I described previously. And if I did it the first way, would it make sense and even be possible to take both those ports and plug them into the switch, just so I have double the throughput at that point, or is that pointless? Sorry about all the questions, this is my first time building a router so I just want to make sure its right. Thanks so much! I would just use the dual NIC already on the machine, and get a manageable switch for your VLAN.
  • RAM Disk Settings caused boot failure

    3
    0 Votes
    3 Posts
    610 Views
    P
    Seeing as nobody knows i eventually found the answer - if you goto Status\System Logs\Settings and look at the section titled "Log file size (Bytes)" you will see how many MB your logs are using there. There really should be a cross check here to make sure if you chose to log to memory that there will be enough available to boot.
  • How to Open a Port for Software or File Sharing

    8
    0 Votes
    8 Posts
    826 Views
    johnpozJ
    Edonkey… Wow... People still use that??  is it 2005? ;)
  • Pfsense locking up when specific NIC is installed

    3
    0 Votes
    3 Posts
    289 Views
    E
    @stephenw10: Are you running 2.4.3? The was an issue with mbuf leaks in that showed especially badly with the cxl driver. That has been fixed for a few versions though. Check the Status > Monitoring graphs for mbuf cluster usage. When you say 'completely locked up' does it stop responding at the console? Try pressing Ctl-T at the console if it appears non-responsive, what output does that give? Steve I have been on 2.4.2 since it was released, I upgraded to 2.4.3 after the most recent lockup. Next time it happens I will try the console and see if ctrl+T does anything. Both the web connection and console did not function when this happens, but I didnt try the ctrl+T thing so ill have to see.
  • How can i make a suppress list site to site (Snort)

    1
    0 Votes
    1 Posts
    151 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.