• Adding second network, 10.0.0.0

    20
    0 Votes
    20 Posts
    2k Views
    L
    I think I'll just add a couple more interfaces and do it that way. I got to thinking about how I might be able to use the separate lans anyhow. Thanks to all for the input.
  • 0 Votes
    4 Posts
    475 Views
    stephenw10S
    Sure you can apply a schedule to a firewall rule so it only applies at certain times: https://docs.netgate.com/pfsense/en/latest/book/firewall/time-based-rules.html I'm not sure how that would help filtering different groups of users though. Steve
  • VoIP phones that will not register behind a PFsense firewall

    16
    0 Votes
    16 Posts
    4k Views
    T
    Hello together again, creepy. Two days ago my PFSense wasn't able anymore to connect in anyway to my CG VPN Service. Always "decompression failure" or something like that appeared. The final solution was to change from adaptive LZO Compression to OMIT Preference. Then this connection worked again. And what started to work as well? The VOIP Connections. I don't know how this belongs together, but now i can register like always my softphones and make calls. I think we would have searched years to find this out...But well, fortunately finally now it works again. That is the most important! Thanks again anyway for the interesting information you posted here and the support you gave! Have a nice weekend
  • Addding PPA gets routing/redirect error

    routing newbie redirect router
    3
    0 Votes
    3 Posts
    626 Views
    S
    @stephenw10 I just tried it again and it works. Looks like they finally updated their certs. Thanks for the help!
  • PFSense Private network interface disable very frequetly

    12
    0 Votes
    12 Posts
    1k Views
    C
    Hello.. If someone gets similar issue, please try disabling LACP strict mode. It worked in our case. All the best
  • Changing interface name crashes dhcp

    6
    0 Votes
    6 Posts
    656 Views
    stephenw10S
    Do not post them directly here! There is quite a lot of stuff in the config you probably don't want public. You could use the redacted config from the status_output file. Go to <your firewall IP>/status.php to get that. But even that has your public IP etc. We probably only need the interfaces and dhcp sections as I said. That should show any mismatch if it's happening. Steve
  • Unknown Android Device

    13
    0 Votes
    13 Posts
    1k Views
    P
    The device must have came from those who has access to your LAN...either household or guest. I even believe your Alexa uses Android. For sure, pfSense has NOTHING to do with this issue.
  • Firewall Rule Logging (for PERMIT Rule)

    5
    0 Votes
    5 Posts
    409 Views
    A
    @stephenw10 PFsense is definitely logging events (within the Firewall log view). Currently, the log is only showing the denied traffic. Based on the timestamps, it looks like I am not encountering a DoS attack. [image: 1588883599779-screen-shot-2020-05-07-at-4.32.04-pm.png]
  • LDAP

    4
    0 Votes
    4 Posts
    594 Views
    stephenw10S
    How are you testing? From Diag > Auth?
  • Change interface assignments: effects on firewall rules

    3
    0 Votes
    3 Posts
    310 Views
    C
    That's helpful, thanks. I am recreating the rules on pfSense B, rather than trying to import them. pfSense B currently has two em NICs but I will be adding two vmxnet NICs in the next maintenance window, then two more in a future maintenance window. I will be watching for reordering as they are added.
  • WAN Permit Inbound All Traffic

    4
    0 Votes
    4 Posts
    469 Views
    stephenw10S
    Yes, I completely agree with that. Having pfBlocker create aliases only and assigning them yourself allows you to see exactly what's happening. That's how I use it. Steve
  • pulling my hair out: single website cannot access on one system

    2
    0 Votes
    2 Posts
    280 Views
    stephenw10S
    Try a port test to the site from pfSense. That should work though if other clients behind it can access the site. Run packet captures to see what's happening. Is traffic for the site actually arriving at the internal pfSense interface? Is it leaving the WAN? If not where is it leaving, if anywhere? I assume you do not have Snort or Suricata running? Steve
  • Intel gigabit ct Desktop not detected

    interfaces pfsense setup network problem
    3
    0 Votes
    3 Posts
    1k Views
    W
    @WAR10CK said in Intel gigabit ct Desktop not detected: AHCI enclosure management bridge OK, pfsense recognizes the netcard, but why is it saying : AHCI enclosure management bridge under interface em0. There is no link when I plugin the cable to em0. The cable works fine in em1.
  • 0 Votes
    1 Posts
    139 Views
    No one has replied
  • Can a PFSENSE log onto another PFSENSE'S webgui?

    2
    0 Votes
    2 Posts
    329 Views
    S
    If they're set up to sync configurations (HA sync).
  • UPNP Help

    4
    0 Votes
    4 Posts
    595 Views
    stephenw10S
    Does your WAN have a public IP? miniupnpd cannot open port forwards from private IPs. You should at least see the logs from miniupnpd starting in the system log when you save the config or restart the service. Steve
  • Advanced Log Filter - Specify EXACT Port number

    5
    0 Votes
    5 Posts
    1k Views
    jimpJ
    That matches the string anywhere in the port number, same as leaving it as 19 which isn't what OP wanted. They wanted it to only match port 19 and no others, so using ^19$ is the way to do it.
  • Firewall Rule: Choose Interface Group

    3
    0 Votes
    3 Posts
    492 Views
    A
    @NogBadTheBad Thank you for sending this documentation my way! As it turns out, what I (originally) wanted to do can be accomplished using an "Alias". https://docs.netgate.com/pfsense/en/latest/firewall/aliases.html?highlight=alias You were right. Interface Groups serve an entirely different purpose.
  • Captive Portal on Static Route

    2
    0 Votes
    2 Posts
    361 Views
    GertjanG
    pfSense should host the captive portal. Routers on that network will break things.
  • Some traffic is escaping from vpn!

    14
    0 Votes
    14 Posts
    1k Views
    GertjanG
    @moxi said in Some traffic is escaping from vpn!: but why the firewall rule of: ( block any out on wan) never works? Can you show that rule (an image ;) )? Where did you put that rule ? A final solution will be : use the VPN client on the device where you use the VPN. That is, if that device isn't a TV set or something like that. @moxi said in Some traffic is escaping from vpn!: I would start thinking that this whole game of privacy protection is not 100% legit You start to understand. There is hope for you. You really believed the VPN publicity ??
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.