• Help ,Firewall want boot after reboot

    1
    0 Votes
    1 Posts
    346 Views
    No one has replied
  • 10.X.X.X addresses on Interfaces

    7
    0 Votes
    7 Posts
    2k Views
    DerelictD
    @kejianshi: Do you have a practical reason to be using /19s? And bridges?
  • Slow SSH connection

    21
    0 Votes
    21 Posts
    4k Views
    K
    Yeah - Mine is using 128.0.0.1 locally and the root servers in unbound, so maybe thats why I'm not getting the huge delay. At any rate, with such a big delay but without failure, I figured DNS must be involved.
  • Allow port 110 and 587 to some client and block rest

    9
    0 Votes
    9 Posts
    2k Views
    J
    Don't forget, PfSnese is a stateful firewall. Best practices would be to reset states after creating rules/nat mappings, so that states must be reestablished based on your restrictions or lack there of.
  • Connections to EWS stops when states reach above 5000

    1
    0 Votes
    1 Posts
    429 Views
    No one has replied
  • 0 Votes
    1 Posts
    405 Views
    No one has replied
  • SSH not working after upgrade to 2.2

    3
    0 Votes
    3 Posts
    749 Views
    N
    That's what I started with. I had to get support to get the config back and things working. The attached the old pfsense  this is on a Xenserver and read off the config.xml
  • WebUI keeps crashing

    8
    0 Votes
    8 Posts
    2k Views
    L
    pbi_delete did the job. Thanks.
  • MOVED: Openvpn not re-connecting on error - why?

    Locked
    1
    0 Votes
    1 Posts
    412 Views
    No one has replied
  • SSH keys issue

    2
    0 Votes
    2 Posts
    587 Views
    D
    Post some logs. Alternatively, try a crystal ball.
  • SCP stalling

    11
    0 Votes
    11 Posts
    4k Views
    stephenw10S
    Ah, well spotted. Unusually narrow WAN pipe. Steve
  • New to Pfsense need step by step docs to setup a simple network

    4
    0 Votes
    4 Posts
    844 Views
    johnpozJ
    Yeah the networking support in virtualbox is lightyears beyond what the simple player is, atleast last time I played with player.
  • Multiple services forwarded to DMZ servers

    6
    0 Votes
    6 Posts
    1k Views
    R
    OK, not sure if what I am seeing is a feature or a problem. I have registered a host sip.mydomain.net      98.114.XXX.YYY  on no-ip.  I can ping it without any problems from my ipcop setup. I switched over to pfsense. I then went to DNS Resolver and checked the following: Enabled DNS Resolver Enabled DNSSEC Support Enabled Forwarding Mode Enabled Register DHCP lease in the DNS Resolver Enabled Register DHCP static mapping in the DNS Resolver I then created a new entry under Host Overrides: Host: sip Domain: mydomain.net IP: 192.168.3.6 I then went to Diagnostics -> DNS lookup and entered  sip.mydomain.net in the field.  The DNS lookup returned 98.114.XXX.YYY! I repeated the command some 6-7 times. only once it returned 192.168.3.6, the other times it returned the outside IP. What is causing this? Thanks again for the help Renato
  • LAN and WAN access slows down to crawl

    1
    0 Votes
    1 Posts
    652 Views
    No one has replied
  • Remote access - what am I doing wrong?

    19
    0 Votes
    19 Posts
    3k Views
    L
    Thanks for your help guys. I learnt something new today.
  • Issues with the Ping tool

    14
    0 Votes
    14 Posts
    2k Views
    johnpozJ
    Who said it was being forwarded anywhere?
  • At a loss with an Insteon HUB 2 Home Control Device

    14
    0 Votes
    14 Posts
    5k Views
    TAC57T
    I still think my problem was their 'cloud' middleware.
  • No longer starts up after the restart

    15
    0 Votes
    15 Posts
    3k Views
    BBcan177B
    Yes, it's not a good idea to block with almost all of the countries selected. In regards to your boot issue, you should have previously received "pfctl" memory failure notifications?? Also, unless you have open wan ports, you should use "permit outbound" rules as pfSense is a state full firewall by design. pfBlockerNG, is more than a country blocker, you should read the thread I linked above for other threat source lists which can help protect your network from known malicious ips.
  • [Resolved] VK-T40E4-30GB – LAN DHCP, WebGUI fails

    2
    0 Votes
    2 Posts
    1k Views
    I
    So, Resolved.  I submitted a trouble-ticket with support.  Since I couldn't find any reference of this on the search engines or within this forum, I'll post the fix: From the looks of your errors, it seems that /etc has become corrupt on your filesystem. The safest thing to do here is a clean install. The memstick image you'll need to download is located here: https://firmware.netgate.com/firmware/memstick/netgate-memstick-serial-2.2-RELEASE-amd64.img.gz Instructions for extracting that image and writing it out to a USB memstick can be found here: https://doc.pfsense.org/index.php/Writing_Disk_Images Once written, connect to your serial console and boot device from the USB memstick. You may need to pick Option 3 to boot from USB device at the first menu. At the install menu, choose quick/easy install. When prompted for the system type select APU/VK-T40E.
  • Half-Bridge PPPoA with dynamic IP

    3
    0 Votes
    3 Posts
    1k Views
    G
    @Wolf666: Half-Bridge is not supported, as far as I know. I was in the same ship, my ISP only supports PPPoA, when I moved to pfSense I changed my modem. Now I use a Draytek 120 which has a sort of PPPoE<->PPPoA relay. I simply configure my pfSense to use PPPoE, I put my ISP account there, pfSense passes them to Draytek which takes care of PPPoE->PPoA connection. It works flawlessly (low pings, latency near 0), my connection is 20/1. Since Vigor is a chip box, I bought 1 more as a spare. I found this site talking about something similar to my configuration: http://blog.magiksys.net/pfsense-firewall-default-gateway-different-subnet so I tried this commands: route add -net gatewayip/32 -iface em0 route add default gatewayip gatewayip is my isp gateway ip address received by dhcp from the half-bridge modem. With this system it works but I have dynamic IP, so every time the connection drops or the modem is restarted I have to digit the commands and find the new gateway… I've done like you, I bought 2 Vigor 120. Thanks for your reply! If somebody knows how to automate the commands above every time the connection drops please let me know! Thanks!
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.