• I can't join users of the VLAN on Windows Server domain

    14
    0 Votes
    14 Posts
    5k Views
    johnpozJ
    You are correct derelict – how did miss that?? ;) So is problem is most likely just can not resolve because he is not pointing to his AD dns.. Good catch..
  • Remote syslog to multiple servers

    1
    0 Votes
    1 Posts
    584 Views
    No one has replied
  • 0 Votes
    3 Posts
    985 Views
    H
    disclaimer: this is just speculation based on some googling is tso offloading enabled? if yes => try todisable it. ifconfig igb1-tso These commands may be placed into a shellcmd tag to execute at boot time to make the change persistent.  (install shellcmd package) this appears similar for em-driver (no clue if its related). https://reviews.freebsd.org/D3192
  • Constant newwanipv6: ip change detected

    4
    0 Votes
    4 Posts
    1k Views
    luckman212L
    I was suffering high load on a 2.2.5 system that had DHCP6 enabled on a WAN interface.  It was working (ISP was TimeWarnerCable) but sometime in the middle of the night they decided to switch my modem from bridge mode to router/NAT mode and start handing out 192.168.0.2 to my WAN interface.  This broke DHCP6… Suddenly I saw high load on my pfSense (caused by dhcpd and unbound according to top) and clog -f /var/log/system showed this pattern over and over again every 1-2 seconds: Dec 14 11:52:42 php-fpm[30155]: /rc.newwanipv6: Removing static route for monitor 24.29.99.36 and adding a new route through 192.168.0.1 Dec 14 11:52:42 php-fpm[30155]: /rc.newwanipv6: Removing static route for monitor 2607:f8b0:4006:807::1000 and adding a new route through fe80::8e09:f4ff:fe10:217 Dec 14 11:52:42 php-fpm[30155]: /rc.newwanipv6: Removing static route for monitor 68.237.161.12 and adding a new route through 108.30.185.1 Dec 14 11:52:42 php-fpm[30155]: /rc.newwanipv6: ROUTING: setting IPv6 default route to fe80::8e09:f4ff:fe10:217%igb2 Dec 14 11:52:41 check_reload_status: Syncing firewall Dec 14 11:52:37 php-fpm[30155]: /rc.newwanipv6: rc.newwanipv6: on (IP address: 2604:2000:f10b:300:208:a2ff:fe09:9bd3) (interface: opt2) (real interface: igb2). Dec 14 11:52:37 php-fpm[30155]: /rc.newwanipv6: rc.newwanipv6: Info: starting on igb2. Dec 14 11:52:36 check_reload_status: Reloading filter Dec 14 11:52:36 php-fpm[98434]: /rc.newwanipv6: Removing static route for monitor 24.29.99.36 and adding a new route through 192.168.0.1 Dec 14 11:52:36 php-fpm[98434]: /rc.newwanipv6: Removing static route for monitor 2607:f8b0:4006:807::1000 and adding a new route through fe80::8e09:f4ff:fe10:217 Dec 14 11:52:36 php-fpm[98434]: /rc.newwanipv6: Removing static route for monitor 68.237.161.12 and adding a new route through 108.30.185.1 Dec 14 11:52:36 php-fpm[98434]: /rc.newwanipv6: ROUTING: setting IPv6 default route to fe80::8e09:f4ff:fe10:217%igb2 Dec 14 11:52:31 php-fpm[98434]: /rc.newwanipv6: rc.newwanipv6: on (IP address: 2604:2000:f10b:300:208:a2ff:fe09:9bd3) (interface: opt2) (real interface: igb2). Dec 14 11:52:31 php-fpm[98434]: /rc.newwanipv6: rc.newwanipv6: Info: starting on igb2. Dec 14 11:52:30 check_reload_status: Reloading filter Dec 14 11:52:30 php-fpm[67665]: /rc.newwanipv6: Removing static route for monitor 24.29.99.36 and adding a new route through 192.168.0.1 Dec 14 11:52:30 php-fpm[67665]: /rc.newwanipv6: Removing static route for monitor 2607:f8b0:4006:807::1000 and adding a new route through fe80::8e09:f4ff:fe10:217 Dec 14 11:52:30 php-fpm[67665]: /rc.newwanipv6: Removing static route for monitor 68.237.161.12 and adding a new route through 108.30.185.1 Dec 14 11:52:30 php-fpm[67665]: /rc.newwanipv6: ROUTING: setting IPv6 default route to fe80::8e09:f4ff:fe10:217%igb2 For now I just disabled that WAN interface completely which has caused things to settle.  Not sure why the lack of valid DHCP6 would cause the router to go into a tailspin though.
  • Pfsense member AD 2012 R2

    10
    0 Votes
    10 Posts
    2k Views
    R
    If I use the ldap option, the User will be required to enter login / password to browse. NTLM takes the User section, requiring no login / password. Thank help everyone.
  • Enable per-user bandwidth restriction

    7
    0 Votes
    7 Posts
    2k Views
    S
    OK, thanks. That answered my question.
  • MOVED: Squid Reverse Proxy - Authentication Per Site

    Locked
    1
    0 Votes
    1 Posts
    543 Views
    No one has replied
  • MOVED: Squid issue >> can't download any more

    Locked
    1
    0 Votes
    1 Posts
    365 Views
    No one has replied
  • MOVED: Server to server openvpn.

    Locked
    1
    0 Votes
    1 Posts
    367 Views
    No one has replied
  • How to access TL-SG3216 Managed Switch webGUI from pfSense LAN interface?

    4
    0 Votes
    4 Posts
    1k Views
    ?
    For future usage or other new switches it might be working also well, to connect the switch at first to your PC and change the IP address to the default IP address from the switch with a small tool named NetSetMan for this.
  • File System Corruption on 2.2.x

    13
    0 Votes
    13 Posts
    2k Views
    N
    +800 public schools, each one with his own internet access.
  • Multiple subnets on same physical nic

    13
    0 Votes
    13 Posts
    2k Views
    M
    Thank you so much John. I will play around with it and update this thread (probably looking for more help) with my finding. Regards Jacob
  • Notification not sent

    5
    0 Votes
    5 Posts
    2k Views
    T
    My mail provider is Google. As I created an application password (16 characters), it reports some SMTP activity each time I push on send "TestMail". If I alter the password and resend a TEST mail … the System-log reports it all fine but the "Activity reported on the account" does not report any trace of the attempt. Fishy ... \T,
  • MOVED: Transparent Proxy error

    Locked
    1
    0 Votes
    1 Posts
    511 Views
    No one has replied
  • Maybe a good gimmick for pfsense

    6
    0 Votes
    6 Posts
    1k Views
    M
    Hi, it,s that if i change somethink and suddently i am not able to access the box from remote because of some mistake i can't revert this steps. A reboot from a customer is not a big deal. Maybe AutoSave on logout is also an option It was just an idea.
  • Internet connection up time

    2
    0 Votes
    2 Posts
    647 Views
    GertjanG
    Status: Interfaces I have this : Uptime 96:30:27 on the WAN Interface section.
  • Clients take 'forever' to get internet connectivity

    3
    0 Votes
    3 Posts
    775 Views
    D
    Doesn't sound anything like a "typical" pfSense issue. My first instinct would be to ask in the Virtualization forum.
  • PfSense 3.0 Roadmap

    3
    0 Votes
    3 Posts
    10k Views
    C
    @MAHDTech: I know I'm a bit late to the party and apologies if this has been discussed, I have searched, but I was just reading this blog post https://blog.pfsense.org/?p=1588 and had a couple of questions as it seems pfsense is going from strength to strength. Why the choice of Intel DPDK over something like netmap or dna -> does DPDK perform better? what about the license for DPDK, I thought there was certain things only accessible with purchase of a premium license? I like the mention of moving to a model closer to crochet, would that potentially make it easy to get pfSense on ARM or MIPS64 as well as AMD64? Bootstrap + Python FTW! I believe your question was answered in a later blog. In https://blog.pfsense.org/?p=1866 it seems like pfsense 3.x is leaning more towards netmap or even a combination of both. Back in February, I wrote a blog post that discussed our plans for pfSense software version 2.3, which is now in alpha, and our plans for pfSense 3.0.  While I promoted DPDK then, we’ve since found that netmap provides a simpler API, and substantially better safety, as the device drivers remain in the kernel, rather than running in userspace with DPDK.  Still, DPDK provides a set of libraries, such as longest-prefix match, which uses a variation of the DIR-24-8 algorithm for routing lookups, which we should find useful in our pursuit of the ultimate open source software router. Carlos
  • Transparant FW and NAT at same time

    2
    0 Votes
    2 Posts
    570 Views
    KOMK
    Is this possible with one installation of pfSense? Of course.  This is a very common use scenario.  Firewall with local servers on LAN port-forwarded, or 1:1 NAT.
  • No available packages

    2
    0 Votes
    2 Posts
    774 Views
    GertjanG
    As said: Please verify DNS The question is very known on the forum. The answer also. It's a DNS setup issue. It boils down to : (pfsense) DNS serves your attached client, but can't use (its own) the DNS itself. edit: when it works, test by upgrading to 2.2.5  :)
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.