• MOVED: Need some help on Snort testing

    Locked
    1
    0 Votes
    1 Posts
    905 Views
    No one has replied
  • Logs (mostly) stopped working one day.

    Locked
    10
    0 Votes
    10 Posts
    7k Views
    A
    Right as I hit post for this I just found what seems to do it. "Disable writing log files to the local RAM disk"  If that is checked then clog no longer works and the syslogd.conf file is turned into that listed at the beginning of the post and hence nothing will log to any place any longer. I recommend that setting be renamed to "Disables all logging."
  • Ping to Wan interface only works when packet capture activated?

    Locked
    8
    0 Votes
    8 Posts
    2k Views
    stephenw10S
    Intel NICs are indeed the better option.  :) However I think a large amount of the bad rep associated with Realtek was due to their 10/100 cards. The recent Gigabit cards are much better. Steve
  • 0 Votes
    5 Posts
    2k Views
    R
    just to update anyone who may have this problem turns out the snort rule (http_inspect) NO CONTENT-LENGTH OR TRANSFER-ENCODING IN HTTP RESPONSE was blocking my legitmate web browsing i could see this by browsing the net and keeping an eye on the snort alerts and then seeing the sites appear in the block list. took me about 3 days to work this out as its never happened before. anyhow the below link shows the solution which in a nutshell is adding the sid of the rule into a suppress list and then picking the rule in the suppression and filtering dropdown in the snort interface. http://forum.pfsense.org/index.php?topic=44224.0;prev_next=prev i can sleep well again tonight was really annoying me this one..
  • Making a networked printer available to wifi clients

    Locked
    2
    0 Votes
    2 Posts
    3k Views
    stephenw10S
    To get bonjour working across interfaces you will probably need the Avahi package. However I would expect you to be able to see it via it's IP. Since your pfSense box is behind a router does it have a private subnet on its WAN? If so have you removed the block private networks rule? Is there some reason that your printer is not on the pfSense LAN? Steve
  • Strange Question– Empty Gateway from DHCP

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • PfSense loading

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    S
    why dont you post up how much traffic there is, what services you plan to run and what hardware you have… generally speaking the hardware is almost always overkill.
  • Pfsense adblock

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Web filtering (allow only few websites to a group)

    Locked
    10
    0 Votes
    10 Posts
    12k Views
    V
    Thanks for the quick reply, I tried that, unfortunately its not working for those websites. Any tips\guides on how to use Squid\SquidGuard on pfSense? Thanks!
  • Questions about 3 Interface Bridging with pfSense

    Locked
    17
    0 Votes
    17 Posts
    7k Views
    S
    Bingo! That's what I needed to do! Testing is going much better now! :)
  • Lcdproc with Sure Electronics LCD

    Locked
    18
    0 Votes
    18 Posts
    9k Views
    stephenw10S
    All my experience is with the Firebox LCD which is built into the appliance so not much use to you. Probably best to ask in the lcdproc-dev thread. Although I note that the only reference to the LCD you have is in reply to a similar suggestion.  ::) Steve
  • Auto-click 'connect' button

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    N
    /etc/rc.linkup l2tp0 start actually. GREAT Big thanks! Now i can go further  :D
  • How PFSesne uses CIDR and slash notation

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    E
    Thanks again cmb, Battle plan is to read through the material and play with it some.  No doubt can sort it out quick with some hands on. Ed
  • Question about Status: Traffic Graph

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    A
    So you want a correlation of external ip to internal ip traffic analysis?  ie: 204.123.123.13 <-> 192.168.10.100 -ntop can do that though Im not sure how good the package is in pfsense at this time. Should be able to do netflow metrics. -bandwidthd also seems somewhat capable. -pflow might be another option though it doesnt appear to be a support package on pfsense.
  • Email notifications with gmail, on 2.0.1

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    R
    Hello, I could get only the test messages but not the alerts. Can anyone help me in this regard. regards Venkat
  • Need Help

    Locked
    12
    0 Votes
    12 Posts
    3k Views
    S
    Hi Again, I think you should firts remove nics on your vm then add again them. After that do steps. Regards, SGTR
  • Alerting questions

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    R
    Hi, I have configured pfsense 2.0.1 for email notification and could get the test email message but no events are received by emails. can anyone help me in this regard. Venkat
  • Errors on interface

    Locked
    9
    0 Votes
    9 Posts
    3k Views
    C
    On 2.0 and newer versions, the better drivers include details on errors in sysctl output. For instance if you have those errors on em0, run:  sysctl -a |grep em0 and you'll see specifics on what they are.
  • ISP gave my company layer2 handoff and two sets of IPs… Now what?

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    stephenw10S
    Are xxx and zzz both public subnets? Steve
  • How to lock down the physical machine

    Locked
    9
    0 Votes
    9 Posts
    3k Views
    A
    Put the system in a welded "catwalk cage" along side a ZoneMinder monitor with a simple usb cam capable of sms/emailing notifications. Epoxy ports in place and metal shield cables.  Weld/Glue/Lock the case shut. Wire in a high capacity cmos battery. Back the entire thing up with a 4000VA ups with attach notif usb inside the cage. Or, just hire someone with a larger pay grade and hand them a remington 870 and box of ammo. Cheap and effective.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.