• Bandwith Limit only for Internet

    2
    0 Votes
    2 Posts
    243 Views
    stephenw10S
    Setup Limiters to whatever bandwidth you need. Put default internet traffic in to those Limiters with firewall rules on LAN. Pass local traffic with rules above those that are unlimited. https://docs.netgate.com/pfsense/en/latest/book/trafficshaper/limiters.html Steve
  • changed LTE router, now heavy delay, but down/up Speed is fine

    30
    0 Votes
    30 Posts
    2k Views
    GertjanG
    Keep in mind that 1.1.1.1's primary goal is harvesting your DNS requests. Not replying on your ICMP requests, so if they (1.1.1.1) decide to stop doing that, for example for bandwidth reasons, your WAN could get marked as offline.
  • Set LAN rule to block outbound to one IP, can still ping it

    9
    1 Votes
    9 Posts
    824 Views
    J
    I'm not sure what's going on with this thing, creating or changing rules doesn't take effect unless it's rebooted. That's new behavior, it's always been immediate before this. I'm going to rebuild it tomorrow. Thanks everyone for the help.
  • Simple firewall as router

    6
    0 Votes
    6 Posts
    625 Views
    stephenw10S
    But it is only the reply traffic that goes back out though pfSense yes? As I said you will need an OUT rule on WAN since that will also be out of state TCP traffic. Let's see a screenshot of the blocked traffic you're seeing, Steve
  • 0 Votes
    12 Posts
    1k Views
    stephenw10S
    Ok so: Run through the OpenVPN remote access setup wizard Create a test user in System > User Manager and make sure you add a client certificate to that user created against the same CA the wizard created. Install the Client Export Package. You should now see the various client types available for your test user in VPN > OpenVPN > Client Export. Pretty much what it says here: https://docs.netgate.com/pfsense/en/latest/book/openvpn/using-the-openvpn-server-wizard-for-remote-access.html Steve
  • WAN IP and Public IP are not the same

    4
    0 Votes
    4 Posts
    746 Views
    V
    I had that situation months ago. I called the ISP and asked for a public IP and I got it immediately with no discussion. But that may depend on your internet contract. Maybe IPv6 is an option for you.
  • Can I pass BACnet traffic between VLAN's with pfSense?

    12
    0 Votes
    12 Posts
    899 Views
    stephenw10S
    Yes, there was a bug in 2.3.X that prevented IGMP proxy running on VLAN interfaces. You can read about it in that bug link I posted above. That's just another reason you should upgrade, that is fixed in current. Steve
  • Problems with pfsense.localdomain hostname

    20
    0 Votes
    20 Posts
    2k Views
    johnpozJ
    Exactly!!! BS error that doesn't say what the problem is!
  • Weird interaction between pfSense and MikroTik router

    mikrotik drops
    12
    0 Votes
    12 Posts
    3k Views
    NetViciousN
    Thanks for the explanation, it's not my exact scenario but will help others.
  • 0 Votes
    25 Posts
    5k Views
    A
    Thank you everyone for assisting I wrote another script on powershell which works for me, will post when it is fully functional with other additional features.
  • NTP / System Time Oddities

    14
    0 Votes
    14 Posts
    2k Views
    JKnottJ
    @1OF1000Quadrillion said in NTP / System Time Oddities: PS - When I was in the BIOS I did not see an option to select or change time zone data - I saw date/time and that's it. That's because the computer clock only knows whatever time you set it to. It has no other means of being set, so no need for time zones. In this respect, it's no different than any alarm or stove clock. On the other hand, NTP servers, which can be anywhere in the world, provide UTC, which a computer then offsets to local time. This is where the time zone comes in.
  • SSH Key

    15
    0 Votes
    15 Posts
    2k Views
    stephenw10S
    Yeah, as you found you can just add more keys below the first one.
  • Account

    5
    0 Votes
    5 Posts
    755 Views
    johnpozJ
    @Pedro-ramirez said in Account: some other option that you know, thanks. https://docs.netgate.com/pfsense/en/latest/usermanager/locked-out-of-the-webgui.html Forgotten Password with Locked Console If the console is password protected and the password is unknown, all is not lost. It will take a couple reboots to accomplish, but it can be fixed with physical access to the console:
  • 1 Votes
    11 Posts
    1k Views
    JKnottJ
    @lordofpc734 said in NTOPNG Reports TCP Out Of Order packets for 3 clients (2 wireless, one wired): im in a SNR war with my ISP. (means im getting really high noises and crap service) That is a likely cause. A noisy line means lost packets and that in turn kills performance, as TCP will have to wait for retransmission of lost packets.
  • Ping spikes on LAN

    2
    0 Votes
    2 Posts
    372 Views
    D
    The problem is fixed after removing ntopng. No more spikes. Thank you
  • How to modify notifications

    11
    0 Votes
    11 Posts
    1k Views
    stephenw10S
    It's open source you can change anything you want. There's no way to change that via the normal pfSense config though, you would need to edit the file that generates it. Steve
  • WAN connection randomly drops?

    41
    0 Votes
    41 Posts
    10k Views
    stephenw10S
    It should show when it does renew at other times and you will see what the lease time your ISP gives you. pfSense will usually try to renew it at 50% of that time. If that's not happening it would be a problem.
  • What does PFsense alert you for?

    10
    1 Votes
    10 Posts
    990 Views
    S
    Things like changing to a failover WAN, invalid firewall aliases, bootup, upgrade status, dynamic DNS IP update, CARP status change, etc.
  • Wifi on laptop drop - gets "Not connected to internet" after several hours

    10
    0 Votes
    10 Posts
    857 Views
    stephenw10S
    Nope ntop doesn't block anything. Do you have Snort or Suricata installed? They are far more likely. Or that could be a symptom of whatever is actually causing the problem, the laptop tries much harder to connect opening a lot of connections. Steve
  • can I vpn a pfsense and ubiquity usg together?

    4
    0 Votes
    4 Posts
    485 Views
    stephenw10S
    The USG appears to have a number of VPN options including OpenVPN so I would not expect any problem doing that. The only issue might be the DynDNS setup and whether you can use an FQDN rather than an IP as the server but it seems unlikely that would not be allowed. Steve
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.