• pfSense-on-a-Stick | Adding VLAN for VPN only

    5
    0 Votes
    5 Posts
    543 Views
    stephenw10S
    Start a continuous ping from a client on VLAN 40. Run packet captures on each interface to see where the pings are going and what's coming back. It's almost certainly a conflict of some sort with symptoms like that though. Steve
  • Email notification configuration

    1
    0 Votes
    1 Posts
    266 Views
    No one has replied
  • Speed issues PPPoE

    40
    0 Votes
    40 Posts
    11k Views
    stephenw10S
    Urgh, well that sucks. But as I understand it the OP here is still using the ISPs modem so it shouldn't apply. Steve
  • diagnose stuttering performance

    13
    0 Votes
    13 Posts
    2k Views
    Raffi_R
    @meem said in diagnose stuttering performance: I can see that I get 30-40 dns HUPS per hour - looking at the settings, I hadn't changed the default lease time for my new VLANS so i've made that change now. It was at the default (2hours)... made it 8 hours now. Looking at my Splunk logs I can see that i've been getting 30-40 HUPS per hour every hour (including throughout the night) That could do it. Hopefully, changing that to 8 hours is enough. I've seen rogue DHCP clients ask for an address every hour regardless of the default setting in pfSense. If changing that is not enough, see if unchecking DHCP registration helps just as test. You then have to decide if your need to lookup hosts by names outweighs having stable DNS, or you can try to track down any remaining rogue DHCP clients on the network not following the 8 hour lease time.
  • Netstat connections X Maximum Concurrent Connections

    Moved
    7
    0 Votes
    7 Posts
    1k Views
    M
    Indeed, when the resolution value for the same period is deepened, the values obtained in the report are different. Below the last 30 days with 01 hour resolution on the same network. [image: 1601384960619-monitoring-traffic-1h.png]
  • pfSense interfering with ssh session to virtual machines?

    3
    0 Votes
    3 Posts
    377 Views
    H
    Just trying to add as much potentially useful info here: Here's two traceroutes in both directions. Run on workstation: traceroute to VM traceroute to 192.168.100.184 (192.168.100.184), 30 hops max, 60 byte packets 1 192.168.10.1 (192.168.10.1) 1.207 ms 1.173 ms 1.158 ms 2 server.localdomain (192.168.10.101) 1.196 ms 1.199 ms 1.198 ms 3 192.168.100.184 (192.168.100.184) 1.459 ms 1.473 ms 1.461 ms Run on VM: traceroute to workstation traceroute to 192.168.10.100 (192.168.10.100), 30 hops max, 60 byte packets 1 192.168.100.1 (192.168.100.1) 0.154 ms 0.130 ms 0.117 ms 2 workstation.localdomain (192.168.10.100) 1.105 ms 1.097 ms 1.085 ms
  • About PFsense Rule Authorization

    2
    0 Votes
    2 Posts
    162 Views
    stephenw10S
    No, not really. Nothing like that exists in pfSense. Steve
  • My pfsense 2.3.5 Atom CPU N270

    10
    0 Votes
    10 Posts
    1k Views
    stephenw10S
    Do you have the full crash report? We need at least the full panic string from the message buffer and the backtrace from the ddb file. But it's unlikely we can do much in 2.3.5. Steve
  • Unable to Mount NVME Hard Drive

    7
    0 Votes
    7 Posts
    2k Views
    GertjanG
    @ProfessorManhattan said in Unable to Mount NVME Hard Drive: If I use this method, can I have a usable hard drive? First, check out what ZFS is. If your pfSense isn't using ZFS right : it is an install option, something you choose at the very beginning. You could compare adding a drive to pfSense as adding a drive to a PC using some Windows OS : It (the SATA port) has to be enabled in the BIOS) and the BIOS has to recognize it. When booting your OS Windows, there will be NO D: or E: that represents the drive. You have to use the DiskManger thing to partition it. And format it using FAT32 or more recent scheme. You have to assign a drive letter. Only then ... you ... can use that D:\ drive - Windows itself doesn't care about it, it lives on the C:\ and won't touch the new D:\ what so ever. FreeBSD drives are mounted using the /etc/fstab file. This file can be edited, and will get overwritten by pfSense whenever it sees fit (upgrades etc). Consider using the EarlyShellCmd and have your drive mounted wherever you want. It will be something like /root/mybidrive/ The directory /root/mybidrive/ will be situated on your new big drive, not the original pfSense drive. You could even do more dramatic things like placing the entire /var/ on another drive but you wind up modifying hardcoded settings and files. It not worth it ... Just re install pfSense on the newer, bigger drive. Don't forget : it's a firewall , not some Desktop PC etc.
  • High Disk Write - php

    3
    0 Votes
    3 Posts
    360 Views
    T
    As it turns out, I have a computer running malwarebytes on my network and it kept trying to report "usage and threat statistics" back to malwarebytes. turning this off seems to have resolved it. I will post back if this reoccurs. Thanks.
  • dpinger gateway packetloss issues

    9
    1 Votes
    9 Posts
    1k Views
    stephenw10S
    Yes, that could be if the limiters never caught that traffic. Glad you were able to resolve it. Steve
  • Bridging dd wrt wifi router to pfsense

    23
    0 Votes
    23 Posts
    2k Views
    stephenw10S
    I have a single UAP-AC-LR that I have on the ceiling of a ground floor room. I can connect to that from anywhere across 3 floors in a brick building with good signal levels. Generally speaking higher is better for APs but not through floors! Steve
  • Urgent Lan Dropping

    18
    0 Votes
    18 Posts
    2k Views
    J
    @johnpoz sorry bro i’m french canadian ! so that’s the only word who came in my mind for traduction ! have a nice one peace ya
  • How to reset state table with cron.

    15
    0 Votes
    15 Posts
    2k Views
    noplanN
    @Derelict Exactly what the ISP service line did saturday with one of our Wan connections here Settin this box in bridge mode or as they call it dummy mode After they did it A) connection improved B) speed improved C) more noise (cuz lack of providers global block list) Feels goood
  • Issues with IPTV and IGMP proxy.

    1
    0 Votes
    1 Posts
    330 Views
    No one has replied
  • pfsense running on unused subnet

    4
    0 Votes
    4 Posts
    469 Views
    V
    @viragomann said in pfsense running on unused subnet: Check Status > Interfaces and Firewall > Virtual IPs. These are two different things: Status > Interfaces and Firewall > Virtual IPs Though VPN servers are virtual IPs as well, which aren't displayed there.
  • Where can I apply an easyrule?

    8
    0 Votes
    8 Posts
    643 Views
    stephenw10S
    @serbus said in Where can I apply an easyrule?: proceed at your own risk... That.
  • APU/PFSense 2.3 hangs while booting on VLANs

    8
    0 Votes
    8 Posts
    3k Views
    stephenw10S
    No worries. Good to put info where it's likely to be found.
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    5 Views
    No one has replied
  • Shipping Proxy access.log and cache.log to ELK stack over syslog

    13
    0 Votes
    13 Posts
    3k Views
    stephenw10S
    Yes. Filebeat is not directly a syslog server as far as I can see. You have to configure it with the syslog input module: https://www.elastic.co/guide/en/beats/filebeat/current/filebeat-input-syslog.html And possibly some other config there. As I say I've never used it. Steve
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.