• This topic is deleted!

    1
    0 Votes
    1 Posts
    2 Views
    No one has replied
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    3 Views
    No one has replied
  • pfSense on Dell Optiplex with Proxmox

    2
    0 Votes
    2 Posts
    693 Views
    G
    @anotherguy82 Tons of people run pfsense virtualized on Proxmox and I think the most common setup is to have dedicated NIC's for both WAN and LAN. And the preferred setup is to do passthru (IOMMU) of those NICs so that pfsense is the only machine accessing them (giving optimal performance). So you assign two out of your four NIC's to pfsense and the others will be available to Proxmox and your VM's. Nothing other than pfsense WAN is exposed to the internet. You have to make sure virtualization is enabled in the Optiplex BIOS to make this work though. On the topic of VLAN's, yes your TP-Link Layer 2 switch will support that perfectly fine.
  • WebGUI redirect

    7
    0 Votes
    7 Posts
    302 Views
    stephenw10S
    But also if you have set the webgui to run on a different port, say 43434, it will redirect to that. http://pfsenseip => https://pfsenseip:43434
  • Traffic Graph in 2.7.2 does not display description anymore? [resolved]

    Moved
    14
    0 Votes
    14 Posts
    1k Views
    stephenw10S
    True. I guess I should specify, when using the default values or DHCP. My test setup has more hosts than that and is served by a 3100. I never see any DNS issues.
  • Security event auditing with auditd

    4
    1 Votes
    4 Posts
    523 Views
    stephenw10S
    Both those things should be a feature request in redmine if there is not something existing: https://redmine.pfsense.org/
  • 0 Votes
    7 Posts
    316 Views
    J
    I'm down to the one problem that IPV6 doesn't work. I can see the DHCP6 request sent over the WAN interface and the /60 PA returned. However, these neer get assigned to interfaces. Also, the router sends a seperate DHCP6 requst for the WAN interface (because the instructions do not selecet "Request only an IPv6 prefix"). ATT assigns an IP address that is completly different than the PA assigned and regardless it is not assigned to the WAN interface. We should be taking the first prefix ID (for example prefix ID 0) and using it for the WAN interface IPV6 address. Any further ideas. I suspect there is more configuration required for IPV6 that is not in the guide. IPV4 and everything else seems to work. Have WAN DHCP6 PCAP.
  • SG-3100 stops responding every 2 days on 24.03

    13
    0 Votes
    13 Posts
    871 Views
    A
    I don't recall the exact command but it was something like usbconfig -i ugen0.2 detach_kernel_driver
  • Why is there no Notification setting panel in Pfsense?

    3
    1 Votes
    3 Posts
    188 Views
    stephenw10S
    Yes, it needs improvement. There is currently no way to configure what triggers a notice though. There are open feature requests you can add a comment to. https://redmine.pfsense.org/ Steve
  • possible problem or misconfiguration

    11
    0 Votes
    11 Posts
    419 Views
    stephenw10S
    Opened bug report: https://redmine.pfsense.org/issues/15547 Appears to be mostly cosmetic though.
  • Explanation

    4
    0 Votes
    4 Posts
    412 Views
    stephenw10S
    Ok so like it says there: To allow logins with RADIUS credentials, equivalent local users with the expected privileges must be created first. So the local user must exist.
  • Obtaining global IP after a power outage

    4
    0 Votes
    4 Posts
    327 Views
    stephenw10S
    From that many versions back I would just reinstall to 2.7.2 and restore the config. But what IP does it get? A private IP from the modem? You can set the dhcp client to reject leases from the modem server IP to prevent that. Cable modems will comonly hand out their own leases until the line syncs. Steve
  • VLAN not getting to VM

    4
    0 Votes
    4 Posts
    440 Views
    stephenw10S
    I expect it to be in the Hyper-V setup. Though the NIC itself would probably need to be in promiscuous mode to pass tagged and untagged traffic. The Guest VM shouldn't see the VLAN tagging at all. Though you could probably set that up in a few different ways. I don't run Hyper-V so I can't help you with it directly.
  • pfsense plus: get support end date from command-line?

    2
    0 Votes
    2 Posts
    222 Views
    stephenw10S
    You can see that data in /var/db/support.json. That should get updated every 24hrs.
  • Finally adguard local server working)))

    1
    0 Votes
    1 Posts
    165 Views
    No one has replied
  • Pfsense Software, WireGuard VPN

    pfsense vpn wireguard simple self hosted
    2
    0 Votes
    2 Posts
    394 Views
    G
    @Ratfink Connecting two sites with Wireguard VPN is absolutely doable, and you don't even need fixed IP's for it to work. When you say you have 5 fixed IP's from your ISP, I'm kind of assuming you have your office at your house? Meaning they are both connected to the same fibre? Otherwise, if they are at very different locations, is it still the same ISP? In terms of getting the IP's on the respective pfsense machines, I assume you know how or have instructions from the ISP to do this. Might be MAC based if DHCP for example... Anyway, running pfsense on repurposed HW is very common and can be done "barebone" or virtualized. So you shouldn't have any problems getting to to work on your rack servers, hopefully. So step one is of course getting both machines up and running. And since they will be for different sites and connected via VPN you must make sure to use different LAN subnets on them. Like 192.168.1.0/24 on one and 192.168.2.0/24 on the other. Once you have them up and running you can follow a guide like one of these to set up wireguard. Even though you have fixed IP's it might be a good idea to get two domains, unless you already have that. https://www.youtube.com/watch?v=2oe7rTMFmqc https://www.youtube.com/watch?v=7_gLPyipFkk
  • Slow PfSense Speed. or maybe is me.

    18
    0 Votes
    18 Posts
    2k Views
    stephenw10S
    Nice.
  • Poor 10gbps WAN throughput

    42
    0 Votes
    42 Posts
    3k Views
    G
    @keyser said in Poor 10gbps WAN throughput: @Gblenn Did you knwo you can do this: https://answers.microsoft.com/en-us/windows/forum/all/how-can-i-prevent-automatic-updating-a-specific/9967b1cf-dc6f-495d-82be-4ab3f3207ff1 Thanks for the tip but that is not the issue, and it didn't help. Every time after a shut down and start of the PC I cap out at 2-2.5 in speedtest (only download however). What is interesting however, is that I now tested with iperf and get the full 9.44 Gbit... so what is it that speedtest does differently, or fast.com for that matter?
  • configure unifi with pfsense

    24
    0 Votes
    24 Posts
    3k Views
    P
    @zaibi12345 said in configure unifi with pfsense: 1 unifi dream machine pro controller with 20 access points connected with it, In lab if more than 400 users get connect, it got crashed all connected users faced disconnectivity. 1200 users is actual limit as advised by unifi support team. actually we need to connect more than 2000 users at a time and 5 controllers is not a solution I use a self hosted controller https://help.ui.com/hc/en-us/articles/360012282453-Self-Hosting-a-UniFi-Network-Server Easily installed via this script https://community.ui.com/questions/UniFi-Installation-Scripts-or-UniFi-Easy-Update-Script-or-UniFi-Lets-Encrypt-or-UniFi-Easy-Encrypt-/ccbc7530-dd61-40a7-82ec-22b17f027776 Which I run on a Debian VM under Proxmox on a Mini PC also running pfsense as a VM. For your application, being more generous with the hardware would be sensible. https://lazyadmin.nl/home-network/unifi-controller/ and https://techspecs.ui.com/unifi/cloud-keys-gateways/cloud-key-enterprise
  • Nmap error

    8
    0 Votes
    8 Posts
    643 Views
    stephenw10S
    And that nmap error was triggered in that time period?
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.