• pfSense blocking all traffic on two interfaces

    2
    0 Votes
    2 Posts
    347 Views
    A
    @thompsonm Screenshots of your rules on the two interfaces?
  • PFsense beginner help

    5
    0 Votes
    5 Posts
    587 Views
    johnpozJ
    Unless you do dynamic assigned vlans, yes you assign vlan X to ssidX and vlan Y to ssidY be it they run on 2.4 or 5 band or both doesn't matter.
  • Problem with pppoe over vlan

    44
    0 Votes
    44 Posts
    8k Views
    fireodoF
    @stephenw10 said in Problem with pppoe over vlan: Hmm, so even though you no longer have vlan7 assigned it still gets rebuilt when config changes are made? YES! (I checked a few times on both machines)
  • Connection Issues pfSense SG-4860

    6
    0 Votes
    6 Posts
    823 Views
    stephenw10S
    Nice.
  • Restore PfSense on a new server with one less ethernet card ...

    7
    0 Votes
    7 Posts
    827 Views
    S
    @skybri100 Thank you very much and greetings.
  • Pings but nothing more

    8
    0 Votes
    8 Posts
    714 Views
    M
    Bingo! I reset it while connected and started getting console output of the boot sequence. It was getting stuck on "Starting DNS Resolver". Quick google lead me to a Reddit post below. Basically delete this "/var/unbound/pfb_dnsbl.conf", recreate the file, and restart. Back in business! You help was very much appreciated John! Thanks, Moon https://www.reddit.com/r/PFSENSE/comments/89gt37/stuck_on_starting_dns_resolver_on_reboot/
  • Squid Access logs to Splunk

    1
    0 Votes
    1 Posts
    411 Views
    No one has replied
  • Accessing endpoint of site2site through VPN client

    4
    0 Votes
    4 Posts
    590 Views
    stephenw10S
    Then make sire rules in place at site 2 allowing the traffic from the tunnel subnet the client is in. If the client is not redirecting all traffic over the VPN then they will need to be passed a route to the site 2 subnet via the VPN. Add it as a local network in the remote access server at site 1. Steve
  • Wrong configuration, but it works partially

    29
    0 Votes
    29 Posts
    2k Views
    F
    @stephenw10 Great ! Its as I expected, Thank you very much for your answers ! Farisse
  • Routing between two pfsense on ISP's with proxy behind

    2
    0 Votes
    2 Posts
    535 Views
    stephenw10S
    The proxy musy be listening on the OpenVPN interface since that's where the traffic arrives. You should be able to put the proxy at either end but I would probably put it at A since that's where traffic is arriving. I'm not sure how the proxy would reply to traffic at B either. Importantly you must have the OpenVPN interface assigned at B and make sure the rules passing the traffic are on the assigned interface and not on the OpenVPN tab. Without that you will not get reply-to tags on the states and the replies from the server (or proxy) will just go out the WAN rather than back over the VPN. That creates an asymmetric route and traffic will be blocked. Steve
  • 0 Votes
    16 Posts
    1k Views
    stephenw10S
    Yeah with 5Mbps upload you can saturate the connection pretty easily. However it's also much easier to shape upload than down since we can control exactly what leaves the interface. I would expect to see good results from fq-codel here. Steve
  • NTP stratum change

    1
    0 Votes
    1 Posts
    326 Views
    No one has replied
  • Move default LAN to a vlan

    14
    0 Votes
    14 Posts
    1k Views
    johnpozJ
    The comment that its easier to fail to untagged vs tagged is a valid statement.. And if your worried about vlan hopping ok... But unless you were in some DOD facility, or had to use known bad switches that drop traffic from tagged to untagged.. It not a "requirement"
  • Interface setup issues.

    1
    0 Votes
    1 Posts
    165 Views
    No one has replied
  • Individual cpu core usage

    3
    0 Votes
    3 Posts
    401 Views
    N
    I see. I found that one. But thought it odd i couldn't find it on the dashboard, can show individual temps, so why not usage. Was sure i was just looking in the wrong places.
  • What logs are useful to troubleshoot an ISP issue?

    3
    0 Votes
    3 Posts
    401 Views
    JKnottJ
    @bkhiatt One thing to check is the DHCP lease, to see if it's being renewed, but given your description that doesn't sound like the issue. Can you ping the gateway when the connection fails?
  • Certificate Question

    13
    0 Votes
    13 Posts
    1k Views
    GertjanG
    @guardian said in Certificate Question: Sorry, I don't understand this [image: 1598516212016-9d2889ce-108a-4052-b3f4-0fe0f9abdd88-image.png] One of these reset the GUI access to http. The manual will tell you more. @guardian said in Certificate Question: IIUC this is only if the last configuration was http It must be the last setting change, the one you can cancel. If you change from http to https, and you lose access because https won't work for you, you loose contact with the GUI. Rephrase that : you loose the ability to make changes ^^
  • Is it possible to show traffic (byte) accouning per local source ip

    23
    0 Votes
    23 Posts
    2k Views
    johnpozJ
    I'm US timezone - CST..
  • Looking for a way to connect 2 networks

    3
    0 Votes
    3 Posts
    390 Views
    A
    @EagleGC You have to have the Procurve switch plugged into the SG-1100 LAN network, which it looks like it already is. Then, the Nest wifi router should be in access point mode, then plugged into a switch port on the Procurve switch. This process will put them all on the same notwork. The Procurve shouldn't "hand out" any IP addresses, you should set it up to NOT offer up IP addresses. Unless, you've got a special reason to do that. Jeff
  • Site cant be reached

    Moved
    4
    0 Votes
    4 Posts
    1k Views
    stephenw10S
    Doh! Test Port indeed.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.