• pfsense 2.4.4 Rel.2 checksum error / after reboot fine for 20 sec

    18
    0 Votes
    18 Posts
    2k Views
    F
    i noticed, sorry i can not update my configs yet since the i am facing the issue described in here So i need to wait until i can modify or downgrade the system to safely remove the transparent-client-ip feature. I was going to use this feature for internal smtp server to forward the original IP.
  • I dont how open a port

    2
    0 Votes
    2 Posts
    158 Views
    johnpozJ
    I would not suggest you open a port to the public internet for your cameras.. Not a good idea! Use a vpn.. But https://docs.netgate.com/pfsense/en/latest/nat/forwarding-ports-with-pfsense.html
  • 0 Votes
    5 Posts
    13k Views
    jimpJ
    @guardian said in Please tell me what this error message is likely serious?: Any idea how many "bad attempts" are necessary to trigger the message? It depends on a few factors, but that's all decided by sshguard and could be found in their docs. @guardian said in Please tell me what this error message is likely serious?: How long sshguard has been part of pfSense Since 2.4.4. @guardian said in Please tell me what this error message is likely serious?: Is the "user id" of the attempted login available in a log somewhere? The main system log.
  • WiFi calling and VLAN 1

    8
    0 Votes
    8 Posts
    2k Views
    NogBadTheBadN
    @JKnott said in WiFi calling and VLAN 1: @NogBadTheBad said in WiFi calling and VLAN 1: I still work on an account that uses DecNET What would use that these days? It would have to be ancient. An old Dec server running a legacy application, due to be retired soon.
  • pfsense and automated config backups (Rancid )

    3
    0 Votes
    3 Posts
    781 Views
    M
    Excellent! Thanks so much! I will have a look. Regards, --Mokey
  • Multicast CARP configuration

    3
    0 Votes
    3 Posts
    353 Views
    stephenw10S
    ....unless of course you don't mean the actual CARP traffic (which must be multicast) and are referring to pfsync or config sync, which is a common misconception. Steve
  • Managing pfSense large deployments - pfCenter SaltStack

    6
    0 Votes
    6 Posts
    3k Views
    M
    Very old topic, but we use salt to manage our pfsense ;) Thanks to https://github.com/ndejong/pfsense_fauxapi Some links : https://github.com/ndejong/pfsense_fauxapi_client_python https://github.com/alkivi-sas/salt-pfsense
  • Help on this Firewall+Routing question ??? Can this be done?

    2
    0 Votes
    2 Posts
    147 Views
    NogBadTheBadN
    Where is "someone else’s firewall", directly connected to yours ? If so a VIP + 1:1 NAT and a static default route on "someone else’s firewall" pointing to your router should do it. https://docs.netgate.com/pfsense/en/latest/book/nat/1-1-nat.html
  • key based auth ssh issue

    8
    0 Votes
    8 Posts
    857 Views
    johnpozJ
    @mod said in key based auth ssh issue: 3 . password +public key login works That is not really an option.. If you set password and public key your just using password to auth.. 2: I use linux version of putty and we don't get keygen/ don't need to convert. Pretty sure you do.. https://www.ssh.com/ssh/putty/linux/puttygen 4 Yeah no idea why your bringing that up at all - yeah no shit everyone uses 2 ;) BTW, current stable version of putty is .71
  • Running EdgeRouter X behind Pfsense

    21
    0 Votes
    21 Posts
    2k Views
    stephenw10S
    I have to say I would swap out that rl NIC if you possibly can. It will almost certainly cause you headaches in the future. https://github.com/freebsd/freebsd/blob/master/sys/dev/rl/if_rl.c#L48 Steve
  • Creating two subnets on same lan using two Wan connections

    7
    0 Votes
    7 Posts
    666 Views
    A
    well just add it to both groups on tier 3, it's that simple. if tier 1 (high packets loss or high latency) it will switch to tier 2. and if both 1,2 dropped 3 will kick in. you control which one are primary and secondary with tier numbers. believe me every day you will find a new reason to love pfsense more. i love it so much i just installed it on a VPS and configured openvpn on it. so now i have a personal vpn for 5$/moth.
  • How to downgrade from 2.5 to 2.4.4

    4
    0 Votes
    4 Posts
    5k Views
    GertjanG
    From GUI ? Noop. Download latest "2.4.4" and put it on a stick. Reboot from stick, and do the initial partition thing, etc. It's also advisable to use the config file you saved just before you went to 2.5 - if not, import the 2.5 config and see what happens.
  • pfSense to pfSense router with no vpn?

    6
    0 Votes
    6 Posts
    683 Views
    canadianllamaC
    @chpalmer Thank you guys, we will be looking into this!!
  • pfBlocker - There were error(s) loading the rules

    2
    0 Votes
    2 Posts
    282 Views
    stephenw10S
    You can see that if you rebooted and pfBlocker has not downloaded that alias yet. I often see that with the v4 table but as soon as it loads it the error is resolved. Try deleting the error then going to Status > Filter Reload and reloading the ruleset. If the error doesn't re-appear it has been resolved. Steve
  • VPN Bonding

    10
    0 Votes
    10 Posts
    3k Views
    stephenw10S
    A manual install to prove it works and does what it says it should, maybe in FreeBSD, would be the first step here. It would certainly be interesting though. Steve
  • No/Slow/Sporadic WAN FQDN connection with Cloudflare, Acme/LE, Namecheap

    3
    0 Votes
    3 Posts
    227 Views
    T
    Thanks, Steve. I did some more checking, and while it is difficult to know what exactly I changed to make it work, I think I needed to add the domain name to the host name boxes on the DNS Server Settings in General Setup. That, plus a couple of changes in the Cloudflare set-up, solved the problem. Thanks for your input.
  • PFSense and Windows Network Location Awareness

    5
    0 Votes
    5 Posts
    1k Views
    G
    @stephenw10, that sounds like it may be the problem. I have the LAGG bridged with the WLAN. I'm going to try and set the bridge's MAC to whatever it happens to be right now and see if that resolves the issue. Thanks for the insight. Best, Chuck
  • T-Mobile WIFI Calling

    Locked
    14
    0 Votes
    14 Posts
    9k Views
    stephenw10S
    Locking this thread, it's over 4 years old! If you have new information on a subject please start a new thread. Steve
  • Why is auto-update not recommended

    8
    0 Votes
    8 Posts
    827 Views
    C
    Thanks all for your input. Very helpful. I forgot for a moment that this is enterprise class software/hardware that I am using at home/small business. That being said, @johnpoz your at home case makes a lot of sense too! I followed another post with some PHP that should check and email me about updates (albeit is not working yet - weekend troubleshooting). Will use that and not auto update. Appreciate the education!
  • Load Balancing LDAP for pfsense Authentication

    5
    0 Votes
    5 Posts
    866 Views
    G
    Yes indeed... very impressed with HAProxy in pfsense.. My only slight complaint, is that I would like to use a port alias to simplify my configurations but it seems HAProxy doesn't currently support that. So for a web site hosting 80 and 443 connections I need to duplicate everything once for port 80 and once for port 443.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.