• [crash report] system went down and took 3h30 to self recover

    crash 2.7.2
    3
    0 Votes
    3 Posts
    545 Views
    L
    @stephenw10 Thank you very much !!
  • DNS 8000+ms, troubleshooting help

    75
    0 Votes
    75 Posts
    11k Views
    stephenw10S
    If the ISP router is terminating the PPPoE session then none of that applies. It only applies if that is bridging the PPPoE traffic to pfSense. If PPPoE is terminated on pfSense then: https://docs.netgate.com/pfsense/en/latest/hardware/tune.html#pppoe-with-multi-queue-nics PPPoE adds an 8 byte overhead so to carry the standard 1500B MTU the frames on the parent NIC must be 1508B. Those are referred to as mini-jumbo or baby-jumbo frames (RFC4638).
  • Packet Tracer function

    15
    0 Votes
    15 Posts
    6k Views
    NollipfSenseN
    @stephenw10 Okay!
  • Daily Crashes pfsense 2.7.0 - how to solve it?

    1
    0 Votes
    1 Posts
    106 Views
    No one has replied
  • Accessing a CPE/Modem from Inside the Firewall Recipe XG-7100

    2
    0 Votes
    2 Posts
    233 Views
    stephenw10S
    You shouldn't need to add a second connection. You won't be able to if you have a local subnet including 192.168.100.1 on any other interface. You may need to add an IP Alias VIP to the WAN of, say, 192.168.100.2/24 so that the firewall has an IP when the WAN is down. You might also need an outbound NAT rule for traffic from internal interfaces to the modem specifically. Steve
  • WAN IPv4 Packet Loss Increasing; IPv6 Packet Loss ok

    5
    0 Votes
    5 Posts
    607 Views
    MaxK 0M
    @stephenw10 I ran MTR for ~24 hours, 1 second intervals, behind pfSense to the Verizon address pfSense is monitoring. There was very little packet loss. The pfSense monitoring has improved also. So, I'm going to assume it was some change on Verizon's side and it has been resolved.
  • Random Crashes

    5
    0 Votes
    5 Posts
    480 Views
    M
    @stephenw10 thank you! I went ahead and put a new device in service for now. Going to try formatting and reinstalling the original one and let it sit and run to see if it does it again. If it does then it will get a new drive and put in place as the backup.
  • Sorting of Firewall Alias settings

    4
    0 Votes
    4 Posts
    464 Views
    S
    @stephenw10 said in Sorting of Firewall Alias settings: You wanted the port in numerical order? The description in alphabetical order? ...alphabetically by number? (which I see occasionally and annoys my mild OCD) @CreationGuy The brute force way would be to edit the config file and restore... I would think it's just in config file order.
  • How to use OpenLDAP members groups

    30
    0 Votes
    30 Posts
    3k Views
    G
    Oke i tested it with a backuped VM of my OpenLDAP server and the memberOf overlay module is not needed it stil works without that module 🥳
  • interfaces->assignments missing add button

    20
    1 Votes
    20 Posts
    3k Views
    stephenw10S
    So traffic from pfSense is being routed over OpenVPN on the host machine? I'm not sure WireGuard would be able to connect over OpenVPN to the same provider. I could imagine routing issues.
  • Two pfsense in same LAN with diferent gateway clients

    4
    0 Votes
    4 Posts
    419 Views
    johnpozJ
    @virusbcn that will lead to asymmetrical traffic flow. And the return traffic to the other pfsense would have no state.. Even if you created a transit between the pfsenses. Use 1 pfsense, create 2 different lan side networks that your pfsenses have a transit network to talk to each other to get to each others networks. Do source natting of the traffic, use host routes on your devices. There are many ways to skin this cat.. Pick one of the ways. The easiest solution is just to do a source nat, an outbound nat on the pfsense doing the vpn so that clients you talk to on this shared lan think the traffic is just coming from that pfsense lan IP.
  • Pfsense download in qcow2 format

    7
    0 Votes
    7 Posts
    2k Views
    S
    Hello! You could try qemu-img qemu-img convert -O qcow2 in.iso out.qcow2 John
  • Pfsense setup

    3
    0 Votes
    3 Posts
    372 Views
    stephenw10S
    You don't mention a switch configured to separate the VLAN. That's what I'd expect to find.
  • Incoming Wireguard mapping to outgoing OpenVPN

    8
    0 Votes
    8 Posts
    746 Views
    O
    You're awesome @stephenw10. I was able to add a rule above my other rule to pass all to my LAN subnet first, and now it seems its all working as expected. The learning curve for pfsense is steep (or just understanding firewalls, NAT's gateways, rules, etc in general). Appreciate you holding my hand and helping me out!
  • 2.7.2 - Anyone else have Wake On LAN status issues?

    3
    0 Votes
    3 Posts
    410 Views
    zeroepochZ
    @zkhcohen, thanks for the pointer. I was having this same issue and came across this post from Google. The issue you linked to I think describes the problem pretty well. If it keeps getting removed we might need to add a cron job to keep adding it back for now as others did for https://redmine.pfsense.org/issues/14374.
  • Local URL's not resolving with NGINX Proxy Manager

    3
    0 Votes
    3 Posts
    3k Views
    O
    @stephenw10 Thanks! This solved my problems!
  • 4200 vpn speed

    9
    0 Votes
    9 Posts
    1k Views
    ?
    @stephenw10 makes sense, will look into all this. appreciate your help!
  • Router Recommendations

    5
    0 Votes
    5 Posts
    558 Views
    JKnottJ
    @akashphx said in Router Recommendations: I'm looking for 2 router recommendations. One for my home and several for my business. You might consider one of those mini PCs that are popular these days. I've been using the one described in my sig for about 3 years.
  • Netgate 4100 WebGui is irresponsive

    16
    0 Votes
    16 Posts
    1k Views
    A
    @Gertjan I run the following command via the console /etc/rc.php-fpm_restart
  • 0 Votes
    13 Posts
    1k Views
    stephenw10S
    Yup that^. Just be sure that your outbound NAT rule is highly targeted so it only ever matches traffic trying to reach the modem.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.