• pfSense plus for home lab

    2
    0 Votes
    2 Posts
    805 Views
    stephenw10S
    Currently pfSense Plus is only available for Netgate appliances. There will be an announcement when that changes. Steve
  • Auto logout console after 30 min inactivity

    3
    0 Votes
    3 Posts
    400 Views
    stephenw10S
    Yes, there is nothing included in pfSense to do that. You might be able to add something custom for SSH connections to add that but not for as direct console connection as far as I'm aware. Steve
  • KVM logout woes

    10
    0 Votes
    10 Posts
    817 Views
    AndyRHA
    For the KVM switch to not cause what you are seeing it must continue to emulate the KVM when switched to other clients. You likely have a KVM switch that does not emulate the KVM, when you switch the KVM to another host the KVM simply goes away causing FreeBSD to see the hot plug event. If you want to test this theory unplug and re-plug the KVM from pfSense with it selected and see if you see the same behavior.
  • Suricata Unix Socket

    6
    0 Votes
    6 Posts
    1k Views
    bmeeksB
    @mynetworkrocks said in Suricata Unix Socket: @bmeeks A quick question - looking at the config I posted do you see anything i need to adjust to get this to work? Sorry, but I don't use telegraf. The configuration coding for that option was provided by a Suricata package user, and I just incorporated it into the next release of the GUI package. There are some older telegraf threads in the Packages sub-forum here. You might find some answers by searching in those.
  • Home Network Design

    68
    0 Votes
    68 Posts
    21k Views
    johnpozJ
    @jt40 I have ran content filtering and security for multiple companies over the years - I know exactly what they do an don't do ;) And how they do it and what they can do.. And MITM is a can of worms that many will not open - that you take it upon yourself to do it - with a company that has had questions, and is banned in some countries on gov type computers.. Filtering where a user can go is simple enough to do with explicit proxies having to be set without having to break the end to end encryption of the ssl connection. I don't have to peek inside your ssl connection to block you from going to xyz.com or allowing you to go to abc.com via https. Well you do you..
  • Memory consumption

    6
    0 Votes
    6 Posts
    860 Views
    S
    @pukoid said in Memory consumption: No, it's not pcscd. Stopping it in services changes nothing. Maybe I'm wrong, but in my case it need 30-60 secondes after stop the service... Edit: See it after posting /usr/local/bin/vmtoolsd is your issue.
  • Dynamic DNS Clients not updating even when status has RED X!

    7
    1 Votes
    7 Posts
    2k Views
    S
    @stephenw10 Thanks Steve, I'll try the cronjob.
  • Getting empty alert message I can't get rid of

    6
    0 Votes
    6 Posts
    784 Views
    N
    @stephenw10 Diag > Command Promt and rm /tmp/notices sure did help. Thanks - case closed! (Decided to put my UDM in first place and then use my pfsense to protect a subnet behind this. I like the pfsense more but it's not a wifi-router so...)
  • pfSense and Linksys Velop config - not working properly

    Moved linksys velop
    18
    0 Votes
    18 Posts
    2k Views
    stephenw10S
    Mmm, well that's something else. I'm not aware of anything in particular that might cause that. Check the Squid logs. What are you using Squid for? Steve
  • pFsense HD Corupt?

    4
    0 Votes
    4 Posts
    900 Views
    M
    @steveits said in pFsense HD Corupt?: @mynetworkrocks re: your second question I've seen that in a few cases. Try restarting (which it sounds like you have been doing...?). @SteveITS - yes that is what I was doing, I was rebooting it a few times to try figure out what was going on. It seems like something got corrupts on the M.2 drive that I have installed on the XG-7100 and the brought the whole thing down. I have now installed the latest version on the MMC drive and going to use that as a backup. I will be reinstalling on the M.2 drive. @stephenw10 Thank you I did and support was excellent they pinged me a image download within a few minutes. On the MMC I had to go to 2.4.5 first then to the latest version. I will keep that as a "live" backup, I will reinstall on the M.2 with the new image. Thank you for all the replies!
  • Root mount waiting for : CAM

    2
    0 Votes
    2 Posts
    1k Views
    stephenw10S
    It's normal to see that a few times and the number of times depends on the drive. It may not actually be stopping there. That's the last thing you see if you have dual consoles enabled, and the other one is set as primary, until boot completes. I would guess it's set as serial console primary and it lost a NIC when you removed it so it's now waiting at the interfaces assign screen but you can't see that. Try forcing vidconsole: https://docs.netgate.com/pfsense/en/latest/troubleshooting/boot-issues.html#booting-with-an-alternate-console Steve
  • Anydesk does not work

    10
    0 Votes
    10 Posts
    2k Views
    johnpozJ
    @bmeeks said in Anydesk does not work: but frequently users think they can just go through and enable everything haha - yeah no clue to what any of the rules mean - but clearly the more rules I have the more secure I will be.. And lets just start of in blocking mode ;)
  • Timeout during connect (likely firewall problem)

    7
    0 Votes
    7 Posts
    2k Views
    CBersC
    Port 80 was disabled in rules and Nat. As soon as I enabled them, the certs renewed successfully. Thanks for pointing me in the right direction, much appreciated.
  • Hotplug event on backup interface resets connections

    20
    0 Votes
    20 Posts
    2k Views
    stephenw10S
    Hmm, weird! Take the win and move on.... Steve
  • New project

    4
    0 Votes
    4 Posts
    577 Views
    W
    @cool_corona sure!
  • Slow download speeds

    15
    0 Votes
    15 Posts
    1k Views
    stephenw10S
    Aha, nice!
  • Smart TV cannot connect to internet via ethernet

    33
    0 Votes
    33 Posts
    6k Views
    D
    @stephenw10 I found that odd too. I'm not by any means a networking professional - I'd consider myself an advanced beginner, but I do not understand why that port was locked into vlan 10 or how was vlan 10 chosen for devices on that port...
  • L2TP Site to Site between PFsense and Mikrotik

    13
    0 Votes
    13 Posts
    3k Views
    stephenw10S
    Nice! Good result. Pure IPSec is waay better than trying to use L2TP over it. Steve
  • Weird VPN server issue (pfSense/win2022server)

    9
    0 Votes
    9 Posts
    1k Views
    stephenw10S
    Good to hear! You should be aware though that the fact you had to forward GRE implies the VPN type you're using is probably PPTP which is an outdated protocol and considered insecure. You should check the VPN type in use to be sure. Steve
  • Home Network Setup for Sniffing HTTPS Traffic

    3
    0 Votes
    3 Posts
    1k Views
    johnpozJ
    @dirtydish been many many years since my sons were home and had to worry about what they did on the net, and the net was a much different place 20 years ago ;) But pfsense can act as your proxy, you don't need to setup some laptop to do that. https traffic can be difficult.. There would be a very steep learning curve sadly to say. If they are using tablets and iphones - you might be better off using the tools meant to monitor those.. https://support.apple.com/en-us/HT201304 I do a bit of this with my grand daughters phone - she can not install any apps without it asking me for permission.. I get a notification - and she texts me ;) Pa can you approve ;) -- she lives in California.. You can also look into monitoring youtube history, etc. Such tools will most likely be easier to get going with and easier to manage and use than say some proxy log that is for sure.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.