• Ping spikes and staggering speeds

    6
    0 Votes
    6 Posts
    665 Views
    J
    @johnpoz Sorry for my rather not so helpful answere. It is connected via a gigabit inteface normal rj45. There are not any packages installed.
  • 0 Votes
    4 Posts
    757 Views
    stephenw10S
    Yes you can use a shaper with in a double NAT setup. As long as the shaping on the pfSense interface is more restrictive than anything upstream it should work fine. You should be bale to use PPPoE without it dropping out though. I use that here without issues. Steve
  • Outbound connection drops. Reboot fixes for a short time.

    4
    0 Votes
    4 Posts
    504 Views
    stephenw10S
    But you are still able to ping pfSense from the client in that situation. Both the LAN and WAN IP? And presumably you can connect to the webgui also? Can you ping our from pfSense itself in Diag > Ping? Is there anything in the system log when this happens? Do you see attempted ping in the firewall log? Steve
  • 0 Votes
    7 Posts
    885 Views
    stephenw10S
    Hmm, I guess good to know at least, but....
  • This topic is deleted!

    2
    0 Votes
    2 Posts
    32 Views
  • Ransomeware infected machine

    39
    0 Votes
    39 Posts
    3k Views
    johnpozJ
    @mhertzfeld said in Ransomeware infected machine: not failover to one of the other ports on the board. It can failover to another port for IPMI? That doesn't seem like all that smart of an idea from a security point of view ;)
  • PFsense hanging since version 2.4.4

    50
    0 Votes
    50 Posts
    9k Views
    stephenw10S
    Ouch! Nice catch though.
  • SG-1100 requires interaction before completing bootup

    4
    0 Votes
    4 Posts
    412 Views
    jimpJ
    So your OpenVPN configuration is causing it to wait for a password before it starts. Maybe you have it set to user auth but didn't enter a password. You might try adding auth-retry nointeract; to the custom options, too
  • Temporary allowed connections

    58
    0 Votes
    58 Posts
    9k Views
    H
    KOM.... Sometimes bitter enemies can eventually become best of friends.......stranger things happen.....just a thought Peace
  • pfsense 2.4.4 Rel.2 checksum error / after reboot fine for 20 sec

    18
    0 Votes
    18 Posts
    2k Views
    F
    i noticed, sorry i can not update my configs yet since the i am facing the issue described in here So i need to wait until i can modify or downgrade the system to safely remove the transparent-client-ip feature. I was going to use this feature for internal smtp server to forward the original IP.
  • I dont how open a port

    2
    0 Votes
    2 Posts
    158 Views
    johnpozJ
    I would not suggest you open a port to the public internet for your cameras.. Not a good idea! Use a vpn.. But https://docs.netgate.com/pfsense/en/latest/nat/forwarding-ports-with-pfsense.html
  • 0 Votes
    5 Posts
    13k Views
    jimpJ
    @guardian said in Please tell me what this error message is likely serious?: Any idea how many "bad attempts" are necessary to trigger the message? It depends on a few factors, but that's all decided by sshguard and could be found in their docs. @guardian said in Please tell me what this error message is likely serious?: How long sshguard has been part of pfSense Since 2.4.4. @guardian said in Please tell me what this error message is likely serious?: Is the "user id" of the attempted login available in a log somewhere? The main system log.
  • WiFi calling and VLAN 1

    8
    0 Votes
    8 Posts
    2k Views
    NogBadTheBadN
    @JKnott said in WiFi calling and VLAN 1: @NogBadTheBad said in WiFi calling and VLAN 1: I still work on an account that uses DecNET What would use that these days? It would have to be ancient. An old Dec server running a legacy application, due to be retired soon.
  • pfsense and automated config backups (Rancid )

    3
    0 Votes
    3 Posts
    780 Views
    M
    Excellent! Thanks so much! I will have a look. Regards, --Mokey
  • Multicast CARP configuration

    3
    0 Votes
    3 Posts
    352 Views
    stephenw10S
    ....unless of course you don't mean the actual CARP traffic (which must be multicast) and are referring to pfsync or config sync, which is a common misconception. Steve
  • Managing pfSense large deployments - pfCenter SaltStack

    6
    0 Votes
    6 Posts
    3k Views
    M
    Very old topic, but we use salt to manage our pfsense ;) Thanks to https://github.com/ndejong/pfsense_fauxapi Some links : https://github.com/ndejong/pfsense_fauxapi_client_python https://github.com/alkivi-sas/salt-pfsense
  • Help on this Firewall+Routing question ??? Can this be done?

    2
    0 Votes
    2 Posts
    147 Views
    NogBadTheBadN
    Where is "someone else’s firewall", directly connected to yours ? If so a VIP + 1:1 NAT and a static default route on "someone else’s firewall" pointing to your router should do it. https://docs.netgate.com/pfsense/en/latest/book/nat/1-1-nat.html
  • key based auth ssh issue

    8
    0 Votes
    8 Posts
    857 Views
    johnpozJ
    @mod said in key based auth ssh issue: 3 . password +public key login works That is not really an option.. If you set password and public key your just using password to auth.. 2: I use linux version of putty and we don't get keygen/ don't need to convert. Pretty sure you do.. https://www.ssh.com/ssh/putty/linux/puttygen 4 Yeah no idea why your bringing that up at all - yeah no shit everyone uses 2 ;) BTW, current stable version of putty is .71
  • Running EdgeRouter X behind Pfsense

    21
    0 Votes
    21 Posts
    2k Views
    stephenw10S
    I have to say I would swap out that rl NIC if you possibly can. It will almost certainly cause you headaches in the future. https://github.com/freebsd/freebsd/blob/master/sys/dev/rl/if_rl.c#L48 Steve
  • Creating two subnets on same lan using two Wan connections

    7
    0 Votes
    7 Posts
    665 Views
    A
    well just add it to both groups on tier 3, it's that simple. if tier 1 (high packets loss or high latency) it will switch to tier 2. and if both 1,2 dropped 3 will kick in. you control which one are primary and secondary with tier numbers. believe me every day you will find a new reason to love pfsense more. i love it so much i just installed it on a VPS and configured openvpn on it. so now i have a personal vpn for 5$/moth.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.