• Guide on how to setup Dual Wan on pfsnse 2.4.4?

    20
    0 Votes
    20 Posts
    2k Views
    stephenw10S
    You can try that but I don't think it will help. It behaves like some low level mismatch or limitation. Like for example the TTL limitation I mentioned. If that router only allows a limited number of clients one way they can enforce that is to prevent you using another router behind it. Steve
  • pfSense is new for me

    9
    0 Votes
    9 Posts
    935 Views
    stephenw10S
    Port 22, so scp/ssh? Nothing special should be required. If you are still seeing that same error and the passive ports are open then the server is probably misconfigured and handing out it's internal IP to connect to. And the client is not clever enough to see that and ignore it. The Filezilla client will do that for you. Steve
  • Pfsense squid + squidguard in transparent mode blocking by aliases

    9
    0 Votes
    9 Posts
    1k Views
    A
    @KOM thanks, I'll check !
  • (Solved) Unblock Specific Website

    3
    0 Votes
    3 Posts
    610 Views
    ?
    @Gertjan Thanks for pointing me in the right direction! It was a DNS blocker.
  • Adding a Ubiquity UniFi Access Point

    15
    0 Votes
    15 Posts
    2k Views
    J
    If you just have ONE Access Point and are not interested in all the charts, logs and graphs that is generated with the controller software, just use the Apple IOS app to install and setup the access point. Since the app is FREE, it's a lot cheaper than the Cloud Key and easier than configuring the controller software. That's what I did and it works great. You can change IP addresses, update the firmware, etc all from the IOS app.
  • View squidguard (sgerror.php) error page on SSL sites.

    error page
    5
    0 Votes
    5 Posts
    1k Views
    stephenw10S
    Yes, if you are using one of the other modes Squid can be in. See: https://www.youtube.com/watch?v=xm_wEezrWf4&feature=youtu.be&t=935 Steve
  • Is there anyway I can improve PPPoE speed

    14
    0 Votes
    14 Posts
    2k Views
    G
    I prob has fix it self. I find out my phone wire is shorting out my isp fix replace the cable
  • Pfsense Failover drops connections/ interuppted on Restart of Primary

    13
    0 Votes
    13 Posts
    1k Views
    stephenw10S
    Mmm, hard to see what we can do here without patching something quite low level. Ideally we would want it to remain in CARP maintenance until the states have syncd. That would probably need to be selectable though as some people will not be syncing states. We could probably force the Primary to boot into maintenance mode at every boot requiring manual intervention to failback. It would still failback automatically if the secondary went off-line entirely. Would that be in any way practical for you? Steve
  • Backup Script Says 403: Forbidden

    8
    0 Votes
    8 Posts
    1k Views
    KOMK
    Glad to hear you got it working.
  • 0 Votes
    15 Posts
    1k Views
    S
    The health feature would be a good idea. Although it's been over a month now and Snort has been stable with-out Service Watchdog, the problems we had with Snort in the earlier versions of pfSense no longer appear to be present. At this stage I suspect the crash may have been the result of a conflict between Snort and Service Watchdog possibly while Snort was updating.
  • Use of hostname inside LAN

    12
    0 Votes
    12 Posts
    922 Views
    J
    @stephenw10 said in Use of hostname inside LAN: Yes, like that. You don't need static ARP just static DHCP mappings. Steve Got it. Thanks!
  • Open WEb GUI on existing production pfsense firewall

    15
    0 Votes
    15 Posts
    1k Views
    jimpJ
    There may not be a GUI on that. pfSense its its own operating system that happens to be based on FreeBSD. You appear to have a FreeBSD system that someone manually configured to be a firewall. pfSense can't help you get any information from that. You might try posting on a FreeBSD forum for help in tracking down the information you need from that system.
  • Memory report GUI vs Console?

    3
    0 Votes
    3 Posts
    485 Views
    perikoP
    Hi @stephenw10 Them is better to trust what 'top' show us insted of the GUI, right? Thanks.
  • [SOLVED] Weird DNS Problem

    34
    0 Votes
    34 Posts
    11k Views
    V
    Thanks Steve. I have opened a new topic here: link text
  • Azure LAN interface without gateway

    6
    0 Votes
    6 Posts
    1k Views
    stephenw10S
    Ha, no problem.
  • Additional Router Behind pfSense

    7
    0 Votes
    7 Posts
    2k Views
    G
    The thought was more of a "defense in depth". If something gets through pfsense, the second firewall may catch it (or vice versa). I will take another crack at it tonight by shutting off NAT on the internal firewall. Thanks for the timely responses all.
  • Blocking Games in IOS n android

    7
    0 Votes
    7 Posts
    2k Views
    stephenw10S
    Openappid in Snort is the only option for filtering at the application layer. If it does not detect the traffic as anything other than https there's not much you can do. There probably are blocklists available for most of that though. I would try installing pfBlockerng-dev and look at the feeds there. Steve
  • Safesearch issue with IPv6

    4
    0 Votes
    4 Posts
    427 Views
    stephenw10S
    I mean just what configuration have you made to enforce Google safe-search. Redirects in Squid/Squidguard? Local DNS overrides? Configured in Google Chrome locally? Or something in Google remotely? Steve
  • Why can't i access my pfsense box over OpenVpn

    27
    0 Votes
    27 Posts
    4k Views
    stephenw10S
    Yes, setting the other router to whatever bridge mode it might have available would affect anything using it directly. Really you should look at using pfSense instead of that router and having a separate wireless access point behind it. You may be able to use the ISP router for that purpose: https://docs.netgate.com/pfsense/en/latest/wireless/use-an-existing-wireless-router-with-pfsense.html It depends what sort of connection you have and whether it has a separate modem. Steve
  • Allow a user via ssh to: ifconfig eth0 down

    11
    0 Votes
    11 Posts
    2k Views
    O
    thanks, you are very helpful and sorry for me beeing so untalented
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.