• 0 Votes
    11 Posts
    1k Views
    stephenw10S
    Both are forms of NAT, translating IP addresses/ports. pfSense just uses the term port forwarding for inbound. Steve
  • Solved: Unknown servers on VLAN

    27
    0 Votes
    27 Posts
    4k Views
    L
    @johnpoz said in Unknown servers on VLAN: @lewis yeah arp scanning is very fast, and most anything is going to answer an arp, even if firewall blocking all protocols and ping, etc. Only problem with that sort of scan is you have to be on the same L2.. But for what your looking for its prob more in line with what your looking to do.. Yes, basically just wanting to make sure I have my own relatively secure LAN (VLAN) network. I'll do it again once everything is up.
  • Authentication Server (LDAP) Missing Client Certificate Option

    15
    0 Votes
    15 Posts
    1k Views
    M
    @stephenw10 Ahh, I see, good to know, thanks!
  • Helium Miner - Port Forwarding Issue

    9
    0 Votes
    9 Posts
    1k Views
    johnpozJ
    @zzkazu said in Helium Miner - Port Forwarding Issue: outlined by "Lawrence Systems" on you tube He says to block the whole planet - normally they put out pretty good info.. I would be disappointed if they said to setup what you had to be honest..
  • Pfsense Auto Config Backup (ACB) down?

    3
    0 Votes
    3 Posts
    264 Views
    dotmaxD
    Now it seems back online. thank you Max
  • Increasing nginx/php-fpm timeout?

    2
    0 Votes
    2 Posts
    765 Views
    S
    @maliaga See if this thread helps.
  • crash reports

    2
    0 Votes
    2 Posts
    277 Views
    jimpJ
    There is no way to submit them automatically anymore. They could potentially contain sensitive information, so it's best not to post them without reviewing the content. The textdump.tar files are the ones with the useful information. You can expand them with 7-zip or similar though you may have to rename them first (for example, rename textdump.tar.0 to textdump0.tar), and the most important files inside each are ddb.txt and msgbuf.txt. ddb.txt contains the panic backtrace which may point toward a specific cause, while msgbuf.txt contains the kernel message buffer which may have additional clues if the backtrace alone isn't sufficient. You can post the tar files here on the forum, or just the txt files, but review the content first to make sure you aren't posting anything identifiable that you aren't comfortable sharing with the world. For example in your screenshot it has your hostname.
  • LoadBalance with DDNS NoIP on Multi-WAN?

    4
    0 Votes
    4 Posts
    513 Views
    stephenw10S
    Sorry, I typo'd that. I meant that not a load balancing group! Each WAN in a different tier like that creates a failover group. Steve
  • Why is pfsense passing dhcp requests through its WAN interface?

    10
    0 Votes
    10 Posts
    2k Views
    O
    @stephenw10 Thank you for your insight. In our case that was the only modification to the configuration after noticing the issue and it resolved it. Hopefuly others will able to try should the encounter the issue.
  • Log rotation size setting not being applied

    6
    0 Votes
    6 Posts
    680 Views
    E
    @stephenw10 Great tip, thanks!! It was set there to 150000000. Deleted, saved, now got the expected 500 in pfSense.conf. cat /var/etc/newsyslog.conf.d/pfSense.conf | egrep filter /var/log/filter.log root:wheel 600 7 500 * C
  • Removing LAGG. What happens to VLANs?

    4
    0 Votes
    4 Posts
    477 Views
    stephenw10S
    That's already the case. If you try you see: The following input errors were detected: This LAGG interface cannot be deleted because it is still being used. Steve
  • Bring Back Services >> Load Balancer Please!!!

    2
    0 Votes
    2 Posts
    443 Views
    stephenw10S
    Relayd was deprecated in 21.02/2.5. There is a thread detailing an effort to bring it back as a package: https://forum.netgate.com/topic/154871/reestablish-relayd/ You might also try Squid reverse proxy which has a lot less features than HAProxy. Steve
  • Moving from ASA5512x to PFSense

    Moved
    4
    0 Votes
    4 Posts
    507 Views
    M
    That's a smart move!
  • Boot ends with login. No GUI.

    3
    0 Votes
    3 Posts
    237 Views
    D
    I think so too. However, I wanted to follow a tip first and reinstall the software. However, I now also no longer have access to the console. Everything does not sound so good. If there is something interesting to report, I'll let you know. Otherwise, thank you for your time.
  • 0 Votes
    3 Posts
    526 Views
    M
    @jimp OK, thanks for your prompt response. I applied the patch and can confirm that can't reproduce the issue any more, even after enabling bogon networks block. Thanks for the tip!
  • Automatic updates

    17
    0 Votes
    17 Posts
    7k Views
    B
    I have been running the cron update every other saturday at 1am and yet to have a problem.
  • Integrating Gryphon WifiAP with Pfsense

    11
    0 Votes
    11 Posts
    2k Views
    P
    Thanks stephenw10 for pointing out typo on subnets. Subnet .1 on pfsense & AP WAN side. Subnet .9 on AP LAN side. I cannot edit the previous post to correct.
  • Dirty Pipe exploit - CVE-2022-0847

    12
    0 Votes
    12 Posts
    1k Views
    JKnottJ
    @tristargod BSD was created based on the original AT&T UNIX. However, it soon diverged to become independent. There was even a lawsuit over that. Linux was developed completely separate, with Linux Torvalds wanting to create a Unix like OS, after finding MINIX inadequate. Then we had SCO Unix/Caldera claiming ownership over Linux based on very tenuous claims. One was through IBM, which created JFS for OS/2 and then ported it to AIX, which was then claimed to be a derivative work of UNIX, even though it was originally developed for OS/2. That's the sort of nonsense SCO/Caldera was using to justify their claims. There's lots more. BTW, this history was covered extensively on Groklaw.
  • Auto Config Backup Problems?

    8
    0 Votes
    8 Posts
    946 Views
    G
    @stephenw10 Problem fixed. Backups now visible again. thanks Steve
  • PHP ERROR: Type 1 - reoccurring alert

    3
    0 Votes
    3 Posts
    590 Views
    bmeeksB
    @shinobi said in PHP ERROR: Type 1 - reoccurring alert: I have seen this alert & cleared it a few times. It seemed to pop up right around the Log4j debut.. so any log related error is causing me to 2nd glance it. Does this look like a legit "not enough memory" message, or maybe a buffer overrun.. ? PHP errors PHP ERROR: Type: 1, File: /usr/local/www/suricata/suricata_logs_browser.php, Line: 54, Message: Allowed memory size of 536870912 bytes exhausted (tried to allocate 6336420904 bytes) @ 2022-03-12 01:20:08 Your log file has grown too large to view using the PHP viewer applet. That code works by loading the entire log into RAM and then displaying it to the browser as one string. The PHP process in pfSense has a limited amount of RAM allocated for it, so if the log file is too big, that limited RAM is exhausted when trying to load the log. The solution, as @SteveITS said, is to turn on the log rotation options and set a much smaller log size for alerts.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.