• Same captive portal zones

    6
    0 Votes
    6 Posts
    670 Views
    GertjanG
    "Several times" means : check the logs (all the logs, pfSense captive portal, FreeRadius (enable logs !)) why. It could be anything, except a random issue. This : @gertjan said in Same captive portal zones: To circumvent problems, what about make the names unique ? will blast away your question. Btw : captive portal questions are here https://forum.netgate.com/category/3/captive-portal
  • Can I monitor external IPs activities on my web server through pfsense?

    2
    0 Votes
    2 Posts
    326 Views
    GertjanG
    Hi, The one that knows all about the 'usage' of your web server, is ... your web server ! pages, size, speed, where from, who, all of it. Tools like awstats and munin and many more, can create statistics without limits. pfSense has a traffic shaper which is excellent for limiting
  • Interface instability

    5
    0 Votes
    5 Posts
    745 Views
    Q
    Thank you, yes it turned out to be the ESX load balancing algorithm, once we changed it the gateways came online.
  • Regular kernel panics on 2.4.3-RELEASE-p1

    3
    0 Votes
    3 Posts
    441 Views
    stephenw10S
    I'd have to guess bad RAM. db:0:kdb.enter.default> bt Tracing pid 4632 tid 100255 td 0xfffff800a70655c0 pmap_remove_pages() at pmap_remove_pages+0x5f0/frame 0xfffffe0118268580 exec_new_vmspace() at exec_new_vmspace+0x19c/frame 0xfffffe01182685f0 exec_elf64_imgact() at exec_elf64_imgact+0x8d8/frame 0xfffffe01182686e0 kern_execve() at kern_execve+0x77c/frame 0xfffffe0118268a40 sys_execve() at sys_execve+0x4a/frame 0xfffffe0118268ac0 amd64_syscall() at amd64_syscall+0xa4c/frame 0xfffffe0118268bf0 fast_syscall_common() at fast_syscall_common+0x106/frame 0x7fffffffe380 db:0:kdb.enter.default> ps Do you have any further crashes? Do they look identical or more random? Bad RAM usually results in relatively random crash logs. That can also start happening spontaneously. Possibly a bad drive. Steve
  • Single client blocks all other connections when uploading via 4G

    3
    0 Votes
    3 Posts
    402 Views
    stephenw10S
    You can use dynamic Limiters to share the available bandwidth equally among the connecting IPs. You would have to set a total available value though and that may throttle traffic on the DSL connection. The Limiters would need to be on the LAN side to see the different client IPs. Steve
  • How to enable / disable interfaces from command line?

    4
    0 Votes
    4 Posts
    12k Views
    stephenw10S
    Then can you not just ping them from each interface in a script? Just use the bind switch to select the source IP. Steve
  • Read PFsense Configuration Data

    7
    0 Votes
    7 Posts
    900 Views
    stephenw10S
    So FTP servers behind the firewall that cannot be configured to pass an external IP or use a custom data port range? Apart from the already mentioned issues can you not persuade customers to at least use a half decent FTP server? Steve
  • NAT - Port Fowarding

    15
    0 Votes
    15 Posts
    2k Views
    J
    Thank John!
  • WAN speed drops significantly when downloading large 10+ GB files!?

    1
    0 Votes
    1 Posts
    377 Views
    No one has replied
  • How to make autostart of add-on services ?

    Locked
    3
    0 Votes
    3 Posts
    4k Views
    jimpJ
    Obligatory warning: FTP and Samba have no place on a firewall Remove those immediately and setup an isolated server for those tasks if you need them on your network.
  • Semi random connection drops (cable modem)

    3
    0 Votes
    3 Posts
    477 Views
    JKnottJ
    @jakemendonza When a modem is in bridge mode, it doesn't have a public ID, though the ISP may have an internal address used for management. You would likely be seeing the address assigned to the firewall/router.
  • Recurring Firewall rule for LetsEncrypt

    14
    0 Votes
    14 Posts
    3k Views
    M
    hmm What about haproxy with combination of standalone HTTP server method? This is how I do it for all my hosts. Acme starts http server on localhost and on haproxy I have backend on that same ip and port 80. Then again on haproxy there is ACL path starts with /.well-known/acme-challenge and it gets redirected to backend which is actually acme standalone server :)
  • This topic is deleted!

    3
    0 Votes
    3 Posts
    111 Views
  • This topic is deleted!

    2
    0 Votes
    2 Posts
    52 Views
  • 1: NAT done but SSH not accessible

    21
    0 Votes
    21 Posts
    2k Views
    johnpozJ
    First thing I would do is setup your vip.. And then validate your seeing traffic to the vip before doing anything with any rules or 1:1 nat.. Since its not possible for pfsense to do anything with said traffic until it actually gets to pfsense wan. Maybe you have something between where your trying and pfsense wan that blocks 22 (ssh). Once you have traffic getting to pfsense on the port you want, then you can forward it to what you need be it with normal port forward or 1:1
  • Careless delete existing user under System / User Manager / Users

    3
    0 Votes
    3 Posts
    445 Views
    DerelictD
    You can recover the automatic backup from right before you made those changes if available. Take a look at Diagnostics > Backup & Restore, Config History
  • pfSense cannot get WAN IP address

    8
    0 Votes
    8 Posts
    1k Views
    DerelictD
    Doubtful that was actually necessary. But if that's what you have done, that's where you are now.
  • This topic is deleted!

    2
    0 Votes
    2 Posts
    81 Views
  • MultiWAN (VPN) certain websites won`t work.

    3
    0 Votes
    3 Posts
    365 Views
    F
    Hello johnpoz, thanks for your quick reply. You re right, i made a few additional adjustments after i followed the guide mentioned above to fit the setup i need. To do this i indeed set up the two Google DNS servers (under System -> General setup) which i associated with my regular DHCP_WAN as a gateway. Additionally i created two further DNS entries (the DNS servers of NordVPN) and selected the DHCP_VPN (client) Interface as the gateway this time. After this i switched to the firewall rules and adjusted every ruleset thats related to "non local" traffic so that LAN and WIFI traffic have the VPN interface set as its gateway and my rules for VLAN100 have the WAN interface as the gateway. Outbound NAT is still going over WAN for my VLAN100 subnet as well of course. I am aware that big streamers like netflix and amazon are trying to make it difficult for you to use VPNs and such but what leads me to believe that this might not be the problem here is that if i put my traffic VLAN100 traffic through the VPN i can access amazon and netflix without any trouble. If i use my WAN as the gateway for my VLAN100 rules several "thatsmyip" websites indicate that there everything is working just as if i wouldnt sue any vpn at all, yet i cant figure out why i run into those problems.
  • PFsense as VM

    6
    0 Votes
    6 Posts
    770 Views
    S
    i got it sorted it out... the cable i was using was not good even thought it was a cat6, so now it works. PS: router can be a modem when it has built in modem capabilities, like spectrums cheers and thanks
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.