• Monitoring PFsense services using Prometheus and Grafana

    5
    0 Votes
    5 Posts
    2k Views
    A
    @santheerdas yes, Prometheus Node Exporter will be the service you need for all machine related stats, including running services etc.
  • pfSense router and Adguard Home ( DNS based ad block server) mini box

    12
    0 Votes
    12 Posts
    1k Views
    A
    Ok, thanks to all for answering
  • Backup Fails

    2
    0 Votes
    2 Posts
    387 Views
    stephenw10S
    That sounds like something in the browser or some browser plugin. It's not something pfSense would show.
  • Crash report / programming bug

    5
    0 Votes
    5 Posts
    512 Views
    stephenw10S
    Yup I see it. Unfortunately the backtrace isn't particularly revealing: db:0:kdb.enter.default> bt Tracing pid 1 tid 100002 td 0xfffffe0012117ac0 kdb_enter() at kdb_enter+0x32/frame 0xfffffe00109b4820 vpanic() at vpanic+0x163/frame 0xfffffe00109b4950 panic() at panic+0x43/frame 0xfffffe00109b49b0 vm_fault() at vm_fault+0x15c5/frame 0xfffffe00109b4ac0 vm_fault_trap() at vm_fault_trap+0xb0/frame 0xfffffe00109b4b10 trap_pfault() at trap_pfault+0x1d9/frame 0xfffffe00109b4b70 calltrap() at calltrap+0x8/frame 0xfffffe00109b4b70 --- trap 0xc, rip = 0xffffffff836cd170, rsp = 0xfffffe00109b4c48, rbp = 0xfffffe00109b4db0 --- _end() at 0xffffffff836cd170/frame 0xfffffe00109b4db0 sys_reboot() at sys_reboot+0x29c/frame 0xfffffe00109b4e00 amd64_syscall() at amd64_syscall+0x109/frame 0xfffffe00109b4f30 fast_syscall_common() at fast_syscall_common+0xf8/frame 0xfffffe00109b4f30 --- syscall (55, FreeBSD ELF64, reboot), rip = 0x27291a, rsp = 0x820ec2408, rbp = 0x820ec2830 --- However it looks like it panicked when it tried to make some change after shutdown was initiated: <118>pfSense is now shutting down ... <118> <118>net.inet.carp.allow: 0 -> 0 <6>pflog0: promiscuous mode disabled Trying to mount root from ufs:/dev/ufsid/65b7583531b4716a [rw,noatime]... panic: vm_fault_lookup: fault on nofault entry, addr: 0xffffffff836cd000 cpuid = 2 time = 1706519642 KDB: enter: panic Unclear why it did that but it you clear the crash report and reboot and it doesn't do that every time it's likely a quirk of having just run the initial setup. You are still running 2.7.1. You should upgrade to 2.7.2 when you can. Steve
  • [Netgate 6100] Post upgrade to 23.05.1, error:

    Moved
    15
    0 Votes
    15 Posts
    1k Views
    C
    After updating to recent version Netgate pfSense Plus 23.09-RELEASE (amd64) there were several weeks of stability. Nothing in the mean time has been changed in the config of this PF. Recently again the machine had similar issue and behavior showing ' SIOCGIFGROUP: Device not configured ' message again along with some other messages. The PF machine exhibited very similar behavior again and was no longer smoothly pushing packets through, it was significantly dropping packets and the sshing into the pf over wan or accessing the webgui over wan was extremely difficult. After logging into webgui the notifications greeted with the following (date and time removed): I also made a post in another thread because of the other error messages displayed match the OP of that thread: https://forum.netgate.com/topic/185386/there-were-error-s-loading-the-rules-pfctl-diocaddrulenv-device-busy/18?_=1709874330173
  • Is a readonly login for status board type display possiblle?

    4
    0 Votes
    4 Posts
    182 Views
    stephenw10S
    It's a privilege you can assign to a user or group: https://docs.netgate.com/pfsense/en/latest/usermanager/privileges.html [image: 1709824703133-screenshot-from-2024-03-07-15-18-07.png]
  • Console Access macos -> SG-5100 Garbled Text

    console sg-5100 macos driver
    7
    0 Votes
    7 Posts
    1k Views
    J
    I created a boot usb drive. Once I turned the 5100 on with that in, I was able to re-install with zfs and eventually apply my config xml. Thanks again!
  • Allowed IP is blocked but not present in VirusProt table

    7
    0 Votes
    7 Posts
    674 Views
    stephenw10S
    Yes it would only be triggered if the OpenVAS scanning process attempts to login to the firewall with bad credentials. If you don't have Snort or Suricata running it's unlikely to be blocked by the firewall. Perhaps something upstream is blocking it? Do you see traffic arriving at the pfSense WAN?
  • webConfigurator forces connections to http

    17
    0 Votes
    17 Posts
    873 Views
    E
    @johnpoz Thank you!!
  • Using restic with pfSense AWS virtual appliance

    2
    0 Votes
    2 Posts
    264 Views
    stephenw10S
    @AndyM-TB said in Using restic with pfSense AWS virtual appliance: https://restic.readthedocs.io/en/latest/080_examples.html#setting-up-restic-with-amazon-s3 You might be able to make that work. I'd look at the methods described here first though: https://docs.netgate.com/pfsense/en/latest/backup/remote-backup.html Steve
  • Changing Firewall rules view

    8
    0 Votes
    8 Posts
    823 Views
    stephenw10S
    Not uncommon if you have VLANs, for example, for each tennant in a building.
  • Advantages of upgrading to latest CE version

    7
    0 Votes
    7 Posts
    951 Views
    S
    @johnpoz No joke. I started using pfSense when 2.6 was current, pretty soon after its release, and I was getting concerned that no updates came out for like a year. It was a relief when 2.7 arrived and the two point releases that followed.
  • WAN not getting IP address from 192.168.0.x

    5
    0 Votes
    5 Posts
    697 Views
    GertjanG
    @Gblenn said in WAN not getting IP address from 192.168.0.x: Why would you not be "allowed" to change things on the LAN side of your router?? That is "your zone" and not something the ISP should have a say about. Are they claiming they will not support you if you do? If I was an ISP, I would consider doing just that ! No more need to support (financially) an expensive help desk ! They could post a web site with just a one line help text : When you received our router, after connecting it, it worked fine. So : here is the help : don't change anything anymore. edit : the real question is : why would you even call these guys to subscribe with them ^^
  • WAN Link Down causes pfSense to stop responding on LAN?

    14
    0 Votes
    14 Posts
    2k Views
    J
    @stephenw10 said in WAN Link Down causes pfSense to stop responding on LAN?: @jhg said in WAN Link Down causes pfSense to stop responding on LAN?: OK, I installed the most recent kmod driver for FreeBSD 14 You have to use a module built against the actual kernel in pfSense. The realtek-kmod pkg is in our repo to provide that. So remove that pkg from FreeBSD and just 'pkg install' it from our repo. Got it (finally :-) I should have realized pfSense would have its own repos in the list. kldstat now shows the module loaded. We'll see if the problem goes away. Thanks
  • 0 Votes
    4 Posts
    487 Views
    stephenw10S
    Ah, yup almost certainly that bug then.
  • Restart WAN PPPoE interface

    7
    0 Votes
    7 Posts
    855 Views
    fireodoF
    @murdof said in Restart WAN PPPoE interface: Thanks - that worked! You're welcome!
  • ARM64 / AWS Graviton image?

    3
    0 Votes
    3 Posts
    202 Views
    cmcdonaldC
    @PixieDust No
  • pfblocker not downloading ASN list

    18
    0 Votes
    18 Posts
    2k Views
    fireodoF
    @jrey said in pfblocker not downloading ASN list: All I can say is that at 01:20:13 Eastern it was working fine Ah, OK - thanks!
  • Are certificates stored in backup?

    5
    0 Votes
    5 Posts
    448 Views
    NogBadTheBadN
    @johnpoz If ssh does complain about the ssh key cd to the .ssh folder and remove the known_hosts file.
  • pfSense favicon not working on Safari?

    4
    0 Votes
    4 Posts
    533 Views
    dennypageD
    @tecno-guac symlinks to the rescue [23.09.1-RELEASE][root@fw]/root: ls -l /usr/local/www/apple-touch* lrwxr-xr-x 1 root wheel 55 Nov 10 12:33 /usr/local/www/apple-touch-icon-ipad-76x76-precomposed.png -> apple-touch/apple-touch-icon-ipad-76x76-precomposed.png lrwxr-xr-x 1 root wheel 43 Nov 10 12:41 /usr/local/www/apple-touch-icon-ipad-76x76.png -> apple-touch-icon-ipad-76x76-precomposed.png lrwxr-xr-x 1 root wheel 64 Nov 10 12:33 /usr/local/www/apple-touch-icon-ipad-retina-152x152-precomposed.png -> apple-touch/apple-touch-icon-ipad-retina-152x152-precomposed.png lrwxr-xr-x 1 root wheel 52 Nov 10 12:41 /usr/local/www/apple-touch-icon-ipad-retina-152x152.png -> apple-touch-icon-ipad-retina-152x152-precomposed.png lrwxr-xr-x 1 root wheel 57 Nov 10 12:33 /usr/local/www/apple-touch-icon-iphone-60x60-precomposed.png -> apple-touch/apple-touch-icon-iphone-60x60-precomposed.png lrwxr-xr-x 1 root wheel 45 Nov 10 12:41 /usr/local/www/apple-touch-icon-iphone-60x60.png -> apple-touch-icon-iphone-60x60-precomposed.png lrwxr-xr-x 1 root wheel 66 Nov 10 12:33 /usr/local/www/apple-touch-icon-iphone-retina-120x120-precomposed.png -> apple-touch/apple-touch-icon-iphone-retina-120x120-precomposed.png lrwxr-xr-x 1 root wheel 54 Nov 10 12:41 /usr/local/www/apple-touch-icon-iphone-retina-120x120.png -> apple-touch-icon-iphone-retina-120x120-precomposed.png lrwxr-xr-x 1 root wheel 44 Nov 10 12:33 /usr/local/www/apple-touch-icon-precomposed.png -> apple-touch/apple-touch-icon-precomposed.png lrwxr-xr-x 1 root wheel 32 Nov 10 12:41 /usr/local/www/apple-touch-icon.png -> apple-touch-icon-precomposed.png /usr/local/www/apple-touch: total 35 -rw-r--r-- 1 root wheel 3669 Dec 6 12:10 apple-touch-icon-ipad-76x76-precomposed.png -rw-r--r-- 1 root wheel 7260 Dec 6 12:10 apple-touch-icon-ipad-retina-152x152-precomposed.png -rw-r--r-- 1 root wheel 2965 Dec 6 12:10 apple-touch-icon-iphone-60x60-precomposed.png -rw-r--r-- 1 root wheel 5640 Dec 6 12:10 apple-touch-icon-iphone-retina-120x120-precomposed.png -rw-r--r-- 1 root wheel 5640 Jun 27 2023 apple-touch-icon-precomposed.png [23.09.1-RELEASE][root@fw]/root:
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.