• ipv6 vlan leak

    8
    0 Votes
    8 Posts
    914 Views
    stephenw10S
    Yup. Using VLAN1 bad! https://docs.netgate.com/pfsense/en/latest/vlan/security.html#using-the-default-vlan-1 Steve
  • Hide TCP Blocks in logs

    7
    0 Votes
    7 Posts
    910 Views
    stephenw10S
    Yup, that would work. Traffic blocked by Snort shouldn't appear under the default block rule though. Snort has it's own rule it blocks with in Legacy mode. Or in in-line mode it blocks before the firewall rules are parsed anyway. Steve
  • weird internet access issue

    45
    0 Votes
    45 Posts
    9k Views
    P
    @stephenw10 I will make sure it's set to that, thank you so much for helping me through this! I guess we can close the issue. I think I'm good now. Appreciate it.
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    7 Views
    No one has replied
  • pfsense software directory structure on netgate 5100?

    6
    0 Votes
    6 Posts
    752 Views
    R
    @gertjan Thank you. Much easier to navigate. It never occurred to me to access via SSH other than from the serial port. The firewall is located in an inhospitable location that makes it difficult to use a direct connection. I'm on now using Putty.
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    16 Views
    No one has replied
  • 0 Votes
    3 Posts
    522 Views
    C
    @stephenw10 Yes, you are correct. That was impacting the system. I first setup a test system in lab with same 2.6 config and performed a webgui update 2.6 to 2.7.0-DEVELOPMENT. On 2.7.0-DEVELOPMENT the system does not exhibit the issues described in first post. On production machine I followed your instructions and applied patch "Disable pf counter data preservation to temporarily work around latency when reloading large rulesets (Redmine #12827)". Issue appears resolved. Thank you!
  • Disappearance of part of my PfSense CE 2.6.0 configuration

    3
    0 Votes
    3 Posts
    423 Views
    stephenw10S
    Or roll back to a snapshot in Proxmox if you have one.
  • PfSense uses 100% of swap but only 10% of memory.

    7
    0 Votes
    7 Posts
    1k Views
    M
    Ok I managed to solve the issue. The problem was that in the VM Hypervisor (Proxmox) I accidentally enabled „ballooning“ memory (which means it will remove memory on the fly if it detects that the VM is not using it). I disabled it and now it all works like a charm. I guess the GUI (and myself) was confused that the RAM was removed from the VM while running, therefore showing memory usage „of 11GB“ while in reality it only had way less memory at this point.
  • 0 Votes
    2 Posts
    385 Views
    stephenw10S
    Basically because it's extremely low priority compared with many other things. It doesn't look that hard to do though. Pull requests accepted. You could use the firewall logs widget on the dashboard instead where it is configurable. Steve
  • Scanning/Connecting for/to hosts with static IPs from wrong subnet

    3
    0 Votes
    3 Posts
    495 Views
    stephenw10S
    You don't want a static route here because pfSense would have an interface in that subnet not access it via some other gateway on the LAN. You would disable the other interface then add back that subnet as a VIP on the existing interface so both subnets now exist on that interface. Obviously you would need to remove that to be able to re-enable the other interface. Steve
  • unified cloud management

    6
    0 Votes
    6 Posts
    893 Views
    D
    @stephenw10 Thanks for the info! I am hoping you can provide a cloud-based control panel at some point. Am now looking at using the Dynamic DNS function for each PfSense appliance as we have GoDaddy for Registrar and it will not cost me to try it. I'm thinking it will probably construed as 'too clunky', but I'm hoping it will be received as a 'usable' option for my small offices. Thanks again to all who provided input!!
  • Anyway to delete remnants of packages?

    8
    0 Votes
    8 Posts
    899 Views
    stephenw10S
    Even after installing and uninstalling again? You can check the pkg log in /conf. Squid has a bunch of parts which makes it more susceptible to issues if part of the script fails for any reason. Failing twice would be unusual though. Steve
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    7 Views
    No one has replied
  • FIOS > ONT > pfSense = nojoy

    17
    0 Votes
    17 Posts
    2k Views
    P
    @dobby_ Firewall > Traffic Shaper > Limiters LW has a video explaining this also link text
  • pfSense is not syncing OpenVPN settings after reboot...

    Moved
    4
    0 Votes
    4 Posts
    626 Views
    stephenw10S
    The majority of VPN tunnels? Show as disconnected when they are actually up?
  • Putting my pfSense Home Lab on an Extender

    19
    0 Votes
    19 Posts
    2k Views
    T
    @stephenw10 So if I try to access 192.168.5.6 (an iDrac that sits behind the pfSense box) I get "192.168.5.6 took too long to respond." but I dont see the firewall logging anything like it did before (see below). The 5.6 address is perfectly accessable by a laptop sitting behind the pfSense box, and the laptop can access the external web just fine. [image: 1666135100503-2022-10-18_16h18_17-resized.png]
  • pfSense freezes on Saturdays in the morning and shortly after 4pm.

    22
    0 Votes
    22 Posts
    2k Views
    R
    @globus243 I've had a similar experience, which may or may not be related. Netgate 5100 locks up shortly after either 6 a.m. or 6 p.m. but not always on the same day of the week. Finally traced the problem to pfblockerng-devel updating its block lists. For some reason this results in "insufficient swap space," even though no swap space is shown in use. My wife first noticed this phenomenon because her Amazon Alexa console, which is connected wirelessly, shows "no network." I'm not competent to delve into what's actually happening, so I just reboot the firewall and everything is fine.
  • Intermmitent internet outages

    5
    0 Votes
    5 Posts
    642 Views
    stephenw10S
    Mmm, those look like real upstream issues unless you have something that shows otherwise. Steve
  • Spontaneous reboots.

    10
    0 Votes
    10 Posts
    996 Views
    A
    @steveits said in Spontaneous reboots.: @aaronouthier said in Spontaneous reboots.: After 5 minutes, when Internet was not restored, the power cord was pulled try to avoid turning off power on any device with a file system, to avoid file system damage. The proper way to shut down pfSense is Diagnostics/Halt. I am aware. I didn’t say I pulled the power. My roommate got impatient and did things his way… that's a different problem than the spontaneous reboots...? Yes, I was confused initially. I had thought the system was rebooting when the power was pulled. It wasn’t until the next morning and saw the logs that I realized that wasn’t the case. Also, since it wasn’t rebooting, it means I just lost access to the system, which means ssh and web access weren’t an option. I was attempting to access by ssh when the power was pulled, and I had already determined the web UI was not accessable. @aaronouthier said in Spontaneous reboots.: centigrade Google will do the conversion/math for you: https://www.google.com/search?q=35+celsius+to+fahrenheit I know how to do the conversion. What I consider to be hot, and what a computer chip considers hot, are 2 different things. My home doesn’t quite get to 25 degrees Celsius, for example. At 35 degrees, I’d be about dead… —Aaron
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.