• Loader.conf / Systel?

    4
    0 Votes
    4 Posts
    559 Views
    stephenw10S
    You can put whatever loader values you want in there but you shouldn't need to add anything. Steve
  • pfsense issues with Vodafone Gigabox (Ireland)

    8
    0 Votes
    8 Posts
    1k Views
    stephenw10S
    Hmm, well that's pretty vanilla hardware. Do you have WAN just using one of the em ports dircetly? No bridges or laggs configured? Have you tested using the fxp port as WAN? Steve
  • Netgate SG-1100 router - How do I login?

    3
    0 Votes
    3 Posts
    645 Views
    R
    @rcoleman-netgate said in Netgate SG-1100 router - How do I login?: connect to the console Thanks this is very helpful... I will try your link.
  • Are these floating rules correct?

    5
    0 Votes
    5 Posts
    682 Views
    S
    @upper-deck If you're finding traffic isn't getting into the queues as expected (Status/Queues) I suggest finding the state for the IP (Diagnostics/States). For example, downloads from a web server are generally an incoming connection to the web server and the download is merely the response.
  • [solved] Notifications on multiple emails

    12
    0 Votes
    12 Posts
    2k Views
    B
    Thanks everyone for the help. The issue was the email server provider. I configure with gmail app password and can send to more receipients succesfully.
  • A certificate link penetration problem

    14
    0 Votes
    14 Posts
    1k Views
    C
    Sorry, I haven't found out what the problem is, I only have to transfer this function to a device that is not a pfsense gateway.
  • How to cleanly get data to security onion?

    12
    0 Votes
    12 Posts
    3k Views
    JonathanLeeJ
    @jonathanlee I got it to work only with Virtualbox only, Security Onion was accessible. I set up port forwarding. However I could not access it outside of of the guest machine. Many SSL errors. I have major issues now with Windows 10 running Hyper-V without it being enabled. I also had the blue screen of death. This was the reason for using virtualbox. Security Onion would not work correctly with Hyper-V for me. I also used a NIC mac to clone for data marshalling to test if it would clone my laptops IP and that worked. This leaves me with questions like is there any container protected NICs security equipped network cards for high security systems like firewalls. My reason for the question is the data marshalling with a clone MAC, and how containers have no visibility with the antivirus on the physical machines. I have also been told during my cyber security classes that scanning for VM and containers are a current issue in the cyber security world. I stated to wonder if software could control a security chip built onto the NIC and take control of all NIC features with the physical host machine's software, and control approved container and virtual software access right on the card. Enough daydreaming for me. . . If you want to check out more info on this adventure to try to get this to work in a virtual environment here is my aftermath issues, that really point out some current security issues with today's hardware. More on Containers and Network Card Security Issues: https://answers.microsoft.com/en-us/protect/forum/all/hyper-v-running-even-after-being-disabled/8d048265-d0d9-465d-b647-9e121ea059bf VirtualBox Install of Security Onion: https://docs.securityonion.net/en/2.3/virtualbox.html#:~:text=Click%20the%20icon%2C%20then%20select,%E2%80%9CAdvanced%E2%80%9D%20options%2C%20set%20%E2%80%9C Port Forward with VirtualBox: https://www.golinuxcloud.com/configure-nat-port-forwarding-virtualbox-cli/
  • 0 Votes
    32 Posts
    5k Views
    stephenw10S
    Hmm, how much older was the previous installation? It might have been installed, and therefore booting, legacy and now the clean install is UEFI and failing. You could try reinstalling as legacy BIOS. Steve
  • 0 Votes
    18 Posts
    3k Views
    stephenw10S
    Manually forcing reinstall of pfSense-kernel-pfSense-2.6.0.pkg should get you onto the correct kernel after a reboot. But the kernel file you have already looks correct. Once you do that can you ever be 100% confident of the install? If reinstalling is very inconvenient then it's probably worth trying first but reinstalling and restoring a config is usually quick and easy. https://docs.netgate.com/pfsense/en/latest/backup/restore-during-install.html Steve
  • pfsense 2.6.0 over heating after upgrade

    7
    0 Votes
    7 Posts
    962 Views
    stephenw10S
    That could cause it to 'hang' of it exhausts all memory. It wouldn't cause it to run hot though, pcscd doesn't use any significant CPU. @muralidharanks said in pfsense 2.6.0 over heating after upgrade: now I've changed to intel What temperatures is it reporting? Steve
  • Can't ping client to client - Gateway issue?

    4
    0 Votes
    4 Posts
    773 Views
    V
    @ccnewb said in Can't ping client to client - Gateway issue?: when I set "default gateway IPV4" to Combined_WAN in System > Routing Gateway, and then disable the Firewall LAN rule below, internet stops working. Why do you disable it. You need a pass rule to allow internet access. But you should set the gateway to 'none' in the rule.
  • WhatsApp calls do not connect after upgrade 2.5.2 -> 2.6.0

    25
    1 Votes
    25 Posts
    5k Views
    J
    stephenw10 Thanks for your guide. I followed your steps, by installing the recommended system patch and also applying the custom patch. Whatsapp calls now works fine on my Pfsense 2.6.0
  • Pfsense Certificate error with x509_strict

    3
    0 Votes
    3 Posts
    617 Views
    E
    Thanks for help In fact I have a error when trying to connect LAM (Ldap Acount Manager) with ldaps:// I thought it was due to thi CA x509_strict error. but it was not the problem I can fom another vm connect in ldaps:// to my ldap... The strange thing is when creating CA + cert with openssl then testing the CA and cert with x509_strict I get the same answer... => so it is not a pfsense issue ;-)
  • Use of bridge and span interface for traffic analysis

    9
    0 Votes
    9 Posts
    1k Views
    D
    @stephenw10 said in Use of bridge and span interface for traffic analysis: You might be better off spanning the ports in Proxmox though. I've never tried that. You wouldn't see the traffic inside PPPoE of course. I can see it on the PVE host with tcpdump -i vmbr1 -U -s0 -w - pppoes. But whether it's straightforward to see it with an attached network analysis guest, I have not tried yet.
  • Hetzner /29 Ip Routing

    4
    0 Votes
    4 Posts
    641 Views
    stephenw10S
    Cool. Maybe note it in the other ticket for other to read if it's fixed. Steve
  • pfSense kicking off LAN device for trying to download from usenet.

    6
    0 Votes
    6 Posts
    874 Views
    stephenw10S
    @ssmsti said in pfSense kicking off LAN device for trying to download from usenet.: I can't get a ip address assigned to the server after that and the server says that the network cable is unplugged. Any chance you have a loop on the bridge and stp is disconnecting it? If that port is in a bridge how is the bridge configured? The bridge interface is assigned as LAN? Check the output at the command line of ifconfig -vma. Does pfSense also show the link as down? If so that will be logged and may include a reason for it. Steve
  • WAN data for VLAN after firewall

    2
    0 Votes
    2 Posts
    412 Views
    stephenw10S
    If you add logging to the pass rule(s) on the VLAN then you can see the states opened in the firewall logs by filtering on that interface. Steve
  • pfSense 22.1 ZFS - Boot Environment not showing

    Moved
    3
    0 Votes
    3 Posts
    447 Views
    C
    @bigsy Thanks; I completely missed that! thank you.
  • PFSense Behind BW320 with Static IPs

    12
    0 Votes
    12 Posts
    2k Views
    NollipfSenseN
    @pkeogan said in PFSense Behind BW320 with Static IPs: I would like to use my PFSense server to handout the public IPs, @pkeogan May I suggest that you take a look at the HaProxy package...
  • How to make a Ip address use a different gateway? Help

    23
    0 Votes
    23 Posts
    3k Views
    stephenw10S
    Not really if you don't have any traffic shaping. 200Mbps is above what you would see if there was a link speed/duplex mismatch. You should check Status > Interfaces for errors though. Steve
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.