• Migration from Draytek to pfSense

    2
    0 Votes
    2 Posts
    516 Views
    stephenw10S
    Do it one step at a time. If you try to move from several subnets on one layer2 directly to radius assigned VLANs you are almost certainly going to hit multiple issues! I would first try to create VLANs and make sure they work with your switches/APs. That should definitely work and is not that hard to setup with Unifi gear. Then, once that's working with some test subnet, try moving your current subnets to that to separate then and see what breaks. Steve
  • I can't get Internet access on the LAN side

    Moved
    15
    0 Votes
    15 Posts
    2k Views
    R
    @ibrahim1989 said in I can't get Internet access on the LAN side: WAN was ok, but I had to change the LAN gateway to none. Thanks a lot! Yes, if the pfSense is routing that specific network do not set a gateway.
  • Can I restore my config to a new device?

    3
    0 Votes
    3 Posts
    544 Views
    stephenw10S
    In general you should be able to. If it has different interface types, the same number of interfaces, pfSense will ask you to re-assign them when you import it. If you have a lot of sub-inteface types like VLANs, PPP etc that can get complex. Steve
  • Can't connect to web gui from new install

    Moved
    10
    0 Votes
    10 Posts
    856 Views
    stephenw10S
    OK, so you get an IPv4 address but it's in a private subnet?
  • IPv6 after backup from ThinClient and restore to VM

    Moved
    5
    0 Votes
    5 Posts
    688 Views
    bearhntrB
    @stephenw10 Thank You -- I made the change and rebooted -- seems to see the changes, and everything appears to be working. Thank You
  • Using MultiWAN from the same ISP

    24
    0 Votes
    24 Posts
    2k Views
    stephenw10S
    You cannot do load-balancing for clients just by using setting the system default gateway to load-balance gateway group. You need to use policy based routing on the LAN side firewall rule. Setting a gateway group for the system default gateway can be used for failover for the system itself there. See: https://docs.netgate.com/pfsense/en/latest/routing/gateway-groups.html#gateway-group-options Steve
  • VPN only for specific app?

    4
    0 Votes
    4 Posts
    614 Views
    stephenw10S
    @hudri said in VPN only for specific app?: I assume, that, once VPN is activated on the external mobile client, ALL traffic on this client will be encapsulated. That's not necessarily the case, and it sounds like that's not what you want. As others have said you don't need to have clients use the VPN for all traffic. Just define only the camera/NVR IPs addresses as the local side of the VPN and that's all that will be routed across it. Steve
  • Something taking up all the space on my system

    29
    0 Votes
    29 Posts
    3k Views
    bmeeksB
    @troutpocket said in Something taking up all the space on my system: @bmeeks Even after rebooting the firewall? Rebooting will kill any zombie process, so no need to perform the CLI command if you reboot. If you had space continuing to disappear AFTER rebooting, then I am inclined to think Suricata may not have been the issue. It starts with a clean slate after a reboot. Reading your entire thread again, perhaps the log file itself got hosed within the OS. Suricata will reopen the same log file when restarted or after rebooting. But blowing it away and reinstalling would wipe out the log file.
  • allow/block firewall rules and reboot

    4
    0 Votes
    4 Posts
    557 Views
    R
    Thanks jarhead and stephen... i did have continuous ping LOL i guess i need to review my firewall fundementals "stateful"
  • Need help with manual mount specs

    4
    0 Votes
    4 Posts
    554 Views
    stephenw10S
    Reinstaling and restoring your config will probably be quickest and safest.
  • Assigning a valid cert to the web interface gives a domain mismatch error

    2
    0 Votes
    2 Posts
    170 Views
    T
    Making it a wildcard domain fixed the problems xd
  • PFSense Plus Home - Connect to work VPN

    8
    0 Votes
    8 Posts
    722 Views
    V
    @csharp2a So you only passing through connection to your work. This is absolutely compatible with the pfSense Plus home license, of course. These things were already discussed here some time ago and there is a document from Netgate in the web, which explicitly confirm the compliance of such a use case.
  • Pfsense 6100 not able to load available packages

    18
    0 Votes
    18 Posts
    2k Views
    T
    @steveits Thank you for the clarification. I have a ticket in to get my new firmware. :)
  • Migrating settings between pfSense routers

    Moved migration
    5
    0 Votes
    5 Posts
    3k Views
    stephenw10S
    Yes, in most cases you can just backup your config and restore it into a different device. pfSense will ask you to re-assign the interfaces to whatever is available in the new hardware and you're done. However there are some caveats! If the new hardware has fewer total interfaces for example you you need to lose some or convert to VLANs etc. If your config contains a lot of sub-interface types like VLANs, LAGG or PPP it can be easier to modify the config manually before restoring it. And if the new hardware has the same interface types as the old device pfSense will just use them without asking your to re-assign which might not be what your want. In this case moving from the 1100 to the 2100 hits several of those points so it's better to modify the config before installing it. But since you bought that from us we can do it for you if you open a ticket with us. https://www.netgate.com/tac-support-request And, yes, it will bring all the settings from the 1100 and packages will be reinstalled. Steve
  • 0 Votes
    36 Posts
    4k Views
    stephenw10S
    Yes, this has degenerated into berating other users simply for for having another opinion which is unacceptable. This is a known issue with no solution that will please everyone. Ultimately it's quite far down the list of priorities. Open a feature request or even a pull request. Locking this. Steve
  • Residential FTTH ONT - Anyone being charged monthly for the ONT?

    3
    0 Votes
    3 Posts
    519 Views
    F
    my isp uses PON, they would not give me the type of sfp i needed to plug in straight to pfsense.
  • Installing pfSense

    8
    0 Votes
    8 Posts
    791 Views
    stephenw10S
    If you choose restart then select rescue shell you can check the install log file to see what actually failed there. It's probably an issue specific to VBox in OSX though (or maybe on ARM?). I've installed pfSense in VBox many times and it works fine. Steve
  • Slow management from WAN

    13
    0 Votes
    13 Posts
    1k Views
    stephenw10S
    Mmm, first report I've seen of that. But good to know, I'll be watching for it. Steve
  • Internet access randomly/frequently now drops out

    9
    0 Votes
    9 Posts
    854 Views
    stephenw10S
    That's what dpinger does for the gateway monitor and you said you tried setting it to 1.1.1.1. That should have logged the outage. When this happens it just restores itself without intervention? Do you have any access to the modem to check the connection or logs? Steve
  • Nextcloud HAPROXY SSL

    11
    0 Votes
    11 Posts
    2k Views
    E
    @stephenw10 Steve, many thanks your attention. My mistake, the backend config. (Http check method) was changed from OPTION to GET, and was resolved.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.