• Block storage service sites (DropBox, onedrive, google drive, etc..)

    6
    0 Votes
    6 Posts
    1k Views
    N
    @nizo67 It is working fine with squid now. The desired sites could be blocked. Thanks to all of you for your help and support. Have a nice lovely weekend. Regards
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    6 Views
    No one has replied
  • Access from wan pfsense with nat

    pfsense 2.6.0 nat proxmox
    4
    0 Votes
    4 Posts
    1k Views
    stephenw10S
    pfSense will only allow access from the WAN side by default if there is only one interfaces assigned. As soon as you assign two of more interfaces all connections to WAN are blocked by default and you need to add WAN firewall rules to allow them.
  • How to check outbound connections made via a specific port

    3
    0 Votes
    3 Posts
    319 Views
    V
    @aysman The state table gives you information about active connections. Go to Diagnostics > States to view them. You can select a specific interface where the PCs are connected to and enter a filter expression, e.g. ":3389" for the default RDP port. If you also want to see the history add a pass rule to the respective for destination port 3389 or whatever and enable the logging. Then you can look for connections in Status > System Logs > Firewall.
  • Unknow Problem ... maybe Hardware Failure

    3
    0 Votes
    3 Posts
    491 Views
    fireodoF
    @sylvain said in Unknow Problem ... maybe Hardware Failure: panic: NMI indicates hardware failure A Non-maskable interrupt (NMI) is always a very heavy problem that is in almost all cases a hardware-problem. A reinstall of pfsense ... i doubt that that will be helpful. Maybe boot the machine with Memtest and see if there are any errors. (If it is possible) My 2 cents, fireodo
  • Cloud HAProxy Wireguard to pfsense Wireguard HAProxy

    1
    0 Votes
    1 Posts
    520 Views
    No one has replied
  • FTP throughput pfsense to WAN

    12
    0 Votes
    12 Posts
    1k Views
    stephenw10S
    Running a speedtest at each end if not using the same route as traffic between the sites so you may simply not be passing whichever hop is throttling you. If you can't see the speed with iperf though you will never see it in FTPS. Steve
  • Switched ISP, PPPoE to DHCP

    14
    0 Votes
    14 Posts
    2k Views
    F022YF
    So after a chat with my ISP they offered me a free public IP, all my rules work again!! Thank you all for the help i'd never come across CGNat before. The more you know.
  • It crashes..

    crash fanless pc hardware
    5
    0 Votes
    5 Posts
    1k Views
    crc_error_79C
    @stephenw10 Thank you
  • No Connectivity from LAN; Connectivity from GUI.

    9
    0 Votes
    9 Posts
    905 Views
    johnpozJ
    @sabsan that is SSDP normally - yeah your going to see in logs.. But as that looks spammy as get out.. (looks like only 2 seconds).. I would look to that device to turn that spammy noise off. But if not setup a rule to not log that..
  • How are these IP addresses gaining access to my ESXi server?

    2
    0 Votes
    2 Posts
    367 Views
    D
    @dhenzler found my mistake, and corrected it. pfSense not at fault.
  • Random crashes "Fatal trap 12: page fault while in kernel mode"

    15
    0 Votes
    15 Posts
    5k Views
    JeGrJ
    To add it here: Customer has updated to a newer RC-snapshot as the earlier got him a few report emails of the box for getting packet loss sometimes (not that often) and he wanted to check if that would be fixed, too. On the latest RC snapshot thus far no problems to report. No crash dump, no freeze, no panic. Also the packet loss seems gone too :) So happy on both fronts for now - makes me happy to report that. Great job everyone involved. Shoutout to TAC support for their help and staying on the topic, too! Cheers \jens
  • Business Scenario for 6 port setup suggestions

    9
    0 Votes
    9 Posts
    861 Views
    NollipfSenseN
    @burlinwa said in Business Scenario for 6 port setup suggestions: Thinking about Phones, badge/security/access @burlinwa said in Business Scenario for 6 port setup suggestions: and 5 workstations) Glad to have gotten the conversation started. First, I thought it was some top secret corporate mission with the retina biometric security entry access...now I know it's a five person driven team.
  • Inconsistent wireless/wired speedtests

    speed
    2
    0 Votes
    2 Posts
    659 Views
    stephenw10S
    If you don't have and traffic shaping in play I would check the link is correctly at 1G in each connection in the route. Though if something is linked at 100M that would affect both directions. An asymmetric route somewhere might allow that. Steve
  • Help with ATT Fixed wireless internet to go through pfsense box

    2
    0 Votes
    2 Posts
    439 Views
    stephenw10S
    It should definitely be possible to make this work with a double NAT type setup. Just make sure the subnets used don't conflict. The '192 range' contains a large number of /24 subnets. Make sure the pfSense LAN is using something different to the 5268AC LAN. Steve
  • Firewall schedules not working

    12
    0 Votes
    12 Posts
    1k Views
    stephenw10S
    OK so two seemingly independent problems. The schedules rule appears to be on the WAN carrying SIP traffic port forwarded traffic to the PBX. That does not carry RTP traffic so calls would not immediately drop. Nor does it carry outbound SIP traffic so I would expect to still be able to place calls but not receive them outside of the schedule. Is that what you see? Steve
  • Advanced Log Filter, how to filter exact ip results?

    5
    0 Votes
    5 Posts
    621 Views
    Y
    @rcoleman-netgate De rire
  • Can't remove broken Certificate Authority

    7
    0 Votes
    7 Posts
    968 Views
    GertjanG
    @stephenw10 Yep, that's another possible issue : Installing a package (always the latest version) on a pfSense system that is not on the latest (2.6.0 if you use the free edition) version can work out fine. More often it breaks stuff. That's why : If you decide NOT keep pfSense on the latest vesrion then you also decide not to upgrade / install packages any more. Not respecting this rule is like playing with a six barrel gun and a bullet. ( we all saw the movie Deerhunter ones in our lives, right ? ) Read / click on the image : [image: 1655717628991-0c26b335-292e-4d62-bafd-2840b0cfa267-image.png] Note : with some 'small' packages, like "Notes", you might get away with it. When you see this : [image: 1655717764197-6b4a7c6a-5366-4380-afa8-da3e98de2a03-image.png] and you see that huge stuff like php74 gets pulled in - and knowing that pfSense uses also php7x for it's WebGUI, I would consider that as a huge red flag.
  • WAN Loosing IP

    3
    0 Votes
    3 Posts
    861 Views
    penguinpagesP
    @luckman212 Thanks for response. I think the messages are standard response sequence of DHCP lack of response on the WAN interface. Of course I do not have much of a baseline but turns out the ISP has had a LOT of issues over the last week in our area. I assumed it was me.... I think it is / was them. I will post as I get better baseline.
  • Swap on pfSense?

    3
    0 Votes
    3 Posts
    590 Views
    T
    @stephenw10 Thanks!
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.