• NIC/MAC addresses changing for interface name

    assignments
    14
    0 Votes
    14 Posts
    2k Views
    E
    @stephenw10 I can see the current NDI, but I don't know how to get the previous one. I did not save it. I have the previous Activation Token for the last NDI and the original Activation Token but never saved that NDI. Is there a way to retrieve it?
  • Locked out of PFsense GUI

    29
    0 Votes
    29 Posts
    4k Views
    stephenw10S
    Ok, so it's pulling a valid IP there. Check the routes in Diag > Routes. Make sure it has a default route via the upstream router; probably: 192.168.0.1.
  • Admin letsencrypt cert

    7
    0 Votes
    7 Posts
    775 Views
    L
    Thank you again for the help!
  • Separating 2 networks question

    10
    0 Votes
    10 Posts
    1k Views
    stephenw10S
    Hmm, if there's no option I'm amazed it doesn't use VLAN1. If I've understood correctly that could only pull a lease from LAN. Or should at least.
  • IPsec-MB use case

    9
    0 Votes
    9 Posts
    2k Views
    M
    @stephenw10 said in IPsec-MB use case: Currently there is only a user ctl for AES-CBC. Thanks stephenw10. Hope they add this option in the future.
  • Pfsense keeps crashing

    20
    0 Votes
    20 Posts
    2k Views
    stephenw10S
    Yes, from there you can really only reset. That sounds like a possible drive controller issue though if it happens repeatedly even after reinstalling. Or across multiple drives.
  • PHP error type 1 in crash_reporter.php line 90

    4
    0 Votes
    4 Posts
    463 Views
    stephenw10S
    Yes, make sure the branch is set to 'Latest Stable'. Try resaving it as that. Try running pkg-static -d update at the CLI and see what errors it's throwing. I would probably just reinstall though. Better to start clean with a known good install. Steve
  • Unable to connect to pfsense 2 via pfsense 1

    Moved
    6
    0 Votes
    6 Posts
    766 Views
    stephenw10S
    The connection appearing very slow like that can be some sort of asymmetric routing problem. Does the client you're connecting from have any other way of reaching pfSense 2? Like a wifi connection maybe? Steve
  • Can't upgrade to next pfSense+ version

    4
    0 Votes
    4 Posts
    502 Views
    stephenw10S
    Yes, you can just get a new token and reregister it.
  • PFSense Plus Licensing Question

    3
    0 Votes
    3 Posts
    448 Views
    stephenw10S
    TAC Lite, currently $0, can be used in a commercial setting. See: https://shop.netgate.com/products/pfsense-software-subscription#commercial_use Steve
  • Freeradius + totp time drift

    5
    0 Votes
    5 Posts
    773 Views
    L
    @stephenw10 freeradius does not natively support TOTP. Indirectly it can be supported, for example in Debian I use freeradius together with libpam-oath and oathtool (for example), where I can specify a "self-centering" tolerance window, meaning that after authentication the system knows the time offset of the client and centers it in the its window of "tolerance" The fact is that if you don't use systems of this type it is almost impossible to use hardware tokens. Luca
  • How to send pfBlockerNG logs to remote log server (wazuh siem)

    26
    0 Votes
    26 Posts
    4k Views
    M
    @mauro-tridici CASE closed: adding a new filter rule in /etc/rsyslog.conf I had been able to have a new file with only the information related to pfBlockerNG logs. Many thanks to all of you for the help. Mauro
  • socket error # 11001 host not found

    16
    0 Votes
    16 Posts
    3k Views
    stephenw10S
    I meant do you have access to the OpenVPN server or the application server to check for incoming connections? If you don't then check at the pfSense end for the expected states when you try to connect.
  • Setup assistance SG1100

    Locked Moved
    3
    0 Votes
    3 Posts
    494 Views
    stephenw10S
    Cross-posted, see: https://forum.netgate.com/topic/180647/netgate-sg1100-setup-assistance
  • System\GeneralSetup\DNS Server Settings

    18
    0 Votes
    18 Posts
    2k Views
    stephenw10S
    Yes, this is likely to have been hitting this: https://redmine.pfsense.org/issues/14288
  • Groups for outgoing VPN

    12
    0 Votes
    12 Posts
    1k Views
    Bob.DigB
    @DenBeiren Use a webservice like https://www.whatismyip.com/ on every host I guess.
  • Increased Swap on 23.05 - Squid Proxy install

    4
    0 Votes
    4 Posts
    533 Views
    stephenw10S
    Ok, then I would try setting a limit on the arc.max initially.
  • Upgrading from 23.01 > 23.05 throws error IFF_PPROMISC

    Moved
    7
    1 Votes
    7 Posts
    814 Views
    stephenw10S
    Mmm, the promiscuous setting is new in 23.05. I would guess something failed to upgrade resulting in a mismatch somewhere.
  • Slow upload speeds - download is fine (XGS PON)

    6
    0 Votes
    6 Posts
    1k Views
    RobbieTTR
    @dakapo said in Slow upload speeds - download is fine (XGS PON): The current situation is as follows: I did a factory-reset of the Zyxel yesterday in the afternoon. Since then the upload-speeds are fine. I continue observing the situation and will report about any changes again here. That is encouraging news. ️
  • Rules Show Strange Byte Count

    22
    0 Votes
    22 Posts
    2k Views
    stephenw10S
    Be nice to show other things there maybe.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.