• Showing 23.09.1 as up to date

    14
    0 Votes
    14 Posts
    638 Views
    stephenw10S
    Responded in chat.
  • Multiple WAN IP's on one PPPoE how ??

    2
    0 Votes
    2 Posts
    139 Views
    stephenw10S
    You would usually add VIPs (IPAlias) on the WAN for each additional public IP. Then change the outbound NAT rules to manual and add rules for the internal subnets via the appropriate VIP. https://docs.netgate.com/pfsense/en/latest/firewall/additional-ip-addresses.html#single-ip-subnet-on-wan Steve
  • Advice needed - ZFS Mirror creation after install

    5
    0 Votes
    5 Posts
    515 Views
    provelsP
    @stephenw10 Memories! Nokia ip530
  • No package list in Available Packages on pfsense 2.7.0

    3
    0 Votes
    3 Posts
    505 Views
    S
    @Gertjan Thanks , the trick at the end was "just " the cert , it is not mentionned explicilty in the post with the command but part of the actions to make. For benefice of the Forum Q, command to run is certctl rehash This info is from PFsense Troublehoosting Manual Solved ! Thanks !
  • TAC Lite

    3
    0 Votes
    3 Posts
    194 Views
    stephenw10S
    Mostly it gives you access to the pfSense Pus pkg repos. It's the entry level subscription that does so.
  • Restore issues: Apply Changes button missing, Save does not reboot

    17
    0 Votes
    17 Posts
    2k Views
    S
    I rediscovered this today restoring two 3100 configs to 2100s. Short version, clicking Save before clicking Apply does work. Clicking Apply first results in an inaccessible router (aside from console).
  • how to stop logging blocked LAN IGMP?

    18
    1 Votes
    18 Posts
    2k Views
    dennypageD
    @JeremyJ-0 said in how to stop logging blocked LAN IGMP?: Is there some part of the firewall that reads the rules on startup and does not re-read on a filter reload? Not that I am aware of. The reload of rules failing would explain your results however.
  • Question about PPPoE parameters and HE IPv6...

    10
    0 Votes
    10 Posts
    508 Views
    w0wW
    @Bob-Dig Sure, thanks. I plan to re-evaluate my values and start from scratch.
  • RESOLVED: The gateway: WAN_DHCP is invalid or unknown, not using it.

    3
    0 Votes
    3 Posts
    223 Views
    JonathanLeeJ
    That fixed it the Gateway change did not transfer over to the floating traffic shaper access control lists so I had to resave them after that error is gone.
  • ns8250: UART FCR is broken duirng boot OS

    16
    0 Votes
    16 Posts
    2k Views
    JKnottJ
    @Antibiotic said in ns8250: UART FCR is broken duirng boot OS: What did you add? I just used a 2 spare NAND gates to toggle one bit on board select. BTW, this is going back over 40 years to when I did that. The IMSAI was an S-100 bus computer. Various makes of S-100 bus computers were popular in the late 70s, until the IBM PC came out. They were generally used to run the CP/M operating system. BTW, I built that IMSAI from a kit, which was essentially bags of parts that had to be soldered to the circuit boards and then the system assembled.
  • Showing 23.09.1 as up to date

    3
    0 Votes
    3 Posts
    139 Views
    S
    @dgall Are you set to the 24.03 branch? If so, see https://docs.netgate.com/pfsense/en/latest/troubleshooting/upgrades.html#upgrade-not-offered-library-errors
  • So why is my firewall logs full of mDNS pings that should pass??

    10
    0 Votes
    10 Posts
    1k Views
    johnpozJ
    @jeff3820 said in So why is my firewall logs full of mDNS pings that should pass??: Still looking for the sources... You most likely will need to sniff and see the mac address of the sender, then you should be able to at least get a clue to who it is by the maker via the first 3 of the mac, if its wired you can track that down to what port its plugged into. Wireless can block the mac and see who screams or what device stops working. You could do the same on pfsense, once you know the mac you can see what actual IP it has and that can be helpful, maybe it registered a name with dhcp, etc.
  • Share your pfSense optimization with hardware list!

    1
    0 Votes
    1 Posts
    95 Views
    No one has replied
  • Accessing log files with lnav via ssh

    5
    0 Votes
    5 Posts
    365 Views
    A
    @stephenw10 Thanks again! I was able to change the config of lnav, so that it uses sh instead of bash. Now it is working!
  • pfSense doesn not respond to ARPs

    11
    0 Votes
    11 Posts
    620 Views
    stephenw10S
    I mean when you ran the pcap was it capturing all traffic or was it filtering by just a limited set of MAC addresses or IP addresses for example?
  • Webgui

    4
    0 Votes
    4 Posts
    231 Views
    A
    @stephenw10 Yea , set exception in proxy settings for pfsense ip))))
  • Certificate error

    43
    0 Votes
    43 Posts
    4k Views
    johnpozJ
    @stephenw10 I just check, created a cert for 10 years.. Put it on my printer and firefox didn't say a word about it being valid for 10 years.. Signed by my CA that it trusts.. [image: 1714513121754-length.jpg] https://source.chromium.org/chromium/chromium/src/+/main:net/docs/certificate_lifetimes.md?q=certificate%20lifetime&ss=chromium&originalUrl=https:%2F%2Fcs.chromium.org%2F Beginning with Chrome 85, TLS server certificates issued on or after 2020-09-01 00:00:00 UTC will be required to have a validity period of 398 days or less. This will only apply to TLS server certificates from CAs that are trusted in a default installation of Google Chrome, commonly known as "publicly trusted CAs", and will not apply to locally-operated CAs that have been manually configured.
  • QNAP LDAP Server - Extended Query Help...

    3
    0 Votes
    3 Posts
    198 Views
    The Computer GuyT
    @stephenw10 - I think it should only need to be this query - (&(objectClass=posixGroup)(cn=vpn)(memberUid=*)) I just get a red box on the authentication test page in pfSense - The following input errors were detected: Authentication failed. Unfortunately there doesn't seem to be any LDAP logs generated on the QNAP :(
  • Remove pfsense plus update reminder

    2
    1 Votes
    2 Posts
    202 Views
    stephenw10S
    See: https://redmine.pfsense.org/issues/15078 It will always show Plus as an update if your device is eligible because it checks all available update branches. If you really need it I can manually remove the eligibility. Steve
  • Howto access two LANs from a single port with NG-1100?

    10
    0 Votes
    10 Posts
    614 Views
    stephenw10S
    Yes that could work, assuming it's a USB device since there are only 3 ports. Modem support in pfSense is variable though. Be aware.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.