• Is a large network address pool bad?

    21
    0 Votes
    21 Posts
    2k Views
    stephenw10S
    Unless you use a TAP connection to make an even bigger layer 2 segment spanning it all. Which would be bad!
  • Run away RAM usage until outage occurs.

    7
    0 Votes
    7 Posts
    622 Views
    T
    @stephenw10 A cosmic event. Ted
  • Firewall randomly rebooting after 2.7.2 upgrade

    7
    0 Votes
    7 Posts
    621 Views
    S
    @stephenw10 I completely removed Suricata and it's been up for almost 6 days at this point.
  • NGINX 80/443 redirect?

    2
    0 Votes
    2 Posts
    304 Views
    V
    @chudak If NGINX runs on a device behind pfSense within a private subnet you have to forward 80 and 443 to it, of course. Firewall > NAT > port forwarding. Add a rule: interface: WAN protocol: TCP/UDP destination: WAN address destination port: HTTP Redirect target IP: NGINX IP Redirect target IP: HTTP Add a second rule for port 443 (HTTPS). Ensure that the webGUI is not listening on port 80/443. System > Advanced > Admin Access > TCP port
  • Force snort to use specific WAN interface to update signatures

    14
    0 Votes
    14 Posts
    1k Views
    D
    @stephenw10 Thanks alot It is working properly now ! You saved me
  • Mikrotik + Pfsense troubles

    Moved
    6
    0 Votes
    6 Posts
    742 Views
    stephenw10S
    Ok. You still need to do something to avoid route asymmetry. So that would be either putting LAN onto a pfSense interface or moving the pfSense WAN to a different interface on the Mikrotik router.
  • 1 Votes
    1 Posts
    130 Views
    No one has replied
  • Assigning an IP for Openvpn isn't working.

    4
    0 Votes
    4 Posts
    437 Views
    JonathanLeeJ
    @mayonnaise Yeah!! Good Luck, the reason I asked about separation is to see if this was separated over ISP or just local network
  • SG 1100 setup recommendations

    7
    0 Votes
    7 Posts
    748 Views
    S
    @Spooke Thank you for the information. I have erro and I will set them up that way.
  • What's the right way to update 2 pfsense in HA through VPN?

    4
    0 Votes
    4 Posts
    470 Views
    T
    @stephenw10 tnx this is exactly what happened, and i used the solution purposed by @viragomann , which is in the end same of yours and it works fine thanks guys! You're precious as usual! Respect!
  • unknown TAC support status

    3
    0 Votes
    3 Posts
    411 Views
    T
    @stephenw10 Done Ted
  • Radius attributes concern

    Moved
    11
    0 Votes
    11 Posts
    971 Views
    stephenw10S
    Hmm, well there's no config option for that. Some coding would be required it looks like.
  • Log Collector

    3
    0 Votes
    3 Posts
    401 Views
    stephenw10S
    @it_ib said in Log Collector: Humio and the Falcon LogScale Collector Not seeing any FreeBSD builds that might be applicable.
  • Sending email with failover, shutdown and reboot

    2
    0 Votes
    2 Posts
    186 Views
    stephenw10S
    If you configure notifications you should get that. You won't see a notice for shutdown but you would be upgrades and for boot-up complete. https://docs.netgate.com/pfsense/en/latest/config/advanced-notifications.html Steve
  • 0 Votes
    8 Posts
    918 Views
    stephenw10S
    The blocked traffic you showed is on the WAN. To pass that traffic you would need to a firewall rule on the WAN. That screenshot shows a rule in LAN. However if you are trying pass the VPN traffic to the Cisco router behind pfSense you need to add a port forward. By default that will add a firewall rule for you: https://docs.netgate.com/pfsense/en/latest/nat/port-forwards.html#adding-port-forwards Steve
  • 0 Votes
    7 Posts
    817 Views
    D
    Hey, Sorry for the late. After the last tests I tried to map one vlan on the LAN NIC and It's OK. So the problem was either the nic used for the VLANs or the switch port used. Thanks
  • How to get pfSense WAN to accept VLAN 0

    415
    1 Votes
    415 Posts
    262k Views
    N
    @stephenw10 had a backup machine I upgraded... tested and then upgraded active system. Still have a question on if backup config file should be in root of FAT32 partition or in E:\config\ -> I had it in both. Process I followed was to: change interface to em0 pre-upgrade and disable the shellcmd script. Take backup and upload to usb key Connect my Bell MTS ONT to pfSense Reboot and install new This found the config, recognized and got internet DHCP address for WAN on em0 and installed packages as there was an active internet connection. No other config changes were needed. This has been quite a journey from when I first started this thread! Glad to see my script is no longer needed.
  • Backup Failing

    12
    0 Votes
    12 Posts
    1k Views
    S
    Works ok now for some reason!
  • Deleted pfSense Package Settings Appear in Backup

    6
    0 Votes
    6 Posts
    601 Views
    bmeeksB
    @alteredstate said in Deleted pfSense Package Settings Appear in Backup: @bmeeks What happens when I import the backup containing config settings for packages that are not installed? Will those config settings become null and void or appear in the next backup? I would like for said config settings to disappear when I import the backup. If you import a backup with those settings in it, then they will return and stay. You would have to repeat the process of installing the package again, unchecking the box to retain settings, then removing the package. You may find it easier to simply edit the config.xml file directly before importing it. If you have any familiarity with XML, then you can very quickly see how to remove the section pertaining to a given package by simply studying the layout of the config.xml file and deleting the appropriate section.
  • Log Rotation Issue

    19
    0 Votes
    19 Posts
    2k Views
    jimpJ
    @Matt_Sharpe said in Log Rotation Issue: Another query would be, is it possible to move the /var/log partition to a dedicated disk in PFsenses? It's possible in FreeBSD but there isn't any supported way to do it in pfSense. Someone familiar how disks/partitions works in FreeBSD should be able to set it up without too much trouble, but it may also take some manual adjustments in the code since pfSense has to make a lot of assumptions in that area.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.