• "403 Forbidden" please help !

    4
    0 Votes
    4 Posts
    537 Views
    emammadovE
    When you select option 15 "Restore recent configuration" it will show you two options: view and restore. Select view and look at the previous dates that you want to restore. I think, it will show you 30 recent configurations. Type the number of the backup and press enter, wait a moment. Then try to login pfSense web gui.
  • VLAN Help Requested: I Give....diagram & screenshots included

    24
    0 Votes
    24 Posts
    3k Views
    P
    I am back trying to solve this problem. One thing I have noticed on the wireless clients is I can get them to connect to the VLAN ONLY if the interface is selected as the same as my LAN interface. Example: LAN is on igb1 (switch is patched to this physical port to port 1 on switch) VLAN10 set to igb2 = No IP address on wireless device (phone) VLAN10 set to igb1 = IP address connects and appears in DHCP table correct (192.168.10.100) From there, the phone says "Connected, no internet" which leads me to believe the issue is with the firewall rules. I believe my Pass rule is correct but would like to know if I need to add NAT rules. A recent post in this category had a guy connecting a Ubiquiti AP to an unmanaged switch and he required a NAT rule as well as a firewall rule. I have attempted to duplicate both but cannot make it out to the internet. As always the help is appreciated. UPDATE: Progress. The phone is now on the internet. I had to select the SECURE interface in the DNS Resolver in addition to the already selected LAN & localhost. I still have the firewall rules but deleted the NAT rules I was trying to make. So I'm still looking for answers there. ETA: IT WORKS!!! I chased this all night but it came down to my NAT rules being set to manual due to an older OpenVPN setup. One click on Auto and all devices have internet. Talk about a nightmare. I'll get to setting up the VPN later.
  • How to down grade from Devel to Stable?

    6
    0 Votes
    6 Posts
    918 Views
    D
    @gentlejoe This is what I can find https://forum.netgate.com/category/28/development
  • Export system logs and statistics into word or PDF format..

    2
    0 Votes
    2 Posts
    6k Views
    vicWellerV
    There are no tools in order to do so to one of those extensions exactly. As far as I know, you need something like this in order to proceed with this thing https://4000a-125-2-form.pdffiller.com/ that's actually an editing tool for pdf's but fits well for your purpose as well as it cost not that much as the other tools with these features
  • Minimum requirements for 100 clients

    8
    0 Votes
    8 Posts
    994 Views
    rscarpeliR
    Thanks for everyone's response! I have solved, I will use a machine with I3 / 8G / 500Gb.
  • How to determine system is pfSense?

    5
    0 Votes
    5 Posts
    799 Views
    jimpJ
    On modern pfSense installs, there are a number of ways. The uname data as already mentioned, the contents of /etc/platform, the presence of the pfSense pkg, and likely dozens/hundreds of other methods based on the presence of certain files around the filesystem specific to pfSense.
  • LDAP Auth subgroups

    1
    0 Votes
    1 Posts
    254 Views
    No one has replied
  • Monitoring performance

    2
    0 Votes
    2 Posts
    335 Views
    E
    The dashboard shows your CPU and memory usage. Watch your CPU usage when you run a bandwidth test. You can also go to the shell and run 'top' to see how much CPU is being used.
  • New to pfsense, what would I need for my home network?

    5
    0 Votes
    5 Posts
    1k Views
    M
    hello friends, if you are looking to setup PlayStation VPN then I have a complete guide on it. This is because with a virtual connection, not only are you a free gamer, but you can also stream endlessly. You are free to tap into massive nooks and corners of restricted content all around the world.
  • Allow only Viber connection, and block all other connection

    15
    0 Votes
    15 Posts
    8k Views
    A
    As of now, I think was able to achieve this firewall rule/s....what I did was allow the target devices to connect to Amazonaws.com IP Range, firewall alias URL's....so allowing connections to Viber.com, allowing connections to Amazonaws, then blocking everything else. The tricky part is Amazonaws got a couple of ASN. Thanks a lot for your help Stephen!
  • User Interfaces not responding.

    7
    0 Votes
    7 Posts
    935 Views
    T
    I haven't had a lock up in the past few days. I am leaving on vacation for a week. I will report when I get back.
  • Help

    4
    0 Votes
    4 Posts
    691 Views
    stephenw10S
    Hit the wrench top right from the firewall log page and it's an option there in 'Manage Firewall Log'. It's likely nothing to worry about though. Steve
  • WAN interface resets to 0.0.0.0 when cable modem reboots

    9
    0 Votes
    9 Posts
    2k Views
    SammyWooS
    @zwoop I have a similar issue, the prob is, pfsense boots and asks for the WAN IP before my cable modem has completed its handshake with the ISP, then pfsense just sits there having failed to obtain its WAN IP. There is a post about introducing a delay boot but it doesn't seems to work reliably. It hasn't bothered me enough to spend more time on this issue thanks to my UPS.
  • Firewall periodically loses internet connectivity (package related?)

    3
    0 Votes
    3 Posts
    601 Views
    P
    Thanks for replying. AFAIK RAM is never maxed out. Runs around 30 to 35% of the installed 12GB. Same for CPU, I rarely see anything above 5 to 10% utilization. States table has 812000 entries, to which only 2000 or so are used at any given time. I left my house friday night for the weekend and came back yesterday. When I left, I had disabled fpblockerNG and DNSBL. When I came back home, everything was working fine. I activated pfblockerNG and DNSBL, went to bed, the internet was still working. This morning, the internet was down again. I am 99% convinced pfblockerNG or DNSBL are to blame. I tried resetting the states table, do a force reload on pfblocker and DNSBL (although they were deactivated I thought that could maybe help) and had to reboot the firewall once again. Next step is to find the reason for this. Anybody has an idea on how to troubleshoot this? To me it looks like a DNS resolution issue more than actual connectivity to the web since pfsense still can access the outside world but nothing from the LAN can reach out... I may be wrong. I also thought Unbound was crashing but it appears to be always run fine...
  • Simple VLAN for PFSense + Unifi AP-AC-LR

    32
    0 Votes
    32 Posts
    7k Views
    B
    @nogbadthebad said in Simple VLAN for PFSense + Unifi AP-AC-LR: You may also want to put a block above your pass rule to block the home network access from the guest network , something like :- [image: 1530552744062-untitled-resized.jpeg] g_ip_local is an alias that contains IPv4 & IPv6 local subnets. Will do
  • How can I change my root prompt?

    6
    0 Votes
    6 Posts
    1k Views
    NogBadTheBadN
    @nogbadthebad said in How can I change my root prompt?: 0;1;31m The default shell is tcsh that's why i stated tcsh != sh, I didn't spot the bit where you mentioned echo $SHELL
  • A Few General Questions about pfSense ..

    n00b security pfsense
    5
    0 Votes
    5 Posts
    1k Views
    S
    @thehermit Hardware encryption will probably be a requirement for v 2.5
  • SG-2440 vlan vs OPTx port?

    4
    0 Votes
    4 Posts
    456 Views
    stephenw10S
    The only thing that is perhaps better about using a VLAN would be not introducing more wifi networks into an already crowded space. Though if your IoT devices require wifi that would only be achievable if your access point(s) support multiple SSIDs with VLANs. I see no problem with what you've done here. Steve
  • Getting Zerotier interface up before pfsense looks for interfaces

    7
    0 Votes
    7 Posts
    3k Views
    F
    Ok, figured out why, and wanted to log it for posterity (in case someone else ends up here on a search): ZeroTier stores in /var/db/zerotier/*, and the TMP and VAR mounts were set for RAM-disk in the backup I imported... Now I have a different issue, in that the system won't complete boot (It sits at "trying to mount root UFS blabla <UFS-ID> [rw]"), so I have something else to do (will probably end up rebuilding from scratch!) when I get back from this business trip!
  • I can not reach my server

    8
    0 Votes
    8 Posts
    2k Views
    yon 0Y
    yes, i have to try Reset to factory defaults and login web gui now. i dont know why happen this.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.