• Pfsense 2.3.4 Kernel Panic with Vigor 130

    4
    0 Votes
    4 Posts
    941 Views
    stephenw10S
    Hmm, hard to say how that would be any different then from pfSenses view. Maybe compare the connection logs from each case for differences. Steve
  • Log sites visited

    2
    0 Votes
    2 Posts
    731 Views
    C
    To get the full url you have to install squid  proxy and use ssl man in the middle, that by the way is a can  of worms
  • Systems Crash & Reboot on my server running 2.3.4

    5
    0 Votes
    5 Posts
    1k Views
    M
    @jimp: The crash is in dummynet. You can't use limiters with pfsync (part of HA). https://redmine.pfsense.org/issues/4310 You'll have to remove limiters, and things that also use limiters such as captive portal per-user bandwidth limits. Either that or disable pfsync on both nodes. Hi Jimp. I need some help, please
  • Topology Question - Long term frustration

    3
    0 Votes
    3 Posts
    774 Views
    B
    Thanks for the reply.  My question is more topology related.  Following your lead (which I have been trying similar strategies, and I believe is correct):  So, I would connect the pfSense wan port directly to my ISP provider connection (not a modem, just an ethernet port).  The LAN port of pfSense I would have to connect to a switch, so that I could break out 4 of the ips for outfacing computers, and plug the wan port of the router (for internet on my other computers) into the switch also. I've tried that with a layer-2 switch, with less than satisfactory results.  I've ordered a layer-3 switch to try that. The other thing I've been trying is a switch right off the ISP (as a DMZ switch), and then plug both the router and pfSense into the DMZ switch.  That doesn't work either, though this also might work with the layer-3 switch. Please keep the ideas coming!  Thanks!
  • AES-NI Ransomware Dev Releases Decryption Keys Amid Fears of Being Framed

    3
    0 Votes
    3 Posts
    870 Views
    F
    @yodaphone: Does this mean that the AES-NI in Intel chips are vulnerable & since i use one do i need to do anything now? I know its not a pfSense issue, but just want to know if this is something i need to watch out for It looks like "AES-NI" is just the name of the ransomware and may have nothing to do with Intel's instruction set by the same name.
  • Two GW in WAN, correct static routes to second GW however default it used

    2
    0 Votes
    2 Posts
    485 Views
    stephenw10S
    Hi Oleg, Check the routing table on the firewall (Diag > Routes) make sure those static routes are present. You may need additional outbound NAT rules to actually access anything on the private subnet. Devices there may not have a route back to your internal subnet. Or your traffic may be hitting the default outbound NAT rule and being translated to the public IP incorrectly. Steve
  • SMTP notifications over SSL?

    2
    0 Votes
    2 Posts
    713 Views
    N
    @Dave: Hi, First day with pfsense. I'm trying to configure SMTP notifications. My mail server is behind a NAT on 10.10.10.2 and uses SSL on port 62933. I can connect to the SSL service over telnet from pfsense, but the pfsense gui says "Could not send the message to user@host.localdomin – Error: could not connect to the host "10.10.10.2": ?? Do I need to load the SMTP server (self-signed) into pfsense somehow? If a self-signed cert is being used, yes it will have to be trusted by pfSense.  There is a thread or two in the forums that should have enough how to info. https://forum.pfsense.org/index.php?topic=115884.msg644702#msg644702 https://forum.pfsense.org/index.php?topic=115884.msg644709#msg644709
  • Traffic Graph Maxing out at 30M

    5
    0 Votes
    5 Posts
    787 Views
    R
    Thanks for answering my dumb question all!
  • Voip.ms configuration

    5
    0 Votes
    5 Posts
    1k Views
    D
    I've got a number of voip setups using voip.ms as the DID provider. I use pfSense as the central router and I've never had to "register" the router, just the end device(s). In most cases I setup an Asterisk box to handle local phones, but I have registered phones directly. In many cases, pfSense has not needed any special configurations at all, others required a few NAT tweaks depending on the ISP at the local end.
  • Virgin Media SuperHub as Access Point

    3
    0 Votes
    3 Posts
    1k Views
    B
    It's actually easier said than done… I didn't find the option of setting the gateway, and wouldn't have been able to work out how to do this without this post:- http://community.virginmedia.com/t5/QuickStart-set-up-and/SuperHub-2-Cannot-change-LAN-IP/td-p/1870936 but I do have it working now, and I guess it makes a decent wireless access point.
  • Feature request: Allow sorting in th ddns client

    1
    0 Votes
    1 Posts
    389 Views
    No one has replied
  • Some websites not opening with pfsense

    1
    0 Votes
    1 Posts
    360 Views
    No one has replied
  • VLAN forward/pipe/bridge to specific igb/em port

    2
    0 Votes
    2 Posts
    605 Views
    P
    I might need to rephrase the question since I got no answer so far. Is it possible to forward a tagged VLAN (7) from WAN to an INTERNAL OPTx in pfsense? And if so, how? I have looked in QinQ and Brdige, but that did not work so far…
  • Nginx SSL_Write error permission denied

    1
    0 Votes
    1 Posts
    594 Views
    No one has replied
  • PfSense has slowed down my internet connection significantly

    9
    0 Votes
    9 Posts
    7k Views
    V
    Yep, seems I mixed it up, over all my setup was 750, I was shooting for power efficient and long term setup.
  • Need Help

    3
    0 Votes
    3 Posts
    744 Views
    V
    Make sure you have your default LAN rule setup. Firewall->Rules->LAN ![Default LAN Rule.png](/public/imported_attachments/1/Default LAN Rule.png) ![Default LAN Rule.png_thumb](/public/imported_attachments/1/Default LAN Rule.png_thumb)
  • SMART did not report failing drive (Worthless feature Needs Fixed)

    9
    0 Votes
    9 Posts
    2k Views
    V
    Agreed. What's the point of implementation if it does not do what it's supposed to do? Implementation of SMART is supposed to report prior to failure. NetGate/PfSense guys, this should be fixed or removed from the GUI. I'd personally like to see it fixed. I'd also like to see some kind of email reporting if a rule had been triggered. Say in this case, if a CAM error had been seen in the system logs, then the system would email.
  • 0 Votes
    2 Posts
    967 Views
    M
    Hello, I attached a "Packet Capture": it seems that the communication with radius server never starts. – Regards, Marco Mangiante [image: vpn_vdf_pfsense_client.png] [image: vpn_vdf_pfsense_client.png_thumb]
  • Interrupt processor affinity

    2
    0 Votes
    2 Posts
    761 Views
    H
    All of the NIC's interrupted pinned to the same CPU is a strange setup. Could be more of a corner case than a bug, but it does sound undesirable.
  • Exchange - need to increase "firewall time-out" to 15 mins or more

    6
    1 Votes
    6 Posts
    7k Views
    H
    pfSense itself does not have an HTTP(S) timeout, only a TCP timeout, which defaults to 24 hours. If you're running a proxy, your proxy may need to have the HTTP(S) timeout configured.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.