• PF PORTKNOCKING IS POSSIBLE?

    2
    0 Votes
    2 Posts
    462 Views
    stephenw10S
    No, there is no port knocking implementation in pfSense. Yet. There is at least one open feature request: https://redmine.pfsense.org/issues/8547 Steve
  • Dynamic routing over IPSec tunnels

    7
    0 Votes
    7 Posts
    1k Views
    stephenw10S
    You can't route via a gateway group and you can't set a metric on a route directly so using dynamic routing, like OSPF, is usually how this is done. You could just use policy routing if the PA can do some sort of reply-to to make sure replies come back over the same link. And if you only need to open connections toward the PA. Steve
  • 0 Votes
    1 Posts
    188 Views
    No one has replied
  • Where to make a suggestion for a software addition

    2
    0 Votes
    2 Posts
    268 Views
    johnpozJ
    @barth https://docs.netgate.com/pfsense/en/latest/development/feature-requests.html#requesting-new-pfsense-features
  • Error loading rules

    firewall rules configuration
    3
    0 Votes
    3 Posts
    888 Views
    J
    @jbeez fixed... definitely user error. I was restoring a filter.inc from a prior version. Restored the proper one and its good to go.
  • Avahi, Multicast mDNS not Functioning?

    avahi subnet multicast mdns
    3
    0 Votes
    3 Posts
    866 Views
    johnpozJ
    @tyler_rm your links vs just posting the image here is a bit off putting for someone wanting to help. Here is a post I did year a go or so on how to validate if avahi is working. https://forum.netgate.com/post/1003226 I personally am not a fan of breaking the L2 barrier like this - but in the link I go over how to actually validate if its working or not, etc. Hope that helps.
  • Pass traffic from OpenVPN client to IPSec site-to-site TUnnel

    5
    0 Votes
    5 Posts
    568 Views
    T
    @stephenw10 This worked thanks guys!
  • Firewall requires hard reboot for changes to take effect

    15
    0 Votes
    15 Posts
    2k Views
    C
    Go to Firewall:System -> Advanced -> Firewall & NAT: Firewall Maximum Table Entries value of "800000"
  • Log in notifications and resources

    2
    0 Votes
    2 Posts
    421 Views
    R
    @denverdesktopssupport Sounds like you'd be interested in Zabbix? https://www.zabbix.com/integrations/pfsense
  • pfSense + Emby access

    7
    0 Votes
    7 Posts
    1k Views
    johnpozJ
    @tyz Also if you want to know when something is down etc - setup a external test. status cake or uptime robot allow for free testing. I get alerted if my plex server goes down for example ;)
  • Interface link speed

    4
    0 Votes
    4 Posts
    2k Views
    stephenw10S
    If the NIC/driver doesn't report it the OS has no way to know. Usually they do but SFP modules introduce a lot more variables and sometimes it will link fine but not report a speed or report as 'unknown'.
  • yet Another out-of-swap-space issue

    19
    0 Votes
    19 Posts
    2k Views
    R
    @johnpoz and that's the edited version! :D
  • Confusion about DHCP, fixed IP and VLANs

    3
    0 Votes
    3 Posts
    439 Views
    H
    @jarhead thank you! after several tries and errors i am less confused now :)
  • Policy based routing

    13
    0 Votes
    13 Posts
    1k Views
    stephenw10S
    In System > Advanced > Misc you need to set Skip rules when gateway is down. Otherwise the pass rule is still created but without the VPN gateway set when it goes down. Hence the traffic leaves over the WAN directly. Steve Edit: What Bob said!
  • pfsense going down every 3 days

    6
    0 Votes
    6 Posts
    766 Views
    stephenw10S
    If it's a VM you should be able to see the memory use in the hypervisor. But you can also see it in Status > Monitoring in pfSense directly. Steve
  • After 20.05 upgrade, Gateway Down (on ISP only)

    Moved
    8
    0 Votes
    8 Posts
    773 Views
    stephenw10S
    Is it actually pulling a DHCP lease correctly? Showing a valid gateway? If the WAN shows as UP but you cannot connect out on it you may have a bad lease there. A cable modem handing out private IPs for example. Steve
  • Pfsense as lan router and port forwarding problems?

    27
    0 Votes
    27 Posts
    3k Views
    stephenw10S
    You might have the AT&T homegateway device that requires shenanigans to get a true 'modem' mode. What's the actual model number?
  • Please Help Me Under Stand! What The Issue IS.

    84
    0 Votes
    84 Posts
    16k Views
    stephenw10S
    I've never used Adguard so I can;t comment on the specifics there but if it's just DNS filetering then I'd expect to just set the DNS resolver in pfSense to forwarding mode and enter the Adguard IP in Sys > General Setup. Of course that will filter queries from pfSense itself too. I just use pfBlocker on pfSense itself to do that. Steve
  • No connectivity with pfSense from new Desktop unless I issue ARPING?

    4
    0 Votes
    4 Posts
    587 Views
    stephenw10S
    Assuming the AP management is in the same subnet it too would need an ARP entry in order to reply to connections from the client. If pfSense is losing it's ARP entry or has a bad one the AP may well be seeing the same thing. When it fails do you just see no ARP entry rather than a bad entry? With no entry it should just ARP for the device to create one. You should see ARPing entries in the pcap. Make sure you're not filtering them. If the wifi interface became detatched n the client I imagine that would blow away any ARP entries that were built on it. I would still expect the client to just send ARP queries as soon as it re-attached though. Steve
  • pfsense dns cache? ping sends me to my server

    9
    0 Votes
    9 Posts
    862 Views
    UnderstudyU
    @johnpoz The fun thing is the webserver behind the DMZ does vhosts so that is why there is a wildcard in the DNS for the domain.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.