• Bizarre packet loss issue on WAN when using NAT 1:1

    2
    0 Votes
    2 Posts
    949 Views
    R
    Problem solved. It turns out our ISP upgraded their equipment that interfaced with our static IPs to a Cisco Multihome chassis. They were able to queue a command to their systems that allow multiple IP's to a single MAC. I'll share some information I learnt along the way in case anyone else has this problem: a) you can try to lease the IP with CARP. This didn't work for me, but theoretically it should use a new MAC address for the connections. b) I was able to create a fake virtual adapter using ngctl and was about to create custom routes for this to work. I didn't complete this testing but ngctl looks pretty powerful, I'd like to play with it more.
  • Does the Dnscrypt support multiple resolvers now?[solved]

    11
    0 Votes
    11 Posts
    2k Views
    jimpJ
    Yeah there is definitely some confusion. I've been trying to clear that up in the book and hangouts, will eventually get to the wiki once the book updates are done.
  • Online shopping cart

    2
    0 Votes
    2 Posts
    2k Views
    R
    tracked the problem its proxy problem, in pfsense & opensene even in cent…  behind squid  getting  wrong currency format  but in Debian Linux its working fine
  • Router intermittently crashing

    2
    0 Votes
    2 Posts
    517 Views
    H
    can be anything. connect a monitor (or serial) and take pictures. it also can't hurt to copy/paste the system log. it might hardware or mbufs or …
  • OpenVPN and pf scrub and big packets

    2
    0 Votes
    2 Posts
    2k Views
    S
    Did you find a solution?
  • Pfsense current time/date keep changing help!

    1
    0 Votes
    1 Posts
    438 Views
    No one has replied
  • Pf sense fail over notworking properly

    2
    0 Votes
    2 Posts
    510 Views
    luckman212L
    I see this is your first post, welcome to the forum! Have you followed the multi-wan setup guides at https://doc.pfsense.org/index.php/Multi-WAN ? That would be a good place to start. Your post is a little lacking in details.  Please post some screenshots of your "Routing > Groups" section as well as Firewall rules specifically the "LAN" tab.
  • Menu after booting does not appear on pfsense 2.3.2-RELEASE

    1
    0 Votes
    1 Posts
    431 Views
    No one has replied
  • [Closed] CPU overload during high speed downloads, legacy Alix 2D3

    5
    0 Votes
    5 Posts
    3k Views
    E
    @hda: Put a managed switch, global rate limiting, between pfSense-LAN and your LAN-members. That's a great suggestion,  I hadn't thought of that.  I was thinking I'd need a Managed switch in the near future anyway, they are fairly cheap now, and that would buy me some time to explore some budget upgrades for PFSense and let me keep using my service in a slightly reduced performance mode that I can control. I also appreciate the other folks confirming it's time to update the hardware.
  • Block ICMP on WAN Interface good idea?

    8
    0 Votes
    8 Posts
    7k Views
    S
    @johnpoz: You need to look at what the direction of the traffic is, who is the requester who is the responder. Ah, now I understand. Need a incoming rule for the ping request (Internet -> WAN -> pfSense) and pfSense can send the reply, right? @johnpoz: So a destination unreachable.  When would you need this to be allowed to pfsense wan? https://docs.openvpn.net/how-to-tutorialsguides/administration/troubleshooting-openvpn-connectivity-issues/ My OpenVPN work now fine with TCP.
  • [Fixed] Interface stops receiving traffic

    2
    0 Votes
    2 Posts
    768 Views
    V
    Quite a while ago I figured out what's wrong: While running pfSense in a KVM setup make sure you don't use rtl8139 as network interfaces but virtio instead. Positive aspects: 10G instead of 1G No broken traffic Less overhead Negative aspect: You have to remap your interfaces in pfSense. I don't know the exact cause of of the problem but the workaround is pretty nice.
  • 0 Votes
    1 Posts
    323 Views
    No one has replied
  • Kernel Panic

    1
    0 Votes
    1 Posts
    540 Views
    No one has replied
  • PFsense Firewall use defaul gateway instead of ospf learned route

    1
    0 Votes
    1 Posts
    467 Views
    No one has replied
  • Unable to setup a network bridge on 2.3.2

    4
    0 Votes
    4 Posts
    1k Views
    DerelictD
    Is there a better walkthrough available for pfSense 2.3.2? No. :) Using an admin port should make it ezpz since you're configuring the bridge out-of-band. BRIDGE0 is the "interface" on which the IP configuration is placed. It is a virtual interface consisting of a layer 2 bridge of the bridge members. With the sysctls set as in that walkthrough that is the only interface on which firewall rules will be honored.
  • /etc/login.access does not appear to be working

    1
    0 Votes
    1 Posts
    305 Views
    No one has replied
  • PfSense 2.2.6 using Squid + LightSquid don't report user name.

    5
    0 Votes
    5 Posts
    1k Views
    K
    Hello KOM. Thanks very mutch. When I change to DEMO works fine. Thanks a lot. Best regards.
  • Accidentally turned off Lan interface

    3
    0 Votes
    3 Posts
    3k Views
    L
    I did something similar just this week. My work around was to go to the console and "Restore recent configuration" Option 15. Think I had to reboot it after that too but it worked.
  • 0 Votes
    4 Posts
    813 Views
    L
    OK I followed the original instructions and got the stable branch of the Unifi controller, which was fixed to major version 4. You have to explicitly set the repo to version 5 to get the latest. The latest controller has the ability to "Enable RADIUS assigned VLAN", which is what I wanted, so all good. However, it still isn't passing through the tagged VLAN attribute. I guess before I figure that out I should figure out another problem - I have assigned a test client device a static IP in Freeradius/Mysql. The Framed-IP-Address attribute contains the value I want and this is correctly returned in the Access-Accept message from the Freeradius server (along with the VLAN tag). However, pfSense is overwriting the IP with a DHCP-assigned IP from within the pfSense LAN's range. The Unifi AP has "Using DHCP" set on it. I think that means it's acting as a client, not as a DHCP server. I can also force it to have a static IP from within pfSense's range, but I haven't tried that. It's actually getting a statically set IP from pfSense, which I specified in pfSense's DHCP server page. I have no explicit setting in pfSense's LAN DHCP server for the client device I'm testing with (the one being authorized by Freeradius). In Freeradius (as I mentioned) it's getting a static IP but in pfSense's DHCP leases it gets a totally different dynamic IP and all traffic is to/from the dynamic IP. Is it possible that pfSense ignores the Framed-IP-Address attribute? Should I be looking at pfSense, Freeradius or the AP to fix this?
  • WebGUI Hang Up after assign LAN interfaces

    4
    0 Votes
    4 Posts
    648 Views
    KOMK
    Well, considering you have provided almost nothing for information, all we can do is wild guesses.  How do you recover, reboot?  Anything in the System log at the time of the hang?  Is it possible that NIC has a problem?
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.