• TAC SUPPORT IS NOT ACTIVATED YET

    2
    0 Votes
    2 Posts
    346 Views
    stephenw10S

    TAC subscriptions are valid from purchase so I would expect that to have expired.
    If you send me the NDI in chat I can check it.

    Steve

  • PSA: Update bootloaders after 2.7.0 dist-upgrade

    9
    0 Votes
    9 Posts
    2k Views
    provelsP

    LOL, this smarty pants tried upgrading the pool, too, with equivalent results. My user (me) was very angry with the sysadmin (me)!

  • About the squid issue

    4
    0 Votes
    4 Posts
    384 Views
    stephenw10S

    The OpenVPN logs can be seen in the gui in Status > System Logs > OpenVPN.

    If you want full content logging you will need to use Squid in full intercept mode:
    Youtube Video

  • Upgrade to 2.7 cerificate error

    Moved
    13
    0 Votes
    13 Posts
    2k Views
    stephenw10S

    Did you have other certs or CAs already defined and/or in use?

  • 0 Votes
    4 Posts
    1k Views
    stephenw10S

    Then I would post in the main pfatt thread, someone else there has probably hit this: https://forum.netgate.com/topic/99190/att-uverse-rg-bypass-0-2-btc/537

  • New user question

    Moved
    8
    0 Votes
    8 Posts
    779 Views
    stephenw10S

    Can you ping anything other than the two configured DNS server IPs? 8.8.4.4 for example. Setting those adds static routes for them in pfSense which could potentially be wrong.

    Can pfSense itself connect out? Install packages? Or ping out from Diag > Ping?

    What you have configured looks OK. Do you actually see the auto outbound NAT rule created for 10.10.1.0/24?

  • After upgrade to 23.05.1, pfSense on Netgate 3100 basically dead

    Moved
    14
    0 Votes
    14 Posts
    1k Views
    stephenw10S

    What's the WAN actually connected to? Is it actually losing link like that?
    Not that the WAN flapping should cause php to get hung up like you're seeing.

    What's in the main system logs when that happens?

  • NTPNG

    3
    0 Votes
    3 Posts
    338 Views
    stephenw10S

    I don't believe it can be added to the included packaged version. And I don't think it's possible to pull in the pro version from their repos to 23.05. The build versions would not be matched.

  • Magic something issue (and more) on 2.7.0 - feedback/report

    2
    0 Votes
    2 Posts
    287 Views
    stephenw10S

    Hmm, that php error looks like this: https://redmine.pfsense.org/issues/13562

    But that should have been fixed. You might want to add your result there.

  • No route to host

    4
    0 Votes
    4 Posts
    512 Views
    stephenw10S

    What's actually broken here? You are just seeing that error?

    Something is trying to connect to somewhere that has no route. So usually that's because the firewall lost it's default route (otherwise it would have a route). It could also be some local gateway that has stopped responding that it needs for a route.

    OVH is notorious for weird addressing/subnetting schemes so you might have something odd like a gateway outside the local subnet.

    Steve

  • LAN connection problem

    8
    0 Votes
    8 Posts
    621 Views
    O

    @ozanbabatas My problem is solved. Now I can connect VPN to the modem through a remote server and access it. Thanks

  • Saving and Restoring a specific configuration?

    Moved
    3
    0 Votes
    3 Posts
    380 Views
    stephenw10S

    If you do that I recommend unchecking Backup SSH keys when you backup the config so you don't end up with the same keys on all hosts. That also affects the auto-config-backup key which you would want to be unique.

    Steve

  • AutoConfigBackup encryption password

    5
    0 Votes
    5 Posts
    576 Views
    NollipfSenseN

    @RubeGMachine Even browsers are doing the same...thought you would gather that intuitively.

  • 0 Votes
    2 Posts
    266 Views
    stephenw10S

    Which DynDNS provider are you using?

  • /etc/rc.filter_configure_sync causes traffic hickups

    3
    0 Votes
    3 Posts
    433 Views
    stephenw10S

    Have you applied the recommended system patches? Those are in 2.7 already, try that if you can.

  • Upgrade to 2.7.0 stop PPPoE working

    Moved
    12
    1 Votes
    12 Posts
    1k Views
    stephenw10S

    If you have more than one gateway defined, like a VPN gateway or an internal LAN gateway, you should definitely set WAN_PPPoE as default rather than automatic. Otherwise it may default to one of the others and that's almost always invalid.

  • No entry for terminal type "screen.xterm-256color"

    2
    0 Votes
    2 Posts
    776 Views
    G

    for reasons I cannot explain. This router just starting working again yesterday. I can now screen and use the commands I have tried. I have no explanation why.

  • To 23.05 or not ? that is the question :)

    41
    0 Votes
    41 Posts
    15k Views
    G

    @sgw did you check Monitoring in pFsense on XG7100? Check Quality and then check delay std. dev - did it changed(increase) when you go from 22.05 to 23 version? Main is much worst then on 22.05.

  • Cant see switch in DCHP or ARP table

    6
    0 Votes
    6 Posts
    551 Views
    johnpozJ

    @natharas said in Cant see switch in DCHP or ARP table:

    I have cameras on the switch that are using a different VLAN and all are working.

    which has nothing to do with the switch getting its management IP which would be on vlan 1.

    Unless you changed it to be a different vlan?

    changedit.jpg

  • need to reboot when modem reboots

    11
    0 Votes
    11 Posts
    1k Views
    johnpozJ

    @scottlindner said in need to reboot when modem reboots:

    Yes, those are both set to All network interfaces.

    Not a fan of that - especially for outgoing.. The local interface is really the only interface you need to use for outgoing, any traffic out the wan would be natted to your wan IP, or vpn IP, etc.

    The only time you would need to select another interface - if you were doing say forwarding to some lan side dns.

    You could make a case for only selecting the interface for listen as well - do you really need unbound to listen even on wan? You serving up dns off your wan interface?

    While its a good "default" setting because you have no idea what someones setup might need. The admin of the box should correct those settings to be best suited for their needs. All is rarely that.

    edit: these are my settings, it listens on the interface I might serve up dns on. And only uses localhost as its outbound interface.

    settings.jpg

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.