• MOVED: gateway tier priority backwards?

    Locked
    1
    0 Votes
    1 Posts
    192 Views
    No one has replied
  • Justifying pfsense for home network

    12
    0 Votes
    12 Posts
    7k Views
    GertjanG

    One more :
        Flawless IPv6 support …..

  • OpenDNS not blocking sites

    8
    0 Votes
    8 Posts
    2k Views
    johnpozJ

    Dude is your client pointing to pfsense for dns??  if you have forwarder enabled in resolver it will forward to where you tell it to forward.. If your using the forwarder then it will forward to where you set it to forward..

    If your client is not pointing to pfsense doesn't matter how you set pfsense up..

    Please post up your setting in pfsense, and your settings in your client showing what dns its using.. simple ipconfig /all in windows machine.

    Here took all of couple seconds to switch over and test this.. See attached.. Make sure you clear your browser cache and your machines local dns cache.. Reboot the machine if you do not know how to do that..

    If you do not disable dnssec and you forward to opendns your prob not going to get anything back since they do not support dnssec..  That should be disabled if forwarding to opendns.  See screenshot.

    forwardusingresolver.png
    forwardusingresolver.png_thumb

  • Instability when multiple VLANs and rule editing.

    1
    0 Votes
    1 Posts
    236 Views
    No one has replied
  • PfSense as a remote filtering gateway?

    2
    0 Votes
    2 Posts
    399 Views
    M

    from what you are trying to do you can just setup a vm with openvpn AS (it comes as a VM appliance ) and just vpn from your pc to it and than use opendns to filter traffic by categories or lists.

  • Cloning pfsense 2.4.2 harddisk

    9
    0 Votes
    9 Posts
    2k Views
    DerelictD

    Regardless of any disk mirroring you have in place, ZFS or GMIRROR, the remote site should always have ready access to a USB installer memory stick/CD for the version they are running and access to a current configuration backup, via Auto-Config Backup or another method.

  • DD WRT Router randomly Reboots a few times daily since PFSense Box

    5
    0 Votes
    5 Posts
    1k Views
    curtisgriceC

    Just a hunch, manually set your interface speeds on both ends. Also check your interface statistics to see if there is more than the expected traffic.

    Even with DD-WRT those little boxes just freak out when overloaded or the PHY starts misbehaving.

  • PfSense and Ubiquiti

    21
    0 Votes
    21 Posts
    7k Views
    R

    That's why I'll never, ever buy a BMW.  8)

  • 0 Votes
    7 Posts
    666 Views
    DerelictD

    Yeah. That's item #6 here:

    https://doc.pfsense.org/index.php/Port_Forward_Troubleshooting

    The port 80 redirect to the web gui works completely differently for NAT reflection than with a port forward.

  • Multicast IPTV for ISP FPT VietNamese

    2
    0 Votes
    2 Posts
    936 Views
    No one has replied
  • Whitelist IP behind Pfsense

    1
    0 Votes
    1 Posts
    322 Views
    No one has replied
  • Crashes after upgrade to 2.4.1

    3
    0 Votes
    3 Posts
    420 Views
    T

    Hi!

    Sorry for late reply.

    No shaping whatsoever.

    I upgraded to 2.4.2, and the crashes stopped. But suddenly i had a crash again three days ago. I think i'm just going to do a fresh install.

    Regards

    Tommy

  • PfSense –> Snort Supress list not working

    4
    0 Votes
    4 Posts
    702 Views
    bmeeksB

    The most likely reason for the blocking to continue even after the rule is suppressed or disabled is that you had two instances of Snort running on the same interface, but one is in a sort of zombie state and does not see changes made within the GUI.  That process would continue with the original rules in place.  Rebooting the firewall will of course kill everything and start from scratch.  There should be only a single Snort process running on each configured interface.  You can check that using this command line:

    ps -ax | grep snort

    Sometimes multiple copies of Snort can happen if something causes the firewall to issue a "restart all packages" command while another Snort restart is already in progress (such as a rule update download).  Another way to get multiple Snort copies running on the same interface is using the Service Watchdog package.  Never use that package with either Snort or Suricata!.  It does not understand how to properly start Snort and Suricata, nor does it know how to properly monitor all the configured interfaces.  It will see Snort "down" during the restart from a rules update and thus issue its own "start up" command without knowing that Snort is already restarting.  Thus you can wind up with two Snort instances running on the same interface, but only one of them will respond to GUI changes.

    Bill

  • 0 Votes
    2 Posts
    627 Views
    J

    I just looked at the relayd conf man page and found this:

    https://man.openbsd.org/relayd.conf.5#PROTOCOLS

    Does that answer your question?

  • "Access Denied" Message on certain websites

    2
    0 Votes
    2 Posts
    581 Views
    J

    The looks like an Akamai CDN error page.

    https://community.akamai.com/community/cloud-security/blog/2016/04/07/why-is-akamai-blocking-me

  • PfSense with Wanos for wan acceleration on VM Is it possible?

    1
    0 Votes
    1 Posts
    615 Views
    No one has replied
  • SG-1000 High CPU Usage with Netstat Command?

    9
    0 Votes
    9 Posts
    2k Views
    ivorI

    You will be able to download the image once it's ready.

  • Help first pfSense build (Modem,ESXi,Wireless router)

    3
    0 Votes
    3 Posts
    483 Views
    P

    Hi,

    I managed to create multi ssid with my asus wireless router in AP mode with one VLAN bridged to the VAP. The two LAN devices attached to the wlan router are in static ip in my case 10.0.10.20 and 10.0.10.30 but I cannot still connect to the internet somehow. so is it better to invest into smart router and put it in between?

  • VPN Setup

    4
    0 Votes
    4 Posts
    862 Views
    D

    Yes after looking into it some more, I can see it is obvious that OpenVPN is the right way to go.

    Thanks for the replies.

  • Bandwidthd and darkstat not working

    3
    0 Votes
    3 Posts
    827 Views
    M

    makes sense now that you have told me :) thanks Bud

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.