• Mounting windows shares/drives in pfsense

    Locked
    6
    0 Votes
    6 Posts
    7k Views
    H

    that would work in theory ….

    however ... every package on the system could one day be targetted when someone writes an exploit. If this happens, the pfsense team + volunteers try to update the supported packages as soon as possible.

    The samba-mount program will not be updated by the pfsense devs, you would have to update it manually if there is ever a security problem with it.

  • Recent 3G/4G modem - ZTE MF821D on pfSense

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Securing multiple interfaces from each other - access rules

    Locked
    4
    0 Votes
    4 Posts
    1k Views
    N

    If everyone is connecting via OpenVPN then you can route all networks to the VPN users.
    Then you can use the "client specific override" to force a VPN client to always get the same OpenVPN IP/subnet.
    This OpenVPN subnet can be used to create firewall rules.

    Every OpenVPN connection consits of 4 IPs or a /30 subnet.
    This can be used as source IP on the firewall. If you install OpenVPN on pfsense then you get a new tab "OpenVPN" on the firewall GUI.
    But forcing all traffic through OpenVPN with good speed will cost more CPU power than without any encryption.

    But I am not sure if this will make your firewall ruleset easier/better and give your more conrol on where these hosts can connect to.

  • Automated backup script

    Locked
    6
    0 Votes
    6 Posts
    2k Views
    hydrianH

    For those that are interested, I have updated the script to support the download of the RRD data. It now supports pfSense encryption too. To get the most recent version of the code, you can download it from: http://code.google.com/p/pfsense-backups/

  • PFSense and remote

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    A

    It is firewall colleague, so For Remote Desktop Web Connection, you need port 80, TCP and port 3389, TCP allowed then you able to take remote connection of any PC. Let me know if you facing further issue.

  • Non-virtual ip address getting filtered

    Locked
    4
    0 Votes
    4 Posts
    1k Views
    C

    No, once the VIP is removed, the ARP cache timeout process starts at that point.

  • DNS server from pppoe does not work with 2.0.2

    Locked
    34
    0 Votes
    34 Posts
    14k Views
    B

    @ jimp: I stumbled on this thread as I also encountered the DNS problem after upgrading from 2.0.1 to 2.0.2. Upgraded my system with non-signed image from your site (pfSense-2.0.2-RELEASE-4g-i386-nanobsd-upgrade-20121226-0919.img.gz), seems to work again without any other modifications done. 2 thumbs up for the fix! Thanks…

  • Skype on local subnet problem and Webconfigurator access

    Locked
    7
    0 Votes
    7 Posts
    3k Views
    K

    I have decided to restart the configuration of my pfsense from scratch and I find the problem.
    During the initial configuration I have installed numerous package to test like HAVP etc… and theys corrupted my squid conf with options in the "custom options" field.
    So I have removed it and now keep only squid and squidguard.
    Thanks for your help.

  • Pfsense Virtualbox implementation

    Locked
    10
    0 Votes
    10 Posts
    6k Views
    F

    My setup is:

    pfSense VM with 2 adapters one bridged to physical NIC on host and another one connected to internal network "pfsense".

    pfSense VM #2 with 2 adapters one bridged to physical NIC on host and another one connected to internal network "pfsense".

    Win7 VM with 1 adapter connected to same internal network "pfsense".

    All NIC's have promiscuous mode allowed so that I can use VLAN's for CARP between the two pfSense VM's. For virtual adapter type I use virtio-net (http://doc.pfsense.org/index.php/VirtIO_Driver_Support) for pfSense as it's supported in 2.1 and supposedly easier to virtualize than "real" network adapters.

  • Redirecting all users to internal webserver

    Locked
    6
    0 Votes
    6 Posts
    2k Views
    K

    Finally i did it.
    Special thanks to kalu  :P

  • Exploit: pfSense 2.0.1 XSS & CSRF Remote root Access

    Locked
    4
    0 Votes
    4 Posts
    9k Views
    C

    @mr_bobo:

    I do have a browser I only use to log on to the Web GUI to check my logs, and always log out and close the browser right after I'm done, but have on occasion opened a new window to an online tools site I use to resolve IP#'s that appear in the firewall logs while logged in.

    I knew there was a reason I felt uneasy when I didn't open a separate browser to check those IP#'s.  ::)

    You're reasonably safe with us if you stay up to date. Other web-managed products, unfortunately not so much. There are a number of commercial security-related products with serious unpatched CSRF and XSS issues. It would be safest to assume every web-managed device has CSRF and XSS issues and act accordingly, primarily use a different browser than one you use for any general Internet usage. These recommendations from 2008 still stand true today.
    http://blog.pfsense.org/?p=232

  • Reset states from Cron?

    Locked
    8
    0 Votes
    8 Posts
    4k Views
    jimpJ

    Immediately.

  • Fatal error: Allowed memory size of 134217728 bytes exhausted

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    G

    Thank's a lot :)

  • The Definitive Guide to pfSense (Version 2)

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    stephenw10S

    My credit card is poised for action.  ;)

    Steve

  • Shellcmd and running multiple daemon scrips

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    jimpJ

    Are those four separate shellcmd tags, or is that a script being called by a single shellcmd?

    You might try using nohup instead of &.

  • Web Interface / default gw down

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    jimpJ

    That's not unusual, as anything trying to hit DNS can make it slow down. The firmware update check is one that definitely causes it.

    This should be improved on 2.0.3 and 2.1 due to other changes we've made in PHP, but the only way to know if it helps in your case will be to try it out.

  • Trunking through a layer 2 switch

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    jimpJ

    You would need to use a managed switch that also has the same trunking and vlans configured on it on the ports you're using.

  • Load Balancing "Redirect" mode. how can i enable it?

    Locked
    1
    0 Votes
    1 Posts
    755 Views
    No one has replied
  • Problems with RRD Graphs

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    J

    http://forum.pfsense.org/index.php/topic,57312.0.html

  • Poor performance /w pfsense hardware issue?

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    stephenw10S

    That's just taken me a good minute staring at the picture to spot the error. Clearly out too late last night.  ;)

    Steve

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.