• Span port (mirror port)

    Locked
    6
    0 Votes
    6 Posts
    19k Views
    S

    thank you jimp, I googled the wrong ifconfig manpage ;-)

    a question on creating the bridge from a newbie like me:
    I currently have a vlan interface, lets call it vlanForMonitoring. There's always only one client connected to it, this client shall be used for analyzing traffic from and to the wan interface.
    Can I do something like the following?

    #ifconfig bridge0 create // create the bridge #ifconfig vlanForMonitoring up monitor // set vlan interface to monitoring #ifconfig bridge0 addm wanInterface span vlanForMonitoring up // bridge wan to the monitored interface

    How about Firewall rules? Is the bridge enough to pass traffic from WAN to vlanForMonitoring or do I still have to create firewall rules? How would they have to look like? Thanks for any hint :-)

  • Constant crashes (Panic String: bad pte)

    Locked
    6
    0 Votes
    6 Posts
    4k Views
    D

    @costasppc:

    Crashes stopped when I removed the specific gateway from the gateway groups that contained it (Load balancer and https failover). I set the tier to Never.

    I had no crash since. Do I still need to bring the firewall down for memory diagnostic check?

    It'd be a good idea to run memtest86+ on that system, just in case …

  • Support turnaround?

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    jimpJ

    I see Chris already responded to your ticket. We try to respond to tickets ASAP, typically that means within a few hours, up to 24 business hours (weekends don't usually count, but we do respond to some tickets over the weekend). Also depends on the nature and immediacy of the problem as well, obviously issues where a system is down entirely will see a response faster than one that is not urgent.

    If an issue becomes urgent you can always phone in and if we aren't on the normal support hours someone can still be reached.

  • Help me tune this amazing system :) *EVERYONE COME IN AND READ!*

    Locked
    13
    0 Votes
    13 Posts
    4k Views
    D

    If you want to capitalize on the LACP links now, try using Robocopy with MT option.  That turns on multi-threaded mode that allows multiple concurrent connections (provided you are transferring more than 1 file).

  • DHCP split scope 2011 server w/ pfsense

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    M

    Why shouldn't it?
    Just define two scopes which do not overlap. Client then takes the "first" to respond.

  • Pfsense Warning: fopen(/tmp/config.lock): failed to open stream

    Locked
    6
    0 Votes
    6 Posts
    5k Views
    M

    Is there any other way to test the flash drives health?

  • Dashboard Picture

    Locked
    4
    0 Votes
    4 Posts
    3k Views
    jimpJ

    I've seen it happen with a few of them, firewall logs, service status, and interface status. I don't think it has anything to do with the widget, but without being able to replicate it, it's hard to say.

  • Is 2.0.2 about ready???

    Locked
    6
    0 Votes
    6 Posts
    2k Views
    C

    Yea agree! One thing i would love like in the watchguard products is the custom use of Notifications. So if say an SMTP packet was detected on the LAN was trying to get out, PFsense would email me and let me know. But for each rule you can turn this off and on if you so choose.

    ONE THING I AM LOOKING FORWARD TO IS PFCENTRE!

  • Setting up static ip on pfsense

    Locked
    5
    0 Votes
    5 Posts
    13k Views
    C

    I have an ADSL Provider in my area, and they provided me with a router, with 5 useable IP addresses. I swapped it out for a Zyxel router really nice. I used the first IP for that device… And then with my pfsense i used the secondary IP in the range and my gateway was the Zyxel Router (first IP). Then added the rest using Alias in pfsense. The reason for this, is so that i can still access the Zyxel interface if i need. And plus if i was ever outside the network i could ping the Zyxel to make sure the internet was up without compromising the network, and Pfsense.

  • How to reset theme manually?

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    C

    The easiest way in my opinion is to enable SSH Shell login, and with Filezilla a free SSH/FTP client logon to the box with root and whatever your admin password is and browse to..

    usr/local/www/themes

    Under here is where your find all the themes. When i got bored i downloaded a theme and started to play around with the CSS to change colours etc. My pfsense is now amazing! lol

  • Unable to check for updates

    Locked
    8
    0 Votes
    8 Posts
    5k Views
    jimpJ

    That URL will show 404 in a browser because it has no index.html (or similar) and directory listings are denied. It is not meant to be viewed in a browser, the 404 has nothing to do with whether or not your system can check for updates.

    That always boils down to either broken routing/WAN configuration, or broken DNS.

    Start a new thread rather than hijacking an old one.

  • Cant connect to internet ISP

    Locked
    1
    0 Votes
    1 Posts
    3k Views
    No one has replied
  • New hotspot solution

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • PowerD Buggy?

    Locked
    4
    0 Votes
    4 Posts
    1k Views
    jimpJ

    Yep.

  • Commands to help identify Lan interface errors

    Locked
    4
    0 Votes
    4 Posts
    3k Views
    L

    Ditto on that.  Those SRW switches cause an unreasonable amount of trouble.  And half the time, upgrading firmware bricks it.

  • Your experiences with transparent squid proxy+embedded?

    Locked
    1
    0 Votes
    1 Posts
    917 Views
    No one has replied
  • Jail status?

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    perikoP

    Thanks guys, I will give a try if something happen, we can move to fbsd anyway :-).

  • Bandwidth management for roommate

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    C

    I would make sure each node has a static IP address and then assign limiters to this, with the built in feature

    Traffic shaper.

    There is cool Youtube video on how to do this.

    http://www.youtube.com/watch?v=Usi195rK35I

  • MSExchange ActiveSync Issue - Firewall Rules

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    C

    You dont have to open up port 80 at all! all there should be is port 443 secure SSL. make sure loop back for NAT is disabled.

    go into Advanced the firewall/NAt

    Disable NAT Reflection for 1:1 NAT

    Tick the box.

  • FIREWALL RULES FOR TRAFFIC BETWEEN INTERFACES

    Locked
    25
    0 Votes
    25 Posts
    22k Views
    P

    What is the status of the Windows firewall in the Win7 machine? usually Win 7 firewall will not accept connections from a subnet that is not represented by a NIC. Also check your RDP settings also to make sure you can connect from anywhere.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.