• Running pfSense from CF with noatime mount option on root filesystem ?

    Locked
    9
    0 Votes
    9 Posts
    6k Views
    W

    @ermal:

    It's not a bug nor a feature its customization. You're onyour own noatime does not bring anything to pfSense in general so why use it?

    It is not the "noatime" that bothers me - it is in a more general consideration - i think it is a problem that the /etc/fstab contents are not respected.

    This means that it is quite difficult to add extra disks and have them automatically mounted at boot time.

    I know that pfsense it an "appliance" - but it is still *nix beneath the surface - IMHO there should be some kind of (similar) mechanism that sould allow such.

  • 1.2-RELEASE becomes unstable, CP and GUI not loding

    Locked
    7
    0 Votes
    7 Posts
    4k Views
    C

    The web server in pfSense is lighttpd in pfSense 1.2 it is configured by default for 1 maybe 2 connections only. This is okay for just standard firewall config on a limited resource box. This is bad for captive portal especially if you have more than one person connecting to captive portal at the same time.

    pfSense 1.3 addresses this issue when captive portal is enabled the lighttpd is given more resources so it can handle more connections.

    If you want to manually add these changes now to your pfSense firewall take a look at the following links.

    This prepares the pfSense built in web server for more concurrent traffic.
    http://forum.pfsense.org/index.php/topic,8861.msg50280.html#msg50280

    This helps optimize PHP so it doesn't hold web server resources for a long period of time.
    http://forum.pfsense.org/index.php/topic,8878.0.html

    A workaround for now that will automatically remove the lock file after it is older than 3 minutes.
    http://forum.pfsense.org/index.php/topic,8152.msg57899.html#msg57899

    After making these changes I have supported over 130 people behind captive portal with no further problems.

  • PfSense and direct attached cable modem

    Locked
    12
    0 Votes
    12 Posts
    17k Views
    chpalmerC

    Yep!

    Heres a good over detailed explanation in case your curious…    ;D

    http://www.usr.com/support/6000/6000-ug/two.html

  • Training

    Locked
    9
    0 Votes
    9 Posts
    12k Views
    F

    @onhel:

    Ottawa and Kentucky are a bit out my ways.  Next time something is setup within a 3 hour drive of New York City, I'm there!

    I'd be up for a session that was near NYC too.  Otherwise, a virtual environment/webinar would be cool.  I wouldn't mind paying if it was done well.

    Best,

  • Pfsense like fileserver for Windows users

    Locked
    3
    0 Votes
    3 Posts
    6k Views
    V

    make a second machine for the file server.  freeNAS is build for this kind of thing, its similar to pfsense  http://freenas.org

  • DNS vulnerable, any chance that a patch is being considered?

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    C

    What GruensFroeschli linked is appropriate if you're using the DNS forwarder. If you're using the DNS forwarder, what it's reporting on is your ISP's DNS servers.

  • What features does pfsense have about handling DOS attacks

    Locked
    2
    0 Votes
    2 Posts
    13k Views
    C

    pfSense has by far the best capabilities of any open source firewall, and better than a bunch of commercial firewalls, when it comes to DoS protection. DDoS you likely can't do anything about unless you have an extremely fast Internet connection. Most DDoS attacks will knock you off the Internet unless you have at least 50 Mb of Internet connectivity, and at times even that isn't enough.

    Check the advanced options on the firewall rules add/edit screen, several options there for controlling things.

  • IP or computer bandwidth use

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    P

    Thank you!

  • Manage pfsense using WAN web interface

    Locked
    3
    0 Votes
    3 Posts
    18k Views
    V

    creating a rule for HTTPS access for WAN interface resolved the problem. thanks

  • Many repeated UDP requests - How to stop?

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    ?

    Based on the timestamps in your screenshot, it would seem that these are recent activity.  It would seem like you have something going on in your network that is unintended.

  • Bandwidth usage

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    P

    Vnstat might please you
    http://forum.pfsense.org/index.php/topic,8460.0.html
    http://pfsense.site88.net/packages/All/vnstat-1.6_2.tbz

  • 0 Votes
    8 Posts
    3k Views
    Cry HavokC

    You can install FreeBSD packages (details in the forum) but you're on your own.  As the package says, don't rely on it - if it's simply wanting to be less visible, it (and all the other packages) are fine.  If it's a matter of staying out of legal trouble, you need to consider the risks for yourself after you read the research others have done.

  • Network setup with pfSense AP

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    B

    It's been a while since I've looked at an interface page for wireless, but I believe there was an option there for allowing clients to communicate with each other directly. Do you have that set?

  • Strange DNS problem…

    Locked
    9
    0 Votes
    9 Posts
    3k Views
    P

    I wrote in the 2 IPs to OpenDNS that Perry gave me. And it seems to be working  ;D

  • Integrate BlueTack Hosts Block File?

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    M

    I would like to just bring this up again since we have 1.3 available to us. Can I see an example of an entry? I am not sure that I am getting it right. I make the alias, it saves, but when I make the rule it gets upset. I am going to plug away a bit more at it, but if someone has an example I can work off I would love it. :)

    EDIT:
    Okay, I found that I was just being dumb. I have it sorted now, but I am wondering if there is a size limit to the number of lines in my alias import?

    Okay, I just tried to feed it this list. And it's just sitting there and the DNS Forwarder stopped working. Once I get more info I will let you know.

    EDIT AGAIN!: oops… List to long, broke my post.

  • How can I adjust ICMP poll timers ?

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • PfSense "the Astaro alternative" ?

    Locked
    4
    0 Votes
    4 Posts
    5k Views
    I

    @submicron:

    Or you can look at the spamd package, which is still in development, but works quite well.

    quite a few of us are using the spamd package with great results..

  • Broken Link on VLAN page

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • IPv6 development – needs testing

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    M

    The latest 1.3b12 and 1.3b13-pre releases of M0n0wall contain changes to bring in full (?) IPv6 support.

    Is it worth looking to see if these changes can be ported into pfSense ?

  • Packetloss on all interfaces

    Locked
    13
    0 Votes
    13 Posts
    5k Views
    O

    I ran into exactly this problem too. My connections were all physically stable, and established connections (downloads, VoIP calls, etc) were reliable. But new connections were intermittently flaky, and packet loss was appearing while pinging the router's internal addresses.

    A quick look at the RRD graphs showed that I was hovering around the 10k default state limit. So I doubled the state table size (in System / Advanced).

    Thanks for the thread. Love those graphs.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.