• WAN>Pfsense>Netduma

    Locked
    2
    0 Votes
    2 Posts
    481 Views
    stephenw10S
    Please use the linked thread for replies.
  • Combining 2 seperate DSL connections.

    13
    0 Votes
    13 Posts
    1k Views
    stephenw10S
    Ah, well to do that you might actually be better using two separate connections. You can route VoIP traffic via one exclusively and have no chance of other traffic ever causing a problem. And you can still setup both as failover to give some redundancy. Steve
  • WAN dropping out on OPT1 connection

    10
    0 Votes
    10 Posts
    1k Views
    P
    @stephenw10 I have not be able to reproduce the behavior again, unless I use the crossover cable and have both OPT1 and WAN going into same switch - which I now believe to be an invalid configuration. MAC addresses need to be unique at the physical LAN subnet level. Hence the marvel with 1 Mac and 3 ports works as long each port is plugged into a different physical subnet. Now that I understand the Sg-1100, pfsense, VLANs better. I have the system working with 1 cable from WAN to Cisco Switch with the untagged VLAN being the WAN interface and the tagged 100 VLAN being the camera interface.
  • AWS PfSense Plus Site to Site IPSEC

    7
    0 Votes
    7 Posts
    1k Views
    P
    @stephenw10 Hi Stephen, I did have 'my identifier' set to the address with the elastic IP set. I finally found the problem. The inbound rules on the office pfSense did not allow udp/4500. Once I added a allow for the source IP the connection came up instantly. Thanks again, Paddy
  • Java log4j vulnerability - Is pfSense affected ?

    52
    1 Votes
    52 Posts
    29k Views
    N
    @shinobi said in Java log4j vulnerability - Is pfSense affected ?: from what we see across various products and devops environments most often the devs are unaware of it until shown.. log4j can be buried deep so i'm about to scan my local pfsense using latest openvas plugins.. .although im not aware of it,.. it could still be behind something else. ~If i see any hits i will return them here. pfSense is open source software. If there was log4j module used, it would have been found / exposed and fixed by now. There are thousands of people out there checking the code. Not just Netgate. What im trying to say is, you are wasting your time.
  • How configure VLAN WAN/UI access rules?

    16
    0 Votes
    16 Posts
    2k Views
    I
    Thanks @stephenw10, the rule screenshot's really helpful. I was able to get that rule set working (as long as the "skip rules..." option was selected).
  • What notification can be sent thru telegram?

    9
    0 Votes
    9 Posts
    1k Views
    GertjanG
    @stephenw10 And gets auto discarded when the cited redmine feature request got implemented. On the down side : this needs some discussions with diff and 'patch'.
  • Remote SSH Admin user creation and password reset

    Moved
    8
    0 Votes
    8 Posts
    947 Views
    P
    Is it possible to create a user on pfSense via SSH? Obviously for my immediate need.
  • How to run a Script before every shutdown?

    10
    0 Votes
    10 Posts
    1k Views
    T
    @gertjan Thanks! Its Working as expected!
  • Please help me understand "IP Passthrough" via ATT Fiber BGW500-320

    10
    0 Votes
    10 Posts
    2k Views
    stephenw10S
    Yeah, seems like the gateway device is running proxyarp for some reason. If you can connect to devices in the WAN subnet but nothing upstream from that it's either because there's no default route or the outbound NAT is not functioning. Either are probably because the WAN gateway is not configured on the WAN interface itself. Steve
  • UPnP issue: sessions not showing up in status screen

    5
    0 Votes
    5 Posts
    674 Views
    S
    I think it's just the gaming apps not sending UPnP requests. I'll set up a pcap when I have time to fiddle with it. In the meantime, for anybody looking into testing UPnP, here is a good read on the upnpc utility you can use to do just that: FYI: Tool to test and set Port Forwarding with UPnP
  • Bridge errors?

    4
    0 Votes
    4 Posts
    561 Views
    stephenw10S
    Yeah, if those numbers were a lot larger or continually incrementing if would be more of a concern. Those could have been caused by unplugging OPT1 or OPT2 at some point. Steve
  • Modem in bridge mode, no access to its wifi

    8
    0 Votes
    8 Posts
    1k Views
    stephenw10S
    Yup, many 'modems' like that no longer route traffic after setting bridge mode because they no longer have a public IP to route it from. So you cannot use the wifi which relies on that. Steve
  • Please Help: "Firewall Logs" Dashboard Widget Not Updating

    25
    0 Votes
    25 Posts
    4k Views
    stephenw10S
    Yeah, it 'feels' like something that takes too long to process which would be load dependent. Anything less that 5s always seems to fail though. Add anything that might be relevant to the bug there. Steve
  • PF Sense Setup

    125
    0 Votes
    125 Posts
    42k Views
    T
    @jsmiddleton4 Thank you. I appreciate that! You are right, probably no one is going to hack into my APs but being in IT for years, I also know how us IT nerds are, so its more I want to just be aware. I cant be aware of everything nor will i know how everything works but the more I know about my network and what looks right/doesnt the better off i'll be. Its all fun and learning for me especially now that im in more of a project management role instead of IT i actually WANT to work on these types of projects and learn for fun. Let alone, watching Mr. Robot did not help in the 'people are hacking you' thoughts. lol. DHCP6 will come down the road. My next goal is setting the plugins up and watching everything. I am curious because i just got alerted that im over my data cap again! Something is def. off since its not every month. Ive already got a good idea of whats on my network but i've been running ip scanner for a few months now and just noticed a few more things that im gonna double-check. Good information to note in regards to the NICs etc.
  • Clear /boot/kernel.old?

    4
    0 Votes
    4 Posts
    662 Views
    stephenw10S
    I upgrade numerous boxes daily between snapshots and have never seen it become a problem. Currently I see two previous versions stored there, ~200MB.
  • Anti virus scan device that pfSense is installed on?

    4
    0 Votes
    4 Posts
    959 Views
    stephenw10S
    Mmm, you could probably run a scan manually using ClamAV if it's installed and updated. No idea if it has any signatures for 64bit ARM FreeBSD though! Steve
  • SOLVED: pfsense vm or physical?

    12
    0 Votes
    12 Posts
    2k Views
    L
    @bingo600 said in SOLVED: pfsense vm or physical?: @lewis I'm not talking about a VM going down unexpected. I'm talking about the times. ie. my ESXi servers has been down this year due to critical patches, that had to be applied to ESXi or vCenter (well servers doesn't need to be taken down to patch vCenter). /Bingo Oh yes, very good point. In that respect, pfsense running on its own hardware is never an issue. I've never had an update cause down time. That alone seems to seal the deal. I've also run pfsense as a vm using two of the blade nics. It works as expected, just a bit tricky to set up but you're right about the host.
  • Upgrade 2nd Gen i5 to 2nd Gen i7?

    42
    0 Votes
    42 Posts
    7k Views
    J
    Hyperthreading enabled. [image: 1641594336666-screenshot-2022-01-07-172457.png] Hyperthreading disabled. [image: 1641594839150-screenshot-2022-01-07-173308.png]
  • Video blank when hooking monitor back up.....

    22
    0 Votes
    22 Posts
    2k Views
    J
    @stephenw10 I may not use it. It fits my design goal, free. Totally not needed. And I'm not all that eager to have a video card fan start squealing. The box is in a work at home office. Someone gave me an electric boat trolling motor. I'm looking at connecting it to the battery in the PFSense box UPS. Stick the propeller into the case. Cool that sucker DOWN. There'd have to be some tweak to the NUT package though.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.