• Allowing VPN connectivity to Windows routing & remote access

    3
    0 Votes
    3 Posts
    227 Views
    stephenw10S

    It's L2TP over IPSec transport so the firewall should only see the IPSec part. You would need to forward UDP ports 500 and 4500 and possibly ESP if you want a non-NAT-T connection.

    Steve

  • Welcome screen takes forever to load

    5
    0 Votes
    5 Posts
    474 Views
    stephenw10S

    Nothing has changed in that regard in 2.5 as far as I know. Not yet at least.

    Steve

  • Remote Access VPN Setup

    18
    0 Votes
    18 Posts
    2k Views
    stephenw10S

    Nice. Not sure how I missed that /24. Must have been low on coffee!

  • SIP-Calls over LTE drop after exactly 32 seconds (OpenVPN) - WiFi is fine

    19
    0 Votes
    19 Posts
    2k Views
    A

    @Tenou said in SIP-Calls over LTE drop after exactly 32 seconds (OpenVPN) - WiFi is fine:

    The VPN-Subnet is configured as “local trusted”

    Not sure what you mean with 'trusted', but your VPN subnet should be added to a list of local networks in Asterisk. Then check your SIP signalling on Asterisk side.
    I see no signs that pfSense has anything to do with your problem. Please read this and follow the link there.

  • Can't access 3100 appliance

    52
    0 Votes
    52 Posts
    10k Views
    cdsJerryC

    @yaminb In my case there's no potential for an IP conflict because there's no DHCP on any WAN IP. The pfSense has a WAN but everything else is just passed along. The routers are all downstream and would hand out DHCP to any device plugged into their networks. I only have a dozen WAN IPs so it's not hard to track those in the switch, and nothing would ever be connected directly to the ISP other than those dozen, and even those are post-pfSense.

  • MultiWAN pfsense routing

    17
    0 Votes
    17 Posts
    1k Views
    R

    Ok.. I'll give it a try. Thanks guys..

  • Azure AD LDAP as Authentication Server for Pfsense

    2
    0 Votes
    2 Posts
    3k Views
    stephenw10S

    Why do you think it would not work?

    I have never tried it but it should be able to auth against LDAP. The 2FA part might introduce a challenge.

    Steve

  • Tried to change LAN ip, now unable to login pfSense

    7
    0 Votes
    7 Posts
    514 Views
    stephenw10S

    Yes you might have a bad cable or bad terminal setup. Hardware flow-control that has no wires existing can result it no input to the appliance.

    Can you enter Coreboot setup (F10 for boot menu)? That would prove your terminal setup.

    Steve

  • Cannot uninstall package (SquidGuard)

    9
    0 Votes
    9 Posts
    3k Views
    Y

    Just for record keeping. I flashed back to stock 2.4.4-p3 and no issues.

  • Transparent Bridge mode in Data center with two public subnets

    3
    0 Votes
    3 Posts
    355 Views
    stephenw10S

    Do you see any blocked traffic?

    Make sure your rules do not reference, for example, WANnet which no longer exists.

    Do you see traffic for 192.30 arriving at the WAN if you run a pcap there and ping it externally?

    Steve

  • [HOWTO] pfSense logs to remote syslog server respecting RFC5424

    5
    0 Votes
    5 Posts
    3k Views
    stephenw10S

    That option is in 2.5 already:
    https://redmine.pfsense.org/issues/9808

  • Azure AD as LDAP

    3
    0 Votes
    3 Posts
    608 Views
    A

    Hi,

    I have been looking for a similar setup, can you give me a few pointers please, thanks

  • Configuring static wan IP

    5
    0 Votes
    5 Posts
    971 Views
    S

    Did you use the metronet supplied dns or use your own?

  • PfSense Vodafone Gigafast router replacement

    3
    0 Votes
    3 Posts
    848 Views
    B

    Fixed now

    Issue was it seems that I was applying the PPPOE to the WAN interface and not then assigning WAN as re0.911.

    Thank you so much for taking the time to respond!

    Regards

    Ben

  • The graph does not display immediately

    48
    0 Votes
    48 Posts
    7k Views
    johnpozJ

    What server computer? The one running pfsense or the one you using to access pfsense web gui? That pfsense time is not going to be correct.. Since its not currently able to talk to what you set for its ntp source.

  • cisco vpn client randomly disconnects with pfSense

    2
    0 Votes
    2 Posts
    285 Views
    stephenw10S

    The VPN is actually disconnected or traffic inside it stops?

    Check for blocked traffic at that time. Check the states still exist.
    Are you running Snort or Suricata? Check the alerts.

    Do you have multiple internal clients using the VPN client connecting to the same external server?

    Steve

  • Re: [Remote Access VPN Setup](/topic/149955/remote-access-vpn-setup)

    3
    0 Votes
    3 Posts
    353 Views
    C

    @JKnott well not much if I'm honest.... to be clear I haven't set that... In mobile clients I've ticked the "provide a virtual ip address to clients" box and specified 192.168.205.0 with a mask of 24 (as per the instructions I think).

    I'm not sure what else I'm supposed to do to be honest (all a bit new to me) which was sort of the point of the post.

    All help gratefully received.

  • Current Roadmap?

    Locked
    11
    0 Votes
    11 Posts
    1k Views
    jimpJ

    I'm starting to wonder if you're being willfully ignorant. If you only look at LOC changes that may be true that the copyright update stands out but that is far from the only work that happened recently. There have been massive changes to IPsec, Certificates, OpenVPN, and other areas over the last few months on 2.5.0, and tons of bug fixes on 2.4.5.

    The fact that you posted without bothering to even look first is also suspicious. If you're looking to troll people or stir up trouble, do it elsewhere.

    Locking this.

  • 0 Votes
    3 Posts
    1k Views
    P

    @m0zeid said in Replace Fortigate with pfsense, hd requirment? options to sell fortigate? and other questions:

    2x256 gb RAID 0 SSDs (chinese models)

    About this, I'd change to a RAID1 configuration.

    We moved from a couple of FG100-D (HA) to 2 pfSense (CARP) with UniFi APs (12 AP-AC-Pro) and pfBlockerNG-devel.

    No regrets.

  • This topic is deleted!

    4
    0 Votes
    4 Posts
    84 Views
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.