• pfSense 2.5.0 development status ???

    3
    0 Votes
    3 Posts
    1k Views
    D

    Thank you. So many open items. Is it safe to assume that a production release will not be coming within the next six months?

  • Make Netgate XG-7100 and Cisco Mobility Express work together on 2nd WLAN

    Moved
    18
    0 Votes
    18 Posts
    1k Views
    N

    I must apologize to everyone who replied to this thread for being absent. The XG-7100 just stopped responding via web on all interfaces one Sunday and I just had to take care of that issue first before proceeding to this thread. fyi, the XG-7100 was throwing filesystem full messages via console and everything slowed down to a crawl. I was able to do a reset to factory, restore from backup and all is well again but under observation. this is for another thread.

    Yes, the XG-7100 is connected to Unmanagedswitch1 via LAN (port2). Okay, i'll try that switch config in a bit and report back.

    Thanks for moving this to the proper area, Steve.

  • Fresh Install Allows All Traffic

    4
    0 Votes
    4 Posts
    335 Views
    M

    The short answer is yes, although, more specifically... on a fresh install, PFsense allows all outbound traffic sourced from the subnet assigned to the LAN interface by default. However, there's an implicit deny on all OPT interfaces until firewall rules are added.

  • What IP is using all my WAN bandwidth

    5
    0 Votes
    5 Posts
    419 Views
    johnpozJ

    Darkstat package might be better for you wanting to track something down that is happening now.. You can turn it on and off easy enough.

  • Redmine Data Issue

    3
    0 Votes
    3 Posts
    422 Views
    ?

    Thanks for the clarification and updating the target version. I thought I had included the issue number in the clip but missed it. I was not as focused on this particular issue, but more generally.

  • Unnecessary rules

    3
    0 Votes
    3 Posts
    397 Views
    jimpJ

    As @stephenw10 mentioned, using Reject internally is one good reason, but there are also other reasons someone might want explicit block/reject rules, such as:

    To fine-tune which blocked traffic gets logged / not logged In combination with policy routing rules and the "Skip rules when gateway is down" option so that policy routed traffic will fall through to specific block rules if a gateway is offline To make the ruleset easier to read for less experienced admins who are not familiar with the default block behavior
  • Exporting LetsEncrypt Certificates in Automated mode.

    3
    0 Votes
    3 Posts
    917 Views
    S

    @stephenw10 Thank you very much for guiding me. Steve
    Best Regards.
    SMR

  • Deny dhcp lease and lan access to unknow and unwanted devices

    9
    0 Votes
    9 Posts
    713 Views
    T

    I've done this using a selfmade captive portal page, but thanks anyway for your hints.

  • Central Configurations

    1
    0 Votes
    1 Posts
    173 Views
    No one has replied
  • Fresh install internet access issue

    15
    0 Votes
    15 Posts
    650 Views
    stephenw10S

    That looks to be working fine, it pulls an IP and then renews it every hour. Was it not working at that point?

  • Why is file sharing not recommended on a pfSense box?

    8
    0 Votes
    8 Posts
    3k Views
    provelsP

    pfSense is also an enterprise-capable firewall. I don't think you'd want to bet your real business on a Linksys or Asus from Walmart. Looking at it this way, you are getting enterprise-level performance and security for your home net at no required expense except what it takes to learn to manage it. Of course, being open source, you can always get creative and roll your own: https://github.com/pfsense/

  • Netflow Data from PPPoE Server

    1
    0 Votes
    1 Posts
    122 Views
    No one has replied
  • Solved : how to add service name in pppoe server

    14
    1 Votes
    14 Posts
    3k Views
    L

    Hi, Sagardawa!
    I do not mean to bother you but the files you uploaded seem to be removed.
    I am now trying to settle my PPPoE server with a service name so that the clients would not connect to the undesired server.
    Could you kindly send the files again?

  • Interface with my AP cuts out regularly

    24
    0 Votes
    24 Posts
    2k Views
    DerelictD

    Right but it will be limited to "converting" the media on the other side, which 1Gbit fiber.

    Not the same thing.

    If you want the same thing, use a switch to "convert" from fiber to copper.

  • New user. Cannot get wireless router to work with WAN. *** SOLVED ***

    6
    0 Votes
    6 Posts
    228 Views
    M

    Glad it's working. Yep, plugging the AP it into the switch is the preferred deployment. However, the other way would have worked also. All you needed were firewall rules on the re0 interface allowing the traffic out and then a NAT entry on the PIA interface for the 192.168.2.0/24 subnet.

  • WAN packet loss when new LAN connection made

    3
    0 Votes
    3 Posts
    375 Views
    V

    Finally tracked the issue down which was with the firewall state sync.

    This was setup on seperate interface and seperated from normal LAN traffic via 802.1Q VLAN on switches (the two routers were in different areas and weren't possible to run another cable through). No idea why this was causing such problems but disabled now and rather a brief connection interuption if it switches over.

  • URL Redirect for Search Engines

    7
    0 Votes
    7 Posts
    726 Views
    H

    if you have control over those devices:

    https://docs.netgate.com/pfsense/en/latest/cache-proxy/wpad-autoconfigure-for-squid.html#setting-up-wpad-autoconfigure-for-the-squid-package

    or you can start messing with fake ssl certificates todo this transparently ... but thats messy

  • Remove LAN interface

    28
    0 Votes
    28 Posts
    5k Views
    NogBadTheBadN

    @angdigi said in Remove LAN interface:

    Isn't this considered "flapping". Maybe it's something on the NIC that's causing the issue and not the ISP....

    Flapping is generally a term for when a mac address moves rapidly between different ports on a switch / switches.

  • pfSense halving Virgin fibre connection speed

    10
    0 Votes
    10 Posts
    993 Views
    JKnottJ

    @danneh82 said in pfSense halving Virgin fibre connection speed:

    Swapped data ports (luckily ran extra drops!) and now getting full speed.

    The problem is probably at one of the connectors. Reterminating the cable should fix that or perhaps there's a bad connector. The cable itself rarely goes bad, unless physically damaged.

  • Add Custom Tables

    9
    0 Votes
    9 Posts
    1k Views
    stephenw10S

    Yes, there's no way to do that directly. You can try using the Netflix ASN in pfBlocker to create an alias then use that in a policy routing rule. https://forum.netgate.com/post/848939

    Steve

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.