• Unknown error, pfsense freeze

    11
    0 Votes
    11 Posts
    1k Views
    G

    @stephenw10
    I will do that, thanks for your help :)

  • PLEASE HELP!!! pfSense is slowing down my internet.

    17
    0 Votes
    17 Posts
    24k Views
    K

    @stephenw10

    Wow Ok.

    Well I never saw those kinds of speeds with the VPN on. I saw them on my WIFI with the VPN off. But via ethernet with the VPN on is new for me. I like though. I would very much like to replicate and make it the standard.

    Yes the Tier 1 I created as a proof of Concept to see if it would give me access to some stuff, I am not able to access on my Tier 2. Hence why I want to make it my Tier 1. The only issue is that I suspect I may be limited by the internet speed available to the VPS. I have to contact the vendor to see what speeds should be expected on the VPS. So I don't know if I will get the same speeds as my Tier 2. However, 20Mbps is the minimum of my heaviest bandwidth services so if I can at least get double that at 40Mbps as a standard, I will be content.

    I am new to creating your own VPN server, so I will now have to look into things such as throughput etc.

    as it relates to the high latency, yes both gateways are over 2,000 Miles from me give or take.

  • Getting Errors Out on WAN

    4
    0 Votes
    4 Posts
    617 Views
    stephenw10S

    Hmm, that seems more like something on the cable side.

    You could try setting at the command line:
    sysctl net.link.lagg.lacp.debug=1

    That will give you a lot more LACP logs on the pfSense side which might show something.

    Steve

  • Tracking packets and ports

    2
    0 Votes
    2 Posts
    317 Views
    randomaustralianR

    ^^^^ ---- DERP

    i think i just found it...

    Diagnostics/Packet Capture
    -_-

  • VPN Gateway (monitoring) seems to go to sleep

    5
    0 Votes
    5 Posts
    564 Views
    stephenw10S

    If you increase the probe interval want to increase the other intervals shown there in proportion. Otherwise they start to be meaningless. The Alert interval must be more than the probe interval for example.

    If you're using DNS server as monitoring targets those servers MUST be set to the same gateways in System > General setup. Each of those things sets a static route to that IP and they must agree.

    You can check the Status > Monitoring Quality graphs to see what each link has been doing historically.

    Steve

  • Cant access any sites

    3
    0 Votes
    3 Posts
    432 Views
    stephenw10S

    Did you get past this?

    Seems like an actual DNS based on this and your other post. Are you using the default DNS settings?

    Steve

  • IP Address Overlapping Error

    Locked
    13
    0 Votes
    13 Posts
    17k Views
    stephenw10S

    Please don't open threads from 3 years ago. If you are hitting something like this on the current version it's unlikely to be the same thing as something this old. It would have affected many people and would have been fixed since then. Please start your own thread to report an issue agains 2.4.4p2.

    This is fact does not look like a bug though. You cannot have two interfaces in the same subnet, that is invalid. You can obviously have multiple IPs but they should be added as virtual IPs on the initial interface.

    Steve

  • block Facebook and youtube on mobile and desktops

    5
    0 Votes
    5 Posts
    2k Views
    stephenw10S

    This should already be solved on your other thread. Once you've added the gateways you can route one group via one public IP and the other via the other IP. Then OpenDNS can respond differently to each group if you need that.

    But if one groups can be unfiltered you don't even need that. Just pass the OpenDNS IPs as DNS via DCP to the filtered group and allow everyone else to use pfSense (or some other DNS server) to get unfiltered results.

    Steve

  • Routing to 2 web servers, 1 wan

    5
    0 Votes
    5 Posts
    514 Views
    RicoR

    Oh and by the way, @jimp did a great hangout: https://www.netgate.com/resources/videos/server-load-balancing-on-pfsense-24.html :-)

    -Rico

  • Disk Space Monitoring

    1
    0 Votes
    1 Posts
    233 Views
    No one has replied
  • Packet Loss Issue !!!

    5
    0 Votes
    5 Posts
    836 Views
    stephenw10S

    Do you see that same loss if you ping, for example, 8.8.8.8?

    If not just edit the gateway and set the monitoring IP to that instead. Or some other external IP.

    Do you have more than one WAN if not you can disable the monitoring action on the gateway. You will still get data but pfSense won't start reloading stuff if the loss goes over 20%.

    It seems like maybe the Comcast gateway IP is just not good at responding to pings and it doesn't have to be. If they ping your modem from their end they won't necessarily see that loss.

    Steve

  • pfsense crashing

    17
    0 Votes
    17 Posts
    2k Views
    manjotscM

    Thanks everyone above, for helping.

  • I got a small prb I'm not exactly sure how to say this

    11
    0 Votes
    11 Posts
    1k Views
    johnpozJ

    Dude don't know what to tell you but pfsense blocks nothing out of the box...

    How does the game fail? Does it give you an error, says can not connect to server what?

    If your running blocking software be it IPS or Proxy - those for sure could be your problem.. But they would LOG it, etc..

    Works some times, not works other times points to problem in your wifi network or possible dns issue?

    If firewall blocking - it always blocks, it doesn't block sometimes and not others. Possible you have issue with connecting to a specific server in the CDN when it fails, etc.

    Your going to have to give some info if you want help... You have told us nothing really other than it sometimes fails..

  • PIA disconnects with frag3 preproc alerting spp_frag3

    9
    0 Votes
    9 Posts
    1k Views
    1

    @stephenw10 Hey Stephen,

    Thank you very much for all your attempts at helping me out. I DO appreciate it.

    I resolved the issue by cancelling my subscription to the VPN service with the flaky client - I mean it won't even clean install ffs.

    Anyways, I didn't want to leave the thread hanging so thats it - it's done. Problem resolved. I won't disable frag3 for a flaky client that would be ridiculous. The other VPN service I have has a client that works flawlessly and I am tired of banging my head against the wall with level one help-desk agents that have a "upgrade to the latest client" mantra and when that doesn't work wait 3-4 days with nothing on the ticket. PIA is being overwhelmed with customer tickets right now it says so on their ticketing system "unusual wait times" and all that type of language on their site. And this came as a direct result of their latest client release so....they must've pulled a Microsoft and released little better than alpha software as a full version production release. Whatever not my problem anymore.

    Thanks once again for your efforts. They are appreciated.

  • [solved] Cloudflare domain takes me to pfsense configuration page

    11
    0 Votes
    11 Posts
    1k Views
    U

    @johnpoz Thanks for your help and sorry for the confusion. Have a good day.

  • NTP Not Working [SOLVED (totally)]

    Locked
    42
    1 Votes
    42 Posts
    45k Views
    jimpJ

    Then you have a different issue than the OP of this thread. Start a new thread with details about your own setup.

  • OPT1 / OPT2 interfaces not able to access the Internet

    28
    0 Votes
    28 Posts
    5k Views
    R

    hey buddy can you help me on how to set-up opt1 and opt2 and wan with the same gateway.

  • grep for all MACs from a certain day?

    9
    0 Votes
    9 Posts
    533 Views
    DerelictD

    Yes. Logging to an external logging system is expected if you want more than basic debugging tools.

    I have used many "enterprise" firewalls and we never depended on them to store anything but the most cursory of logs on the devices themselves. We always logged to something external if anything historical was desired.

  • How many interfaces can pfsense handle?

    14
    0 Votes
    14 Posts
    2k Views
    P

    @akuma1x
    simply because you don't want to keep in memory what customers is using what addresses. It's a bit difficult when you get up to 400+ customers divided on 4 addresses, it's much easier installing some kind of load balancer dividing all traffic on several setups. but sure enough it would work, if you wouldn't mind a bit of hassle.

  • 0 Votes
    8 Posts
    887 Views
    chrismacmahonC

    The SG-5100 is now at 699.00 vs 799.00: https://store.netgate.com/SG-5100.aspx

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.