• Port aggregation

    5
    0 Votes
    5 Posts
    738 Views
    johnpozJ

    @tbbz8x8 said in Port aggregation:

    I have absolutely no use for more vlans as I only have one device that uses Ethernet

    @jknott said in Port aggregation:

    Unless it's over 1 Gb, aggregation won't accomplish much

    Even if over 1 gig, wouldn't matter lagg is not going to allow 1 device to use more than 1 physical path..

    From the OP statements - other than a failover for failed port.. I don't see any use to setting up a lag.. And what switch is he using? Most likely since he doesn't have any vlans, just the 1 lan connection more than likely doesn't even have as smart switch capable of lagg, etc.

  • No internet Connection. LAN side.

    11
    0 Votes
    11 Posts
    1k Views
    stephenw10S

    I would suspect some hardware off loading not playing nicely.

    Things can get weird when you are testing from the host itself as traffic does not actually enter/leave the NIC. It not subject to the same path as traffic from external clients.

    Steve

  • NTP server remain in Soliciting pool server

    36
    0 Votes
    36 Posts
    13k Views
    J

    attached two trace, one of my ntp local server and one of pfsense box with the same server configured.

    1_1531170243257_pfsense.pcap 0_1531170243256_local.pcap

  • warning unresponsive script

    4
    0 Votes
    4 Posts
    764 Views
    R

    @stephenw10

    yes it was lastpass causing the issue. thank you.

  • How to display the Traffic Graph feature on another website.

    1
    0 Votes
    1 Posts
    555 Views
    No one has replied
  • Disable Auto-added VPN rules???

    6
    0 Votes
    6 Posts
    3k Views
    DerelictD

    No. If you needed to NAT on IPsec you would use the NAT in IPsec Phase 2 not Outbound NAT.

    Once the Phase 1 (IKE) tunnel is up you can forget all about the WAN interface.

    In your case, if you wanted to only pass traffic between those hosts you would probably want to make these Phase 2 Networks:

    Local Network Remote network Host 192.168.2.61 Host 192.168.81.3 Host 192.168.2.61 Host 192.168.81.4 Host 192.168.2.61 Host 192.168.81.5

    You can further enforce inbound connections with proper rules on the IPsec tab.

  • Tmobile cellspot - OPT1 interface

    8
    0 Votes
    8 Posts
    936 Views
    DerelictD

    Seems like a personal choice.

  • PfSense reload pfctl rules

    8
    0 Votes
    8 Posts
    5k Views
    stephenw10S

    When I run that command I see this in the system logs (reversed):

    Jul 8 12:30:23 php-cgi rc.update_urltables: /etc/rc.update_urltables: pfB_Spamhaus does not need updating. Jul 8 12:30:23 php-cgi rc.update_urltables: /etc/rc.update_urltables: pfB_NAmerica_v4 does not need updating. Jul 8 12:30:23 php-cgi rc.update_urltables: /etc/rc.update_urltables: Starting URL table alias updates Jul 8 12:30:00 php-cgi rc.update_urltables: /etc/rc.update_urltables: Starting up.

    Those are url aliases added by pfBlocker that point to lists of IPs.
    Do you not see that logged for your custom alias?

    Steve

  • "403 Forbidden" please help !

    4
    0 Votes
    4 Posts
    535 Views
    emammadovE

    When you select option 15 "Restore recent configuration" it will show you two options: view and restore. Select view and look at the previous dates that you want to restore. I think, it will show you 30 recent configurations. Type the number of the backup and press enter, wait a moment. Then try to login pfSense web gui.

  • VLAN Help Requested: I Give....diagram & screenshots included

    24
    0 Votes
    24 Posts
    3k Views
    P

    I am back trying to solve this problem.

    One thing I have noticed on the wireless clients is I can get them to connect to the VLAN ONLY if the interface is selected as the same as my LAN interface.

    Example:

    LAN is on igb1 (switch is patched to this physical port to port 1 on switch)
    VLAN10 set to igb2 = No IP address on wireless device (phone)
    VLAN10 set to igb1 = IP address connects and appears in DHCP table correct (192.168.10.100)

    From there, the phone says "Connected, no internet" which leads me to believe the issue is with the firewall rules. I believe my Pass rule is correct but would like to know if I need to add NAT rules. A recent post in this category had a guy connecting a Ubiquiti AP to an unmanaged switch and he required a NAT rule as well as a firewall rule. I have attempted to duplicate both but cannot make it out to the internet.

    As always the help is appreciated.

    UPDATE:

    Progress. The phone is now on the internet. I had to select the SECURE interface in the DNS Resolver in addition to the already selected LAN & localhost.

    I still have the firewall rules but deleted the NAT rules I was trying to make. So I'm still looking for answers there.

    ETA: IT WORKS!!!

    I chased this all night but it came down to my NAT rules being set to manual due to an older OpenVPN setup. One click on Auto and all devices have internet.

    Talk about a nightmare. I'll get to setting up the VPN later.

  • How to down grade from Devel to Stable?

    6
    0 Votes
    6 Posts
    912 Views
    D

    @gentlejoe This is what I can find https://forum.netgate.com/category/28/development

  • Export system logs and statistics into word or PDF format..

    2
    0 Votes
    2 Posts
    6k Views
    vicWellerV

    There are no tools in order to do so to one of those extensions exactly. As far as I know, you need something like this in order to proceed with this thing https://4000a-125-2-form.pdffiller.com/ that's actually an editing tool for pdf's but fits well for your purpose as well as it cost not that much as the other tools with these features

  • Minimum requirements for 100 clients

    8
    0 Votes
    8 Posts
    988 Views
    rscarpeliR

    Thanks for everyone's response!
    I have solved, I will use a machine with I3 / 8G / 500Gb.

  • How to determine system is pfSense?

    5
    0 Votes
    5 Posts
    795 Views
    jimpJ

    On modern pfSense installs, there are a number of ways. The uname data as already mentioned, the contents of /etc/platform, the presence of the pfSense pkg, and likely dozens/hundreds of other methods based on the presence of certain files around the filesystem specific to pfSense.

  • LDAP Auth subgroups

    1
    0 Votes
    1 Posts
    254 Views
    No one has replied
  • Monitoring performance

    2
    0 Votes
    2 Posts
    335 Views
    E

    The dashboard shows your CPU and memory usage. Watch your CPU usage when you run a bandwidth test.

    You can also go to the shell and run 'top' to see how much CPU is being used.

  • New to pfsense, what would I need for my home network?

    5
    0 Votes
    5 Posts
    1k Views
    M

    hello friends,

    if you are looking to setup PlayStation VPN then I have a complete guide on it. This is because with a virtual connection, not only are you a free gamer, but you can also stream endlessly. You are free to tap into massive nooks and corners of restricted content all around the world.

  • Allow only Viber connection, and block all other connection

    15
    0 Votes
    15 Posts
    8k Views
    A

    As of now, I think was able to achieve this firewall rule/s....what I did was allow the target devices to connect to Amazonaws.com IP Range, firewall alias URL's....so allowing connections to Viber.com, allowing connections to Amazonaws, then blocking everything else. The tricky part is Amazonaws got a couple of ASN.

    Thanks a lot for your help Stephen!

  • User Interfaces not responding.

    7
    0 Votes
    7 Posts
    928 Views
    T

    I haven't had a lock up in the past few days. I am leaving on vacation for a week. I will report when I get back.

  • Help

    4
    0 Votes
    4 Posts
    687 Views
    stephenw10S

    Hit the wrench top right from the firewall log page and it's an option there in 'Manage Firewall Log'.

    It's likely nothing to worry about though.

    Steve

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.