• This topic is deleted!

    1
    0 Votes
    1 Posts
    5 Views
    No one has replied
  • PfSense 2.4.3-RELEASE hang/crash reboots - "Fatal trap 9:"

    17
    0 Votes
    17 Posts
    2k Views
    B

    Ok I am calling this fixed. I've got an uptime of 14 days after disabling AES/NI on this machine. Previously I couldn't make it past 4-5 days.

  • pfSense Setup and security

    9
    0 Votes
    9 Posts
    2k Views
  • Help with System requirements

    8
    0 Votes
    8 Posts
    1k Views
    stan-qazS

    @strike101 With that user count and speed the Netgate SG-1000 might be tempting.

    Product page
    https://www.netgate.com/solutions/pfsense/sg-1000.html

    Speed
    https://www.netgate.com/docs/pfsense/solutions/sg-1000/faq.html#what-should-my-speed-test-results-be

    Price @ $150
    https://store.netgate.com/SG-1000.aspx

  • Pfsense 2.4 transparent bridge

    2
    0 Votes
    2 Posts
    1k Views
    stephenw10S

    What do you have net.link.bridge.pfil_member set to?

    That needs to be set to 1 to filter traffic on the bridge member interfaces which it sounds like you're trying to do. And setting both to 1 is probably not required. Do have the bridge interface assigned even?

    Do you actually need a bridged setup? You can disable NAT without bridging but you still route.

    Steve

  • On boot getting stuck at "Starting DNS Resolver"

    Locked
    7
    0 Votes
    7 Posts
    4k Views
    stephenw10S

    Please don't reply to ancient threads unless there is a very good reason to. Locking this.

    Also those Windows/DOS commands would not help in the described pfSense DNS issue.

    Steve

  • Ubuntu 18.4 Server behind pfSense. Having trouble with DHCP ..

    2
    0 Votes
    2 Posts
    366 Views
    H

    there is not enough info to go on....

    Start by removing all VPN related configuration .... then reboot to be sure all routes are cleared.

    a)do you get an ip from pfsenses dhcp server ?
    b)can you ping from the client to pfsense?
    c)can you ping from the client to 8.8.8.8?
    d)can you ping from the client to google.com?

    If you manage to get 'd' working, start adding the VPN stuff back in

  • PfTop broken in 2.4.3?

    5
    0 Votes
    5 Posts
    622 Views
    K

    Solved by a clean install. Something must have gotten messed up over numerous upgrades.

  • Change date format

    4
    1 Votes
    4 Posts
    1k Views
    x2rlX

    @ivor said in Change date format:

    I'll see what can be done. Keep reporting things like these, thank you!

    Just to clarify, are you talking about forum? Or about pfSense?

    Pfsense you can change the format on here fine.
    His post was 7 days ago forum wasn't here than =D

  • Pfsense block only the internet on one single IP

    8
    0 Votes
    8 Posts
    652 Views
    pttP

    You're welcome

    glad you get it working

  • New PFsense Installation consumes 100% CPU

    11
    0 Votes
    11 Posts
    1k Views
    stephenw10S

    No worries. It's an interesting script but it's old and clearly needs some tweaks for a current pfSense version.

    All of your CPU time to create random PIDs seems extreme!  ;)

    Steve

  • MOVED: Can we use squidguard to define different rules based on mac id?

    Locked
    1
    0 Votes
    1 Posts
    255 Views
    No one has replied
  • PfSenSe firewall blockin google.com

    5
    0 Votes
    5 Posts
    494 Views
    KOMK

    Your rules are kind of a mess.

    Is this problem only happening for users on VLAN13, or is it everyone?

  • Squidquard doesn't block anything, what did I miss?

    3
    0 Votes
    3 Posts
    361 Views
    emammadovE

    Hi.

    Did you enable enable Transparent proxy and SSL filtering? Just in case follow the instructions in the following link.

    https://www.howtoforge.com/pfsense-squid-squidguard-traffic-shaping-tutorial

  • PFSense Training

    1
    0 Votes
    1 Posts
    299 Views
    No one has replied
  • HOWTO: Notifications with GMAIL SMTP

    7
    4 Votes
    7 Posts
    16k Views
    J

    I don't see how this is a bug when it clearly says

    The last SAVED values will be used, not necessarily the values entered here.

    Directly below the TEST button.

  • Monitor internet traffic in local network based on IP

    2
    0 Votes
    2 Posts
    232 Views
    GrimsonG

    https://forum.pfsense.org/index.php?board=62.0

  • Is Pfsense firewall apt for an ISO organisation

    4
    0 Votes
    4 Posts
    590 Views
    SammyWooS

    "only licensed…"  is an outdated view.  Plenty of corporations these use Linux in its many flavors to run their stuff, AS LONG AS there is a competent in-house IT staff.    "only licensed..." tells me, "if something goes wrong, there is somebody we can blame."

  • Using PFSense behind Juniper edge firewalls

    11
    0 Votes
    11 Posts
    1k Views
    johnpozJ

    A wan is going to be any interface that can be used to get to other networks.  You can nat or not nat to this wan connection.  As mentioned already you have an asymmetrical problem putting this "wan" network of pfsense where there are devices..

    If you want networks behind pfsense, and you want a "wan" network that will be used to get to networks not behind and directly attached to pfsense then this network should be a transit network..

    Thats fine if all of these networks all connected physically on the same switch, you just need to make sure you break that switch up correctly at layer 2 to provide isolation.

    Your going to run into asymmetrical problems as well if you just put all your networks behind pfsense on "lan" networks directly attached that use different gateway to get off their network other than pfsense.  You would have to do host routing on every single host, etc.

    Connect this pfsense to either your layer 3 or your edge with a transit network and correctly route..  Any network your going to put behind pfsense like this 192.168.100 should be isolated on their own layer 2 and use pfsense 192.168.100.x as their default gateway.

  • Programmatic User Certificate Registration

    2
    0 Votes
    2 Posts
    471 Views
    jimpJ

    There is no mechanism to do that automatically. You'd have to create a script to do it from scratch, using the certificate functions from /etc/inc/certs.inc and probably copying some code from the certificate management page.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.