• Strange case of the disappearing anti-lockout rule

    5
    0 Votes
    5 Posts
    818 Views
    johnpozJ

    once you rules load correctly it should be there. 5,000,000 is a bit drastic.. 400,000 should be more than enough and is going to be the new default.

    You should always be able to cycle if antilock is enabled disabled under

    System / Advanced / Admin Access

  • Automatic VPN for remote management with dynamic IP

    1
    0 Votes
    1 Posts
    235 Views
    No one has replied
  • What should I disable in bios with new pfsense build?

    3
    0 Votes
    3 Posts
    445 Views
    GrimsonG

    If your device has integrated graphics and a BIOS setting to specify how much system memory will be dedicated to the graphic card you can set this to the smallest available amount.

  • Gateway - Alarm Latency (dpinger)

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Trying to configure Vlans, and can not chose from any parent interfaces

    2
    0 Votes
    2 Posts
    201 Views
    johnpozJ

    you using xn interfaces in Xen?  I don't think they support vlans..

  • 100baseTX on Gigabit NIC, why?

    9
    0 Votes
    9 Posts
    1k Views
    jahonixJ

    While Ciscos are great (probably SG300 or 350 series?) they aren't cheap.
    Some users here like these D-Link DGS-1100-08 GBit switches.
    Compared to the Cisco SG300/350 they are smart switches "only" and not fully managed.

  • File transfer problem

    10
    0 Votes
    10 Posts
    2k Views
    Z

    In System->Advanced->Networking, There is a section, which name is Network Interfaces.There are five options,  Device polling,  Hardware Checksum Offloading,  Hardware TCP Segmentation Offloading,  Hardware Large Receive Offloading and  ARP Handling. All of them are not checked.

    Yes all are blocks !

  • Pfsense and huawei ME909s-120

    9
    0 Votes
    9 Posts
    1k Views
    T

    Of course I can do cu command when LTE isn't connected or pfsense is trying to reconnect (moment when log screaming 'the modem is not responding to AT commands' then I can do cu on cuaU0.0).

    Edit or resave the ppp setup do nothing. Only solution is reboot pfsense… Very strange because a lot of people posts this config as working.

    Tommorow I will try downgrade pfsense to 3.5 version.

    Martin

  • Change log location

    4
    0 Votes
    4 Posts
    727 Views
    johnpozJ

    Use of syslog has been long standing best practice when you need long term storage of logs from pretty much any sort of device..

    What good is the logs in your SSD, that is in the device when the device shits the bed or the disk shits the bed and you loose your logs..  If the logs are so important that you want them and lots of them then send them to your syslog server, or multiples of them.  All of which are more likely to have redundancy and backup of the logs, etc.

    So yes the correct solution to the question - I need lots of LOGS.. Well then send them to your syslog server(s) that have lots of space ;)

  • PfSense dropping https sessions

    1
    0 Votes
    1 Posts
    438 Views
    No one has replied
  • Is UEFI Causing my issues with pfsense install??

    17
    0 Votes
    17 Posts
    950 Views
    L

    Sounds good. I'll forget about them and disable them in the bios. I just figured it would be nice to utilize the onboard ones and then have the pcie slot open for future expansion of who knows what or to use pcie NIC as a backup when/if the realtek ones died.

  • Need advanced technical information - Gold member?

    14
    0 Votes
    14 Posts
    1k Views
    fabricioguzzyF

    Hi Stephenw10,
    Sure thing. Will do it for sure!

    Appreciate the message.

    Fabricio.

  • [Solved] Requests Timing Out Unbound DNS Resolver

    12
    0 Votes
    12 Posts
    4k Views
    DaReaLDeviLD

    Thank you for sharing. Had the same problem with a very slow dns and changing the default.

    But in the dns custom config I put:

    server: include: /var/unbound/pfb_dnsbl.*conf
    server: private-domain: "plex.direct"

    and I don't get the plex server running out of the network like before without dnsbl… any advice?

  • Pfsense on hyperv - driver tunables

    1
    0 Votes
    1 Posts
    221 Views
    No one has replied
  • Setup virgin media router as gateway

    6
    0 Votes
    6 Posts
    2k Views
    NeoDudeN

    I'm on Virgin in the UK and can confirm, with the SuperHub in modem mode, you'll get a Public IP address on the WAN interface on PfSense. The 192.168.100.1 address can also be used to look at the modem stats and to toggle modem mode back off again should you wish.

  • IPv6 setup

    7
    0 Votes
    7 Posts
    837 Views
    V

    Thanks! It looks like "Request only an ipv6 prefix" solved the problem.

  • Higher than expected cpu utilization with openvpn on RG-2440…

    4
    0 Votes
    4 Posts
    1k Views
    T

    I see that OpenVPN performance issues have been discussed a lot here (and elsewhere on the internet).

    From what I've read:

    OpenVPN is still single threaded, so single core CPU performance only.  Netgate home/business equipment is not up to the task for gigabit speeds.  One workaround is to create multiple VPN tunnels and somehow combine them, but this apparently comes with its own problems.

    OpenVPN is partway userland and partway kernel.  This is why context switching is a thing.  One question about this – as I watched top, I could see the OpenVPN process jumping back and forth between CPU0 to CPU1.  Is this required for userland<->kernel switching?  Wouldn't there be a performance boost setting the affinity to a single core?

    IPSec seems to be recommended as an alternative… has anyone done this with pfsense?

  • Potential gotchas restoring from VM to RG-2440?

    3
    0 Votes
    3 Posts
    419 Views
    T

    Thanks Stephenw10.

    I checked the packages and indeed all of those were not installed, except for AutoConfigBackup.

  • Filter Reload Failure Notices

    2
    0 Votes
    2 Posts
    2k Views
    DerelictD

    https://forum.pfsense.org/index.php?topic=146036.0

  • The pfsense slows down ATT fiber

    2
    0 Votes
    2 Posts
    387 Views
    SammyWooS

    U listed lots of stuff except the most important piece of information, what is the CPU LOAD?

    For no compromise, full gigabit, an i3-class CPU is typically recommended

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.