• WebServer behind PFSsense

    23
    0 Votes
    23 Posts
    3k Views
    G

    Without more comments, I'm right if I'm saying, this should be a gateway issue with this Static IP?
    I get connected (and Successfully updated PFSense version), but can't get online other machines connected over LAN <-> WAN (inside - outside)

    ![Screen Shot 2018-03-29 at 17.09.23.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.09.23.png)
    ![Screen Shot 2018-03-29 at 17.09.23.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.09.23.png_thumb)
    ![Screen Shot 2018-03-29 at 17.12.52.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.12.52.png)
    ![Screen Shot 2018-03-29 at 17.12.52.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.12.52.png_thumb)
    ![Screen Shot 2018-03-29 at 17.13.31.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.13.31.png)
    ![Screen Shot 2018-03-29 at 17.13.31.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.13.31.png_thumb)
    ![Screen Shot 2018-03-29 at 17.14.21.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.14.21.png)
    ![Screen Shot 2018-03-29 at 17.14.21.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.14.21.png_thumb)
    ![Screen Shot 2018-03-29 at 17.15.39.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.15.39.png)
    ![Screen Shot 2018-03-29 at 17.15.39.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.15.39.png_thumb)
    ![Screen Shot 2018-03-29 at 17.16.44.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.16.44.png)
    ![Screen Shot 2018-03-29 at 17.16.44.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.16.44.png_thumb)
    ![Screen Shot 2018-03-29 at 17.18.16.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.18.16.png)
    ![Screen Shot 2018-03-29 at 17.18.16.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.18.16.png_thumb)
    ![Screen Shot 2018-03-29 at 17.20.03.png](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.20.03.png)
    ![Screen Shot 2018-03-29 at 17.20.03.png_thumb](/public/imported_attachments/1/Screen Shot 2018-03-29 at 17.20.03.png_thumb)

  • MOVED: pfSense 2.4.2-RELEASE-p1

    Locked
    1
    0 Votes
    1 Posts
    229 Views
    No one has replied
  • Windows Update don't pass

    5
    0 Votes
    5 Posts
    3k Views
    M

    Hello Harvy66
    did the same for my net: WSUS and SCCM local, via GP distribute the addresses and get local full speed and offload the WAN line at daytime for user stuff. Afair: "one ring to bind them all"
    As alternative: you could use squid as transparent proxy and there's a manual esp. for the WSUS case to offload the WAN line (problem with the lot of IPs/subfolders).

    Cheers
    Michael

  • Kernel: pid 111111 (php), uid 0: exited on signal 11 (core dumped)

    3
    0 Votes
    3 Posts
    1k Views
    jimpJ

    Either the hardware is bad, the installation is bad, or some combination of the two.

    Take a backup ASAP, run hardware diagnostics, and then reinstall with a current version if the diagnostics pass.

  • Odd tcp error in syslog

    3
    0 Votes
    3 Posts
    458 Views
    K

    [2.4.2-RELEASE][admin@pfSense.geek.local]/root: pfctl -vvsr | grep -A3 1000000103
    @5(1000000103) block drop in log inet all label "Default deny rule IPv4"
      [ Evaluations: 666223    Packets: 6750      Bytes: 588103      States: 0    ]
      [ Inserted: pid 15505 State Creations: 0    ]
    @6(1000000104) block drop out log inet all label "Default deny rule IPv4"

  • MOVED: Error - "There were error(s) loading the rules"

    Locked
    1
    0 Votes
    1 Posts
    226 Views
    No one has replied
  • MOVED: SSL CERTIFICATE

    Locked
    1
    0 Votes
    1 Posts
    252 Views
    No one has replied
  • LDAP SSL not working after upgrade to 2.4

    7
    0 Votes
    7 Posts
    1k Views
    jimpJ

    Did you also try setting the Peer Certificate Authority for the LDAP server to Global Root CA List?

  • Confused about LAN 1+2\. Ok to bridge or not?

    9
    0 Votes
    9 Posts
    899 Views
    johnpozJ

    As you get a bit more advanced, your prob going to want to do vlans on your wireless networks and even wired networks, etc.  In that case get a vlan capable switch and your AP.. you would then be able to leverage any interfaces in pfsense as other networks either via physical or vlans, etc.

    Network interfaces make really poor switch ports..  If your at a point where your thinking - oh I can bridge one of my interfaces on my router to use as a switch port..  Your going at the problem the wrong way - clearly you need another switch or higher density switch at that point ;)

    Like saying hey I need to drive this nail in to that piece of wood..  Oh shit my hammer is on the other side of the room - let me just use this screwdriver I have to hammer it in.. Its got a big handle on it ;)  I will just hold it by the shaft and swing it like a hammer.  While it might get the job done - its not the proper tool for the job..  Its not really designed to do that..  Your prob going to miss the nail and slice up your hand, etc. etc..

  • Trying to setup L2tp server on Pfsense box behind ISP ONT

    10
    0 Votes
    10 Posts
    1k Views
    C

    Ok I figured it out. Indeed the problem was a routing issue. I

    I first added a route in my VPN Client software(Draytek Smart VPN client) andnoted that it worked . I could have connected to resources behind the Pfsense box.

    Since that worked I furgured that I'd try to reconfigure the  VPN Server. I put the IP address of the VPN server withe the same network as the LAN( 192.168.12.2). That did the trick.

    Thanks for your support.

  • Issues with school Chromebook and Sophos Web Gateway

    7
    0 Votes
    7 Posts
    852 Views
    A

    It only happens to Google Docs when the Sophos Web Agent is running.  This happens on the Chromebook itself, or when the kids log into the Chrome Browser with their school accounts.

    As far as using wireshark to capture packets, should I run ChromeOS in a VM? How do I get Wireshark to just capture the packets from the Chrome Browser or ChromeOS?

  • Same IP group in multiple categories blacklist in squidguard (help)

    4
    0 Votes
    4 Posts
    667 Views
    R

    help please :-[

  • VLAN question

    6
    0 Votes
    6 Posts
    831 Views
    jahonixJ

    @slimypizza:

    I removed the TP Link smart switch and replaced it with the Cisco SG200-08.  I get the same results as before.

    That's as expected.
    Rules apply where traffic enters into an interface/"the pfSense box".
    On your VLAN90 rules tab you control where traffic from VLAN90 host may go to - NOT how they can be accessed.
    Ruling traffic from LAN to VLAN90 is controlled on the LAN rules tab. Only (except for floating rules).

    Any yes, this particular TP-Link switch is a bad choice. Others perform as expected (I have multiple TL-SG3210 but prefer Cisco SG300 or SG350 now.)

    Some users seem quite happy with D-Link DGS-1100-08 "$30 for an 8-port D-Link DGS-1100-08 would have been better money spent."

  • Problem: Block HTTPS websites

    4
    0 Votes
    4 Posts
    634 Views
    M

    Use PfBlockerNG to blackhole the DNS for sites do is protocol agnostic.  You just need to find the right block list to feed it.

  • Where is sudoers?

    5
    0 Votes
    5 Posts
    4k Views
    jimpJ

    Do not use visudo. Use the GUI, System > sudo

  • Squid Transparent Proxy in Linux + pfSense Firewall (Help)

    4
    0 Votes
    4 Posts
    2k Views
    D

    Can someone help me ?

    Regards,
    Dimostin

  • Freepbx pfsense lag after some time

    1
    0 Votes
    1 Posts
    319 Views
    No one has replied
  • Need advice i am upgrading my pfsense nics

    2
    0 Votes
    2 Posts
    385 Views
    GrimsonG

    Oh you are the first one ever to ask this question … NOT.

    Seriously, that's a question that comes up quite regular, so go and search for it.

  • How to Generate & Download SARG Report?

    1
    0 Votes
    1 Posts
    236 Views
    No one has replied
  • Client VPN connection not able to resolve

    1
    0 Votes
    1 Posts
    354 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.