• Issue about gateway Latency trouble on Backup CARP

    2
    0 Votes
    2 Posts
    345 Views
    H

    Looks like buffer bloat. I would recommend the Traffic Shaping forum. You could try enabling FairQ on your WAN interface and check the box on the child queue to enable Codel. This works well enough for most people. For now it gets more complicated quickly beyond this, but soon™ it may be as easy as a few check boxes to fix buffer bloat.

  • New to PFSense. Need Help ..

    11
    0 Votes
    11 Posts
    1k Views
    X

    i would at least unplug the cable modem for a few minutes or so.  You might need to call your ISP to make sure it is in bridge mode, sometimes they need to flag your account that it is in bridge mode.  You have to make sure your internet is working correctly before you go any further or you are just wasting your time.

  • Gateway switching

    1
    0 Votes
    1 Posts
    303 Views
    No one has replied
  • Save/restore rules/order via command line?

    2
    0 Votes
    2 Posts
    318 Views
    P

    You can just save (backup) the config. Then you can play/test changes and restore the saved config afterwards if your changes do not work out/are not required. The rules (and all other settings) are stored there.

    What are you wanting to achieve?

  • Span setup advice for maltrail test

    1
    0 Votes
    1 Posts
    725 Views
    No one has replied
  • Can't reset password on Redmine Website

    5
    0 Votes
    5 Posts
    699 Views
    jimpJ

    I reset your last name to "99" (sans quotes). Try it now.

  • Certificate Manager internal CA and certificate validity

    6
    0 Votes
    6 Posts
    736 Views
    johnpozJ

    Yeah I do not think there is a RFC stating you can not sign certs long - there are scenarios when you would for sure need to be able to do that..

    Lets say you need to issue certs for 3 years, but your CA expires in 2.. so now you have to redo your CA 2 years before it expires.. That would suck ;)  So you just make sure that you create your NEW ca with the same private key before the 2 year expires.

  • Found a bugfix, how to get it added to the wiki?

    15
    0 Votes
    15 Posts
    1k Views
    K

    Thanks, I appreciate it. If I get time to dig into it further, I'll do so.

  • Cross subnet access problem

    4
    0 Votes
    4 Posts
    584 Views
    S

    I actually solved it!

    I did plenty of steps, but in the end it worked out, I order them by relevance to this topic:

    Added a static routing into my TP LINK archer c7, for others http://forum.tp-link.com/showthread.php?79872-Can-t-ping-access-TL-WDR4300-from-other-subnet

    Changed the Proxmox bridges to be Intel E1000 instead of Virtio

    Changed the start up order of the pfSense VM

    Passed the CPU as host to the pfSense VM

    Now I will start playing around with the Firewalls  :)

  • Domain forwarding to mgmt port

    1
    0 Votes
    1 Posts
    265 Views
    No one has replied
  • PKG Manager VERY SLOW

    3
    0 Votes
    3 Posts
    1k Views
    A

    that appears to have done it, awesome!  THank you so much!  I would have never looked at that.

  • How To Remotely Access Router WebGUI ?

    17
    0 Votes
    17 Posts
    1k Views
    C

    Thanks @Marvosa

    I am going to try this idea.

  • VLAN on pfsense woes [Solved]

    8
    0 Votes
    8 Posts
    1k Views
    johnpozJ

    Your switch is causing slow traffic?  Yeah never seen such a thing other than duplex mismatch or lower speed..  You sure your not limiting traffic on the switch?  That is something you could do.. But then say iperf between pfsense and client through the switch gives you 850?

    Did you do that iperf test udp or tcp?

    I have been working with cisco switches and routers for years and years and years… Never seen such a thing.. What is the config you have on the ports?  Just post show run interface.. Then again we don't use EOL hardware that got off ebay ;)  But if your saying you are seeing full speed between the devices across the switch, but not to the internet that makes zero sense.

  • Nextcloud Deployment Possible for me? Issues = CGN, etc.

    1
    0 Votes
    1 Posts
    366 Views
    No one has replied
  • Adding IPv4 address to pppoe0 failed(IGNORING for now.

    7
    0 Votes
    7 Posts
    805 Views
    S

    Hi,

    I am revisiting this post as I am back to my home location after being away for nearly 2 months.  ok, so I have swapped the draytek 2860 for the PFsense box again (with the draytek 130 vdsl modem).

    Again, draytek 2860 works fine, but pfsense has the same errors even with IPv6 disabled.

    I will contact the ISP again to see if I can make them work

  • SG-2440 reset, disk usage and OpenVPN users

    5
    0 Votes
    5 Posts
    735 Views
    M

    Odd. Perhaps now would be a good time for you to take a full backup, and reinstall from scratch, then restore from your backup. Cos something sounds a little messed up..!

  • Moving to an ESXI host, public services not available.

    1
    0 Votes
    1 Posts
    277 Views
    No one has replied
  • PPP and pfSense in BRIDGED mode

    1
    0 Votes
    1 Posts
    442 Views
    No one has replied
  • Pulse Secure?

    2
    0 Votes
    2 Posts
    612 Views
    johnpozJ

    Pulse Secure is a proprietary ssl based vpn, no pfsense would not connect to it…

  • See pppoe uptime from CLI?

    3
    0 Votes
    3 Posts
    488 Views
    ?

    @jimp:

    It looks in the PPP log and finds the connect time and then calculates.

    https://github.com/pfsense/pfsense/blob/master/src/etc/inc/pfsense-utils.inc#L1472

    That's a clever way to do it!
    Thanks for the pointer.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.