• How to turn off dynamic ARP on LAN? and use static ARP table

    Locked
    14
    0 Votes
    14 Posts
    13k Views
    jimpJ

    Yeah I try not to judge only on release time, especially given how long pfSense has historically gone between releases :-)

    You might try adding a bounty to see if there is any interest in someone putting together a package there.

  • Major webConfigurator problem

    Locked
    7
    0 Votes
    7 Posts
    3k Views
    jimpJ

    And to make it even easier, you can use gitsync to pull the code in without grabbing files from github by hand.

    http://doc.pfsense.org/index.php/Updating_pfSense_code_between_snapshots

  • Help pls: No PPPoE DialIn possible … Errors in LOG

    Locked
    3
    0 Votes
    3 Posts
    1k Views
    E

    For those who were interested: Changing the <ports>setting inside the XML to the proper interface was the solution (as i assumed before).</ports>

  • Watchdog Timer

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    stephenw10S

    What happened? What did you try?
    I'd be surprised if FitPC had implemented some other watchdog, why would they when there is already one built into the chipset?

    Steve

  • How to use openDNS for web filtering if I already have internal DNS?

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    A

    You have to configure the external DNS IPs from Open DNS on every computer. You can do it using DHCP configuration on those clients.

  • Monitor LAN IP's?

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    B

    No, never heard of either, I will look into them, thanks for the tip!

  • Is Queue Overload a common problem in Traffic Shaping?

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    J

    @torontob:

    Hi everyone,

    While back, I setup traffic shaping on a router to allow dedicated Bandwidth to Phones. After a month of being in service, the pfsense router started slugging. The Data subnet would not allow any data to go through because there was a huge Queue for traffic shaping. This happened over time and not all a sudden which makes me believe there was something wrong with my config and the environment. So, I had to restart and get rid of the traffic shapper. Now, I need to put Traffic Shaping in again but I don't want to face the same problem.

    If anyone has experience with this please guide me.

    Thanks

    I am facing the same issue. Any help in this regard would be appreciated, thanks! :)

  • Issue with 172.n.n.n networks (Private Addy Space)

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    P

    Hi guys. Thanks for the replies. After stepping away for a while and coming back I made a discovery. I ran packet traces on both the trust and untrust side. On the untrust I immediately noticed something. The 172.30.2.10 address was being seen on the outside. I jumped back into my NAT settings and noticed I "fat-fingered" an ip address.

    I can't tell you how many times I checked these settings, but apparently I glossed over it repeatedly. Sorry about that. Thanks again for the replies!

  • Internal website gets DNS rebind attack

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    stephenw10S

    Hmm, OK.
    Because you are not using pfSense for DNS things get confusing.

    I assume you can access the server from outside your network? And you are using URLs to do so?

    You may have to restart the pfSense box before the NAT reflection starts to operate or reset the state table in Diagnostics: States: Reset States.

    Steve

  • Problem with LDAP and User rights

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    N

    myxir,

    As for your first problem I'm not sure, I created a test user and assigned him the admin group and was able to login to the admin page just fine. Maybe the test user is disabled?

    As for your second problem: When using LDAP I've found that you cannot control or assign groups rights within pfSense. You are using LDAP against your DC (im assuming and that you are using RADIUS) and therefore your DC is going to take care of any permissions. If you want your pfSense to manage the users/groups you will need to manually create each user/group. I may be wrong but this is what I've found.

    Overall what is your goal? Are you simply trying to setup VPN and authenticate users against Active Directory?

  • Basic networking problem.. need some thoughts

    Locked
    4
    0 Votes
    4 Posts
    1k Views
    N

    If you're using ESXi you will need to create a new virtual NIC and assign the physical WAN NIC to a new virtual NIC. Once done you will then want to add another NIC to the VM, and select the WAN NIC.

    Hope that makes sense

  • EasyRule not working on 2.1

    Locked
    7
    0 Votes
    7 Posts
    3k Views
    C

    that did it! thank you again

  • Logging Traffic with Rules

    Locked
    4
    0 Votes
    4 Posts
    1k Views
    johnpozJ

    Setup squid and run a proxy, this will give you the info you want.

    Lightsquid is the package you want;
    High perfomance web proxy report. Requires squid HTTP proxy.

  • Status of FreeBSD-pf "sticky-address" issue in pfsense

    Locked
    3
    0 Votes
    3 Posts
    1k Views
    C

    It's ok with multi-WAN, not ok with server load balancer.

  • PfSense vs prosumer routers for a small business office

    Locked
    12
    0 Votes
    12 Posts
    15k Views
    L

    I also advice you to look for Mikrotik solutions - it's proprietary linux-based routers, but they are damn good, and level6 Mikrotik software license are free for their own hardware. Although, again, I have to tell you, that both Mikrotik and pfSense will be overkill in your case - netgear 3700v2 will cover all your needs until you will become something like to Google!  ::)

  • Pfsense + ntp

    Locked
    7
    0 Votes
    7 Posts
    8k Views
    W

    @krisken:

    Well i did everthing…but nothing helped...

    Its unlikely you have done everything so please elaborate what you have done and what you expect to happen that isn't happening.

    You have made no mention of configuring an NTP client. Have you done so? The configuration information you have provided show ntp server enabled on the WEEPEE01 interface. Therefore you need a firewall rule on the WEEPEE01 interface allowing access to UDP port 123 from whatever clients you want to allow. Then you need to configure ntp on the client(s) to use the pfSense box (IP address of the pfSense WEEPEE01 interface) as its NTP server. You might need to reboot the client. Client NTPs sometimes report what they have done. Have you checked such logs? ntpd on one of my Linux systems regularly writes records like

    Dec  8 06:20:51 mythbox ntpd[7413]: synchronized to 192.168.211.173, stratum 4
    Dec  8 06:27:24 mythbox ntpd[7413]: time reset +2.452386 s

    in /var/log/syslog

    Have you checked the pfSense firewall log to see if ntp client attempts to access the server have been blocked?

    Unfortunately my pfSense ntpd log remains empty (clog /var/log/ntpd.log) after some days of operation - not even a ntpd startup message.

  • Multiwan ip for data center.

    Locked
    8
    0 Votes
    8 Posts
    2k Views
    stephenw10S

    Yep, just like he did it!  ;)
    That's a nice video tutorial.

    Steve

  • Problem in NanoBsd Alix

    Locked
    10
    0 Votes
    10 Posts
    4k Views
    K

    thanks friend
    i found the answer ultimately.
    sorry i was being more lazy :(

    http://doc.pfsense.org/index.php/Installing_pfSense

    Thanks
    kalu

  • Edits to /etc/sysctl.conf doesn't load on reboot.

    Locked
    3
    0 Votes
    3 Posts
    5k Views
    F

    Thank You…that worked.
    I knew I was missing something. :)

    Thanks again.

  • How can I disable pfsense start-up CLI menu in SSH session?

    Locked
    4
    0 Votes
    4 Posts
    10k Views
    M

    Then you can edit first posts subject field with [SOLVED]

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.