• pfSense and OpenVPN speeds

    25
    0 Votes
    25 Posts
    3k Views
    S

    @stephenw10 I agree. I think I did iperf-tests some months ago that looked much better than the scp/sftp-stuff. Sure, it has to be faster, but it was way better.

    I will repeat that asap.

  • Cron "Day of the Week" doesn't seems to follow UNIX standard

    1
    0 Votes
    1 Posts
    90 Views
    No one has replied
  • installing pfsense 2.7.2

    10
    0 Votes
    10 Posts
    733 Views
    patient0P

    @stephenw10 said in installing pfsense 2.7.2:

    Hmm, well that's interesting. I wouldn't have expected that to work at all. 🤔

    Me neither but maybe to do with a quirk of coreboot, if that device is flashed with it.

  • Dynamic DNS keeps using the old WAN IP

    5
    0 Votes
    5 Posts
    310 Views
    T

    @Gblenn said in Dynamic DNS keeps using the old WAN IP:

    @tomasenskede Log in to your Bahnhof account and request a public IP, or call their customer service. It will only take a few minutes...
    They need your MAC address.
    I assume you have the router they sent out, so you could clone the MAC from that and then restart the WAN interface on pfsense. Perhaps you already have a public IP, but it is locked to that MAC.

    Otherwise fill out this: https://bahnhof.se/privat/kundservice/bestall-publik-ip/

    Thanks! I didn't realize the issue with the private IP at first. In fact, I had asked Bahnhof earlier about updating the MAC address and was told it wasn’t necessary. However, it turns out it still needed to be updated.

    Now it's fixed and running smoothly.

    Appreciate the quick and great support, guys!

  • System defined alias - see all listed

    13
    0 Votes
    13 Posts
    362 Views
    M

    @stephenw10
    what? surely this is of the highest importance! 🤣

  • 0 Votes
    8 Posts
    450 Views
    GertjanG

    @1octet said in Amazon Prime Video issue -- resolved by restarting pfsense every few days.:

    I get the following error "prime video error code 7131".
    Is anybody else experiencing similar issue

    prime video error code 7131 is 'very' known.

    On the amazon support forum .... the question exists, and is never (?!) answered - have a look for yourself, I spend only 5 minutes over there.
    Some one said : It's a amazon error ! ..... and they don't know about it ? ( 😊 ) ?!!

    So, imho, knowing that pfSense 'out of the box', which means : no (like none !) settings changed, exception : the password, the error probably won't show up anymore.
    You've changed DNS settings ? That's a very known reason why people post here : stuff stops working well ^^ (It's always the DNS !)
    Adding pfBlockerng in the mix (and a load of DNSBL feeds) : yeah : 'errors' will show up all the time. That's normal. Check the Alert logs, and see if you need to white list some DNSBL (amazon) host name.

  • pfSense/ESXi route all VM via GRE TUNNEL

    19
    0 Votes
    19 Posts
    552 Views
    I

    @stephenw10

    oh my man, These silly mistakes is wasting my time.
    The gateway was being considered as offline, So I had to disable gateway monitoring. and it solved the problem.

    alt text

    Thank you so much

  • PF Sense / TP Link Router / Parental Control Issue

    2
    0 Votes
    2 Posts
    133 Views
    G

    @Justin7
    Yes well that will not work since you have your TPLink connected on the LAN port (as an AP only). The parental control function requires traffic to go out on Internet via it's firewall. This you can do whilst maintaining pfsense as the main firewall but it means double NATing...

    What type of control are you trying to enforce? If it's access to specific sites or applications you could take a look at AdGuard Home. Then you go back to using pfsense as the DHCP server and hand out the IP of AdGuard as your DNS. And change the TPLink into a simple AP... I'm sure you can use some of the access control functions still. Perhaps schedule wifi access??

    But in AdGuard you can set and block not just Ad's, malicious sites etc, but a whole range of applications as well. The App blocking is very simple to use with a nice UI and then the ability to set a schedule for the blocking.

    Then there is pfBlockerNG as a plugin for pfsense.

  • Update/backup dosnt work

    14
    0 Votes
    14 Posts
    881 Views
    T

    @Gertjan

    The "old" pfSense-CE-memstick-2.7.2-RELEASE-amd64.img.gz worked! I'm now up and running on my new hardware with a 10Gbps WAN connection... swoosh! 🚀

    Thanks for the quick and great support!

    Lesson learned: Always perform a clean barebone install using the legacy USB installer, then restore the backup, reconfigure the WAN/LAN NICs, reinstall packages, and restart.

  • Block VPN Connection

    13
    1 Votes
    13 Posts
    7k Views
    M

    @jonatremoteeyes

    Have you simply tried reaching out to xvpn support and ask them for a either a list of IPs they use or a CIDR block they own?

    https://xvpn.io/help-center/how-to-choose-the-right-vpn-server-location

    ###### If you have more specific needs, such as a server that is better suited for downloading content, please contact us or write to support@xvpn.io and we will provide you with a recommendation for a targeted solution.

  • Wireguard tunnel monitoring emails

    4
    0 Votes
    4 Posts
    287 Views
    stephenw10S

    I would look in notices.inc and gateways.inc for where the emails are triggered.

    That won't help with log errors from dpinger though

  • How to modify large firewall rule sets

    14
    0 Votes
    14 Posts
    586 Views
    stephenw10S

    If you have the ID you can just search the ruleset for it:

    [25.03-BETA][root@fw1.stevew.lan]/root: pfctl -vsr | grep 1736810441 pass in log quick on mvneta0 inet proto tcp from <LAN__NETWORK> to 208.123.73.69 flags S/SA keep state (if-bound) label "USER_RULE: Connections to ews" label "id:1736810441" ridentifier 1736810441

    Or if you have the ID you likely have the rule number like:
    Screenshot from 2025-03-31 22-45-14.png

    In which case you can use the rules view in Diag > pftop

  • Routing trafic back into the secondary gateway (unifi)

    5
    0 Votes
    5 Posts
    257 Views
    P

    @viragomann
    Thanks for your help. I got it working. It was another noob error. I was crating rules for the UDM LAN not the UDM GW... wonder why I couldn't reach the GW. ;)

    Thanks again.

  • What to do with Diagnostic Crash Report

    9
    0 Votes
    9 Posts
    466 Views
    stephenw10S

    Ah, yes indeed that could well have contributed at least. Still shouldn't have thrown an error though. 🤔

  • Does upgrade to a modern 10G NIC make sense !!??

    18
    0 Votes
    18 Posts
    1k Views
    L

    @Gblenn

    Yep TrueNas is using ZFS and a big ram cache, however the NVME-SSD should be ... fast enough to write 10G ... I think & hope. However I must admit that SSD's are not by far as fast as advertised if you are writing larger amounts of data ..

    It is a 4TB WD_BLACK SN850X not the worst ssd ....

  • Cannot Log in with LDAP even though LDAP Connection Works

    7
    0 Votes
    7 Posts
    2k Views
    O

    Thanks for the contributions, all. We ended up switching between authentication settings (from LDAP to local) and then back (from local to LDAP), and that seemed to fix the problem.

  • Bug? Changing wan dhcp to static causes this error

    11
    0 Votes
    11 Posts
    607 Views
    GPz1100G

    @stephenw10 Success. I only tested as far as error messages in the logs.

    It should be noted both earlier and later patches need to be applied in order. I was initially under the understanding the later just needs to be applied by itself.

    8286c27ca678dbada2d205f606e76fab48885f60

    f51505bf15e7af39c909d63356089d5e247cf781

  • Multiple unexpected login "beeps"...

    12
    0 Votes
    12 Posts
    596 Views
    stephenw10S

    You must have a firewall rule allowing it since all traffic inbound is blocked by default.

    So check the WAN firewall rules. If there's nothing there check for interface groups or floating rules.

    Post some screenshots if you're unsure.

    Edit: Ooops hit post after like 2hrs. 🙄

  • HELP! Webport 80 open!! PFSense login publicly accessible

    5
    0 Votes
    5 Posts
    264 Views
    I

    @patient0 Thanks for your help, believe me I looked and looked for a long time before I asked!

    Only when I found the rule, well when I deteted it did I recall making that booboo.

    Thanks again for the help! Very much appreciated!

  • This topic is deleted!

    1
    0 Votes
    1 Posts
    6 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.