• Monthly logging statement

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    D
    Hrmm, I installed BandwidthD so i'll see if that does what I need it to do.
  • Pfsense freeze after some hours

    Locked
    2
    0 Votes
    2 Posts
    3k Views
    GruensFroeschliG
    http://forum.pfsense.org/index.php/topic,7001.0.html
  • Worm and Network Storm Detection/Prevention

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    N
    Hi snort/untangle will help you. cheers,
  • Firewall Web Console Rules

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Can pfsense handle 2 different lans

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    GruensFroeschliG
    What device is handling the T1 connection? pfSense isnt able to terminate the T1 connection. But there are no problems for pfSense to handle multiple WANs. http://forum.pfsense.org/index.php/topic,7001.0.html
  • Need to isntall Linux compatibility package –help

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    V
    Here's how I did it: ########################################################################################## follow the guide on how to set up a build environment for pfsense (on the wiki) but before you do a ./cvsup_current, you need to modify the pfsense.6 kernel config file to enable linux compatability in the kernel. pfSense.6 is in tools/builder_scripts/conf. add an options line for COMPAT_LINUX and while you are at it, add any other stuff you want like NETSMB, SMBFS etc go ahead with the cvsup_current step now and the freesbie scripts will build you your pfSense kernel with compat support. You still need to add the linux libraries to pfsense. For this, you have to go to /usr/ports/emulators/linux_base-fc4 and do a make install, then move the /compat folder that is created into your pfSense file system for inclusion on the CD Hope that helps, Craig ##########################################################################################
  • VS commercial

    Locked
    8
    0 Votes
    8 Posts
    3k Views
    C
    Documentation: wiki style http://doc.pfsense.org/index.php/Tutorials http://doc.pfsense.org/ forum http://forum.pfsense.org/index.php knowledgebase http://centipedenetworks.com/support/index.php?_m=knowledgebase&_a=view&parentcategoryid=1&pcid=0&nav=0
  • PPPoA using DrayTek Vigor 110\. Help finding a US dealer.

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    J
    Qwest DSL supports PPPoE at most, if not all locations. So you should try using that.
  • MOVED: Help me Squid Not support Static IP Address

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • 0 Votes
    5 Posts
    3k Views
    ?
    This conversation has been had already in the forums, please use the search function.
  • Alternatives to PPPOA?

    Locked
    25
    0 Votes
    25 Posts
    21k Views
    B
    After 3 days of messing around with various ways to work around the problem of pfSense not being able to work with a PPPoA QWest ADSL line I hunted down the tech support for DrayTek in the US and talked to the guy about the Vigor 110. It really sounds like the right device. It is an ADSL modem and PPPoE/PPPoA bridge. It lets the ethernet device (my pfSense WAN interface in this case) pass authentication information to it in PPPoE and it re-encapsulates the information in PPPoA and sends it up to the DSLAM. From then on the ethernet device is directly bridged to the ADSL line and gets the public IP address by DHCP. The problem now is that the one place I found in the U.S. that sells them wants a minimum order of 1000 pieces. About 999 more than I have a need for right now. Has anyone found a U.S. source for these? Thanks, Bill
  • ipfw: install_state: Too many dynamic rules

    Locked
    3
    0 Votes
    3 Posts
    4k Views
    H
    @nocer: You're missing what version your running so I checked on my 1.3-AA, but it seems that those are not exist anymore…I only found below. sysctl net.inet.ip.fw.curr_dyn_buckets=256 sysctl: unknown oid 'net.inet.ip.fw.curr_dyn_buckets' sysctl net.inet.ip.fw.dyn_buckets=2048 sysctl: unknown oid 'net.inet.ip.fw.dyn_buckets' sysctl -a|grep bucket net.inet.tcp.hostcache.bucketlimit: 30 net.inet.tcp.syncache.bucketlimit: 30 Are those still exist in 1.2* ? Then how about to put those into /boot/loader.conf, or very end of /etc/rc ?? cheers, Thanks for your help , my pfsense version is 1.2.1 rc3. If you want to see sysctl net.inet.ip.fw.dyn_buckets , you need use the captive portal feature. I cannot active the change of value by(set in shell, /boot/loader.conf /etc/rc)
  • Newbie question, odd behavior

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    N
    Ok,  so I reconfigured the network so that the test PC is connected DIRECTLY to the LAN port on the firewall.  When I turn off "Enable filtering bridge" everything works.  At this point my assumption is simply that I have not configured my rules correctly. Is there any guide for basic rules and how to set them up?  To start with, how can I make basic rules for everything OPEN?
  • Need some advice on RTSP and firewall rules?

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    S
    Changing the ports from 6970/udp - 9999/udp did the trick…. dont ask me why.... ??? it may be an issue with Nokias Realplayer...
  • How to Donate?

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    C
    PayPal is really the only way to donate money right now. You don't need a Paypal account though, you can use a credit card through paypal without having an account. Just click the Donate button here: http://www.pfsense.org/donate.html and you can proceed to donate with a credit card without signing up for a PayPal account.
  • Feedback on security topic - IPSEC to be exact

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • FreeBSD-SA-08:09.icmp6: Remote kernel panics on IPv6 connections

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Vlan and spoofmac

    Locked
    10
    0 Votes
    10 Posts
    4k Views
    H
    @nocer: Okay, Really simple way: Why don't you try adding some lines for static arp or ifconfig in the very end of /etc/rc or equivalent rc scripts? That helps assign your desired MAC every boot. Thanx,  I use the simple way. But I hope to get a official method.
  • Internet not working on client machine

    Locked
    3
    0 Votes
    3 Posts
    1k Views
    K
    Is your WAN DHCP or Static?  If Static did you put the correct CIDR for the subnet?
  • 192.168.0.0 not working..

    Locked
    10
    0 Votes
    10 Posts
    5k Views
    GruensFroeschliG
    Traffic is filtered inbound on an interface. If you test connectivity with a ping you have to allow the ICMP protocol. The only reason why you're getting an answer on "some" interfaces at all, is probably because the anti-lockout-rule is enabled. Add a rule on the LAN on top that allows the prtocol ICMP and it should work. Also you should move the IP range of your DMZ_10. 11.x.x.x isnt an allowed RFC1918 range. allowed ranges are: 192.168.0.0/16  - (192.168.0.0 to 192.168.255.255) 172.16.0.0/12    - (172.16.0.0 to 172.31.255.255) 10.0.0.0/8        - (10.0.0.0 to 10.255.255.255)
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.