• pfsense openvpn status

    3
    0 Votes
    3 Posts
    153 Views
    GertjanG

    @26289 said in pfsense openvpn status:

    Any advice on how to fix this?

    tell use what you found here :

    0a77966c-1f14-4b59-8563-631fd0bbc741-image.png

    the log messages always tell you when things go 'wrong'.

  • Day of week not accepted on Cron package

    8
    0 Votes
    8 Posts
    581 Views
    patient0P

    @Gertjan said in Day of week not accepted on Cron package:

    would work fine for some, not most of us ^^

    I agree but that is what cron natively supports.

  • 0 Votes
    22 Posts
    1k Views
    stephenw10S

    @comet424 said in my openvpn site to site i cant seem to ping or access other site doesnt stay stable:

    it always defaults to 137

    It does that if you click on the state count on the rule to reach the states screen. But if you just go to Diag > States from the menu it should not have anything. If it does I'd check you don't have some auto-fill enabled that's adding it in the browser.

    But I don't see any pings in those tables. What we want to see is the pings states created by a failing ping. So start a continuous (or very long!) ping sources from the camera interface address then check the state table at each pfSense to see what it's doing.

  • Is it normal to log this traffic?

    15
    0 Votes
    15 Posts
    441 Views
    S

    @marchand-guy I would say most firewalls have a deny by default setup. However most/many software firewalls have a rule to allow their own subnet. Windows for instance accounts for that by defining different rules for public or private marked networks.

  • Use mail.php send mail but no subject.

    3
    0 Votes
    3 Posts
    141 Views
    A

    @patient0
    Ohh.
    I got it.Thanks a lot.

  • VLANS and Unmanaged Switches

    6
    0 Votes
    6 Posts
    350 Views
    M

    @joseb as @marcg pointed out, it depends.

    If the unmanaged switch is connected to a managed switch access port configured to pass only traffic for one specific vlan the unmanaged switch should continue to pass that traffic down to it’s connected nodes and any traffic coming back from those nodes via the unmanaged switch will get tagged by the managed switch on the way to wherever they’re going.

    This should be true whether or not the unmanaged switch strips tags or not. But you’ll only get traffic to and from the one vlan you configured at the managed switch port for all of your unmanaged switch. No different than plugging your computer into the managed switch port.

    @marcg has a point: managed switches can be had brand new, cheaply. I use Netgear gs308ep managed switches and they work well. And I don’t have to worry about the distinction. I send a trunk line down to my access switches and then set the ports up as access ports for the specific vlans I want for each endpoint or a trunk for a Wi-Fi access point.

  • Web Traffic Reporting Question

    6
    0 Votes
    6 Posts
    180 Views
    M

    @ngr2001 said in Web Traffic Reporting Question:

    Perhaps this could be a feature request for PFSense ?

    Reply

    You could install it their way with an appropriate license key that will give you the features you want.

    https://www.ntop.org/guides/ntopng/third_party_integrations/pfsense.html

  • Restore config - problem interface assignment

    9
    0 Votes
    9 Posts
    220 Views
    D

    @Gertjan

    It works!

    You need to turn on the new machine and check in which order the network cards are recognized.
    You edit the backup file of the old machine with the names of the interfaces in the right order you want and then perform the restore.

  • No IP in WAN with bridge

    5
    0 Votes
    5 Posts
    302 Views
    C

    Issue was the isp router modem combo, bridge mode was trying to give private ip after initially assigning public ip. It would drop the public and then assign a private ip. I reset the modem to factory and re applied bridge mode after and seems to be wiring fine now.

  • pfSense and OpenVPN speeds

    25
    0 Votes
    25 Posts
    3k Views
    S

    @stephenw10 I agree. I think I did iperf-tests some months ago that looked much better than the scp/sftp-stuff. Sure, it has to be faster, but it was way better.

    I will repeat that asap.

  • Cron "Day of the Week" doesn't seems to follow UNIX standard

    1
    0 Votes
    1 Posts
    89 Views
    No one has replied
  • installing pfsense 2.7.2

    10
    0 Votes
    10 Posts
    716 Views
    patient0P

    @stephenw10 said in installing pfsense 2.7.2:

    Hmm, well that's interesting. I wouldn't have expected that to work at all. 🤔

    Me neither but maybe to do with a quirk of coreboot, if that device is flashed with it.

  • Dynamic DNS keeps using the old WAN IP

    5
    0 Votes
    5 Posts
    304 Views
    T

    @Gblenn said in Dynamic DNS keeps using the old WAN IP:

    @tomasenskede Log in to your Bahnhof account and request a public IP, or call their customer service. It will only take a few minutes...
    They need your MAC address.
    I assume you have the router they sent out, so you could clone the MAC from that and then restart the WAN interface on pfsense. Perhaps you already have a public IP, but it is locked to that MAC.

    Otherwise fill out this: https://bahnhof.se/privat/kundservice/bestall-publik-ip/

    Thanks! I didn't realize the issue with the private IP at first. In fact, I had asked Bahnhof earlier about updating the MAC address and was told it wasn’t necessary. However, it turns out it still needed to be updated.

    Now it's fixed and running smoothly.

    Appreciate the quick and great support, guys!

  • System defined alias - see all listed

    13
    0 Votes
    13 Posts
    350 Views
    M

    @stephenw10
    what? surely this is of the highest importance! 🤣

  • 0 Votes
    8 Posts
    441 Views
    GertjanG

    @1octet said in Amazon Prime Video issue -- resolved by restarting pfsense every few days.:

    I get the following error "prime video error code 7131".
    Is anybody else experiencing similar issue

    prime video error code 7131 is 'very' known.

    On the amazon support forum .... the question exists, and is never (?!) answered - have a look for yourself, I spend only 5 minutes over there.
    Some one said : It's a amazon error ! ..... and they don't know about it ? ( 😊 ) ?!!

    So, imho, knowing that pfSense 'out of the box', which means : no (like none !) settings changed, exception : the password, the error probably won't show up anymore.
    You've changed DNS settings ? That's a very known reason why people post here : stuff stops working well ^^ (It's always the DNS !)
    Adding pfBlockerng in the mix (and a load of DNSBL feeds) : yeah : 'errors' will show up all the time. That's normal. Check the Alert logs, and see if you need to white list some DNSBL (amazon) host name.

  • pfSense/ESXi route all VM via GRE TUNNEL

    19
    0 Votes
    19 Posts
    544 Views
    I

    @stephenw10

    oh my man, These silly mistakes is wasting my time.
    The gateway was being considered as offline, So I had to disable gateway monitoring. and it solved the problem.

    alt text

    Thank you so much

  • PF Sense / TP Link Router / Parental Control Issue

    2
    0 Votes
    2 Posts
    132 Views
    G

    @Justin7
    Yes well that will not work since you have your TPLink connected on the LAN port (as an AP only). The parental control function requires traffic to go out on Internet via it's firewall. This you can do whilst maintaining pfsense as the main firewall but it means double NATing...

    What type of control are you trying to enforce? If it's access to specific sites or applications you could take a look at AdGuard Home. Then you go back to using pfsense as the DHCP server and hand out the IP of AdGuard as your DNS. And change the TPLink into a simple AP... I'm sure you can use some of the access control functions still. Perhaps schedule wifi access??

    But in AdGuard you can set and block not just Ad's, malicious sites etc, but a whole range of applications as well. The App blocking is very simple to use with a nice UI and then the ability to set a schedule for the blocking.

    Then there is pfBlockerNG as a plugin for pfsense.

  • Update/backup dosnt work

    14
    0 Votes
    14 Posts
    873 Views
    T

    @Gertjan

    The "old" pfSense-CE-memstick-2.7.2-RELEASE-amd64.img.gz worked! I'm now up and running on my new hardware with a 10Gbps WAN connection... swoosh! 🚀

    Thanks for the quick and great support!

    Lesson learned: Always perform a clean barebone install using the legacy USB installer, then restore the backup, reconfigure the WAN/LAN NICs, reinstall packages, and restart.

  • Block VPN Connection

    13
    1 Votes
    13 Posts
    7k Views
    M

    @jonatremoteeyes

    Have you simply tried reaching out to xvpn support and ask them for a either a list of IPs they use or a CIDR block they own?

    https://xvpn.io/help-center/how-to-choose-the-right-vpn-server-location

    ###### If you have more specific needs, such as a server that is better suited for downloading content, please contact us or write to support@xvpn.io and we will provide you with a recommendation for a targeted solution.

  • Wireguard tunnel monitoring emails

    4
    0 Votes
    4 Posts
    284 Views
    stephenw10S

    I would look in notices.inc and gateways.inc for where the emails are triggered.

    That won't help with log errors from dpinger though

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.