• 0 Votes
    3 Posts
    1k Views
    S
    Solution: The solution is relatively easy and involves the system time that uses my Hypervisor time (+2) and adds another +2 for my time zone setting in pfSense. This gets me a wrong time, obviously. After NTP updates the time it is correct again, but old times are not updated. So the time line is sent down to the dumps. At least, this explains the 2 hours difference between the settings. To be honest, that is crap (not pfSense's fault, nor Hypervisor's) and I don't know what would be a solution. Maybe pfSense should allow to set a time next to time zone (and overwrite bios time)? PS I would love a statistic pointing out how many bugs are related to time zone and file format conversion fun :-)
  • EZJail Start - mount_nullfs: Operation not supported by device

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Changing Network Subnet Limited User Access

    24
    0 Votes
    24 Posts
    6k Views
    A
    @Derelict: There is no OpenVPN package on 2.1.5.  It's part of the base system.  Are you talking about the client export utility? Anyway. Now that all that is out of there, step back and take another look at the /tmp/rules.debug and all your interfaces and rules. My apologies, yes the client Export Utility for OpenVPN.
  • Haproxy : kern.maxfiles limit exceeded by uid 80

    4
    0 Votes
    4 Posts
    2k Views
    P
    The first line shows that 4 haproxy processes are running, if you have long living sessions, and a few applied config changes that could be fine.. It could also mean a few did not shutdown properly.. You might want to check the pfsense systemlog it should show what pid was running and what gets started..(if package was recently re- installed) Either way it seems indeed maxproc is high enough for haproxy… What you could try is to install lsof, and check for open handles. Not sure if that will work.. lsof | awk '{print $2}' | sort | uniq -c | sort -n then check if the pid of haproxy indeed has a high number of handles.
  • Help & advice seeked to setup rules and NAT for FTP server on OPT1

    2
    0 Votes
    2 Posts
    600 Views
    P
    That didnt work out too well… This morning, SSH to ALL machines on LAN failed (Temporary DNS name resolution), the firewall was suspiciously slow (and not responsive), I couldnt reach the internet from any machine... Deactivated all rules under OPT1, and rebooted the firewall, all is back to normal. For now I will assume this is only a glitch in the firewall and not related to my OPT1 rules, unless someone can point out that it is..
  • Restricting WebGui Access To One Interface

    20
    0 Votes
    20 Posts
    5k Views
    ?
    Thankx for asking! Forget about it, just a strange idea after not enough coffee this morning… We're all safe, I guess :-D
  • How to setup FreeRADIUS backend MySQL ?

    4
    0 Votes
    4 Posts
    3k Views
    S
    Also debugging my procedure … I noticed that the first time I run mysqld (for the root password setup, etc) I have to run /usr/local/etc/rc.d/mysql-server onestart After the root password is setup, I can then run /usr/local/etc/rc.d/mysql-server.sh [start|stop] :-[
  • Load balancer service: maximum number of clients?

    3
    0 Votes
    3 Posts
    779 Views
    P
    Thanks a lot cmb for your your kind and accurate answer… Pedreter.
  • Has anyone build a gigabit router using a motherboard???

    7
    0 Votes
    7 Posts
    2k Views
    S
    http://www.logicsupply.com/components/expansion-cards/ade4rtlang/ http://www.logicsupply.com/components/expansion-cards/ade4inlang/ If you can find the motherboards that the above two devices fit, that might be an option. I have one of the motherboards and I have a total of 6 1Gb NICs (2 onboard, 4 daughterboard)
  • MOVED: Nintendo 3DS game has online issues

    Locked
    1
    0 Votes
    1 Posts
    663 Views
    No one has replied
  • Bizarre problem with pfsense need troubleshooting! PPPoE over vlan

    2
    0 Votes
    2 Posts
    714 Views
    C
    Something not right with that NIC, probably a mis-programmed EEPROM. Easiest work around would be to keep the interface in promiscuous mode (which is why it works with tcpdump running), alternatively if you use a diff NIC it's not likely to be an issue. A <shellcmd>to run "ifconfig em0 promisc" would work around (search doc.pfsense.org for info).</shellcmd>
  • Packet capture

    2
    0 Votes
    2 Posts
    724 Views
    C
    A client on your network is pulling something from 184.29.106.120 via HTTP. That's an Akamai IP, which is a CDN used by a bunch of companies to host their downloads. Best that shows is someone is downloading something. Filter states for the external IP to find the internal host.
  • All-in-one homeserver, advisable?

    38
    0 Votes
    38 Posts
    6k Views
    S
    @stephenw10: Interesting. So what are you running in the jails and what is hosting, FreeBSD? Steve Host is pfsense and the jails run FreeBSD. I don't think an alternate setup is possible. I believe pfsense can't run in a jail, and jails cant run anything but FreeBSD. I have a guest with asterisk, and another with apache/transmission/samba.
  • Please Help set up proxy

    2
    0 Votes
    2 Posts
    700 Views
    jimpJ
    Squid is probably running on port 3128, not 80. The GUI is probably on 80. Check/change squid to be on port 3128, and configure your browser's proxy settings to use port 3128 and not 80 for the proxy.
  • Dynamic DNS - dyndns.org tsig support

    1
    0 Votes
    1 Posts
    676 Views
    No one has replied
  • Pfsense Cannot ping workstations

    3
    0 Votes
    3 Posts
    777 Views
    M
    You will either have to configure the software firewall on your workstation to answer an icmp echo or turn off the software firewall completely.
  • Initial setup questions

    2
    0 Votes
    2 Posts
    694 Views
    stephenw10S
    Are these all public IPs? Steve
  • Network Monitoring & Alerting

    1
    0 Votes
    1 Posts
    730 Views
    No one has replied
  • PPPoE connection keeps crashing

    1
    0 Votes
    1 Posts
    698 Views
    No one has replied
  • Moving servers behind one PFsense box to another PFsense box…problems

    6
    0 Votes
    6 Posts
    1k Views
    C
    @cwyant55: I'm assuming I could also assign the "old" WAN IP to the new box and get it working without rebooting our Verizon box? Thanks for your help. Not in the most common scenario, where the additional WAN IPs are IP alias or CARP VIPs. If they're routing your additional IPs to your WAN IP, then you'll have to move over the WAN IP so the routing functions. That's less common.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.