• Tcp split handshake

    Locked
    5
    0 Votes
    5 Posts
    4k Views
    I
    @jimp: Has anyone actually tried the nmap split handshake scans against a pfSense firewall to see if it made any difference? Without a tool I wouldn't have a clue how.  Wouldn't something this important get incorporated into tools like Metasploit?  Nothing shows up when searching there. http://www.metasploit.com/modules/
  • FIN_WAIT_2:ESTABLISHED and ESTABLISHED:FIN_WAIT_2

    Locked
    1
    0 Votes
    1 Posts
    5k Views
    No one has replied
  • X-Box 360 MTU 1364 error when firewall scheduling enabled

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    T
    Thank you for your quick response. After I posted, it dawned on me. I added another rule below the BLOCK, schedule to ALLOW. Now all is good. pFSense 2.0 Schedule Tool tips  say "This Rule is Currently inactive" !!!  as opposed to "ALLOWing trafic. THIS is how my rules are now and work PERFERCTLY. BLOCK * XBox * * * * none MySchedule ALLOW * XBox * * * * none
  • HTTP passing but can not download?

    Locked
    7
    0 Votes
    7 Posts
    2k Views
    C
    ieee I posted a reply on another topic but it was actually for this one lol. Ok so it did come down to HW issue of sorts. Not sure what was up with the PCI slot I was using for the WAN interface but I reassigned the WAN to a different interface and now HTTP works w/o issue. Now I just got to get my two XBoxes to be open NAT. I have an ethernet testing tools so I can tell when there is a fault in a cable, They all seem fine
  • PfSense’s Web front-end for pf outside a pfSense installation

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    jimpJ
    No, it isn't possible to use the GUI outside of the pfSense distribution in any meaningful way. Not without a lot of PHP code changes.
  • Grouping hosts

    Locked
    3
    0 Votes
    3 Posts
    1k Views
    B
    That was it. And it works brilliantly! :) Thanks
  • Authentication Error

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    jimpJ
    If means you have your SSH port open on WAN and someone tried to connect and login, but failed. In general it is not a good idea to allow your SSH port to be exposed to the world. If you must allow access, at least move the port to something else (222, 34890, 41383, some other random port) and enable key-only auth. That will both reduce the likelihood that someone will find the service, and that nobody can just keep trying passwords to get in.
  • MOVED: Cannot block incoming ICMP

    Locked
    1
    0 Votes
    1 Posts
    822 Views
    No one has replied
  • Firewall and transparent proxy

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Ping Prob

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • SSH Problems with DMZ

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • 0 Votes
    3 Posts
    22k Views
    R
    That makes sense, I at least have somewhere to start looking now Thanks for your help.
  • Hide VRRP logs

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    M
    Thx. To simple for me ;-) Works like a charm ….
  • 0 Votes
    3 Posts
    2k Views
    C
    @onhel: Did you explicitly setup the ICMP Type in the firewall rule?  Its right underneath the Protocol once you select ICMP.  You will need Any or at least Echo Reply. Correct, except Echo, not Echo Reply if you're allowing pings.
  • MOVED: passing traffic for two hosts on LAN

    Locked
    1
    0 Votes
    1 Posts
    809 Views
    No one has replied
  • Internal IP visible to net

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    P
    Issue Solved & Explained. Sill
  • Disabling firewall rules?

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    valnarV
    Right…  I just wanted to know if one was less "backdoor hackable" than the other. Thanks!
  • How to Block mp3 and video downloads through firewall..?

    Locked
    4
    0 Votes
    4 Posts
    5k Views
    C
    thanks a lot p0ddie… ;D
  • Bonjour/Multicast DNS flooding

    Locked
    9
    0 Votes
    9 Posts
    8k Views
    P
    16 gigs in 2 hours translates to roughly 2MB/s of traffic. This is well beyond what normal Bonjour multicast discovery is about. Check his machine (look at the network activity in activity monitor), it either shows constant 2MB/s of traffic on the lan port, or something else is really fishy. Anyway, this looks like a misconfigured client.
  • How to redirect ports on the same lan?

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.