• ICMP best practice?

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • 0 Votes
    6 Posts
    3k Views
    Cry HavokC
    I've already mentioned other possible problems - search my previous reply for NetBIOS ;) Did you put rule (1) on the 192.168.2.x network interface?  Is it before any other rules?
  • VOIP - SIP registration timeout issue

    Locked
    2
    0 Votes
    2 Posts
    5k Views
    M
    I think I know what is happening, not sure how to fix it yet. There are 2 sets of trunks, 3 trunks with one provider and 1 trunk with a second provider.  If I disable either trunk set, the other set will register and work fine.  Its when both trunk sets are enabled that the single trunk set will drop.  It should be noted that when the trunk drops, tcpdump shows no outgoing traffic to the provider of that trunk on the wan interface; however the lan interface shows the traffic coming into the box. So at least I can replicate the issue by enabling/disabling the asterisk trunks without rebooting the pfsense box each time. I suspect that this vanished trunk registration traffic is being incorrectly routed to the other provider and thats why I don't see it.  I also have no idea why it would work initially for a bit when the trunks are all enabled and then it dies with no trace.
  • Please check my Firewall:Rules and tell me if they are ok.

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • PfSense –> Web Server

    Locked
    8
    0 Votes
    8 Posts
    17k Views
    F
    @dotdash: To just address the last question, if you need the server to have a static IP, you could create a DMZ bridged to WAN. Another solution is to make the firewall transparent. Search around, there is a lot of information on these options. Followed this guide: http://202.143.130.99/files/transparent_firewall.pdf Worked like a charm!  Thanks for pointing me in the right direction :)
  • Firewall rule not blocks ip

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Different Default deny problem

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    B
    Anyone have any ideas?
  • [Solved] Allow web interface WAN access

    Locked
    7
    0 Votes
    7 Posts
    11k Views
    D
    Glad it's working.  I've had a glitch or two where rebooting cleared up whatever stale state/entry was causing issues.
  • Pfsense is accessible from the web

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    G
    Sorry for the delayed response! Apparently, I had a rule allowing all the ports forwarded from my VM, this appears to have been added by default.  Does anybody know why?  The description is "Default allow all on WAN in VM." In any case, disabling the rule has fixed my issue.  Thanks!
  • Where should a Radius server sit ? DMZ or WIFI ??

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Block web access

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    S
    Why dont use Captive portal??
  • Comply with CALEA ?

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    Cry HavokC
    Try searching the forum and read the answers to the other threads ;) In short, by itself it won't provide you with CALEA compliance but it also doesn't stop you achieving it.  You should talk to a lawyer about what you have to do, but it may be that simply providing a network tap is sufficient.
  • Bridge not work in pfsense?

    Locked
    7
    0 Votes
    7 Posts
    2k Views
    B
    No one can help or know in issue??
  • US Cert Vulnerability Note #464113 - TCP SYN (FIN)

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Firewall Lanecy traffic issue

    Locked
    6
    0 Votes
    6 Posts
    2k Views
    D
    Your OP said "going up and down".  What is the pfsense sending back?  Unless you are running some kind of open service they can access, they should not be using anything like 2mb/sec.
  • Firewall blocks traffic from dmz/lan to wan address

    Locked
    7
    0 Votes
    7 Posts
    2k Views
    D
    because specifying "wan address" means: "filter if the destination is the WAN address".  in this case, the wan address is the gateway, not the destination.  nothing strange about this.
  • Bulk import of IP to aliases

    Locked
    2
    0 Votes
    2 Posts
    5k Views
    J
    That would fit in with this question too.
  • Remove port forward from pfSense Shell

    Locked
    4
    0 Votes
    4 Posts
    5k Views
    Cry HavokC
    Possibly, but if it all goes wrong and you break your box you're on your own.
  • Firewall Pfsense - Redirect Traffic 80 to 3128 squid machine

    Locked
    9
    0 Votes
    9 Posts
    56k Views
    J
    You can refer here: http://doc.pfsense.org/index.php/Setup_Squid_as_a_Transparent_Proxy
  • Problem with Squd transparent mode

    Locked
    8
    0 Votes
    8 Posts
    3k Views
    J
    Please refer to this link: http://doc.pfsense.org/index.php/Setup_Squid_as_a_Transparent_Proxy
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.