• Protection against TCP/IP SYN+FIN (in general)

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Aliases from file

    Locked
    9
    0 Votes
    9 Posts
    6k Views
    J
    Its nice to know these things but how to know if somebody is trying to access my box? jigp 1.2.2
  • FTP and bridge transparent mode

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    J
    Did you ever try to restart the pf? jigp 1.2.x
  • Aliases Configuration

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    J
    Hi good afternoon! Are you trying to block something? or what?
  • Squid does not pass the firewall rules.

    Locked
    3
    0 Votes
    3 Posts
    1k Views
    J
    Hi good afternoon. Go to General settings and check "Allow users on interface" and "Transparent proxy" Proxy port: 3128. Save and you are off to go. jigp 1.2.x
  • Firewall problem / telephony servers (not SIP)?

    Locked
    8
    0 Votes
    8 Posts
    2k Views
    E
    If it works your next options would be to do networks dumps and analyze them (or show them to us so we could analyze them).
  • UPnp & Firewall

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    E
    I don't understand your problem with uPnP, sorry can't say anything. Port forwarding is NAT. Firewalling is Rules. You can set up them independently (if this is your question).
  • PortRanges for Single Aliase

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    E
    if you tell us what you are trying to achieve then we will probably be able to help you. Why do you specify source port range? Does it work without alias?
  • Is there a way to monitor the pfsense webgui and ssh when was accessed?

    Locked
    9
    0 Votes
    9 Posts
    3k Views
    E
    Do you know who sells them? How much?
  • Pftpx and RFC 959

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    T
    Hi, I've found a solution from this topic http://forum.pfsense.org/index.php/topic,9016.msg51238.html#msg51238. After changing line 1017 in /etc/inc/filter.inc from: $after_filter_configure_run[] = "/usr/local/sbin/pftpx {$shaper_queue}-f {$target} -b {$external_address} -c 21 -g 21"; to: $after_filter_configure_run[] = "/usr/local/sbin/pftpx {$shaper_queue}-f {$target} -b {$external_address} -c 21 -g 21 -r"; it works as expected.
  • LAN IP Range Rule

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    E
    Homework for MrVining: what is the subnet if you are given IP 10.0.0.147/26 ?
  • How to disable http (web) access with SQUID installed.

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    E
    Donate your son's computer and find a girl-friend for him ;)
  • NMAP block?

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    Cry HavokC
    To block nmap from being used behind the router, simply disconnect the network cable to the pfSense host ;)
  • Locking down pfSense

    Locked
    14
    0 Votes
    14 Posts
    12k Views
    GruensFroeschliG
    To harden your setup more: Set the WebGUI to https. Set the WebGUI to a different port than 443 (i usually use 444 :D ). Disable the anti-lockout rule (under system–>advanced) and allow access only from a source you control. Or even better: dont allow access to the webGUI at all besides via a VPN (OpenVPN comes to mind). Run as few packages/services as possible. But these are just generic "security measures". pfSense is with the default settings already pretty safe.
  • Can't access NATed Server from one external IP

    Locked
    11
    0 Votes
    11 Posts
    3k Views
    E
    Update happens once per month. What makes you think it does not?
  • Parallel ISPs with one Pfsense box…

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    Cry HavokC
    Take a look in the Multi-WAN forum
  • Restoring Firewall Rules

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    P
    @blak111: I'm not sure if the factory restore clears this directory, but check /conf/backup. Looks like it does. All my config.xml files are current rule sets. Thank you anyways, Ive pretty much been piecing it back together for the past few hours watching what is blocked and tracing it to the source and determining what the traffic is. I know that I will be backing up my config this time. Thanks again for the help!
  • Block interfaces from access one another

    Locked
    8
    0 Votes
    8 Posts
    2k Views
    L
    Quote so when i added my vlans, LAN1 could talk to LAN2. these were all various nanobsd installs. Did you make sure that you didnt mix tagged and untagged traffic on the same NIC? probably, 1 of the physical nics is untagged and the 2nd nic has 4 x tagged vlans on it. i haven't tried crossing from 1 vlan to another vlan. i would assume that this wouldn't work. i'll dig a little deeper tonight i think.
  • Open ports 25 and 110

    Locked
    7
    0 Votes
    7 Posts
    2k Views
    D
    After some investigation I came to the conclusion my Wan an Lan were switched. That was the reason the ports were open. Thx for the response. this can be closed.
  • Port 21 allowed out, but nothing will connect going out

    Locked
    9
    0 Votes
    9 Posts
    3k Views
    P
    Take a look there: http://doc.pfsense.org/index.php/FTP_Troubleshooting
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.