• weird error with NAT/firewall

    8
    0 Votes
    8 Posts
    1k Views
    F
    Dear @johnpoz My problem is described here: Problems configuring OpenVPN on pFsense 23.01 Let's not discuss my problem any further here. I am just about to try again troubleshooting using your ideas but any further discussion about my problem, should be done there. Thanks you really very much for your ideas. I will keep you posted.
  • Rule not working, please help

    3
    0 Votes
    3 Posts
    487 Views
    F
    @lcbbcl Agreed, makes sense when put like that. I somehow got the idea that I could first block everything and then open this, but obviously got it wrong. Thanks for quick response!
  • pfSense randomly blocking access to gmail from VPS?

    7
    0 Votes
    7 Posts
    903 Views
    P
    @steveits Found that the issue was caused by Snort blocking Google IP's for various reasons. What I cannnot explain is why I needed (for an entirely unrelated reason) to re-config the snort interfaces to be able to actually see that Snort was the culprit. At least I am pretty sure its the case because since I last posted on this thread, I've had two episodes of connectivity issues and both times it was clear as day that Snort was blocking Google IP's. Unblocking them made my VPS reconnect almost instantly. For now I consider this solved!
  • OpenVPN Client Access To WAN Port

    7
    0 Votes
    7 Posts
    586 Views
    U
    @johnpoz Oh, yeah. !! Thanks.
  • Request for examples of working guest network rules

    22
    0 Votes
    22 Posts
    2k Views
    M
    @dominikhoffmann Just include your networks inside of the alias: Select IP, then there will be a Type field, select Network(s) [image: 1676999024517-66141865-2a6f-4937-9fd9-b882ae93014b-image.png]
  • Block of specific packages

    3
    0 Votes
    3 Posts
    495 Views
    bmeeksB
    The main problem is detecting that "specific packet". Do you mean specific payload content? If so, remember that nearly 100% of network traffic today is encrypted and only decrypted at the two endpoints of the conversation. Firewalls and intermediate devices can't see into the payload. They see only random encrypted bits.
  • PHP Error in EasyRule "getprotobynumber('icmpv6')"

    2
    0 Votes
    2 Posts
    451 Views
    jimpJ
    Can you open a Redmine issue for that at https://redmine.pfsense.org/? Some of the easyrule code changed to add extra validation and that specific type comes through in a way that doesn't seem to align properly.
  • How to edit this firewall rule to allow tcp/ip connection?

    10
    0 Votes
    10 Posts
    741 Views
    I
    @viragomann OMG you just saved me so much troubleshooting time! I didn't know PostgreSQL and PG admin needed to both be installed. I only had PG Admin and thought I can just jump right into doing stuff with databases. I can finally get everything up and running. Thank you!
  • Very odd UDP 40000 request. Please help me understand

    11
    0 Votes
    11 Posts
    826 Views
    F
    @jknott said in Very odd UDP 40000 request. Please help me understand: @furom Unfortunately, my crystal ball is busted again, so I can't offer much more. Bummer... But thanks much for trying. There oughta be some way of finding out device on that vlan has tried to make the connection, I'll just continue trying, there must be a way. Have a good one :)
  • redirect ping to google

    6
    0 Votes
    6 Posts
    450 Views
    NightlySharkN
    @gwaitsi What @rcoleman-netgate already said: [image: 1676839280334-2f4cbbd6-14b0-4c97-88ea-fa0c53e1de74-image.png] [image: 1676839363530-515cd4e5-71f4-4c48-9225-3192fc4d5f56-image.png]
  • 0 Votes
    3 Posts
    1k Views
    J
    @viragomann that did work, anything else I can try?
  • Floating PING rule not reaching target

    2
    0 Votes
    2 Posts
    334 Views
    O
    No ideas?
  • Port forward not working

    17
    0 Votes
    17 Posts
    1k Views
    S
    Sorry but I am experiencing an internet outage with recovery scheduled for 02/28
  • Red vertical bar to the left of some LAN Rules

    4
    0 Votes
    4 Posts
    455 Views
    bmeeksB
    Yeah, in the Dark Theme some extra "marking" is needed because of the dark background. In the default theme, disabled rules show as obviously grayed-out on the white background, but on the darker background of the Dark Theme something extra is needed. Notice the text is lighter in an attempt to show 'grayed-out", but the red bars help the lines stand out.
  • Simple Cross-Interface traffic not egressing to second interface

    5
    0 Votes
    5 Posts
    462 Views
    D
    SUPER stupid thing to miss. I'm sorry for wasting your guys' time! It was indeed rule order bombing out the traffic. FYI I do already have dyndns setup with my domain so connectivity from external sources will be immediately functional...I still likely to keep internal traffic off the WAN interface though. Just a personal pref. Thanks all and have a great day!
  • Can't connect to DMZ ip since update to pfsense+ 23.01

    1
    0 Votes
    1 Posts
    196 Views
    No one has replied
  • [solved] Tables

    Moved
    4
    0 Votes
    4 Posts
    745 Views
    Bob.DigB
    Marked solved because I have deleted the override and maybe it was also for home.arpa. Thanks Jim.
  • Default deny rule IPv4 (1000000103) blocking MS RDP connection

    10
    0 Votes
    10 Posts
    967 Views
    johnpozJ
    @dfsense Well that is wrong solution to a self inflicted issue.. Is pfsense not the default gateway to these devices?
  • Netflix Plays, But Icons Won't Display

    13
    0 Votes
    13 Posts
    981 Views
    House Of CardsH
    @johnpoz Do you think any of this has anything to do with Netflix? I have tried adding a rule allowing the Apple TV any access to anything, and it's still broken. I have T-Mobile Home Internet, and it's double-NAT as a result... If I connect directly to the wireless signal sent off that device Netflix loads. I'm wondering if because Netflix is included on my cell plan, it's somehow verifying I'm connecting through their service, and it thinks I'm on another network? Or if there is any way to test that? Still confused...
  • VLANs and Printer discover

    9
    0 Votes
    9 Posts
    1k Views
    johnpozJ
    @fjmp24 must of been some other discovery protocol - there are a few of them.. avahi is just for the mdns discovery. I would guess WSD.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.