• Interesting NAT problem ?

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • No internet access after new default route

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Stop logging in firewall

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    N
    Isn't there a simpler method? I'd need a bit of coaching to complete this endeavour
  • 1.2-RELEASE on net5501-70 hangs randomly on heavy load

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    K
    @kirmou: Thanks! We upgraded last friday to 1.2.2 and the CPU load in Site1 seems to be lower now. No problems so far. I'll report… Kirmo Uusitalo The problems still exist in site1. Hangs / reboots every now and then. We switched on "Use device polling" setting in Advanced settings. I'll report… Kirmo Uusitalo
  • Help Me Secure my Network

    Locked
    7
    0 Votes
    7 Posts
    3k Views
    F
    louis-m has a point. It depends on how far you want to go. If you really have a lot of programs accessing the Internet through many different ports then you would have to set those up to explicitly allow outbound traffic only on those ports. It all depends on what you consider more important.
  • Report firewall filter

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Cannot connect to MSN?

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    M
    Ok, it's IMspector which blocks my msn connexion… but how? with the previous setup, imspector was running fine... now as soon as i activate it, impossible to login to msn, neither to log the conversations on msn... is the package still working? How do i reset totally the Imspector config?
  • Connection limit not working?

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    B
    Well if there are any rules below it that would allow it out, then they would apply first. (Like the default LAN allow rule.) A quick way to test would be to put a block right beneath it with the same source IP and turn on logging to see if it is blocking. p.s. if you are limiting the clients to the same number of connections, one rule would cover that. simultaneous client connection is per source IP. So a rule with a 50 simultaneous limit from any source would allow 50 connections from each client.
  • Rule: How to connect to internet

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Dropping RST packets to a portrange

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    B
    RST packets have no payload and hence no port. I am far from an expert but based on my reading of the Snort documentation Snort is able to detect the RST flag and alert, you may be able to configure a combined rule in Snort to achieve your goals. I don't know enough yet to tell anyone how to do it though …. but I am working on it. You may want to check out page 129 of the Snort user guide. http://www.snort.org/assets/82/snort_manual.pdf My guess is that you could let Snort deal with the RST packets and let pFSense handle the rest, I can't think of a valid reason to accept an RST incoming anyway.
  • Rules & Performance

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    J
    What is it really you wanna do to the Rules? jigp Davao City
  • Problem with traffics

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    J
    Is it okay now ? jigp Davao City
  • WebConfigurator

    Locked
    7
    0 Votes
    7 Posts
    2k Views
    J
    Hows it working mabbus? Be sure your NAT is doing okay. Also try restarting firewall. jigp Davao City
  • Looping on LAN

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • (newbie) Help adding a pf table

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • MOVED: Cannot access internet

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • MOVED: can i do "this" with pfsense?

    Locked
    1
    0 Votes
    1 Posts
    873 Views
    No one has replied
  • MOVED: How can we block specific sites?

    Locked
    1
    0 Votes
    1 Posts
    865 Views
    No one has replied
  • Nightly "deactivation" of WAN interfaces

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    GruensFroeschliG
    http://forum.pfsense.org/index.php/topic,15689.0.html
  • Block Ping request on WAN?

    Locked
    3
    0 Votes
    3 Posts
    3k Views
    L
    thanks
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.