• Ftp helper on opt1

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • 0 Votes
    3 Posts
    2k Views
    I
    @hdavy2002: Hi, I have a dual core dell server with 4 GB Ram and 37 GB drive in Raid 0 My memory use is about 9 to 25% most of the time. I have Snort, Squid (Transparent), Ntop, Nmap, Bandwidth running. Once in a while, my GUI freezes and from outside, I cannot do any RDP or SSH into the box, the internet is working as I can use logmein.com to get inside and then do a reboot using ssh. I cannot understand why is it doing? Can someone point out anything weird Thanks all i have a problem too.. the problem is after i'm implementing the pfsense.. the effect is my router interface always up and down.. and i have to reboot the router every 1 hour.. my memory usage also bout 20% i think the problem is because the filter reload.. but i still can't figure it out yet
  • Web page DDOS

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    X
    check for an update under system>firmware. check to see where its coming from under the current states, when you get it or shortly afterwords or start logging connections and see if you notice a trend
  • Firewall blocking TCP:R packets

    Locked
    4
    0 Votes
    4 Posts
    8k Views
    jimpJ
    Blocking TCP:R (Resets) and TCP:F (Fin) can be normal, and not indicative of the actual problem. http://doc.pfsense.org/index.php/Logs_show_%22blocked%22_for_traffic_from_a_legitimate_connection%2C_why%3F
  • Why is the firewall blocking ICMP from my modem to it's lan port?

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    G
    I can't explain why it's doing it. WAN2's modem isn't pinging it's LAN port, so I'm at a loss.
  • To block some HTTPS

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    X
    Hello, firstly sorry for my bad english but i'm from Argentina and in the spanish post anyone response me. I need help with my firewall. I have installed pfSense+Squid+Squidguard and i have a problem, i need to block some HTTPS. The Https to block is https://imo.im. Already probe writing in "domain list", "expression" and "url list" of the option Destination if the squidguard. I have a ACL configured to block this "Destination Ruleset". With other URL work perfectly. Thanks for your time i hope your response
  • Website behind PFsense firewall not visable from the internet

    Locked
    5
    0 Votes
    5 Posts
    4k Views
    W
    Oke found the problem I hard resetted the modem and now everything works fine Thanks for the reply's
  • PfSense VLAN => external squid box => WAN via pfSense and back

    Locked
    3
    0 Votes
    3 Posts
    4k Views
    C
    Thanks! I had pondered that idea at one time tried to do it with NAT and stuff since that seemed like it should have been the most straightforward.  Glad you confirmed that this works and got me back on that track! Note: I didn't even need the load balancer.  Just set the squid box up as a gateway and I set rules for anything on port 80 to use it.  Seems to work like a charm! On the other hand, I am using the load balancing for multi-wan, and squid is plugged into that. I probably will end up using the load balancing for multiple squid boxes… so that's a really nice idea/side benefit! One of my next tasks will be to learn about CARP. I wonder if I can get failover pfSense boxes running to smoothly hand off my increasingly complex setup...
  • Someone plz help me.. i'm in troublee

    Locked
    3
    0 Votes
    3 Posts
    1k Views
    I
    sorry case closed.. the problem is when u don't need the interface.. unplug the NIC and "make sure you deleted it" it is that caused the problem.. case is solved TQ
  • 0 Votes
    3 Posts
    5k Views
    B
    If you've got squid running in transparent mode, then the rules are applied AFTER the redirect takes place at the firewall - the same as incoming port forwarding. So you apply a rule that governs access to squid itself - see attached file. [image: rules.png] [image: rules.png_thumb]
  • Default deny

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    I
    allow port 80
  • Can't PORT forward on OPT1

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    J
    I finnaly figured it out. In firewall rules for OPT1 I changed Gateway from OPT1  to  Default, also created a static route for OPT1 DNS, everything works flowless, very happy, thank  you, thank you to all the developers of PFSenese.
  • Disabling (outbound) FTP helper on a per rule basis ?

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Using Cable Modem IP

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Help with bridging firewall/transparent firewall setup

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    R
    bump?
  • Interesting NAT problem ?

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • No internet access after new default route

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Stop logging in firewall

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    N
    Isn't there a simpler method? I'd need a bit of coaching to complete this endeavour
  • 1.2-RELEASE on net5501-70 hangs randomly on heavy load

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    K
    @kirmou: Thanks! We upgraded last friday to 1.2.2 and the CPU load in Site1 seems to be lower now. No problems so far. I'll report… Kirmo Uusitalo The problems still exist in site1. Hangs / reboots every now and then. We switched on "Use device polling" setting in Advanced settings. I'll report… Kirmo Uusitalo
  • Help Me Secure my Network

    Locked
    7
    0 Votes
    7 Posts
    3k Views
    F
    louis-m has a point. It depends on how far you want to go. If you really have a lot of programs accessing the Internet through many different ports then you would have to set those up to explicitly allow outbound traffic only on those ports. It all depends on what you consider more important.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.