• MOVED: root login to SSH

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Firewall Rules on Dynamic WAN Interface - Auto-Adjusting?

    Locked
    11
    0 Votes
    11 Posts
    4k Views
    S
    Reloaded from scratch on my home machine and STILL could not access it from the office. (the other tests were between two offices) Turns out my residential ISP was blocking the custom port.  Lovely. Well, after a change to another custom port, all is well. Thanks for the help, everyone!
  • Blocking Users With Firewall with squid

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    J
    I having this same problem will try what you recommended.
  • Import openbsd pf rules

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    H
    unfortunately not. You would need a pfrules to config.xml converter as everything is generated on change/bootup from the config.xml.
  • Is this all possible with Pfsense?

    Locked
    18
    0 Votes
    18 Posts
    9k Views
    H
    At status>systemlogs, settings disable the default logging. Then add a block rule/block rules at WAN with a logging flag that only log the desired traffic.
  • Gateway-Firewall configuration problem!

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    J
    normal PPPOE is used between the waninterface and a utp adsl modem for wat you want you need a lan interface and a wan interface and enable pppoe on the wan interface you can't do this with only 1 network card
  • FTP Rule Max Connections Per xx Seconds

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    H
    I think you should be able to trigger that by adding advanced options to the ftp forward at wan to 127.0.0.1 (the rule the helper created automatically for you when creating the portforward).
  • Noob question (DMZ?/NAT?) sorry if wrong section

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    H
    You only will see the +icon if there is an unassigned interface. You need a 3rd nic for the scenario from the tutorial. If simple portforwards work for you you should just use it.
  • Limiting closed port RST

    Locked
    3
    0 Votes
    3 Posts
    5k Views
    H
    anything should i do at firewall side?
  • Block lots of ip ranges

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    J
    at interfaes/wan turn on Block bogon networks When set, this option blocks traffic from IP addresses that are reserved (but not RFC 1918) or not yet assigned by IANA. Bogons are prefixes that should never appear in the Internet routing table, and obviously should not appear as the source address in any packets you receive.
  • PROBLEMS WITH THE PORT 443

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    H
    It's open from LAN by default and blocked on any other interface like WAN, OPT1,… If you want to simply open it up to the firewall at WAN for example create a rule at firewall>rules,WAN. If you want to forward it to an host on one of your internal subnets create a portforward at firewall>nat, portforward and let the firewall rule be autocreated (the box for this is enabled by default).
  • L7-filter kind app

    Locked
    5
    0 Votes
    5 Posts
    4k Views
    S
    I know just a bit about layer-7 shaping abilities, and for know pfsense layer-4 scheme is working for me; but I'm sure that layer-7 in pfsense would bring the firewall into a new land where the most modern p2p programs change their ports to scape trafic shaping or the most commons firewalls that block well known p2p ports… But as I said, pfSense scheme is doing the job for me now, it saves more than 30% of my bandwitch that are being used by p2p programs in users boxes... it's amazing!
  • Wierd bug: MULTIPLE:SINGLE?

    Locked
    13
    0 Votes
    13 Posts
    6k Views
    S
    Already fixed in cvs.  Thanks.
  • Manualy edit pf

    Locked
    4
    0 Votes
    4 Posts
    3k Views
    S
    Your changes will get overwritten each time.  Seriously, you really need to use something else if you want to have custom pf rules.  Sorry!
  • BUG? Source ports range as alias

    Locked
    9
    0 Votes
    9 Posts
    3k Views
    T
    Ok, sad to hear it but I have to live with it. Cheers
  • HEEELp ping allow other deny

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    D
    lowcypl, your config seems to be okay. But beside that it is kinda hard to understand … what you were trying to accomplish regarding your setup? what is/was your issue (i.e. what does not work)? Regards Daniel S. Haischt
  • Transparent firewall & DHCP

    Locked
    4
    0 Votes
    4 Posts
    3k Views
    S
    1.0-RC3 is now out, you really should update.
  • Enabling Filtering Bridge

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    S
    Show a screen shot of your custom rules and then run cat /tmp/rules.debug | grep USER from a shell/command prompt.
  • Firewall Reload Problem Bridge

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    W
    sorry i didn't get round to answer yesterday. I changed the setup after having these annoying problems with the bridge i was in a hurry had a customer waiting for the firewall. When i have some time i will do some testing with the bridge setup and post my results.
  • Virtual DMZ

    Locked
    1
    0 Votes
    1 Posts
    3k Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.