• OpenVPN Radius Accounting (NOT AUTH!)

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    E

    AFAIK, there  is nothing doing this at the moment.
    You can open a feature request at redmine.pfsense.org to not be forgotten.

  • Traffic Shaper Wizard + Layer 7 ?

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • How to bridge interface to act as a switch?

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    N

    Thank you for the reply, I will test this asap.

    Sorry it took me so long, i forgot my password =(

  • It is possible through Bridge

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • 2.0 RC1 working ipsec site to site config

    Locked
    4
    0 Votes
    4 Posts
    3k Views
    E

    at last i found my periodically ipsec disconnect problem after researching in redmine,i'm using pptp from home to connect corporate PF 2.0 RC1 firewall.
    Same issue as Chris Buechler described in  bug 1421 (http://redmine.pfsense.org/issues/1421),today i noticed that after my pptp disconnect all ipsec tunnels disconnecting.I can supply any log and configs for deeper research.

    regards.

  • 2nd Gateway problem

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    H

    can you ping the monitor-ip from your opt1 interface ?

    If the monitor-ip blocks icmp (ping, ….) then it will allways show offline
    you can specify any public ip as a custom monitor ip, but static routes will be added for that Ip-adress on that interface.
    So for example if you set your monitor-ip of OPT1 to 8.8.8.8 then all traffic from lan-->8.8.8.8 will go over opt1

    your gateway monitors need this to be online if you wish to loadbalance using the loadbalancer-gateway-group in your firewall rules

  • 0 Votes
    3 Posts
    1k Views
    D

    I get this when I try that:

    Fatal error: Cannot unset string offsets in /usr/local/www/system_advanced_firewall.php on line 148

  • Webinterface reachable on WAN message

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    jimpJ

    …not if you're trying to reach that IP from the LAN side.

  • Firewall blocking and need help tracking down reason

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    G

    Solved it. I knew from the beginning this was a self created problem, but I knew of no way to rule out which piece of the puzzle was causing it.

    I lucked up and found it through no special dianostic method other than remembering I had changed a setting in an attempt to solve a different problem I was having a month or so back.

    I have specified an MTU of 1460 for the WAN interface. If I set it to 1500 or blank, everything works like it is supposed to.

    I have no idea why this only affected traffic that was bypassing the proxy services.

  • Constant PPPoE disconnection

    Locked
    15
    0 Votes
    15 Posts
    6k Views
    C

    with the DHCP trick, the connection stayed alive for 2 days and counting.. but I wouldn't want to have this as a permanent solution :-\ are there any ways I can see verbose output of what is happening on the LCP ?

  • Services Status -NTPD- Reversed

    Locked
    25
    0 Votes
    25 Posts
    10k Views
    AhnHELA

    Yes!  Finally my network feels like Utopia again, many thanks JimP.

  • Upgrade problem

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    J

    Same exact problem as Sharpless. Tried the web gui and nothing happened after uploading the file. Then tried via the shell and it just gave hashes for hours on end after successful download of the file. I am running Geode LX: PC Engines ALIX.2 v0.99h tinyBIOS V1.4a (C)1997-2007

  • Traffic shaper problems in 2.0

    Locked
    10
    0 Votes
    10 Posts
    4k Views
    D

    No. I mean I tried all (really all) possibilities before finding out how to work with the queue any rule. It is not very stable but it works. I finally decided not to use it for an other reason (couldn't monitor it by pftop).

  • Can not access lan or inbound

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    R

    A few hours ago I  made adjustments to gateway , nics and upgraded to latest snapshot, and problems are solved.

    the issues were possibly  caused by adding a 3-rd nic and not configuring it correctly.

    in addition the lan has another pfsense running in production, and most computers use that as the gateway.

    i was having issues with port forward to computers which had the other pfsense set as their  router.

  • Downgrading within 2.0

    Locked
    3
    0 Votes
    3 Posts
    1k Views
    S

    Thanks.  I think my issue at the most problematic site is actually my Realtek NIC in it.  I've disabled hardware checksum and hardware tcp segmentation offloads so hopefully that should help.

  • [Solved] DNS, Packet Capture issues

    Locked
    8
    0 Votes
    8 Posts
    4k Views
    A

    Seems to be fixed. Thanks!!

  • Failover to 3G problems

    Locked
    6
    0 Votes
    6 Posts
    2k Views
    jimpJ

    @marcogi:

    @GruensFroeschli:

    The rules are processed from top to down.
    If a rule catches, the rest below is never considered.
    […]

    I thought it were the last matched rule to "win". I mean, the rules are all processed from top to down, the last rule matching the packet, catches it.
    So, what does the 'Apply the action immediately on match' in the rule editor do?

    I'm asking to clarify myself how pfsense works.

    Thanks

    Floating rules are different. Floating rules can either have quick checked to be top-down, or unchecked to be last-match-wins. Floating rules are not used by most people, and are mostly used for traffic shaping.

    On every other tab, the rules are processed top-down.

  • OpenVPN, can't connect.

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    D

    Found my own answer, the export package somehow got "stuck"

    It was still packaging up the original cert instead of the newly build ones.

    Now if anyone has advice how to fix the "WARNING: No server certificate verification method has been enabled." problem, I have tried adding:
    ca server-ca.crt
    ns-cert-type server

    But I start getting:
    Wed Feb 09 11:44:45 2011 TLS_ERROR: BIO read tls_read_plaintext error: error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed
    TLS Error: TLS object -> incoming plaintext read error
    TLS Error: TLS handshake failed
    Fatal TLS error (check_tls_errors_co), restarting
    SIGUSR1[soft,tls-error] received, process restarting

    Thanks all!

  • Ifconfig not changing media

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    jimpJ

    No other suggestions come to mind, other than avoiding USB ethernet dongles…

  • Tcpdump high CPU

    Locked
    7
    0 Votes
    7 Posts
    4k Views
    C

    pfflowd package, softflowd. Google netflow site:doc.pfsense.org

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.