First thank you for the prompt reply on this issue, here are the interface driver of em0 for both firewalls:
[Release 1.2.3]
sysctl dev.em.0.%desc
dev.em.0.%desc: Intel(R) PRO/1000 Network Connection 6.9.6
[Release 2.0 RC1)
sysctl dev.em.0.%desc
dev.em.0.%desc: Intel(R) PRO/1000 Legacy Network Connection 1.0.3
Just download the ISO file, burn it and install it on a PC. It will probably just work. I've never ran pfSense on anything but normal PC's (and laptops). Here is the Hardware Compatibility List: http://www.pfsense.org/index.php?option=com_content&task=view&id=46&Itemid=51
There might be good reason that your system is using a 1GB image. For instance some newer "2GB" cards are not big enough to fit the 2gb image. Or it could be, like me, that who ever wrote the card couldn't be bothered to write a 2gb image since it takes so damn long over a usb 1 connection! :P
There's no real disadvantage to using a 1gb image and it's guaranteed to fit.
Steve
@dds:
Any other idea Howto install pfsense on soekris net4801?
In theory the following should work (though I have no experience with that board):
write the pfSense embedded (or nanoBSD) image to a compact flash of at least 1GB on another PC and then put the compact flash card in the CF slot on the motherboard and then boot.
http://doc.pfsense.org/index.php/Installing_pfSense provides more details.
Well, i will try without the traffic shaping features, when i do this i will post the solution, another thing there is the possibility for example of installing pfsense.. and then create a bootable cd that contains my preconfigured pfsense install??
Hi,
Yes its true I didnt set up the original box ;) Yes its going to have static IP but I need it to take over the IPs the box in production has.
So I need to set it up on a different IP initially so I can play around with it and "duplicate" the rules/settings/options. Once that is done Im planning to change the IPs to the production IPs and just neatly shut down the old box, jack in tp cables in the new box and start it up. :)
Anywho. Your answers has given me enough information to go on and I think I can start messing around with this now.
Thanks for the help!
Does a firewall rule block (and log) your ping attempt? See firewall log in web GUI: Status -> System logs, click on Firewall tab.
On my pfSense box I get responses when I ping the IP address of the LAN interface and the IP address of the WAN interface.
You can install the backup package to make a backup of /var/db/rrd/ and then restore it on the 2.0 box. If I remember right, it should upgrade the rrd files if it finds them in the old format.
If that works you'll probably want to then change your firewall rule as you'll then have it setup to allow access from DMZ to LAN, probably not something you want.
For example I have attched my rules on my wifi interface.
I want to allow wireless clients access to internet. To do that I allow access the local dns forwarder. I also allow access to the pfSense gui for my convenience. My last rule allows access to anywhere except the IP alias LOCAL which is 192.168...
Pretty much everything I have taked about earlier in this thread is more eloquently explained here.
Steve
[image: pffw1.jpg]
[image: pffw1.jpg_thumb]