• Home network setup with SG-3100

    6
    0 Votes
    6 Posts
    1k Views
    C
    Got it figured out!! Resetting my cable modem fixed the issue. I guess the pfsense SG-3100 wasn’t getting an IP from my ISP... but resetting it worked. Thanks!!!
  • Package reinstallation fails on 2.4.5 with config.xml backup

    3
    0 Votes
    3 Posts
    770 Views
    stephenw10S
    If you can reach the gui and have made that change then you should be able to restore the config again and it will pull in the packages at that point. Steve
  • 0 Votes
    5 Posts
    742 Views
    stephenw10S
    The maximum table size actually needs to be around double the size of the tables you are loading as it loads in the new tables at update before removing the old ones. 1M is usually sufficient for bogonsv6 and few large pfBlocker tables. Steve
  • 2.4.5 on Hyper-v network issues

    4
    0 Votes
    4 Posts
    349 Views
    stephenw10S
    Yeah, it's almost certainly all the same root cause. We are working to find and resolve that. For some reason it seems to affect Hyper-V especially badly. Going to 1 CPU core will likely work around it, at obvious expense, until we do. Steve
  • Downloading Older PFSense Versions

    6
    0 Votes
    6 Posts
    2k Views
    stephenw10S
    If you're coming from 2.3.X you should select the 2.4.4 update branch to reach 2.4.4p3 first. Then go from there to 2.4.5. It will likely fail a direct upgrade from 2.3.4 to 2.4.5. However I would recommend installing 2.4.5 clean and restoring your config into it. The jump from 2.3.4 is large. Steve
  • pfSense upgrade from 2.4.4_p3 to 2.4.5 on BHYVE (FreeNAS)

    2
    0 Votes
    2 Posts
    404 Views
    stephenw10S
    Probably this: https://redmine.pfsense.org/issues/10414 Try setting the VM to one CPU as a test. Steve
  • 0 Votes
    4 Posts
    629 Views
    jimpJ
    You should reinstall 2.4.5 again and make sure you restore a config from 2.4.4-p3 or 2.4.5. The 2.5.0 configuration is not compatible with 2.4.5 and is likely the source of your problems.
  • 2.4.5 Update

    16
    0 Votes
    16 Posts
    2k Views
    S
    No earth shattering issues upgrading my MBT-4220. I took the reboot-before-upgrade path and nothing jumped out. I did see a few messages relating to needing a few more Mb for a package but the update process succeeded. The entire process took about 10 minutes. All packages are up to date and all services started as normal.
  • pfSense v2.4.5 not able to resolve Domain Overrides against itself

    5
    0 Votes
    5 Posts
    920 Views
    L
    @cthomas What do you have System -> General Setup -> DNS Server Settings ->Disable DNS Forwarder set? The description appears apropos to your situation: Do not use the DNS Forwarder/DNS Resolver as a DNS server for the firewall By default localhost (127.0.0.1) will be used as the first DNS server where the DNS Forwarder or DNS Resolver is enabled and set to listen on localhost, so system can use the local DNS service to perform lookups. Checking this box omits localhost from the list of DNS servers in resolv.conf. Cheers, Liam
  • Pfsense images are constantly corrupt on windows 10 :(

    14
    0 Votes
    14 Posts
    5k Views
    B
    Faced the same problem. When installing in Windows, an error occurred checking the checksum. I downloaded the daily build and everything was fine.
  • Can't update packages on 2.4.5

    9
    0 Votes
    9 Posts
    1k Views
    GertjanG
    To be sure : look up all the 'snort' and 'squid' posts from the last 2 weeks or so. You'll find a way to put things back in track.
  • How to forward ISP provided vlans to an interface?

    16
    0 Votes
    16 Posts
    2k Views
    O
    @stephenw10 said in How to forward ISP provided vlans to an interface?: I assume you mean em(4)? But it shouldn't matter what NIC/driver you use. Add a VLAN 35 on em2 and assign that as an interface. If can pull two dhcp leases, and if others have this working with a switch is might, then bridge that VLAN interface with the WAN as I assume you have done with the other VLANs required. If not then you can enable that interface and set some unused static IP on it. Enable the dhcp server on it and the HH3000 should pull a lease. Add firewall rules if it actually need to get out to check connectivity. What do you have setup currently. Steve I'm not sure I can pull two dhcp leases or not, but if I did bridge it correctly, i guess not? [image: 1586391895481-wan.png] [image: 1586391903724-interfaces.png] [image: 1586391916769-bridges.png] [image: 1586391921184-hh3000-em2.png] [image: 1586391924811-hh3000-vlan.png]
  • Disk space completely vanished after failed ZFS install

    2.4.5 zfs installation
    5
    0 Votes
    5 Posts
    1k Views
    stephenw10S
    I would probably try low-level formatting it using the Intel SSD tool if you have Windows available. Steve
  • Can I update from 2.4.4-p2 to 2.4.4-p3 now?

    4
    0 Votes
    4 Posts
    553 Views
    P
    Just a follow up that update worked as expected on both firewalls in the cluster, from -p2 to -p3. We'll wait a while for kinks to get ironed out of 2.4.5 before upgrading.
  • 0 Votes
    31 Posts
    3k Views
    nzkiwi68N
    @Derelict I agree. Initially it fooled me, because, it just "happened" to settle down as I exited CARP persistent maintenance mode, but, now, like all the other cases, I'm convinced there is a serious underlying issue with 2.4.5 that causes high CPU usage and the gateway latency and dropping packets. It's NOT an HA or CARP issue.
  • 2.4.5 consume a lot more RAM comparing with 2.4.4

    10
    0 Votes
    10 Posts
    1k Views
    Q
    @stephenw10 yeap, it is seem to be corrected. All the previous versions may be wrong
  • Upgrade to 2.4.5 Fails

    6
    0 Votes
    6 Posts
    1k Views
    stephenw10S
    It certainly could be related. If you were seeing connection issues during the package download it would fail. Steve
  • I am having trouble with the UEfi

    12
    0 Votes
    12 Posts
    2k Views
    stephenw10S
    Not easily but once it's installed you can add that line to /boot/loader.conf.local if it works. Steve
  • New SG-3100. Cannot access Setup Wizard/Web UI

    12
    0 Votes
    12 Posts
    2k Views
    ajtradtechA
    @Gertjan said in New SG-3100. Cannot access Setup Wizard/Web UI: @ajtradtech said in New SG-3100. Cannot access Setup Wizard/Web UI: but not to my home network while I get the firewall rules squared away. If your home network, your LAN, only has devices you trust, you have nothing to do. The default WAN rules, that is no rules at all, and one default pass all rule on LAN, works well. If you have devices that you don't trust, never forget the most logic action : remove the device from all known networks. Like this, the unknown issue bug will never bite you. This solution is fool proof for live and beyond. If you have to accept this non trusted device on your network, put it on a dedicated, sedonc (third) network that can only communicate to the Internet, and you decide with rules, for this (these) devices(s) where to, with who, etc. When you make an error, you won't risk much. Never have these devices access your LAN based (trusted) devices. Using internal networks like this is they way firewalls routers should be used. Always keep it simple (for yourself) and try to make firewall rules that you understand and are able to test. For that matter, don't even trust your own firewall : test what you want to achieve. Thanks for your advice. It mirrors what I'll be attempting- segregating some IoT devices. I'll start a separate thread for that, though. Looking forward to the community's input there. I've unlocked some interesting opportunities with this pfSense box!
  • 2.4.5 Update Caution

    54
    0 Votes
    54 Posts
    13k Views
    chudakC
    @stephenw10 Thank you ! And I want to repeat - pfSense is awesome and I’m glad I made several years ago to to switch to it !
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.