• Watchguard Firebox M400/M500

    596
    0 Votes
    596 Posts
    782k Views
    K

    @stephenw10 i have strange fetish for this kind of devices,i'd like to get my hands on them,but still,i'll have to use some bigger pc-like or passive and keep those for tinker purposes...
    i didn't even installed windows 10/11 there yet..just for fun

    addon card eats about 2.5W idle unconnected.i'm now down to ~23.8W

  • Changing Nic on PFsense Plus

    5
    0 Votes
    5 Posts
    320 Views
    H

    OK, Thanks Stephen

  • recomended nic

    1
    0 Votes
    1 Posts
    164 Views
    No one has replied
  • ZFS RAID Concerns

    11
    0 Votes
    11 Posts
    1k Views
    stephenw10S

    It would for that Cron job but you could run it more often or on a different day etc.

  • Mellanox connectX4 interface card needs special settings. How !?

    4
    0 Votes
    4 Posts
    379 Views
    stephenw10S

    You shouldn't need to load a driver for those, it's in kernel:

    [25.03-BETA][admin@4200.stevew.lan]/root: kldstat -v | grep mlx 586 mlx4en 585 mlx4 587 pci/lkpi_mlx5_core_pci_table 584 pci/lkpi_mlx4_pci_table 233 pci/mlx 232 mlx/mlxd

    BTW that ALTQ setting only applies to hn(4) NICs, so only in Hyper-V or Azure.

  • LAN Port seems to be capped at 100baseT

    7
    0 Votes
    7 Posts
    607 Views
    stephenw10S

    Just go to Interfaces > Assign and set LAN to a different NIC. But I'd want to have some other way to access the firewall first so you can revert the change if you need to. The direct console for example.

  • New CPU/Plattform REcommendation

    15
    0 Votes
    15 Posts
    2k Views
    S

    @stephenw10 yea I only got 10G NICs. I tested on the host itself for today to get the setup right. Tomorrow I am going to test with my 2 Servers which are capable of doing 10G via SFP+

  • pfSense freezes at startup only when rebooting

    5
    0 Votes
    5 Posts
    539 Views
    M

    @patient0 Once it hits what it shows in the picture there's zero response from they keyboard. That's just my terminal monitor and keyboard that I connect to my hypervisor and pfSense box if I need direct access.

  • 0 Votes
    5 Posts
    611 Views
    jimpJ

    @Sergei_Shablovsky said in Screen fonts & mode in local terminal issue:

    Already have in /etc/loader.conf

    :charset=UTF-8:
    :lang=en_US.UTF-8:
    :setenv=LC_COLLATE=C:
    :umask=022:

    But unsuccessfully, - the result You able to see above….

    Those are not loader.conf configuration directives, those look like /etc/login.conf configuration. (And read the note at the top of that file, especially the part where you have to run cap_mkdb /etc/login.conf after any edits)

    It does seem like you have some sort of issue/mismatch with UTF-8 handling somewhere, but it's hard to say exactly where. I have no issues with UTF-8 in my terminals over serial or SSH but I have no idea what that KVM setup might be doing.

  • 0 Votes
    7 Posts
    962 Views
    E

    Hi! At the moment, the average traffic is around 4 Gbps

  • Intel 82599ES; GPON SFP module not working

    29
    0 Votes
    29 Posts
    6k Views
    stephenw10S

    That's a fun thread. 😁

  • Netgate 6100 Instability

    8
    0 Votes
    8 Posts
    1k Views
    stephenw10S

    Normally not but if you're relying on NAT reflection that would be via the firewall in both directions. Both devices on the LAN would see the traffic as via the LAN interface.

  • Intel EIG44HT or EIG44ET?

    10
    0 Votes
    10 Posts
    1k Views
    M

    I was going to go with EIG44ET but then I discovered the i350-T4 V2 which is newer than the i340.

    https://www.amazon.com/dp/B01DIT7GH4?ref=fed_asin_title

  • PF Sense not seeing my 2nd SFP+ port

    1
    0 Votes
    1 Posts
    202 Views
    No one has replied
  • Questions about building my own cellular wireless modem

    2
    0 Votes
    2 Posts
    319 Views
    E

    @sleleeeee

    Welcome!

    I use an external LTE modem for failover WAN. Makes it transparent to pfSense.

    Depending which country and provider.

    US: https://www.netgear.com/home/mobile-wifi/lte-modems/lm1200/

    EU: https://www.netgear.com/uk/home/mobile-wifi/lte-modems/lm1200/

  • Not able to access new SG-1100

    2
    0 Votes
    2 Posts
    306 Views
    B

    Resolved - Thanks to Netgate support - was able to use console to do a factory reset & then able to login with default credentials.

  • 0 Votes
    28 Posts
    3k Views
    A

    @stephenw10 thanks for the catch. fixed the post. i did manage to find another url hosting the rom but it seems ive misplaced it. if i ever come across it in my notes ill add it to the thread.

  • Watchguard XTM 5 Series

    1k
    0 Votes
    1k Posts
    2m Views
    A

    I know this is an old thread but for anyone attempting this in 2025 this might help. See the last post I made in this thread. https://forum.netgate.com/topic/197131/can-someone-help-me-with-the-bios-mod-on-really-old-hardware-watchguard-xtm-5

  • Stuck In Marvel U-Boot

    9
    0 Votes
    9 Posts
    2k Views
    stephenw10S

    @rrocha said in Stuck In Marvel U-Boot:

    setenv bootcmd 'setLED; run emmcboot;'

    You need another 'run' in there like:
    setenv bootcmd 'run setLED; run emmcboot;'

  • OpenSSL not loading full SafeXcel capabilities.

    35
    0 Votes
    35 Posts
    4k Views
    JonathanLeeJ

    @Gertjan I am attempting to offload the encryption to the SafeXcel chip, I have had it running in the past with OpenVPN again I am also testing use of it with squid and my swap partition, but of those cause the interrupts to be incremented, but all the sudden OpenVPN will not use the SafeXcel chip anymore and it did with this version a couple months ago. Something is different as it should utilize it like it did in the past. I originally thought it could only be used by one component, that could be fstab file and use of .eli to encrypt the swap and or using it with squid for acceleration of ssl certificates, but they both work, all the sudden OpenVPN won’t increment the counters anymore. It’s weird because from what I am told OpenVPN should do this automatically, the new versions of software remove use of hardware crypto and OpenVPN but I can’t even run tests it acts like the chip does not load. That’s where it has confusion it should still see the counters increment in the system but it does not. It does drastically improve performance with the “ssl engine” directive in squid. Again not many people use .eli at the end of the swap config in fstab. So it’s kind of a trial and error thing. Goal faster vpn access to my private NAS.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.