• PfSense 2.4.0-RC - snort installation error

    18
    0 Votes
    18 Posts
    3k Views
    S

    @bmeeks:

    The fix for the XMLRPC error has been submitted for review and approval by the pfSense developers.  Here is a link to the pull request:  https://github.com/pfsense/FreeBSD-ports/pull/418.

    Thanks to @doktornotor for the tip to copy and paste his working code from the Suricata package.

    Bill

    Updated all three firewalls with the new snort version today. Sync works perfect :) Thank you !

  • 2.4 is it stable enough?

    8
    0 Votes
    8 Posts
    2k Views
    P

    @jimp:

    Start your own thread with a specific subject, don't use this one that is not related to your problem.

    Sorry. Actually, I did start a thread on this subject last week. Need to update it with what I found about crypto acceleration. Maybe you could comment?

  • No Packages?

    8
    0 Votes
    8 Posts
    2k Views
    M

    I replaced the contents of those two files with what was provided.  I will try it again in a week or so when some new builds are available.. thank you.

  • What's up with 2.4 RC/release/snapshots?

    4
    0 Votes
    4 Posts
    1k Views
    D

    Thanks, looks like it's pretty much settled ATM (2017-15-09). See below :D

  • MOVED: where GRE service ?

    Locked
    1
    0 Votes
    1 Posts
    420 Views
    No one has replied
  • IPv6 only??

    2
    0 Votes
    2 Posts
    877 Views
    junicastJ

    I upgraded to 2.4 as well and had IPv4 issues. In my case there was a public IPv4 address assigned to my pppoe interface but I wasn't able to get from my LAN to the Internet via IPv4 masquerading.
    I suspected a NAT issue and grepped through the log for NAT.
    Funny thing is I don't exactly know what solved my issue. I saw some strange error logs regarding squid which was installed due to restoring my old 2.3 config. I removed squid and squidguardian.
    After a couple of reboots IPv4 was working. There may have been some other minor measures which might have led to working environment, but I'm not really sure, sorry.

    Maybe you can browse the log and see if there's something suspicious. Also please try to inspect what IP addresses your WAN interface have assigned.
    BTW: My NAT setting is manual outbound NAT.

    Edit:
    I also removed my QoS rules.

  • Setting vanished on latest RC build

    5
    0 Votes
    5 Posts
    792 Views
    D

    @spazicus:

    You could set it in the config.xml manually:

    command>/usr/bin/nice -n20 /usr/local/sbin/expiretable -v -t 3600 webConfiguratorlockout

    :o ???

    This has nothing to do with wrong passwords and lockout. The question was about dashboard/widgets refresh (which was completely done over to use "centralized" AJAX calls for all the widgets recently so the setting was removed.)

  • 0 Votes
    5 Posts
    6k Views
    B

    I had a similar experience upgrading from 2.3.4-p1 (pfBlockerNG and Suricata) to 2.4-RC. Package Manager did not show either available or installed packages. Missing pfBlockerNG rules generated error messages. Report was uploaded(?) to devs. Reinstalled 2.3.4 then upgraded to 2.3.4-p1. Reinstalled both packages.

    I'll try a fresh install with official release.

  • RAM required for ZFS?

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    valnarV

    I ordered an APU2 board with 4GB RAM so I should be good.  Thanks everyone.

  • Intel ix driver woes

    3
    0 Votes
    3 Posts
    1k Views
    S

    This is now resolved.  Looks like one of my sfp+ optics was bad.  replaced and now all is well.  With link on both interfaces

  • Error 502 - Bad Gateway

    3
    0 Votes
    3 Posts
    562 Views
    B

    Yes it is.

  • Encrypted ZFS no keyboard during boot

    11
    0 Votes
    11 Posts
    3k Views
    S

    @kpa:

    Yes, the native encryption is not in the OpenZFS inplementation (yet), at the moment it's only in Solaris and of course it's closed source because Oracle sits on top of it.

    The main problem with GELI and the keyboard input during the password entry time is that it relies on the BIOS/UEFI PS/2 keyboard emulation when a USB keyboard is used, on many systems this emulation is completely broken for other operating systems than MS Windows and nobody has been able to come up with fixes for FreeBSD to make the emulation work on the problematic systems.

    Thanks for the extra info.

    I decided to remove encryption and go with just ZFS. I can still do zfs send/recv which is actually the more important feature of the two.

    Offtopic, but with all the layoffs at Oracle completely cutting away the Solaris and ZFS departments, maybe (I know, wishful thinking) they will release the code to the community?

  • ZFS install

    6
    0 Votes
    6 Posts
    1k Views
    B

    you aren't alone, I too ran into the space bar problem for a few minutes  ;).

    glad to hear you got it up and running!

  • MOVED: Traffic Shaping issue whith squid

    Locked
    1
    0 Votes
    1 Posts
    348 Views
    No one has replied
  • 2.4 Captive Portal broken!

    4
    0 Votes
    4 Posts
    1k Views
    D

    Thanks for testing, hopefully will get fixed again before 2.4.0 release.

  • Status.php log-ppp-last1000 is blank

    1
    0 Votes
    1 Posts
    392 Views
    No one has replied
  • 0 Votes
    9 Posts
    1k Views
    G

    went and copied my mpd.conf file to cf/conf/  edited the enable to disable and turned off ipv6

  • OpenVPN status showing incorrectly.

    1
    0 Votes
    1 Posts
    627 Views
    No one has replied
  • IGMP woes

    1
    0 Votes
    1 Posts
    670 Views
    No one has replied
  • Captive Portal - "Per-user bandwidth restriction" Reversed

    2
    0 Votes
    2 Posts
    823 Views
    C

    @BreeOge:

    The Captive portal bandwidth restrictions are reversed.  Download is Upload and Upload is Download from the user point of view.  Would be correct if looking at it from the WAN point of view.  However it says per logged in user, so I would expect its suppose to be from the User's point of view.  Using 2.4 latest version.

    I dont think it is reversed as much as it flat out isnt working. I just made a thread about it, I have mine set to 2500 and 100, and yet users on it can get 100mbps download speed, so unless its reversed and in mbs now lol.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.