• SG-3100 throughput with pfBlockerNG and Suricata

    1
    0 Votes
    1 Posts
    358 Views
    No one has replied
  • Netgate SG-2100 and VLAN ports questions

    5
    0 Votes
    5 Posts
    1k Views
    stephenw10S
    You may well be able to script something. Or modify one of the existing scripts. It would be unsupported though. You would have to take care at firmware upgrade to ensure the scripts were replaced etc. Steve
  • 6100 - VLAN Interconnectivity

    Moved
    2
    0 Votes
    2 Posts
    606 Views
    jimpJ
    The ports on the 6100 are completely independent. The only way to make them work the way you describe is via bridging.
  • New 6100 Crashes

    13
    0 Votes
    13 Posts
    1k Views
    P
    @nikolaosinlight Ok, I might have interrupted the crash dump gathering. Thank you.
  • TPLink (Sky MER) compatibility w/ Netgate 1100

    17
    0 Votes
    17 Posts
    2k Views
    stephenw10S
    Yeah, I used a Draytek V120 with ADSL for years. It just worked. When my last Huawei HG612 expires I might have to go to the V130. Unless FTTP has arrived by then. Steve
  • Secure Router Concept?

    9
    0 Votes
    9 Posts
    1k Views
    stephenw10S
    pfSense is designed to be a web configured firewall. It's pretty much the reason it exists! You could block access to the webgui on every interface and just use links at the console directly: [image: 1637421294924-screenshot-from-2021-11-20-15-11-02.png] It's pretty inconvenient though for the security it gets you. At some point int the future this might become a more practical option as we move functionality out of the front end. Steve
  • 6100 + Zen FTTP (UK) + NordVPN Setup

    30
    0 Votes
    30 Posts
    4k Views
    B
    @stephenw10 thanks Stephen, my idea is just to have a 100% safe laptop/PC only to access the router. I don't think you need to be connected to the net to login/configure the router(?) I'm also looking at Linux & physically removing the wifi/bluetooth capabilities. Or even OpenBSD/FreeBSD OS... Thanks Tails may be going too far for me, but I will need to understand it better. Hopefully a VPN will be enough to stop them acquiring my IP. Anyhow, I think I'm started to understand enough to know that I am going to give the Netgate 6100 / PFSense a go - then add additional security measures on top. Just some last Qs, since all this networking lark requires a fair bit of knowledge, and is therefore easy to mess things up in configuration - Would I be able to get someone from your support to screenshot me the [100%] correct setup/configurations for whatever I decided to go with in terms of devices/clients and addons such as pfBlockerNG-Devel? Am I going to need a separate switch to do VLANs? Should I add Squid / ACLs for extra security? If possible, can briefly explain how ACLs will help (I can't figure it out with VLANs & whether it's necessary). Thank you very much!
  • Parental control

    3
    0 Votes
    3 Posts
    842 Views
    C
    @steveits thank you for the reply, I had thought about setting it up with the double nat, its how my current system is, mostly because i was being lazy. I am getting ready to buy some security cameras and was thinking it would be wise to create an IOT ssid and segregate it off with vlans and I am not sure that would work very well with a double nat type setup.
  • Having an issue with XG-2758 firmware update

    13
    0 Votes
    13 Posts
    1k Views
    stephenw10S
    Excellent!
  • Netgate-SG4860

    3
    0 Votes
    3 Posts
    673 Views
    jimpJ
    You can still get in if the console is password protected, it's just trickier. https://docs.netgate.com/pfsense/en/latest/troubleshooting/locked-out.html
  • Replace SG-1100 power supply: 1A sufficient?

    Moved
    12
    0 Votes
    12 Posts
    2k Views
    C
    @stephenw10 : also, how can I be 100% certain that the plug polarity required is as follows? Barrel / conductor / outside: minus Tip (inside): plus This is the most common plug type but if it’s reversed I may damage the unit. Thanks, Pete [edit: never mind that, it's written on the bottom of the device]
  • Manage Switch Ports from Console

    4
    0 Votes
    4 Posts
    709 Views
    stephenw10S
    Applying a change by playing back a php shell script is the same as editing it in the GUI. Assuming the script is correct! Both those things apply changes via the etherswitchcfg command. So, yes, I'd expect the behaviour to be the same at the time of the change. Steve
  • Moved to Netgate 6100

    6
    0 Votes
    6 Posts
    905 Views
    stephenw10S
    Hmm, not that then. You can remove that cron-job if you don't have Squid installed. Hard to say what that might have been then. You'd have to check the process list while it was stuck, after restring the config. Steve
  • SG-1100 Switch Menu Concept

    3
    0 Votes
    3 Posts
    602 Views
    stephenw10S
    Indeed, the VLAN group number there is just to define the config entry. You could define those in any order and the resulting switch config would be the same. Steve
  • Netgate 6100 dropping LAN

    14
    0 Votes
    14 Posts
    1k Views
    R
    @stephenw10 said in Netgate 6100 dropping LAN: Does the Avahi service actually stop? If so a possible workaround would be using the service watchdog package. Steve It doesn’t seem to stop, or if it does, it doesn’t seem to stay stopped as the icon in Status > Services shows a green check when I’ve gone in to restart it.
  • SG-1100 Big error during update - Need help

    Moved
    3
    0 Votes
    3 Posts
    602 Views
    A
    hello with good software img all is ok now thanks
  • Netgate 2100 not recognizing all interfaces

    2
    0 Votes
    2 Posts
    582 Views
    S
    @ajturner The LAN ports are a switch. You can configure them to be discrete ports.
  • *NEW* 6100 Crashed 4 Times in < 12 hours (likely Dual WAN)

    Moved
    12
    0 Votes
    12 Posts
    1k Views
    N
    @stephenw10 Thank You for that information. Is there a possibility to cross-ship. The unit is effectively useless. I cannot use it... resell it or anything else... and shipping and waiting for customs is a huge business impact. We bought this to take advantage of a fibre line using the SFP+ port for a service we planned on launching this weekend. I would appreciate it if Netgate can ship the unit overnight AIR "immediately" and I will definitely get this defective unit in the hands of courier ASAP today after I receive the label. --Nikolaos
  • SG-1100 dropping WAN connection

    4
    0 Votes
    4 Posts
    727 Views
    S
    @scooterwa Generally the 65 error is if the cable is unplugged, the other end isn't responding, etc. No communication. You might try putting a switch in between the pfSense and the Netgear just to see if that helps? I've seen posts occasionally that it does.
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    11 Views
    No one has replied
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.