Subcategories

  • Discussions about TNSR

    16 Topics
    54 Posts
    M
    We're happy to announce the release of TNSR software version 25.02. This regularly scheduled release includes additional hardware support, updates, and bug fixes. Here's what's new: Unicast Reverse Path Forwarding: Introducing Unicast Reverse Path Forwarding (uRPF) to prevent IP spoofing attacks. Both "loose" and "strict" modes available. Enhanced BGP Protection: New BGP Roles implementation (RFC 9234) to prevent route leaks and hijacks. Powerful Threat Detection: Multi-threaded Snort 3 integration for advanced IDS/IPS. NETCONF: The NETCONF service has been made available starting with this release. Regular Updates and Maintenance: Updated VPP and DPDK versions and made over 30 bug fixes and stability enhancements. Learn More: Release Notes Blog Video
  • Discussions about TNSR

    60 Topics
    133 Posts
    JonathanLeeJ
    @johnpoz I know I thought maybe he could be my study buddy for a while but never responded so I gave up .
  • Discussions about installing or upgrading TNSR software

    52 Topics
    190 Posts
    S
    Hello everyone .... I am new to security I am facing a problem in Configuring Network (WAN - LAN) in my new virtual machine of PFSense I have installed the OS in an ESXI-8 but i don't know if I am correct or no doing the interfaces Configuring for both (WAN - LAN), Also i don't know how to make traffic pass through the firewall to start monitoring & applying rules Do anyone work or use the same scenario can help me solving problems
  • Ping to VFR

    3
    0 Votes
    3 Posts
    1k Views
    W
    @derelict Our company is moving from a 16bit mask to smaller segments. This is to be done as smoothly as possible But the problem is the old address’s must stay the same but with new subnets ie 10.23.3.1/16 could now be 10.23.3.1/24. This obviously means there will be temporary overlapping subnets The idea is to use VRFs to help get this done. I’m trying to get VRF leaking to work but somehow the interfaces aren’t communicating.Therefore I thought it would be good for troubleshooting purposes to be able to ping from one VRF to the other using the cli. I know the cli is using the default VRF so it’s probably not possible to ping from another VRF but maybe there’s some kind of cool command.
  • Deterministic NAT not work

    7
    0 Votes
    7 Posts
    1k Views
    DerelictD
    @hashbang It is possible that a combination of endpoint-dependent NAT plus IPfix logging would solve the issue of matching inside addresses with outside NAT translations for compliance purposes, etc.
  • cannot show config after reboot host OS

    9
    0 Votes
    9 Posts
    866 Views
    V
    @derelict yes, it worked. I changed gw to 192.168.96.5 Many thanks
  • TNSR in proxmox droping connectivity

    13
    0 Votes
    13 Posts
    2k Views
    DerelictD
    @alan-jones That means nothing unless you are passing them through directly. Tnsr only sees virtio or vmxnet3. The underlying hardware is obfuscated.
  • Resconf API - KEA - Release Lease?

    4
    0 Votes
    4 Posts
    965 Views
    dennis_sD
    @dbeyzade Can't promise, but I will certainly pass this along to our product manager.
  • QinQ Not Working

    2
    0 Votes
    2 Posts
    525 Views
    DerelictD
    @dbeyzade I assume you're capturing in the host shell on the capture interface presented there. Your screenshot does not show any ping attempts. Is it possible to capture your entire test and post the pcap file instead of a screen shot? The same on the connected switch port would be nice as well. Thank you.
  • RESTCONF access denied when authentication set to none

    3
    0 Votes
    3 Posts
    941 Views
    D
    @kiokoman This did the trick, thank you very much :)
  • BGP Issues

    2
    0 Votes
    2 Posts
    972 Views
    delitriumD
    @jamescr We have opened a ticket for you and assigned one of our engineers to see if we can work through these concerns. Thanks!
  • ISP implementation.

    6
    0 Votes
    6 Posts
    1k Views
    L
    @derelict if I'm going to try, the problem I see is exactly the one you describe, even in mikrotik the neighbor is recognized and the changes that ospf announces. [image: 1609432992551-ospf.png]
  • 0 Votes
    5 Posts
    2k Views
    DerelictD
    @helmlein It is not intended to be this way and there is an open bug on the RA. DHCP6 features are simply not implemented yet.
  • Trouble adding host interfaces to TNSRs dataplane

    5
    0 Votes
    5 Posts
    1k Views
    T
    @derelict Thanks.
  • CentOS 8 EOL

    10
    0 Votes
    10 Posts
    3k Views
    H
    @vesalius no they do not. RHEL can always be rebuilt from the source code that rhel MUST provide per the GPL. When centos was borged by RHEL the writing was on the wall for Centos. The other rebuilds will continue because the rhel sources will always be available. https://etc-md.com/2020/12/09/the-end-of-centos-and-my-moving-to-bsd/
  • TNSR on VMware Player

    2
    0 Votes
    2 Posts
    513 Views
    DerelictD
    @robing They need to be a type of NIC that dpdk supports. It should basically work with vmxnet3. Not sure what the capabilities of vmware player are.
  • Weird issue

    10
    0 Votes
    10 Posts
    1k Views
    S
    @schnitzel_itdept Can do you do a packet capture on server B to double check all advertisements are received correctly?
  • Ansible + TNSR + OpenStack ?

    2
    0 Votes
    2 Posts
    1k Views
    audianA
    @capitanblack Thanks for your interest. TNSR provides a RESTCONF API. I'm not aware of anyone that has attempted to integrate or test the API against Openstack/Ansible, but if those tools can make RESTCONFI requests it should be possible for them to configure TNSR. The TNSR API docs can be found here: https://docs.netgate.com/tnsr/en/latest/api/ Feel free to send more questions or update us on your progress!
  • This topic is deleted!

    1
    0 Votes
    1 Posts
    7 Views
    No one has replied
  • TNSR

    9
    0 Votes
    9 Posts
    1k Views
    ?
    Time to put a CAPTCHA on logins? I dislike those things but sometimes you do what you gotta do...
  • This topic is deleted!

    4
    0 Votes
    4 Posts
    24 Views
  • This topic is deleted!

    4
    0 Votes
    4 Posts
    26 Views
  • TNSR Business Confusion.

    3
    0 Votes
    3 Posts
    859 Views
    S
    The pricing from here is $500 per year for the Business Pro plan. There is no minimum/maximum speed, it's flat rate. It's not a replacement product for pfSense so your network doesn't need to be 'big enough' to benefit from it, you may use it even for the smallest networks if you wanted.
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.