Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    HAProxy set up with ACME Cert and CloudFlare

    Scheduled Pinned Locked Moved pfSense Packages
    4 Posts 4 Posters 1.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      perplexed
      last edited by perplexed

      Hello all and thank you in advance for your guidance.

      I recently started dabbling with pfsense and decided to get into this more with my home network.

      A few notes on my set up:

      1. Packages I have installed are: pfblockerNG_level, ACME & HAProxy
      2. I am routing my network traffic through PIA
      3. My NAS is specified as using SSL

      Followed the steps in this video but have issues still, so hoping someone can point me in the right direction: SSL Encryption on Your Home Server the SIMPLE WAY - Cloudflare, pfSense, HAProxy, ACME https setup

      The goal was for me to be able to access pfsense and my NAS externally.

      Issues:
      Firstly, internally, I cannot access my NAS, I get an ERR_CONNECTION_REFUSED
      Externally for my NAS, I get and ERR_FAILED.

      Below is my cloudflare set up:
      e70473e6-4923-41b1-9813-c22004a7233c-image.png ![alt text](image url)

      Appreciate any advice. Thanks

      D 1 Reply Last reply Reply Quote 0
      • D
        da_Beast @perplexed
        last edited by

        @perplexed I know this is old but I don't look here often...

        You posted what I am assuming is your public DNS entries but nothing on what you configured in your pfSense.

        Can you show us how the HAProxy is configured? I would also suggest disabling the pfBlocker until you get this working - in case you configured it to block your traffic in error.

        1 Reply Last reply Reply Quote 0
        • imWACCoI
          imWACCo
          last edited by

          Ok, I know this is an old post, but I'm going by the same guide video.

          I get to HAProxy, and it doesn't have the "ACME cert" in the CA list

          Anyone know what to do? I'm a n00b with this part

          <$signature>

          M 1 Reply Last reply Reply Quote 0
          • M
            mcury Rebel Alliance @imWACCo
            last edited by

            There is a new video, perhaps it can help you..
            It was released today.

            dead on arrival, nowhere to be found.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.