Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Is pfSense blocking Outlook login (TPM)?

    Scheduled Pinned Locked Moved General pfSense Questions
    9 Posts 5 Posters 755 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • U
      usaevo7
      last edited by

      Ive been having this issue roughly since installing pfSense back in 2020 (might be coincidental). I run pfsense on the Protectli Vault 4 Port with config recommendations from Lawrence Systems (youtube- ntopng/pfblockerng/suricata). When deploying new workstations on our network I run into a login issue as seen in the attached image reference an issue with the TPM. After researching this issue I have found a work around (registry fix per workstation) but I would like to fix the firewall if I can confirm its at fault. Ive tried looking through logs but I dont see any pings related to it. I have used a remote hotspot to give the PC internet access to bypass our local internet and that does work so I know its an internet specific issue. Not sure what to do at this point. Maybe I have some sort of DNSBL list block Microsoft but that shouldnt effect encryption or authentication I would this and there would be other errors. Any help is appreciated.
      TPM error

      S johnpozJ N 3 Replies Last reply Reply Quote 0
      • S
        SteveITS Galactic Empire @usaevo7
        last edited by

        @usaevo7 A TPM is internal hardware in the PC and doesn't connect to anything. It can be a BIOS setting (to enable/disable) or an add-on chip on some boards. It's required for Windows 11 which came out in 2021...

        Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
        When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
        Upvote 👍 helpful posts!

        1 Reply Last reply Reply Quote 0
        • johnpozJ
          johnpoz LAYER 8 Global Moderator @usaevo7
          last edited by johnpoz

          @usaevo7 if your time is off that could do it - are you allowing devices behind pfsense to set time? Other than that I can't see pfsense having anything to do with your problem.

          Could be issue talking to yoru domain, are they connecting in via vpn to your domain?

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.8, 24.11

          1 Reply Last reply Reply Quote 0
          • U
            usaevo7
            last edited by

            To add a bit more information, all workstations are local. Local domain server is NTP with failover as global NTP but I havent looked into that in a while. This error occurs during setup of desktop version of Outlook (2021-2016) which causes the TPM to crash completely. All other authentication online happens like normal. The workaround is to add the ProtectionPolicy = 1 Regedit. Then Outlook authenticates fine and the TPM doesnt crash. This is an older DC so it might be domain related but nothing has changed DNS or DHCP wise to start kicking out these errors. Unless Microsoft changed some sort of authentication process around the same time I put this device in. Like I said originally, it could be coincidence but Im just trying to prove that to myself I guess. Is it everyones consensus that pfSense would not be able to cause this kind of issue then? Thanks

            S 1 Reply Last reply Reply Quote 0
            • S
              SteveITS Galactic Empire @usaevo7
              last edited by

              @usaevo7 I’d think it super unlikely. We have ourselves and lots of clients on a domain with pfSense. PfSense can’t interact with LAN traffic which doesn’t reach pfSense. So at best it’d be something connecting to the Internet. Maybe try unplugging the next PC when you install Office?

              I’d wonder why the TPM is involved in Office. I’ve heard of gaming DLC, or BitLocker or other encryption.

              Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
              When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
              Upvote 👍 helpful posts!

              S 1 Reply Last reply Reply Quote 0
              • S
                SteveITS Galactic Empire @SteveITS
                last edited by

                Huh. https://learn.microsoft.com/en-us/office/troubleshoot/activation/tpm-malfunctioned

                Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                Upvote 👍 helpful posts!

                1 Reply Last reply Reply Quote 0
                • N
                  nanoken @usaevo7
                  last edited by nanoken

                  @usaevo7 this is literally nothing to do with pfsense. You need understanding on TPM.may as well blame pfsense for Covid it’s that unrelated.

                  johnpozJ 1 Reply Last reply Reply Quote 0
                  • stephenw10S
                    stephenw10 Netgate Administrator
                    last edited by

                    Mmm, that's an issue with the local TPM device on thew workstation. Nothing to do with pfSense.

                    1 Reply Last reply Reply Quote 0
                    • johnpozJ
                      johnpoz LAYER 8 Global Moderator @nanoken
                      last edited by

                      @nanoken said in Is pfSense blocking Outlook login (TPM)?:

                      may as well blame pfsense for Covid it’s that unrelated.

                      I wouldn't be surprised to be honest that someone prob has blamed it ;) It was routing their 5G connection and brought it into the house - what is the good of firewall that can't filter out the covid from the 5G signal.. hehehehe

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 24.11 | Lab VMs 2.8, 24.11

                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.