Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Can we get an update from pfsense team on 24.08 status?

    Scheduled Pinned Locked Moved Plus 24.11 Development Snapshots (Retired)
    48 Posts 9 Posters 9.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • DefenderLLCD
      DefenderLLC @behemyth
      last edited by DefenderLLC

      @behemyth said in Can we get an update from pfsense team on 24.08 status?:

      Could someone from the pfsense team give us an update on the status of 24.08?

      Do you guys plan on holding snapshot upgrades for awhile while you add in new features that were announced? We all just want to know if we should downgrade to the previous version for security fixes, ect.

      The only reason to run this is to test it, and if there are zero updates coming anytime soon, no reason to stay on it.

      Thanks

      @stephenw10 @jimp

      I've removed my 6100 MAX from my network topology until 24.08 is officially released. UniFi finally offers DoH to custom providers now which will get me by for the time being.

      It's disturbing the we're approaching 2 months since the latest snapshot build and it's been crickets from Netgate on all posts like this one. Some transparency would be nice - especially when you break the normal development lifecycle.

      B 2 Replies Last reply Reply Quote 4
      • B
        behemyth @DefenderLLC
        last edited by

        @DefenderLLC said in Can we get an update from pfsense team on 24.08 status?:

        @behemyth said in Can we get an update from pfsense team on 24.08 status?:

        Could someone from the pfsense team give us an update on the status of 24.08?

        Do you guys plan on holding snapshot upgrades for awhile while you add in new features that were announced? We all just want to know if we should downgrade to the previous version for security fixes, ect.

        The only reason to run this is to test it, and if there are zero updates coming anytime soon, no reason to stay on it.

        Thanks

        @stephenw10 @jimp

        I've removed my 6100 MAX from my network topology until 24.08 is officially released. UniFi finally offers DoH to custom providers now which will get me by for the time being.

        It's disturbing the we're approaching 2 months since the latest snapshot build and it's been crickets from Netgate on all posts like this one. Some transparency would be nice - especially when you break the normal development lifecycle.

        Yeah I completely agree. That's why I made the post. Its odd that nobody is responding, especially Jimp, because he's all over posts like this usually. Makes me wonder if something is going on there,

        1 Reply Last reply Reply Quote 1
        • B
          behemyth @DefenderLLC
          last edited by

          @DefenderLLC said in Can we get an update from pfsense team on 24.08 status?:

          UniFi finally offers DoH to custom providers now which will get me by for the time being.

          I agree, Ubiquity has spent the past few years really struggling, but this year they hired a ton of talent to their software teams, and their cranking out good software with nice features, let alone some of the nice hardware they have released lately that is considerably cheaper than most competitors.

          DefenderLLCD 1 Reply Last reply Reply Quote 1
          • DefenderLLCD
            DefenderLLC @behemyth
            last edited by DefenderLLC

            @behemyth said in Can we get an update from pfsense team on 24.08 status?:

            @DefenderLLC said in Can we get an update from pfsense team on 24.08 status?:

            UniFi finally offers DoH to custom providers now which will get me by for the time being.

            I agree, Ubiquity has spent the past few years really struggling, but this year they hired a ton of talent to their software teams, and their cranking out good software with nice features, let alone some of the nice hardware they have released lately that is considerably cheaper than most competitors.

            Check out the new Enterprise Fortress Gateway. It offers full SSL/TLS decryption and inspection with no subscription fees. it might be my next firewall.

            https://store.ui.com/us/en/pro/category/all-unifi-cloud-gateways/products/efg

            M 1 Reply Last reply Reply Quote 0
            • M
              michmoor LAYER 8 Rebel Alliance @DefenderLLC
              last edited by

              @DefenderLLC
              Fortress gateway is on the radar for a bid im submitting (i'll win easily)
              IIts going to be a perimeter firewall and its already an existing Unifi deployment.

              To be fair, Netgate and Unifi are the same regarding transparency. There is none. Unifi gives no EOL dates, no roadmap on features. Netgate has no roadmap for any of its products (maybe TNSR if I'm being generous). The last thing stated on 24.08 is that it will be released along with the beta preview of the pfsense management platform. Other than a very blurry photo on reddit there's been silence on the matter.
              I give Unifi credit for delivering a nice showcase at the world conference tour. As someone who deals with Enterprise solutions, it was nice seeing an organization step forward and offer enhancements to its feature set.

              Netgate plays things very close to the chest (really unclear why as its very odd to do so) but that's how they roll. It is what it is. The world moves forward while some cling to the past.

              Firewall: NetGate,Palo Alto-VM,Juniper SRX
              Routing: Juniper, Arista, Cisco
              Switching: Juniper, Arista, Cisco
              Wireless: Unifi, Aruba IAP
              JNCIP,CCNP Enterprise

              B DefenderLLCD 2 Replies Last reply Reply Quote 1
              • B
                behemyth @michmoor
                last edited by behemyth

                @michmoor @DefenderLLC

                Yeah that Fortress Gateway is insane, its very nice for the price. They released some new gateways, specifically the max which has 2.5 ports on it that are very nice for smb/homes to use. They have also been really working on feature sets in the Unifi suite.

                I guess that's why companies still pay tons of money for support. The big network companies all have roadmaps and guarantee you updates and timely security fixes when found.

                The not big companies don't do any of this, as you pointed out Michmoor.

                1 Reply Last reply Reply Quote 1
                • DefenderLLCD
                  DefenderLLC @michmoor
                  last edited by

                  @michmoor correct. UniFi does not really cater to the Enterprise. I've worked in network architecture at Dell, GM, and AIG. None of those companies would ever use UniFi network gear at scale. Never.

                  M 1 Reply Last reply Reply Quote 1
                  • M
                    michmoor LAYER 8 Rebel Alliance @DefenderLLC
                    last edited by

                    @DefenderLLC Haha agree completely. BUT, at least ubiquity is looking to cater to that market. There’s BGP/OSPF coming, there’s SSL decryption…there’s still a lot lacking though

                    Firewall: NetGate,Palo Alto-VM,Juniper SRX
                    Routing: Juniper, Arista, Cisco
                    Switching: Juniper, Arista, Cisco
                    Wireless: Unifi, Aruba IAP
                    JNCIP,CCNP Enterprise

                    DefenderLLCD 1 Reply Last reply Reply Quote 1
                    • DefenderLLCD
                      DefenderLLC @michmoor
                      last edited by DefenderLLC

                      @michmoor They are slow to release the newest technologies, but I've been happy with their stuff over the last 4 or 5 years. I currently have the following at home (LOL):

                      UDM-SE
                      USW Aggregation
                      USW Enterprise 48 PoE
                      (8) downstream UniFi switches
                      (4) U6 Enterprise APs

                      I have been using my 6100 MAX as a transparent bridge sitting between my UniFi WAN and my AT&T Fiber gateway - primarily for Suricata IPS and pfBlockerNG with DoT to my Cloudflare Zero Trust tenant.

                      Total dweebage, but I really want that SSL/TLS decryption. It's hard not having that when we're managing over 400 Palo Alto firewalls at a large insurance company.

                      M 1 Reply Last reply Reply Quote 0
                      • M
                        michmoor LAYER 8 Rebel Alliance @DefenderLLC
                        last edited by

                        @DefenderLLC haha im very simple at home.
                        6100 at the perimeter and also acting as my L3 gateway for my vlans.
                        Unifi APs and Unifi switches

                        To be honest...Im looking at putting the EFG at the edge and moving the 6100 down a layer. I still need pfsense for al the wireguard and ipsec connectivity (to many to move over ) so that's a simple port forward.
                        I would swing over the vlans to the EFG. This will also allow me to start seriously looking at the Unifi Protect line. I have RING and i want to get away from that system as quickly as possible.

                        Firewall: NetGate,Palo Alto-VM,Juniper SRX
                        Routing: Juniper, Arista, Cisco
                        Switching: Juniper, Arista, Cisco
                        Wireless: Unifi, Aruba IAP
                        JNCIP,CCNP Enterprise

                        DefenderLLCD 3 Replies Last reply Reply Quote 1
                        • DefenderLLCD
                          DefenderLLC @michmoor
                          last edited by

                          @michmoor said in Can we get an update from pfsense team on 24.08 status?:

                          @DefenderLLC haha im very simple at home.
                          6100 at the perimeter and also acting as my L3 gateway for my vlans.
                          Unifi APs and Unifi switches

                          To be honest...Im looking at putting the EFG at the edge and moving the 6100 down a layer. I still need pfsense for al the wireguard and ipsec connectivity (to many to move over ) so that's a simple port forward.
                          I would swing over the vlans to the EFG. This will also allow me to start seriously looking at the Unifi Protect line. I have RING and i want to get away from that system as quickly as possible.

                          The Protect cameras are almost as good as their APs and switches. Just stay away from UniFi Talk. That service is complete garbage. Don’t ask.

                          1 Reply Last reply Reply Quote 1
                          • DefenderLLCD
                            DefenderLLC @michmoor
                            last edited by DefenderLLC

                            @michmoor said in Can we get an update from pfsense team on 24.08 status?:

                            @DefenderLLC haha im very simple at home.
                            6100 at the perimeter and also acting as my L3 gateway for my vlans.
                            Unifi APs and Unifi switches

                            To be honest...Im looking at putting the EFG at the edge and moving the 6100 down a layer. I still need pfsense for al the wireguard and ipsec connectivity (to many to move over ) so that's a simple port forward.
                            I would swing over the vlans to the EFG. This will also allow me to start seriously looking at the Unifi Protect line. I have RING and i want to get away from that system as quickly as possible.

                            Just in case you’re not aware, the EFG does not run Protect. It’s only a network controller. The UDM family will run any UniFi app, but at the enterprise level, it’s pretty much a one for one thing . You would need one of their two NVR‘s for storage and to run the protect app.

                            M 1 Reply Last reply Reply Quote 0
                            • DefenderLLCD
                              DefenderLLC @michmoor
                              last edited by DefenderLLC

                              @michmoor said in Can we get an update from pfsense team on 24.08 status?:

                              @DefenderLLC haha im very simple at home.
                              6100 at the perimeter and also acting as my L3 gateway for my vlans.
                              Unifi APs and Unifi switches

                              To be honest...Im looking at putting the EFG at the edge and moving the 6100 down a layer. I still need pfsense for al the wireguard and ipsec connectivity (to many to move over ) so that's a simple port forward.
                              I would swing over the vlans to the EFG. This will also allow me to start seriously looking at the Unifi Protect line. I have RING and i want to get away from that system as quickly as possible.

                              I have a UDM-SE, which I will be keeping just to run protect and talk. It’s not ideal though because NAT cannot be disabled officially so I’ll have to run it in a dual-NAT scenario like I used to do with my 6100 MAX.

                              1 Reply Last reply Reply Quote 0
                              • M
                                michmoor LAYER 8 Rebel Alliance @DefenderLLC
                                last edited by

                                @DefenderLLC said in Can we get an update from pfsense team on 24.08 status?:

                                Just in case you’re not aware, the EFG does not run Protect.

                                Ahhh good looking out. I didn't know that. Thats ok. Do still plan on getting a UDM or some variant.

                                Firewall: NetGate,Palo Alto-VM,Juniper SRX
                                Routing: Juniper, Arista, Cisco
                                Switching: Juniper, Arista, Cisco
                                Wireless: Unifi, Aruba IAP
                                JNCIP,CCNP Enterprise

                                DefenderLLCD 2 Replies Last reply Reply Quote 1
                                • DefenderLLCD
                                  DefenderLLC @michmoor
                                  last edited by

                                  @michmoor said in Can we get an update from pfsense team on 24.08 status?:

                                  @DefenderLLC said in Can we get an update from pfsense team on 24.08 status?:

                                  Just in case you’re not aware, the EFG does not run Protect.

                                  Ahhh good looking out. I didn't know that. Thats ok. Do still plan on getting a UDM or some variant.

                                  I’m happy to speak with you about this before you make that decision. It’s not ideal to have two UniFi gateways connected to each other. It won’t work as intended unless you’re OK with a dual-NAT scenario. You can only have one network controller in use and one can’t manage the other.

                                  If you don’t plan on running the other UniFi apps like talk or door access, I would just get one of their protect NVR‘s instead since it’s just a layer 2 device. Just something to think about.

                                  1 Reply Last reply Reply Quote 0
                                  • DefenderLLCD
                                    DefenderLLC @michmoor
                                    last edited by

                                    @michmoor said in Can we get an update from pfsense team on 24.08 status?:

                                    @DefenderLLC said in Can we get an update from pfsense team on 24.08 status?:

                                    Just in case you’re not aware, the EFG does not run Protect.

                                    Ahhh good looking out. I didn't know that. Thats ok. Do still plan on getting a UDM or some variant.

                                    Just ordered my EFG. :)

                                    M 1 Reply Last reply Reply Quote 0
                                    • M
                                      michmoor LAYER 8 Rebel Alliance @DefenderLLC
                                      last edited by

                                      @DefenderLLC need detailed review asap 😂

                                      Firewall: NetGate,Palo Alto-VM,Juniper SRX
                                      Routing: Juniper, Arista, Cisco
                                      Switching: Juniper, Arista, Cisco
                                      Wireless: Unifi, Aruba IAP
                                      JNCIP,CCNP Enterprise

                                      DefenderLLCD 1 Reply Last reply Reply Quote 1
                                      • DefenderLLCD
                                        DefenderLLC @michmoor
                                        last edited by

                                        @michmoor said in Can we get an update from pfsense team on 24.08 status?:

                                        @DefenderLLC need detailed review asap 😂

                                        Will do! Know anyone that wants to buy a 6100 MAX with rack mount kit in pristine condition? 😂😂😂

                                        M 1 Reply Last reply Reply Quote 0
                                        • M
                                          michmoor LAYER 8 Rebel Alliance @DefenderLLC
                                          last edited by

                                          @DefenderLLC Hmmmm…..

                                          DM me

                                          Firewall: NetGate,Palo Alto-VM,Juniper SRX
                                          Routing: Juniper, Arista, Cisco
                                          Switching: Juniper, Arista, Cisco
                                          Wireless: Unifi, Aruba IAP
                                          JNCIP,CCNP Enterprise

                                          DefenderLLCD 1 Reply Last reply Reply Quote 1
                                          • F
                                            FoolCoconut
                                            last edited by

                                            To be fair, Unifi is great and all, with the UI design, simplicity, getting started with new devices, but you all seem to be forgetting about it's proprietary nature, which sure, if you're building a network for someone else, who cares, but for your homelab? I don't think I'd ever want to run an Unifi router as my main one. Protect on the other hand, being fully isolated from the internet, is plausible.

                                            DefenderLLCD 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.