Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Revised New Build

    Scheduled Pinned Locked Moved Hardware
    51 Posts 6 Posters 18.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S
      stephenw10 Netgate Administrator
      last edited by

      Logging is all to ram only so no worries there. If you used the NanoBSD image it's all taken care of anyway. No need to worry about flash memory life.

      Steve

      1 Reply Last reply Reply Quote 0
      • N
        Nonsense
        last edited by

        O.K., thanks Steve.  I may buy a SATA DOM eventually–USB works but it takes a long time to boot!

        1 Reply Last reply Reply Quote 0
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          How long? How often do you plan on re-booting!?
          My machine is usually up until there's either a new release or I do something to kill it.  ::)

          Steve

          1 Reply Last reply Reply Quote 0
          • N
            Nonsense
            last edited by

            Once it is fully configured I plan to leave it on continuously without rebooting.  It takes ca. two minutes for PfSense to boot up after the motherboard posts.

            1 Reply Last reply Reply Quote 0
            • stephenw10S
              stephenw10 Netgate Administrator
              last edited by

              That's similar to my Firebox booting from CF. Not unusually slow.

              Steve

              1 Reply Last reply Reply Quote 0
              • N
                Nonsense
                last edited by

                By the way, it turned out I did not have to do any compensation for the boot to USB option.  I have rebooted my build several times and have not run into such a problem.  I just purchased an ADSL2+ PCI card (it is made in Australia and I had to buy it from a vendor in Europe).  It will take a couple of weeks to arrive, but I plan to use it to bypass my external DSL modem.

                1 Reply Last reply Reply Quote 0
                • stephenw10S
                  stephenw10 Netgate Administrator
                  last edited by

                  The Vikiking card from Traverse? (They also seem to have re-branded as rocksolid electronics)
                  I ran their earlier Pulsar ADSL card under IPCop for years, totally reliable.

                  Steve

                  1 Reply Last reply Reply Quote 0
                  • N
                    Nonsense
                    last edited by

                    "The Vikiking card from Traverse?"

                    Yes, I guess I'll have to adjust the settings to get it to work with my Verizon DSL service.

                    1 Reply Last reply Reply Quote 0
                    • N
                      Nonsense
                      last edited by

                      When using Snort in the embedded version of PfSense that I am using, will the updates download to RAM or will they write on my solid state memory?  I don't want to install anything that will do periodic memory writes. ???

                      1 Reply Last reply Reply Quote 0
                      • stephenw10S
                        stephenw10 Netgate Administrator
                        last edited by

                        Hmm, I'm not too sure about this but if it's available for embedded installs then someone else has probably already thought of it.
                        How often does snort update? Even the most basic flash memory still has a large number of writes in it's lifespan.

                        Steve

                        1 Reply Last reply Reply Quote 0
                        • T
                          taryezveb
                          last edited by

                          @stephenw10:

                          How often does snort update?

                          It is user selectable. Tho every 12 hours is recommended.

                          1 Reply Last reply Reply Quote 0
                          • N
                            Nonsense
                            last edited by

                            stephenw10:

                            You mentioned you had experience with something similar to the Viking card.  I was able to install the card in my PfSense router and place it in bridge mode.  I adjusted VPI/VCI to 0 and 35 per the Westel modem I use with my Verizon DSL account.  All seemed to go well until I plugged my DSL telephone line into the card.  The power and LAN lights are on but the DSL light just flashes slowly–the card does not appear to be trying to negotiate a sync with the DSLAM in my local central office.  I will check to see if it a simple problem with my phone cord, but it seems odd that everything else has gone o.k. with the setup and then the card will not sync to my DSL service.  I already tried changing the settings between ADSL2, ADSL2Plus, etc.  Any ideas? ???

                            1 Reply Last reply Reply Quote 0
                            • stephenw10S
                              stephenw10 Netgate Administrator
                              last edited by

                              The Pulsar adsl card was a true modem rather than a router on a PCI card like the Viking is.
                              There will almost certainly be some logging available on the Viking card. If not on the web interface maybe on a telnet interface?

                              Steve

                              1 Reply Last reply Reply Quote 0
                              • N
                                Nonsense
                                last edited by

                                I can't seem to get the web interface to work.  I am using IPMI with the console.  I guess I have to download the command index file and do some more research.  I may not have hit on the right ADSL settings as yet.

                                1 Reply Last reply Reply Quote 0
                                • stephenw10S
                                  stephenw10 Netgate Administrator
                                  last edited by

                                  How do you have it setup?
                                  This should still apply to your situation:
                                  http://doc.pfsense.org/index.php/How_can_i_access_my_PPPoE_Modem_on_WAN#For_2.0

                                  Steve

                                  1 Reply Last reply Reply Quote 0
                                  • N
                                    Nonsense
                                    last edited by

                                    Steve:

                                    It turns out that my Viking card was not getting 12VDC (to power its DSL front end) through my PCIe slot.  My riser card adapter, however, has a 12VDC power connector; once I found the right adapter cable I was able to install it and supply 12VDC to the adapter and Viking cards (in addition to the 5VDC already present).  The Viking card now works, yippie! :D

                                    1 Reply Last reply Reply Quote 0
                                    • N
                                      Nonsense
                                      last edited by

                                      Steve:

                                      The ability to access my modem's web interface is something in which I still might be interested.  The instructions in the link you supplied, however, are a little confusing.  My modem has a default address of 192.168.1.1 (I don't know yet if it can be changed) but my LAN network is on 192.168.0 etc.  Is it possible for me to access the modem's web interface and how EXACTLY (please) should I set up PfSense to do so?

                                      Thanks.

                                      1 Reply Last reply Reply Quote 0
                                      • stephenw10S
                                        stephenw10 Netgate Administrator
                                        last edited by

                                        Most modem/routers (but not all!) have a web interface that is still accessible even when it's in 'pass through' or 'bridge' mode in order to see the line stats etc. This is useful!
                                        You can almost certainly change the default subnet of the router and I would because you may end up using 192.168.1.1 later on (indeed it's the default address of the pfSense LAN). Set it to something less common, say, 192.168.200.1.
                                        You may have to play about with the modem settings to do this. You might end up having to reset it, I did!

                                        Which part if the instructions are you unclear on?

                                        Steve

                                        1 Reply Last reply Reply Quote 0
                                        • N
                                          Nonsense
                                          last edited by

                                          Steve:

                                          I did change the router subnet: I set my LAN to 192.168.0.1-254
                                          My modem card default address is 192.168.1.1

                                          I tried following the instructions, added the "opt" interface o.k. but I am completely bewildered as to configuring NAT in the firewall.

                                          Do I make up an address for the modem in my LAN subnet, e.g. 192.168.0.30, and use it to access my 192.168.1.1 modem?  How do I configure NAT under firewall to do so.  I see six rules when I save under "Manuel."  Which one do I use?  The instructions in the link you provided lack, as we use to say, "human engineering."

                                          1 Reply Last reply Reply Quote 0
                                          • W
                                            wallabybob
                                            last edited by

                                            @Nonsense:

                                            I tried following the instructions, added the "opt" interface o.k. but I am completely bewildered as to configuring NAT in the firewall.

                                            Take a deep breath and proceed slowly.

                                            http://doc.pfsense.org/index.php/How_can_i_access_my_PPPoE_Modem_on_WAN#For_2.0 says

                                            Add an Outbound NAT rule as described above but do NOT choose the WAN interface, choose your new OPT interface.

                                            Scroll upwards through the document from the "For 2.0" section and you will come to the "Configure NAT" section which explains why NAT (Network Address Translation) is needed/recommended. Where this section says WAN you will need to give the OPTx name of the interface you have just added.

                                            Now, where exactly in that section do you get stuck?

                                            @Nonsense:

                                            Do I make up an address for the modem in my LAN subnet, e.g. 192.168.0.30, and use it to access my 192.168.1.1 modem?

                                            No.

                                            @Nonsense:

                                            How do I configure NAT under firewall to do so.  I see six rules when I save under "Manuel."  Which one do I use?

                                            None, you add a new rule as described in the "Configure NAT" section of the document.

                                            @Nonsense:

                                            The instructions in the link you provided lack, as we use to say, "human engineering."

                                            You are probably correct. I sympathise with technical writers. Many readers are used to scanning (rather than reading) technical documentation and seem to get flustered if they come across "too many" unfamiliar terms "too quickly". And it can be quite difficult for a full-time developer/part-time technical writer who is very familiar with a field to enter into the mind set of a technically competent person who is unfamiliar with the details of a field and so doesn't have a lot of the context that people working in the field naturally assume is shared.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.