Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Packages wishlist?

    Scheduled Pinned Locked Moved pfSense Packages
    661 Posts 384 Posters 1.5m Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      SIPpyCup
      last edited by

      XMPP server  (Jabber)

      I would prefer either/both

      http://prosody.im

      http://tigase.com
      http://tigase.org

      and a gui for managing server extensions

      some guru way to discourage protracted non-OTR encrypted conversations?

      http://otr.cypherpunks.ca

      1 Reply Last reply Reply Quote 0
      • S
        SIPpyCup
        last edited by

        SIPsorcery  (it doesn't do RTP)

        http://sipsorcery.com
        http://sipsorcery.codeplex.com/

        If you wanted to add more VoiceGateways to your Obihai (or other ATA) this would be one option, and less costly self hosted.  Aaron has made the source f/OSS.  (I never use googlevoice or other google properties; to cut down on headaches don't try to maintain GV functionality)

        1 Reply Last reply Reply Quote 0
        • D
          dhatz
          last edited by

          Given the some of the recent feedback regarding problems with using BGP under pfSense, based on this discussion at the freebsd-net mailing list, it seems that bird might be the answer …

          http://www.freshports.org/net/bird/
          http://bird.network.cz/

          1 Reply Last reply Reply Quote 0
          • Z
            zenny
            last edited by

            HAProxy-devel also supports SSL, but is not ready for production and also SNI could be an issue.

            So I request a package for Stud (https://github.com/bumptech/stud) is a lightweight and easy to configure proxy which can coexist with HAProxy to support SSL and SNI for production servers. Thanks!

            1 Reply Last reply Reply Quote 0
            • Z
              zenny
              last edited by

              Since Snort is single-threaded, wouldn't it be nice to include a package for suricata (http://suricata-ids.org/) which supports mutli-threaded processing?

              Ref: http://workshop.netfilter.org/2013/wiki/images/1/1f/Eric_Leblond_IDS-suricata.pdf

              1 Reply Last reply Reply Quote 0
              • rcfaR
                rcfa
                last edited by

                @zenny:

                Since Snort is single-threaded, wouldn't it be nice to include a package for suricata (http://suricata-ids.org/) which supports mutli-threaded processing?

                Ref: http://workshop.netfilter.org/2013/wiki/images/1/1f/Eric_Leblond_IDS-suricata.pdf

                Looks like a great one. I also think the non-proprietary nature would make it a better fit, and with more and more GPU-power, CUDA support could make quite a difference in CPU load and allow for better utilization of existing hardware.
                Also, Snort, over the past, seems to have been rather fickle, and quite the resource hog. Anything that's more efficient and less picky or easier to configure would be a good step forward.

                1 Reply Last reply Reply Quote 0
                • X
                  xbipin
                  last edited by

                  would love to have freeswitch

                  1 Reply Last reply Reply Quote 0
                  • rcfaR
                    rcfa
                    last edited by

                    @xbipin:

                    would love to have freeswitch

                    +1

                    1 Reply Last reply Reply Quote 0
                    • rcfaR
                      rcfa
                      last edited by

                      A STUN server package would also be VERY useful.

                      http://sourceforge.net/projects/stun/

                      Basically, as "low end" hardware gets more powerful, pfSense would be very useful to evolve into a "network border server" in addition to being a firewall router.

                      Tons of services that need to be available from the public net, and that one may not want to puncture the protective wall, could simply run on the firewall device: STUN, OwnCloud, FreeSwitch/Asterisk/PBSinAFlash, Suricata/Snort, privoxy/trackmenot/TOR, etc.

                      If we don't want a totally cluttered environment, at some point it may make sense to have "official" packages, which are fully integrated and tested to cover certain aspects of a network border server.

                      1 Reply Last reply Reply Quote 0
                      • Z
                        zenny
                        last edited by

                        @rcfa:

                        A STUN server package would also be VERY useful.

                        http://sourceforge.net/projects/stun/

                        Basically, as "low end" hardware gets more powerful, pfSense would be very useful to evolve into a "network border server" in addition to being a firewall router.

                        Tons of services that need to be available from the public net, and that one may not want to puncture the protective wall, could simply run on the firewall device: STUN, OwnCloud, FreeSwitch/Asterisk/PBSinAFlash, Suricata/Snort, privoxy/trackmenot/TOR, etc.

                        If we don't want a totally cluttered environment, at some point it may make sense to have "official" packages, which are fully integrated and tested to cover certain aspects of a network border server.

                        To complement stun, STUN-over-TCP (http://sourceforge.net/projects/stunovertcp) would be a good combination with Vovida STUN (http://sourceforge.net/projects/stun/).

                        1 Reply Last reply Reply Quote 0
                        • M
                          mystycs
                          last edited by

                          ziproxy!

                          http://ziproxy.sourceforge.net/download.html

                          1 Reply Last reply Reply Quote 0
                          • D
                            Derf
                            last edited by

                            portspoof could be a nice addition

                            https://github.com/drk1wi/portspoof

                            1 Reply Last reply Reply Quote 0
                            • T
                              Topper727
                              last edited by

                              I wish Snorby would be as a package.  I have setup on another machine it is very handy.  I don't want to have to run 2 machines to do this.  I have enough CPU for both in firewall machine

                              Dell 2950 g3 server
                              Intel(R) Xeon(R) CPU E5430 @ 2.66GHz
                              Current: 2000 MHz, Max: 2667 MHz
                              8 CPUs: 2 package(s) x 4 core(s)
                              8152 MiB and 600meg 10k drive
                              Pfsense 2.4 .. Hoping to get the phpvirtualbox going again.

                              1 Reply Last reply Reply Quote 0
                              • L
                                lindsay
                                last edited by

                                @rcfa:

                                @zenny:

                                Since Snort is single-threaded, wouldn't it be nice to include a package for suricata (http://suricata-ids.org/) which supports mutli-threaded processing?

                                Ref: http://workshop.netfilter.org/2013/wiki/images/1/1f/Eric_Leblond_IDS-suricata.pdf

                                Looks like a great one. I also think the non-proprietary nature would make it a better fit, and with more and more GPU-power, CUDA support could make quite a difference in CPU load and allow for better utilization of existing hardware.
                                Also, Snort, over the past, seems to have been rather fickle, and quite the resource hog. Anything that's more efficient and less picky or easier to configure would be a good step forward.

                                +1 from me

                                Fiberline 500/500Mbps
                                Intel(R) Xeon(R) CPU E5-2620 v4 @ 2.10GHz

                                1 Reply Last reply Reply Quote 0
                                • L
                                  lindsay
                                  last edited by

                                  @rcfa:

                                  Actually a forum wishlist: make sub-sections for each package under the Packages section.
                                  It's pretty hard to browse all relevant threads relevant to a particular package, it would be easier to have these threads grouped.
                                  That would also make it easier for maintainers to have a quick look if there's activity, and for users to see if a package is alive.

                                  • 1 from me too as i was ordering a adtrap wich do not work.
                                    And to ship it back again is like ordering a new

                                  Fiberline 500/500Mbps
                                  Intel(R) Xeon(R) CPU E5-2620 v4 @ 2.10GHz

                                  1 Reply Last reply Reply Quote 0
                                  • marcellocM
                                    marcelloc
                                    last edited by

                                    this script may help you undestanding how to install it on freebsd.

                                    Most of this are already done on snort package
                                    https://github.com/shirkdog/snorby-bsd/blob/master/snorbyInstall.sh

                                    Treinamentos de Elite: http://sys-squad.com

                                    Help a community developer! ;D

                                    1 Reply Last reply Reply Quote 0
                                    • R
                                      Roman513
                                      last edited by

                                      strongSwan!

                                      1 Reply Last reply Reply Quote 0
                                      • jimpJ
                                        jimp Rebel Alliance Developer Netgate
                                        last edited by

                                        @Roman513:

                                        strongSwan!

                                        Keep an eye on 2.2 for that.

                                        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                                        Need help fast? Netgate Global Support!

                                        Do not Chat/PM for help!

                                        1 Reply Last reply Reply Quote 0
                                        • E
                                          exograpix
                                          last edited by

                                          Any antivirus solution for squid-dev or installation wayout.

                                          Thanks

                                          1 Reply Last reply Reply Quote 0
                                          • T
                                            Trylen
                                            last edited by

                                            A bandwidth monitor that allows you to keep track of Data Caps. Kind of like Traffic Accounting in IPCop.

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.