Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    PFSense blocking SSH access

    Scheduled Pinned Locked Moved General pfSense Questions
    35 Posts 7 Posters 10.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • DerelictD
      Derelict LAYER 8 Netgate
      last edited by

      It's just that telling someone to not update to the latest version because there might be a zero day is nonsense.

      Chattanooga, Tennessee, USA
      A comprehensive network diagram is worth 10,000 words and 15 conference calls.
      DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
      Do Not Chat For Help! NO_WAN_EGRESS(TM)

      1 Reply Last reply Reply Quote 0
      • F
        firewalluser
        last edited by

        @Derelict:

        It's just that telling someone to not update to the latest version because there might be a zero day is nonsense.

        But you'll note if you read carefully what I put, I have not told someone to NOT update to the latest version, but I have provided a way to find out what the problem might be if so inclined to do so for piece of mind not to mention it being an educational exercise as its assumed at this stage to be the /etc bug.

        However on the laws of probability would you like to wager there are no zero days in 2.2.4?  ;D

        Capitalism, currently The World's best Entertainment Control System and YOU cant buy it! But you can buy this, or some of this or some of these

        Asch Conformity, mainly the blind leading the blind.

        1 Reply Last reply Reply Quote 0
        • johnpozJ
          johnpoz LAYER 8 Global Moderator
          last edited by

          I agree the odds that the OP issue was because of a compromise what what??  More likely hit by lightning hit the power ball, and the mega millions while you bought 10 winning scratch offs in a row??

          Its great and all that your tinfoil hat is 2 sizes too small for you and the NSA has a detail just to trail you.. But the rest of us live in the real world ;)

          An intelligent man is sometimes forced to be drunk to spend time with his fools
          If you get confused: Listen to the Music Play
          Please don't Chat/PM me for help, unless mod related
          SG-4860 24.11 | Lab VMs 2.8, 24.11

          1 Reply Last reply Reply Quote 0
          • F
            firewalluser
            last edited by

            @johnpoz:

            I agree the odds that the OP issue was because of a compromise what what??  More likely hit by lightning hit the power ball, and the mega millions while you bought 10 winning scratch offs in a row??

            Its great and all that your tinfoil hat is 2 sizes too small for you and the NSA has a detail just to trail you.. But the rest of us live in the real world ;)

            Why do you attack your users for suggesting a way for other users to educate themselves and have piece of mind over the what they use? Do you like keeping your users dumb?

            I mentioned the NSA as its a good level to aim for, because they have only had a few major leaks in recent times, the most notable being Snowden.

            So if you can lock your systems down to a level beyond their capabilities including the legals ones, then I'd say you have reasonably secure system because who wants to let their IT equipment becomes involved in hacking attacks on things like this? https://cryptome.org/2015/09/nnsa-iranian-target.htm

            The NSA are a finite resource and there are certainly less of them than the rest of the world so a little bit of education can go a long long way. You do the odds.  ;D

            Capitalism, currently The World's best Entertainment Control System and YOU cant buy it! But you can buy this, or some of this or some of these

            Asch Conformity, mainly the blind leading the blind.

            1 Reply Last reply Reply Quote 0
            • D
              doktornotor Banned
              last edited by

              Yeah, sure like hell NSA is so lame to cut themselves off SSH by screwing up permissions in retarded way.

              1 Reply Last reply Reply Quote 0
              • F
                fragged
                last edited by

                @firewalluser:

                The NSA are a finite resource and there are certainly less of them than the rest of the world so a little bit of education can go a long long way. You do the odds.  ;D

                Please stop bringing NSA into every thread. Keep the roll of tinfoil all to yourself. Thanks.

                1 Reply Last reply Reply Quote 0
                • F
                  firewalluser
                  last edited by

                  @fragged:

                  @firewalluser:

                  The NSA are a finite resource and there are certainly less of them than the rest of the world so a little bit of education can go a long long way. You do the odds.  ;D

                  Please stop bringing NSA into every thread. Keep the roll of tinfoil all to yourself. Thanks.

                  So when all other arguments have been lost, all you can revert to is the suggestion of tinfoil hats et al?

                  If people dont value privacy, they must be exhibitionists.

                  @doktornotor:

                  Yeah, sure like hell NSA is so lame to cut themselves off SSH by screwing up permissions in retarded way.

                  So pfsense screwed up permissions in a retarded way then? Doesnt inspire pfsense users with confidence does it?

                  Capitalism, currently The World's best Entertainment Control System and YOU cant buy it! But you can buy this, or some of this or some of these

                  Asch Conformity, mainly the blind leading the blind.

                  1 Reply Last reply Reply Quote 0
                  • D
                    doktornotor Banned
                    last edited by

                    @firewalluser:

                    So pfsense screwed up permissions in a retarded way then?

                    Yeah. It's been a fucking bug with filesystem corruption. Fixed. Hard to miss, but maybe you've been abducted by aliens meanwhile, or busy shopping for more tinfoil…  ::)

                    1 Reply Last reply Reply Quote 0
                    • johnpozJ
                      johnpoz LAYER 8 Global Moderator
                      last edited by

                      But was it a bug that the NSA planted to thwart further adoption of pfsense and increased development while they worked on the bug??  Hmmm  makes you wonder ;) ROFL..

                      Oh hold on those black helicopters are out there again..

                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                      If you get confused: Listen to the Music Play
                      Please don't Chat/PM me for help, unless mod related
                      SG-4860 24.11 | Lab VMs 2.8, 24.11

                      1 Reply Last reply Reply Quote 0
                      • F
                        firewalluser
                        last edited by

                        Why are you lot even suggesting the NSA planted the bug? Geez you guys are worse than I thought.

                        The NSA will exploit bugs where possible though when programmers make mistakes, they even buy some of the zero days from online hacking forums.
                        https://www.washingtonpost.com/news/the-switch/wp/2013/08/31/the-nsa-hacks-other-countries-by-buying-millions-of-dollars-worth-of-computer-vulnerabilities/

                        The NSA are actively supporting Hackers by outbidding other countries, they need peoples stupidity to exist.

                        Capitalism, currently The World's best Entertainment Control System and YOU cant buy it! But you can buy this, or some of this or some of these

                        Asch Conformity, mainly the blind leading the blind.

                        1 Reply Last reply Reply Quote 0
                        • D
                          doktornotor Banned
                          last edited by

                          Noone here was suggesting that NSA had anything to do with it. You just yet again ruined another thread with your conspiracy theories. Perhaps, if you think about it for a while, no "hacker" will mess up permissions in a way that he gets cut off the shell… Christ.

                          1 Reply Last reply Reply Quote 0
                          • F
                            firewalluser
                            last edited by

                            Read carefully what exactly I put and quote me if you can where I have associated these problems to the NSA.

                            In the mean time enjoy paying your tax dollars to fund the terrorists!  ;D

                            Capitalism, currently The World's best Entertainment Control System and YOU cant buy it! But you can buy this, or some of this or some of these

                            Asch Conformity, mainly the blind leading the blind.

                            1 Reply Last reply Reply Quote 0
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.