Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Avaliable Packages missing cant seem to find

    Scheduled Pinned Locked Moved General pfSense Questions
    84 Posts 6 Posters 15.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      comet424
      last edited by comet424

      john not sure how to set it to look at itself at 127.0.0.1 i know that's one of the rules or nat settings
      and not sure what a dnssec root key is anyways

      and i forget someone else was helping me before with nordvpn setup was that you john... here i thought nordvpn was a good company but i having issues …

      go figure lol

      and i unchecked the dns query forwarding

      GrimsonG 1 Reply Last reply Reply Quote 0
      • C
        comet424
        last edited by

        so hopefully that fixes it the unchecked query

        if this all doesn't work does that mean there is a problem with the nordvpn servers?

        1 Reply Last reply Reply Quote 0
        • GrimsonG
          Grimson Banned @comet424
          last edited by

          @comet424 said in Avaliable Packages missing cant seem to find:

          here i thought nordvpn was a good company but i having issues

          The business model of all those VPN providers is based on FUD, so you can't call any of them "good". Some may even be worse than your actual ISP when it comes to collecting data.

          1 Reply Last reply Reply Quote 0
          • C
            comet424
            last edited by comet424

            ah ok.. ya i did it cuz of data collecting but mostly i sick and tired im in Canada and cant see Olympics time and i wanna see the usa footage and boom you cant geo location shit.. hate that crap lol and if i get Netflix apparently usa Netflix better then Canada content.. or anything really just frustrating.. i need to immigrant to usa lol
            but what does FUD mean
            so grimson you don't believe in vpns then i take it.. i just learning as i go teach myself and read etc try to make best educated guesses

            1 Reply Last reply Reply Quote 0
            • stephenw10S
              stephenw10 Netgate Administrator
              last edited by

              You need to uncheck Do not use the DNS Forwarder/DNS Resolver as a DNS server for the firewall in System > General to have it use the resolver.
              However you have the resolver in forwarding mode anyway so it too will be using those DNS servers defined there rather than the root servers.

              Steve

              1 Reply Last reply Reply Quote 0
              • DerelictD
                Derelict LAYER 8 Netgate
                last edited by

                Which looks like it will be fine if you set the firewall itself to use 8.8.8.8 and 8.8.4.4.

                If you want the CLIENTS to resolve using those crappy NordVPN DNS servers then tell the CLIENTS to use those as their DNS servers. Either using DHCP or static config on the CLIENTS themselves.

                No reason to hobble the firewall itself just because you want some clients to do this VPN geo-shifting thing.

                Chattanooga, Tennessee, USA
                A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                Do Not Chat For Help! NO_WAN_EGRESS(TM)

                1 Reply Last reply Reply Quote 0
                • C
                  comet424
                  last edited by

                  oh ok ill look i had unchecked do not do dns query forwarding under the OpenVPN client..
                  and what does FUD stand for..

                  and ok thanks for inpuit

                  1 Reply Last reply Reply Quote 0
                  • stephenw10S
                    stephenw10 Netgate Administrator
                    last edited by

                    https://en.wikipedia.org/wiki/Fear,_uncertainty_and_doubt

                    Basically VPN providers telling people that if you don't use a VPN your identity will be stolen in seconds etc. 😉

                    There are many legitimate reasons to use a VPN of course...

                    Steve

                    1 Reply Last reply Reply Quote 0
                    • C
                      comet424
                      last edited by

                      so I changed it so those crapy vpn dns are under dhcp server
                      and I left the 8 8 8 8
                      but still package manger looses the packages
                      0_1540479774023_pf5.JPG 0_1540479888785_pf6.JPG 0_1540479986390_pf7.JPG
                      0_1540480127909_pf8.JPG

                      now the 3 last pics I did after I unchecked the disable dns forwarder with it checked and without it checked.. didn't work.. but it always works after a reboot of the pfsense… then time goes by yesterday it was still working after couple hours... but this morning boom gone..

                      so where else do I look for this happening to resolve

                      1 Reply Last reply Reply Quote 0
                      • C
                        comet424
                        last edited by

                        0_1540480297727_pf9.JPG

                        1 Reply Last reply Reply Quote 0
                        • johnpozJ
                          johnpoz LAYER 8 Global Moderator
                          last edited by

                          what is the point of pointing pfsense to 8.8.8.8? All that is need for pfsense is loopback..

                          An intelligent man is sometimes forced to be drunk to spend time with his fools
                          If you get confused: Listen to the Music Play
                          Please don't Chat/PM me for help, unless mod related
                          SG-4860 24.11 | Lab VMs 2.8, 24.11

                          1 Reply Last reply Reply Quote 0
                          • C
                            comet424
                            last edited by

                            because derelict said to set it to 8,8,8,8

                            ok ill delete that dns too.

                            1 Reply Last reply Reply Quote 0
                            • C
                              comet424
                              last edited by comet424

                              hopefully that's right... and if so whats next
                              0_1540481121517_pf10.JPG0_1540481185410_pf11.JPG0_1540481339770_pf12.JPG

                              1 Reply Last reply Reply Quote 0
                              • johnpozJ
                                johnpoz LAYER 8 Global Moderator
                                last edited by

                                you can point your clients to 8.8.8.8 if you want.. But pfsense sure doesn't need to be using it.. It can resolve anything it needs to get to.. And also provide that to your clients.. It is way better to resolve than forward or ask some forwarder. That is why that is what pfsense does out of the box resolve.

                                An intelligent man is sometimes forced to be drunk to spend time with his fools
                                If you get confused: Listen to the Music Play
                                Please don't Chat/PM me for help, unless mod related
                                SG-4860 24.11 | Lab VMs 2.8, 24.11

                                1 Reply Last reply Reply Quote 0
                                • C
                                  comet424
                                  last edited by

                                  ok ill delete the dns servers then.. so do I leave it unchecked under general the do not enable dns forwarder..

                                  I looked under the system logs only error I found was under OpenVPN
                                  Oct 25 08:29:45 openvpn 35104 WARNING: 'cipher' is used inconsistently, local='cipher AES-256-GCM', remote='cipher AES-256-CBC'
                                  Oct 25 08:29:45 openvpn 35104 WARNING: 'auth' is used inconsistently, local='auth [null-digest]', remote='auth SHA512'

                                  so I don't understand though why doesn't the package manager working or the pkg update its like it has no internet.. yet im talking to you with the internet... its like it works for a day then its blocked... a reboot fixes it for the time being then comes back... and I have tried several filter reloads as I was told a while ago its stupid to reboot the pfsense only use filter reload.. but I find it doesn't fix the issue.. but a real reboot fixes it for a while.

                                  is there anywhere else I can look...

                                  would a backup the config file.. format the hard drive and reinstall pfsense and import the file possibly fix it?

                                  1 Reply Last reply Reply Quote 0
                                  • johnpozJ
                                    johnpoz LAYER 8 Global Moderator
                                    last edited by

                                    fix your client setup for your vpn client clearly its tell you there is a problem

                                    With your cipher and your auth.

                                    An intelligent man is sometimes forced to be drunk to spend time with his fools
                                    If you get confused: Listen to the Music Play
                                    Please don't Chat/PM me for help, unless mod related
                                    SG-4860 24.11 | Lab VMs 2.8, 24.11

                                    1 Reply Last reply Reply Quote 0
                                    • C
                                      comet424
                                      last edited by comet424

                                      well that's for the client and what does that error mean how do I fix it.. have no idea what that means

                                      so then that is affecting the package manger then

                                      have no idea how to fix that that's a nordvpn

                                      1 Reply Last reply Reply Quote 0
                                      • C
                                        comet424
                                        last edited by

                                        well im on tech support with nordvpn hopefully they can fix this 2 errors the packagemanger and the cipher thing

                                        1 Reply Last reply Reply Quote 0
                                        • C
                                          comet424
                                          last edited by

                                          so much for a fix... the warnings are ok they say..
                                          and they said the package manager can be buggy at times.. and its not a vpn issue

                                          so im back to square one.. package manger or dns lookup works after a reboot.. but for only so long then next day say its non responsive... so I no further ahead... guess I keep playing with settings.. cuz this confusing and there is no defenite answer whats causing this.. if I get too frustrated gues don't matter as it still gives internet to all my devices just itself cant get internet unless you do a reboot

                                          thanks for all the help... ill keep fiddling

                                          1 Reply Last reply Reply Quote 0
                                          • stephenw10S
                                            stephenw10 Netgate Administrator
                                            last edited by stephenw10

                                            If you have the resolver still set to forwarding mode you do need at least one DNS server set in System > General.
                                            I would leave 8.8.8.8 in there for now. You can remove it later if you want.

                                            The error you are now seeing is different. Previously is was 'no address record' but now it's 'network is unreachable'.
                                            That implies some routing error or maybe something just blocking the traffic.
                                            Check the routing table when you are in that situation. Try pinging pfsense.org from Diag > Ping.

                                            Steve

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.