Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login
    1. Home
    2. Recent
    Log in to post
    Load new posts
    • All Topics
    • New Topics
    • Watched Topics
    • Unreplied Topics

    • All categories

    • All tags
    • opticalcO

      SG-1100 and a USB based Atheros AR9271

      Watching Ignoring Scheduled Pinned Locked Moved Wireless
      8
      0 Votes
      8 Posts
      57 Views
      stephenw10S
      The ath(4) driver doesn't support USB NICs as far as I know.
    • opticalcO

      BootLoader not found, please install an OS

      Watching Ignoring Scheduled Pinned Locked Moved Problems Installing or Upgrading pfSense Software
      7
      0 Votes
      7 Posts
      86 Views
      opticalcO
      @Gertjan said in BootLoader not found, please install an OS: @opticalc Well, the (cut short) TPM story is : if something changes the boot files on the boot partition, then the user should be warned when the system boots. That's the IMHO, whole idea behind TPM protection. On the other had, end user devices do have a TPM so they can install Windows 11. If its actually used to protect the system, only your BIOS can tell you that. OK, thanks - all that makes sense. But theres still got to be something weird going on with the pfsense installer, given linuxmint worked fine on a single partition, and pfsense gave so many problems?
    • C

      WireGuard VPN: Traffic graph shows occasional blips, confirmed by netstat -I, but tcpdump doesn't capture anything

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions
      2
      0 Votes
      2 Posts
      21 Views
      stephenw10S
      Try capturing the encapsulated traffic on the parent interface. You could be seeing traffic that's dropped before it makes it out of the WG interface. I wouldn't expect it to be an issue though.
    • T

      pfSense CE in Azure - certctl rehash skipping untrusted certificates under /usr/share/certs/trusted looks very wrong?

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions
      2
      0 Votes
      2 Posts
      19 Views
      stephenw10S
      Skipping the untrusted certs there is expected in any install. CE is not supported in Azure.
    • T

      pfSense 2.8 CE Azure

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions
      5
      0 Votes
      5 Posts
      177 Views
      stephenw10S
      Yes upgrading CE in Azure is not supported. And that includes to Plus. The only supported deployment in Azure is from the tested Netgate image.
    • N

      Captive Portal Stops Working pfsense 2.8.0. Hitting 'save' resolves the issue

      Watching Ignoring Scheduled Pinned Locked Moved Captive Portal
      2
      0 Votes
      2 Posts
      42 Views
      N
      The issue vanished on it's own
    • M

      FW allowing traffic without rule

      Watching Ignoring Scheduled Pinned Locked Moved Firewalling
      1
      0 Votes
      1 Posts
      17 Views
      No one has replied
    • C

      Wireguard Tunnels - Gateway Recovery Behaviour intermitent

      Watching Ignoring Scheduled Pinned Locked Moved WireGuard
      3
      1 Votes
      3 Posts
      442 Views
      M
      This is still an issue as of 2.8.0 / 25.07, and it drives me crazy. Gateway failure works as expected, the wireguard tunnels will fail over to the backup gateway and continue on as normal, but will never recover once the failed gateway comes back online. While a reboot will (usually) fix it, I usually just go into my routing settings and mark the secondary gateway as down, forcing it to revert back to the primary... the users tend to dislike it when I reboot the firewall in the middle of the day
    • yon 0Y

      24.11 upgrade to 25.07

      Watching Ignoring Scheduled Pinned Locked Moved Problems Installing or Upgrading pfSense Software
      19
      0 Votes
      19 Posts
      294 Views
      E
      @stephenw10 Yep; the php-fpm script hung right at config upgrade. Had to do ctrl-t to see what was stuck. Stayed there until the script timed out then threw an error and rebooted in 24.11.
    • J

      Upgrade Failed 24.11 to 25.07 - "Maximum execution time"

      Watching Ignoring Scheduled Pinned Locked Moved Problems Installing or Upgrading pfSense Software
      3
      0 Votes
      3 Posts
      81 Views
      J
      @eloich Thanks, this worked. Was back online in 2 mins of reboot and I didnt remove any packages this time either.
    • H

      Changing My Netgate Contact Information

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions
      4
      0 Votes
      4 Posts
      107 Views
      stephenw10S
      Where are you trying to make that change?
    • J

      Unable to update from 23.09

      Watching Ignoring Scheduled Pinned Locked Moved General pfSense Questions
      5
      0 Votes
      5 Posts
      70 Views
      stephenw10S
      Yes, in the dynamic repo system ugrades are supported from the previous two versions. So you can skip one version. For 25.07 that's 24.03 and 24.11 so you would have needed to upgrade to one of those first from 23.09.
    • S

      Filterdns has stopped resolving hostnames in firewall aliases

      Watching Ignoring Scheduled Pinned Locked Moved DHCP and DNS
      20
      0 Votes
      20 Posts
      1k Views
      GertjanG
      @slu said in Filterdns has stopped resolving hostnames in firewall aliases: aybe its relevant how ACME is configured. Nice catch ! This : [image: 1754480078430-7f044d98-4fe3-4b61-9697-d44d3c9bd573-image.png] implies that when you set DNS Sleep to '0', it's the script itself that starts polling every 'x' seconds the domain name servers. If its using one of the Doh etc, (which you've blocked with pfBlockerng) then yeah, that fails ... Set DNS Sleep to "200" or so and solved ^^
    • A

      Another Netgate with storage failure, 6 in total so far

      Watching Ignoring Scheduled Pinned Locked Moved Official Netgate® Hardware
      307
      5 Votes
      307 Posts
      84k Views
      F
      Wow... very interesting thread. I found this just yesterday and it takes me half the night to to read it from start to end . Actually I am using a SG-3100 device which I switched to SATA SSD abt. 3 years ago. I was thinking about replacing it with a newer appliance, i.e. a SG-4200, thats why I am looking around here. To be honest, there is no technical reason for that, it was just to keep pfSense at the latest. But just this days a new v25.07 was released so I will keep my SG-3100 for a while. And BTW: the SMART values shows the SSD is still at 94% lifetime, so I can run the device may be until a 4300/4400/4x00 is availabe . Regards
    • T

      ISC to Kea in 25.07?

      Watching Ignoring Scheduled Pinned Locked Moved DHCP and DNS
      3
      0 Votes
      3 Posts
      107 Views
      T
      @johnpoz Thanks John, looking forward to your findings.
    • N

      Messages seem to be broken/ something missing

      Watching Ignoring Scheduled Pinned Locked Moved Plus 25.07 Develoment Snapshots (Retired)
      4
      0 Votes
      4 Posts
      85 Views
      stephenw10S
      For reference that's an ugly error but it's only cosmetic. It's safe to upgrade still if you see that after rolling back.
    • B

      "error in version information" at login update check, but successful upgrade from CLI

      Watching Ignoring Scheduled Pinned Locked Moved Problems Installing or Upgrading pfSense Software
      13
      0 Votes
      13 Posts
      106 Views
      B
      @stephenw10 again... no errors. It's kind of wild... [2.8.1-BETA][admin@waw-staff-vpn.cic.com]/root: pfSense-upgrade -dC >>> Updating repositories metadata... Updating pfSense-core repository catalogue... Fetching meta.conf: Fetching data.pkg: pfSense-core repository is up to date. Updating pfSense repository catalogue... Fetching meta.conf: Fetching data.pkg: pfSense repository is up to date. All repositories are up to date. Your system is up to date [2.8.1-BETA][admin@waw-staff-vpn.cic.com]/root:
    • B

      After Update to pfBlockerNG 3.2.7 (25.07-RELEASE) pfb_dnsb won´t start

      Watching Ignoring Scheduled Pinned Locked Moved pfBlockerNG
      7
      0 Votes
      7 Posts
      83 Views
      w0wW
      So you're using the CARP IP address for the pfBlockerNG redirects? May I ask why that's necessary?
    • P

      Please update frr on Pfsense+ to FRR 10.3

      Watching Ignoring Scheduled Pinned Locked Moved FRR
      4
      0 Votes
      4 Posts
      329 Views
      yon 0Y
      said in Please update frr on Pfsense+ to FRR 10.3: https://redmine.pfsense.org/issues/15785 now frr 10.4.1
    • beerguzzleB

      25.07: protocol "options" in default block all rule

      Watching Ignoring Scheduled Pinned Locked Moved IPv6
      7
      0 Votes
      7 Posts
      88 Views
      beerguzzleB
      @jimp Here it is: Aug 5 13:49:59 cleo filterlog[66564]: 247,,,1649447902,mvneta0.4092,match,block,in,6,0x00,0x00000,1,Options,0,56,fe80::417:952d:77be:4497,ff02::16,HBH,PADN,RTALERT,0x0000, which should match with this from the gui: [image: 1754416400265-screenshot-2025-08-05-at-1.52.20-pm.png]