• 0 Votes
    5 Posts
    1k Views
    S
    @Bob.Dig what's the right place?
  • How to change Kea DHCP log level

    DHCP and DNS kea logging verbosity severity
    16
    0 Votes
    16 Posts
    3k Views
    stephenw10S
    Ooo, missed this. You are just adding that section to the custom Kea json config? Edit: Yup
  • IPv6 Link Local in Interface Status

    General pfSense Questions
    2
    0 Votes
    2 Posts
    144 Views
    tinfoilmattT
    @azalea You can read more about the specific notation you're asking about, the zone index, in this Wikipedia subsection of the "IPv6 address" article.
  • 0 Votes
    2 Posts
    427 Views
    N
    This is what I observe in the system logs when this event occurs: not letting me post the logs here due to ant spam filter you can see it on my post on reddit here in the reply's: https://www.reddit.com/r/PFSENSE/comments/1mrqwg3/wireguard_tunnel_disconnectreconnect_events_cause/
  • 0 Votes
    8 Posts
    2k Views
    D
    @SteveITS Tool tips say the following: green: Current Boot Environment yellow: Boot Verification Failed black: Upgrading Boot Environment
  • Keine Zugriff mehr auf meine Pfsense, nach upgade auf 2.8.0

    Deutsch
    10
    0 Votes
    10 Posts
    3k Views
    M
    @Rico Ich glaube jetzt hab ich es, das System bootet automatisch vom Stick und über die Serielle Verbindung kann ich die Installation auch starten (xterm war das Mittel der Wahl bei der Konsole, für mich) und werde durch die Installation geführt. Ich hoffe ich kann mein Backup dann auch wieder einspielen
  • 0 Votes
    75 Posts
    6k Views
    WB3FFVW
    @malindsay Your welcome, and I would say stay back a version, or switch to Legacy BIOS mode, either works. Was going to give you a thumbs up, but apparently my reputation isn't good enough here yet.. LOL Trying to remember how many years I have been around this place, just not always active.. -Howard
  • SG-2100 packetloss in internal 5 port switch

    Official Netgate® Hardware
    11
    0 Votes
    11 Posts
    1k Views
    keyserK
    Just as a followup, I have been unable to solve this issue, and it happens with two different 2100’s. So the workaround for now is to use mvneta0 as the uplink to the switch carrying multiple VLANs in a 802.1q trunk (leaves the builtin 5 port switch out of the inter VALN routing). At some point I will try with another managed switch model to see if it’s the specific Switch/SG-2100 combination only, or a general issue.
  • 0 Votes
    6 Posts
    1k Views
    P
    @girkers said in Best way to set up and maintain a cold spare for pfSense 2.8.0 CE: How do others handle maintaining a cold spare so it’s ready to go at short notice? On my cold spare I load the current version of pfsense (and maintain it in the current series so configuration import is compatible) Load the configuration from the main unit. Most easily done via the GUI so interface reassignment can be easily seen. This is do both so plug and play will probably work but also as a dry run in-case a newer configuration has to be loaded in a hurry. Back up the main units configuration to a location accessible without a functioning pfsense router (to enable use during an emergency restore). I actually use my cold spare for other things when not needed as a router by running pfsense under Proxmox but configuring dual boot would achieve similar functionality
  • 0 Votes
    2 Posts
    69 Views
    stephenw10S
    Yup, seeing that here. Likely related to the upstream firmware API issue. But those drivers shouldn't need to load anything without the hardware present anyway.
  • 0 Votes
    3 Posts
    4k Views
    stephenw10S
    Yup, that's fixed in current versions.
  • 0 Votes
    6 Posts
    2k Views
    stephenw10S
    Hmm. Well if you can replicate the WAN failure after upgrade it would be good to grab a status_output file to check. I've not seen that on an 1100 here.
  • SG-1100 - Failed pfsense upgrade

    Official Netgate® Hardware
    9
    0 Votes
    9 Posts
    703 Views
    stephenw10S
    Well you obviously you shouldn't need to so I'd hope to see some error logged that tells us what's happening. But I would try installing it as UFS if it still fails with ZFS. That will rewrite the partition tables. If that does work then try installing ZFS again.
  • 0 Votes
    15 Posts
    3k Views
    N
    @viragomann Can you possibly elaborate on this? A floating rule on the client pf? both instances? (active and stby?)
  • Bloquear Whatsapp con pfSense

    Español
    10
    0 Votes
    10 Posts
    5k Views
    M
    @rocaembole aca las URL, puertos e IP requeridas para filtrar, siempre y cuando creen sus reglas correctamente. https://developers.facebook.com/docs/whatsapp/guides/network-requirements
  • 0 Votes
    3 Posts
    2k Views
    johnpozJ
    @Cloufish there is a difference between traffic that would go out your wan interface to get somewhere, and wan address as your destination. It would rare that a client would actually ever try to go to your specific wan address. Your wan address is just that the IP address on your wan interface, say 1.2.3.4 if public. your wan net is just the network 1.2.3.0/24 that your wan is on.. Some client to go to an Ip on the internet say 5.6.7.8 or 8.8.8.8 would never have your wan address or wan network as the destination. The destination would be those 5.6.7.8 or 8.8.8.8 Ips
  • 0 Votes
    3 Posts
    2k Views
    stephenw10S
    It is in 2.8: [2.8.0-RELEASE][admin@t70.stevew.lan]/root: kldstat -v | grep bnxt 94 pci/bnxt 93 bnxt_mgmt I've never tested that NIC though.
  • 25.07 and Avahi?

    Problems Installing or Upgrading pfSense Software
    18
    0 Votes
    18 Posts
    3k Views
    T
    @Gertjan @stephenw10 Thank you for the explanations. I will start a new thread.
  • Mi DNS Resolver no resuelve bien

    Español
    2
    0 Votes
    2 Posts
    524 Views
    HidekiSenpaiH
    (Hice un post pero lo elimine ya que han cambiado ciertos asuntos, este es un post actualizado) Hola, seré breve Tengo el router ISP que va conectado a un switch el cual se encarga de separar en vlans el router ISP del pfSense, ya que mi idea era separar la red ISP de la mia para montarme mi homelab, pero manteniendo la red ISP, o sea estoy en doble NAT Tengo suricata y pfBlockerNG, pero pfBlockerNG ahora no lo utilizo Deshabilité IPv6 por completo, en caso de que hubiera un conflicto, y después de hacerlo, comenzó a resolver consultas con DNS externo, pero daba "Respuesta no autoritativa" [image: 1756816982004-consulta-a-dns-externa.png] Si hago un nslookup normal a google.com (por ejemplo) utilizando una DNS externa como 8.8.8.8 reconoce la dirección pero el servidor no [image: 1756817020179-consulta.png] Y si hago un nslookup directo a pfSense con google.com, reconoce el servidor pero termina dando error [image: 1756817525833-consulta-directa-a-pfsense.png] Aquí están mis ajustes del unbound: [image: 1756817739983-captura-de-pantalla-2025-09-02-145314.png] [image: 1756817880184-captura-de-pantalla-2025-09-02-145329.png] No se que puede estar pasando Supongo yo que es por este problema por el que no cargan las páginas y demás aunque en el cliente luego me pone que hay acceso a internet Gracias de antemano
  • 6 Votes
    59 Posts
    6k Views
    PhizixP
    All, On my SG5100 just upated to 25.07.1 over the weekend. No issues. It uninstalled and re-installed one package automatically. Otherwise I did nothing else. To be clear, my setup is fairly simple. Phizix