Packages wishlist?
-
Squid 3 Devel Missing. Danguardian missing ntopng is missing… affff. Also Https Filtering in LAN rule not working properly :(
ntopng is supposedly coming back in the near future.
Dansguardian is missed, but I think at this point switching to e2guardian would be more appropriate.
Also, a browser based file system manipulation/text file editor would be useful, it can be a life-saver in some cases.
vhosts is missed a lot, too. Not like I consider a router a place to put a big web site on, but a static information page on the router is less of a safety issue, than poking holes into the LAN so I can serve it on some computer which then might be open to a variety of attacks.
The web server runs on the system anyway, otherwise I couldn't administer the unit from afar.How could Browser baes Maniulation ??? method if u can share ? also how can block Proxy Sites :(
-
And can anyone help me that how can I limit the bandwidth for single user… Thanks!
-
+1 for e2guardian. This is the one thing keeping me from completely moving over to pfSense.
-
Seeing as filer is no longer maintained, therefore was not brought forward.
I would love to see a simple package for creating/editing/maintaining wpad.da wpad.dat proxy.pac files.
Whether it be a simple tool to specify the text parameters for autoconfigure, and it automatically creates the 3 files. Or, a more advanced tool that allows you to add the parameters through a form, and the tool generates the appropriate files automatically(ensuring that syntax is proper).
File Editor works fine, however, it does not have the ability to create files, therefore I need to scp 3 template files before modifying them. Perhaps just adding the ability to create files would suffice, combined with a gui option for creating symbolic links(just to simplify the process, modify one file to update all 3)
- M
Edit: This might not even be a new package, rather an addition to the existing squid package.
-
Building on my last post, it would also be nice to have the ability, from within the lightsquid module, to modify the realname.cfg and groups.cfg files. This would just make life a little bit easier for managing the reports.
- M
-
In my most wanting of wanting shooting for the stars here. Total information integration with the network it is hosting via syslog, snmp, rmon etc etc and having that machine data indexable.
I can't afford solar winds. ROFL.
Pfsense is great guys, really enjoy working with it.
-
The big ones for me are:
privoxy - a configurable http proxy - ad blocker
tor - needs no expl.
dante - a SOCKS proxy
-
Nagios-NRPE Support for monitoring.
-
munin-node for monitoring.
bring back check_mk and NRPE for monitoring 2.3
Kind regards
-
suricata that would work without issues.
-
bandwidthd
vnstat
ntopng
-
LISP support - requires kernel modification aswell tho.
-
Nagios-NRPE Support for monitoring.
-
mbuffer (and mhash, needed by mbuffer) would be great - have my replacement for bandwidthd working, but need mbuffer to really make it work … ;)
Thanks!
-
Bring back NTOPNG!
Seriously missing this package in pfsense 2.3 -
Agreed with NTOPNG. Watching this on github with great anticipation.
https://github.com/ntop/ntopng/issues/297
-
my wishlist:
mc
exim OR postfix OR sendmail OR ssmtp OR any other MTA to create openrelay
nginx web GUI - to set up virtualhosts, upstreams. (for example take some expirience from Ajenti)
docker - it will allow set up almost any service
monit
munin -
My wish is very simple . . . fail2ban or equivalent. Where I could setup arguments to scan the logs and modify firewall rules based off those.
Currently running fail2ban on many downstream devices paired with IPtables and it works great. It would be nice to have the package scan remote logs as well; for instance, scan Apache logs and make changes at the firewall when an attack is happening.
-
xrdp
Specifically, because it would be great to be able to create an RDP gateway within my pfsense edge router, so that I don't have to maintain xrdp on a separate VM.
Regardless of method though, even if it were just a pkg that could be manually installed via the shell by advanced users and then appropriately (manually) firewalled and natted, it would be a great edition to the selection of packages...and while I'm here… THANK YOU! <- to whoever got the BIND-DNS package back online for the newest build. Whoever did the work on that has my eternal gratitude. I only wish I had waited a few more days before migrating builds because I could have saved myself a lot of work.
-
-
+1 for privoxy
-
+1 for ntopng
-
ZFS by default
-
Package to setup mounted USB disk as a ZFS device, copy / backup the current system across so you can reboot from it, then back that up to your internal drive (i.e. simple UFS -> conversion!)
-
Wireless AC 1300 drivers would be amazing but I know thats a big ask
-
Ability to serve simple static webpages from an archive or git checkout using nginx (useful for internal bookmarks for staff etc…)
-
A page that shows your detected hardware and highlights any items that may have potential problems
-
Much better traffic shaping wizard (badly needed, not really a package though)
-
Proper vim package (that supports backspace etc…)
-
htop package
-
fail2ban
-
ipsec wizard package
-
BareOS
-