Questions tagged [pfsense]

pfsense is a customized FreeBSD+pf distribution designed for use as a firewall. It wraps many of the features of the pf firewall code in an easy-to-use web interface.

pfSense is an open-source firewall product built on top of FreeBSD and the OpenBSD pf firewall.
It provides a graphical (web-based) interface for configuring and managing firewall rules, as well as viewing traffic and firewall decisions (accept/reject).

pfsense is available as a pre-built applicance (such as OPNSense or StrongBochs) or as installable software directly from the pfSense project's site.

pfsense is similar in concept to m0n0wall, however as of this writing m0n0wall uses the ipfilter packet filter.

811 questions
0
votes
1 answer

Unable to create a pfSense VM for azure from the portal

We are trying to create a pfSense VM for azure. We can select the pfSense product and we can begin creating a VM for it. However when we reach the part where we need to select which size we want to pick for the machine, all the options are greyed…
Pat
  • 133
  • 1
  • 9
0
votes
1 answer

What will happen if I enable LDAP authenticaion on pfsense and LDAP server will fail?

Currently I am using local database for authentication on my pfsense. I know that Cisco's IOS has backup authentication methods for the cases when primary one fails. You can even not to authenticate at all if all servers fail. I want to use AD user…
Edik Mkoyan
  • 115
  • 5
0
votes
1 answer

An odd-looking TCP-session script

I've faced a quite odd issue, which I'd like to share with you. Maybe you'd help me with some ideas on what's going on. There are 3 virtual machines on a KVM-powered host. Actually there are about 50 VMs, but they all are working fine, although…
Volodymyr Melnyk
  • 537
  • 5
  • 18
0
votes
1 answer

Tinc on OPNsense

Having this kind of network layout https://imgur.com/rhLepAU I can get it working using mode=switch in with tinc, but not using mode=routed Those are the network details On quantum those are the routes/config (hint, external IP has been obfuscated…
Eugen Mayer
  • 277
  • 1
  • 4
  • 15
0
votes
1 answer

pfsense: port forwarding rule allow open port but looks close

I'm trying to forward the port 2222 to a ssh server running in port 2222, inside the network works fine, so I guess is something in pfsense. I try to do the same in a testing environment and works fine too, I'm checking the port outsite and using…
Julio
  • 19
  • 1
  • 8
0
votes
1 answer

HAProxy directing connections to the correct server

I have two servers behind pfsense haproxy and I need to make sure users land on the same server based on a part of the url. http://mydomain//..../.... In my case the is always the first slash after the domain, so all users with the same …
h3li0s
  • 113
  • 4
0
votes
1 answer

Ubuntu Running KVM with 3 NICs Setup

I am currently trying to setup a KVM server with two OS (pfsense & Ubuntu Server) on an Ubuntu server with three NICs (enp2s0, enp1s0, & enp3s5). This is the concept I'm trying to do: http://imgur.com/s7QqsMH What should the /etc/network/interfaces…
0
votes
1 answer

Firewall Logs in pfSense shows the WAN IP for NAT Connections

I have a hardware router running pfSense (version 2.3.2-RELEASE), and I am trying to get the Firewall configured. So far, I only have 2 ports connected, one for the WAN connection, and one for LAN. I presently only have 1 device connected on the…
topherg
  • 151
  • 2
  • 10
0
votes
2 answers

Firewall (pfSense) general, and block ssh attacks "newbie"

i am a little beginner in administration. Have an VPS on ovh.com, where i had expect 28 tries in 2 days from different ip's (usually china) to log on my ssh (late centos installed with Centos Web Panel in. The plann is mount a lot of google drives…
gcboard
  • 1
  • 8
0
votes
1 answer

pfsense firewall for public ip's

We want to add a firewall under our cage rack for a few servers that we run virtual machines under. After further discussion we ended up on setting pfsense under a dedicated server and run a software firewall/router for start. The question i have is…
0
votes
1 answer

ArchLinux multi home not responding on one interface

I have a bunch of kit in a DC running through Cisco ASAs - this isn't really working out as it relies on us creating, paying and waiting for tickets concerning out network config. I've been and installed a couple of R230s running pfSense, along with…
Dave
  • 1
  • 2
0
votes
1 answer

Routing with pfSense

I have inherited a badly designed network, and have to keep it up. There's a machine running VMWare, and a pfSense VMWare appliance is acting as firewall and NAT. The network in use inside this NAT is 10.0.0.0/14. The pfSense appliance has two more…
iMan Biglari
  • 101
  • 1
  • 4
0
votes
0 answers

pfsense opnvpn cannot access local VPC Subnet IPs

I have setup PfSesne in OpenVPN on AWS in a VPC subnet. private subnet range is 10.0.0.0/24 . it has one EIP . i want to connect to internal LAN subnets by vpn access. i do have enabled the option to enable local neywork access from openvpn client,…
Farhan
  • 4,210
  • 9
  • 47
  • 76
0
votes
1 answer

pfSense BGP and NAP

We have an AS number for a C class (/24) and 2 providers. Currently I have a Fortigate and a pfSense in the network. Fortigate is doing the BGP, and pfSense is doing the NAT, DMZ, VPN, VLAN. We are using 1 IP to route all internal traffic, 1:1 NAT…
Alin
  • 9
  • 2
0
votes
1 answer

How to enable OpenVPN client to address remote computers using hostnames (using PfSense)?

How to allow OpenVPN clients to address remote computers using hostnames? I VPN into a remote site using an OpenVPN server running on PfSense at the remote site. The remote PfSense is running DNS and all computers on that network can communicate…
Greg
  • 1,557
  • 5
  • 24
  • 35