Questions tagged [pfsense]

pfsense is a customized FreeBSD+pf distribution designed for use as a firewall. It wraps many of the features of the pf firewall code in an easy-to-use web interface.

pfSense is an open-source firewall product built on top of FreeBSD and the OpenBSD pf firewall.
It provides a graphical (web-based) interface for configuring and managing firewall rules, as well as viewing traffic and firewall decisions (accept/reject).

pfsense is available as a pre-built applicance (such as OPNSense or StrongBochs) or as installable software directly from the pfSense project's site.

pfsense is similar in concept to m0n0wall, however as of this writing m0n0wall uses the ipfilter packet filter.

811 questions
0
votes
1 answer

PHP crashing when loading "RRD Graphs" page on pfSense

When attempting to visit the Status > RRD Graphs page of pfSense, I am greeted with a blank page... Most likely due to PHP being unable to complete the request... I am unsure how to repair this. On Linux I would usually run something akin to the…
Soviero
  • 4,306
  • 7
  • 34
  • 59
0
votes
1 answer

pfSense router gives DNS rebinding warning when accessing subdomains

I have just set up a router running pfSense on our network and forwarded the appropriate ports. I have a small web server running in my network, and a domain name pointing to our (WAN) IP. When accessing that domain name, everything works fine.…
0
votes
1 answer

pfSense to ASA L2L VPN - infrequent, short-lasting, but consistent disconnections

Has anyone here been able to specify a stable configuration for the L2L VPN between an ASA device and pfSense 2.0.1? I am using the most accomodating settings on the ASA side (DefaultL2LGroup with many transform sets and using PSK so that the…
tacos_tacos_tacos
  • 3,220
  • 16
  • 58
  • 97
0
votes
1 answer

VLAN trunk port not working with ESXi 5

I just purchased my first VLAN-capable switch (SLM2008T-NA), and I tried to configure my first vlan on it. However, I am not able to make my trunk port work with ESXi 5. Here is my current setup: Port 8 -> Access, PVID 300, Admit Untagged…
0
votes
1 answer

Can I use my pfSense WAN IP as public IP for 1:1 NAT? What about port forwarding?

I have a dual pfSense configuration with CARP. Both WAN interfaces are assigned consecutive WAN IP .150, .151. I think it is silly that pfSense would require them both to have these dedicated IP so I was wondering if it is possible that I could use…
tacos_tacos_tacos
  • 3,220
  • 16
  • 58
  • 97
0
votes
1 answer

Order of application of NAT rules in pfSense 2

In pfSense 2.0, I have a bunch of WAN CARP Virtual IPs and a bunch of 1:1 NAT rules defined associating these IPs to LAN subnet hosts. If I set up Port Forwarding rules that forward from CARP IPs that I have already defined in 1:1 to other hosts,…
tacos_tacos_tacos
  • 3,220
  • 16
  • 58
  • 97
0
votes
1 answer

PFSENSE Bridge on of the Network Interfaces

I have a PFSENSE installation, which I have just added a new physical interface to for a new requirement 'DIGI'. A third party has installed a DrayTek router on our network which has their equipment behind. They require external access to the…
Stuart
  • 203
  • 1
  • 3
  • 11
0
votes
1 answer

Is there a way to set ddns local to not forward to admin interface

I am running pfsense and would like to configure my site to work locally. I have a ddns setup working externally with no-ip. The problem is I'm trying to get my local setup to work. Locally I enter domain name, ie example.com, and get redirected to…
atrueresistance
  • 132
  • 2
  • 9
0
votes
1 answer

PFSense new network, NAT and Firewalling

We have a PFSENSE installation with a few physical interfaces defined: 192.168.1.0/24 - LAN 192.168.2.0/24 - WIFI 192.168.3.0/24 - SERVERS 10.61.88.0/23 - New Requirement..... read on The new requirement has been laid out by a supplier, they…
Stuart
  • 203
  • 1
  • 3
  • 11
0
votes
1 answer

pfsense long ping to google

I have a pfsense box set up. What happens is I set a rule so I can't hit the admin interface 192.168.3.1 from the box. With the rule enabled --- www.l.google.com ping statistics --- 2 packets transmitted, 2 received, 0% packet loss, time…
atrueresistance
  • 132
  • 2
  • 9
0
votes
2 answers

Alternative to pfSense for a production-ready firewall solution hosted in ESXi

I'm looking for an alternative to pfSense (2) that can be virtualized in VMWare ESXi. I've experienced several problems with pfSense to date and I feel like it is not a totally finished or polished product. Whenever anything goes wrong (IP address…
tacos_tacos_tacos
  • 3,220
  • 16
  • 58
  • 97
0
votes
2 answers

nagios nrpe plugin output not complete

I have written a small script to check the states of PfSense, and using this script to get the output in nagios, through NRPE... Here is the script used=`pfctl -s state | wc -l | bc | cut -c1-5 | bc` echo "States consumed=$used" Normal output of…
Farhan
  • 4,210
  • 9
  • 47
  • 76
0
votes
1 answer

pfSense 2.0RC Webservers LoadBalancing

Hy, I Recently installed pfSense 2.0RC and i tried to Set an Loadbalancing, I Added the IP Pools: 192.168.1.10:80 -> webserver 1 192.168.1.100:80 -> webserver 2 And Added an Virtual Server IP: 192.168.1.200:80 -> Virtual IP But when i trying to see…
blackriderws
  • 137
  • 7
0
votes
2 answers

Virtualizing NTP server

Possible Duplicate: What are the limits of running NTP servers in virtual machines? I was wondering if virtualizing NTP is okay. I have a VMware ESXi 5.0 box, and I want to virtualize my router since the original hardware bit it. The only thing…
ianc1215
  • 1,965
  • 7
  • 34
  • 55
0
votes
1 answer

pfSense command to delete stale SAD

I'm experiencing an issue with pfSense where duplicate SAD's are getting created after rekeying, forcing me to manually go ahead and delete the old SAD's. It's not a huge issue but it does get to be a problem once I let it go for a few days. I just…
tacos_tacos_tacos
  • 3,220
  • 16
  • 58
  • 97