Subcategories

  • Discussions and feedback related to this forum

    605 Topics
    3k Posts
    S

    @stephenw10 One thing I have noticed on iOS Safari and just put together…if I reply to a message it looks fine. When I tap into the text field to type it zooms in enough to hide the > icon. Let’s see if this makes it:

    c1e202b8-de5f-416b-9b6c-1609936a78e7-image.png

    …so I have to zoom out or scroll right to submit.

  • Community Hiring and For Hire postings related to jobs that require pfSense software skills

    27 Topics
    114 Posts
    w0wW

    @sef1414
    Name it "run.sh", copy to pf and chmod according documentation
    https://docs.netgate.com/pfsense/en/latest/development/boot-commands.html#shell-script-option
    You will see messages in the system log like those quoted in the script after logger command.

  • Free Network diagram drawing tool for Win,MAC or Linux.

    Pinned until 10/1/25, 12:00 AM
    20
    8 Votes
    20 Posts
    12k Views
    Sergei_ShablovskyS

    @krishcomment said in Free Network diagram drawing tool for Win,MAC or Linux.:

    HI, @Sergei_Shablovsky
    Thanks. I would like to address some concerns which you have raised here.

    Regarding the shape libraries, Creately does support AWS, Cisco, GCP, Azure, and Kubernetes shapes, which can be accessed via a dedicated account.

    Most of network diagramming tools that I have been testing on a real use cases may be divided on 2(two) main groups:

    With ability to take attention to interface type, port speed, etc.- trying to simulate packet flow. Mostly there are hi-priced, proprietary, and with shrinked library of device’s models and in addition the ugly UI/UX interface solutions.

    The shapes drawings vector editors, with full toolset (like layers, smart layers, smart groups) and rich abilities to manipulate with graphic’s objects. Polished UI/UX (especially on Apple macOS) and rich import/export features, that give ability to import any drawings from equipment/appliances manufacturer. (Most of enterprise-level manufacturers already have drawings in .ai, .svg or other vector formats).

    With the trial version, these libraries aren't available, but once you have a full account, you'll be able to access them. I can also provide screenshots of these shape libraries for reference.

    Please give us several screenshots.

    On security, Creately is ISO 27001 and SOC2 certified, ensuring high standards of data protection. Some of our key users include the Australian government, Dubai government, NASA, and Netflix, all of whom trust Creately's enterprise-grade security. We also offer on-premise deployment options for organizations with strict security requirements.

    We all see that each day some private data leaking from cloud services. Especially in Enterprise world.

    I am strongly stay at point that so important, CRITICAL DOCUMENTS like network infrastructure schemes - have a MUCH BETTER SAFETY LEVEL when create, store and edit in INSIDE PERIMETER of organisation. Because a lot of abilities of internal security, both from physical to digital.

    Lastly, the cloud-based nature of Creately allows for real-time collaboration and scalability, making it a powerful tool for corporate users working across distributed teams. While standalone apps have their strengths, Creately's collaborative features enhance efficiency in fast-paced environments.

    Sounds like ADs. ;)

  • This category is not for pfSense support!

    Pinned Locked
    1
    1 Votes
    1 Posts
    4k Views
    No one has replied
  • Join Netgate / pfSense on Slack

    Pinned Locked
    1
    1 Votes
    1 Posts
    8k Views
    No one has replied
  • [ Show your pfSenses! ] - Thread - (bandwidth warning!)

    Pinned
    166
    0 Votes
    166 Posts
    132k Views
    N

    Reseau.jpg
    87355faf-ac9e-4b32-b945-e0e4e80f2644-image.png

    Network

    APC Back UPS ES500 Cable Modem | 100 / 30 Supermicro X10SBA (J1900) w/ 8GB RAM, 30 GB SSD (pfSense) TP-Link SG1016DE smart switch TP-Link Archer C7v2 WAP Cisco SPA112 ATA (not visible) Lutron Caséta Downstairs in the condo locker APC XS1500 UPS TP-Link SG105E smart switch Dell T610 30m away in the garage another ArcherC7v2

    The chassis is an Akasa Euler meant specifically for Supermicro A1SAi/A1SRi. I was naive to think the block heatsink would fit the X10SBA. It does not. It was bought to build an HTPC.

    I hoped to find a compatible mobo at a decent price but those two models are vere expensive. The box is open since the SOC relies on its OEM heatsink instead of the massive block of the Euler.

    TV

    A complete coax set for paid service A complete coax set for ATSC
  • Poor cable modem internet service

    15
    0 Votes
    15 Posts
    281 Views
    L

    @tedquade Oh, great news! Thank you for the update, Ted.

  • Boot Environment in pfSense CE

    4
    0 Votes
    4 Posts
    196 Views
    andrzejlsA

    @LukasInCloud
    I run pfSense+ as my firewall and, yes, I create new BE copy after every major change and switch to it as WIP. I also have a computer running FreeBSD 14.2 with KDE Plasma 6 DE. I create new BE copy in CLI.

  • Voice over IP (VOIP) services are changing router design.

    17
    0 Votes
    17 Posts
    174 Views
    D

    @voxmagna1 Something else that may help: Firewall Optimization Options

  • This topic is deleted!

    1
    0 Votes
    1 Posts
    3 Views
    No one has replied
  • This topic is deleted!

    2
    0 Votes
    2 Posts
    2 Views
    No one has replied
  • Network Upgrade and Rack cleanup

    11
    11 Votes
    11 Posts
    282 Views
    stephenw10S

    Nice! 👍

  • sipeed nanoKVM

    11
    1 Votes
    11 Posts
    932 Views
    dennypageD

    @patient0 said in sipeed nanoKVM:

    And a review of it (not all positiv):
    https://www.youtube.com/watch?v=plJGZQ35Q6I

    Things have improved a bit, but I recommend Anyone who is considering purchasing one of these watch that video, and read through the associated Github issue thread. If you buy one of these, I would re-flash the unit prior to use.

    As an alternative, for about the same price (ex shipping) there is JetKVM which is physically very nice. Here is apalrd's security video on JetKVM, which is also worth watching.

    FWIW, I have no association with JetKVM other than as a user.

  • This topic is deleted!

    5
    0 Votes
    5 Posts
    56 Views
  • pfLoginTracker – pfSense Authentication Monitoring Tool

    1
    1 Votes
    1 Posts
    108 Views
    No one has replied
  • NTP Server GPS Source

    6
    0 Votes
    6 Posts
    1k Views
    E

    @elvisimprsntr

    For those reading/upvoting this thread, I have since moved to a GPS puck with PPS output as a Stratum 0 source.

    <10 usec offset/jitter for <$50

    https://github.com/elvisimprsntr/pfsense-ntp-gps

  • IPv6 SLAAC abused

    3
    2 Votes
    3 Posts
    128 Views
    AndyRHA

    A common misconception is an interesting attack like this one is the way in. Frequently it is a chain of attacks that get companies and people in trouble. A low access breach is chained with other attacks and quickly the attacker is root. Read the Pwn2Own results. Pwn2Own is a hacking competition and most winners chain attacks.

    Since this one is actively being used it must be working. I am sure this will breed new attacks.

    Defensive thinking will have you lock your front door, offensive thinking will have you bar the front door.

  • Reputation

    13
    4 Votes
    13 Posts
    539 Views
    stephenw10S

    Removed.

  • This topic is deleted!

    1
    0 Votes
    1 Posts
    14 Views
    No one has replied
  • Ka-chow!!!

    16
    2 Votes
    16 Posts
    712 Views
    L

    @JonathanLee Oh, yeah 😁 All the garbage truck drivers in the neighborhood know my son. They always wave and greet him.

  • This topic is deleted!

    1
    0 Votes
    1 Posts
    15 Views
    No one has replied
  • script to back up pfsense config to github

    5
    3 Votes
    5 Posts
    217 Views
    L

    @elvisimprsntr Honestly, that’s a solid, old-school, reliable shell script. But it has a few weak points. It doesn’t stop on errors, so if something fails, the rest of the script will still run without warning. It also uses plain echo statements without logging to a file, which makes it harder to track issues later. The USB device path is hardcoded, which isn’t very flexible if the device name changes. There’s no error handling for the scp commands either. if copying to the NAS fails, you won’t know unless you’re watching the console. It might also be a good idea to move the NAS address and backup path into a config file for easier updates. And while copying the config file locally is fine, it skips CSRF protection that the web interface uses, so it might miss some config details or protections in certain setups. Overall, it’s a good base but could be improved with safer practices and a bit more flexibility.

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.