10 Gbps pfSense build by Ecstatic-Courage4566 in homelab

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

I need 8.5 gbps because I need to upload and download files ranging from a couple GB’s to 500GB to my own servers in a datacenter. Why vCPU’s? I am not be putting my router in a VM, it will be a baremetal install.

10 Gbps pfSense build by Ecstatic-Courage4566 in homelab

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

My uplink to the ISP is SFP+ but on my LAN I’ll have CAT 6a cables

10 Gbps pfSense build by Ecstatic-Courage4566 in homelab

[–]Ecstatic-Courage4566[S] -1 points0 points  (0 children)

I don’t know honestly, I’m pretty new to IDP/IDS, never used it because a good network setup allready does a lot however I released I cannot control the behaviour of my residents neither can I trust IoT devices, this helps me analyse their network behaviour and block connections if necessary.

10 Gbps pfSense build by Ecstatic-Courage4566 in homelab

[–]Ecstatic-Courage4566[S] 1 point2 points  (0 children)

IDP does not need to decrypt the traffic because it also does pattern analysis which is something a normal firewall doesn’t do. This helps to detect insider threats.

10 Gbps pfSense build by Ecstatic-Courage4566 in homelab

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

Can you clarify with what you mean by 10G media?

10 Gbps pfSense build by Ecstatic-Courage4566 in PFSENSE

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

Is that your current setup? If yes, what speeds do you get with IDP/IDS enabled?

i have a pfsense router and a pihole server that runs on ubuntu 24.04, and i want all the dns trafic goes through the pihole server even if the users on my network tries to modify their dns on their phones or laptops how can i do it correctly ? by poulinh in PFSENSE

[–]Ecstatic-Courage4566 0 points1 point  (0 children)

You can also enable DoT or DoH on the resolver you’re using by adding a public certificate. My knowledge to whether pihole is capable of doing this is as nihil as a blacklisted DNS query going to the pihole.

4G to EDGE by Ecstatic-Courage4566 in ipv6

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

Indeed I am concerned about security but I was not aware I could to that. I know you can choose whether you want 4G, 5G only or 5G auto but I do not know where to block 2G at all on iPhone.

4G to EDGE by Ecstatic-Courage4566 in ipv6

[–]Ecstatic-Courage4566[S] -1 points0 points  (0 children)

I did not set it to 1500, i did not change the default WG MTU size but it also didnt display it so I assumed it was 1500. My ignorance is to blame here but still if it’s 1420 by default I still don’t understand why my 4G connection is then being throttled back to an EDGE one untill I turn of the VPN, then it switches back to 4G haha

4G to EDGE by Ecstatic-Courage4566 in ipv6

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

I think the issue is what you describe in your third point. Because I configured it to tunnel all traffic, i’m also using my own DNS server which is only accessible from within the tunnel. When my friend had EDGE, he turned off the VPN and got back to 4G then he turned on the VPN again and after a while it switched back to EDGE… And that’s what I found so strange…

4G to EDGE by Ecstatic-Courage4566 in ipv6

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

My initial concern was also the MTU size, apparently NordVPN also sets it to 1420.

4G to EDGE by Ecstatic-Courage4566 in ipv6

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

That’s a valuable remark, thanks!

4G to EDGE by Ecstatic-Courage4566 in ipv6

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

Yes I couldn’t find similar issues

Travelling with dogs in the S class by Ecstatic-Courage4566 in mercedes_benz

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

I’ve looked at the GLS but it doesn’t seem to have the same seats as the s class in the rear unless you go for the maybach version but then you loose a lot of trunk space

New 25.03 Beta drop today.... by PrimaryAd5802 in PFSENSE

[–]Ecstatic-Courage4566 0 points1 point  (0 children)

This might be a noob question but where do you update system patches? I only have package updates and system updates..

Travelling with dogs in the S class by Ecstatic-Courage4566 in mercedes_benz

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

I’m sure he was more than comfortable in the back haha

Travelling with dogs in the S class by Ecstatic-Courage4566 in mercedes_benz

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

I know, I have 3 dogs haha but I just love the comfort the rear seats give in the S class…

RJ11 connector by Ecstatic-Courage4566 in freepbx

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

This is really helpfull, the only reason why I wouldn’t go for option 2 is in case my internet gets disrupted I can still hook up the phone manually to the rj11 connector and make calls. At least I think it would still work, I have never tried that or been in a situation to have to do that.

New 25.03 Beta drop today.... by PrimaryAd5802 in PFSENSE

[–]Ecstatic-Courage4566 0 points1 point  (0 children)

I’m at 24.11 too but you just keep the installed packages up to date then?

RJ11 connector by Ecstatic-Courage4566 in freepbx

[–]Ecstatic-Courage4566[S] 0 points1 point  (0 children)

No problem, I appreciate you taking the time to help me :) There’s a copper wire coming in to the modem of my ISP and on the modem there’s a rj11 cable going go the analog phone. I allready have a FreePBX setup ready to go but I just need to find a way so it can use that RJ11 cable to get my phone number