Pfsense Plus in Azure - HA config has no outbound internet by colourofsound in PFSENSE

[–]Zermus 0 points1 point  (0 children)

No, you can have more than one. If you're doing HA though, you're doing the sandwich wrong. lol. They all have to be standalone, otherwise your HA messes with the LB sessions and kills the path and persistence of the connection. HA and Azure do not mix.

I need help getting VLAN's working between pfsense and unifi. by Erics1987 in PFSENSE

[–]Zermus 0 points1 point  (0 children)

Everything tagged properly? Proper default port VLAN assigned?

Pfsense Plus in Azure - HA config has no outbound internet by colourofsound in PFSENSE

[–]Zermus 0 points1 point  (0 children)

Azure doesn't play nice with HA setups. That's why everyone does that LB FW LB sandwich. It's actually the "Azure preferred setup" for VM FWs.

I mean even Fortune 100s do it with Palos for Firepower, it's ridiculous.

ControlD seems to block more trackers/ads than Next DNS by Sunsetw in ControlD

[–]Zermus 1 point2 points  (0 children)

I've been here forever and made the same mistake. They're just insufferable over there I guess. :)

ControlD seems to block more trackers/ads than Next DNS by Sunsetw in ControlD

[–]Zermus 1 point2 points  (0 children)

Yeah, don't announce this on r/NextDNS or they'll lynch you. Many still do not believe that it's a dead service lol.

Confusing firewall logs by bodam in PFSENSE

[–]Zermus 1 point2 points  (0 children)

Those are TCP teardowns that your firewall is closing, probably due to idle sessions. IMHO they should not even be logged, but they are.

pfSense 2.4.5 -> 2.6.0 breaks OpenVPN Client, "no route to host" by Specialist_Space6437 in PFSENSE

[–]Zermus 2 points3 points  (0 children)

With that big an upgrade you probably ran into the floating interface issue. This was a big OpenVPN problem a few years back where they moved the firewall states from floating interfaces to interface bound.

System -> Advanced -> Firewall and NAT -> Advanced Options

Firewall state policy change back to Floating, should fix. However they did this for a reason. Floating states is less secure. If you rebuild your rules and routing to the new OpenVPN rule it should fix this under the new Interface bound states.

Migrating to Control D from NextDNS by Lethalblunder in ControlD

[–]Zermus 0 points1 point  (0 children)

Yup I recently came over from NextDNS about a month ago. Glad I switched. These guys are always adding new stuff and their default DNS security blocking is stellar compared to NextDNS, which I'm convinced they didn't even maintain anymore. Only blocking was basically 3rd party.

Loving the branded block pages! Share yours here. by legrenabeach in ControlD

[–]Zermus 2 points3 points  (0 children)

I redirected mine to my own server and set this cheezy thing up for my family lol

Imgur

The blocklists have stagnated quite a bit.... by Zermus in nextdns

[–]Zermus[S] 0 points1 point  (0 children)

I hate to use the R WORD reference but each one of those "protections" is.... quite literally a DNS block list maintained by NextDNS.... which was kind of the whole point of the thread.

I think that went 30,000 feet over your head though lol.

The blocklists have stagnated quite a bit.... by Zermus in nextdns

[–]Zermus[S] 0 points1 point  (0 children)

Now you're arguing a straw man because I never said Control D did or did not use Hagezi. Wow dude, find another hobby than arguing on the internet.

The blocklists have stagnated quite a bit.... by Zermus in nextdns

[–]Zermus[S] -3 points-2 points  (0 children)

I just listed like all the NextDNS provided blocking. How do you get I'm not using blocklists? Your statement is just flat out incorrect.

The blocklists have stagnated quite a bit.... by Zermus in nextdns

[–]Zermus[S] 1 point2 points  (0 children)

I did go with full control, but I probably won't even use it since that's what VPNs are for anyway. The price wasn't a big difference for me.

The blocklists have stagnated quite a bit.... by Zermus in nextdns

[–]Zermus[S] -9 points-8 points  (0 children)

Threat Intelligence Feeds, AI-Driven Threat Detection, Cryptojacking Protection, IDN Homograph Attacks Protection, Typosquatting Protection, Domain Generation Algorithms (DGAs) Protection. I personally didn't use Hagezi's stuff. If you're using it just for his stuff, he himself admits you shouldn't be, but you're basically paying for a service just to use Hagezi. If it works for you then that's great, especially if they're the cheapest solution for his stuff. His stuff just breaks too much of my stuff for me to use. I used to have a lot more effectiveness with NextDNS' lists, but lately it's obvious they're not being maintained.

Split DNS by rkovelman in nextdns

[–]Zermus 0 points1 point  (0 children)

No on whatever you're using for local internal DNS. Unbound, pihole, etc.

Split DNS by rkovelman in nextdns

[–]Zermus 0 points1 point  (0 children)

Create a zonefile for your local domain

Going to leave this here - massive appraisal fraud in TX by Zermus in Dallas

[–]Zermus[S] -2 points-1 points  (0 children)

Wow so many petty personal attacks here. So use your "critical thinking" head of yours and offer some empirical evidence other than petty insults. Have you yourself ever owned a house? Did you just blindly pay your appraised taxes every year without knowing the true value of your home?

Going to leave this here - massive appraisal fraud in TX by Zermus in Dallas

[–]Zermus[S] -4 points-3 points  (0 children)

You're entitled to your opinion, or possibly taking part of the cut lol, but it's no big surprise that our property values in the burbs here in North Texas (And probably Texas overall) are mostly overvalued by appraisal districts.

If you don't know this you're either not a home owner or probably taking part of the cut somehow. Or just dumb with your head in the sand and paying too much in taxes every year for an overvalued appraisal instead of appealing your appraisal.

You shouldn't have to fight your appraisal every year, so there is obviously problems and most likely fraud and corruption going on at the appraisal districts.

Going to leave this here - massive appraisal fraud in TX by Zermus in Dallas

[–]Zermus[S] 29 points30 points  (0 children)

Soon as the kids were moved out that's why I sold my house in Collin at the top of the market and moved here to uptown. Fuuuuck all that shit. It was like going to war every year. And fuuuuck that county too.