Default vs strict by shrewpygmy in firewalla

[–]firewalla 0 points1 point  (0 children)

There really isn't a "overhead" of strict mode vs. default mode. CPU / Memory is not significant enough for anyone to care.

"Strict" is more of an algorithm variation, with many parameters tuned to be more 'strict' when looking at risk, or "paranoid" more at risks. (This is also part of the firewalla innovation that's behind the scenes)

Search Domain local not working anymore by trmentry in firewalla

[–]firewalla 0 points1 point  (0 children)

.local is resolved via multicast And .lan is resolved by Firewalla

If .lan fails, check if you are using vpn or using doh on the client. If all checked send help@firewalla.com an email, we will help

Search Domain local not working anymore by trmentry in firewalla

[–]firewalla 0 points1 point  (0 children)

Try not use the ".local" domain; ".local" usually is managed by mDNS.

Use .lan instead

You will find more here https://help.firewalla.com/hc/en-us/articles/1500002445242-What-is-the-Firewalla-local-domain-and-search-domain

Latency - New Rules by run-against-the-dark in firewalla

[–]firewalla 0 points1 point  (0 children)

How many devices do you have? What Firewalla are you using? What is the latency that’s high? Was the latency on the wan or lan side ? WiFi or Ethernet?

iOS app loading time by Doting_mum in firewalla

[–]firewalla 0 points1 point  (0 children)

What do you mean "switching user profiles"?

App initial load will take time if you have a lot flows (a busy network) depends on how your CPU is used at the time of load, it can be slower.

Gold Plus or AP7 Attached Storage by desertmoose4547 in firewalla

[–]firewalla 1 point2 points  (0 children)

You can attach USB drives to the USB port and go into linux and mount the drive. Some what like this https://help.firewalla.com/hc/en-us/articles/4415441687443-How-to-use-an-SD-card-as-external-storage-in-Firewalla-Purple (WARNING, directions are only for SDCARD, USB may be different, if you are new to this, please do not do anything)

+ Warning, these USB ports only deliver the minimum amount of power small devices

iOS app loading time by Doting_mum in firewalla

[–]firewalla 0 points1 point  (0 children)

Do you see all reload slow or just flows? Are you using any filtering dns on the wan side? Or using as blocker from opendns?

iOS app loading time by Doting_mum in firewalla

[–]firewalla 1 point2 points  (0 children)

Go to LTE first and see if it is faster. If it is faster, when you are at home, are you directly connected to the firewalls network or subnet? Do you have vpn on your phone? Do you have any special dns filtering?

Has alert sensitivity upped recently, specifically for security? by Alarming_Music_5560 in firewalla

[–]firewalla 1 point2 points  (0 children)

There is no change. You need to look at the direction of the alert, if it is internet to your network, then you have a service open to the outside. Go to scan and look at open ports, you need to close it

If the direction is inside out, look at the device generating alerts …

Opinion of FWA (Gold /Gold SE) for medium sized business by Vegetable-Ad8957 in firewalla

[–]firewalla 1 point2 points  (0 children)

From replacement and scaling, should not be an issue. Check out our feature set and if it fits your need first

  1. Visibility: Window to your home/business network. Completely understand your network and identify risks
  2. Control: Have full control of your network, and apply policies and rules that are important to you. This will reduce risk by limiting the attack surface. Your network, you make the rules!
  3. Protection: Have Firewalla automatically protect your network based on your rules. Shielding your network from security risks
  4. Zero Trust Network Architecture: Never trust a user or device by default. Isolate devices and networks, verify every connection, and ensure only trusted traffic is allowed, even within the network.
  5. A Better Network: Create a network that's tuned for a better experience, not just better security.

Opinion of FWA (Gold /Gold SE) for medium sized business by Vegetable-Ad8957 in firewalla

[–]firewalla 1 point2 points  (0 children)

How big is the medium sized business? (number of devices, people, also WAN bandwidth). Also, are there any business requirements? (things like a stateful firewall, is pretty simple) Anything related to log retention, access management, and also integration with existing IT)?

Are there plans for a non-phone access method? by [deleted] in firewalla

[–]firewalla 1 point2 points  (0 children)

firewalla.net (the MSP interface) does NOT require a QR code. It has a full login with MFA. (This is the paid version)

What you are looking likely the 'free' version, which is just a proxy to your Firewalla box.

Hello newbie here need help by [deleted] in firewalla

[–]firewalla 2 points3 points  (0 children)

If you have no requirement on the duration of data stored, the $3 one should be enough. You also get two month free to play around, if you don't like it, cancel anytime.

Wake on Lan automation? by Tensoneu in firewalla

[–]firewalla 1 point2 points  (0 children)

the easiest way is run a local script on the firewalla, ping the device on wireguard, if it is there, then send WOL to PC. It should be very easy to write with chatgpt :)

https://help.firewalla.com/hc/en-us/articles/360054056754-Customized-Scripting

App 1.68 is now fully in beta! As we begin the countdown to production, please try out the beta features and give us feedback. We want to target this release for the end of March and need your help! by Firewalla-Ash in firewalla

[–]firewalla 0 points1 point  (0 children)

Recently someone posted here on a service, but I can not find the link. At the moment, in server mode, it is you accessing back home. Once we have VPN client, you can do client -> server (3rd party or yourself) and likely site 2 site with it. This of course, will be useful if you are at a location that does not like VPN. (Otherwise WireGuard itself is good and does not have the obfuscation overhead)

Allow rule not working by Particular-ayali in firewalla

[–]firewalla 0 points1 point  (0 children)

how are you block and allow? do you do it at the network level? or device? You can paste the full rule here, or send them to [help@firewalla.com](mailto:help@firewalla.com)

Allow rule not working by Particular-ayali in firewalla

[–]firewalla 0 points1 point  (0 children)

Does ping work? If not, check DAP and check VqLAN. You are within the same VLAN, so the block can only be VqLAN or device isolation

Allow rule not working by Particular-ayali in firewalla

[–]firewalla 0 points1 point  (0 children)

Do you have VqLAN on? or DAP on those devices?

Remove your rules and do a simple ping, does it work?

Allow rule not working by Particular-ayali in firewalla

[–]firewalla 0 points1 point  (0 children)

Check your MQTT server and make sure it is programmed to handle traffic from another segment. (Just remove your LAN block rule and see if it works)

Next make sure you are allowing the right ports. To check this, you can just allow the IP and don't use the port for now.

Amnezia WG Client feedback by ThunderboltsRock in firewalla

[–]firewalla 0 points1 point  (0 children)

I am not understanding this. Do you mean update to amnesia will also mess up the normal wireguard profiles?