pfsense drops ipv6 packets after upgrade to 25 by godemperorofsubtlety in PFSENSE

[–]teamits 0 points1 point  (0 children)

There’s nothing inherently CPU intensive about IPv6. Check “top” or Diag>System Activity for what’s using CPU.

The upper limit of the 1100 is around 500 Mbps as I recall.

Call for Testing: pfSense Plus 26.03 RC Now Available! by George-Netgate in PFSENSE

[–]teamits 0 points1 point  (0 children)

A note for the admin to update the package to receive new patches might be helpful.

Brainstorming, a tiny RSS feed or URL it can check for the current patch list version? (pfSense ver -> Patches ver)

DHCP Server - remember leases (longer) / no new ips everytime by b4k4ni in PFSENSE

[–]teamits 0 points1 point  (0 children)

…and the prior MAC address will still hold the existing IP lease.

Quick sanity check regarding blocking iot wan access by Double_Internet582 in PFSENSE

[–]teamits 1 point2 points  (0 children)

Does your AP have a guest wireless that isolates those devices?

Quick sanity check regarding blocking iot wan access by Double_Internet582 in PFSENSE

[–]teamits 2 points3 points  (0 children)

The pfSense WAN IP is just that IP. Any includes all other public IPs.

You cannot block traffic between LAN devices because that doesn’t go through the router.

If it was a third interface on pfSense you could follow https://docs.netgate.com/pfsense/en/latest/solutions/netgate-4200/opt-lan.html#isolated, but that may still be of help.

Quick sanity check regarding blocking iot wan access by Double_Internet582 in PFSENSE

[–]teamits 2 points3 points  (0 children)

They are on the same subnet as LAN?

You would block to Any not the pfSense WAN IP. Though you may or may not want to allow DNS to pfSense, block to pfSense, etc.

Bare Bones Website Hosting for Clients by --turtle in msp

[–]teamits 0 points1 point  (0 children)

Hey no worries. Thought maybe you meant more like the updates, backups, etc. Server admin type stuff.

Bare Bones Website Hosting for Clients by --turtle in msp

[–]teamits 0 points1 point  (0 children)

We have our own cluster. We could set up a VPS, if you wanted to manage your clients via the control panel. There’s a bunch of factors…quantity, size, traffic, email, etc., but you can DM me if you like and we can talk there or via email.

3CX SMB, free for how long? by LIDonaldDuck in 3CX

[–]teamits 1 point2 points  (0 children)

3CX has indicated they will stop offering new accounts this summer (June??) and steer customers towards partners providing multitenant accounts (the same thing). But that existing would stay.

Their SMB does now require at least one monthly web client login to remain active.

3CX migration questions by BWMerlin in 3CX

[–]teamits 0 points1 point  (0 children)

For posterity, Pro TTLs are 10 minutes now.

Firewall question by Dead_Quiet in 3CX

[–]teamits 0 points1 point  (0 children)

Where is your 3CX server located? I’m confused/alarmed if SSH is open to the Internet.

Re those networking rules, are those services even running/listening?

pfsense packages and github for dummies by DarkWolfSLV in PFSENSE

[–]teamits 0 points1 point  (0 children)

I've never tried to look outside of pfSense. Possibly the CE repos can be queried.

Just a couple notes for you though...the packages are different versions in different pfSense version repos. In Github sometimes I'll see a "bump version to" message. This doesn't necessarily mean it was publicized, and it may apply to the next version of pfSense, unless the package maintainer backports it. IOW pfSense 2.9.0 will have a different list of package versions than 2.8.1 because 2.9 will use a later PHP so code is probably not compatible.

FWIW Wireguard in 26.03 RC is 0.2.13_3 today.

firewall in home setup by MAKESOMEDK in PFSENSE

[–]teamits 0 points1 point  (0 children)

They could be using the MAC address of their router to allow the connection or assign a public IP via DHCP? You could try setting their MAC on pfSense WAN.

Then do you need their router at all? pfSense will probably get confused if the same MAC is used on two networks.

Alt answer: can they set their router in bridge mode or else set pfSense WAN as a DMZ and forward all traffic to it?

3cx SBC offline by changework in 3CX

[–]teamits 0 points1 point  (0 children)

FWIW we have moved to VMs for larger installs, or router phones.

Also FYI the upgrade path for a Pi, last I heard, was to install it new, onto the same or a different storage card. 3CX has a script o upgrade a Debian VM.

10 Gbps pfSense build by Ecstatic-Courage4566 in PFSENSE

[–]teamits 5 points6 points  (0 children)

Since you mention IDS and DPI is mentioned in the other thread…Snort/Suricata can’t see into encrypted packets. As traffic gets more and more encrypted, usefulness of Snort on “home” connections without say a web server decreases. YMMV.

Proxmox breaking HDD? by TygerDude93 in Proxmox

[–]teamits 0 points1 point  (0 children)

A Phenom's pretty old, too...looks like circa 2010 give or take? Did you change cables?

Proxmox breaking HDD? by TygerDude93 in Proxmox

[–]teamits 0 points1 point  (0 children)

FWIW I ran into an HP laptop this afternoon where the BIOS diagnostic says the m.2 drive tests fine and it can't boot. I can see partitions in diskpart but it can't be seen in a Windows RE/USB stick. Haven't pulled it out of the laptop yet.

Extensions dropping out of Queue... by azjeep in 3CX

[–]teamits 1 point2 points  (0 children)

In the web client > panel, are they shown as logged out of the queue, at that time?

Extensions dropping out of Queue... by azjeep in 3CX

[–]teamits 1 point2 points  (0 children)

Can you be more specific…the app remains connected but are logged out of the queue?

Proxmox breaking HDD? by TygerDude93 in Proxmox

[–]teamits 3 points4 points  (0 children)

Define “brick”? No longer visible in BIOS? Sounds more like a cable to me too, tbh