Web appOpen in Telegram
PpfSense Global Group

pfSense Global Group

@pfSense · group · Tech · indexed since 2026-07-12
1 786members
16 028messages in the index
R
Hey there T, and welcome to pfSense Global Group! How are you?
S
How do I figure out if the sync for HA did actually work? When does it get triggered to be synced? Especially if you sync the users and groups? Does it sync the auth backend configs as well?
  1. A
    you can figure that out via configuring an alias or firewall rule for example and then checking your backup (s-la-ve) firewall to see if that contains it as well or not, if it does then it works, if it doesn't it has not worked
Whole thread · 1 reply →
A
about users and groups, do you mean users and groups from pfsense itself or have you installed the freeradius package and you mean that? for everything outside of packages, i'm 100 percent sure that the sync works, for packages i'm not quite sure currently but they should work as well, i have not worked with freeradius package myself and use other AAA options outside of pfsense but have used the snort package and its configuration can be synced but it's per package, like snort has a configuration for it in the pages it adds when you install its package
  1. S
    Photo
    click to show
    I'm talking about these settings:
Whole thread · 2 replies →
S
Thank you. Including the Settings and Authentication Servers?
G
Photo
click to show
Hi everyone!I'm having an issue with an IPsec tunnel between two pfSense boxes. The tunnel stays up for about 5 minutes and then drops and reconnects.The settings on both sides are identical and left at their defaults (encryption algorithms, lifetimes, etc.). Could anyone suggest which settings I should look into? I'm sure someone has run into this before.
M
That pfSense is behind another NAT device. UDP/4500 is therefore being translated somewhere upstream. A very repeatable ~5-minute failure is suspicious for an upstream NAT/firewall state expiring, or for DPD deciding that the other peer has disappeared. Netgate specifically notes that NAT outside the actual IPsec endpoints can cause tunnel problems and that NAT-T uses UDP 4500 to handle this situation.
M
Something in front of the 10.10.224.2 pfSense is expiring/mangling the UDP 4500 NAT-T state. Or DPD/retransmission caused by packet loss or the upstream firewall.
R
Hey there Раиса, and welcome to pfSense Global Group! How are you?
R
Hey there Muhammet, and welcome to pfSense Global Group! How are you?
R
Hey there Zuud Udjd Dudhdh, and welcome to pfSense Global Group! How are you?
R
Hey there Cycoder, and welcome to pfSense Global Group! How are you?
M
Post removed. This was promotional content, and advertising is not allowed in this group. In addition, several technical claims in the post do not appear to match the project's published implementation, particularly the description of DNS activity monitoring and how suspicious domains are classified. Please keep posts technical, accurate, and non-promotional. Further ads will result in a permanent ban
R
Hey there scmh, and welcome to pfSense Global Group! How are you?
R
Hey there Vinay, and welcome to pfSense Global Group! How are you?
R
Hey there Ricardo, and welcome to pfSense Global Group! How are you?
R
Hey there Фёдор, and welcome to pfSense Global Group! How are you?
R
Hey there Andrea, and welcome to pfSense Global Group! How are you?
R
Hey there White, and welcome to pfSense Global Group! How are you?
R
Hey there $*kerEs😈🕷️👻👾$*, and welcome to pfSense Global Group! How are you?

An open public feed from the search index ChatCrawler — “Google for public Telegram”; refreshed as the venue is crawled. Times are UTC.

Public content only, official Telegram API. About · FAQ · What we do not do · Remove a page · Catalog · Search · How we count