about users and groups, do you mean users and groups from pfsense itself or have you installed the freeradius package and you mean that? for everything outside of packages, i'm 100 percent sure that the sync works, for packages i'm not quite sure currently but they should work as well, i have not worked with freeradius package myself and use other AAA options outside of pfsense but have used the snort package and its configuration can be synced but it's per package, like snort has a configuration for it in the pages it adds when you install its package
Photo
click to show
click to show
Hi everyone!I'm having an issue with an IPsec tunnel between two pfSense boxes. The tunnel stays up for about 5 minutes and then drops and reconnects.The settings on both sides are identical and left at their defaults (encryption algorithms, lifetimes, etc.). Could anyone suggest which settings I should look into? I'm sure someone has run into this before.
That pfSense is behind another NAT device. UDP/4500 is therefore being translated somewhere upstream. A very repeatable ~5-minute failure is suspicious for an upstream NAT/firewall state expiring, or for DPD deciding that the other peer has disappeared. Netgate specifically notes that NAT outside the actual IPsec endpoints can cause tunnel problems and that NAT-T uses UDP 4500 to handle this situation.
Post removed. This was promotional content, and advertising is not allowed in this group.
In addition, several technical claims in the post do not appear to match the project's published implementation, particularly the description of DNS activity monitoring and how suspicious domains are classified.
Please keep posts technical, accurate, and non-promotional. Further ads will result in a permanent ban