Recent posts

#1
German - Deutsch / Re: Extrem Schlechte Download-...
Last post by nein365 - Today at 08:24:19 AM
Danke schonmal für die Antworten. Heute kommt das Glasfasermodem 2 der Telekom. Ich bin gespannt ob es damit eine Veränderung gibt. Ansonsten muss irgendwas bei der Telekom für diese Probleme verantwortlich sein. Ich bin gespannt.
#2
Tutorials and FAQs / Re: [HOWTO] NordVPN Wireguard ...
Last post by meyergru - Today at 08:23:41 AM
That is the same. With one of the last updates, "Outbound NAT" has been renamed to the more common "Source NAT". If you still see Outbound NAT in your firewall menu, you either use BE or are way behind with your updates.
#3
General Discussion / Re: Open CVEs right after upda...
Last post by groove21 - Today at 06:46:18 AM
Hey franco, hey Patrick,

thanks for your replies. If I understood correctly, the warning will disappear, as soon as python3.15 is used with OPNsense. Are there any plans on that?
Don´t get me wrong: As long as there is no real security issue, everything is fine. But I would be happy, when one day the warning in CMK will disappear to focus on the real CVE-issue(s). At the moment it is kind of false positive :(
#4
General Discussion / Re: DHCP Issues on VLAN 90 wit...
Last post by fornax - Today at 05:57:04 AM
Like you I'm largely self-taught and still fairly new to this, but I can at least offer a couple of suggestions:

  • Connect a laptop (or other device that you can manually configure) to the Wifi network, configure a static IP appropriate to the network, and then see if it can ping the router's IP on that network. That can tell you if there's any communication getting to the router at all.
  • Maybe also try setting up a VLAN 90 access port on the switch and see if your tests change at all there.
  • If you're using a centralized management interface for the network hardware, maybe check the switch and APs directly as well and make sure the configs are what you think they are.
#5
26.7 Series / Re: Confused by 26.7 upgrade
Last post by Plethodon - Today at 01:57:23 AM
Quote from: Patrick M. Hausen on August 31, 2026, 12:36:24 AMThe rule UI was replaced, entirely. You need to migrate your rules to the new system. Use the migration assistant. Detailed instructions are on the migration assistant UI page. Just do as is documented there.

You might need to install the legacy rule plugin to finally delete all the legacy rules.

This was announced months ago for 26.1 - you could have gone through the migration in 26.1 already to be prepared for 26.7.

Patrick, thank you for this clarity. Clearly I'm not attending to changes closely enough. Is there a recommended site to follow (like RSS) or something similar so I can keep up to date?
#6
Tutorials and FAQs / Re: [HOWTO] NordVPN Wireguard ...
Last post by MagikMark - Today at 01:16:55 AM
Thanks for the guide.  May I ask why SNAT?  Most guides use Outbound NAT and works perfectly as well
#7
General Discussion / GeoIP database fails to load
Last post by jimk2152 - Today at 12:33:00 AM
Problem:

The GUI fails to download the MaxMind GeoIP database even though the database will download using a browser and it was working.
Persistent error message warning that GeoIP database needs to be downloaded.

Fix that worked for me:

Disable any Firewall GeoIP alias and Apply  (Firewall -> Aliases - uncheck any GeoIP aliases)
Select GeoIP Settings tab
Select the MaxMind URL and copy the URL text, then delete the URL text
Press Apply
Select Aliases tab
Reenable the Firewall GeoIP alias and Apply
Select GeoIP Settings tab
Paste the copied MaxMind URL
Press Apply

Page will refresh and should show something like this:
Last updated 2026-08-28T16:13:46
Last updated timestamp. This is the time the vendor created the lists.


Total number of ranges 1091328
Total number of entries in downloaded set.



Make sure Chron is set up to Update and Reload Firewall Aliases (daily if necessary)
#8
General Discussion / Re: nfSensei ( fork pfsense )
Last post by muchacha_grande - Today at 12:15:43 AM
Quote from: sopex on Today at 12:02:02 AM2) The guy has spent the last 15 years as a generic IT guy in marketing organizations.

This is the key: "Marketing"
#9
General Discussion / Re: nfSensei ( fork pfsense )
Last post by sopex - Today at 12:02:02 AM
If he actually ships anything I will be more than surprised.

1) His LinkedIn very clearly states that nfSensei started when he left his last job on December of 2025, which is more believable than 2024 since the domain was registered late January 2026.

2) The guy has spent the last 15 years as a generic IT guy in marketing organizations. To the best of my knowledge without any coding projects on the side.

3) The AI coded site has the most nonsensical AI generated content I have read in years.

4) How can one have an open source project without sharing the source in any way? Especially in the beginning, feedback is very important.
#10
General Discussion / Re: nfSensei ( fork pfsense )
Last post by Netlearn - August 31, 2026, 11:37:22 PM
Quote from: Bob.Dig on August 31, 2026, 08:21:46 PM
Quote from: Netlearn on August 31, 2026, 01:31:53 PMHere
Here what, you were wrong, about twenty years.

Yup! I made a typo in the first date. I meant 2024.

The line was "Here: About", being "About" the link to his curriculum description. Maybe easy to overlook. Apologies.