Welcome Guest ( Log In | Register )

Outline · [ Standard ] · Linear+

 pfsense unifi ?

views
     
maxguy
post Jul 24 2020, 01:25 PM

Enthusiast
*****
Senior Member
822 posts

Joined: Jan 2003


the setup was on an apu4d4 = 4 i211AT LAN / AMD GX-412TC CPU / 4 GB DRAM / dual SIM by pc engines

https://www.pcengines.ch/apu4d4.htm
TSMoogle Stiltzkin
post Jul 25 2020, 03:12 AM

Look at all my stars!!
*******
Senior Member
4,474 posts

Joined: Jan 2003
QUOTE(maxguy @ Jul 24 2020, 01:19 PM)
user posted image
*
y google dns? i recommend you try 1.1.1.1 with 1.0.0.1 for cloudflare. You can then configure dot (dns over tls) and cloudflare claims no logging policy. this is better than what google promises.

That said cloudflare vpn policy is rather worrisome hmm.gif

QUOTE
the setup was on an apu4d4 = 4 i211AT LAN / AMD GX-412TC CPU / 4 GB DRAM / dual SIM by pc engines
oo what chasis you put it in confused.gif

This post has been edited by Moogle Stiltzkin: Jul 25 2020, 03:13 AM
maxguy
post Jul 25 2020, 12:01 PM

Enthusiast
*****
Senior Member
822 posts

Joined: Jan 2003


user posted image
maxguy
post Jul 25 2020, 12:03 PM

Enthusiast
*****
Senior Member
822 posts

Joined: Jan 2003


user posted image
maxguy
post Jul 25 2020, 12:30 PM

Enthusiast
*****
Senior Member
822 posts

Joined: Jan 2003


user posted image
syahbi
post Jan 20 2021, 05:41 PM

Getting Started
**
Junior Member
218 posts

Joined: Feb 2008
QUOTE(th3game @ May 26 2020, 12:46 PM)
done configured pfSense for tm unifi and it's so easy actually. Also got working hypptv as well

long way transition from default tm router —> asus —> mikrotik —> and now pfSense!

running pfSense as VM with proxmox host on bare metal server. running together are pihole,unifi controller, Home Assistant, netdata to monitor and heimdall as unified homepage

next time wanna try to configure pfblockerNG/pihole, ntopg and openVPN

biggrin.gif
*
I would like try pfsense also.... Now on MikroTik.. Is it true pfsense way more better than mikrotik

TSMoogle Stiltzkin
post Jan 21 2021, 10:19 AM

Look at all my stars!!
*******
Senior Member
4,474 posts

Joined: Jan 2003
QUOTE(syahbi @ Jan 20 2021, 05:41 PM)
I would like try pfsense also.... Now on MikroTik.. Is it true pfsense way more better than mikrotik
*
i used microtik long time ago. seemed alrite.

what i like about pfsense though it's solid. got packages and u can update. also they will patch any security flaws, so again, just update.

for packages, if u want, you can opt for suricata and pfblocker. i only use pfblocker because suricata is a bit annoying to manage, also i don't host anything from my network, so no ports open, so less needed.

if u bought something like an asus etc, the firmware updates usually only a couple of years before it eol then they ask u to buy a new router model. with pfsense, u don't have such a downside brows.gif

that said, asus does get some third party support like rt merlin, who does regularly releases security patches regularly. but that said, even he has a EOL, at which point u have to update to a newer model at some point.

also for pfsense u don't necessarily have to go qotom. but price wise, it seems to be one of the better options for a compact pfsense box, also it has no cooling issues. my old asus ac68u had a major cooling issue..... this is why i don't want to bother with those kinds of routers again puke.gif tbf, maybe newer asus models don't have this issue hmm.gif

This post has been edited by Moogle Stiltzkin: Jan 21 2021, 10:42 AM
HuorEarfalas
post Mar 19 2021, 12:06 PM

Casual
***
Junior Member
382 posts

Joined: Sep 2006


Anyone upgraded to pfsense 2.5 from 2.4.5? Any issues?
nicks
post Mar 19 2021, 01:59 PM

TC
*******
Senior Member
2,070 posts

Joined: Sep 2005
From: Sungai Buloh



I used pfsense 2.45 previously (last year starting MCO to be exact). It's good however due I'm using thin client PC and using realtek chip for ethernet i just can get roughly 250~300 Mbps. with special kmod installed i can get it stable without any disconnected network.

However, i change the setup using OpenWRT this year and it's awesome. No problem to achieve 800Mbps (yes I'm on 800 unifi packages) with same hardware. With cake SQM now bufferbloat rating (dslreports) giving A for rating.
satanhead2003
post Mar 19 2021, 04:34 PM

On my way
****
Senior Member
551 posts

Joined: Dec 2005
Upgraded to 2.5. much more improvement on tcp. Running on esxi vm n passthrough dual nic. Before, my other vm will get 400-500mbps. After upgrading other vm can get 700-800mbps in speedtest
TSMoogle Stiltzkin
post Mar 20 2021, 04:05 PM

Look at all my stars!!
*******
Senior Member
4,474 posts

Joined: Jan 2003
i upgraded pfsense, no issues.

obviously keep backups BEFORE updating.

Also DO NOT update package UNTIL after you first update your pfsense first.

You can update pfsense and packages from UI, but in terms of reliable updates, using the command line for pfsense is a more surer way to perform the updates


Ah_Huat
post Mar 22 2021, 04:33 AM

Getting Started
**
Junior Member
249 posts

Joined: Jan 2003
From: SG. Jarom


Hi..
i just have unifi 100m few week ago, i use pfsense connect to ONU (Fiberhome HG6240A) via PPPOE, internet is fine, but i have some problem with IPv6 .
when i boot up pfsense, it get a IP from TM and the DHCP6 also working, but after days ( i not sure how long .. seem over 24 hours) the DHCP6 will go "offline" , just now i found out the DHCP6 is offline , so i restart the ONU and pfsense , but this time it won't work (before this i also have this problem but fix it after i restart the ONU and pfsense), i get a new IP address from TM , but DHCP6 still offline ...
i am not very good at networking.
any pfsense sifu can help ?

this is my setting:
WAN:
user posted image
LAN:
user posted image

this is the status:

user posted image

this is my DNS setting:

user posted image

and this is the Log with the error:

user posted image

is my setting correct?

thanks.
TSMoogle Stiltzkin
post Mar 24 2021, 03:38 PM

Look at all my stars!!
*******
Senior Member
4,474 posts

Joined: Jan 2003
hm... i did not configure the ipv6 portion for pfsense. because last i heard ipv6 is not quite good for vpn for most part due to leaks. ip4 just works (for now), so i did not have the need to setup ipv6 just yet.

do you actually need ipv6 running? your internet should be fine without it.


https://www.networkworld.com/article/344520...n-breakout.html

https://www.vpnuniversity.com/learn/should-...pn-support-ipv6

https://www.itproportal.com/features/ipv6-y...er-supports-it/

https://www.expressvpn.com/blog/disable-ipv...vpn-protection/



i see that you are using google dns. thats fine, but i think the cloudflare dns is better in the sense they claim no log policy, so they periodically wipe dns history. google makes no such policy whatsoever.

https://www.techradar.com/sg/reviews/cloudflare-dns


DNS Over TLS On pfSense 2.4.5
https://www.youtube.com/watch?v=5mygS-TiT9c




This post has been edited by Moogle Stiltzkin: Mar 24 2021, 03:41 PM
PRSXFENG
post Mar 24 2021, 05:04 PM

Look at all my stars!!
*******
Senior Member
2,611 posts

Joined: Nov 2020


QUOTE(Moogle Stiltzkin @ Mar 24 2021, 03:38 PM)
hm... i did not configure the ipv6 portion for pfsense. because last i heard ipv6 is not quite good for vpn for most part due to leaks. ip4 just works (for now), so i did not have the need to setup ipv6 just yet.

do you actually need ipv6 running? your internet should be fine without it.
https://www.networkworld.com/article/344520...n-breakout.html

https://www.vpnuniversity.com/learn/should-...pn-support-ipv6

https://www.itproportal.com/features/ipv6-y...er-supports-it/

https://www.expressvpn.com/blog/disable-ipv...vpn-protection/
i see that you are using google dns. thats fine, but i think the cloudflare dns is better in the sense they claim no log policy, so they periodically wipe dns history. google makes no such policy whatsoever.

https://www.techradar.com/sg/reviews/cloudflare-dns
DNS Over TLS On pfSense 2.4.5
https://www.youtube.com/watch?v=5mygS-TiT9c
*
Personally I prefer Quad9 DNS, they're (soon) Switzerland based, similar policy to Cloudflare but they block malware domains.
There's also a unfiltered one should you choose to use that.

Also, they have a Malaysia server, which is pretty nice
TSMoogle Stiltzkin
post Mar 24 2021, 08:30 PM

Look at all my stars!!
*******
Senior Member
4,474 posts

Joined: Jan 2003
QUOTE(PRSXFENG @ Mar 24 2021, 05:04 PM)
Personally I prefer Quad9 DNS, they're (soon) Switzerland based, similar policy to Cloudflare but they block malware domains.
There's also a unfiltered one should you choose to use that.

Also, they have a Malaysia server, which is pretty nice
*
tbh i did not yet try quad, but privacy (best as possible at least sad.gif ) and performance is important to me. right now i use pfblocker own dns with cloudflare as backup. according to the tests these offer the best result to me

https://www.grc.com/dns/benchmark.htm
https://www.grc.com/dns/dns.htm
https://www.cloudflare.com/ssl/encrypted-sni/#dns-info
https://ipleak.net/


https://www.youtube.com/watch?v=xizAeAqYde4
https://www.youtube.com/watch?v=5mygS-TiT9c

This post has been edited by Moogle Stiltzkin: Mar 24 2021, 08:32 PM
w00t
post Mar 28 2021, 01:16 AM

Casual
***
Junior Member
318 posts

Joined: Jan 2003


Anybody here running pfSense 2.5.0-RELEASE with working pfBlockerNG ? Cannot seems to make it work. Installed with default wizard config many times also still not working. My current setup is Huawei B525 4G Router (DMZ for WAN to pfSense) to my barebone pfSense box. Internet is from DiGi.
TSMoogle Stiltzkin
post Mar 28 2021, 09:16 PM

Look at all my stars!!
*******
Senior Member
4,474 posts

Joined: Jan 2003
pfblocker works on latest
https://www.youtube.com/watch?v=xizAeAqYde4

Ash55
post Jun 10 2021, 11:57 PM

Getting Started
**
Junior Member
104 posts

Joined: Dec 2014
From: Axis Federation


QUOTE(th3game @ May 26 2020, 12:46 PM)
done configured pfSense for tm unifi and it's so easy actually. Also got working hypptv as well

long way transition from default tm router —> asus —> mikrotik —> and now pfSense!

running pfSense as VM with proxmox host on bare metal server. running together are pihole,unifi controller, Home Assistant, netdata to monitor and heimdall as unified homepage

next time wanna try to configure pfblockerNG/pihole, ntopg and openVPN

biggrin.gif
*
have you try OPNsense On unifi

 

Change to:
| Lo-Fi Version
0.0348sec    0.75    5 queries    GZIP Disabled
Time is now: 17th December 2025 - 06:35 AM