#pfSense

KMJ 🇦🇹kmj@mastodon.ctseuro.com
2025-06-02

#pfSense 2.8.0 kills #squid setups with #error ld-elf.so: undefined symbol _ZTVNSt3__117bad_function_callE

not good. need to go back to 2.7.2 snapshot

badprocess :normandy_flag:badprocess@pouet.badprocess.me
2025-06-02
Hop, upgrade de #pfSense sur le routeur de la maison vers la version 2.8.0 effectuée (je sers les fesses à chaque fois 😱 )
2025-05-31

Well, that's my #pfsense CE upgraded to 2.8.0. Was pretty painless, but then again I've got a very basic setup (other than the dual uplink) with not much in the way of extra packages. #RunBSD

2025-05-30

update your pfSense CEs to 2.8 for security fixes

#pfsense

2025-05-29

Will I regret updating my #pfsense box, which is also my router and switch?

David Nelsondmnelson
2025-05-29

CE 2.8.0 is here! I knew it was on the way, but wouldn’t have placed any bets on it beating 25.03 out the gate. netgate.com/blog/netgate-relea

Patch Notification Robot 🔔Patchbot_de
2025-05-28

Electric Sheep Fencing released Community Edition version 2.8.0. pfsense.org/download/

Gυιdσ KσѕтσиѕGuidoKostons
2025-05-28

@kkarhan

I am also using as my router / firewall with pfBlocker-ng.

I have a local webserver and regularly check the logs with awStats for suspicious IP addresses connecting with my http server.

I then check the IP address with dnslytics.com/ which source it is coming from and if it is from a hosting source I block the whole subnet not all the IP ranges of the ASN, that would create big blocklists.

@f4grx @nixCraft @torproject

Gυιdσ KσѕтσиѕGuidoKostons
2025-05-28

@ij

I had the same problem in the past. access points need a untagged vlan.

I am also using as my router / firewall.

Unifi needs untagged vlan.
2025-05-26

Fascinating blog post on vulnerabilities found in #pfsense including command injection through the Auto Configuration Backup cloud service

blog.brillantit.com/exploiting

DeadSwitch @ T0m's 1T C4feTomsITCafe
2025-05-26

Small business? $0 budget? No excuse.
Secure your entire stack with nothing but code, grit, and open source fire.

tomsitcafe.com/2025/05/26/dead

2025-05-22

Something strange with my #Unifi gear...

Recently replaced my UDM Pro with a CloudKey Gen2 Plus (because I don't need the gateway function as my #Netgate #pfSense is taking care of this).

According to the screenshot, my WiFi APs are offline as well as the Protect cameras.
But: both are working.

Maybe that's because of the "management" VLAN 31 instead of default VLAN 1?

Screenshot of Unifi Device Overview page, showing APs and Protect cameras as offline
2025-05-20

Just realized that my #pfSense #Netgate 6100 has 4x 2.5 GbE ports. At least my #Unifi switch reports 2.5 GbE now... before connecting to the switch those ports were connected to the UDM Pro, which only has 1 GbE...

2025-05-19

Ok so you're telling me i have to run beta code on my production appliance to get a *security fix*??? Fuck all the way off with that. #pfsense #netgate

2025-05-19

I commented "you had since November to fix this, the issue did not just appear without notice, coordinated disclosure principles were followed". Comment got deleted. In all fairness i used a throwaway account but they are hard on the damage control. #pfsense

2025-05-19

#BSI WID-SEC-2025-1091: [NEU] [mittel] #Netgate #pfSense: Mehrere Schwachstellen ermöglichen Cross-Site Scripting

Ein entfernter, authentisierter Angreifer kann mehrere Schwachstelle in Netgate pfSense ausnutzen, um einen Cross-Site Scripting Angriff durchzuführen.

wid.cert-bund.de/portal/wid/se

2025-05-18

Ich habe ein #ITProjekt gestartet, dass ich lange gefürchtet habe…
Ich babe meinen pfsense ersetzt durch ein Proxmox/OpenWRT-Setup. Wie geil ist #Proxmox denn? Kannte ich noch gar nicht… na ja…
Erstens sollte ich damit auch über 500MBit erreichen (war ein alter #pfsense PC) und außerdem mehr flexibilität für Kindersicherung etc. haben.
Habe zeitgleich das gesamte #Netzwerk aktualisiert und allen Geräten, die immer da sind, fixe Adressen verpasst.
Eine Odyssee…
#heimnetz #server #OpenWRT

Kevin Karhan :verified:kkarhan@infosec.space
2025-05-16

@tracketpacer deoends on the setup.

2025-05-16

Apparently Netgate fumbled coordinated disclosure about a pfSense vuln
https://blog.brillantit.com/exploiting-pfsense-xss-command-injection-cloud-hijack/
#pfsense

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst