Skip to content
Geek is the Way!
Menu
  • Forums
  • Sobre o blog
  • Contato
  • English
    • Português
Menu

Tag: security

How to allow ping on pfSense WAN?

Posted on August 1, 2020August 14, 2022 by Thiago Crepaldi

By default, pings are not allowed and actually not recommended. Bu during a network debugging, it can be quite handy. In order to allow ping incoming on the pfSense WAN port, go to Firewall >> Rules >> WAN page and create a new rule by clicking on Add button (down arrow icon) and do as…

Share this:

  • Tweet
Read more

Configuring OpenVPN Server on pfSense with LDAP authentication

Posted on July 21, 2020December 30, 2024 by Thiago Crepaldi

A OpenVPN server is useful if you want to safely connect to your house/office’s network from a remote place, say Disneyland or from abroad. In this article we are going to setup an OpenVPN server on your pfSense using LDAP for authentication based on Synology’s LDAP server. Getting ready A brief word on performance running…

Share this:

  • Tweet
Read more

Generating SSH pair key

Posted on July 5, 2020August 14, 2022 by Thiago Crepaldi

For future posts, you will need to have at least one pair of public/private SSH keys installed on your devices for no password access to them. To do so, simply run ssh-keygen -t rsa -b 4096 to generate a 4096 bits RSA key. You will be asked to confirm the key name. Accept the default…

Share this:

  • Tweet
Read more

Enabling SSH on your pfSense

Posted on July 5, 2020August 14, 2022 by Thiago Crepaldi

For future posts, we will need to have SSH enabled on the pfSense device, so let’s get this out of the way. Configuring SSH user I highly recommend not to use admin user for accessing pfSense through SSH. If you do it, you will face several constrains which will probably cost you hours to go…

Share this:

  • Tweet
Read more

Setting up Let’s Encrypt SSL certificates on your pfSense

Posted on June 27, 2020October 17, 2022 by Thiago Crepaldi

In a previous post, I have described how to issue Let’s Encrypt certificates for free. SSL certificates have many applications, including replacing self-signed certificates that are not recognized by browsers. That is the goal of this post. Replace pfSense’s self-signed certificate by the one we have created using Let’s Encrypt API. Let’s Encrypt setup If…

Share this:

  • Tweet
Read more

Blocking… or trying to… DNS over HTTPS (aka DoH)

Posted on June 23, 2020December 30, 2024 by Thiago Crepaldi

This post is complementary to a previous POST protecting your network from malicious DNS. Here we are going to leverage a recent addition to pfBlockerNG: a brand new DoH feed! What is the big deal in allowing DNS over HTTPS (aka DoH) on your network?! Well, users can bypass the DNS over TLS of your…

Share this:

  • Tweet
Read more

Blocking ads using pfBlockerNG on your pfSense

Posted on June 21, 2020August 16, 2022 by Thiago Crepaldi

The following instructions will detail how to install and configure pfBlockerNG to block the annoying ads and speedup your Internet connection. First, install pfBlockerNG through the System >> Package Manager >> Available Packages. A list of available packages will be loaded and all you have to do is click + Install button on the right…

Share this:

  • Tweet
Read more

Protect your DNS requests using pfSense

Posted on June 21, 2020August 16, 2022 by Thiago Crepaldi

Configuring pfSense DNS Resolver Many ISPs or other Internet service providers collect information for commercial reasons (selling your profile for directed advertisement) or otherwise. pfSense allows you to use DNS with TLS to encrypt your request in a way that only you and the DNS provider can see it. DNS over TLS is not supported…

Share this:

  • Tweet
Read more
  • Previous
  • 1
  • 2
  • 3
LIKED? SUPPORT IT :)

Buy Me a Coffee


Search


Categories

  • Cooking (1)
  • Homelab (79)
    • APC UPS (6)
    • pfSense (40)
    • Proxmox (20)
    • Shopping (1)
    • Supermicro (2)
    • Synology NAS (8)
    • Ubiquiti (6)
    • UDM-Pro (4)
  • Random (3)
  • Wordpress (1)

Tags

Agentless monitoring (3) AP9631 (3) Apache2 (3) APC UPS (6) Bind9 (3) certificates (5) cron (2) DDNS (5) debian (3) DNS (7) DSM (6) Dynamic DNS (4) Firewall (9) gmail (3) IPSEC (2) Let's Encrypt Certificates (7) monitoring (18) networking (21) PBS (3) pfBlockerNG (2) pfsense (43) port forwarding (3) proxmox (17) proxmox backup server (3) proxmox community (2) proxmox virtual environment (16) pve (5) rev202207eng (76) routing (2) security (28) SNMP (4) SNMPv1 (3) ssh (4) SSL (6) Synology (7) udm-pro (5) unifi (6) unifi controller (3) Unifi Dream Router (2) UPS (5) VLAN (4) vpn (9) wifi (4) Zabbix (18) Zabbix Agent2 (11)

See also

Privacy policy

Sitemap

©2025 Geek is the Way! | Design by Superb