Netgate SG-1000 microFirewall

Author Topic: Setup Still Relevant?  (Read 148 times)

0 Members and 1 Guest are viewing this topic.

Offline NollipfSense

  • Jr. Member
  • **
  • Posts: 87
  • Karma: +4/-0
    • View Profile
Setup Still Relevant?
« on: February 08, 2018, 01:49:43 pm »
I have had my PFSense machine up and running now since October of last year. Now, I shall fine tune as the system should have learn my moves or states. I have Snort, PFBlockerNG, Suricata and Squid's ClamAV Antivirus packages running as well. I have been reading this thread: https://forum.pfsense.org/index.php?topic=78062.0 hoping to use as a guide in helping me to fine tune; however, I wondered whether it's relevant today in the sense that all packages have evolved and lots of the scripts have been included in the offerings now.

Things that seem relevant are the firewall aliases and rules; however, it's lots of reading and one can get lost easily in some of the steps. So, how would you approach using that guide today since it was originally for 2014? Hints would be appreciated. My only addition to firewall other than default is forced DNS to PFSense via OpenDNS (https://doc.pfsense.org/index.php/Blocking_DNS_queries_to_external_resolvers).

For the packages installed, I followed what Lawrence system posted to YouTube.

Offline NollipfSense

  • Jr. Member
  • **
  • Posts: 87
  • Karma: +4/-0
    • View Profile
Re: Setup Still Relevant? YES!
« Reply #1 on: February 11, 2018, 07:43:11 pm »
So, I swallowed the pill. I began setting up as directed...I ran into the floating rule blocking everything...but, I like how it works; so, instead of any direction, I set  inbound. Later, I read I wasn't alone experience it blocking everything.

So, now I am going through the entire thread...I still have not implemented any script nor install Cron because I notice while I boot my machine that Cron started...there is no service though.

I hope BBcan177 would chime in because PFBlockerNG has a wide range of IP list already. I am glad I saw his suggestion to log the floating rule. I am currently on page 9...long way to go.
« Last Edit: February 12, 2018, 09:09:01 pm by NollipfSense »