Hi,
I really really enjoy your videos and have learned basically everything about pfSense from your channel, been working in IT for a gazillion years scrambling around with all kinds of infrastructure and security systems for enterprise corporations…
But I got a bit of challenge a couple of weeks ago which I think a lot viewers have when it comes to pfSense…
So here is the story:
A good friend of my bought a pfSense three port router for home use, this little bad boy: APU4D4: 4x Gigabit LAN, Quad Core CPU, 16GB SSD, 4GB RAM
And a Ubiquity AC PROs for WIFI coverage in his apartment.
Hardware Layout is the following:
ISP - 1Gb up/down link
Router: pfSense 2.4.5 iso install
physical ports:
Port 1 - WAN
Port 2 - LAN → 20 port unmanaged switch no Vlan
Port 3 - Unifi AP attached directly with PoE injector
WAN - DHCP from ISP
LAN - 10.0.0.0/24 dhcp to wired devices
WIFI - 10.10.0.0/24 dhcp to wireless devices (IoT, phones and laptops)
Been working with Cisco/Juniper/Checkpoint in large corporate setups etc. but never setup a pfSense before, so hit your channel before heading over to help,
so i wouldn’t look like a complete idiot when I arrived to help configure this thing
So he had got things going with the WiFi/LAN and also the internet was up, the first thing i noticed was the thru put was only 350/400Mbit on the WAN side so after some googling i ended up here:
So now performance is around 900 Up/Down… first hurdle solved but then came the list…
XBOX/PlayStation couldn’t connect properly (NAT etc)
Phillips HUE couldn’t connect to the iPhone (Ahvahi)
AD blocking dropping the PiHole (pfBlocker)
DNS was resolving internal machines on the ISP DNS (setup the DNS correctly)
WIFI devices couldn’t connect to the media server on the LAN (Firewall rules)
IoT devices not working (static dhcp and pfBlock issues)
Mail sent from work laptop not going thru… (VPN issues)
Wants outside access to the media server/ftp server (OpenVPN and port forwarding)
So as you can properly imagine this took far longer than just a beer on a Saturday afternoon, my biggest challenge here was actually to find the correct information, most videos out there are towards SMB networks or super nerdy over the top home labs setups, so figuring out a simple thing to fix the XBOX/PS4 issues was time consuming…
So a long story short, I think a good idea for a video is how to setup pfSense for a home environment, where the whole part on what is pfSense and how to install it is dropped because
this is covered in all pfSense videos out there… Skip directly to the configuration of services to be provided by the router, setting up WAN/LAN/WIFI interfaces in a secure but usable way. how to work with Ahvahi and these typical smart home systems etc.
If you are interested in more feedback please reach out since I have done this twice now and both locations it was the same challenges.
Keep up the good work
Regards
Anders Sogaard
Norway