*Inhalt gelöscht*
Zuletzt bearbeitet von einem Moderator:
Follow along with the video below to see how to install our site as a web app on your home screen.
Anmerkung: this_feature_currently_requires_accessing_site_using_safari
).
Ich muss mal das Video raussuchen, das ich damals zur Konfiguration verwendet habe. Bin damals vom alten DHCP auf den DNSmasq umgestiegen. War gar nicht so schlimm, wenn man einige Dinge beachtet.DHCP macht jetzt DNSmasq (mit dem ich mich noch gar nicht beschäftigt habe)
Ich hatte auch kein Bock mich damit zu beschäftigen, daher ist das bei mir komplett geblockt.Kein IPv6

Gleich das erste Problem was neu ist: DHCP macht jetzt DNSmasq (mit dem ich mich noch gar nicht beschäftigt habe) und ich hab jetzt 4 Stellen an denen ich einen DNS-Server einstellen bzw. pflegen bzw. kontrollieren muss (dazu gleich mehr).
Nochmal zum Thema "automatische Regeln", diese scheinen allgemein auf dem WAN Interface nicht richtig zu funktionieren.Ja hab den Fehler gefunden, die automatischen Regeln funktionierten nicht.
Habe das wieder auf Manuel gestellt und exakt die selbe Regel manuell auf dem WAN Interface gesetzt und es funktioniert sofort!
Anhang anzeigen 1216218
Ergo hat OpnSense recht, das man hier nicht die automatischen Regeln verwenden soll!
Tu das. Wobei Du auch ein Problem mit einer automatischen, registered NAT Rule hattest. Hast Du deine Rules schon migriert? Vielleicht gibt es da noch ein Problem bei dir.werde später mal Screenshots anhängen


Gönne deiner Opnsense doch mal etwas mehr Arbeitsspeicher, die arme quält sich so

Nope. Die Regeln sind weiter im System, können aber nicht mehr ohne ein zusätzliche PlugIn geändert werden. Was aber jederzeit geht ist sie zu migrieren. Und es betrifft nicht nur Floating Rules, sondern alle Regeln. Allerdings nur bei Floating gab es groß Veränderungen, nämlich dass es keine mehr gegen kann, die nur auf einem einzigen Interface sind.dass die aktuellen Updates das z.T. erzwingen, stimmt das?
Im Idealfall exportiert man die Regeln, guckt mal drüber und importiert sie wieder. Außer bei Floating Regeln sehe ich da keine Probleme. Wobei man wohl auch Warnungen angezeigt bekommen soll bei bestimmten Konstellationen, kann mich selbst aber an keine erinnern.oder ob man sich da einen größeren Brocken an Arbeit ins Haus holt?


OPNsense 26.7.2 (August 12, 2026)
This update addresses the WireGuard MAC authentication issue people have been talking about, 4 core security advisories and the usual volume of quality of life improvements and bug fixes.
We are currently improving the compatibility with the legacy pages in full privilege separation, working on feature parity between Outbound NAT and Source NAT and will also provide a road map in the next weeks for 27.1. Stay tuned.
Today, Netgate is releasing pfSense Plus software version 26.07. We strongly encourage all pfSense Plus customers to upgrade to the latest version. This release contains exciting new features exclusive to the Netgate Nexus controller: CoreDNS, Threatgate, and Snort version 3.
CoreDNS
A high-performance, integrated DNS component that handles DNS-based tasks with exceptional speed and efficiency, powered by a new and exclusive Netgate plugin called rexdns.
Threatgate
A powerful, high-performance component that manages bulk lists of addresses and domains for firewall rules, aliases, and CoreDNS groups. Administrators can block these lists outright or create custom rules based on their content.
Threatgate and CoreDNS were built to integrate tightly together, enabling rapid processing and utilization of even massive lists - all while maintaining excellent performance on small, resource-constrained devices.
Snort Version 3
The updated version of the popular open-source intrusion prevention system (IPS), featuring multi-threading support, and a faster rule syntax, is now available exclusively via the new Netgate Nexus controller GUI.
In addition to the features listed above, this software release includes critical security updates for WireGuard (CVE-2026-58085), and other security enhancements.
Other fixes and enhancements were made to:
This release includes over 31 updates, bug fixes, and enhancements.
- DHCP
- DNS Resolver
- DynamicDNS
- Gateways and Monitoring
- IPsec
- VXLAN Interfaces
- OpenVPN
- Firewall Rules and NAT
- Traffic Shaper
- Wireless support
Using the New GUI
For more than two decades, our legacy PHP-based GUI and backend have served us exceptionally well. They provided a familiar and reliable interface that helped establish pfSense and its many derivatives as trusted leaders in the networking industry.
However, as networking demands have evolved, that codebase has grown increasingly outdated. Its architectural limitations and accumulated technical debt no longer align with our vision of delivering the fast, responsive, and truly modern user experience our customers expect and deserve.
That's why we're excited to announce our transition to a completely rewritten system built on Go. This modern architecture, already powering the new UI in the Nexus Controller, delivers significant performance improvements, a powerful, full-featured API, and true cross-platform compatibility.
Whether you manage a single pfSense Plus firewall or an entire fleet, the Netgate Nexus controller delivers a modern, refreshed management experience built for the way you work today.
Getting started is simple:
More detailed documentation can be found here. Start using it today and get immediate access to the new features and capabilities coming to pfSense Plus.
- Go to System > Advanced.
- Switch to the Netgate Nexus tab and enable it.
- Log in to Nexus on port 8443 of your firewall.
Note: Virtual machines as well as some third-party platforms may not support the new GUI due to missing machine information required to correctly run the software.