pfsense:about_pfsense
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
pfsense:about_pfsense [2020/11/27 14:32] – [Real Time Information] peter | pfsense:about_pfsense [2020/11/27 19:34] (current) – peter | ||
---|---|---|---|
Line 39: | Line 39: | ||
* NAT Reflection – in some configurations, | * NAT Reflection – in some configurations, | ||
- | ---- | ||
- | ===== NAT Limitation | + | <WRAP info> |
+ | **NAT Limitation** | ||
PPTP / GRE Limitation – The state tracking code in pf for the GRE protocol can only track a single session per public IP per external server. | PPTP / GRE Limitation – The state tracking code in pf for the GRE protocol can only track a single session per public IP per external server. | ||
- | This means if you use PPTP VPN connections, | + | This means if you use [[http:// |
A thousand machines can connect simultaneously to a thousand different PPTP servers, but only one simultaneously to a single server. | A thousand machines can connect simultaneously to a thousand different PPTP servers, but only one simultaneously to a single server. | ||
Line 54: | Line 54: | ||
A solution for this is currently under development. | A solution for this is currently under development. | ||
+ | |||
+ | </ | ||
---- | ---- | ||
Line 177: | Line 179: | ||
===== Captive Portal ===== | ===== Captive Portal ===== | ||
- | Captive portal allows you to force authentication, | + | [[https:// |
+ | |||
+ | This is commonly used on hot spot networks, but is also widely used in corporate networks for an additional layer of security on wireless or Internet access. | ||
+ | |||
+ | The following is a list of features in the pfSense Captive Portal: | ||
* Maximum concurrent connections – Limit the number of connections to the portal itself per client IP. This feature prevents a denial of service from client PCs sending network traffic repeatedly without authenticating or clicking through the splash page. | * Maximum concurrent connections – Limit the number of connections to the portal itself per client IP. This feature prevents a denial of service from client PCs sending network traffic repeatedly without authenticating or clicking through the splash page. | ||
Line 184: | Line 190: | ||
* Logon pop up window – Option to pop up a window with a log off button. | * Logon pop up window – Option to pop up a window with a log off button. | ||
* URL Redirection – after authenticating or clicking through the captive portal, users can be forcefully redirected to the defined URL. | * URL Redirection – after authenticating or clicking through the captive portal, users can be forcefully redirected to the defined URL. | ||
- | * MAC filtering – by default, | + | * MAC filtering – by default, |
* Authentication options – There are three authentication options available | * Authentication options – There are three authentication options available | ||
* No authentication – This means the user just clicks through your portal page without entering credentials | * No authentication – This means the user just clicks through your portal page without entering credentials | ||
Line 204: | Line 210: | ||
pfSense includes both DHCP Server and Relay functionality. | pfSense includes both DHCP Server and Relay functionality. | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ===== References ===== | ||
+ | |||
+ | https:// | ||
pfsense/about_pfsense.1606487550.txt.gz · Last modified: 2020/11/27 14:32 by peter