• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

pfSense SG-1000

I was literally just planning out a build to do exactly this with a SOC microboard, guess they beat me to it, i may buy this.

Hardest part of making one is finding a SOC micro board that has real dual gigabit ethernet.
 
Wow that is really cool. I have an old 1U server running pfsense, but a box like this would use way less power than full blown PC hardware.
 
From what the site says it looks like it is. I'm guessing this is similar to a Raspberry PI though, you can probably put other stuff on it too.
 
I had asked Netgate some questions and have not received an E-mail from them. Can anyone answer these two questions?

Can I change the WAN MAC address in this appliance?

Can I block countries in this appliance?
 
I had asked Netgate some questions and have not received an E-mail from them. Can anyone answer these two questions?

Can I change the WAN MAC address in this appliance?

Can I block countries in this appliance?

good questions, please let me know their response, because i also have to change the mac address.
 
I'm asking here because I have not got a return E-mail. I never used pfSense before. I found an old post on a pfSense forum back in circa '15 where a user had an issue changing the WAN MAC address. Although I think it was due to his NIC.
 
I really question that box having sufficient grunt to keep up if you do anything more than a basic firewall setup on it.
 
I'm not a fan of VMing a firewall, unless you have a separate VM server with two NICs that is strictly acting as a gateway VM server. You can do "router on a stick" as a firewall but it just does not feel right to me. I always like having real physical separation between inside and outside. It is less error prone.
 
I'm not a fan of VMing a firewall, unless you have a separate VM server with two NICs that is strictly acting as a gateway VM server. You can do "router on a stick" as a firewall but it just does not feel right to me. I always like having real physical separation between inside and outside. It is less error prone.


I'm not gonna run a firewall in a VM. I just want to look at the software in preparation on buying this node/device thingamabob.
 
Got a chance to test this in a VM. Pretty intuitive layout. Everything is pretty much straight forward, but there are a lot of other options that go beyond my networking knowledge. It's a very capable firewall. To change the WAN MAC address it's right under interfaces. But when I tried to change it the web page wouldn't load. I have a felling the virtual NIC was causing an issue or I need to do something IDK. I hope this doesn't happen in the SG-1000. Adding countries is easy with the addition of the module. They even have a Snort module which I need to test. I'll set everything up and Nmap this VM and see if it gets through with an open port. I'm hoping Snort will block it. There is also a Nmap module, but who in their right mind would run Nmap from their own IP address?
 
Does anyone know if Snort blocks Nmap scans out of the box with the opensource signatures? I was able to do an Nmap scan to the VM without being blocked. But maybe that was due to my IP being localhost? Or in RFC 1918?
 
Guide?

And how do you enter CLI in the SG-1000? It does have a single USB adapter, but I'm not sure who you see a screen with that.
 
Lol damn phone , gui.

The cli will be ssh, possibly telnet by default...but not likely.

Edit: from spec sheet on your link

Console Port
Micro USB

There's the local, non ip console port
 
Back
Top