{"id":20,"date":"2011-01-12T13:35:20","date_gmt":"2011-01-12T13:35:20","guid":{"rendered":"http:\/\/www.haxrbyte.org\/?p=20"},"modified":"2011-01-12T13:35:20","modified_gmt":"2011-01-12T13:35:20","slug":"pfsense-open-source-firewall-distribution","status":"publish","type":"post","link":"https:\/\/haxrbyte.org\/?p=20","title":{"rendered":"pfSense &#8211; Open Source Firewall Distribution"},"content":{"rendered":"<p>pfSense is a free, open source customized distribution of FreeBSD tailored for use as a firewall and router. The project started in 2004 as a fork of the embedded firewall software  package called m0n0wall.  pfSense is focused towards full PC  installations rather than the embedded hardware focus of m0n0wall.<\/p>\n<p>This is one of the most powerful, yet simple software firewalls. It can stand it&#8217;s ground to any hardware firewall on the market, and it&#8217;s very easy to install.<\/p>\n<p>Get a copy today and start playing &#8211; <a title=\"www.pfsense.org\" href=\"http:\/\/www.pfsense.org\/\" target=\"_blank\">www.pfsense.org<\/a><\/p>\n<p>It&#8217;s also available as a VMWare appliance&#8230;<\/p>\n<p>There are numerous <a title=\"tutorials\" href=\"http:\/\/doc.pfsense.org\/index.php\/Tutorials\" target=\"_blank\">tutorials<\/a> available.<\/p>\n<p>PaulDotCom did a awesome mini tech segment &#8211;<\/p>\n<p><strong>Installing pfSense on an Alix.6e1<\/strong><\/p>\n<p>The <a title=\"http:\/\/www.pcengines.ch\/alix6e1.htm\" rel=\"nofollow\" href=\"http:\/\/www.pcengines.ch\/alix6e1.htm\">ALIX.6e1<\/a> hardware platform:<\/p>\n<p>2 10\/100 LAN \/ 1 miniPCI \/ 1 miniPCI Express \/ AMD LX800 \/ 256 MB \/ 2 USB \/ DB9 serial port \/ CF Card slot \/ Board size: 6 x 6<\/p>\n<p><strong>First Step: Get a ALIX 6E1<\/strong><\/p>\n<p>link to <a title=\"http:\/\/store.netgate.com\/ALIX6E1-Kit-Red-Unassembled-P184.aspx\" rel=\"nofollow\" href=\"http:\/\/store.netgate.com\/ALIX6E1-Kit-Red-Unassembled-P184.aspx\">Netgate&#8217;s ALIX 6E1<\/a>. Netgate&#8217;s ALIX 6E1 Costs <em>$175.<\/em><\/p>\n<p>The kit includes:<\/p>\n<ul>\n<li> ALIX.6E1 system board (2\/1\/1\/256\/LX800)<\/li>\n<li> Laser etched red aluminum enclosure with USB and antenna cutouts<\/li>\n<li> Blank 2 GB Sandisk Ultra II CF Card<\/li>\n<li> 15V 1.25A 18W power supply (US 3 prong plug style)<\/li>\n<\/ul>\n<p>You will also need a Compact Flash card writer for installing the pfSense operating system. The one they used costs <em>$10.00<\/em><\/p>\n<p>Next you will need the pfSense &amp; <a title=\"http:\/\/m0n0.ch\/wall\/physdiskwrite.php\" rel=\"nofollow\" href=\"http:\/\/m0n0.ch\/wall\/physdiskwrite.php\">physdiskwrite<\/a> Software, Cost: <em>FREE!<\/em><\/p>\n<p><strong>Second Step: Download the necessary packages<\/strong><\/p>\n<p>They needed the embedded version specifically created for the 2GB CF card  size. The embedded version performs only reads from the flash card, with  read\/write file systems as RAM disks as compact flash cannot handle  many write operations. The embedded versions can be found on pfSense&#8217;s <a title=\"http:\/\/pfsense.com\/mirror.php?section=downloads\" rel=\"nofollow\" href=\"http:\/\/pfsense.com\/mirror.php?section=downloads\">mirror list<\/a><\/p>\n<p><strong>Third Step: Install the pfSense operating system on our CF card<br \/>\n<\/strong><\/p>\n<p>pfSense&#8217;s <a title=\"http:\/\/doc.pfsense.org\/index.php\/Installing_pfSense\" rel=\"nofollow\" href=\"http:\/\/doc.pfsense.org\/index.php\/Installing_pfSense\">documentation<\/a> does a good job.  We used a Windows PC as all our other boxes were busy  umm analyzing pr0n, so we opted for the physdiskwrite method.<\/p>\n<p><strong>WARNING:  Follow the documentation&#8217;s advice and be sure you are not overwriting the wrong disk!<\/strong><\/p>\n<pre><span style=\"color: #888888;\">C:Documents and SettingsAll UsersDocuments&gt;physdiskwrite.exe pfSense-1.2.3-2g\n-20091207-1914-nanobsd.img\n\nphysdiskwrite v0.5.2 by Manuel Kasper &lt;mk@neon1.net&gt;\n\nSearching for physical drives...\n\nInformation for \\.PhysicalDrive0:\n   Windows:       cyl: 19452\n                  tpc: 255\n                  spt: 63\n   C\/H\/S:         16383\/16\/63\n   Model:         ST3160812AS\n   Serial number:             9LS0V1FC\n   Firmware rev.: 3.ADH\n\nInformation for \\.PhysicalDrive1:\nDeviceIoControl() failed on \\.PhysicalDrive1.\n\nInformation for \\.PhysicalDrive2:\n   Windows:       cyl: 244\n                  tpc: 255\n                  spt: 63\n\nInformation for \\.PhysicalDrive3:\nDeviceIoControl() failed on \\.PhysicalDrive3.\n\nInformation for \\.PhysicalDrive4:\nDeviceIoControl() failed on \\.PhysicalDrive4.\n\nWhich disk do you want to write? (0..2) 2\nAbout to overwrite the contents of disk 2 with new data. Proceed? (y\/n) y\n2001194496\/2001194496 bytes written in total\n\nC:Documents and SettingsAll UsersDocuments&gt;<\/span>\n<\/pre>\n<p><strong>Fourth Step: Find a desktop PC for a serial connection to the Alix<\/strong><\/p>\n<p>You&#8217;ll need either a USB to serial converter cable or a desktop PC to  connect the serial cable.  In OS X I&#8217;ve used the USB to Serial cable and  software called &#8220;Zterm&#8221;. You can also use the command line utility  called &#8220;screen&#8221;, or several other free programs.<\/p>\n<p><strong>Fifth Step: Bootup the device and fire up Window&#8217;s hyperterminal<\/strong><\/p>\n<p>Use the following settings for the connection:<\/p>\n<ul>\n<li>Baud rate: 9600<\/li>\n<li>Data: 8 bit<\/li>\n<li>Parity: None<\/li>\n<li>Stop: 1 bit<\/li>\n<li>Flow control: None<\/li>\n<\/ul>\n<p>Now we boot into pfSense.  As the bootloader comes there are 7 options listed.  The first choice you will be asked is<\/p>\n<pre><span style=\"color: #000000;\"><span style=\"color: #888888;\">\u201cDo you want to set up     VLAN's now [y|n]?\u201d  select no or 'n'. <\/span> <\/span>\n<\/pre>\n<p>Then you are asked to<\/p>\n<pre><span style=\"color: #888888;\">\u201cEnter your LAN interface name\u201d,  <\/span>\n<\/pre>\n<p>We used &#8216;fxp1&#8217;.  Next,<\/p>\n<pre><span style=\"color: #888888;\">\u201cEnter your WAN interface name\u201d  <\/span>\n<\/pre>\n<p>We entered &#8216;fxp2&#8217;.    Next,<\/p>\n<pre><span style=\"color: #000000;\"><span style=\"color: #888888;\">\u201cEnter the Optional 1 interface name\u201d, <\/span> <\/span>\n<\/pre>\n<p>here we used &#8216;fxp0&#8217;.<\/p>\n<pre><span style=\"color: #888888;\">Using the above examples, you'd see  \u201cThe interfaces will be assigned as follows:\u201d\nLAN  -&gt; fxp1\nWAN -&gt;  fxp2\nOPT1 -&gt; fxp0\n<\/span><\/pre>\n<pre><span style=\"color: #888888;\">Do you want to proceed [y|n]?                      (make sure you enter 'y' here).<\/span>\n<\/pre>\n<p>pfSense is now running in RAM and almost fully functional.  If you  wish you may plug your LAN interface into a hub or switch and connect  via the web interface.  pfSense is by default assigned an ip of  192.168.1.1.  Open your browser and navigate to <a title=\"http:\/\/192.168.1\" rel=\"nofollow\" href=\"http:\/\/192.168.1\/\">http:\/\/192.168.1<\/a>.<\/p>\n<ul>\n<li> If you choose to login the username is &#8216;admin&#8217; and the password is &#8216;pfsense&#8217;.<\/li>\n<\/ul>\n<p>The original post can be found at &#8211;<\/p>\n<p><a title=\"Installing pfSense on an Alix.6e1 by InternMike &amp; PaulDotCom\" href=\"http:\/\/pauldotcom.com\/wiki\/index.php\/Episode220%23Mini_Tech_Segment:_Installing_pfSense_on_an_Alix.6e1_by_InternMike_.26_PaulDotCom&amp;usg=AFQjCNG-nXWHWO9NYyb4vDnbwbRVI1rE4A&amp;sa=X&amp;ei=2IUtTYasLsL88Aa_47GMCg&amp;ved=0CC0QygQ\" target=\"_blank\">Installing pfSense on an Alix.6e1 by InternMike &amp; PaulDotCom<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>pfSense is a free, open source customized distribution of FreeBSD tailored for use as a firewall and router. The project started in 2004 as a fork of the embedded firewall software package called m0n0wall. pfSense is focused towards full PC installations rather than the embedded hardware focus of m0n0wall. This is one of the most [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":[],"categories":[4],"tags":[],"_links":{"self":[{"href":"https:\/\/haxrbyte.org\/index.php?rest_route=\/wp\/v2\/posts\/20"}],"collection":[{"href":"https:\/\/haxrbyte.org\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/haxrbyte.org\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/haxrbyte.org\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/haxrbyte.org\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=20"}],"version-history":[{"count":0,"href":"https:\/\/haxrbyte.org\/index.php?rest_route=\/wp\/v2\/posts\/20\/revisions"}],"wp:attachment":[{"href":"https:\/\/haxrbyte.org\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=20"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/haxrbyte.org\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=20"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/haxrbyte.org\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=20"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}