checkout AnsibleFest ------- red.ht/networkchuck AnsibleFest is a free virtual and immersive experience that brings the entire global automation community together to connect communities and spark collaboration. Typically an in-person event, AnsibleFest was changed to a virtual experience last year due to the pandemic. A virtual environment allows for a larger attendance and expands the conversations to people around the world. EXTENDED VERSION (VLANs and NordVPN): ntck.co/3jXJUqJ LINKS --------------------------------------------------- pfSense Download: www.pfsense.org/download/ PIA on pfSense Official Guide: ntck.co/3tBrvmX turn your old router into an access point: ntck.co/38U2l9J What you (might) need: --------------------------------------------------- Protectli pfSense Router: geni.us/ghLjK (affiliate) NetGate pfSense Appliance: geni.us/CKLzn (affiliate) Switch (supports vlans): geni.us/sympWI (affiliate) 🔥🔥Join the NetworkChuck membership: ntck.co/Premium
@dechaneltchana23463 жыл бұрын
Hey Chuck can you see if I can set 3wans ports ON the SG-3100?
@shahrahman72073 жыл бұрын
Sir please check your email
@blackonblack...92443 жыл бұрын
I'm wondering if you can install pfSense on a dual ethernet minicomputer. I was looking into making a Perimeter mini server. I guess my issue is throughput for a dual minicomputer. I don't want it to slow down my network too much.
@yamusa853 жыл бұрын
Is it fine to run firewall on a virtual machine inside hyper-v server if I set wan adapter in a virtual switch as inaccessible by host?
@prometeuszmal3 жыл бұрын
Ok everything its ok but where its conversion from ftp or vdsl connection
@TheCommunistRabbit3 жыл бұрын
Him: Get rid of your router now Video: stops
@megnugget26313 жыл бұрын
I must be tired this made me laugh way harder than it should have
@hamzamera20323 жыл бұрын
hhhhh
@tst67353 жыл бұрын
lol ,)
@TheCocoaDaddy3 жыл бұрын
Where did it stop for you? It stopped in the middle of the port forwarding segment. lol
@maxflaviohs3 жыл бұрын
jokes on you but i'm on my phone...cruising through my data plan... *sees video playing in fucking ultra high 2460p60... *one minute later, suddenly sms from my carrier provider starting with "you have ut..." oh, man...
@ENAHS13373 жыл бұрын
I remember when I was in a security competition in high school and had to make a security solution for home networks and it was pfsense with snort, pfblockerng, pihole. Unfortunately placed second because the judges said it was too complicated for non techy users... Still won $750 tho. Nice video!
@charlesblasini21343 жыл бұрын
"Security competition" "Too complicated for non tech users" Your school assigned the wrong people as judge
@ENAHS13373 жыл бұрын
@@charlesblasini2134 wasnt hosted by my school, was hosted and judged by another companies CSO, CIO, and SOC director. But your point still stands, wrong people to judge. Right title to be judging, just wrong individuals
@Jako19873 жыл бұрын
This bank vault is secure but too complicated. It should just open with this red big button.
2 жыл бұрын
Who was the first place "unplug from internet"??? 🤔🤔🤔
@dampintellect2 жыл бұрын
@ *taps head* if you can't connect to them, they can't connect to you. Then the hacker that would get first place climbed in the window to the unhooked pc.
@DavidTOBerry Жыл бұрын
Dude you are a blast to watch. I have been in Cyber forever and it's rare to come across someone that is both smart and able to communicate in a way folks can digest.
@romzeek4 ай бұрын
Wish I had a friend like this dude, imagine the amount of knowledge he could supply you with.
@GoCreateTechАй бұрын
google and read then you could be that friend to someone else.
@j4r3kk88Ай бұрын
He want get rid of router , ??? Hmmmm I c f o s
@LAWRENCESYSTEMS3 жыл бұрын
Nice work, happy to see some more love out there for pfsense and thanks for the shout out about my pfsense videos.
@shawnr81643 жыл бұрын
You and Chuck have helped me become a homelabber and I just wanted to say thank you both for your work.
@muchada13 жыл бұрын
Thanks Tom for all your tutorials . Pfsense rocks
@libertycornwell31443 жыл бұрын
Tom your videos are why I decided to jump in the deep end and start playing with PfSense. Chuck, your videos are why I am studying the CCNA course JUST to administer my HOME NETWORK. LOL. Love your videos!!!!! Thank you.
@R34L633K3 жыл бұрын
1 comment .:. 2 pfsense props! Both channels are terrific
@mattiaippolito16253 жыл бұрын
The United best teachers! 😋 thank you both!
@rayzor2853 жыл бұрын
"it's slow, it's insecure and it's not very fun" wow I can really relate to my router. Didn't realize we had so much in common 😆
@tailung63343 жыл бұрын
😂😂🤗you are funny only bro
@brodriguez110003 жыл бұрын
I run alternative firmware. ;-)
@scottluebke50123 жыл бұрын
Most home routers aren't slow though. They're fast. They're just NAT firewalls, but for what they are being used for, they're fast.
@Chris_Cross21 күн бұрын
Ooh self burn. Those are rare
@hankhyten2 жыл бұрын
Dude, your enthusiasm is infectious and so fun! Thank you for your expertise, time, and attention.
@Tjames42 Жыл бұрын
Your content and enthusiasm in creating that content has tremendously motivated me to pursue my dream of working in IT. Because of you, I signed up for an IT degree program, paid for by my employer, and I am hard at work at that as well as working towards IT certifications. Thank you for your dedication!
@Space-O-20013 жыл бұрын
"The ability to have fun with your network which is AWESOME" - Talk about the ultimate stay single for life statement lol (Great video -will look into)
@thzzzt3 жыл бұрын
The chicks really dig network fun.
@jewelbennett20773 жыл бұрын
Maybe nothing like router hate hackers from hell to motivate to learn.
@deViant142 жыл бұрын
It's very manic isn't it
@MadDog7XL2 жыл бұрын
I'm only a level 2 virgin, I can't get into this video
@torimato Жыл бұрын
I know close to nothing about networking but your sheer excitement made me watch this lol
@ElementX322 жыл бұрын
I really appreciate this channel. The education you recieve and the fact that it's free. Most of all, I love his teaching style i.e. enthusiastic, he loves what he does and it comes across. So many teaches are jaded and act like government employees, meaning it's just a job. I don't take this channel for granted and I'm grateful for it. On a different but not unrelated topic, he makes that coffeee look so good, that I had to go this site and order some for myself.
@countinfinity7762 жыл бұрын
Totally agreed, he keeps me interesting even when he's talking about topics i'm not that into. He is good.
@Turco949 Жыл бұрын
Agreed, but at the same time, he needs to be to keep the channel going as it's a fun "job" that generates a good chunk of $$ and I bet he gets a ton of freebies along the way.
@bryanburns33916 ай бұрын
Struggled with setup at first, realized I wasn't squinting enough during coffee breaks.. everything works great now..thanks for the help!
@ACSMUSICnTV4 ай бұрын
😂😂😂😂
@Bawdashone2 жыл бұрын
My friend I wish I would have had you as a teach back in college man. You explained this in the most simplest of terms and how everything works at operational levels. I even have mine set up with port forwards for remote access. Best day ever on configuring a pfsense router. Actually my first time ever too. You are the best! I'll be checking out more of what you have on here over time during my intervals of non interruption from everyone wanting help with IT or physical labor lol
@ZAND4TSU2 жыл бұрын
Does it give you a better internet connection in terms of gaming?
@Crazy-mr3py2 жыл бұрын
@@ZAND4TSU the same connection as plugging your router into your pc
@BrutusHiatus Жыл бұрын
The best teachers aren't the best because they know it well. They're the best because they can explain what they do know in simple terms. If you can't explain it to a five year old for them to understand, you're not a good teacher. Chuck is great because he can do it. Love ya, Chuck.
@akyumurkov3 жыл бұрын
My girlfriend was mad several times when I was playing with that new toy and overdid it :D... Redundancy and night shift are good thing. Gotta have that coffee!
@i-cannot-clutch84593 жыл бұрын
😳
@zakariahamid13613 жыл бұрын
Never use your GF as a toy
@aadarshkumarshah87953 жыл бұрын
Night shift isn't a good thing..your brain neurons might get increased but doesn't work properly..so early birds are good 🐦
@asplmn3 жыл бұрын
I've been using pfsense for awhile. Idk. Most people may be better off with a generic router. A non-technical user can get oneself in trouble pretty quick, which is then really frustrating when all they want is to browse social media. For folks who like to tweak and upgrade performance, oh no doubt, it's great.
@louisdaza19233 жыл бұрын
Thanks for the tip, I definitely fall into the non-technical user category
@moss4603 жыл бұрын
@@louisdaza1923 if you wanna have a really good router which gets automatically daily updates then buy Turris Omnia 2GB. It's much more user-friendly and also open source.
@louisdaza19233 жыл бұрын
@@moss460 ooohhhh I'll check that out, thank you very much!
@scottluebke50123 жыл бұрын
Agree. Pfsense is a ton of work even if you know networking. There's a big time learning curve, and that doesn't even include learning all the packages. But once you get the hang of it, it's a sick firewall that is free.
@louisdaza19233 жыл бұрын
@@scottluebke5012 I'm sold
@user-lu7gh3vx5q Жыл бұрын
Great video! One thing I want to add is that I looked into devices like protectli, but you'll trade that nice, small size, for performance. For about the same price, you could get a mini or micro PC that is a good bit more powerful and has better cooling. I ended up with a new Mobo, slightly older i5, 8GB of RAM, threw in an SSD hard drive I had laying around and it blows those mini routers out of the water. I run a point to point VPN, and initially my PFSense box was running a weaker processor and the usage sat around 30-40% at all times. The mid consumer tier intels (older and newer) and some AMDs have built in encryption capabilities that PFSense can use for things like VPN. I bought an i5 off of eBay for about $50 and now my usage rarely goes above 10%. I really have liked PFSense with Unifi access points.
@Nilruin9 ай бұрын
Except for the fact that your resource usage doesn't matter all that much once the firewall starts running. Once it's at 40% usage, it'll stay at around 40%. You'd have to add hundreds of devices to even make a dent in that resource pool. Most people can buy the small firewall appliance for their home network and be completely fine. You've introduced the concept of building a PC from scratch into an equation where that was never a variable. And before anyone hits me with the "but they're watching this guy on KZbin! Clearly they know how to build a PC, right? They know the basics of network topology already!" And with that I retort that not everyone has hardware knowledge. You would not believe the amount of people I've met as an IT consultant that had plenty of network knowledge and were employed as network analysts and engineers, but had zero clue what I was talking about when it came to hardware outside of switches or routers or patch panels. Zero. They had no idea what I was talking about and wouldn't be able to point out the difference between a CPU and a GPU. Keep things simple. A firewall appliance works perfectly fine for home networks. You're trying to use an F-22 Raptor to hunt squirrels when a .22 rifle will do just fine.
@matthiaswarlop23168 ай бұрын
how would you connect the wan and lan ports? would you need a pcie network card?
@andrewholden15017 ай бұрын
@@matthiaswarlop2316 Either get a motherboard with 2 ethernet ports or add a pcie card. Maybe even a card with multiple ports so I can make a DMZ or something.
@mbunds2 жыл бұрын
I just want to say that KZbin technical presenters could learn a lot from you. I love the other sources for deep-tech to be sure, but in comparison to even the "best", I think the balance you have found between providing concise information and the pace of your delivery is excellent, compared to the glacial pace at which most other "tutorial" videos provide their material, excellent as they may be otherwise. I also love the fact that I must pause/repeat during your presentations, rather than wait around for the next connecting concept to emerge from some irrelevant tangent that so many other channels seem to fall into as they attempt to have their material more easily "absorbed". Your delivery is fast, relevant, direct, and structured to be easily comprehensible to beginners, while being an excellent resource for FAST reference by more experienced students of the material, all while remaining very personable. People who do not produce for you will never know the creative process behind videos like yours, with endless decisions to be made about how to structure and present their chosen topic, so I applaud your choices, including the occasional "coffee breaks" and humorous B-rolls that do not interrupt the pacing in any real way. Anyway, thanks; not just for the materials being presented, but for your fast, concise method of video presentation. All training videos should study your method.
@6LordMortus93 жыл бұрын
What I find amazing, is that while watching videos like these, I follow along just fine.. but when I try to do it myself, my mind goes blank ;)
@freedompioneer43112 жыл бұрын
So you understand the lingo and this still happens?! Lol...Jesus then ppl like me who would always have to do some research after watching any of his videos just to understand what type of hardware/device is that he's describing for 20 mins
@dickofferman6793 жыл бұрын
chuck: costs about internet 350$ dollars *closes tab*
@ZorbaNorba5 ай бұрын
I've been getting so mad at my Netgear router and so pissed off that I couldn't get my speed or connection issues fixed. Thinking it was my ISP and causing hell with them for months. When I watched your video it hit me, "oh I am the problem". I got myself everything you told me to get (choose a different ap). Everything worked. Literally everything. In one day! I got the speed I wanted, IoT connection issues were gone, and I am the happiest dude in the universe! Thank you for making networking so much fun! I appreciate everything u do!!!!
@belairmp31303 жыл бұрын
"get rid of it! It's slow, insecure and not really fun" Exactly what my girlfriend said about me😓😅😂
@thunderpeel10013 жыл бұрын
lol
@matthewrowell59733 жыл бұрын
Oof
@signaturezero96753 жыл бұрын
There there
@bobcoco60473 жыл бұрын
She wanted to make her Boyfriend go through a VPN , while attributing it a fixed IP, but not allowing it to have an IPV6 (as it's the most used platform to cheat, right?) , or she just felt spied on by ISPs with you...I guess ? :D
@SrModeration3 жыл бұрын
@@bobcoco6047 you are a fucking Legend 🤣❤️
@johnadriandodge2 жыл бұрын
Thank you Jedi for your splendid tutorials and your enthusiasm, which has no equal!
@terry5008 Жыл бұрын
NOTE: You may have to power cycle a cable modem since it is only capable of leasing out one IP address, and it was already leased to the previous hardware. Power cycling will clear the lease.
@MarcSThe1St6 ай бұрын
just remember: fixed IP via DHCP is still just a reservation, not a fix assignment. Better: fix it in the device out of the DHCP-Range
@HestnetITАй бұрын
Yes, I agree, because you're relying on that DHCP server otherwise. Only downside is that you have to keep track of your manually assigned IP addresses in a spreadsheet or something.
@PudgyCurmudgeon2 жыл бұрын
Love the use of the pen on these fast moving tutorials. So much easier to follow. On some of the others (from others) the screen flips to the next before the viewer sees what was clicked (what the hell did he just do? - Rewind!). A great way to add value to your videos! I'm sold. Thank You.
@germail863 жыл бұрын
Great work. I loved pfSense: I decided to replace an old Gentoo that I could barely administer with pfSense... In my job... With no experience in pfSense... Only following the documentation in 2014 and worked great. After I finish my house, I will replace the router with a tiny pfSense. Thanks for your video, it was really fun to watch you. Best regards from Argentina.
@TomeS3 жыл бұрын
His love for coffee, coupled with playing the video at 2x, is awesome! Moreover, nice to see Lawrence Systems chiming in on someone else's video. I like seeing multiple channels checking out and supporting others.
@soapmactavish64493 жыл бұрын
He drink no coffee
@adagmemes Жыл бұрын
The best teacher ever! If I had you as a professor, I would never cheat in your class!
@citizenoftheverse46532 жыл бұрын
First met PfSense about 10 years ago... It seems the interface and possibilities have evolved a lot ! Great video ;-)
@mahdimix54683 жыл бұрын
Oh My God Chunk, your content is better than my teacher's courses,I wish that my teachers teach like you and make the student love and fall in love with IT. All me respect to you...
@kasomoru63 жыл бұрын
Ha, why do you think actual experience is better? It's cause the world's teaching structure is corrupt and their job isn't to teach but program you for their agenda. Not the actual teachers but they better do what they're told or ........ you know
@ljara33843 жыл бұрын
He doesn’t teach with scaffolding or adaptability that allows for advance users or users with learning disabilities. He doesn’t use ASL or allow for non-English speakers and is going way too fast for most students. He lacks training in asking the right questions to young people like what do they think will happen next. He lacks collaboration techniques and is missing visual learning cues. He is not allowing for users who only learn through hands on training because this is just a one-dimensional video. He is not using any Quad D action verbs like evaluate, compose, justify, predict, or invent.
@ljara33843 жыл бұрын
@@kasomoru6 He doesn’t teach with scaffolding or adaptability that allows for advance users or users with learning disabilities. He doesn’t use ASL or allow for non-English speakers and is going way too fast for most students. He lacks training in asking the right questions to young people like what do they think will happen next. He lacks collaboration techniques and is missing visual learning cues. He is not allowing for users who only learn through hands on training because this is just a one-dimensional video. He is not using any Quad D action verbs like evaluate, compose, justify, predict, or invent.
@joshnabours91023 жыл бұрын
@@ljara3384 It is a video. If it covers things faster than you like you can put it on 1/2 speed or rewatch it a bunch of times. It is the same concept as reading the textbook multiple times until you get it. The video has closed captions which should be plenty for people who are hearing impaired. Especially when they can rewind and replay the video freely. Even assuming there are things he could explain better or in a different way, they may have been glossed over as they are not core to the video. Or they could be topics better suited to a stand alone video or video series. You may not even be his intended audience for the video. Also, key to learning with some kind of hindering disability or impairment is first learning the ways you learn best and then adapting the curriculum to better suit your learning style. It is nice when the teacher does that perfectly for you, but it is not realistic to expect every teacher to do so. You can take the information here and work out your own way of practicing it to perfection that suits your learning style. Perhaps by trying it yourself alongside a pfsense book or with the pfsense online wiki open. It is harder and takes longer, but sometimes that is just what you have to do. I know. I have several learning disabilities / impairments.
@fn0rd-f5o3 жыл бұрын
teachers have a hard time teaching to everyone. when I was in school, I was always way ahead of the teacher. it's not that the teacher didn't have skill, he knew what I was doing and gave me high marks for it. but in his lecture and curriculum he has to teach people who don't know this stuff. I saw that in my career often. it's one thing to know how to do all this stuff, it's a whole other beast to try to explain it in a way that makes sense to someone who is just getting started. Thing is, nobody every taught me, I was interested and learned how to figure it out. Back in the days of IRC, i was an @ in many channels, because I was engaged, and actively willing to learn. Not because I expected to be taught.
@HelderAraujoKodi2 жыл бұрын
You sir are the teacher I never had in school; you make learning so much fun and simple. I’m going to get on this right now as I use UniFi access points for my wifi as well. Thank you so much
@leborhal74502 жыл бұрын
One of the reasons why some millenial with a teaching degree and no passion of a subject will never be as good as someone with passion.
@williamblair95972 жыл бұрын
Agree. Showing passion for your subject is square one requirement you rarely see anymore.
@AcidiFy5742 жыл бұрын
@@leborhal7450 Most teachers are boomers, WTF are you even on about ? & more importantly what does being "Millenial" go to do with it??
@Styphoryte2 жыл бұрын
@@AcidiFy574 Because he's a jealous ol' boomer ;)
@joe_ferreira2 жыл бұрын
@@leborhal7450 Generation has anything to do with passion. Either they have it or they don't. Blame _____ generation all your want but there are terrible uninspired people in every generation.
@KaiCross-l5i2 ай бұрын
Instructions unclear: I was so quick to burn my terrible router that I did it before he said I could still use it.
@mytube74732 жыл бұрын
Firstly LOVE your channel. Secondly, thanks to you my home is now protected by pfsense. I converted an old core i5 8gb ram workstation, added an extra lan card for $15, now all my home internet runs through it. Runs pfblocker and SNORT like a breeze. Amazing at all the stuff it detects and blocks. Feels like i have the safest home network in my city.
@Deplated Жыл бұрын
With 500W power supply? :) It's good to use old stuff, but better to sell it and get a dedicated hardware :D Good job though
@mytube7473 Жыл бұрын
@@Deplated yes. since that comment ive upgraded to a new mini PC with 8gb ram & Intel(R) Celeron(R) N5105. Think it only uses 15watts or something.
@Deplated Жыл бұрын
@@mytube7473 sounds good mate!
@Eduardo-pp1pt2 жыл бұрын
0:01 i have that router :(
@michabednarek145222 күн бұрын
Cause it is more than you need for home. This guy is a joke.
@Doriangaensslen2 жыл бұрын
Hi @NetworkChuck Awesome what you do BTW! What would be very interesting is to go into the details of IPv6 on pfSense (some hints there.. Prefix delegation, Security topics, what should be allowed per default, how to keep track of all the devices, how to allow for certain ports, etc.). In my eyes, this can get very messy really fast.
@Levi-Salmon9 ай бұрын
Thank you for clarifying how things actually connect from a hardware sense. Feels like so many helpful nerds assume I’m already a master of the fundamentals but that means there are less opportunities to actually learn the fundamentals lol. I found this super helpful
@angzarr95843 жыл бұрын
"I love when things make noises" - network chuck
@aadarshkumarshah87953 жыл бұрын
My bike makes a lot of noise without the servicing
@vinson37253 жыл бұрын
Chuck being out of context sounds fun :D
@ninjarider443 Жыл бұрын
For those who find pfsense a bit complicated, ipfire is a great choice. I been running ipfire for many years and switched to running it on a protecli device a year ago. The bad thing about protecli though is many of their lower end devices (2 ports and 4 ports) have many hardware vulnerabilities due to the old intel chips being used. I have the 2 port version and it is plagued with hardware vulnerabilties. Ipfire has a built in checker to check for hardware vulnerabilities unlike pfsense, which is an awesome feature to inspect the hardware to ensure it is not vulnerable. I am working to look at different hardware since my current protecli i bought a year ago has to many hardware vulnerabilities on it now. If you get protecli, get coreboot bios, since all their stuff is made/flashed in china, but at least with coreboot you get opensource firmware vs who knows what extra stuff is included in the china flashed firmware.
@raincadeify9 ай бұрын
@@yigits4031 lol
@bohannakin13 жыл бұрын
Thank you for this video! I recently purchased the Protectli Vault (8gb ram, 120mSATA) and I was a bit lost in the understanding pfsense. You made it not only easier to understand but did it with great humor! If I had you as a network instructor it wouldn't even feel like school. Thanks again!
@BrianHainesIT2 жыл бұрын
I just did the same. I have not fully set it up yet. I'd love to share my network diagram and get insight into subnets, vlans, wifi and I may need to replace one or more of my switches. Would love to know what other people's home networks look like and how they set things up.
@jungleviper2 жыл бұрын
What's the purpose of it besides increased security
@richardb47876 ай бұрын
The coffee probably has something to do with the fast pace. 😂
@riczon10562 жыл бұрын
Great video and walkthrough, wish I had you as my IT instructor you explain things very well! Can’t wait to try this! Enjoyed your enthusiasm and energy!
@Ray-mq7rb Жыл бұрын
Big fan of PfSense, deployed hundreds of them. Personally I use the Ubiquiti Dreammachine Pro now, cheapest way to get SFP+ connections. If you want next-gen firewall protection with Pfsense, you can setup Suricata on it for even better protection.
@NL-lp5in Жыл бұрын
Hi Ray Recently I started to learn pfsense, but something seems very strange to me.let me know if something is wrong about my config. OK there's lan1 and lan2 and I've set rules that prevent lan2 from reaching lan1 but allow lan1 to reach lan2,everything's fine until while I'm pinging lan2 from lan1(which is ok) try to ping back lan1 from lan2(which is prevented), it works!!!! Like the gate is open for exiting soldiers and the enemy enters simultaneously😂 is this natural? Is this a bug? Or it's something I'm doing wrong? (To be clear all the rules port and source and destination are on any)
@retobruhlmann9587 Жыл бұрын
@@NL-lp5in Try to create a "block" rule with protocol "icmp" and "any" with "lan1" as source and "lan2" as destination
@timmark4190 Жыл бұрын
Why dream machine pro?
@trunkenb0ld3 жыл бұрын
Thank you for the raspberry pi comment! This is one of the most important information when I watch videos about such server tools.
@joemann79712 жыл бұрын
Raspberry pi is too underpowered anyway. You might as well just flash OpenWRT on an existing router. Its probably about the same. An old desktop with a 4 port intel card will work wonders though, but you might be better off getting a dedicated box, since an old machine will be very power hungry, and considering this will run 24/7, you want it as efficient as possible. I think you can also run PFSENSE in a VM. I was considering running PFSense on my unraid server, but then if my unraid box crashes, I have no internet, but you could do that as well.
@jasonea95 Жыл бұрын
Just set my pfsense router using the appliances you recommended. Everything is running like a breeze! I appreciate this tutorial video very much thank you!
@bkramkowski3 жыл бұрын
I noticed SHA1 when you were setting up your VPN. Wasn't that deprecated a few years back? Great video, by the way!
@tarasfedchuk92613 жыл бұрын
this is not a production environment, just for test
@ltolgyesi3 жыл бұрын
@@tarasfedchuk9261 but many will consider it not as such...
@jacksummer28493 жыл бұрын
Dyor
@PrivateJoker01193 жыл бұрын
@@jacksummer2849 lmao, no need to research, it's well known that SHA1 is considered weak nowadays
@abdulmuhaimin52743 жыл бұрын
Ask PIA, mate.
@d83martinez3 жыл бұрын
Lol! That’s funny. I immediately thought installing PF on a raspberry pi and you swiftly answered that question. Great video.
@mikefrazier17603 жыл бұрын
OpenWRT will run on Raspberry PI and offers very similar features. That's what I have for my router now and it made a huge difference on my home network.
@trilight35973 жыл бұрын
Same lol
@michaelrobinson96433 жыл бұрын
Appreciate you doing a supplementary video on VLAN's - particularly with a focus on segregating IOT devices. Thanks :)
@chuckyg3863 жыл бұрын
I too would like to see that. Great content as always.
@AceBoy20993 жыл бұрын
I'd also love to see info on vlans and external APs & their IPs Thinking of trying to set them up for it (not that I have too many as of yet) and another for 10g network (unless this is supposed to he done different, then maybe a video on that) using the zyxel APs and switches I have.
@CompEngEvFan3 жыл бұрын
Great video. Wanted to mention, since you mentioned pfsense can be installed on a virtual machine, I have my pfsense router installed on a virtual machine running on an ESX host and I ran through the config provided by NordVPN, before I saw this video, and I noticed that my traffic would randomly stop routing through the VPN. NordVPN support said they don't support routing traffic through a virtual deployment of pfsense, only hardware installs.
@buildfrom2 жыл бұрын
Hi NetworkChuck, Ditto. Would like to know more about VLAN's how to configure etc. particularly for segregating IOT devices. Thank you.
@beigealert4268 Жыл бұрын
chuck, you are one of the very few youtubers in networking that doesnt make me feel like an idiot
@mikefrazier17603 жыл бұрын
Great video. Long but worth it. Would love to see you do a similar video on OpenWRT running on a Raspberry Pi4 (now supported on the latest version of OpenWRT). PfSense is more polished it seems but for me it's amazing to do similar stuff all on a Pi4.
@vahn_legaia2 жыл бұрын
I set that up myself and it worked for 30 mins then started crashing/bogging right down. Maybe it was a bad SD card though, I imagine it shouldn’t be that unstable
@michaelross30612 жыл бұрын
I just finished the Google IT Support Cert networking section. I fell in love with it. I can't believe it only took a week and almost everything you did makes sense to me. Like 100%. I'm so buying the exact setup, and will follow along. Then, I promise I will get into trouble lol. Wish me luck. Excellent content. I was thrown off by the guy fawks mask, so glad I clicked on your vids. Great content man
@freedompioneer43112 жыл бұрын
took you only a week to get a Google it support cert?!
@michaelross30612 жыл бұрын
@@freedompioneer4311 I did 3 of the courses in a week. I have a technical background, so I knew some of it. Been programming for 6~ years and always have been a computer nerd
@killermist3 жыл бұрын
One thing I think is neglected on most networks is the use of traffic shaping. On the network I used to run, I could have a couple machines running torrents full blast with zero slowdown for any of the traffic that needed low latency. Traffic shaping is also a great way to get around buffer bloat effects from ISPs using buffers that are much larger than they have any reason to be. If you can shape the whole network's maximum traffic to 95% of your ISP's maximum bandwidth, then you can prevent traffic coming in from or out to the internet bottlenecking on the ISP side because the buffers are overrun.
@veneratedmortal43692 жыл бұрын
To help with ping?
@killermist2 жыл бұрын
@@veneratedmortal4369 Of course pings are a low latency packet (like "small packets") and therefore trapped by the low latency set of rules. Of course they'll be prioritized ahead of everything else classed as regular or bulk.
@harryjohnson6152 жыл бұрын
@@killermist ICMP packets do not get priority and it's not unusual for routers to just drop them when things get busy
@killermist2 жыл бұрын
@@harryjohnson615 Monowall, which isn't even the most advanced install-it-yourself router software, and every other router software worth anything will have the ability to prioritize TCP/ACK packets and ping packets ahead of everything else. And that's on top of any of the other benefits of traffic shaping. If your pings and your TCP ACKs are being prioritised at the same level as web browsing and BitTorrent, then your traffic shaper is not doing its job properly. Any router that does not have those features is a router that needs to be upgraded.
@harryjohnson6152 жыл бұрын
@@killermist You're rather missing the point. Your router's traffic shaping is superceded by your ISP's own traffic shaping policies. You might be able to assign the highest priority to an ICMP request within your network but as soon you try to traverse your ISP's backbone they shape and prioritize the traffic and one of the first things to bite the dust when traffic is heavy are ICMP requests because they are not providing a service. Some internet routers are so harsh they just become black hole routers and NEVER respond to ICMP requests
@johnmikky9619 Жыл бұрын
Sometimes I really wish I could like your videos more than 1 time. You have a very cool way of explaining Networking concepts/Tech and also simplifying everything. Thank you Network Chuck for all you do for the community
@22Webstar Жыл бұрын
Just create another KZbin sign in lol
@carlostrudo3 жыл бұрын
I’m currently using a MikroTik router at home. It has lots of capabilities, similar to PfSense, but GUI is not as good.
@pradnyeshsoshte25093 жыл бұрын
Mikrotik is good option for beginners. its cheap & has commercial grade options on its lowest line up products too.
@carlostrudo3 жыл бұрын
@Mik Müller well, we cannot even start comparing MikroTik with a home router LOL. It has much more than I need or use but I miss a friendly GUI though.
@eDoc20203 жыл бұрын
A huge advantage of pfSense and friends over any dedicated device I could find is the ability to use hostnames in firewall rules.
@ch3vr0n1233 жыл бұрын
use console instead;)
@michaelprobst65592 жыл бұрын
I use mikrotik as well, best routers imo. I also love ruckus radios but their firmware has been aides this past year.
@LL4HisGLORY3 жыл бұрын
Hey Chuck, minimizing the single use USB and use Ventoy, Im going to try to see if i can put Pfsense on it an see if i get boot. Thanks for diversifying your content!
@somesugar3 жыл бұрын
I LOVE IT. I learned tons of things. And now, im gonna research and learn more. Thanks for this great content 😊
@HaCkEr--3 жыл бұрын
😃
@mpe77710 ай бұрын
Great video!! As an old Cisco Pix, Checkpoint Firewall, BayNetworks Networking & Security Engineer, I’m blown away by what pfsense can do these days. I’m long been retired but in the tail end of my career years I was working with pfsense in about 2007 -2009. There were two other products named Untangle & I can’t remember the other name I had worked on for some time testing which were pretty solid at that time also. Now, I no longer get involved much with networking even as hobby but I do occasionally browse to see where things are at like tonight and I’m glad I did. You might have just inspired me to to build a little cube and dump pfsense on it to play with at home. Thank you for this fantastic chock full of info and demonstration. I owe you a cup of joe. 🤟
@captainsmirk6901 Жыл бұрын
Chuck, or anyone really, what are the pros/cons of going with Protectli vs a Netgate?
@ozy3113 жыл бұрын
The picture of the TP-Link TL-SG105E that he said is managed literally says "unmanaged" on it. :)
@FritzWeinrebe3 жыл бұрын
Hehehe, would not have noticed if you didn't mentioned it.
@Malhivezerg3 жыл бұрын
OpenWRT is also an option as an AP for a old router as well.
@donkeyle63643 жыл бұрын
I also used OpenWRT, however the configuration is subpar compared to pfsense. Snort does not even have UI.
@michabednarek145222 күн бұрын
But he got paid to advertise something which is not free ;)
@32bit_mo6 ай бұрын
“Not very fun” is an excellent reason.
@James-li8cm3 жыл бұрын
I literally just bought one of these last month and am running PFSense on it! I migrated from using on old beat-up dell optiplex to this, and transition was SUPER EASY
@tasostsimpogiannis76823 жыл бұрын
What Network cards had installed to the optiplex?
@James-li8cm3 жыл бұрын
@@tasostsimpogiannis7682 I bought a "intel" double nic card... the intel brand is important because it plays well with the base OS of pfsense
@scottluebke50123 жыл бұрын
@@James-li8cm Same. Currently rocking the 2016 Optiplex with i5 6500, 8GB, and nvme SSD. Power for days and days, but also takes up a lot of space. Might pickup a small Netgate box and put the Optiplex into duty somewhere else.
@JulioCholo3 жыл бұрын
how cool is it that you’re doing this just when I started to use pfSense at work. your content ROCKS!!
@niqzey65063 жыл бұрын
Another upload from our amazing Chuck! Will watch it when I am back home!
@Anthony-kd2tbi3 ай бұрын
how does one get the host name in Cloudflare? I'm a little confused on that part.
@RomaniaOverpowered3 жыл бұрын
That exact router you had in your thumbnail is a great router for a 2 room apartment. Great coverage, even on the balcony. Switched to DDWRT, payed some 15-20$ 5 years ago. Why would I destroy it? (did subscribe to you because of the enthusiasm about networks you show)
@nickmax992 жыл бұрын
Hey Chuck - just found your videos and they're great! 1 thing tho - I don't think you need the block rule if the PIA gateway goes down. In my experience, the rule you set to push traffic out the gateway will still kick in try to push out and get stuck... (so no traffic gets to internet).
@benhaze1010 Жыл бұрын
With Gb+ internet service becoming readily available the 2 proposed pfsense routers are becoming obsolete ( and the one shown on this video is $720+ in Canada...). Any updated suggestions? Thanks.
@kdiz7605 Жыл бұрын
They’re not routers they’re just mini computers. Alternate option is to get a media converter to convert it to RJ45
@MiVoodoo Жыл бұрын
I followed the instructions exactly, even took coffee breaks when instructed. Thanks for the great tutorial.
@svensyoutube15 ай бұрын
Time for a Update
@Enzoerb4 ай бұрын
100%
@HestnetITАй бұрын
Not much has really changed but I can see where people will get tripped up by it if they are new to networking.
@samimurtomaki55343 жыл бұрын
I can imagine there are few more literal "something secure" passwords now.
@mactech81672 жыл бұрын
Your tutorials are amazing you explain every aspect of it, your a great teacher, thank you very much I learned a lot and still learning!
@DenysCastilhos2 жыл бұрын
Chuck, I love the enthusiasm, you are great teacher. The only concern I have is about the recent reviews for the recommended devices. A large number of users complaining about overheating and not lasting long. What has been you experience since the launch of this video? I've never been this inspired with network. Thanks for your videos.
@atlantic_love2 жыл бұрын
He's in it for the subscribes. Are you surprised he hasn't responded yet?
@thebossminer98402 жыл бұрын
@@atlantic_love this video was made months ago, he probably just doesnt check this anymore
@atlantic_love2 жыл бұрын
@@thebossminer9840 Doesn't matter. He's in it for the subscribes. CLICKBAIT
@ItsTheSameCat3 жыл бұрын
Love your videos Chuck. Thanks for helping so many people get into IT.
@felipedofuturo3 жыл бұрын
Mikrotik it's the fairest firewall does everything a pfsense does and more, an RB750gr3 costs $60, with $200 you buy an RB4011iGS+RM (10xGigabit port router with a Quad-core 1.4Ghz CPU, 1GB RAM, SFP+)
@AFiB19993 жыл бұрын
I like the specs but does it have plugins like pfsense have? Such as pfblockers, Suricata? Not DNS base blocker. Also manageble IDP, IPS suricata...? Last time a tried years ago, The OS did not have those plugins and the interface was buggy but it might changed. Right?
@felipedofuturo3 жыл бұрын
@@AFiB1999 Currently Mikrotik does DPI (deep packet inspection), but not use signature-based detection, heuristics or machine learning. Having a built in IPS integrated would be great
@dudley810 Жыл бұрын
We are live. Just did a huge network switch. Hitting 1.4 gbps now thanks to this video. 2.5gbe ports on the appliance. A lot more to learn now. Very exciting. thanks so much!!!!
@dudley81011 ай бұрын
Bummer with the pfsense plus announcement.
@blingloss62143 жыл бұрын
Chuck, You are a great teacher. And the love you put into this is amazing. Its effen funnn man. Keep it up. and now, coffe brake! Siiiiiip lol
@shadowwolf57973 жыл бұрын
"It's slow, insecure, and not very fun." Sounds like someone I know :/
@Xert193 жыл бұрын
sounds like every bully in my school lol
@shadowwolf57973 жыл бұрын
@@Xert19 oof. They typically are xD
@TAP7a3 жыл бұрын
Of course I know him, he's me
@daivien67943 жыл бұрын
Just learned this in school. Great recap here; thanks!
@blondeboyzz Жыл бұрын
@networkchuck Can you provide an update if you are still using the same software/hardware or are their better options now?
@nobody8685 Жыл бұрын
The option shown here is actually really cheap for a PfSense router. If you were to build a cheap PC with new components, the most expensive part would be the Network Card which has the network interface for SFP+ or RJ45 (usually), they're usually as expensive as a budget GPU at the moment. Intel network cards are pretty much the best, be they Wi-Fi cards for laptops or ethernet network cards for PC/Servers so if possible, get one of those. Ideally you should get a network card with a minimum of 2 interfaces, one for input (from your ONT) and one for output (which goes in your switch), from your switch you can connect to the internet everything, Smart TVs, Wireless Pots, PCs and so on (depending how you made your network structure around the house/company building). Thing is more than 2x RJ45 or SFP+ ports used at the same time, can overload your router's CPU and the network speed will go down so don't think about replacing the cost for a switch with a multiple port network card, it's not gonna be good. As for the CPU and RAM, well, a Pentium is better than a Celeron and are pretty much the same price so get that (for socket LGA1700, those are the latest gen so it's gonna be perfect) and probably 2 sticks of 4GB RAM are gonna be plenty, 3200 MT/s frequency and 22CL to keep things cheap. Use a mITX motherboard for everything and use the stock cooler, so that everything fits in a Cube Tower case, and you can place the router anywhere, it won't be that big, noisy and ugly sitting somewhere in sight.
@MrCwb533 жыл бұрын
If you’re worried about your WAN IP getting out, you need to be a little tighter on your editing. There are still sections where its clearly visible when the dashboards start sliding around
@dwaynehallows32733 жыл бұрын
??.???.19.128
@zoes173 жыл бұрын
@@dwaynehallows3273 iykyk
@VYR19853 жыл бұрын
Yeah there is a specific timestamp I noticed it as well. Sometime at 1x:x1 it clearly scrolls by unfortunately.
@Nkognito2 жыл бұрын
Yea it openly shows the gateway @35:21
@BrosiahChill2 жыл бұрын
28:13 shows it as well.
@juanangonzalez3993 жыл бұрын
I wonder why you never talked about Mikrotik Routerboard routers. They are amazing.
@sslsistemas91832 жыл бұрын
No consigo mas de 30mbps en wifi
@jeffreyoneil772411 ай бұрын
although I like pfsense, come to find out it does not handle multiple vlans. I tested and setup 3 vlans, and communication did not happen. The only way for pfsense to work is on a single vlan.... too bad it can not route / communicate more then 1
@Cazwhin2 жыл бұрын
Love your videos but the continues "Coffee Break" inserts are annoying. Everything else, you're brilliant!
@mike6715b3 жыл бұрын
What about Mikrotik? I've been working more and more with Mikrotik and its super cool and fun and rewarding to figure out and setup
@WyzerDev3 жыл бұрын
I use Mikrotik "Hex-S" and "hAP ac3" and very hapy
@nicko530i3 жыл бұрын
I have it but it's quite complex, pfSense seems to have a better gui and to be easier for accomplishing basic tasks
@AubsUK3 жыл бұрын
Thanks for this. Other recommendations (including other comments) are for OPNsense as a fork of pfSense. I'm behind an IPv4 CGNAT, but with a /64 IPv6 static allocation. I'd love to see something from you about IPv6 and DHCP/Static/DDNS.
@JohanLindberg3 жыл бұрын
I have also been recommended to choose OPNsense. Is there something that is bad with OPNsense?
@rpsmith3 жыл бұрын
@@JohanLindberg -- Some people like the user interface better but I prefer pfSense's UI. To each his own. Both are great firewalls.
@rithikkrishnan3433 Жыл бұрын
Sometimes this guy is like "get this get that" like we can afford to get this and that...
@willsenecal274111 ай бұрын
Bro the drastic camera angle changes are toooooo much
@Hexatomb11 ай бұрын
This is a nightmare to watch
@yeet--3 жыл бұрын
this is a certified hood classic.
@kermitsnotimpressed56353 жыл бұрын
@Actual_Spirit chifuyu?
@Oxford284033 жыл бұрын
I'm curious how the routing everything through vpn impacts network speed?
@nikstraub15982 жыл бұрын
Negatively
@jorgeffcarvalho5 ай бұрын
Thanks! Just used your video to setup a few things on my pfsense machice including routing all traffic through VPN.
@git-er-dun_LBK_3 ай бұрын
Please allow me to ping you for some knowledge. I have Google Wi-Fi and would like to know if there's a hardware solution with PFsense. My peripherals amount to cameras and TVs in my home. Thanks in advance
@sls81351 Жыл бұрын
Outstanding video. You teaching style is always on point. Would love to see how you integrate your Ubiquiti/Unifi hardware into the mix. Thinking of moving from the UDM-Pro to a Protectli (already have a FW6E) based PFS setup but not quite sure of the best method for getting it to play nice with my current Unifi setup. Thanks again for your great videos!
@seanseawright15012 жыл бұрын
I used to use refurb dell optiplex's with extra NICs to connect branch offices together. I would have loved to see some kind of comparison between PC vs hardware like you used.
@TomCee535 ай бұрын
What he used is a pc in a small box. You could easily use an older pc as long as it has a way to add a second network port and a reasonable amount of ram. Even a pc a few years old should be adequate.
@vrvrvr812 жыл бұрын
Great video. One thing I would love to see (maybe a tip for next video) is how to set it up in a way so you don't bridge the ISP router, so it works as your 1st fw and pfsense is your 2nd fw. Hopefully and theoretically increasing the overall security by introducing different layers. Also bit on zoning (family devices in one zone, NAS in another, your rPi web server in another, etc.) in case the sh** hits the fan, would be lovely.
@briankronberg2 жыл бұрын
You don't want to give your ISP the first level firewall, you want that control yourself. If you need two layers, deploy two firewalls yourself. You will also run into double NAT problems if you don't bridge your ISP router/modem. Plus the whole point here is that your outside firewall should be more powerful. You will be bottlenecking your connection if you don't bridge.
@irlWIKKO7 күн бұрын
I just love how your coffee cup just automagically refills mid-video. There's more to that pfsense wizard than you've initially told us, ey😅
@marcokoegler7502 жыл бұрын
Something to keep in mind. PfSense is not trivial for some smart home scenarios. I had a lot of issues with things like Philips Hue bridges, Home Assistant, etc.. I think this is great if you're accustomed to configuring a Linux firewall and/or have some more advanced network config experience. I don't think this is great for someone who is trying to replace their Netgear all-in-one router/modem/wifi with a couple of port forwards.
@IzzyIkigai2 жыл бұрын
Even when you have all that knowledge - what problem are you really solving by introducing all that complexity?
@uncledeadhead3674 Жыл бұрын
@@IzzyIkigai its just someones home system pretending to be more than it needs to be by far.
@ericesquivel5298 Жыл бұрын
@@uncledeadhead3674 I was thinking of using pfsense on my home network so I could vpn to it from outside and access my resources so like the reverse if what chuck did here. Would using pfsense be a good solution or are there better alternatives?
@uncledeadhead3674 Жыл бұрын
@@ericesquivel5298 youd need to asjust a lot of code to accept your vpn, its alot of work for a dimishing retrun, your home internet likely doesnt have enough room and speed to upload your home resources back to you, rmember your uploading speed from home is normally like not even 10% of the speed of your download speed. Without a reallly fast upload youd bottleneck your home internet connection pretty quickly.
@ericesquivel5298 Жыл бұрын
@@uncledeadhead3674 are there any good alternatives that aren’t so difficult to setup? Or just good alternatives in general
@MotownBatman2 жыл бұрын
This is going to be part of my first feat now that we own a forever home; I want to get this running & figure out Virtualization on TrueNas Scale. Haven't tried myself with a major project since leaving IT in 2k6ish. There's a ton of change, I'm in dire need of major Crash Courses. Keep up the Great Work
@bba4811 ай бұрын
Any update?
@bigbirdwpg Жыл бұрын
Trouble with VPN is, more and more sites will not let you in if they detect VPN.
@thisismychannelleaveit Жыл бұрын
IPs have been blocked by the site you're going too (Netflix and Disney block them relatively quickly). I use Mulvad VPN but it sucks for those sites. I've heard Nord is pretty good since they add to their servers frequently, and this helps stay unblocked on those websites.
@Radenska512 Жыл бұрын
Just finished configurating it thanks to you. Lovely tutorial, professional yet entertaining