Você está na página 1de 38

how to Install pfSense

Install pfSense 2.1.3


CLICK HERE to WATCH the Video Version of this Tutorial

-- Download the liveCD pfSense Installer here.


-- When download is finished, burn the pfSense Installer .
1. Boot from

your

pfSense

2. Select OPTION 1.

Installer is loading now... wait....

installer.

Installer is loading now... wait....

3.Press " I " here to launch the Installer. Press ' I ' on your keyboard before Time (in seconds) runs
out.

4. Accept these settings.

5. Select QUICK/EASY Install

6. OK

7. Wait . .. . . .

8. Select Standard Kernel

9. Wait..... wait..... Reboot.

10. After rebooting, unload/remove the pfSense Installer from your cd/dvd drive.

11. Select OPTION 1 [Boot pfSense]again .

12. Now you need to configure network interfaces. I have 2 network interface installed for this setup.
pfSense recognized it as em0 and em1.

13. Say NO. just type n here and hit enter.

14. Enter the WAN interface name. Note the interface name that pfSense recognized in step 12. It's
em0 and em1. pfSense may recognized it as fxp0 and fxp1 depending on your machine setup.

I'll type em0 as my WAN interface name here.

15. Enter LAN interface name. My LAN interface name should be em1.

16. If you have more than 2 Network interface, type the 3rd name here.. if none, just hit enter to
continue.

17. Review and confirm if all is correct then type Y to proceed.

18. Wait ... wait ....

19. Done. pfSense 2.1.3 installation is successful. :)

WAN em0 192.168.200.211

= IP from your ISP

LAN em1 192.168.1.1

= Default IP of every new install pfSense. (you can change that)

20. Now let's configure our fresh install pfSense via Web Interface.
-----You can leave your pfSense box now and go to your desktop computer.
-----Configure your desktop LAN settings, it should be in the same network of your pfSense to access
the pfSenseWebGUI.
[your desktop ip should be like 192.168.1.2 or 192.168.1.**/24]

21. Note your pfSense LAN IP . For this set up it's 192.168.1.1. You need to remember that for
the

next tutorial.

Install pfSense 2.1.3 part two :

Configure pfSense via WEB GUI

pfsenseWebGUI
Install pfSense 2.1.3 part two

Configure pfSense via WEB GUI

1. Configure you desktop network. Change IP to 192.168.1.7 or 192.168.1.***

or just enable DHCP on your desktop

2. Try to PING your pfSense IP . You should get a reply to continue.

If you get REQUEST TIME OUT, then you should check your Network settings or your IP.

3.Open your Web browser (IE , Chrome , Firefox, etc) and type your pfSense LAN IP on your browser
address bar and hit enter. For this example, my pfSense LAN ip is 192.168.1.1.

4.Click CONTINUE to this website. Its ok and normal.

5. Next is you have to log in. By default, the username is admin and the password is pfsense. You
can change that later.

6. Just click NEXT.

7.Provide a hostname and domain. Click next.

8. Select your Timezone

9. Leave the default settings here (DHCP). Click next

10. Leave the default settings here . Click next.

11. Provide a strong password. This will change the default admin password

12. Click RELOAD

13. Wait.. wait.. wait...

14. Continue to WebConfigurator

15. You are done and will be directed to the dashboard

16. Go to Diagnostic tab. Reboot.

17. Confirm the reboot. Click YES

18. DONE! Good job!

How to block HTTPS websites

How
to block HTTPS websites
pfSense

(e.g. Facebook)

I'll block Facebook website as example ( https )

You can watch the video version of this


tutorial here.
To block HTTPS websites like FACEBOOK , you need to .. .. .
1. PING facebook website and get the IP .

w/

Try to PING www.facebook.com / fb.com / facebook.com .... it will give different results
depending on your location. . . take note of the REPLY FROM ip ... on the picture
above its says REPLY FROM 31.13.68.49 and REPLY FROM 173.252.110.27 .....
DO the above instruction many times... yes... repeat it a lot to make sure that you'll
get all the IPs possible... be patient ok?

You can try different ways and method, just keep in mind that your target
at this point is to GET ALL POSSIBLE IPs of Facebook on your
location.

2.

Create an ALIAS with FB IPs on it

--- On your pfSense WebGUI, go to FIREWALL >> ALIASES


--- Create new alias. Give it a name(FBblock) and description
--- Type is NETWORKs
--- Enter the facebook IPs that you have from STEP 1 above
--- SAVE >> APPLY SETTINGS

3. Make a LAN RULE that will block the IPs on your

Alias

--- Go to FIREWALL >> RULES >> CREATE new rule


--- Action = BLOCK
--- Interface = LAN
--- tcp/ip version = IPV4
--- Protocol = TCP/UDP
--- Destination =
type: SingleHost or Alias
Address: FBblock (Alias name that you created on Step 2. )
--- Save . Apply settings

That's it! As easy as that! You are done. FACEBOOK website should be inaccessible or
blocked by now, even the HTTPS one.
I hope it works on you ;)

Dont forget to SAVE or APPLY SETTINGS every time you make changes. Sometimes you
need also to reboot your pfSense for the changes to take effect.
.
.

"hey WAIT! HOW CAN I MAKE MYSELF ACCESS FACEBOOK AND OTHERS ARE
BLOCKED??!"
Maybe that's your next question... Am I right? or correct? :D ;)
If you want your PC and friends pc to bypass the facebook block rule.. you need
to...
4. Create new alias with the IPs of "GoodPCs" (selected PCs to bypass the block
rule)
--- Create new Alias, give it a name and description
--- Type = HOST
---Add
new
host
and
enter
the
--- Save, Apply Changes

IPs

of

your

"GoodPcs"

5. Go to FIREWALL >>RULES and edit the LAN rule to block FB that you created
earlier on step 3 above...
--- just add on SOURCE = Allow_this_IP (the allias name you created on step 4)
--- check NOT . don't fail on this. go check not (use this option to invert the sense of the
match)

--- That's it. Save. Apply changes. reboot if needed.

You should see like this on your RULE > LAN

"GoodPCs" or the selected IPs that you define on your step4 alias should be able to
access facebook website now.

Você também pode gostar