Тёмный

pfSense setup with HA Proxy 

OMG The Cloud!
Подписаться 5 тыс.
Просмотров 27 тыс.
50% 1

Опубликовано:

 

15 сен 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 37   
@TuckerOlson13
@TuckerOlson13 Год назад
Thank you! I watched multiple other tutorials yesterday afternoon and spent all night reading different forums in an attempt to troubleshoot where I was going wrong. Those tutorials were leaving out critical steps, as well as providing incorrect information. I followed this video, as well as your tutorial for the pfSense ACME Let's Encrypt plugin, and it worked to perfection.
@OMGTheCloud
@OMGTheCloud Год назад
Great to hear!
@bobjameson1463
@bobjameson1463 2 года назад
Very nice. No fluff. Quick and straightforward. Best in RU-vid in setting up pfSense and HAProxy.
@MrAncoor
@MrAncoor Год назад
Thank you... very good. A hint to everyone one else following tutorial without background checking what things actually are.... Don't use "pfctl -d" if you connected with OpenVPN to the router, as this turns off the packet filtering and also NAT... ;-) (Anyway, it opened up the pfsense to be reachable from outside and I managed to login and reboot pfSense)
@pbear06
@pbear06 3 года назад
Thank you ! I've watched different videos, but yours is definitely the most simple how-to and the best explained without useless blahblah My different servers are now reachable
@josephdelvecchio235
@josephdelvecchio235 Год назад
Great videos. Clear, concise and to the point. I'm trying to add one additional component to the setup. Was wondering if you could point me in the right direction. I use a Synology NAS to host a few web applications, ie. photos, note station, file station, etc. These are all accessible via subdirectories of the main site. How would I go about forwarding a subdomain to a subdirectory of that subdomain or another subdomain? Would I use frontend or backend and what would the ACL and action look like? Thanks so much.
@OMGTheCloud
@OMGTheCloud Год назад
Apologies that I cannot give you a direct answer, as I don't have this particular lab environment set up at the moment. However, it certainly can be done, as I recall having some RegEx based redirects for subdirectories, routing to totally different backend servers.
@MrFalcon79
@MrFalcon79 19 дней назад
how to do it with two subdomains. the DNS created in Bluehost, and the two websites (subdomains) hosted on local servers ? any clue plz
@OMGTheCloud
@OMGTheCloud 18 дней назад
Certainly can do that with subdomains and hostname matching. For what you want to accomplish, would this be something like: website1.example.com website2.example.com or example.com/website1 example.com/website2 ?
@MrFalcon79
@MrFalcon79 18 дней назад
@@OMGTheCloud man, u r just amazing, thanx a looooooooot it worked just fine :) thnx bro for ur efforts
@infinityservicessrl
@infinityservicessrl 2 года назад
Hi I want to make a rule or an condition to forward to port 443 to specific domain, but I have an issue because I want to forward without certification (cert) in the other local ip I have a valid cert but they both crashed. So I don’t find a way
@kenzeng2
@kenzeng2 2 года назад
Does pfsense HAproxy support DNS based redirection to internal servers for multiple domain names from the same port 80 and 443?
@OMGTheCloud
@OMGTheCloud 2 года назад
Yep! HA Proxy is the service you’re looking for. Check out this quick guide I made for setting it up, including free auto-renewing Lets Encrypt SSL certificates! ru-vid.com/video/%D0%B2%D0%B8%D0%B4%D0%B5%D0%BE-KkRHqxbWvAM.html
@jsdraven
@jsdraven 3 года назад
instead of switching the port on the firewall you could setup an VIP (Firewall -> Virtual IPs) and then within the HAProxy bind to it. you wont setup rules that target the firewall. you could then just NAT 443 to the VIP
@OMGTheCloud
@OMGTheCloud 3 года назад
Thanks for mentioning this, I will test this out! I like the idea of using a VIP instead!
@DirellAlexander
@DirellAlexander Год назад
the only way mine works is by using nat in firewall option. just using the firewall section wont allow the site to connect
@ranjithgreen
@ranjithgreen 3 года назад
Thank You , great job
@ranjithgreen
@ranjithgreen 3 года назад
i am facing issue i want to use my domain without 'www' i tried but not resolved and shows (503 Service Unavailable No server is available to handle this request.) i need help in this with Haproxy and domain configuration, can u show me the video ref for redirecting non www to www once again thank you,
@lepphanna7901
@lepphanna7901 21 день назад
Great job
@OMGTheCloud
@OMGTheCloud 20 дней назад
Thanks!
@georgelza
@georgelza 2 года назад
you mention other videos, can you post links to them please, like your style, any chance you can show this integrating with Cloudflare...
@OMGTheCloud
@OMGTheCloud 2 года назад
Sure! Do you mean Cloudflare as a secure and private DNS provider? If so, I’m referring to this video: ru-vid.com/video/%D0%B2%D0%B8%D0%B4%D0%B5%D0%BE--uzNMospB5I.html
@georgelza
@georgelza 2 года назад
forgot to mention, as I'm running a dynamic IP, already configured pfSense to update Cloudflare.
@georgelza
@georgelza 2 года назад
... know I'm asking allot, but do think this is very much in line with a good way to configure all and expose a HA deployment (which in my case is also used to arm/disarm my alarm system)
@rr_islam
@rr_islam 2 месяца назад
Hello sir, Lets say I have SOCKS5 Proxy from a third party, which incldes, IP, PORT, USERNAME AND PASSWORD. so, How to setup this socks5 with ha proxy? Is it possible? or if not, can you suggest me something else? thank you.
@OMGTheCloud
@OMGTheCloud 2 месяца назад
Great question! Typically socks5 proxy is for outbound web traffic originating from inside your network. HA Proxy is allowing you to serve up web services to the Internet, and should be fully separate from your socks5 proxy
@rr_islam
@rr_islam 2 месяца назад
@@OMGTheCloud can you suggest me alternative? And I will be glad if you make a video about it for pfsense.
@OMGTheCloud
@OMGTheCloud 2 месяца назад
Can you describe your goals and your setup a bit further? There are several good paths forward
@HungtunREVO
@HungtunREVO 2 года назад
I was flow all your video about pfsense. I have question please help me out. I have two vm, I want to ssh to this VM without using openVPN (it's mean I want to ssh via WAN IP, I want to connect ssh via haproxy). Can you please help me, because I was research all day but can not ssh :((
@OMGTheCloud
@OMGTheCloud 2 года назад
HAProxy wouldn't be needed, this is just proxying web traffic. You could set up a NAT to forward port 22/TCP to the server you want to SSH to. I recommend some security measures if you're going to expose SSH to the Internet (bots will start hammering it pretty quickly) * If at all possible, scope the allowed IPs to a particular public IP address (not always possible) * Ensure you have a strong password on all SSH-enabled accounts on the box you're exposing * Even better, enforce RSA key-pair authentication.
@HungtunREVO
@HungtunREVO 2 года назад
@@OMGTheCloud thanks to you for reply, So APPRECIATE
@jonathan.sullivan
@jonathan.sullivan 3 года назад
Waiting on the follow up :)
@OMGTheCloud
@OMGTheCloud 3 года назад
Follow-up for this is coming out Monday! It’s where my pfSense series and Docker container series cross over, as the example web server will be a containerized sample Wordpress + Database environment, behind HA Proxy... video releases at 6am Pacific time!
@mattiaippolito1625
@mattiaippolito1625 3 года назад
Sorry...but the http to https redirect rule doesn’t work...from my lan or my OpenVPN connection if I type ....I still get the internal http website version and not the https....
@DirellAlexander
@DirellAlexander Год назад
but thanks great tutorial
@lepphanna7901
@lepphanna7901 21 день назад
Далее
pfSense Load Balancing and Lets Encrypt Certs
6:19
Просмотров 6 тыс.
pfsense HA Proxy Troubleshooting
14:22
Просмотров 32 тыс.
How To Setup An Caddy Server - The Ultimate Server
35:11
How To Setup ACME SSL with HAProxy on PFSense
37:18
Просмотров 25 тыс.
Proxy vs Reverse Proxy (Real-world Examples)
5:17
Просмотров 558 тыс.
pfsense + HAProxy + Let's Encrypt Howto
25:04
Просмотров 21 тыс.