pfSense Setup

Video Statistics and Information

Video
Captions Word Cloud
Reddit Comments
Captions
hi I'm Willie and welcome to my channel this is the first video of mini on PF sense this is just one of the other firewall brands that we are going to be dealing with and pfSense is actually a distro or they do sell hardware appliances you can buy now so if you want to follow along I'm going to show you how we're going to set up our lab that's what this first video is all about we're going to set the lab up and it will prepare us for videos in the future so the first thing that you're going to need is you're going to need pfSense and i'm going to put the links to everything that we're using down there and in the description so the website is HTTP colon slash slash pfSense org you're going to cruise over here you're going to go to the download and it is going to ask you what you want to download so you can we're going to do it and install and we're going to do an AMD 64 and then it's going to ask us do we want the embedded the USB mems dick or the ISO CD image and we're going to select the ISO the CD image and then it's going to ask us what mirror we want to download it from we're going to go ahead and choose new york city and go to download and so you can see this is 297 megabytes it's got about 21 seconds left the next component to this that we're going to need is Oracle VirtualBox and the website for that is HTTP colon slash slash wwl box org once again I will put that link in the description and as of the recording of this video we are on version 5.1 so we will begin the download on that I am on Windows 10 if you're on OSX or Linux or Solaris you would choose your your flavor there I'm going to go to Windows and that download is 118 megabytes and it's got about 25 seconds left now let's talk about the computer that using you don't need it like a server grade machine to do this to follow along with these labs a semi-decent machine will allow you to get your hands on this and we're going to build a lab out a couple ways first we are going to have a virtualized pfsense box and it's going to have a bridged adapter to our wired network which will actually run over the same wire as the one that's physically plugged into this computer and then we're going to have an internal neck that will then connect to another VM that we are going to spin up and use so the specs for the PC that I'm reach I'm actually recording this and I'm going to be running these VMs it's an Asus all-in-one touchscreen so when you see the videos where everybody's like you need to get a stylus or your handwriting sucks or whatever is actually me touching the screen but it's a it's an Intel Core i3 with eight gigs of RAM and 64-bit windows it's got a 1-1 terabyte hard drive so it's not an overly powerful machine and it's going to it's going to do this you know hands down you you won't have any problems if you have this machine and you're going to see that so what we're going to do is we'll spin up the the PF sense in this video and then and what actually what we'll do real quick is we'll go out to a boon too and we will also grab the live CD for the latest version of Ubuntu because that's the operating system that we're going to use so we'll go over to HTTP colon slash slash WWE boon to comm also you'll notice that every site that I've gone to has the green padlock in Chrome everybody is forcing HTTPS and that is awesome if you frequent a website and they are not forcing HTTPS yet contact them find out why they are not forcing a secure connection all right so we're on Ubuntu comm we're going to go to download and then desktop and as of the recording of this video the latest desktop version is 16.0 4.1 LTS that may not be the actual latest like the bleeding edge or even like the October release but this is the the LTS the long-term support release so that's the one that we're going to grab they're going to ask if you want to donate if you want to support feel free to do that I have donated in the past so this time I am just going to go to the download and any open source project that asks for door date for donations if you can't if they're legitimate and you can donate something time effort money whatever a lot of those projects really appreciate that and they need it and that's you know kind of helps keep that project growing and especially if it's something that you use all the time it's a fantastic cause so you can see we've got all of our our downloads going at VirtualBox and pfsense are actually done so that's fantastic so the first thing we will do is we are going to go ahead and launch the VirtualBox install so we'll go ahead and click on that and we get the welcome to the Oracle VM VirtualBox 5.1.1 to setup wizard we'll go to next we're just going to leave the default options here and click Next it's an asked us do we want to associate certain files with the program do we want to create a shortcut in the quick launch do we want to create a shortcut on the desktop create start mentoring menu entries yes we're going to let it do all that and then it also tells you you know there's a warning it's going to solve some some networking components and it will temporarily disconnect you from your network so if you're doing something mission-critical with this machine now is a good time to pause and say okay I can do this part later I'm going to go ahead and proceed it may it may cancel my download but will restart that it's going to come up and ask if it's a okay to install the hardware that is coming with this and we're going to tell it to go ahead and install and the setup wizard is complete and do we want to start oracle virtualbox after installation we'll go ahead and keep that checked and we'll start VirtualBox notice that VirtualBox that actually opened up behind the window so I was like waiting and I'm like you know I'm like what is going on and then it was there if I haven't told you this by the way pfSense if i didn't tell you this in the beginning of the video is super popular and in fact on there the front of their website they tell you that it's rapidly becoming the world's most popular open source network security solution I don't think I can argue with that statement in later series we are going to look at like vie OS we're going to look at extreme OS we're going to look at Indian firewall we're going to look at some people wanted us to look at sofa so we're probably going to look at that so we're going to look at multiple you know flavors and distributions and and even other hardware devices but pfsense is one that you will see over and over and over again it's very popular has a huge following in one of the co-founders and lead developer developers of pfSense actually left pfSense and now works for ubiquity just a little tidbit there so now that our VirtualBox is open let's go ahead and create the pfSense machine so we're going to create a new VM and we'll call it PF sense and we are going to select bsd and we'll do freebsd 64-bit by the way if you think I didn't do that right let me know anyway we're going to go next and we've got eight gigs of RAM Windows 10 is chewing a 54% about four gigs but I am recording video this is a VM it's only going to have one machine behind it because we're going to learn the concepts you know things you can take put them in a physical appliance or any sxi server and scale it out so I think we'll go ahead and leave it at a gig of ram and we're going to create a virtual hard drive now we're going to leave it as a video and we'll do it we'll make it so it's dynamically allocated if we we do that it doesn't take the entire size that we specify for the hard drive and allocate it it's kind of a flat file or an empty file that expands as needed so that's what we're going to do and it recommended 16 gig 8 gig so go ahead and create that so the virtual machine has been created so now we need to modify our network and then actually install the operating systems so the first thing we're going to do is we're going to click on settings with the pfSense virtual machine highlighted you're going to go down to let's do this first let's go to storage and then you see this little CD icon right here you're going to click on that and it's going to show us our optical drive but what we're going to do is we're going to click this little CD icon over here and we are going to choose virtual optical disk drive and what we're going to do is we are going to select that file that we downloaded which is the PF sense - see - 2.3 2 - release - AMD 64 ISO then we're going to scroll down here to network and we're going to create an additional network adapter but for first what we're going to do adapter number one is going to be bridged so what that's going to do is it's actually going to share the this network adapter with the wired connection that is in this machine and if you've only got one wired connection that you're doing this with or one network connection then it should likely select select that bridged adapter that you want to use right here you can see if I drop this down it's got my wireless LAN that's in this machine but this is the one that I want because it's the hard wired connection we're going to leave everything the way it is under advanced we're going to go over to adapter number two we're going to enable the adapter we are going to make it an internal network and the name on this guy is we'll call this the PF sense network and once again we'll leave everything default under advanced and we'll go ahead and click OK so now we've set up our network adapters and we've mounted the ISO so we're going to go ahead and we're going to power this guy on so we'll right click on there and go to start or you can come up here and click start and what's going to happen it's going to load this virtual machine in just a second oh that's cute they've got a a Happy New Year Merry Christmas thing so when this comes up you'll see at the top of the window it says you have the auto capture keyboard turned on this will cause the virtual machine to automatically capture the keyboard and we'll go ahead and close that so to release control of this window what we can do is down here where it says right control that means you hit the right control button on your keyboard if the keyboard and mouse is captured it will release that now what had what happened in the background pfSense that that disk that we had mounted went ahead and did an auto boot and we were probably going to let it do that anyway and if we don't do anything here you can see that the Installer is going to be invoked so we're going to go ahead and let it do that so the first screen that we've got so recap that real quick if you started the machine just let it boot you'll end up at this screen you'll be ok the first thing we're going to do is go down to accept these settings and we are going to do a quick slash easy install so we'll hit enter on that it'll say easy install will automatically install without asking any questions that's fine it'll automatically partition the disk do everything we need to do go ahead and click OK and it's going to go ahead and install now it's going to say you may wish to install a custom kernel we're just going to say standard kernel hit enter ok it says this machine is about to be shut down after the machine has reached its shutdown state you may remove the CD from the cd-rom drive tray and press ENTER to reboot the hard drive it doesn't it it's not differentiating between being in this virtual machine in a physical box at this point so we'll go ahead and tell it to reboot default username is admin and default password is PF sense you need to remember to change that don't use vendor defaults the installation yeah so we forgot to eject the virtual disk so we're going to go ahead and shut this down real quick okay so the shut the shut down went through so we'll right-click on it go to settings go down here to storage and we will remove the disk from the virtual drive we'll click OK go ahead start our virtual machine back up and when it comes up it should boot into our pfSense installation there goes default is f1 so this is going to go ahead and boot and then auto boot will take over if we don't specify any other options okay so we're booted up into our installation and as you can see the way in interface right here is em0 and it has grabbed an IP address from the physical network that is sharing with this host machine and so we want to change that because that needs to be 192 once the a 1.2 and then we will assign a land address so the first thing we're going to do is we're going to go to number 2 for set interface IP address and we want to select 1 which is the way in and do we want to configure IP version 4 via DHCP no so we're going to enter the new IP address 192 168 1 dot 2 then it's going to ask us for a subnet mask and here we have to enter this as a bit count so we need to enter 24 because we're going to it's a Class C 24 and it says for an enter the new way in IP version 4 up stream gateway address so how is that when getting out to the internet so that's 192 168 dot one dot one do we want to configure IP version 6 on LAN no and we are not going to specify an IP version 6 at this point so we just hit enter do you want to revert to HTTP as the web configurator protocol no okay the new IP version 4 wine address has been set to one ninety two dot one sixty eight dot one dot two that's fantastic so now the next thing we're going to do is we're going to set a land address so that way we can connect a virtual machine to it and start configuring pfsense so the next thing that we're going to do as we are going to hit number two again and we are going to this time select number two for the land which is e e m0 or m1 sorry and it says enter the new land IP version 4 so this is going to be entirely new subnet but we are hiding behind this virtual machine RPF sense installations so we're going to make this 192 dot 168 that 55.1 it wants to know the bits again we'll go ahead and we're only going to have one machine behind this we could do 24 but if we do 29 that should make it even smaller do you know how many IP addresses that will give us let's see if you can figure that part out and since this is al and press ENTER and we're not going to give it an IP version 6 address do we want to enable the DHCP server on the land and the answer that is yes we do enter the start address of the IP version 4 client address range it's going to be 192 dot 168 that 55.2 and the end range so we're only going to have one machine here right so we will say 192 dot 168 that 55 maybe we'll have more machines we'll see we'll see how this shakes out 50 5.4 do you want to revert to http as the web configure a protocol no and so now you can see that our IP version 4 land address has been set to 192 168 55.1 slash 29 and it tells us we can now access the web configurator by opening the following URL in our web browser HTTP colon slash slash one ninety two dot one sixty eight dot 55.1 press ENTER to continue so we press Enter it brings us back to the the console here and so now what we're going to do is we are going to go ahead and we're going to fire up this other virtual machine so we'll go ahead and create this we're not actually going to install Kubuntu yet we're just going to run it as a live CD real quick so we can get into this web configurator and reset the password and all that good stuff so what we're going to do is we're going to release the mouse we're going to minimize our pfSense and we're going to do a new VM we're going to call this boon to desktop and it's funny that Oracle knew that as soon as we type - boom - did you see this and switched it to Linux in Ubuntu 64-bit that's a it's fantastic we're just going to give this guy a gig a ram and we'll create a hard disk and it'll be a VDI dynamic eight gigs but we are not going to install we're going to go to the settings on this machine we're going to go down here to first thing we'll do is go to storage we'll click on our CD icon we'll come over here and we will select the ubuntu 16.04 dot one - desktop - AMD 64 dot iso and then what we're going to do is we're going to go down here to network and adapter number one where it says enable network adapter attach to NAT know you're going to select internal network and then that pfSense network we created you're going to select that so now it's going to connect to that pfsense network that 192 168 55.0 / 29 network it's going to grab an IP address and we should be able to get to the web configurator so we are going to go ahead and we are going to do a normal start we'll have to fix that but we came up welcome we're going to I'm selecting English because I can't speak any of these other languages and then I'm going to click try Ubuntu and so this will not run through the installer at this point it's going to run it just as a live CD did you figure out what the subnet mask was for a cider / 29 yet hmm I'll show you in a minute if if you didn't come up with it so we go to HTTP colon slash slash one ninety two dot one sixty eight dot 55.1 it's going to come up tell us our connections not secure we're going to click advanced add exception uncheck the permanently store this exception confirm the security exception and now we have a login to pfSense screen and if you remember the default username and password is admin and then PF sense and i never want to remember passwords so did you get that cider notation yet not yet okay so if we bring up click on this and we go to turn terminal there are other shortcuts to get to terminals so don't if you know those don't get all upset that I didn't use another shortcut I wanted to show people a nice easy way to search the machine to come up with terminal so we'll do an ifconfig and there it is subnet mask 255 255 255 at 248 so how many usable IP addresses does that give us in that range well you can't typically use the first or the last in this so just as a general rule here or as a good rule how many usable IPs do we have so we can go to 254 think about it think about it put the answer down there in the comments so you can see that we grab that we can ping 192 dot 168 55 at 1 which is our obviously we're logged into the web configurator but then we can also ping 1.1 which is the USG we should be able to ping 66.5 which is our cloud key so we've got full connectivity so we're into our interface we used the default admin pfSense and it's going to walk us through this wizard so while pfSense is a open source and while it is free you can get paid subscriptions I do not have a paid subscription for support so all right so on this screen this is where we're going to set general parameters hostname Y break tradition lab - PF sense that sounds good to me domain will call this lab dot o x5 comm primary DNS server we will set this as 192 1 C 866 dot 10 and then this one we will set as Google and then we can allow DNS servers to be overridden by DHCP on the LAN time server hostname I usually use ntp at UIUC dot edu that's the University of Illinois at Urbana Champaign Champaign Urbana and then select your proper timezone configure the way in interface and let's see we're not going to change any of these options we already changed the way in address through the console so we're going to leave all of this the same we'll just leave that default we're going to leave this land set up the same ok admin password so on this screen this is where you will set the admin password which will be used to access this webgui and also SSH if enabled do not use PF sense that's a horrible idea choose a passphrase something that you're not going to forget but some of that somebody is not easily going to guess and we'll go ahead and hit reload it says a reload is in progress please wait the wizard will redirect to the next step congratulations PF sense is now configured please consider contributing back to the project click here to continue on to the pfSense web configurator click here to purchase services we're going to go ahead and click here to continue you're going to see system information on this first page and this thing is scaled down because of the resolution that I'm recording and only recording in 720 it may have to start scaling it at the full screen so the web configurator has actually scaled down to to fit the screen hey weather.gov pops up so we will check out - Aria Illinois see what the weather is doing there a balmy three degrees of the low of zero responsive is the word that I was thinking of so the the pfSense web GUI web GUI is responsive so probably work really well from an iPad which is fantastic so we're good to go we've laid all the groundwork for our future videos of pfSense I will probably either bump up the RAM and this is a boon to desktop or maybe switch this out for like a DSL a damn small Linux or something like that you know if you've got suggestions you know I might even throw a you know who knows what I'm going to throw in there maybe I'll surprise you but anyway if you liked the video please give me a thumbs up please subscribe please comment and share and we'll see you in the next video
Info
Channel: Willie Howe
Views: 118,523
Rating: undefined out of 5
Keywords: pfsense, pfsense setup, pfsence, pfsence setup, how to install pfsense, setup a pfsense lab, build a pfsense lab, how to install pfsence, setup a pfsence lab, build a pfsence lab, pfsense firewall, pfsence firewall, pfcents, configuring pfsense, configuring pfsence, configuring pfcents, freebsd firewall, monowall, crosstalk solutions, ubiquity firewall, ubiquiti firewall, oracle virtualbox, installing virtualbox, virtuabox, installing virtuabox, virtual ubuntu desktop
Id: D2wjR3pCwrU
Channel Id: undefined
Length: 30min 2sec (1802 seconds)
Published: Fri Jan 06 2017
Related Videos
Note
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.