Skip to content

Commit 0374f37

Browse files
committed
add pfsense
1 parent 396575c commit 0374f37

File tree

3 files changed

+87
-0
lines changed

3 files changed

+87
-0
lines changed

crowdsec-docs/sidebarsUnversioned.js

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -403,6 +403,7 @@ module.exports = {
403403
"integrations/juniper",
404404
"integrations/genericfirewall",
405405
"integrations/remediationcomponent",
406+
"integrations/pfsense",
406407
],
407408
},
408409
],
3.33 MB
Loading
Lines changed: 86 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,86 @@
1+
---
2+
id: pfsense
3+
title: pfSense
4+
---
5+
6+
import ThemedImage from "@theme/ThemedImage";
7+
import useBaseUrl from "@docusaurus/useBaseUrl";
8+
9+
The CrowdSec pfSense integration allows you to block malicious IPs in your pfSense firewall. This guide will walk you through the steps to integrate CrowdSec blocklists with your pfSense firewall.
10+
11+
### Prerequisites
12+
13+
Before you begin, please ensure your pfSense software version supports ingesting blocklists (URL aliases). If you are unsure, please refer to the pfSense documentation or contact pfSense support.
14+
15+
### Steps
16+
17+
We will presume you followed the [Getting Started](integrations/intro.mdx) guide and have created an account on the CrowdSec Console.
18+
19+
Once you are authenticated, you can proceed to the Blocklist tab located on the top menu bar, from there you can select the Integrations sub menu.
20+
21+
Once the page has loaded, you can click the "Connect" button under the pfSense logo.
22+
23+
<ThemedImage
24+
alt="pfSense Integration Card"
25+
sources={{
26+
light: useBaseUrl("/img/console_integrations_pfsense_card_light.png"),
27+
dark: useBaseUrl("/img/console_integrations_pfsense_card_dark.png"),
28+
}}
29+
/>
30+
31+
Doing so will prompt you to name this integration, you can name it anything you like, for example "My Integration ". Note the name should be unique per integration that is tied to your account.
32+
33+
<ThemedImage
34+
alt="pfSense Integration Creation Screen"
35+
sources={{
36+
light: useBaseUrl("/img/console_integrations_creation_light.png"),
37+
dark: useBaseUrl("/img/console_integrations_creation_dark.png"),
38+
}}
39+
/>
40+
41+
Once the integration is generated you will be presented with a credentials screen that will provide you with the necessary information to configure your Mikrotik Router Firewall. This information will **ONLY** be displayed once, so please ensure you copy it down.
42+
43+
<ThemedImage
44+
alt="pfSense Integration Credentials Screen"
45+
sources={{
46+
light: useBaseUrl("/img/console_integrations_checkpoint_credentials_light.png"),
47+
dark: useBaseUrl("/img/console_integrations_checkpoint_credentials_dark.png"),
48+
}}
49+
/>
50+
51+
## pfSense Configuration
52+
53+
To configure the pfSense firewall, we will :
54+
55+
1. Create a URL alias.
56+
:::info
57+
You need to put the username and password provided by the console in the "URL" so it can use basic authentication:
58+
59+
```
60+
https://<username>:<password>@admin.api.crowdsec.net/v1/integrations/<integration_id>/content
61+
```
62+
:::
63+
64+
2. Check the URL alias is working.
65+
3. Create a firewall rule to block the malicious IPs.
66+
67+
![](/img/pfsense.gif)
68+
69+
70+
## Format example
71+
72+
The CrowdSec blocklist will be in plain text format, with one IP address per line. Here is an example of how the blocklist will look:
73+
74+
```
75+
192.168.38.187
76+
192.168.38.186
77+
```
78+
79+
## Contribute to this documentation
80+
81+
Since CrowdSec is a community-driven project, we welcome contributions to this documentation. If you have any instructions or tips that you would like to share with the community, please feel free to open a pull request on our [GitHub repository](https://github.com/crowdsecurity/crowdsec-docs)
82+
83+
## Next Steps
84+
85+
Now that you have integrated CrowdSec integration with your Mikrotik router, you can proceed to the [Blocklist Catalog](console/blocklists/catalog.md) to find what blocklists you can subscribe too.
86+

0 commit comments

Comments
 (0)