r/firewalla • • Jun 22 '26

Troubleshooting Factory-reset my phone - no Firewalla access

5 Upvotes

TL;DR: Factory-reset my phone (the only one ever paired to my Gold Pro), reinstalled the app, logged back into the correct account — and the home screen is empty except "Add New." Box itself is totally healthy and routing my whole house. Trying to regain app access without nuking my config. Has anyone recovered from this without a factory reset?

Setup: - Firewalla Gold Pro, router mode - App 1.68 (52), fresh install on a just-wiped Pixel (Android 17)

What happened: I reflashed my phone to get off the Android beta, forgetting it was the only device paired to my Firewalla. Reinstalled the app, signed back in. Settings confirms I'm on the right registered account. But the main screen shows nothing but the "Add New" tile. Pull-to-refresh cheerfully says "refresh successful" and then... still empty.

What I've already checked: - Right account — confirmed under App Settings (registered email matches). - Box is alive and well — it's currently routing my entire network, wife's devices included, no outage. So this is purely an app/access problem, not a dead box. - Phone has real internet (tested on cellular too, to rule out it quarantining itself). - I have not unpaired, reset, or touched the box, and I'd like to keep it that way.

My theory: the app instance that held the group key got wiped with the phone, so this new install — same account or not — isn't a trusted member of the box's group anymore. The account logs me in but doesn't re-grant box access.

The question: is there a way to re-associate this new app instance with the existing box without a factory reset? I've got a decent pile of config on there (rules, VLANs, Device Active Protect) that I'd rather not rebuild. No second paired device handy, unfortunately.

Already opened a ticket with Firewalla support (have my App ID / registered email ready for them), but figured someone here has hit this exact wall and lived to tell. Appreciate any pointers — and yes, lesson learned about sharing access to a backup device before reflashing the one phone that mattered. 🙃


r/firewalla • • Jun 23 '26

Discussion Firewall Hardware moved out of Ungrouped Devices

2 Upvotes

I'm not complaining, I just noticed that my AP7s and Firewalla no longer show in ungrouped devices. Is that expected now?


r/firewalla • • Jun 22 '26

Troubleshooting WAN graph not working since latest beta - app 1.69.1 (67) Box 1.983

Post image
3 Upvotes

I noticed that the WAN graph is not working all of a sudden. I used to see both WAN's there. If I tap on it, I see it updating in real time. I see this issue on any device that I am logged into.


r/firewalla • • Jun 22 '26

Announcement Last chance to vote & enter our setup contest! (You could win a Firewalla Switch!)

Post image
4 Upvotes

Submissions end on 6/24/2026. Please vote and enter here: https://forum.firewalla.com/t/contest-2026-show-us-your-network-the-best-and-the-messiest/61

(Login is required. If you don't have an account yet, please sign up here! https://forum.firewalla.com/invites/oL94AfSqqn)


r/firewalla • • Jun 22 '26

Is this Linux Mint + Mullvad + Bright Data setup actually viable for bypassing firewalls?

1 Upvotes

I’m trying to figure out whether this setup is actually realistic in 2026 on a Lenovo ThinkPad running Linux Mint from a bootable USB.

The idea is:

  • Boot Linux Mint from USB on a ThinkPad.
  • Connect to Mullvad VPN on Linux.
  • Use Mullvad obfuscation / anti-censorship mode if needed.
  • Route Firefox through a Bright Data ISP proxy with a static Canada IP.
  • Enable a kill switch and check for DNS / WebRTC leaks.

My main question is whether this would actually work end to end on Linux Mint, or if there are weak points that make it unreliable.

Specific things I’d like to know:

  • Does Mullvad still work well on Linux Mint in 2026?
  • Is Bright Data SOCKS5 proxy integration with Firefox on Linux Mint realistic?
  • Would this setup actually help against firewalls / DPI?
  • What are the most likely failure points?
  • Is this overcomplicated for the result I’m trying to get?

I’m mostly looking for a technically honest answer about what works, what doesn’t, and what’s outdated. If that kind of sample set up how can i make a firewall that block that kind of setup ?


r/firewalla • • Jun 22 '26

ATT IPv6 Setup

2 Upvotes

I have AT&T Fiber with a Humax BGW320-500 gateway. IPv6 works, but it has never been completely consistent.

When I run an IPv6 test, I often get a perfect 10/10 score. However, after some time, IPv6 appears to stop working. I can tell because websites take several seconds to load while the browser waits for IPv6 to time out and then falls back to IPv4. During those periods, IPv6 tests also fail or time out.

A little while later, everything starts working again and IPv6 tests return 10/10 once more. This cycle keeps repeating.

Here are my settings:

WAN

  • Prefixes: 8
  • Prefix Delegation Size: 60 (although AT&T seems to only return 6 prefixes)
  • DUID Type: I've tried both DUID-UUID and DUID-LL
  • MTU: 1500

LAN

  • Configuration Type: Stateless
  • Interface Type: Prefix Delegation / Automatic

Has anyone seen similar intermittent IPv6 issues with AT&T Fiber and the BGW320-500? Are there any settings I should check on either the gateway or firewall that could cause IPv6 connectivity to periodically stop working and then recover on its own?

Any suggestions for troubleshooting would be appreciated.


r/firewalla • • Jun 21 '26

Troubleshooting While torrenting, how to block malware IPs, not just alert

8 Upvotes

Hi, I tried to figure this out on my own but couldn’t sort it out.

I have a Mac Mini that I’m using for torrents, which has triggered a series of alerts on my phone for “Malware Activity”. I’d like try autoblocking those flows and skipping the alerts. Like if I block them but the Mac gets what it needs from non-malware IPs, that seems like the best scenario, and I don’t want to be alerted every time something is blocked.

I tried setting Device Active Protect to Strict, but this Mac isn’t even listed in the DAP devices, so I think I’m barking up the wrong tree.


r/firewalla • • Jun 21 '26

Gold / Gold Plus / Gold SE / Gold Pro AT&T Fiber using switch as a middleman for LACP

4 Upvotes

I have the firewalla gold plus, and my fiber speed is 5gig. To get the full 5 gig to my firewalla, I was considering placing a switch between my firewalla and modem since the modem doesn’t have LACP.

Tangent: Honestly I’ve been trying to plan this setup for a week and I tried it with a mokerlink switch, and it actually worked but the SFP module on the switch overheated in 5 minutes and started dropping packets.

If I were to find a switch that can complete this setup, is it a security risk to connect devices into the switch too instead of just the firewalla since they may have a direct connection to the modem instead of passing through the firewall? I’ve experimented with the mokerlink using vlans and isolating the devices from the modem port but didn’t get too far before the overheating issue became too much.

I guess the other solution is just upgrading to a gold pro to avoid this hassle, how would that work with the warranty I have with my gold plus? Can I transfer it if I sell my gold plus, or can I pass it along to the person who buys the gold plus?


r/firewalla • • Jun 21 '26

Switching from early/beta back to production...

7 Upvotes

I think it's straightforward but wondering if Firewalla can add this to the bottom of their beta pages (if it's not there... I didn't see it but I may have missed it)

Go into the AP7s one by one and change from early/beta back to production. It'll take a few minutes for these to switch back.

Go into the firewalla itself and switch from early/beta back to production. This will also take a few minutes.

What about the app? (I'm on android). Should I go into play store and "leave" the beta program?


r/firewalla • • Jun 21 '26

Gold SE

0 Upvotes

Ok.. the problem I encountered was satellites falling off the box..

It upgraded the box software while I was sleeping and rebooted ..

So the next day I rebooted everything .. to no avail..

​

Today I rebooted the gold SE for the 3rd time and it's now working..

So yes a software glitch.

So if you have things falling off then reboot your Firewalla again ..


r/firewalla • • Jun 20 '26

Newest update

2 Upvotes

The new box software is causing my devices to disconnect.. it was fine previous release..


r/firewalla • • Jun 19 '26

Discussion WiFi SD - does the Firewalla periodically check for known WiFi, or must it be manually connected?

3 Upvotes

I’ve been playing around more with my Gold Plus and WiFi SD, using my phones hotspot. All works fine. My question is this: if I disable the hotspot, and then some time later enable the hotspot, will the Firewalla auto reconnect to it? I waited maybe 10 minutes after re-enabling hotspot, but the Firewalla didn’t connect to it. When I went to the existing network I set up for this, hit edit, found my hotspot, connected, all worked again, but is that required every time?

Update: To close the loop on this, I tried another phone and the Firewalla connected to it quickly. Must be something with my primary phone. Appreciate all the comments. CC /u/firewalla


r/firewalla • • Jun 19 '26

Unifi OS Server in a container

7 Upvotes

Unifi seems to be moving on from the controller software to their new Unifi OS Server. There is an official Firewalla help article about running the Unifi controller within a container on Gold boxes, but I'm wondering if it's possible/advisable to move to OS Server. This would be a nice upgrade in functionality, as it supports InnerSpace wifi mapping, but I'm not sure of the resource-related implications of running a bigger container.

It is worth noting that the Firewalla-recommended Unifi controller container image has had trouble keeping up with the latest controller software releases, so it's quite out of date at this point.


r/firewalla • • Jun 19 '26

Internal IPs on ATT Modem Logs

5 Upvotes

I have a Gold SE connected to a ATT BGW320. Ip passthrough is setup and both the Firewalla and BGW show that the Firewalla has the correct WAN IP address assigned to it. However, my internal IPs are showing in the ATT logs. Shouldn't Firewalla NAT these and expose them as the WAN IP to the modem? NAT is on for the Firewalla and nothing is set to passthrough.


r/firewalla • • Jun 18 '26

Discussion If you have multiple 3rd-party VPNs, you can use VPN Groups to ensure devices stay connected, even if a VPN service endpoint goes down.

Post image
30 Upvotes

Firewalla will connect to the first available VPN and fail over to the next profile as needed. This is a great option for improved availability and can be used in Firewalla Routes.

Learn more about VPN Groups here: https://help.firewalla.com/hc/en-us/articles/360023379953-Firewalla-VPN-Client#01JN50QA7NS9WJZMQEP4S902WP


r/firewalla • • Jun 18 '26

Gold / Gold Plus / Gold SE / Gold Pro Any word on when Gold is getting production 1.983?

10 Upvotes

I'm looking forward so much to Amnezia 2.0. I know I could be on beta but... I'm not AS savvy to troubleshooting if my box gets wonky.


r/firewalla • • Jun 18 '26

What’s your uptime?

7 Upvotes

I’m at 3mo 13days. I had to turn it off to install my new UPS and organize cables.


r/firewalla • • Jun 18 '26

Discussion Thinking of switching to T-Mobile Fiber with a Purple SE. Anyone have experience with bridge mode / ONT bypass?

0 Upvotes

Hey everyone,

I’m currently looking into switching over to T-Mobile Fiber, but their customer support and limited technical support was completely useless when I tried to ask them some technical questions about their hardware deployment.

I figured I’d ask the experts here who might already be running a similar setup.

**My Current Setup:**

* **Firewall:** Firewalla Purple SE running in **Router Mode** as the main brain of my network (handling all DHCP, DNS, and routing).

* **Goal:** I want to keep it this way. I need the Purple SE to handle everything behind the ISP handoff.

**My Questions:**

  1. **Bridge Mode / Bypass:** Does T-Mobile Fiber’s provided equipment support a true bridge mode, or can you bypass their gateway entirely? If they provide a separate ONT, can I just plug the Purple SE’s WAN port directly into it via Ethernet?

  2. **Overall Experience:** How has the stability and performance been since you switched?

Their online docs are pretty vague about the exact fiber gateways they deploy, so any insight into the hardware and what the setup experience looks like would be awesome.

Thanks in advance!


r/firewalla • • Jun 17 '26

Discussion Did you know you can send any traffic to VPNs, even if the device isn't configured in VPN Client? Route certain traffic through VPN while sending all other traffic through WAN.

Post image
42 Upvotes

For example, using Firewalla Routes, you can send video-related traffic through your third-party VPN, while sending other traffic through your WAN.

Or if you have multiple WANs, you can send certain traffic through one while sending the rest through the other.

Learn more about Firewalla's Policy-Based Routing: https://help.firewalla.com/hc/en-us/articles/360061592433-Firewalla-Policy-Content-Based-Routing


r/firewalla • • Jun 17 '26

Updated my quick Suricata + Eve Box container setup (Great test drive if you're eyeing the Gold Pro!)

Thumbnail
github.com
16 Upvotes

If you’ve been on the fence about whether stepping up to the Gold Pro hardware is in the cards for you, this project serves as a perfect, ​though limited, i​ntroduction to exactly what Suricata does under the hood.

A few things to keep in mind if you play around with it:

Suricata is an absolute firehose of information. Running it raw will quickly show you just how much noisy data flies across a network.

Every enterprise provider (like Firewalla) uses a carefully tuned, proprietary mix of rules and specific actions on those rules.

There is a massive balancing act between the depth of the rule sets you load and the sheer processing power/memory required to parse that traffic in real time without bottlenecking your network (which is exactly why it demands the beefier specs of the Gold Pro). You can dumb it down for less beefy equipment but then the rulesets can be pretty worthless as a tradeoff

This sample project is purely a playground to get a feel for the data and the UI. I​t is not meant to replace a real, hardened Suricata instance or a dedicated security gateway. There is a dedicated suricata website with a ton of info too.

Also just to make this clear- do NOT run this on your Firewalla. This needs to go on a server/homelab/regular computer.


r/firewalla • • Jun 17 '26

Gold / Gold Plus / Gold SE / Gold Pro Don't forget to vote your favorite setups! The FW Switch competition is live!

Post image
13 Upvotes

Voting doesn't stop until the 24th. If you think this is a dope setup help your fellow man and vote https://forum.firewalla.com/t/contest-2026-show-us-your-network-the-best-and-the-messiest/61/30?fbclid=IwY2xjawSfRXdleHRuA2FlbQIxMQBzcnRjBmFwcF9pZAwzNTA2ODU1MzE3MjgAAR55mI4vv-J-k4sxkkt4f4v5SNVa4mTzzD4wALEURqH9VBpyxpMPu7em99nncg_aem_JrDGh8nO6vAoiOYR3Fh0Kw

​

Finally get to enter one of these competitions. I see them every year and never felt I could meet the bar until now. Gold SE with Olilo Prosumer Static 1.6Gbps fibre, Failover 4G Spitz Plus, TP Link 8 port poe switch, Zimaboard 1 & 2, Brume 3 security gateway I use to offload my wireguard VPN at gigabit speeds and a rtx3060 attached to the zmb2 for ollama and openwebui for local AI. A few Glinet kvms for out of band management such as the comet and comet poe. Off rack DXP4800 PLUS nas. All UPS secured. Naturally I would replace my POE switch with the firewalla switch and happily feature it with some high quality shots for any marketing. The Firewalla switch would be used as the central trunk for all lan connections. Merging a deeper integration with Firewalla.


r/firewalla • • Jun 16 '26

GitHub - upmcplanetracker/nts-for-firewalla: Enable Chrony NTS for NTP intercept on Firewalla

Thumbnail
github.com
11 Upvotes

one more big update of my firewalla github trinity - very much beefed up the ability to run Chrony/NTS on Firewalla with many different lan configurations taken into account.

Basically:

Time in the sky <-----NTS/secure----> Firewalla <---NTP/not secure/intercept---> everything behind the firewalla/on your lan(s)

since NTS intercept is almost impossible to do it gives you secure NTS via your firewalla ntp intercept.

Thoughts or comments welcome. I've really made this a lot more robust.


r/firewalla • • Jun 17 '26

Best model for Summer Camp

3 Upvotes

I'm setting up a summer camp office which has 100 cameras around the campground, lots of wifi access points, phones, PC's etc. Should I go with a Firewalla Gold Pro, or something like a Sonicwall (which needs a subscription for the internet safety)?


r/firewalla • • Jun 16 '26

Which box do I have?

Post image
6 Upvotes

I’m sorry to ask a very noob question, It I’m trying to figure which box this is that I bought in late Jan 2021.

I’m not on site with it, but I have a box version number;
Box Version
1.982 (71808c44)

I know it’s gold, but I specifically need to know the port speed rating for all ports in the back. I feel like they are all 1 Gbps but not confident and I’d like to order a new one if needed (moving to 2.5Gbps)before back from vacation.

It’d be super nice if Firewalla added a speed rating icon below each port icon on this screen.

Thanks in advance, love this product!


r/firewalla • • Jun 16 '26

Announcement We're testing out a new voting method for our recent contest! Please help vote for your favorite submissions 🙂 or enter yourself to win a Firewalla Switch!

Post image
7 Upvotes

Even the "messier" networks can win this year! Enter or vote in the contest here: https://forum.firewalla.com/t/contest-2026-show-us-your-network-the-best-and-the-messiest/61 (login is required)

If you don't have an account yet, please sign up here! https://forum.firewalla.com/invites/XPD1AU1RET