Recent posts

#1
25.7, 25.10 Series / Re: new device in network show...
Last post by bongo - Today at 05:18:13 PM
some additional information:
when checking Interfaces: Diagnostics: ARP Table, i realize that all new devices are missing, although i ticked the ARP Table Static Entry box when registering in DHCPv4.

#2
25.7, 25.10 Series / new device in network shows as...
Last post by bongo - Today at 05:07:38 PM
i added some new devices (shelly) to my network. there are already quite a few of these devices running for a long time without issues.
so the new devices are connected exactly the same way as the old ones are and all configuration is the same.
the new devices connect to the network without issues and get the IP address as configured in opnsense under services DHCPv4, but when checking the leases, they all show as 'offline'.
as long as i am within the same LAN as the devices (LAN1), i can access them without any problems, but when i try to access them from my other LAN (LAN2) through opnsense, they are not accessible (this works fine for all other shelly devices in LAN1). i am quite sure that my configuration is correct, as i just added the IPs of the new devices to the existing group.
with packet capture on the interface, i can see that the packets to access the devices, sent from LAN2, pass the interface of LAN2 but never appear on LAN1.
the 2nd issue is, that the new devices try to access shelly cloud to do a firmware update, but they are not able to connect to the internet.
i 1st thought that i have some kind of routing issue on opnsense, but now i'm qite sure that the reason for the issues is, that opnsense thinks that the devices are offline (as shown in the leases list of DHCPv4).
so the question is: why does opnsense think that these devices, it gives an IP address to, are offline?
btw: it's not just 1 shelly device. i have this issue with several devices of different type, so i do not assume a defective shelly.
thank you for any advice on solving the issue!

my actual version is OPNsense 25.7.11_9-amd64.
#3
German - Deutsch / Re: NVM subsystem reliability ...
Last post by stulpinger - Today at 05:03:37 PM
Aktueller Stand:

Zenarmor ist der Schuldige

Datenbank für Reporting von Elasticsearch auf SQLite umgestellt - keine Besserung

Zenarmor-Engine gestoppt + BYPASS (keine Ahnung ob beides notwendig)

Data Units written < 4GB
Hochrechnung auf ein Jahr ca. 1.46 TB

1) Elasticsearch auf extern auslagern, benötigt subscrition, die $99 hätte ich noch
zB Zenarmor Home Edition (non commercial use), aber
This option is only available for Zenarmor Business plans ???

2) OPNsense Neuinstallation + Einspielen der config

oder als letzten Schritt, falls bei 2) keine Besserung

3) OPNsense Neuinstallation + Neukonfiguration

Könnte ohne Zenarmor auch leben, aber es blockt doch einiges
zB bei diversen "freien" Spielen am iPad, iPhone keine Werbung

oder natürlich

4) Zenarmor deinstallieren + Neuinstallation, einen Versuch wäre es wert

gsd Single, Wochenende dürfte hiermit verplant sein

#4
Hello, we can offer something soon. To track this better, could you maybe open an issue here:

https://github.com/opnsense/ports/issues

Our port is located here:

https://github.com/opnsense/ports/tree/master/opnsense/dnsmasq
#5
26.1 Series / Re: Unbound: dynamic hostname ...
Last post by Patrick M. Hausen - Today at 04:50:07 PM
Quote from: Monviech (Cedrik) on Today at 04:20:45 PMThere isnt much time spent with dnsmasq anymore it has been stable and quiet since a while now. So all efforts can go back to KEA to somehow improve it more.

That's great! Thanks!
#7
No the GUI just didn't want to have two seperate input masks for IPv4 and IPv6, thats why there is input validation taking care of it.

Our input validation file is very large, it's unlikely to create a wrong configuration.

Since Dnsmasq is not as cleanly separated in concerns the GUI reflects that too (some like it, some dislike it).

https://github.com/opnsense/core/blob/8a52f03b37542ff6978afc4a5edef6428b9563ef/src/opnsense/mvc/app/models/OPNsense/Dnsmasq/Dnsmasq.php#L362
#8
26.1 Series / Re: Unbound: dynamic hostname ...
Last post by Patrick M. Hausen - Today at 04:28:05 PM
Quote from: nero355 on Today at 04:27:08 PMAlso kind of expected you to be an UBPorts Ubuntu Touch or Jolla SailFish user considering your standpoints on privacy ?!

FreeBSD on servers, Mac OS on the desktop.
#9
26.1 Series / Re: Unbound: dynamic hostname ...
Last post by nero355 - Today at 04:27:08 PM
Quote from: Patrick M. Hausen on Today at 04:01:23 PMI love that it's written in Golang.
Anything is better than Python... Really having a beef with that one the last couple of years ^_^

QuoteI love the paid (but cheap) mobile IOS app.
Don't need an app when the browser view adjusts itself accordingly :)

Also kind of expected you to be an UBPorts Ubuntu Touch or Jolla SailFish user considering your standpoints on privacy ?!

QuoteMe do me - you do you 🙂
Ofcourse! 🙂
#10
General Discussion / Re: How to use DHCP options in...
Last post by nero355 - Today at 04:21:45 PM
Have a look at this DNSmasqd examples config file : https://github.com/imp/dnsmasq/blob/master/dnsmasq.conf.example

And start at line 328 for DHCP Option related configuration.

As you can see each option needs to be put on a new line so you can't have multiple options on the same line !!
You can however have multiple values for the same option on the same line.

My guess is that the OPNsense webGUI tries to simulate that logic too, but maybe not the way you are expecting it to do :)