Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - MagnaPilot

#1
Thank you, as requested, I've moved it to the "Core" issues group.

https://github.com/opnsense/core/issues/2732
#2
18.7 Legacy Series / "Allowed" MAC address issue resolved?
September 17, 2018, 09:46:26 PM
Just curious, as it has been a huge issue I've been trying to track down. 

Does anyone know if the "Allowed" MAC address issue for Captive Portal has been resolved?  I know it was still present in 18.1, but I haven't been able to find any notes that address it specifically.  I've found others who have brought up the issue, but never has a resolution been noted.  My network currently uses nearly 100 allowed MAC addresses for it's primary users, and I'd hate to make 80+ people mad just to get around an issue, and I really don't want to rebuild on PFSense which is my current alternative.

For reference:

https://forum.opnsense.org/index.php?topic=5321.msg21607#msg21607

https://forum.opnsense.org/index.php?topic=4621.msg17816#msg17816

https://forum.opnsense.org/index.php?topic=5492.msg22296#msg22296

Thanks
#3
Just a brief overview at what I'm dealing with, perhaps those more versed can more easily spot the issue.  Attached is a Wireshark screen capture of a download from my PC, with the Captive Portal enabled.  From what I see, the connection starts fine, and gets worse, progressively requesting more and more re-transmissions until it finally gives up.  What gets me, is that it only does this with the Portal enabled.  I've checked the load of the server itself both enable and disabled, and there doesn't seem to be any issue, nor with memory or the state tables. 

Attached is the screenshot.
#4
Thank you for the response, I'll look into that and see if I can find anything of interest.
#5
17.7 Legacy Series / Captive Portal and Download Errors
January 09, 2018, 02:50:02 PM
Hello,

I've been dealing with this issue for some time now, generally I've just disabled our Captive Portal to get around it.  I had hoped it was something that would be fixed, but it could be a configuration issue that I cannot locate.

I'm running a 17.7 box, using IDS, Upnp, basic firewall and dns, nothing very special.  My issue is when captive portal is enabled, users cannot download files much larger than 20-30 MB before the connection is suddenly dropped.  I have found no rhyme or reason, but it does not do this when the Captive Portal is disabled. 

The portal is pretty standard, web login or MAC authenticated, no proxy of any type.  It doesn't matter what type of device, or if it's an http or https connection. 

I'm at my wits end with it, as I've been dealing with it for over a year.  Does anyone have any ideas what could be causing this?
#6
Hello everyone,

I've been running OPNsense for roughly a year and a half now, and have recently come across an issue I can't resolve.  I run a wifi network for general internet access, with your typical IDS and Firewall settings, no proxy at the moment.  The server is a 3x core CPU, with 6 gigs of RAM, and a standard HDD for storage. 

My issue is related to the Captive Portal, recently, it began causing issues with HTTP downloads of more than roughly 30MB or so, it would then fragment and RST the packets until it failed.  I have literally reset every setting I can find, and nothing seems to effect it other than disabling the captive portal.  I can provide Wireshark logs to demonstrate if needed, it's very odd.  We generally use username/password and MAC for authentication on our portal, with nearly 70 devices currently in the MAC table.  This issue started a month or so ago, and I have not found a common event to link it with.  Any help would be appreciated.