Funny enough, the website blocklist.site is now hosting malware... Stay away.
This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.
Show posts MenuQuoteI checked GWG Y and Z though and it can be confirmed that these are NOT using this Single Gateway X in any of the tiers.
The following input errors were detected:
- Gateway X cannot be deleted because it is in use on Gateway Group Y
- Gateway X cannot be deleted because it is in use on Gateway Group Z
Quote from: Luc3k on February 14, 2021, 09:47:39 AMYep looks good.
the "nc 192.168.14.1 4949" command returns the following response:
root@Bravo:~ # nc 192.168.14.1 4949
# munin node at Bravo
list
cpu df df_inode hddtemp_smartctl if_bge0 if_bge1 if_errcoll_bge0 if_errcoll_bge1 if_packets_bge0 if_packets_bge1 iostat load memory netstat ntp_193.219.28.2 ntp_213.199.225.40 ntp_54.37.233.160 ntp_94.23.94.78 ntp_kernel_err ntp_kernel_pll_freq ntp_kernel_pll_off ntp_offset ntp_states open_files smart_ada0 swap systat uptime users
I think that is the correct answer. What is your opinion?
Quote from: Luc3k on February 14, 2021, 09:47:39 AMNope, just in the host definition section under munin.conf. The munin-node.conf file contains config of the node (client). Munin.conf is the one for the master.
I still don't know where exactly should I put it :
[OPNsense.mydomain.local]
address 10.0.10.1
use_node_name yes
/usr/local/etc/munin/munin-node.conf?
[Monitoring.mydomain.local]
address 127.0.0.1
use_node_name yes
hddtemp.sda.critical 60
hddtemp.sdb.critical 60
[OPNsense.mydomain.local]
address 10.0.10.1
use_node_name yes
$ nc 10.0.10.1 4949
# munin node at OPNsense-v1
list
cpu df df_inode if_em0 if_errcoll_em0 if_errcoll_pppoe2 if_errcoll_pppoe3 if_errcoll_vmx0 if_errcoll_vmx1 if_errcoll_vmx2 if_errcoll_vmx3 if_errcoll_vmx4 if_errcoll_vmx5 if_errcoll_vmx6 if_errcoll_vmx7 if_errcoll_vmx8 if_packets_em0 if_packets_pppoe2 if_packets_pppoe3 if_packets_vmx0 if_packets_vmx1 if_packets_vmx2 if_packets_vmx3 if_packets_vmx4 if_packets_vmx5 if_packets_vmx6 if_packets_vmx7 if_packets_vmx8 if_pppoe2 if_pppoe3 if_vmx0 if_vmx1 if_vmx2 if_vmx3 if_vmx4 if_vmx5 if_vmx6 if_vmx7 if_vmx8 iostat load memory netstat ntp_kernel_err ntp_kernel_pll_freq ntp_kernel_pll_off ntp_offset ntp_states open_files swap systat uptime users
fetch cpu
user.value 384068
nice.value 0
system.value 712836
interrupt.value 21338
idle.value 167495170
.
root@server:~# su - munin --shell=/bin/bash
munin@server:~$ /usr/share/munin/munin-update --debug --nofork --host OPNsense.mydomain.com
2021/02/14 09:25:43 [DEBUG] Creating new lock file /var/run/munin/munin-update.lock
2021/02/14 09:25:43 [DEBUG] Creating lock : /var/run/munin/munin-update.lock succeeded
2021/02/14 09:25:43 [INFO]: Starting munin-update
2021/02/14 09:25:46 [DEBUG] Creating new lock file /var/run/munin/munin-mydomain.com-OPNsense.mydomain.com.lock
2021/02/14 09:25:46 [DEBUG] Creating lock : /var/run/munin/munin-mydomain.com-OPNsense.mydomain.com.lock succeeded
2021/02/14 09:25:46 [DEBUG] Reading state for mydomain.com-OPNsense.mydomain.com in /var/lib/munin/state-mydomain.com-OPNsense.mydomain.com.storable
2021/02/14 09:25:46 [INFO] starting work in 15868 for OPNsense.mydomain.com/10.0.10.1:4949.
2021/02/14 09:25:46 TLS set to "disabled".
2021/02/14 09:25:46 [DEBUG] Negotiating capabilities
2021/02/14 09:25:46 [DEBUG] Writing to socket: "cap multigraph dirtyconfig
".
2021/02/14 09:25:46 [DEBUG] Node says /cap multigraph dirtyconfig/
2021/02/14 09:25:46 [DEBUG] Writing to socket: "list OPNsense-v1
".
2021/02/14 09:25:46 [DEBUG] for my if_errcoll_vmx5 (if_errcoll_vmx5 if_errcoll_vmx1 if_packets_vmx8 df if_packets_vmx6 if_em0 if_vmx3 if_vmx2 if_errcoll_pppoe3 ntp_kernel_pll_freq ntp_kernel_err if_vmx7 if_errcoll_vmx8 if_packets_vmx5 if_packets_vmx1 ntp_kernel_pll_off users load if_vmx8 if_errcoll_vmx6 if_packets_pppoe3 if_vmx1 if_vmx5 ntp_offset if_errcoll_vmx2 if_pppoe2 open_files if_packets_vmx7 iostat swap if_errcoll_vmx0 memory if_packets_vmx4 uptime if_packets_vmx3 netstat if_packets_pppoe2 if_pppoe3 if_packets_em0 if_errcoll_vmx7 ntp_states if_packets_vmx2 if_vmx0 if_packets_vmx0 if_vmx4 systat df_inode cpu if_errcoll_vmx4 if_errcoll_em0 if_errcoll_vmx3 if_errcoll_pppoe2 if_vmx6)
2021/02/14 09:25:46 [DEBUG] Fetching service configuration for 'if_errcoll_vmx5'
2021/02/14 09:25:46 [DEBUG] Writing to socket: "config if_errcoll_vmx5
".
2021/02/14 09:25:46 [DEBUG] Reading from socket: "graph_order ierrors oerrors collisions\ngraph_title vmx5 Errors & Collisions\ngraph_args --base 1000\ngraph_vlabel events / ${graph_period}\ngraph_category network\ngraph_info This graph shows the amount of errors and collisions on the vmx5 network interface.\nierrors.label Input Errors\nierrors.type COUNTER\noerrors.label Output Errors\noerrors.type COUNTER\ncollisions.label Collisions\ncollisions.type COUNTER".
2021/02/14 09:25:46 [DEBUG] config: 0.05001 sec for 'if_errcoll_vmx5' on OPNsense.mydomain.com/10.0.10.1/4949
2021/02/14 09:25:46 [DEBUG] Now parsing config output from plugin if_errcoll_vmx5 on OPNsense.mydomain.com
2021/02/14 09:25:46 [DEBUG] update_rate 0 for if_errcoll_vmx5 on OPNsense.mydomain.com/10.0.10.1:4949
2021/02/14 09:25:46 [DEBUG] No service data for if_errcoll_vmx5, fetching it
2021/02/14 09:25:46 [DEBUG] Writing to socket: "fetch if_errcoll_vmx5
".
2021/02/14 09:25:46 [DEBUG] data: 0.045926 sec for 'if_errcoll_vmx5' on OPNsense.mydomain.com/10.0.10.1/4949
2021/02/14 09:25:46 [DEBUG] Now parsing fetch output from plugin if_errcoll_vmx5 on OPNsense.mydomain.com/10.0.10.1:4949
2021/02/14 09:25:46 [FETCH from if_errcoll_vmx5] ierrors.value 0
2021/02/14 09:25:46 [FETCH from if_errcoll_vmx5] Storing 0 in ierrors
2021/02/14 09:25:46 [FETCH from if_errcoll_vmx5] oerrors.value 0
2021/02/14 09:25:46 [FETCH from if_errcoll_vmx5] Storing 0 in oerrors
2021/02/14 09:25:46 [FETCH from if_errcoll_vmx5] collisions.value 0
2021/02/14 09:25:46 [FETCH from if_errcoll_vmx5] Storing 0 in collisions
2021/02/14 09:25:46 [DEBUG] asking for a rrd of size : normal
(and so on)
ln -s '/usr/local/share/munin/plugins/cpu' '/usr/local/etc/munin/plugins/cpu'
ln -s '/usr/local/share/munin/plugins/df' '/usr/local/etc/munin/plugins/df'
ln -s '/usr/local/share/munin/plugins/df_inode' '/usr/local/etc/munin/plugins/df_inode'
ln -s '/usr/local/share/munin/plugins/if_' '/usr/local/etc/munin/plugins/if_em0'
ln -s '/usr/local/share/munin/plugins/if_' '/usr/local/etc/munin/plugins/if_pppoe2'
ln -s '/usr/local/share/munin/plugins/if_' '/usr/local/etc/munin/plugins/if_pppoe3'
ln -s '/usr/local/share/munin/plugins/if_' '/usr/local/etc/munin/plugins/if_vmx0'
ln -s '/usr/local/share/munin/plugins/if_' '/usr/local/etc/munin/plugins/if_vmx1'
ln -s '/usr/local/share/munin/plugins/if_' '/usr/local/etc/munin/plugins/if_vmx2'
ln -s '/usr/local/share/munin/plugins/if_' '/usr/local/etc/munin/plugins/if_vmx3'
ln -s '/usr/local/share/munin/plugins/if_' '/usr/local/etc/munin/plugins/if_vmx4'
ln -s '/usr/local/share/munin/plugins/if_' '/usr/local/etc/munin/plugins/if_vmx5'
ln -s '/usr/local/share/munin/plugins/if_' '/usr/local/etc/munin/plugins/if_vmx6'
ln -s '/usr/local/share/munin/plugins/if_' '/usr/local/etc/munin/plugins/if_vmx7'
ln -s '/usr/local/share/munin/plugins/if_' '/usr/local/etc/munin/plugins/if_vmx8'
ln -s '/usr/local/share/munin/plugins/if_errcoll_' '/usr/local/etc/munin/plugins/if_errcoll_em0'
ln -s '/usr/local/share/munin/plugins/if_errcoll_' '/usr/local/etc/munin/plugins/if_errcoll_pppoe2'
ln -s '/usr/local/share/munin/plugins/if_errcoll_' '/usr/local/etc/munin/plugins/if_errcoll_pppoe3'
ln -s '/usr/local/share/munin/plugins/if_errcoll_' '/usr/local/etc/munin/plugins/if_errcoll_vmx0'
ln -s '/usr/local/share/munin/plugins/if_errcoll_' '/usr/local/etc/munin/plugins/if_errcoll_vmx1'
ln -s '/usr/local/share/munin/plugins/if_errcoll_' '/usr/local/etc/munin/plugins/if_errcoll_vmx2'
ln -s '/usr/local/share/munin/plugins/if_errcoll_' '/usr/local/etc/munin/plugins/if_errcoll_vmx3'
ln -s '/usr/local/share/munin/plugins/if_errcoll_' '/usr/local/etc/munin/plugins/if_errcoll_vmx4'
ln -s '/usr/local/share/munin/plugins/if_errcoll_' '/usr/local/etc/munin/plugins/if_errcoll_vmx5'
ln -s '/usr/local/share/munin/plugins/if_errcoll_' '/usr/local/etc/munin/plugins/if_errcoll_vmx6'
ln -s '/usr/local/share/munin/plugins/if_errcoll_' '/usr/local/etc/munin/plugins/if_errcoll_vmx7'
ln -s '/usr/local/share/munin/plugins/if_errcoll_' '/usr/local/etc/munin/plugins/if_errcoll_vmx8'
ln -s '/usr/local/share/munin/plugins/if_packets_' '/usr/local/etc/munin/plugins/if_packets_em0'
ln -s '/usr/local/share/munin/plugins/if_packets_' '/usr/local/etc/munin/plugins/if_packets_pppoe2'
ln -s '/usr/local/share/munin/plugins/if_packets_' '/usr/local/etc/munin/plugins/if_packets_pppoe3'
ln -s '/usr/local/share/munin/plugins/if_packets_' '/usr/local/etc/munin/plugins/if_packets_vmx0'
ln -s '/usr/local/share/munin/plugins/if_packets_' '/usr/local/etc/munin/plugins/if_packets_vmx1'
ln -s '/usr/local/share/munin/plugins/if_packets_' '/usr/local/etc/munin/plugins/if_packets_vmx2'
ln -s '/usr/local/share/munin/plugins/if_packets_' '/usr/local/etc/munin/plugins/if_packets_vmx3'
ln -s '/usr/local/share/munin/plugins/if_packets_' '/usr/local/etc/munin/plugins/if_packets_vmx4'
ln -s '/usr/local/share/munin/plugins/if_packets_' '/usr/local/etc/munin/plugins/if_packets_vmx5'
ln -s '/usr/local/share/munin/plugins/if_packets_' '/usr/local/etc/munin/plugins/if_packets_vmx6'
ln -s '/usr/local/share/munin/plugins/if_packets_' '/usr/local/etc/munin/plugins/if_packets_vmx7'
ln -s '/usr/local/share/munin/plugins/if_packets_' '/usr/local/etc/munin/plugins/if_packets_vmx8'
ln -s '/usr/local/share/munin/plugins/iostat' '/usr/local/etc/munin/plugins/iostat'
ln -s '/usr/local/share/munin/plugins/load' '/usr/local/etc/munin/plugins/load'
ln -s '/usr/local/share/munin/plugins/memory' '/usr/local/etc/munin/plugins/memory'
ln -s '/usr/local/share/munin/plugins/netstat' '/usr/local/etc/munin/plugins/netstat'
ln -s '/usr/local/share/munin/plugins/ntp_' '/usr/local/etc/munin/plugins/ntp_45.87.76.3'
ln -s '/usr/local/share/munin/plugins/ntp_kernel_err' '/usr/local/etc/munin/plugins/ntp_kernel_err'
ln -s '/usr/local/share/munin/plugins/ntp_kernel_pll_freq' '/usr/local/etc/munin/plugins/ntp_kernel_pll_freq'
ln -s '/usr/local/share/munin/plugins/ntp_kernel_pll_off' '/usr/local/etc/munin/plugins/ntp_kernel_pll_off'
ln -s '/usr/local/share/munin/plugins/ntp_offset' '/usr/local/etc/munin/plugins/ntp_offset'
ln -s '/usr/local/share/munin/plugins/ntp_states' '/usr/local/etc/munin/plugins/ntp_states'
ln -s '/usr/local/share/munin/plugins/open_files' '/usr/local/etc/munin/plugins/open_files'
ln -s '/usr/local/share/munin/plugins/swap' '/usr/local/etc/munin/plugins/swap'
ln -s '/usr/local/share/munin/plugins/systat' '/usr/local/etc/munin/plugins/systat'
ln -s '/usr/local/share/munin/plugins/uptime' '/usr/local/etc/munin/plugins/uptime'
ln -s '/usr/local/share/munin/plugins/users' '/usr/local/etc/munin/plugins/users'
# service munin-node restart
Stopping munin_node.
Waiting for PIDS: 46787.
Starting munin_node.
root@srv-8:~# nc 10.0.10.1 4949
# munin node at OPNsense-v1
list
cpu df df_inode if_em0 if_errcoll_em0 if_errcoll_pppoe2 if_errcoll_pppoe3 if_errcoll_vmx0 if_errcoll_vmx1 if_errcoll_vmx2 if_errcoll_vmx3 if_errcoll_vmx4 if_errcoll_vmx5 if_errcoll_vmx6 if_errcoll_vmx7 if_errcoll_vmx8 if_packets_em0 if_packets_pppoe2 if_packets_pppoe3 if_packets_vmx0 if_packets_vmx1 if_packets_vmx2 if_packets_vmx3 if_packets_vmx4 if_packets_vmx5 if_packets_vmx6 if_packets_vmx7 if_packets_vmx8 if_pppoe2 if_pppoe3 if_vmx0 if_vmx1 if_vmx2 if_vmx3 if_vmx4 if_vmx5 if_vmx6 if_vmx7 if_vmx8 iostat load memory netstat ntp_45.87.76.3 ntp_kernel_err ntp_kernel_pll_freq ntp_kernel_pll_off ntp_offset ntp_states open_files swap systat uptime users
[OPNsense.mydomain.local]
address 10.0.10.1
use_node_name yes
# service munin restart
stop: Unknown instance:
munin stop/waiting
QuoteThe following input errors were detected:
Changing name on a gateway group is not allowed.
QuoteThe following input errors were detected:
Changing name on a gateway is not allowed.
QuoteThis rule will utilize the gateway group for all traffic coming from our LAN network. This also means that traffic intended for the firewall itself will be routed in this (wrong) direction. That is why Step 5 is needed for our DNS traffic going to and coming from our DNS forwarder on the firewall itself.
C:\>nslookup
Default Server: UnKnown
Address: 10.0.10.22
> server 10.0.10.1
Default Server: [10.0.10.1]
Address: 10.0.10.1
> google.com
Server: [10.0.10.1]
Address: 10.0.10.1
Non-authoritative answer:
Name: google.com
Addresses: 2a00:1450:400e:809::200e
216.58.211.110
> server 10.0.10.18
Default Server: [10.0.10.18]
Address: 10.0.10.18
> google.com
Server: [10.0.10.18]
Address: 10.0.10.18
DNS request timed out.
timeout was 2 seconds.
DNS request timed out.
timeout was 2 seconds.
DNS request timed out.
timeout was 2 seconds.
DNS request timed out.
timeout was 2 seconds.
*** Request to [10.0.10.18] timed-out
---> Adding a rule to allow DNS traffic on OPNsense <---
> google.com
Server: [10.0.10.18]
Address: 10.0.10.18
Non-authoritative answer:
Name: google.com
Addresses: 2a00:1450:400e:80d::200e
172.217.168.238
>