Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - Olli

#1
but i had two years no problems with it and opnsense should have enough capacity on the system, i thought.
16GB Ram, Intel i5-7200U
Is there an better alternative to elastic? ho can i prevent such issues? I plan to reinstall the sense, becaue i think the system had the issue with the last 24.1 release.
Another error i found was in unbound logfiles:
[41432:1] error: can't create socket: Too many open files in system   
#2
So, i'm back with local access to the opnsense.
Thanks Patrick, i will think about it.

Elasticsearch had 270% CPU Usage
After reboot:
98301 root          1 103    0    58M    35M CPU3     3   7:06  99.59% python3.11
Java with 23 %
still running to hot.

In the system log on the crash day:
A lot of:
<13>1 2024-07-18T15:36:46+02:00 Sense.home kernel - - [meta sequenceId="35"] kern.maxfiles limit exceeded by uid 965, (java) please see tuning(7).

<13>1 2024-07-18T15:39:43+02:00 Sense.home kernel - - [meta sequenceId="214"] <7>sonewconn: pcb 0xfffff801d4c8f000 ([::7f00:1]:9200 (proto 6)): Listen
queue overflow: 193 already in queue awaiting acceptance (81 occurrences

#3
@cookiemonster thanks for the try.

@patrick Thought of this, but the fuses are in the appartment and the usv will cover minimum half an hour. so the whole building without power is not an option for resetore my access :)

There seems to be no possibility, so I have to wait and see until i'm back at this location :(
#4
But it was setup that I can reach the firewall via vpn, via site2site and locally.
And something must hang up or going wrong that today nothing work correctly anymore. And I'm looking for a solution, hoping the insect tunnel stay active. So how I access ssh when everything worked before today and nobody changed anything because I'm on vacation...
I did not understand that behavior, since three years I had not such problems.
#5
True, but I had a setup including vpn and remote access from the two separate vpn. And I have access to some network devices. But now something happend to the opnsense, so that I cannot connect to GUI and ssh since today and the opnvpn did not work, only my site2site vpn is still connected.

So, how I can restart the machine without physical access
#6
Hi there,
i've an opnsense at home but it seems, that it hung up. It's the first time this happend and i cant access via gui (503 Service Unavailable) and ssh (connection reset by peer).
I have access to the lokal network with a site2site vpn config, but i cannot connect to all devices in the network. It seems that routing / dns / network management in the opnsense hung up and its not possible for me to reboot the device until next week physically. Also no internet services got resolved by trying to ping it out of that network.
But i need to get the location working.

Has someone an idea to get access or reboot that opnsense remotely, like a tool, an inproper action to get that device make a reboot? The firmware Version was updated at 10th of july.
Zenarmor is not responding via zenconsole.

For the system check and the "why" of that behavior i have to analyse the logfiles, but now i want only that reboot. yesterday all was workin fine.

Thanks, Olli
#7
Hmm, ich habe seit dem letzten Update ein ähnliches Verhalten. Der PPPoE Verbindung besteht, dennoch sind die Geräte oder einige Geräte kurz offline und nach wenigen Sekunden läuft es wieder. Ich habe keine Ahnung wo ich suchen kann, was die Ursache ist oder ob hier der DNS nur Schluckauf hat. Zenarmor hab ich schon zurückgesetzt, Testweise deaktiviert aber so wirklich brachte es nichts.

Einzige Verbesserung war, dass ich alle Netflow Daten und bei Zenarmor alle Statistikdaten gelöscht hatte und so die CPU Last etwas weniger wurde und dadurch das Problem nicht ganz so oft auftrat...

Im englischen Forum schreiben auch einige von merkwürdigem Internet Verhalten, aber auch keine Lösung bis lang
#8
Hi there ans Thanks a lot for that manual, it works great. But how can I specify that only special hosts can access this ports, like a whitelisting.

#9
Same issue with chrome on iPad
#10
21.7 Legacy Series / Re: 21.7.3. - high CPU and MEM usage
September 25, 2021, 06:06:10 PM
Quote from: dinguz on September 25, 2021, 04:43:17 PM

I have had this happen in the past after Netflow database corruption. If you reset the data files (Reporting -> Settings) and re-enable Netflow, does the high load come back?

Thanks. That seems to work.
Maybe the update crashed the database  :)
#11
21.7 Legacy Series / Re: 21.7.3. - high CPU and MEM usage
September 25, 2021, 03:25:04 PM
Like i wrote in another thread, my problem with high load is the following, reboot did not fix it.

61047 root         85    0    28M    19M CPU0     0   0:06  98.33% /usr/local/bin/python3 /usr/local/opnsense/scripts/netflow/flowd_aggregate.py (python3.8)

After deactivate
Reporting -> Netflow -> Capture local
it runs normal without high load. Maybe some incompatibility with the new python 3.8?
#12
Have the same issue. full ram load and one cpu hight load.
After reboot it was a little better, but i found in the processes:
61047 root         85    0    28M    19M CPU0     0   0:06  98.33% /usr/local/bin/python3 /usr/local/opnsense/scripts/netflow/flowd_aggregate.py (python3.8)

After deactivate
Reporting -> Netflow -> Capture local
it runs normal without high load. Maybe some incompatibility with the new python 3.8?