Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - andyw

#1
Thanks mmetc

I can see quite a few failed/fatal messages in /var/log/crowdsec/crowdsec.log.

time="2025-03-06T09:18:32Z" level=error msg="Failed to load bucket crowdsecurity/opnsense_naxsi_waf_event: invalid bucket from /usr/local/etc/crowdsec/scenarios/scenario.yaml: filter is not allowed for IP scope"
time="2025-03-06T09:18:32Z" level=fatal msg="crowdsec init: while loading scenarios: scenario loading failed: loading of crowdsecurity/opnsense_naxsi_waf_event failed: invalid bucket from /usr/local/etc/crowdsec/scenarios/scenario.yaml: filter is not allowed for IP scope"

Is this an Opnsense issue or CrowdSec?
#2
25.1, 25.4 Series / CrowdSec Starting and Stopping
March 06, 2025, 09:20:56 AM
After upgrading to 25.1.2 I have noticed that the CrowdSec service keeps starting and stopping within the dashboard. Has anyone else experienced this behaviour and is there a way to debug the issue?
#3
24.1, 24.4 Legacy Series / Re: Advice
May 23, 2024, 04:06:04 PM
Thank you both for your replies. What benefit of activating the community repository would benefit me?
@ muchacha_grande do you have any redundency in your setup?

Thank you
#4
24.1, 24.4 Legacy Series / Advice
May 07, 2024, 02:53:44 PM
Hello, I was wondering if anyone could help in regards to Nginx or Haproxy.

I have currently got couple of web servers (Using Lets Encrypt) running through Nginx as the "Security Rules" implementation is an added layer of protection.
I have the need to host an mqqt server ideally with tls and was wondering if this should still be done through Nginx or do I need to deploy Haproxy for this? Is it possible to have both Nginx and Haproxy on the same instance of Opnsense?

Any advice would be appreciated.

Thanks in advance,
Andy
#5
OPNsense 23.1.11 resolves the issue and Nginx is back up and running.
Thank you
#6
For me nginx still will not start after trying all options. I have not disabled any naxsi rules as per @RamSense suggestion as couldn't find an optimal way to disable the rules. I could delete them and possibly comment them out via shell however was waiting to see if others are experiencing the same issues before diving in.
On a side note I have also noticed the gateway widget not showing as online since the update and this only comes back online when doing a reboot of the isp modem. Not sure if this is related or not but only started since the update.

the logs show:
2023-06-24T19:54:09   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-24T19:54:09   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-24T19:54:09   Debug   nginx    NGINX setup routine started.
2023-06-24T19:53:14   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-24T19:53:14   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-24T19:53:14   Debug   nginx    NGINX setup routine started.
2023-06-24T19:51:58   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-24T19:51:58   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-24T19:51:58   Debug   nginx    NGINX setup routine started.
2023-06-24T19:51:50   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-24T19:51:50   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-24T19:51:50   Debug   nginx    NGINX setup routine started.
2023-06-24T19:51:41   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-24T19:51:41   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-24T19:51:41   Debug   nginx    NGINX setup routine started.
2023-06-24T19:51:37   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-24T19:51:37   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-24T19:51:36   Debug   nginx    NGINX setup routine started.
2023-06-23T09:23:31   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-23T09:23:31   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-23T09:23:31   Debug   nginx    NGINX setup routine started.
2023-06-22T20:10:41   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T20:10:41   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-22T20:10:41   Debug   nginx    NGINX setup routine started.
2023-06-22T20:10:16   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T20:10:16   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-22T20:10:16   Debug   nginx    NGINX setup routine started.
2023-06-22T20:10:07   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T20:10:07   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-22T20:10:07   Debug   nginx    NGINX setup routine started.
2023-06-22T20:06:57   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T20:06:57   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-22T20:06:57   Debug   nginx    NGINX setup routine started.
2023-06-22T20:06:47   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T20:06:47   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-22T20:06:47   Debug   nginx    NGINX setup routine started.
2023-06-22T20:04:15   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T20:04:15   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-22T20:04:15   Debug   nginx    NGINX setup routine started.
2023-06-22T19:58:13   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:58:13   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-22T19:58:13   Debug   nginx    NGINX setup routine started.
2023-06-22T19:56:05   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:56:05   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-22T19:56:05   Debug   nginx    NGINX setup routine started.
2023-06-22T19:53:04   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:53:04   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-22T19:53:04   Debug   nginx    NGINX setup routine started.
2023-06-22T19:52:25   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:52:25   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-22T19:52:25   Debug   nginx    NGINX setup routine started.
2023-06-22T19:52:10   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:52:10   Emergency   nginx    nginx: [emerg] invalid number of arguments in "load_module" directive in /usr/local/etc/nginx/nginx.conf:9
2023-06-22T19:52:10   Debug   nginx    NGINX setup routine started.
2023-06-22T19:51:42   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:51:42   Emergency   nginx    nginx: [emerg] module "ngx_http_vhost_traffic_status_module" is already loaded in /usr/local/etc/nginx/nginx.conf:7
2023-06-22T19:51:42   Debug   nginx    NGINX setup routine started.
2023-06-22T19:46:07   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:46:07   Emergency   nginx    nginx: [emerg] module "ngx_http_vhost_traffic_status_module" is already loaded in /usr/local/etc/nginx/nginx.conf:7
2023-06-22T19:46:06   Debug   nginx    NGINX setup routine started.
2023-06-22T19:44:58   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:44:58   Emergency   nginx    nginx: [emerg] module "ngx_http_vhost_traffic_status_module" is already loaded in /usr/local/etc/nginx/nginx.conf:7
2023-06-22T19:44:58   Debug   nginx    NGINX setup routine started.
2023-06-22T19:43:42   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:43:42   Emergency   nginx    nginx: [emerg] module "ngx_http_vhost_traffic_status_module" is already loaded in /usr/local/etc/nginx/nginx.conf:7
2023-06-22T19:43:42   Debug   nginx    NGINX setup routine started.
2023-06-22T19:42:51   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:42:51   Emergency   nginx    nginx: [emerg] module "ngx_http_vhost_traffic_status_module" is already loaded in /usr/local/etc/nginx/nginx.conf:7
2023-06-22T19:42:51   Debug   nginx    NGINX setup routine started.
2023-06-22T19:42:47   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:42:47   Emergency   nginx    nginx: [emerg] module "ngx_http_vhost_traffic_status_module" is already loaded in /usr/local/etc/nginx/nginx.conf:7
2023-06-22T19:42:47   Debug   nginx    NGINX setup routine started.
2023-06-22T19:31:38   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:31:38   Emergency   nginx    nginx: [emerg] Naxsi-Config : Incorrect line MainRule id:1500 (/usr/obj/usr/ports/www/nginx/work/naxsi-29793dc/naxsi_src/naxsi_skeleton.c/973)... in /usr/local/etc/nginx/nginx.conf:50
2023-06-22T19:31:38   Debug   nginx    NGINX setup routine started.
2023-06-22T19:31:27   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:31:27   Emergency   nginx    nginx: [emerg] Naxsi-Config : Incorrect line MainRule id:1500 (/usr/obj/usr/ports/www/nginx/work/naxsi-29793dc/naxsi_src/naxsi_skeleton.c/973)... in /usr/local/etc/nginx/nginx.conf:50
2023-06-22T19:31:27   Debug   nginx    NGINX setup routine started.
2023-06-22T19:31:22   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:31:22   Emergency   nginx    nginx: [emerg] Naxsi-Config : Incorrect line MainRule id:1500 (/usr/obj/usr/ports/www/nginx/work/naxsi-29793dc/naxsi_src/naxsi_skeleton.c/973)... in /usr/local/etc/nginx/nginx.conf:50
2023-06-22T19:31:22   Debug   nginx    NGINX setup routine started.
2023-06-22T19:31:07   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:31:07   Emergency   nginx    nginx: [emerg] Naxsi-Config : Incorrect line MainRule id:1500 (/usr/obj/usr/ports/www/nginx/work/naxsi-29793dc/naxsi_src/naxsi_skeleton.c/973)... in /usr/local/etc/nginx/nginx.conf:50
2023-06-22T19:31:07   Debug   nginx    NGINX setup routine started.
2023-06-22T19:26:46   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:26:46   Emergency   nginx    nginx: [emerg] Naxsi-Config : Incorrect line MainRule id:1500 (/usr/obj/usr/ports/www/nginx/work/naxsi-29793dc/naxsi_src/naxsi_skeleton.c/973)... in /usr/local/etc/nginx/nginx.conf:50
2023-06-22T19:26:46   Debug   nginx    NGINX setup routine started.
2023-06-22T19:25:10   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:25:10   Emergency   nginx    nginx: [emerg] Naxsi-Config : Incorrect line MainRule id:1500 (/usr/obj/usr/ports/www/nginx/work/naxsi-29793dc/naxsi_src/naxsi_skeleton.c/973)... in /usr/local/etc/nginx/nginx.conf:50
2023-06-22T19:25:10   Debug   nginx    NGINX setup routine started.
2023-06-22T19:23:45   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:23:45   Emergency   nginx    nginx: [emerg] Naxsi-Config : Incorrect line MainRule id:1500 (/usr/obj/usr/ports/www/nginx/work/naxsi-29793dc/naxsi_src/naxsi_skeleton.c/973)... in /usr/local/etc/nginx/nginx.conf:50
2023-06-22T19:23:44   Debug   nginx    NGINX setup routine started.
2023-06-22T19:22:38   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:22:38   Emergency   nginx    nginx: [emerg] Naxsi-Config : Incorrect line MainRule id:1500 (/usr/obj/usr/ports/www/nginx/work/naxsi-29793dc/naxsi_src/naxsi_skeleton.c/973)... in /usr/local/etc/nginx/nginx.conf:50
2023-06-22T19:22:38   Debug   nginx    NGINX setup routine started.
2023-06-22T19:21:31   Emergency   nginx    nginx: configuration file /usr/local/etc/nginx/nginx.conf test failed
2023-06-22T19:21:31   Emergency   nginx    nginx: [emerg] Naxsi-Config : Incorrect line MainRule id:1500 (/usr/obj/usr/ports/www/nginx/work/naxsi-29793dc/naxsi_src/naxsi_skeleton.c/973)... in /usr/local/etc/nginx/nginx.conf:50
2023-06-22T19:21:31   Debug   nginx    NGINX setup routine started.
2023-06-02T00:00:00   Emergency   nginx    2023/06/02 00:00:00 [emerg] 32693#100322: open() "/var/log/nginx/permanentban.access.log" failed (13: Permission denied)
2023-06-02T00:00:00   Emergency   nginx    2023/06/02 00:00:00 [emerg] 32693#100322: open() "/var/log/nginx/tls_handshake.log" failed (13: Permission denied)
2023-05-26T22:05:18   Debug   nginx    NGINX setup routine completed.
2023-05-26T22:05:17   Debug   nginx    NGINX setup routine started.
2023-04-27T09:22:04   Debug   nginx    NGINX setup routine completed.
2023-04-27T09:22:04   Debug   nginx    NGINX setup routine started.
2023-04-26T00:00:00   Emergency   nginx    2023/04/26 00:00:00 [emerg] 47781#100532: open() "/var/log/nginx/permanentban.access.log" failed (13: Permission denied)
2023-04-26T00:00:00   Emergency   nginx    2023/04/26 00:00:00 [emerg] 47781#100532: open() "/var/log/nginx/tls_handshake.log" failed (13: Permission denied)
2023-04-24T18:56:51   Debug   nginx    NGINX setup routine completed.
2023-04-24T18:56:51   Debug   nginx    NGINX setup routine started.
2023-04-24T18:37:34   Debug   nginx    NGINX setup routine completed.
2023-04-24T18:37:34   Debug   nginx    NGINX setup routine started.
2023-04-24T18:35:17   Debug   nginx    NGINX setup routine completed.
2023-04-24T18:35:17   Debug   nginx    NGINX setup routine started.
2023-04-21T17:00:59   Debug   nginx    NGINX setup routine completed.
2023-04-21T17:00:59   Debug   nginx    NGINX setup routine started.
#7
@RamSense I am using Naxsi rules. I have attached the debug log as per your request. Hope this helps.
#8
Since updateing to 23.1.10-1 my Nginx wont start at all. I have tried rolling back Nginx and applying the patch however this does not appear to help. Has anyone got any suggestions how to resolve this issue?
#9
I have just installed upnp and gone through the basic setup through the gui. There is a lot of conflicting information as to the correct setup for upnp. Could someone please confirm the correct procedure for setting this up correctly. I have attached a screen shot of the recommendations that finishes after the install of upnp.
#10
Hi Jimjohn
Please see nslookup from both networks.
The Unbound blocklist is not working on either wan or Ipvanish network.
#11
Hi Jimjohn
All  Network Interfaces are selected aswell unfortunatly.
#12
Hi Jimjohn
Thanks for your responce. Are you referring to the Outgoing Network Interfaces? If that is the case all interface are selected.
#13
Hi i I'm new to Opnsense and have just setup an open vpn client (ipvanish) for certain devices on my network. I have succesfully got the tunnel up and running and devices connecting correctly. The problem I am facing is since the tunnel setup the Unbound DNS blocklist is now ignored on both the Wan and VPN tunnel. Has anybody else experienced this issue or is there something I am missing in the setup? Any help would be appreciated.

Thanks in advance.

I am running version  21.7.1-amd64.