Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - joekingmo

#1
22.7 Legacy Series / How should I fix this?
October 02, 2022, 03:41:23 PM
I have a new OPNsense install that hasn't been acting right recently (log output below). I'm curious if I should just reload the OS and re-import the config settings. My device settings seem to be accurate at this point. However, the device will fail from time to time and I have to reboot it.

The system also no longer passes the connectivity test either. I do have internet and all of my devices seem to be working fine.

Please let me know the best way to fix this. Thanks in advance for any help you can provide.


***GOT REQUEST TO AUDIT HEALTH***
Currently running OPNsense 22.7.4 (amd64/OpenSSL) at Sun Oct  2 08:30:44 CDT 2022
>>> Check installed kernel version
Version 22.7.3 is correct.
>>> Check for missing or altered kernel files
No problems detected.
>>> Check installed base version
Version 22.7.3 is correct.
>>> Check for missing or altered base files
Error 2 ocurred.
etc/sysctl.conf:
   size (311, 411)
   sha256digest (0x8c57d647047d84b9be4cddbb0b6d58c1d5839f148b62d1137b8bf2611f681cfd, 0xa0bd01dc010fcdb30fc0ed964b2ac677772fa0931cb52a6e8ed1392c02e2335e)
>>> Check installed repositories
OPNsense
SunnyValley
>>> Check installed plugins
os-sensei 1.11.5
os-sensei-updater 1.11
os-sunnyvalley 1.2_2
os-theme-cicada 1.29
>>> Check locked packages
No locks found.
>>> Check for missing package dependencies
Checking all packages: .......... done
>>> Check for missing or altered package files
Checking all packages: .......... done
>>> Check for core packages consistency
Core package "opnsense" has 63 dependencies to check.
Checking packages: ................................................................. done
***DONE***



I also get the following security out:


***GOT REQUEST TO AUDIT SECURITY***
Currently running OPNsense 22.7.4 (amd64/OpenSSL) at Sun Oct  2 08:37:35 CDT 2022
Fetching vuln.xml.xz: .......... done
expat-2.4.8 is vulnerable:
  expat -- Heap use-after-free vulnerability
  CVE: CVE-2022-40674
  WWW: https://vuxml.FreeBSD.org/freebsd/0a0670a1-3e1a-11ed-b48b-e0d55e2a8bf9.html


squid-4.15 is vulnerable:
  squid -- Exposure of sensitive information in cache manager
  CVE: CVE-2022-41317
  WWW: https://vuxml.FreeBSD.org/freebsd/f9ada0b5-3d80-11ed-9330-080027f5fec9.html


python39-3.9.13 is vulnerable:
  Python -- multiple vulnerabilities
  CVE: CVE-2020-10735
  WWW: https://vuxml.FreeBSD.org/freebsd/80e057e7-2f0a-11ed-978f-fcaa147e860e.html


3 problem(s) in 3 installed package(s) found.
***DONE***