Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - OzziGoblin

#1
thanks for that feedback, I'll have to be more careful now that I know that :-)
#2
HI, the DHCP service wouldn't start while the configuration was incorrect.

It took me a while to figure out what was wrong but easy to fix once I assigned a static IP to my computer and connected to the console.
#3
My Appologies everyone, I know the configuration error is entirely my fault, I've only known OpnSense to be extremely reliable and robust and all errors I've experienced have been of my own making.

My surprise though, was that a misconfiguration of 1 of the DHCP scopes, broke the DHCP service and renedered the firewall unable to assign any IP on the remaining 5 scopes I have configured.  I would have expected it to be confined the misconfigured scope, and that's why I wondered if it was a bug.

Sorry
#4
Documentation and Translation / Opensense recovery
March 22, 2025, 10:54:25 AM
Hi everyone

I hope someone can help me, I had an incident this evening where I was unable to access the console for Opnsense and it was broken, DHCP issue.

The main issue I encountered was trying to find documentation to recover, does this exist somewhere?  I read about an option 13 which allowed recovery to a previous config file, however, I could not locate option 13.

I'd love to have a document handy for such times, so if anyone can point me in the right direction I'd appreciate it.

Also, some security guides recommend disabling the root account and using another account with root permissions, however, that prevented me from reverting config files at the console.  How do I get around that?

thanks for the great help
#5
Hi
I had an unfortunate incident this evening, wasn't concentrating and changed one of the vlan subnets to use a /29 address range and had configured the available addresses to be x.x.x.2 - x.x.x.20  Not sure why but this broke the network and it took me a while to determine that DHCP was broken.
Once I discovered that I was able to get into the console and troubleshoot.

Is this a bug????

I don't mean to raise issues that aren't but I didn't expect it to break DHCP.

Thanks
#6
Not a big issue, but after my upgrade to 24.7.12 I've lost the maps configuration on Ntop.

Not a major issue, I'll configure it again, but in case it's important to someone, I thought I'd give the heads up.

other than that the update has worked fine
#7
General Discussion / Re: website update looks great!
December 13, 2024, 01:44:40 AM
The font is too small, yes I know I can zoom in, but it used to be easier to read than this one. 
I miss the orange too, it was like a greeting page, you're on Opnsense now :-)
#8
Hardware and Performance / Re: About performance
October 31, 2024, 11:34:15 PM
Hi @opnfwb

Question on threads vs cores.

netstat -Q displays Thread count and the documentation refers to cores, I have a 4 core 8 thread system so I set the net.inet.rss.bits = 3 is that correct?

Normally the OS sees a thread as a core/vcore, but I wanted to make sure.

Results from my netstat -Q show Thread count as 8 so I presume it's correct?

thanks
#9
I use unbound for reverse DNS and if ADGuard fails it's a quick change to get it working as the primary until I can fix ADGuard.  Tbh though that's only happened once.
#10
Hi Everyone

I've been unable to locate any info on this, so I'm hoping someone can assist.

I'm trying to create a read only / Monitor user for the OpnSense Console and I'm unable to determine the permissions required with the new dashboard.
Currently I've created a new group and assigned the following permissions:
GUI   Lobby: Dashboard
GUI   Dashboard: ET Pro Telemetry widget
GUI   Diagnostics: Logs: Firewall: Live View
GUI   Reporting: Traffic
GUI   Status: Interfaces
GUI   Status: Services
GUI   System: Status
GUI   VPN: WireGuard

The problem is that the traffic graph isn't displaying any graph although the values do keep changing and the user is able to stop and start services, which I don't want.
changing Theme's also hasn't helped.

Any suggestions / guidance would be appreciated

thanks
#11
thanks
#12
Hi Team

Not sure if anyone else is experiening this, but 24.7.5 is running about 10 degrees C hotter than the previous version which was already up on version 23.

Is there any fix for this on the horizon?

I'm running on bare metal hardware.

thanks for your continued efforts.

#13
Hello Everyone,

I hope someone can assist me here as I am out of idea's.

Last week I moved from 1 ISP to another, both have GCNAT, which I opted out of as I need to use wireguard and a public IP occassionally.  During the migration I did not change any config's only disconnected and reconnected the WAN port.

What I am finding now is that occassionally, when the public IP renews (sometimes they give me a new one and sometimes I keep the same one) the internet connection drops and I have to reset the WAN port to enable internet access again, unless I wait more than 5 minutes. 
ISP says simple DHCP is required, no special settings required. 

My WAN config is Default config, block private networks and Bogon networks are enabled, Dynamic gateway policy is enabled, Override MTU is enabled.  Everything else is Default on the interface.

I am seeing some strange entries in the logs during the renewal period, if anyone has any idea's how to fix this I'd be grateful.  I"m inclined to believe it's the ISP's issue, but I know they will probably blame the firewall, so if there is anything I can do to fix the issue, I'd appreciate some ideas.

Here are the logs (I've removed the 1st 2 octets of the IP addresses for obvious reasons but they are identical):

10am

2024-09-27T10:55:53   Critical   dhclient   exiting.   
2024-09-27T10:55:53   Error   dhclient   connection closed   
2024-09-27T10:55:52   Notice   configctl   event @ 1727398552.10 exec: system event config_changed response: OK   
2024-09-27T10:55:52   Notice   configctl   event @ 1727398552.10 msg: Sep 27 10:55:52 OPNsense.home.arpa config[72880]: config-event: new_config /conf/backup/config-1727398552.0829.xml   
2024-09-27T10:49:54   Notice   kernel   [fib_algo] inet.0 (radix4_lockless#18232) rebuild_fd_flm: table rebuild failed   
2024-09-27T10:49:54   Notice   kernel   [fib_algo] inet.0 setup_fd_instance: radix4_lockless algo instance setup failed, failures=38   
2024-09-27T10:49:07   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip_map (execute task : vxlan_configure_do())   
2024-09-27T10:49:07   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip_map (execute task : openssh_configure_do(,wan))   
2024-09-27T10:49:07   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip_map (execute task : dhcrelay_configure_map(,wan,inet))   
2024-09-27T10:49:07   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip_map (,wan,inet)   
2024-09-27T10:49:07   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (execute task : wireguard_sync(,wan))   
2024-09-27T10:49:07   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (execute task : webgui_configure_do(,wan))   
2024-09-27T10:49:05   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (execute task : unbound_configure_do(,wan))   
2024-09-27T10:49:05   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (execute task : opendns_configure_do())   
2024-09-27T10:49:05   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (execute task : ntpd_configure_do())   
2024-09-27T10:49:05   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (execute task : dnsmasq_configure_do())   
2024-09-27T10:49:05   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (,wan)   
2024-09-27T10:49:05   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure vpn (execute task : wireguard_configure_do(,wan))   
2024-09-27T10:49:05   Notice   opnsense   /usr/local/etc/rc.newwanip: Resyncing OpenVPN instances for interface WAN.   
2024-09-27T10:49:05   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure vpn (execute task : openvpn_configure_do(,wan))   
2024-09-27T10:49:05   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure vpn (execute task : ipsec_configure_do(,wan))   
2024-09-27T10:49:05   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure vpn (,wan)   
2024-09-27T10:49:05   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure vpn_map (,wan,inet)   
2024-09-27T10:49:05   Notice   opnsense   /usr/local/etc/rc.newwanip: IP address change detected, killing states of old ip xxx.xxx.130.83   
2024-09-27T10:49:04   Notice   kernel   [fib_algo] inet.0 (radix4_lockless#18232) rebuild_fd: sync rebuild failed   
2024-09-27T10:49:04   Notice   kernel   [fib_algo] inet.0 (radix4_lockless#18232) rebuild_fd_flm: table rebuild failed   
2024-09-27T10:49:04   Notice   kernel   [fib_algo] inet.0 setup_fd_instance: radix4_lockless algo instance setup failed, failures=37   
2024-09-27T10:49:04   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure monitor (execute task : dpinger_configure_do(,WAN_DHCP))   
2024-09-27T10:49:04   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure monitor (,WAN_DHCP)   
2024-09-27T10:49:04   Notice   opnsense   /usr/local/etc/rc.newwanip: ROUTING: setting inet default route to xxx.xxx.128.1   
2024-09-27T10:49:04   Notice   opnsense   /usr/local/etc/rc.newwanip: ROUTING: configuring inet default gateway on wan   
2024-09-27T10:49:04   Notice   opnsense   /usr/local/etc/rc.newwanip: ROUTING: entering configure using 'wan'   
2024-09-27T10:49:04   Notice   opnsense   /usr/local/etc/rc.newwanip: IP renewal starting (new: xxx.xxx.129.35, old: xxx.xxx.130.83, interface: wan, device: igc0, force: yes)

11:57
2024-09-27T23:57:31   Notice   opnsense   /interfaces.php: ROUTING: entering configure using defaults   
2024-09-27T23:57:31   Critical   dhclient   exiting.   
2024-09-27T23:57:31   Error   dhclient   connection closed   
2024-09-27T23:57:30   Notice   configctl   event @ 1727445449.77 exec: system event config_changed response: OK   
2024-09-27T23:57:30   Notice   configctl   event @ 1727445449.77 msg: Sep 27 23:57:29 OPNsense.home.arpa config[86860]: config-event: new_config /conf/backup/config-1727445449.7582.xml   
2024-09-27T23:49:26   Notice   kernel   [fib_algo] inet.0 (radix4_lockless#20762) rebuild_fd_flm: table rebuild failed   
2024-09-27T23:49:26   Notice   kernel   [fib_algo] inet.0 setup_fd_instance: radix4_lockless algo instance setup failed, failures=31   
2024-09-27T23:48:41   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip_map (execute task : vxlan_configure_do())   
2024-09-27T23:48:41   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip_map (execute task : openssh_configure_do(,wan))   
2024-09-27T23:48:41   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip_map (execute task : dhcrelay_configure_map(,wan,inet))   
2024-09-27T23:48:41   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip_map (,wan,inet)   
2024-09-27T23:48:41   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (execute task : wireguard_sync(,wan))   
2024-09-27T23:48:41   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (execute task : webgui_configure_do(,wan))   
2024-09-27T23:48:39   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (execute task : unbound_configure_do(,wan))   
2024-09-27T23:48:39   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (execute task : opendns_configure_do())   
2024-09-27T23:48:39   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (execute task : ntpd_configure_do())   
2024-09-27T23:48:39   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (execute task : dnsmasq_configure_do())   
2024-09-27T23:48:39   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure newwanip (,wan)   
2024-09-27T23:48:39   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure vpn (execute task : wireguard_configure_do(,wan))   
2024-09-27T23:48:39   Notice   opnsense   /usr/local/etc/rc.newwanip: Resyncing OpenVPN instances for interface WAN.   
2024-09-27T23:48:39   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure vpn (execute task : openvpn_configure_do(,wan))   
2024-09-27T23:48:39   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure vpn (execute task : ipsec_configure_do(,wan))   
2024-09-27T23:48:39   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure vpn (,wan)   
2024-09-27T23:48:39   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure vpn_map (,wan,inet)   
2024-09-27T23:48:39   Notice   opnsense   /usr/local/etc/rc.newwanip: IP address change detected, killing states of old ip xxx.xxx.129.35   
2024-09-27T23:48:38   Notice   kernel   [fib_algo] inet.0 (radix4_lockless#20762) rebuild_fd: sync rebuild failed   
2024-09-27T23:48:38   Notice   kernel   [fib_algo] inet.0 (radix4_lockless#20762) rebuild_fd_flm: table rebuild failed   
2024-09-27T23:48:38   Notice   kernel   [fib_algo] inet.0 setup_fd_instance: radix4_lockless algo instance setup failed, failures=30   
2024-09-27T23:48:38   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure monitor (execute task : dpinger_configure_do(,WAN_DHCP))   
2024-09-27T23:48:38   Notice   opnsense   /usr/local/etc/rc.newwanip: plugins_configure monitor (,WAN_DHCP)   
2024-09-27T23:48:38   Notice   opnsense   /usr/local/etc/rc.newwanip: ROUTING: setting inet default route to xxx.xxx.128.1   
2024-09-27T23:48:38   Notice   opnsense   /usr/local/etc/rc.newwanip: ROUTING: configuring inet default gateway on wan   
2024-09-27T23:48:38   Notice   opnsense   /usr/local/etc/rc.newwanip: ROUTING: entering configure using 'wan'   
2024-09-27T23:48:38   Notice   opnsense   /usr/local/etc/rc.newwanip: IP renewal starting (new: xxx.xxx.128.138, old: xxx.xxx.129.35, interface: wan, device: igc0, force: yes)   
2024-09-27T23:48:37   Notice   kernel   [fib_algo] inet.0 (radix4_lockless#20762) rebuild_fd: sync rebuild failed   
2024-09-27T23:48:37   Notice   kernel   [fib_algo] inet.0 (radix4_lockless#20762) rebuild_fd_flm: table rebuild failed

Thanks for your time
#14
General Discussion / Re: Connection Drops - how to monitor
September 24, 2024, 11:23:26 AM
thanks for your reply,

I am connected directly the physical connection

Will I find this information under diagnistics for the WAN interface?

thanks
#15
General Discussion / Connection Drops - how to monitor
September 24, 2024, 10:31:03 AM
Hi everyone

I hope someone can help me, I'm pretty sure my provider is dropping my connection every so often, but I don't know how to find proof that it's happening. 
Does anyone know where Opnsense would log a connection loss/drop?

thanks so much