Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - phanos

#1
Hi all,

I have been running opnsense for almost two years now on a fujitsu futro S920 with 8GB ram and AMD GX-222GC SOC CPU. I know this machine is not the strongest out there but it serve me well on my previous connection which was 200MB/50MB (download/upload). In that setup I was also running Openvpn, wireguard, suricata on wan in ids mode and zenarmor in LAN in ips mode. I have arround 50-60 devices connected to the internet (but most of them are IOT devices). Ok things were not ideal due to one of the nics being a realtek but still I was happy giving the amount of money put to it.

Now I have upgrade to a fiber connection of 1GB/250MB (download/upload) speed. In order to get the most of my router I replaced zenarmor with adguard and make some tweaks on the tunnables of the router. Overall I do not see the cpu gets bottleneck all the time but when I speedtest (from a wired pc directly connected to the router) I only get in the best case scenario ~850MB download. Most of the times my speed is capped at around ~550MB. Not sure if there is something I can do more to get more of my speed, I tried disabling suricata and stopping other services but the result was the same.

So I am thinking to moving to new hardware and migrating everything to a new router. I search online to either a dell/HP/lenovo SFF pc or either a ready made router from aliexpress (with N150 cpu and 16GB ram) but I having trouble figuring out whether the new system will be enough.

My requirements are:
1) Being able to get my full speed 1GB/250MB
2) Run OpenVPN for 2-3 clients (not heavy traffic all the time)
3) Run wireguard for 2-3 clients (not heavy traffic all the time)
4) Have a few VLans configured
5) Enable IPv6 in the near future
and ideally ...
6) Run Suricata in IPS mode in wan
7) Run Zenarmor in IPS mode  in LAN

Is the N150 even close enough to what I want to achieve or I need to stay clear? What is the recommended hardware for my setup? What are your thoughts on the matter?

Thanks

Phanos
#2
Also the same. I tried updating 24.7_5 but the issue is still there.

I tested FF, chrome, Edge on Linux, Windows and Safari on iOS. Rebooted the router many times and only one browser logged in.

Clear cache many times.

No solution. I think we have to wait for opnsense team to give us an update that fixes the issue.

#3
Thanks. I guess we are stuck with the issue until an update comes and fix it.
#4
thanks. I think you might be right since I am reading something about timeout when opening the developer console in firefox.

is there a fix??
#5
Same problem here. I have cleared browser cache many times, switch different browsers and used also incognito mode, tried on linux, windows and iOS. Result is the same. Most widget is dashboard not loading....

Is there anything I can do???
#6
Hi I am running the latest OPNSense version on a Fujitsu Futro s920 machine. I am pretty happy with it so far, really stable and efficient, but I was wondering if it is possible to get its power consumption to go lower that it is now.

According to a power wattage meter that I install for this particular case, the power consumption of the machine is fluctuating between 15~25 watts while the router is operating. This is the same either if I am home operating the internet or while I am away.

I have already played around with the options in OPNsense under System-->Settings-- Miscellaneous. If I set the "Power Savings"  to "Maximum" the power consumption goes up. If I set up the mode to "Adaptive" or "Minimum" the power consumption goes down a little and to the level I mention above. At this point I have set it up to "Adaptive" which I believe gives a good balance between efficiency and consumption and I do not think I can gain any more out of this option unless someone can pinpoint something I missed.

What I notice however is that if I plug a monitor on the back of the Fujitsu Futro s920 machine I get video. As I understand this also consumes power and I would like to turn the video off after the router has boot up since this is a headless machine most of the time.

Is this possible in OPNSense? Is there an option/hack that can cause video out to turn off after some time of inactivity like on a desktop computer running a Linux/Windows OS?

Are there any more option/hacks that I did not consider in order to minimize the power consumption of my machine running OPNSense?

Thanks

Phanos

#7
After

1) Installing the os-realtek-re package, and
2) Rebooting the router I did not notice the issue again

Of course it has only been one day but the connection seems stable for now. If something happens I will report back to let you know.
#8
Thanks just installed it and reboot the router. Will test and report back.

Phanos
#9
Thanks but how do I use the vendor's driver? Can you see it from the logs which one I am using?
#10
Hi I am running latest OPNSense (OPNsense 23.7.12-amd64) on Fujitsu Futro S920 (2.2 GHz cpu, 8GB rams enough disk space).

Although OPNSense seems to be running smooth I notice that when I push my internet connection to its limits by using an accelerator program like axel (linux) the connection is lost for a few moments and then it connected again. All active connections are lost (VPN, downloading etc) and I have to reconnect - reestablished them

In the system log I see the following

<13>1 2024-01-24T10:50:22+02:00 homerouter.phanosp.com kernel - - [meta sequenceId="1"] <6>re0: watchdog timeout                                                                                            [11/2030]
<13>1 2024-01-24T10:50:22+02:00 homerouter.phanosp.com kernel - - [meta sequenceId="2"] <6>re0: link state changed to DOWN                                                                                           
<13>1 2024-01-24T10:50:23+02:00 homerouter.phanosp.com opnsense 43721 - [meta sequenceId="3"] /usr/local/etc/rc.linkup: DEVD: Ethernet detached event for wan(re0)                                                   
<27>1 2024-01-24T10:50:23+02:00 homerouter.phanosp.com dhclient 42195 - [meta sequenceId="4"] connection closed                                                                                                     
<26>1 2024-01-24T10:50:23+02:00 homerouter.phanosp.com dhclient 42195 - [meta sequenceId="5"] exiting.                                                                                                               
<13>1 2024-01-24T10:50:27+02:00 homerouter.phanosp.com kernel - - [meta sequenceId="6"] <6>re0: link state changed to UP                                                                                             
<13>1 2024-01-24T10:50:27+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="7"] /usr/local/etc/rc.linkup: DEVD: Ethernet attached event for wan(re0)                                                   
<13>1 2024-01-24T10:50:27+02:00 homerouter.phanosp.com dhclient 54160 - [meta sequenceId="8"] New IP Address (re0): 192.168.0.20                                                                                     
<13>1 2024-01-24T10:50:27+02:00 homerouter.phanosp.com dhclient 55125 - [meta sequenceId="9"] New Subnet Mask (re0): 255.255.255.0                                                                                   
<13>1 2024-01-24T10:50:27+02:00 homerouter.phanosp.com dhclient 56353 - [meta sequenceId="10"] New Broadcast Address (re0): 192.168.0.255                                                                           
<13>1 2024-01-24T10:50:27+02:00 homerouter.phanosp.com dhclient 57306 - [meta sequenceId="11"] New Routers (re0): 192.168.0.1                                                                                       
<13>1 2024-01-24T10:50:27+02:00 homerouter.phanosp.com dhclient 58836 - [meta sequenceId="12"] Creating resolv.conf                                                                                                 
<13>1 2024-01-24T10:50:28+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="13"] /usr/local/etc/rc.linkup: ROUTING: entering configure using 'wan'                                                     
<13>1 2024-01-24T10:50:28+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="14"] /usr/local/etc/rc.linkup: ROUTING: configuring inet default gateway on wan                                           
<13>1 2024-01-24T10:50:28+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="15"] /usr/local/etc/rc.linkup: ROUTING: setting inet default route to 192.168.0.1                                         
<13>1 2024-01-24T10:50:28+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="16"] /usr/local/etc/rc.linkup: plugins_configure monitor (,WAN_DHCP)                                                       
<13>1 2024-01-24T10:50:28+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="17"] /usr/local/etc/rc.linkup: plugins_configure monitor (execute task : dpinger_configure_do(,WAN_DHCP))                 
<13>1 2024-01-24T10:50:28+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="18"] /usr/local/etc/rc.linkup: plugins_configure monitor (,WAN_DHCP6)                                                     
<13>1 2024-01-24T10:50:28+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="19"] /usr/local/etc/rc.linkup: plugins_configure monitor (execute task : dpinger_configure_do(,WAN_DHCP6))                 
<13>1 2024-01-24T10:50:28+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="20"] /usr/local/etc/rc.linkup: plugins_configure ipsec (,wan)                                                             
<13>1 2024-01-24T10:50:28+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="21"] /usr/local/etc/rc.linkup: plugins_configure ipsec (execute task : ipsec_configure_do(,wan))                           
<13>1 2024-01-24T10:50:28+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="22"] /usr/local/etc/rc.linkup: plugins_configure dhcp ()                                                                   
<13>1 2024-01-24T10:50:28+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="23"] /usr/local/etc/rc.linkup: plugins_configure dhcp (execute task : dhcpd_dhcp_configure())                             
<13>1 2024-01-24T10:50:28+02:00 homerouter.phanosp.com opnsense 59987 - [meta sequenceId="24"] /usr/local/etc/rc.newwanip: IP renewal starting (new: 192.168.0.20, old: 192.168.0.20, interface: wan, device: re0, fo
rce: yes)                                                                                                                                                                                                           
<13>1 2024-01-24T10:50:28+02:00 homerouter.phanosp.com opnsense 59987 - [meta sequenceId="25"] /usr/local/etc/rc.newwanip: ROUTING: entering configure using 'wan'                                                   
<13>1 2024-01-24T10:50:29+02:00 homerouter.phanosp.com opnsense 59987 - [meta sequenceId="26"] /usr/local/etc/rc.newwanip: ROUTING: configuring inet default gateway on wan                                         
<13>1 2024-01-24T10:50:29+02:00 homerouter.phanosp.com opnsense 59987 - [meta sequenceId="27"] /usr/local/etc/rc.newwanip: ROUTING: keeping inet default route to 192.168.0.1                                       
<13>1 2024-01-24T10:50:29+02:00 homerouter.phanosp.com opnsense 59987 - [meta sequenceId="28"] /usr/local/etc/rc.newwanip: plugins_configure monitor (,WAN_DHCP)                                                     <13>1 2024-01-24T10:50:29+02:00 homerouter.phanosp.com opnsense 59987 - [meta sequenceId="29"] /usr/local/etc/rc.newwanip: plugins_configure monitor (execute task : dpinger_configure_do(,WAN_DHCP))               
<12>1 2024-01-24T10:50:29+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="30"] /usr/local/etc/rc.linkup: dhcpd_radvd_configure(auto) found no suitable IPv6 address on lan(bridge0)                 
<13>1 2024-01-24T10:50:29+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="31"] /usr/local/etc/rc.linkup: plugins_configure dns ()
<13>1 2024-01-24T10:50:29+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="32"] /usr/local/etc/rc.linkup: plugins_configure dns (execute task : dnsmasq_configure_do())
<13>1 2024-01-24T10:50:29+02:00 homerouter.phanosp.com opnsense 49458 - [meta sequenceId="33"] /usr/local/etc/rc.linkup: plugins_configure dns (execute task : unbound_configure_do())
<13>1 2024-01-24T10:50:31+02:00 homerouter.phanosp.com opnsense 59987 - [meta sequenceId="34"] /usr/local/etc/rc.newwanip: plugins_configure vpn (,wan)
<13>1 2024-01-24T10:50:31+02:00 homerouter.phanosp.com opnsense 59987 - [meta sequenceId="35"] /usr/local/etc/rc.newwanip: plugins_configure vpn (execute task : ipsec_configure_do(,wan))
<13>1 2024-01-24T10:50:31+02:00 homerouter.phanosp.com opnsense 59987 - [meta sequenceId="36"] /usr/local/etc/rc.newwanip: plugins_configure vpn (execute task : openvpn_configure_do(,wan))
<13>1 2024-01-24T10:50:31+02:00 homerouter.phanosp.com opnsense 59987 - [meta sequenceId="37"] /usr/local/etc/rc.newwanip: Resyncing OpenVPN instances for interface WAN.
<13>1 2024-01-24T10:50:31+02:00 homerouter.phanosp.com kernel - - [meta sequenceId="38"] <6>ovpns1: link state changed to DOWN


Can someone help me pinpoint the issue and perhaps how to resolved it? Could it a hardware problem or a software issue on the OPNSense side?