Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - turipriv

#1
The last firmware upgrade (25.1.6_4) fixed it for me.


Versions
OPNsense 25.1.6_4-amd64
FreeBSD 14.2-RELEASE-p3
OpenSSL 3.0.16
#2
Hi,

I'm having this same issue. Whenever I click on the "View Alert Info" button, I get an empty pop-up instead of the usual window displaying alert info and allowing me to change the rule disposition.

Tried different browsers and clearing cache as well, to no success.

More of an annoyance than an issue, but a suggestion on how to solve it would be much appreciated.
#3
Same here.

Upgraded without any issue whatsoever.

Excellent job everyone.
#4
Quote from: bs20707 on February 13, 2025, 05:20:28 PMMine wasn't so good. After the update it refuses to connect to the router, basically a local LAN box now. All internal reporting thinks everything is great except it refuses to resolve any DNS to direct IP access.

My only fix might be what I did last time a factory reset!!

That's weird.

What is your topology and DNS configuration?

You said in the past you had to factory reset, were you experiencing the same issue?

If you share some more details we may try to troubleshoot it further.
#5
Quote from: Mark_the_Red on February 12, 2025, 09:47:54 PMHear, hear.  I upgraded and resolved a ip queue issue I was having. 

sysctl net.inet.ip.intr_queue_drops
Not sure if the new kernel did it, but everything is working smooth on my end.  Adguard and Unifi controller all hosted bare metal too. 

Good job team!

Blood, death, and vengeance!

I'm sorry, given your nickname I just couldn't help it... :P
#6
Quote from: Twitchiz on February 12, 2025, 05:56:02 PMSo I've never had this issue before, and google isn't helping much. Where in the GUI would I find the upgrade log? Would rather not have to dive into the terminal for this just yet, but I can if no other alternative.

In the firmware upgrade page in the GUI, a Tab is displaying live messages during the upgrade and audits.

Posting its content would be a good start.
#7
Did you managed to extract the upgrade logs?
#8
I usually take my time when it comes to switching between major releases so I waited for release 25.1.1 before saying goodbye to 24.7.12.

All that being said, both the big jump from 24.7 to 25.1 and the smallest one between 25.1 to 25.1.1 went smoothly.

I have not experienced any issues during the upgrades and so far performances are ace as usual.

For the reference, my current feature set is as follows:

  • Unbound DNS with blocklists enabled
  • Suricata in IPS mode
  • Kea DHCP Server
  • NTopNG
  • Wireguard ClientVPN

Round of applause to all the team!
#9
Amen to that.

While it is good to jump on the latest major release if you are running it in a test environment, it is definitely worth waiting if your firewall is running in something close to a production environment (whether it is your home network or your company network).

In my case, I'd rather fight with my enthusiasm and wait for the new features to be stable, always thankful to thee community for their hard work.
#10
24.7, 24.10 Legacy Series / Very smooth upgrade
August 08, 2024, 06:37:37 PM
Upgrade from 24.1.10 to 24.7_9 went smoothly with no issues whatsoever.

After almost one week of usage, I have not experienced a single feature break except for some minor issues with the dashboard widgets that have been solved with today's update to 24.7.1.

My current installation includes:

  • ISC DHCPv4 (will move to KEA by the end of the month)
  • Suricata in IPS mode
  • ntopng
  • Wireguard client VPN

Thumbs up to everyone for the great job!
#11
Hi,

I think that what you are looking for in OPNsense is Outbound NAT which normally is configured automatically.



What would happen in this case is that OPNSense automatically translates all your inside IP addresses into its WAN IP address, the IP address of the interface connected to your router.

Your router will then perform another NAT, and translate its inside IP address to its public (outside) address.

If for whatever reason you want to perform 1:1 NAT Manually, you should set outbound nat to either Hybrid or Manual.

More info can be found here: https://docs.opnsense.org/manual/nat.html