Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - kuya1284

#1
Quote from: RussM on February 07, 2025, 08:57:50 PMYou, Kind Sir, are a lifesaver.  I had configured outbound NAT in accordance with the Config CARP documentation, so had automatic rules disabled, and one manually-defined rule:

OUTSIDE/any/*/*/*/outside VIP

Your post made me realize what I needed to do.  I added a new rule above that one so it is matched first:

OUTSIDE/This Firewall/*/*/*/OUTSIDE address

I then tested outbound comms from the secondary unit, confimed that ping, nslookup, and then firmware status & update checks all worked... so I then ssh'd into a couple of machines on the main network (upstream of the OPNsense pair, and verified that the source NAT address is in fact the OUTSIDE Virtual IP.

It seems like defining that rule should be specified as a requirement in the HA/CARP docs.  Without that rule, the instructions in the Updating a CARP HA Cluster section in the Configuring CARP doc will not work... it was trying to follow that procedure that got me going down this rabbit hole.


I just wanted to say thank you for this. I got stuck with the same situation. After creating the same rule, I was able to get outbound traffic working on my secondary unit.

I agree with you 100% that the documentation needs to be updated. Even other guides that I've come across don't even mention the additional rule. I don't see how it would even be possible to update the secondary unit without the rule you described above (while in BACKUP).

Anyway, thank you so much!
#2
Quote from: franco on July 16, 2025, 02:27:08 PMhttps://github.com/opnsense/tools/commit/a631e759f7

I republished the netdata package with the option enabled in 25.1.11.

All feedback welcome.


Cheers,
Franco

Thank you for the fix! The Netdata Dashboard is working for me again as well. I appreciate the effort!
#3
I'm confirming this issue as well. The /usr/local/share/netdata/web/index.html file no longer exists.
#4
Zenarmor (Sensei) / Re: ZenArmor issue after 24.7.8
November 15, 2024, 05:36:59 PM
I haven't heard back from Zenarmor Support, but I just noticed that the email alerts have stopped. I haven't done anything and the last alert I received was on 11/12/2024. I haven't received anything since then.
#5
Zenarmor (Sensei) / Re: ZenArmor issue after 24.7.8
November 11, 2024, 05:12:05 PM
I got a response back from the Zenarmor team late last night and they're still investigating the issue. They said that the issue isn't affecting Zenarmor operations, which basically confirms our experience. The only issue appears to be the unexpected emails being sent.
#6
Zenarmor (Sensei) / Re: ZenArmor issue after 24.7.8
November 09, 2024, 06:39:56 PM
I'm experiencing the same issue as well. I've been receiving the same emails since upgrading to 24.7.8. Everything appears to be running well with my system.

I'm going to contact Zenarmor support and will report back once I hear back from them.