Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Topics - BNaCl

#1
In the reporting the majority of the remote host pie chart is represented as "other" which you cannot drill down. This is also an issue in the other charts as well. Ideas in how to analyze this traffic?
#2
I have been having a problem with repeated ethernet detached events which seem to cause very brief interface flapping.

I have narrowed this down to Sensei/ZA as it does not happen when in bypass, but I cannot figure out how to fix and wondering if anyone can add any insight. It also should be noted that I am running in a somewhat unique config using their Bridge Mode which is labeled as "experimental" so there's that. However, I would think running a NGFW in a transparent filtering bridge config isn't unusual and should work.

Here is my setup:


  • Protectli appliance with Intel(R) Core(TM) i3-7100U CPU, 8 GB RAM, Intel NICs.
  • Two interfaces enabled in OPNs and configured as a transparent filtering bridge in OPNs as L2 bridge (EM1/LAN and EM0/WAN shown in logs), no L3 IP assigned.
  • Third MGT interface assigned (this interface isn't protected by Sensei and doesn't have the issue)
  • CRC/TSO/LRO disabled on all interfaces
  • Firewall disabled as I don't need any of those features and want to remove unnecessary variables
  • Sensei configured to protect the bridge (not the MGT interface)

2022-12-20T10:13:02-05:00 Error opnsense /usr/local/etc/rc.newwanip: Failed to detect IP for WAN[wan]
2022-12-20T10:13:02-05:00 Error opnsense /usr/local/etc/rc.newwanip: IPv4 renewal is starting on 'em0'
2022-12-20T10:13:02-05:00 Error opnsense /usr/local/etc/rc.linkup: DEVD: Ethernet attached event for static wan(em0)
2022-12-20T10:13:01-05:00 Error opnsense /usr/local/etc/rc.newwanip: Failed to detect IP for LAN[lan]
2022-12-20T10:13:01-05:00 Error opnsense /usr/local/etc/rc.newwanip: IPv4 renewal is starting on 'em1'
2022-12-20T10:13:01-05:00 Error opnsense /usr/local/etc/rc.linkup: DEVD: Ethernet attached event for static lan(em1)
2022-12-20T10:12:59-05:00 Error opnsense /usr/local/etc/rc.linkup: DEVD: Ethernet detached event for static wan(em0)
2022-12-20T10:12:58-05:00 Error opnsense /usr/local/etc/rc.linkup: DEVD: Ethernet detached event for static lan(em1)


Thanks in advance!
#3
I am a bit confused by what I am seeing on the Reporting > Health > Quality > WAN. Specifically I am seeing intermittent loss represented as 100m or as high as 500m. I am expecting a percentage, so what does the "m" stand for? Even more confusing, I can find no other metric to corroborate the loss being reported. CPU/RAM and WAN bandwidth is not under strain (at all) and I cannot reproduce any ICMP packet loss via a manual ping to line up with what the Quality chart is showing. Internet quality tests (DSLReports, Ookla) come back clean and I also have moved the "monitor IP" to other reliable IP's and get the same result.

Thanks in advance.   
#4
Loving netdata plugin but the app breakdown of CPU usage is not populating and is instead lumping them all under system. Based on what I have read the plugin should install by default, but I am by no means an expert on cmd line configuration.

Thx in advance.
#5
Hoping some performance experts can help me to understand and evaluate performance of my OPNs install on a Protectli FW4B:

Intel(R) Celeron(R) CPU J3160 @ 1.60GHz (4 cores)
8 GB RAM
128 SSD
4 Intel GB NIC
WAN: 400 Mbps down / 20 Mbps up

Seeing the following under medium load (sometimes peaking over 1.0 but never seen over 2):

Load average   0.97, 0.64, 0.68


item                min             max              average
user                    0             30.157691647      3.507191605801969
nice                  0             0                      0
system           0             15.248910052      1.3458949910876143
interrupt #   0             8.4754407825      0.5792166584692486
(Interrupts jump to 18 or so when under a speed test maxing out WAN)


For interrupts, I don't really understand what is considered out of range.

Thanks in advance!
#6
Curious to know if anyone is experiencing issues with Sensei and OPNs 20.1? Everything was running fine until I upgraded to 20.1 and now the report widgets are extremely slow to load. The configuration screens are slow as well. Re-install and everything runs fine for awhile but slowly degrades.

Opened a case with Sensei support and they believe it is the processor, yet there are no signs of bottlenecks in the perf data. Also, seems odd considering it was working just fine prior. I am using a Protectli FW4B with Intel(R) Celeron(R) CPU J3160 @ 1.60GHz (4 cores), 8 GB RAM and SSD. Only 3 users in the house and they aren't doing anything crazy. Usually less than 5 concurrent devices using discernible FW resources yet the DB seems large and grows to 500MB+ within 24 hours of fresh install.

Really enjoyed the features of Sensei and don't want to purchase a new box unless necessary.