Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Topics - Thorrrr

#1
Hello Guys
 
Firstly i  made a mistake with config so its my fault lol (brain fart)

So i assigned a NIC port to the IP address of my Wifi Router

I have 192.168.23.1 = Opnsesne and 192.168.23.2 Nighthawk Wifi Router running DDWRT

I have a backup of my config  but i have lost my total Network no access to webui.
So i have connected my Zimaboard to a monitior and keyboard but on boot i cannot stop it loading.
When it gets to option console menu i hit the keyboard but nothing stops the load!
Is there a key combo i need to stop it?

Also i have root user turned off for security reason the use i have is full admin but i think still does not have the powers of root

Any ideas how to quickly get back i am on the router now that comes with Plusnet Hub 2 for full fibre
But no idea if i would access the unit
#2
I  have Adguard and Crowdsec as plugins but due to an upgrade to 1gb Full Fibre i am having speed issues due to my hardware.
So i have bought a Dell NIC card as mine are Realtek ones and offloading Adguard and Crowdsec to my Proxmox server.

Is there a way to export the plugin settings from Opnsesne ?
#3
I have been going crazy all yesterday trying to work out ssh on opnsense.
If i have Permit password login enabled my public key is verified and matches my laptop.
If i try to ssh into opnsense it works perfect. But obviously i dont want Permit password login enabled if using ssh.
Soon as i disable Permit password login it no longer works says not recognised public key.

If i re enable go back n and check the public key its different!
So i tried like 8 times adding the correct one verifying it which it did each time.
But son as i disabled Permit password login it stops working please help me understand the issue
#4
HI Guys
Not sure if its my hardware or some settings i need to adjust to get my new Full Fibre Connection to work.
Been using Opnsesne for 24 months plus no issue. I have running on a Zimaboard

CPU: Intel Celeron N3450 at 1.10 GHz (Quad-core).
RAM: 8 GB (8380 MB).


Just had it fitted today after 3 months. After fitting it worked i was getting 356 download on Wifi 256 Upload engineer said it would settle down and speed increase.

But it was opposite i lost Wifi then lost  WLAN / LAN i have tried rebooting all the systems but nothing. I have had to add back the old connection and now it works fine.

My setup is described above is there anyway to see what the point of failure is?

My Opnsense modem did not look overloaded and i do not think it would just break the connection?
From Opnsense cable to switch from switch up-to Nighthawk Wifi Router?

Are there any logs i can check to see if its Opnsense or Hardware issues ?
#5
HI Guys
Currently on:-
OPNsense 23.7.12_5-amd64
FreeBSD 13.2-RELEASE-p7
OpenSSL 1.1.1w

Is it safe to update directly to  24.1 ?

I know how to backup but a noob with Opnsesne  :)
#6
Hi Guys
I always take the stand and wait when new update popup to let let more knowledgeable  users test it out.
I am currently set on this

Are there any known issues i need to be wary of or should i hold back a little longer ?


Thorrrr
#7
24.1, 24.4 Legacy Series / API Error trying to Update
January 31, 2024, 10:44:31 AM
HI Guys
I tried a update this morning saying it was a hotfix but during the small update i had an error popup see attachment
Full log do i need to revert https://logs.notifiarr.com/?4dfc41f44bf3a39b#HmJSTGDRXEH2JpzJJ5TsFY2mG9h4WPZHL5n6Uj15H1HD 

It looks like i need to update to 24.1 but not sure if i should if i have had this error.
https://i.imgur.com/ryLAxiz.png

Also if the update from the WebUI ok to do?
#8
HI Guys

Not sure what the issues are lately having had over 12 months of updates with no issues.The last 2 have been a nightmare i am trying to update today and it is just hanging for 40 min on the last part see here

Terminal Log https://paste.centos.org/view/ebd14956

I know it said reboot required but should it not perform this option itself or do i need to do a manual reboot?

What is the issue and how do i fix it?

Update audit log see https://paste.centos.org/view/fdf75ed2

I have rebooted as mentioned it has started up with crowdsec stopped but the updater is still spinning?

https://i.imgur.com/xpaabLS.png

https://i.imgur.com/gsRLkhc.png

So crowdsec is stopped but still cannot get out of update loop please could somebody help me?

I have also tried a reboot from CLI but gets stuck onPIDS:3338

  0) Logout                              7) Ping host
  1) Assign interfaces                   8) Shell
  2) Set interface IP address            9) pfTop
  3) Reset the root password            10) Firewall log
  4) Reset to factory defaults          11) Reload all services
  5) Power off system                   12) Update from console
  6) Reboot system                      13) Restore a backup

Enter an option: 6

The system will reboot. Do you want to proceed? [y/N]: y

>>> Invoking stop script 'beep'
>>> Invoking stop script 'freebsd'
crowdsec not running? (check /var/run/crowdsec.pid).
Stopping crowdsec_firewall.
Waiting for PIDS: 3338
#9
HI Guys
No idea what has happened i have  OPNsesne 192.168.23.1 on a Zimma Board not had any issues and not even touched it for weeks.
I was working on a Proxmox Server 192.168.23.199 this was rebooted and after that i lost my local access to everything?
I cannot access this server with GUI because it is having issues on boot see https://photos.app.goo.gl/YMzT1mXuASmovPhs9
After this it then goes to login username and password on screen but no GUI and no access.
But after this issue i have lost access to my OPNsesne GUI login but i can access via terminal but not on wifi  or lan no idea why it would mess up OPNsense also lost access to my Unraid server 192.168.23.100.
Anybody any idea how i can start to trouble shoot the mess?
But i do have external internet!
#10
HI Guys

I have had OS running for a few months with help from here and it has been solid no logs nothing.
I have not messed with it but i have started seeing logs popping up do i need to do anything to fix the issue?

Info Logs 100's like this over past few days



I only ask as my other friends with OPNsense do not see these logs

Main message x 55000 times see https://i.imgur.com/V7WYMDR.png

Other Info https://i.imgur.com/XoJSCLO.png

Debug message https://i.imgur.com/yO1eTLI.png

Let me explain how i set it up and was advised it would be ok.
Avaiable Range 192.168.23.1 - 192.168.23.254
Range Set from 192.168.23.10 - 192.168.23.99 This is for OPNsense to allocate out
Within the Avaiable Range i have Static Leases 192.168.23.100 - 192.168.23.254
Within the Avaiable Range i have Static Leases 192.168.23.1 - 192.168.23.9 I have my OPNsense & Wifi Router Static
I only see 20 to 30 items being used within 10 to 99 but the logs are showing IP set in the static lease area !!

https://i.imgur.com/rhWEsnz.png
#11
HI

After seeing these issues on this post https://forum.opnsense.org/index.php?topic=32900.0 .
So i updated to latest version and cleared logs but still seeing same logs messages on lots of  different device IP's
Is this ok or do i need to fix something ?

https://i.imgur.com/PUh2xp9.png
#12
23.1 Legacy Series / Security Audit Log Issues
March 09, 2023, 04:14:17 PM
HI
I am fully up to date  but when i run a security audit i get the following (see below)

I have looked at the link and not sure what to do it just tells me i have issues but no way to fix it ??

***GOT REQUEST TO AUDIT SECURITY***
Currently running OPNsense 23.1.2 at Thu Mar  9 15:09:02 GMT 2023
vulnxml file up-to-date
curl-7.87.0_1 is vulnerable:
  curl -- multiple vulnerabilities
  CVE: CVE-2023-23916
  CVE: CVE-2023-23915
  CVE: CVE-2023-23914
  WWW: https://vuxml.freebsd.org/freebsd/be233fc6-bae7-11ed-a4fb-080027f5fec9.html

1 problem(s) in 1 installed package(s) found.
***DONE***
#13
HI Guys

I have had OS running for a few months and it has been solid no logs nothing.
I have not messed with it but i have started seeing logs popping up do i need to do anything to fix the issue?

Informational Logs 55000's like this over past few days

https://i.imgur.com/uYPBINl.png

Error Logs

https://i.imgur.com/yYShcVd.png
#14
Hello Guys

I hope this message finds you well. I have been working on setting up local domain on my system for the past three days, but despite my efforts, I have been unable to get it working. My initial configuration appears to be correct, but I have come to realize that this software is quite complex, and I require the assistance of someone with more knowledge and expertise.

I have been troubleshooting using DNS Masq, but I have not been able to identify the issue. It's clear to me that I need help in order to make progress.

I would be grateful if someone with more experience could take a look at my setup and provide guidance on how to resolve this issue. I would be happy to provide any additional information or access that may be necessary.

Thank you in advance for your help,

In DNS Masq i see

2023-01-24T16:03:01Warningdnsmasqignoring nameserver 127.0.0.1 - local interface
#15
Hi Guys

I need some help as an amateur to OPNsense I have done some extensive reading, but I am sure you appreciate it is a long road to fully understanding this software and subject matter.
I am trying to get the app.plex.tv to connect as a secure connection.

Weird thing is my local and domain connection shows fully secure.
But to app.plex.tv is shows as insecure, see https://i.imgur.com/4CcPbdp.png ?

From reading I looks like OPNsense is responsible for this. I saw this article which led me to this conclusion see https://support.plex.tv/articles/206225077-how-to-use-secure-server-connections/

The bottom of the page relates to PFSense and some kind of DNS Resolver, but not sure what to check or how to configure it correctly.

I did try last week adding this https://i.imgur.com/AE11VCt.png but made no difference

Update I have checked DNSMasq Log
https://i.imgur.com/Rv6FgU1.png

Please can somebody help me what to check and how to configure

PLEASE NOTE THIS IS RESOLVED
#16
HI Guys

Just a quck noob question i am moving over to Opensense next week.
I am moving from DD-WRT who have a feature to have all your devices in a structed text list in the DNSMasq Options which lets you have a list of all your devices you want to give a static IP address.
I have over 80 and would like to know is there something similar or can you import this into your grid ?

See https://i.imgur.com/5l5FBwu.png