31
German - Deutsch / Re: An API exception occured
« on: April 15, 2019, 06:19:24 pm »
Unter Services: IGMP Proxy ist die Meldung seit 19.1.6 weg, dort wirkt der Fix.
Gruss, Stefan
Gruss, Stefan
This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.
root@OPNsense:~ # cat /var/log/system.log | grep dhc
[ ]
Apr 10 18:25:37 OPNsense dhclient: Creating resolv.conf
Apr 10 18:25:37 OPNsense dhclient[53161]: bound to XXX.XXX.XXX.XXX -- renewal in 900 seconds.
Apr 10 18:37:42 OPNsense dhcp6c[6317]: Sending Renew
Apr 10 18:37:42 OPNsense dhcp6c[6317]: unknown or unexpected DHCP6 option server unicast, len 16
Apr 10 18:37:42 OPNsense dhcp6c[6317]: Received REPLY for RENEW
Apr 10 18:37:42 OPNsense dhcp6c[6317]: status code for PD-0: success
Apr 10 18:40:37 OPNsense dhclient[53161]: DHCPREQUEST on igb0 to XXX.XXX.XXX.XXX port XX
Apr 10 18:40:37 OPNsense dhclient[53161]: DHCPACK from XXX.XXX.XXX.XXX
Apr 10 18:40:37 OPNsense dhclient: Creating resolv.conf
suricata: [100145] <Notice> -- all [X] packet processing threads, [X] management threads initialized, engine started.
Und nach einer Regeländerung:suricata: [100145] <Notice> -- rule reload starting
Hardware CRC | [X] Disable |
Hardware TSO | [X] Disable |
Hardware LRO | [X] Disable |
VLAN Hardware Filtering | [Disable VLAN Hardware Filtering] (Wenn VLAN im Einsatz) |
Enabled | [X] |
IPS mode | [X] |
Promiscuous mode | [X] (Wenn VLAN im Einsatz) |
Pattern matcher | [Hyperscan] |
Interfaces | [IGB1, WAN] |
Home networks | [private IPv6-Netzwerke zusätzlich eintragen] |
Warning: count(): Parameter must be an array or an object that implements Countable in /usr/local/www/services_igmpproxy.php on line 121
suricata: [100237] <Notice> -- all 5 packet processing threads, 4 management threads initialized, engine started.
suricata: [100237] <Warning> -- [ERRCODE: SC_WARN_DEFAULT_WILL_CHANGE(317)] - in 5.0 the default for decoder event stats will go from 'decoder.<proto>.<event>' to 'decoder.event.<proto>.<event>'. See ticket #2225. To suppress this message, set stats.decoder-events-prefix in the yaml.
suricata: [100135] <Notice> -- This is Suricata version 4.1.3 RELEASE
Pass, | LAN, | IPv4, | ICMP, | Echo Request, | Source: LAN net, | Destination: LAN address *1 |
Block, | LAN, | IPv4, | ICMP, | Echo Request, | Source: LAN net, | Destination: RFC 1918 *1 |
Block, | LAN, | IPv6, | ICMP, | Echo Request, | Source: LAN net, | Destination: RFC 1918 *1 |
Pass, | LAN, | IPv4+6, | ICMP, | any, | Source: LAN net, | Destination: any |
Pass, | WAN, | IPv4, | ICMP, | Echo Request, | Source: any, | Destination: WAN address |
Pass, | WAN, | IPv4, | ICMP, | Destination Unreachable, | Source: any, | Destination: WAN address *2 |
Pass, | WAN, | IPv4, | ICMP, | Time Exceeded, | Source: any, | Destination: WAN address *2 |
Pass, | WAN, | IPv6, | ICMP, | Destination Unreachable, | Source: any, | Destination: WAN address *2 |
Pass, | WAN, | IPv6, | ICMP, | Packet Too Big, | Source: any, | Destination: WAN address *3 |
Pass, | WAN, | IPv6, | ICMP, | Time Exceeded, | Source: any, | Destination: WAN address *2 |
Pass, | WAN, | IPv6, | ICMP, | Parameter Problem, | Source: any, | Destination: WAN address *2 |
Pass, | WAN, | IPv6, | ICMP, | Echo Request, | Source: any, | Destination: WAN address |
Pass, | WAN, | IPv6, | ICMP, | Echo Reply, | Source: any, | Destination: WAN address *2 |
root@OPNsense:~ # cat /tmp/rules.debug | grep ipv6-icmp
pass in log quick inet6 proto ipv6-icmp from {any} to {any} icmp6-type {1,2,135,136} keep state label "IPv6 requirements (ICMP)"
pass out log quick inet6 proto ipv6-icmp from {(self)} to {fe80::/10,ff02::/16} icmp6-type {129,133,134,135,136} keep state label "IPv6 requirements (ICMP)"
pass in log quick inet6 proto ipv6-icmp from {fe80::/10} to {fe80::/10,ff02::/16} icmp6-type {128,133,134,135,136} keep state label "IPv6 requirements (ICMP)"
pass in log quick inet6 proto ipv6-icmp from {ff02::/16} to {fe80::/10} icmp6-type {128,133,134,135,136} keep state label "IPv6 requirements (ICMP)"
Pass, | WAN, | IPv4, | ICMP, | Destination Unreachable, | Source: any, | Destination: any* |
Pass, | WAN, | IPv4, | ICMP, | Time Exceeded, | Source: any, | Destination: any* |
Pass, | LAN, | IPv4, | ICMP, | Echo request, | Source: LAN net, | Destination: LAN address |
Block, | LAN, | IPv4, | ICMP, | Echo request, | Source: LAN net, | Destination: RFC 1918* |
Pass, | LAN, | IPv4, | ICMP, | any, | Source: LAN net, | Destination: RFC 1918 |
Pass, | LAN, | IPv4, | ICMP, | Echo request, | Source: LAN net, | Destination: ! RFC 1918 |
Pass, | LAN, | IPv4, | ICMP, | Destination Unreachable, | Source: LAN net, | Destination: ! RFC 1918 |
Pass, | LAN, | IPv4, | ICMP, | Time Exceeded, | Source: LAN net, | Destination: ! RFC 1918 |