OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • Profile of lilsense »
  • Show Posts »
  • Messages
  • Profile Info
    • Summary
    • Show Stats
    • Show Posts...
      • Messages
      • Topics
      • Attachments

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

  • Messages
  • Topics
  • Attachments

Messages - lilsense

Pages: 1 ... 6 7 [8] 9 10 ... 40
106
23.7 Legacy Series / Re: Document Everything - Restore failed
« on: August 13, 2023, 02:32:09 am »
I do agree with you on this. The restore config is not to be really trusted. It would only, if it ever works. I have tried it a couple of time with no luck on the same device.

107
Intrusion Detection and Prevention / Re: Zenarmor
« on: August 12, 2023, 09:44:21 pm »
you can if you'd like.

108
Zenarmor (Sensei) / Re: 23.7 CPU / RAM 100% crashing - Zenarmor?
« on: August 12, 2023, 05:07:06 pm »
Adguard is NO IPS. You have no clue what you are talking about yeraycito.

109
Intrusion Detection and Prevention / Re: Zenarmor
« on: August 12, 2023, 04:41:24 pm »
It should be opposite... Zen on LAN and surricata on WAN if I understand them correctly.

110
Zenarmor (Sensei) / checksum mismatch
« on: August 12, 2023, 03:02:34 pm »
I just ran an audit and get:

os-sensei-1.14.2: checksum mismatch for /usr/local/opnsense/mvc/app/library/OPNsense/Zenarmor/StaticConfig.php
os-sensei-1.14.2: checksum mismatch for /usr/local/opnsense/mvc/app/models/OPNsense/Zenarmor/Menu/Menu.xml
os-sensei-1.14.2: missing file /usr/local/zenarmor/output/active/temp/.placeholder
Checking all packages........ done

How should I correct this.

111
23.7 Legacy Series / RADVD issues
« on: August 12, 2023, 01:41:45 pm »
I noticed after the upgrade that my issue may be related to RADVD service


Code: [Select]
2023-08-11T04:35:23-04:00 Warning radvd sendmsg: Permission denied
2023-08-11T04:35:19-04:00 Warning radvd sendmsg: Network is down
2023-08-11T04:35:19-04:00 Informational radvd version 2.19 started
2023-08-11T04:35:19-04:00 Informational radvd returning from radvd main
2023-08-11T04:35:19-04:00 Informational radvd removing /var/run/radvd.pid
2023-08-11T04:35:19-04:00 Warning radvd sendmsg: Network is down
2023-08-11T04:35:19-04:00 Informational radvd sending stop adverts
2023-08-11T04:35:19-04:00 Warning radvd exiting, 1 sigterm(s) received
2023-08-11T04:35:13-04:00 Informational radvd version 2.19 started
2023-08-11T03:38:32-04:00 Error radvd unable to lock pid file, /var/run/radvd.pid: Resource temporarily unavailable


112
23.7 Legacy Series / Re: Upgradethread 23.1.11_1 to 23.7
« on: August 12, 2023, 01:39:58 pm »
nm.

113
23.7 Legacy Series / enabling suricata on WAN interface loses the WAN link
« on: August 09, 2023, 08:27:50 am »
Even after the upgrade to 23.7.1 when enabling Suricata I get the message below from the console immediately and lose the WAN.


arprequest_internal: cannot find matching address
arprequest_internal: cannot find matching address
arprequest_internal: cannot find matching address
arprequest_internal: cannot find matching address
arprequest_internal: cannot find matching address
arprequest_internal: cannot find matching address
arprequest_internal: cannot find matching address


I have also been seeing messages below as well.


fib_algo] inet.0 setup_fd_instance: radix4_lockless algo instance setup failed, failures=3
[fib_algo] inet.0 (radix4_lockless#57) rebuild_fd_flm: table rebuild failed
[fib_algo] inet.0 (radix4_lockless#57) rebuild_fd: sync rebuild failed
[fib_algo] inet.0 setup_fd_instance: radix4_lockless algo instance setup failed, failures=4
[fib_algo] inet.0 (radix4_lockless#57) rebuild_fd_flm: table rebuild failed
[fib_algo] inet.0 (radix4_lockless#57) rebuild_fd: sync rebuild failed
[fib_algo] inet.0 setup_fd_instance: radix4_lockless algo instance setup failed, failures=5
[fib_algo] inet.0 (radix4_lockless#57) rebuild_fd_flm: table rebuild failed
[fib_algo] inet.0 (radix4_lockless#57) rebuild_fd: sync rebuild failed
[fib_algo] inet.0 setup_fd_instance: radix4_lockless algo instance setup failed, failures=6
[fib_algo] inet.0 (radix4_lockless#57) rebuild_fd_flm: table rebuild failed
[fib_algo] inet.0 (radix4_lockless#57) rebuild_fd: sync rebuild failed

114
Hardware and Performance / Re: DEC850
« on: August 04, 2023, 07:48:10 pm »
good luck. Keep us posted.

115
23.7 Legacy Series / Re: Upgradethread 23.1.11_1 to 23.7
« on: August 04, 2023, 03:24:41 pm »
Is there a way to roll back from 23.7 back to 23.1...  :'(

Can I use this to roll back: https://docs.opnsense.org/manual/opnsense_tools.html

116
23.7 Legacy Series / Re: Upgradethread 23.1.11_1 to 23.7
« on: August 04, 2023, 03:23:32 pm »
Looks like that after the upgrade the suricata does not work and found the link below that may be why.

https://forum.opnsense.org/index.php?topic=35130.0

can someone let me know...


117
23.7 Legacy Series / Re: Upgradethread 23.1.11_1 to 23.7
« on: August 04, 2023, 03:11:17 pm »
no AdGuard Service on this device.

118
23.7 Legacy Series / Re: Upgradethread 23.1.11_1 to 23.7
« on: August 04, 2023, 02:56:12 pm »
Since my upgrade I lose the WAN every 6 hours.

What's causing these arprequest_internal: cannot find matching address
I do not have unbound/AGH on this device. :'(


Can someone validate that the below message is related to PHP bug:

[fib_algo] inet.0 (bsearch4#20) rebuild_fd_flm: switching algo to radix4_lockless
[fib_algo] inet.0 setup_fd_instance: radix4_lockless algo instance setup failed, failures=1
[fib_algo] inet.0 (radix4_lockless#57) rebuild_fd_flm: table rebuild failed
[fib_algo] inet.0 (radix4_lockless#57) rebuild_fd: sync rebuild failed

119
23.7 Legacy Series / Re: Upgradethread 23.1.11_1 to 23.7
« on: August 04, 2023, 02:27:16 am »
I started getting these messages:

HW_PROBE/ growfs*

what are these?

120
23.7 Legacy Series / Re: Upgradethread 23.1.11_1 to 23.7
« on: August 03, 2023, 12:53:51 pm »
on a DEC850 ran the update and was not able to connect to WAN getting:

arprequest_internal: cannot find matching address

I had to stop suricata and reboot to fix. Once I enabled, I would lose the WAN and the same messages would pop.

I am currently running it without suricata.

I had tailscale running and thought that was the issue but seems not to be the case.


added:

ran a sec update and saw this:
***GOT REQUEST TO AUDIT SECURITY***
Currently running OPNsense 23.7 at Thu Aug  3 07:07:47 EDT 2023
Fetching vuln.xml.xz: .......... done
openssl-1.1.1u,1 is vulnerable:
  OpenSSL -- Excessive time spent checking DH q parameter value
  CVE: CVE-2023-3817
  WWW: https://vuxml.FreeBSD.org/freebsd/bad6588e-2fe0-11ee-a0d1-84a93843eb75.html

libX11-1.7.2,1 is vulnerable:
  libX11 -- Sub-object overflows
  CVE: CVE-2023-3138
  WWW: https://vuxml.FreeBSD.org/freebsd/734b8f46-773d-4fef-bed3-61114fe8e4c5.html

2 problem(s) in 2 installed package(s) found.
***DONE***

Pages: 1 ... 6 7 [8] 9 10 ... 40
OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2