106
This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.
107
German - Deutsch / Re: Clam AntiVirus
« on: October 15, 2019, 02:03:19 pm »108
German - Deutsch / Clam AntiVirus
« on: October 15, 2019, 01:00:01 pm »
Clam AntiVirus läuft auf Hochtouren
danke für jeden hinweis,
MfG k0ns0l3
Code: [Select]
12903 clamav 2 103 0 425M 387M 0K CPU3 3 11:03 102.29% clamd
danke für jeden hinweis,
MfG k0ns0l3
109
19.7 Legacy Series / Re: High memory usage
« on: October 02, 2019, 02:55:14 pm »
I also notice that a lot has changed from version 19.1 to 19.7, just one click in the menu takes a few seconds longer Let's wait for patch
greeting k0ns0l3
greeting k0ns0l3
110
19.7 Legacy Series / Re: Recommendations for OPNsense box?
« on: October 01, 2019, 07:06:22 pm »111
19.7 Legacy Series / Re: High memory usage
« on: September 30, 2019, 03:57:34 pm »
So with me it looks like that (APU2, OPNsense 19.7.4_1 (amd64/LibreSSL):
top -S -w -o size
top -S -w -o res
top -S -w -o swap
greeting k0ns0l3
top -S -w -o size
Code: [Select]
last pid: 80838; load averages: 0.92, 1.01, 0.77 up 1+19:21:10 15:51:51
66 processes: 2 running, 63 sleeping, 1 waiting
CPU: 12.2% user, 0.0% nice, 0.0% system, 7.2% interrupt, 80.6% idle
Mem: 177M Active, 2094M Inact, 537M Wired, 262M Buf, 1108M Free
Swap: 10G Total, 10G Free
PID USERNAME THR PRI NICE SIZE RES SWAP STATE C TIME WCPU COMMAND
58406 root 6 20 0 1479M 415M 0K nanslp 3 138:02 49.46% suricata
70449 root 1 20 0 1038M 5804K 0K select 3 0:28 0.03% ntpd
68356 root 1 20 0 1037M 7156K 0K select 1 0:00 0.06% sshd
61852 root 1 20 0 1037M 5988K 0K select 2 0:00 0.00% sshd
9170 root 2 20 0 1035M 2588K 0K piperd 2 0:00 0.00% sshlockout_pf
96415 root 2 20 0 1035M 2580K 0K uwait 3 0:00 0.00% sshlockout_pf
75399 root 1 20 0 1034M 3916K 0K CPU0 0 0:00 0.21% top
51301 root 1 20 0 1034M 4212K 0K pause 1 0:00 0.00% csh
39989 root 1 52 0 1034M 3000K 0K wait 2 1:08 0.00% sh
29447 root 1 52 0 1034M 2960K 0K wait 3 0:00 0.00% sh
4481 root 1 20 0 1033M 2932K 0K bpf 2 0:36 0.00% filterlog
94040 _dhcp 1 20 0 1033M 3000K 0K select 1 0:00 0.00% dhclient
69056 root 1 52 0 1033M 2892K 0K select 3 0:00 0.00% dhclient
66633 root 1 20 0 1033M 2932K 0K select 0 0:15 0.00% syslogd
80767 root 1 40 0 1033M 2892K 0K nanslp 0 0:07 0.00% cron
63678 root 1 52 0 1033M 2528K 0K ttyin 1 0:00 0.00% getty
58013 root 1 52 0 1033M 2480K 0K piperd 1 0:00 0.00% daemon
295 root 1 20 0 1033M 2496K 0K select 2 1:02 0.03% powerd
60081 nobody 1 20 0 1033M 2420K 0K sbwait 2 0:02 0.00% samplicate
80781 root 1 52 0 1033M 2392K 0K nanslp 2 0:00 0.00% sleep
76119 clamav 2 20 0 791M 739M 0K select 2 20:27 0.00% clamd
top -S -w -o res
Code: [Select]
PID USERNAME THR PRI NICE SIZE RES SWAP STATE C TIME WCPU COMMAND
76119 clamav 2 20 0 791M 739M 0K select 2 20:27 0.00% clamd
58406 root 6 20 0 1479M 415M 0K nanslp 1 138:36 2.11% suricata
49032 root 1 52 0 37488K 28708K 0K accept 0 0:01 0.00% php-cgi
34009 root 1 20 0 37360K 28520K 0K accept 2 0:01 0.00% php-cgi
75766 root 1 52 0 39608K 28232K 0K accept 3 0:15 0.00% python3.7
1610 root 1 22 0 37232K 28040K 0K accept 1 0:00 0.00% php-cgi
76069 root 1 23 0 35312K 26652K 0K accept 3 0:02 0.00% php-cgi
20663 root 1 22 0 35440K 26496K 0K accept 1 0:01 0.00% php-cgi
70495 root 1 52 0 37104K 24488K 0K accept 2 0:00 0.00% php-cgi
1013 root 1 20 0 26108K 21516K 0K select 0 636:38 0.02% python3.7
13837 root 1 52 0 27828K 21360K 0K wait 0 0:04 0.00% python3.7
41778 root 1 52 0 34184K 18444K 0K wait 2 0:00 0.00% php-cgi
40821 root 1 52 0 34184K 18436K 0K wait 2 0:00 0.00% php-cgi
29666 clamav 1 20 0 16072K 11108K 0K pause 3 0:52 0.00% freshclam
30040 root 2 20 0 21456K 10552K 0K kqread 2 0:47 0.00% syslog-ng
2281 dhcpd 1 20 0 16584K 9156K 0K select 2 0:01 0.00% dhcpd
28922 root 1 20 0 12296K 8556K 0K kqread 1 0:17 0.01% lighttpd
28086 root 1 52 0 12856K 7492K 0K wait 0 0:00 0.00% syslog-ng
top -S -w -o swap
Code: [Select]
last pid: 40337; load averages: 0.46, 0.88, 0.75 up 1+19:23:43 15:54:24
66 processes: 2 running, 63 sleeping, 1 waiting
CPU: 0.7% user, 0.0% nice, 0.3% system, 0.7% interrupt, 98.2% idle
Mem: 176M Active, 2094M Inact, 537M Wired, 262M Buf, 1109M Free
Swap: 10G Total, 10G Free
PID USERNAME THR PRI NICE SIZE RES SWAP STATE C TIME WCPU COMMAND
11 root 4 155 ki31 0K 64K 0K RUN 0 154.8H 386.09% idle
12 root 35 -52 - 0K 560K 0K WAIT 0 122:27 3.40% intr
58406 root 6 20 0 1479M 415M 0K nanslp 3 138:37 3.28% suricata
40337 root 1 20 0 1034M 3624K 0K CPU0 0 0:00 0.23% top
16 root 1 -16 - 0K 16K 0K pftm 0 1:22 0.10% pf purge
64407 root 1 16 - 0K 16K 0K syncer 3 4:33 0.09% syncer
68356 root 1 20 0 1037M 7156K 0K select 2 0:00 0.06% sshd
295 root 1 20 0 1033M 2496K 0K select 1 1:02 0.04% powerd
1013 root 1 20 0 24060K 20996K 0K select 2 636:47 0.02% python3.7
17 root 1 -16 - 0K 16K 0K - 2 0:53 0.02% rand_harvestq
70449 root 1 20 0 1038M 5804K 0K select 2 0:28 0.02% ntpd
28922 root 1 20 0 12296K 8556K 0K kqread 3 0:17 0.01% lighttpd
4481 root 1 20 0 1033M 2932K 0K bpf 0 0:36 0.01% filterlog
39847 root 2 -16 - 0K 32K 0K psleep 2 0:09 0.01% bufdaemon
4808 root 3 -16 - 0K 48K 0K psleep 2 0:15 0.00% pagedaemon
0 root 34 -16 - 0K 544K 0K swapin 0 0:01 0.00% kernel
71960 root 1 -16 - 0K 16K 0K vlruwt 0 0:03 0.00% vnlru
47929 root 1 20 - 0K 16K 0K - 2 0:03 0.00% bufspacedaemon
76119 clamav 2 20 0 791M 739M 0K select 2 20:27 0.00% clamd
greeting k0ns0l3
112
19.7 Legacy Series / Re: High memory usage
« on: September 28, 2019, 09:35:16 am »
Try with a new installation,
greeting k0ns0l3
greeting k0ns0l3
113
19.7 Legacy Series / Re: constant ~50% cpu usage according to 'sysctl dev.cpu.*'
« on: September 19, 2019, 03:10:38 pm »
That's not different with me either (apu2,bios v4.10.0.1) :
greeting k0ns0l3
Code: [Select]
sysctl dev.cpu | grep cx
dev.cpu.3.cx_method: C1/hlt
dev.cpu.3.cx_usage_counters: 26070037
dev.cpu.3.cx_usage: 100.00% last 37124us
dev.cpu.3.cx_lowest: C2
dev.cpu.3.cx_supported: C1/1/0
dev.cpu.2.cx_method: C1/hlt
dev.cpu.2.cx_usage_counters: 26186025
dev.cpu.2.cx_usage: 100.00% last 21595us
dev.cpu.2.cx_lowest: C2
dev.cpu.2.cx_supported: C1/1/0
dev.cpu.1.cx_method: C1/hlt
dev.cpu.1.cx_usage_counters: 26131339
dev.cpu.1.cx_usage: 100.00% last 52575us
dev.cpu.1.cx_lowest: C2
dev.cpu.1.cx_supported: C1/1/0
dev.cpu.0.cx_method: C1/hlt C2/io
dev.cpu.0.cx_usage_counters: 1920478 25752212
dev.cpu.0.cx_usage: 6.93% 93.06% last 1677us
dev.cpu.0.cx_lowest: C2
dev.cpu.0.cx_supported: C1/1/0 C2/2/400
Code: [Select]
sysctl -a |grep -i cpu
kern.smp.cpus: 4
kern.smp.maxcpus: 256
kern.ccpu: 0
<cpu count="4" mask="f,0,0,0">0, 1, 2, 3</cpu>
<cpu count="4" mask="f,0,0,0">0, 1, 2, 3</cpu>
<cpu count="1" mask="1,0,0,0">0</cpu>
<cpu count="1" mask="2,0,0,0">1</cpu>
<cpu count="1" mask="4,0,0,0">2</cpu>
<cpu count="1" mask="8,0,0,0">3</cpu>
kern.sched.cpusetsize: 32
kern.pin_pcpu_swi: 0
kern.racct.pcpu_threshold: 1
cpu HAMMER
device cpufreq
kern.vt.splash_cpu_duration: 10
kern.vt.splash_cpu_style: 2
kern.vt.splash_ncpu: 0
kern.vt.splash_cpu: 0
vfs.ncpurgeminvnodes: 512
net.inet.tcp.per_cpu_timers: 0
debug.cpufreq.verbose: 0
debug.cpufreq.lowest: 0
debug.acpi.cpu_unordered: 0
kdb.enter.default=textdump set; capture on; run lockinfo; show pcpu; bt; ps; alltrace; capture off; call doadump; reset
hw.ncpu: 4
hw.acpi.cpu.cx_lowest: C2
dev.amdtemp.0.%desc: AMD CPU On-Die Thermal Sensors
dev.cpufreq.0.%parent: cpu0
dev.cpufreq.0.%pnpinfo:
dev.cpufreq.0.%location:
dev.cpufreq.0.%driver: cpufreq
dev.cpufreq.0.%desc:
dev.cpufreq.%parent:
dev.hwpstate.0.%parent: cpu0
dev.acpi_perf.3.%parent: cpu3
dev.acpi_perf.2.%parent: cpu2
dev.acpi_perf.1.%parent: cpu1
dev.acpi_perf.0.%parent: cpu0
dev.cpu.3.temperature: 50.6C
dev.cpu.3.cx_method: C1/hlt
dev.cpu.3.cx_usage_counters: 26079894
dev.cpu.3.cx_usage: 100.00% last 75us
dev.cpu.3.cx_lowest: C2
dev.cpu.3.cx_supported: C1/1/0
dev.cpu.3.%parent: acpi0
dev.cpu.3.%pnpinfo: _HID=none _UID=0
dev.cpu.3.%location: handle=\_PR_.P003
dev.cpu.3.%driver: cpu
dev.cpu.3.%desc: ACPI CPU
dev.cpu.2.temperature: 50.6C
dev.cpu.2.cx_method: C1/hlt
dev.cpu.2.cx_usage_counters: 26194688
dev.cpu.2.cx_usage: 100.00% last 38us
dev.cpu.2.cx_lowest: C2
dev.cpu.2.cx_supported: C1/1/0
dev.cpu.2.%parent: acpi0
dev.cpu.2.%pnpinfo: _HID=none _UID=0
dev.cpu.2.%location: handle=\_PR_.P002
dev.cpu.2.%driver: cpu
dev.cpu.2.%desc: ACPI CPU
dev.cpu.1.temperature: 50.6C
dev.cpu.1.cx_method: C1/hlt
dev.cpu.1.cx_usage_counters: 26140208
dev.cpu.1.cx_usage: 100.00% last 33us
dev.cpu.1.cx_lowest: C2
dev.cpu.1.cx_supported: C1/1/0
dev.cpu.1.%parent: acpi0
dev.cpu.1.%pnpinfo: _HID=none _UID=0
dev.cpu.1.%location: handle=\_PR_.P001
dev.cpu.1.%driver: cpu
dev.cpu.1.%desc: ACPI CPU
dev.cpu.0.temperature: 50.6C
dev.cpu.0.cx_method: C1/hlt C2/io
dev.cpu.0.cx_usage_counters: 1922372 25761339
dev.cpu.0.cx_usage: 6.94% 93.05% last 31us
dev.cpu.0.cx_lowest: C2
dev.cpu.0.cx_supported: C1/1/0 C2/2/400
dev.cpu.0.freq_levels: 1000/980 800/807 600/609
dev.cpu.0.freq: 1000
dev.cpu.0.%parent: acpi0
dev.cpu.0.%pnpinfo: _HID=none _UID=0
dev.cpu.0.%location: handle=\_PR_.P000
dev.cpu.0.%driver: cpu
dev.cpu.0.%desc: ACPI CPU
dev.cpu.%parent:
security.jail.param.cpuset.id: 0
greeting k0ns0l3
114
19.7 Legacy Series / Re: constant ~50% cpu usage according to 'sysctl dev.cpu.*'
« on: September 13, 2019, 08:24:51 am »
try this command :
sysctl dev.cpu | grep cx
sysctl -a |grep -i cpu
greeting k0ns0l3
sysctl dev.cpu | grep cx
sysctl -a |grep -i cpu
greeting k0ns0l3
115
German - Deutsch / Re: vulnerable ...
« on: August 27, 2019, 05:28:42 pm »nghttp klingt nach nginx oder haproxy, die eine Abhängigkeit haben. Der Beschreibung nach kann man dir den Webserver / Load Balancer abschießen aber kommt zumindest nicht ins Netz.
Das mit ClamAV ist kritischer, da ZIP-Bomben die ganze Appliance lahm legen können.
Das sind beides externe Ports - d. h. die werden sicher beim nächsten Update gefixt werden.
Danke für die Unterstützung
116
German - Deutsch / vulnerable ...
« on: August 27, 2019, 01:48:31 pm »
Hallo ,
wenn ich das Security Audit durchführe kommen folgende Fehler:
Audit erledigt.
***GOT REQUEST TO AUDIT SECURITY***
Fetching vuln.xml.bz2: .......... done
clamav-0.101.2,1 is vulnerable:
clamav -- multiple vulnerabilities
CVE: CVE-2019-12900
CVE: CVE-2019-12625
WWW: https://vuxml.FreeBSD.org/freebsd/dbd1f627-c43b-11e9-a923-9c5c8e75236a.html
libnghttp2-1.39.1_1 is vulnerable:
nghttp2 -- multiple vulnerabilities
CVE: CVE-2019-9513
CVE: CVE-2019-9511
WWW: https://vuxml.FreeBSD.org/freebsd/121fec01-c042-11e9-a73f-b36f5969f162.html
2 problem(s) in the installed packages found.
***DONE***
Danke für Eure Erläuterung!
MfG k0ns0l3
wenn ich das Security Audit durchführe kommen folgende Fehler:
Audit erledigt.
***GOT REQUEST TO AUDIT SECURITY***
Fetching vuln.xml.bz2: .......... done
clamav-0.101.2,1 is vulnerable:
clamav -- multiple vulnerabilities
CVE: CVE-2019-12900
CVE: CVE-2019-12625
WWW: https://vuxml.FreeBSD.org/freebsd/dbd1f627-c43b-11e9-a923-9c5c8e75236a.html
libnghttp2-1.39.1_1 is vulnerable:
nghttp2 -- multiple vulnerabilities
CVE: CVE-2019-9513
CVE: CVE-2019-9511
WWW: https://vuxml.FreeBSD.org/freebsd/121fec01-c042-11e9-a73f-b36f5969f162.html
2 problem(s) in the installed packages found.
***DONE***
Danke für Eure Erläuterung!
MfG k0ns0l3
117
19.7 Legacy Series / Re: 19.7 development milestones
« on: July 16, 2019, 05:28:20 pm »
direct upgrade possible 19.1 => 19.7 ?
Kind regards k0ns0l3
Kind regards k0ns0l3
119
19.7 Legacy Series / Re: 19.7 development milestones
« on: July 12, 2019, 11:54:50 am »
19.7 release date
Kind regards k0ns0l3
Kind regards k0ns0l3
120
19.1 Legacy Series / Re: IGMPv3 (SSM)
« on: June 20, 2019, 02:43:08 pm »I also tried skywalker007's setup and it doesn't work. While I do get an image it will stutter after a few seconds. I have the 401 receiver connected directly to opnsense. The same result happends if I connect the 401 with a igmpv3 ready zyxel switch. The switch works fine if I use my draytek as a normal router and use it's built in igmp.
My setup is draytek 165 -> opnsense pppoe login with vlan7 -> 401 receiver
the same thing to me