Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - fabiodanzetta

#16
Hi everebody,

we are running Opnsense 21.1.4 and we would like to install the acme plugin but we receive messagge saying "Installation out of date. The update to opnsense-21.1.5 is required."
Why we can't keep opnsense 21.1.4 and install this plugin and is necessary to update?
Why update is mandatory?

Thanks soo mutch.
#17
Hi NilsS

thanks for the support.
But I don't think I have understood correctly.
"Use localhost as Interface on OpenVPN Server" I guess to be set in the slave configuration.
While "User Portforwarding on WAN (carp) to 127.0.0.1" I don't think I understand.

Thanks so much
#18
Hello everybody,
as I am a beginner with the opnsense ha configuration I wanted to ask you if it is normal or not that the openvpn service on the backup node is stopped and that it does not start if I try to start it from the GUI.
If I always check the connection status from the GUI, I read this message:

[error] Unable to contact daemon Service not running? 0 0 bytes 0 bytes

Thank you
#19
Hi kristerrenaud ,

thank you very much for the directions.
#20
High availability / Re: Haproxy and os-haproxy
April 22, 2021, 04:03:50 PM
Hi Fright,

as in the image there is a padlock at the bottom right and I wanted to know what direction there is between lock and unlock.
Since we use ha-proxy it would be useful to choose lock for os-haproxy.

Thanks again

#21
High availability / Re: Haproxy and os-haproxy
April 20, 2021, 11:13:00 AM
Hi Fright,

Thanks for the reply.
Another question: on our firewall we use haproxy 2.2.11.
I saw that the module of the integrated one is unlocked; could it cause some dangerous overlap and so would it be better to block it?

Thanks again
#22
Hello everybody,

what is the best and safest procedure to update the two nodes that form the HA without risking particular disruptions or even blocking events?

Thank you all
#23
High availability / Haproxy and os-haproxy
April 19, 2021, 11:39:57 AM
Hi everyone I am a newbie.

We have installed two HA nodes both updated with OPNsense version 21.1.4.
We use haproxy and I noticed that there are two packages installed and enabled:

haproxy 2.2.11

os-haproxy 3.1

The description looks the same.

What is the difference between the two?
Should one of the two be disabled?
Excuse me but I am very confused.

Thank you all
#24
Hi everyone,

I saw that the flowd.log file occupies about 80 gb and so I wanted to free this space from the disk.
What is the procedure to be done safely so that also in the future I can do it other times if needed?
Through gui it seems to me that I have not seen anything just a reset log file but it had no effect on disk space.

Thank you all.
#25
Thank you for your answers.
I've done a lot of trials and changed configurations, but I couldn't solve the problem, and I sincerely don't know more than more attempts.

Thanks again.
#26
Hi everyone, I updated to version 20.7.1 and after this update the IPSEC tunnel that I had set up with the Sophos XG 310 started up and down randomly, sometimes after a few seconds or minutes from the connection established and in  other cases even after one or more hours, all without a logical temporal thread.  I also removed and recreated the configurations from scratch on both opnsense and Sophos but nothing.  I also tried to change the hash algorithm and disable the rekey and nat traversal but the problem remains.  Thank you all.