16
21.1 Legacy Series / Re: FreeIPA behind HAProxy changing URL
« on: July 24, 2021, 07:29:36 pm »
You might wanna show how/what you've setup so far...
This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.
$ sudo cat /usr/local/etc/wireguard/wg0.conf
[Interface]
PrivateKey = LOCALPRIVKEY
Address = 172.160.x.2/24
ListenPort = xx822
[Peer]
PublicKey = PEERSPUBKEY
Endpoint = 185.x.x.x:21822
AllowedIPs = 10.160.x.x/24,172.160.x.x/24
PersistentKeepalive = 60
Jul 24 16:56:33 router kernel: tun0: link state changed to UP
Jul 24 16:56:33 router kernel: tun0: changing name to 'wg0'
Jul 24 16:56:33 router kernel: wg0: link state changed to DOWN
Jul 24 16:56:33 router opnsense[58788]: /usr/local/etc/rc.routing_configure: ROUTING: entering configure using defaults
Jul 24 16:56:33 router opnsense[58788]: /usr/local/etc/rc.routing_configure: ROUTING: IPv4 default gateway set to opt2
Jul 24 16:56:33 router opnsense[58788]: /usr/local/etc/rc.routing_configure: ROUTING: setting IPv4 default route to 185.x.x.x
Jul 24 16:56:33 router opnsense[58788]: /usr/local/etc/rc.routing_configure: ROUTING: keeping current default gateway '185.x.x.x
Jul 24 16:56:34 router opnsense[58788]: plugins_configure monitor (1)
Jul 24 16:56:34 router opnsense[58788]: plugins_configure monitor (execute task : dpinger_configure_do(1))
Jul 24 16:56:34 router opnsense[58788]: /usr/local/etc/rc.routing_configure: The WAN_PROVIDER_PPPOE monitor address is empty, skipping.
Jul 24 16:56:34 router opnsense[58788]: /usr/local/etc/rc.routing_configure: The WAN_PROVIDER_DHCP_DHCP monitor address is empty, skipping.
Jul 24 16:56:35 router kernel: pflog0: promiscuous mode disabled
Jul 24 16:56:35 router kernel: pflog0: promiscuous mode enabled
opnsense-revert -r 21.1.5 os-dyndns
to get it working again...
opnsense-revert -r 21.1.5 os-dyndns
it works as expected :-)***GOT REQUEST TO AUDIT HEALTH***
Currently running OPNsense 21.1.6 (amd64/OpenSSL) at Fri May 28 18:24:26 CEST 2021
>>> Check installed kernel version
Version 21.1.6 is correct.
>>> Check for missing or altered kernel files
No problems detected.
>>> Check installed base version
Version 21.1.6 is correct.
>>> Check for missing or altered base files
No problems detected.
>>> Check for missing package dependencies
Checking all packages: .......... done
>>> Check for missing or altered package files
Checking all packages: .......... done
>>> Check for core packages consistency
Core package "opnsense" has 67 dependencies to check.
Checking packages: ..................................................................... done
***DONE***
May 28 17:43:59 router config[29630]: /services_dyndns_edit.php: Dynamic DNS: updatedns() starting
May 28 17:43:59 router config[29630]: /services_dyndns_edit.php: Dynamic DNS (my.ddns.xx): 217.225.xxx.yyy extracted
May 28 17:43:59 router config[29630]: /services_dyndns_edit.php: Dynamic DNS (my.ddns.xx): running dyndns_failover_interface for opt1. found pppoe0
May 28 17:43:59 router config[29630]: /services_dyndns_edit.php: Dynamic DNS (my.ddns.xx via No-IP): _update() starting.
May 28 17:43:59 router configctl[50841]: event @ 1622216639.35 msg: May 28 17:43:59 router.some.lan config[29630]: config-event: new_config /conf/backup/config-1622216639.3456.xml
May 28 17:43:59 router configctl[50841]: event @ 1622216639.35 exec: system event config_changed
May 28 17:44:00 router config[29630]: /services_dyndns_edit.php: Dynamic DNS (my.ddns.xx): _checkStatus() starting.
May 28 17:44:00 router config[29630]: /services_dyndns_edit.php: Dynamic DNS (my.ddns.xx): Current Service: noip
May 28 17:44:00 router config[29630]: /services_dyndns_edit.php: Dynamic DNS (my.ddns.xx): (Unknown Response)
May 28 15:57:16 router config[49757]: /services_dyndns_edit.php: Dynamic DNS (my.dns.xx): (Unknown Response)
or during bootup (right after the upgrade):May 28 03:22:50 router opnsense[11052]: /usr/local/etc/rc.newwanip: Dynamic DNS (my.dns.xx): (Unknown Response)
May 28 15:57:16 router config[49757]: /services_dyndns_edit.php: Dynamic DNS (my.dns.xx): (Unknown Response)
$ pkg search libidn2
libidn2-2.3.0_1 Implementation of IDNA2008 internationalized domain names
$ pkg install libidn2-2.3.0_1
Updating OPNsense repository catalogue...
OPNsense repository is up to date.
All repositories are up to date.
Updating database digests format: 100%
The following 2 package(s) will be affected (of 0 checked):
New packages to be INSTALLED:
libidn2: 2.3.0_1
libunistring: 0.9.10_1
Number of packages to be installed: 2
The process will require 3 MiB more space.
609 KiB to be downloaded.
Proceed with this action? [y/N]: y
[1/2] Fetching libidn2-2.3.0_1.txz: 100% 110 KiB 112.8kB/s 00:01
[2/2] Fetching libunistring-0.9.10_1.txz: 100% 498 KiB 510.4kB/s 00:01
Checking integrity... done (0 conflicting)
[1/2] Installing libunistring-0.9.10_1...
[1/2] Extracting libunistring-0.9.10_1: 100%
[2/2] Installing libidn2-2.3.0_1...
[2/2] Extracting libidn2-2.3.0_1: 100%
root@router:/home/mirco # speedtest
...
Do you accept the license? [type YES to accept]: YES
License acceptance recorded. Continuing.
Speedtest by Ookla
Server: HABNET - Frankfurt (id = 27673)
ISP: Deutsche Telekom AG
Latency: 7.51 ms (0.08 ms jitter)
Download: 102.79 Mbps (data used: 78.3 MB)
Upload: 40.85 Mbps (data used: 18.5 MB)
Packet Loss: 0.0%
Result URL: https://www.speedtest.net/result/c/MYRESULT
$ pkg remove py37-speedtest-cli-2.1.2
Checking integrity... done (0 conflicting)
Deinstallation has been requested for the following 1 packages (of 0 packages in the universe):
Installed packages to be REMOVED:
py37-speedtest-cli: 2.1.2
Number of packages to be removed: 1
Proceed with deinstalling packages? [y/N]: y
[1/1] Deinstalling py37-speedtest-cli-2.1.2...
[1/1] Deleting files for py37-speedtest-cli-2.1.2: 100%
$ pkg add "https://install.speedtest.net/app/cli/ookla-speedtest-1.0.0-freebsd.pkg"
Fetching ookla-speedtest-1.0.0-freebsd.pkg: 100% 520 KiB 532.1kB/s 00:01
Installing speedtest-1.0.0.2-1.5ae238b...
Extracting speedtest-1.0.0.2-1.5ae238b: 100%
$ speedtest
ld-elf.so.1: Shared object "libidn2.so.0" not found, required by "speedtest"
pkg update ; pkg install -y py37-speedtest-cli
$ sudo speedtest-cli
Password:
Retrieving speedtest.net configuration...
Traceback (most recent call last):
File "/usr/local/bin/speedtest-cli", line 11, in <module>
load_entry_point('speedtest-cli==2.1.2', 'console_scripts', 'speedtest-cli')()
File "/usr/local/lib/python3.7/site-packages/speedtest.py", line 1986, in main
shell()
File "/usr/local/lib/python3.7/site-packages/speedtest.py", line 1875, in shell
secure=args.secure
File "/usr/local/lib/python3.7/site-packages/speedtest.py", line 1091, in __init__
self.get_config()
File "/usr/local/lib/python3.7/site-packages/speedtest.py", line 1174, in get_config
map(int, server_config['ignoreids'].split(','))
ValueError: invalid literal for int() with base 10: ''