Recent posts

#1
German - Deutsch / Re: IT Security Experte Floria...
Last post by hansemann - December 03, 2025, 11:13:08 PM
Hallo Zusammen,

es ist schade wie schnell & oberflächlich ihr Euer Urteil über mich und unsere Firma fällt.

Schaut doch mal an folgenden Stellen:

- Referenzkunden
- Vorträge
- CVEs
- unsere eigene Konferenz https://mcttp.de
- Veröffentlichungen
- TV und Radio-Auftritte
- Gremien
- usw.

Nur weil wir eine blinkende und dunkle Page haben, sind wir nicht gleich Scam xD

PS: Danke für den Hinweis zu Techbeacon, den Link müssen wir entfernen.

Viele Grüße aus München
Flo
#2
General Discussion / OPNsense box crashing daily, r...
Last post by tbutz12 - December 03, 2025, 10:33:05 PM
On latest firmware, my OPNsense router requires a manual reboot almost every day now. I attached the crash dump log file. It seems the cause was Panic String: page fault from /var/crash/info.0, but I'm no expert.

System info:
User-Agent Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/142.0.0.0 Safari/537.36
FreeBSD 14.3-RELEASE-p5 stable/25.7-n271767-f46cda60e3f7 SMP amd64
OPNsense 25.7.8 f070f179f
Plugins os-adguardhome-maxit-1.16 os-crowdsec-1.0.12 os-gdrive-backup-1.0 os-homeassistant-maxit-1.0 os-ntopng-1.3 os-redis-1.1_2 os-tailscale-1.2 os-telegraf-1.12.13 os-theme-rebellion-1.9.3 os-upnp-1.7 os-vnstat-1.3_1
Time Wed, 03 Dec 2025 16:26:12 -0500
OpenSSL 3.0.18
Python 3.11.14
PHP 8.3.28
#3
25.7, 25.10 Series / Re: "Danger. Unexpected error,...
Last post by vpx23 - December 03, 2025, 10:25:46 PM
I just got this error message when updating from 25.7.5 to 25.7.8, but everything seems to be running fine.

This error also came first and I had to press update again, I guess because of the new pkg: https://forum.opnsense.org/index.php?topic=49409.0

I got this strange message in the Backend log (configd):

2025-12-03T21:43:05 Error configd.py [1658a939-02b7-4e32-9ec6-163af174f6bb] Script action failed with Command '/usr/local/opnsense/scripts/firmware/read.sh ' died with <Signals.SIGBUS: 10>. at Traceback (most recent call last):   File "/usr/local/opnsense/service/modules/actions/script_output.py", line 89, in execute     subprocess.run(script_command, env=self.config_environment, shell=True,   File "/usr/local/lib/python3.11/subprocess.py", line 571, in run     raise CalledProcessError(retcode, process.args, subprocess.CalledProcessError: Command '/usr/local/opnsense/scripts/firmware/read.sh ' died with <Signals.SIGBUS: 10>.
   

Obviously after the reboot but I don't know if it is related.

Health audit shows no problems:

***GOT REQUEST TO AUDIT HEALTH***
Currently running OPNsense 25.7.8 (amd64) at Wed Dec  3 21:54:18 CET 2025
>>> Root file system: zroot/ROOT/default
>>> Check installed kernel version
Version 25.7.8 is correct.
>>> Check for missing or altered kernel files
No problems detected.
>>> Check installed base version
Version 25.7.8 is correct.
>>> Check for missing or altered base files
No problems detected.
>>> Check installed repositories
OPNsense (Priority: 11)
>>> Check installed plugins
os-dnscrypt-proxy 1.16
os-realtek-re 1.0
os-smart 2.4
os-wol 2.5_3
>>> Check locked packages
No locks found.
>>> Check for missing package dependencies
Checking all packages: .......... done
>>> Check for missing or altered package files
Checking all packages: .......... done
>>> Check for core packages consistency
Core package "opnsense" at 25.7.8 has 67 dependencies to check.
Checking packages: .................................................................... done
***DONE***

By the way why can't you see the full update log in "System: Firmware: Log File" which is shown during the update? It just looks like this (Debug):

2025-12-03T21:41:46 Notice pkg-static opnsense-25.7.8 installed
2025-12-03T21:41:32 Notice pkg-static unbound upgraded: 1.24.0 -> 1.24.1
2025-12-03T21:41:32 Notice pkg-static syslog-ng upgraded: 4.8.2_4 -> 4.10.2
2025-12-03T21:41:31 Notice pkg-static suricata upgraded: 7.0.12 -> 8.0.2
2025-12-03T21:41:30 Notice pkg-static rrdtool reinstalled: 1.9.0_1 -> 1.9.0_1
2025-12-03T21:41:30 Notice pkg-static py311-vici upgraded: 5.9.11_1 -> 6.0.3
2025-12-03T21:41:30 Notice pkg-static py311-urllib3 upgraded: 1.26.20,1 -> 2.5.0,1
2025-12-03T21:41:29 Notice pkg-static py311-dnspython-2.8.0_1,1 installed
2025-12-03T21:41:29 Notice pkg-static py311-trio upgraded: 0.31.0 -> 0.32.0
2025-12-03T21:41:29 Notice pkg-static py311-sqlite3 upgraded: 3.11.13_11 -> 3.11.14_11
2025-12-03T21:41:29 Notice pkg-static py311-pyyaml upgraded: 6.0.2 -> 6.0.3
2025-12-03T21:41:29 Notice pkg-static py311-aioquic-1.3.0_1 installed
2025-12-03T21:41:29 Notice pkg-static py311-pyopenssl-25.3.0_1,1 installed
2025-12-03T21:41:29 Notice pkg-static py311-pylsqpack upgraded: 0.3.22 -> 0.3.23
2025-12-03T21:41:29 Notice pkg-static py311-pycparser upgraded: 2.22 -> 2.23
2025-12-03T21:41:29 Notice pkg-static py311-numexpr upgraded: 2.11.0 -> 2.14.1
2025-12-03T21:41:29 Notice pkg-static py311-numpy upgraded: 1.26.4_7,1 -> 1.26.4_10,1
2025-12-03T21:41:27 Notice pkg-static py311-markupsafe upgraded: 3.0.2 -> 3.0.3
2025-12-03T21:41:27 Notice pkg-static py311-anyio upgraded: 4.10.0 -> 4.11.0
2025-12-03T21:41:27 Notice pkg-static py311-idna upgraded: 3.10 -> 3.11
2025-12-03T21:41:26 Notice pkg-static py311-cryptography upgraded: 44.0.3_4,1 -> 45.0.7_1,1
2025-12-03T21:41:26 Notice pkg-static py311-charset-normalizer upgraded: 3.4.3 -> 3.4.4
2025-12-03T21:41:26 Notice pkg-static py311-certifi upgraded: 2025.8.3 -> 2025.10.5
2025-12-03T21:41:26 Notice pkg-static py311-attrs upgraded: 25.3.0 -> 25.4.0
2025-12-03T21:41:26 Notice pkg-static kea upgraded: 3.0.1_1 -> 3.0.2
2025-12-03T21:41:25 Notice pkg-static glib reinstalled: 2.84.1_3,2 -> 2.84.1_3,2
2025-12-03T21:41:24 Notice pkg-static python311 upgraded: 3.11.13_1 -> 3.11.14
2025-12-03T21:41:16 Notice pkg-static py311-openssl-25.0.0_1,1 deinstalled
2025-12-03T21:41:16 Notice pkg-static py311-aioquic-1.2.0 deinstalled
2025-12-03T21:41:16 Notice pkg-static py311-dnspython-2.8.0,1 deinstalled
2025-12-03T21:41:16 Notice pkg-static wpa_supplicant upgraded: 2.11_5 -> 2.11_7
2025-12-03T21:41:16 Notice pkg-static sudo upgraded: 1.9.17p2 -> 1.9.17p2_2
2025-12-03T21:41:16 Notice pkg-static strongswan upgraded: 6.0.1 -> 6.0.3_1
2025-12-03T21:41:12 Notice pkg-static php83-pear upgraded: 1.10.13 -> 1.10.16
2025-12-03T21:41:11 Notice pkg-static php83-zlib upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:11 Notice pkg-static php83-xml upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:11 Notice pkg-static php83-sqlite3 upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:11 Notice pkg-static php83-sockets upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:11 Notice pkg-static php83-simplexml upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:11 Notice pkg-static php83-session upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:11 Notice pkg-static php83-pdo upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:10 Notice pkg-static php83-pcntl upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:10 Notice pkg-static php83-ldap upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:10 Notice pkg-static php83-gettext upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:10 Notice pkg-static php83-filter upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:10 Notice pkg-static php83-dom upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:10 Notice pkg-static php83-curl upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:10 Notice pkg-static php83-ctype upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:41:10 Notice pkg-static opnsense-update upgraded: 25.7.5 -> 25.7.8
2025-12-03T21:41:10 Notice pkg-static openvpn upgraded: 2.6.15 -> 2.6.16
2025-12-03T21:41:10 Notice pkg-static openssh-portable upgraded: 10.0.p1_2,1 -> 10.2.p1_1,1
2025-12-03T21:41:09 Notice pkg-static ntp upgraded: 4.2.8p18_4 -> 4.2.8p18_5
2025-12-03T21:41:09 Notice pkg-static dnsmasq reinstalled: 2.91_1,1 -> 2.91_1,1
2025-12-03T21:41:09 Notice pkg-static dnscrypt-proxy2 upgraded: 2.1.5_16 -> 2.1.5_19
2025-12-03T21:41:09 Notice pkg-static ca_root_nss upgraded: 3.115_3 -> 3.117_2
2025-12-03T21:41:08 Notice pkg-static opnsense-25.7.5 deinstalled
2025-12-03T21:41:07 Notice pkg-static liblz4 upgraded: 1.10.0,1 -> 1.10.0_2,1
2025-12-03T21:41:07 Notice pkg-static curl upgraded: 8.16.0 -> 8.17.0
2025-12-03T21:41:07 Notice pkg-static boost-libs upgraded: 1.88.0_2 -> 1.89.0_1
2025-12-03T21:40:52 Notice pkg-static zstd upgraded: 1.5.7 -> 1.5.7_1
2025-12-03T21:40:52 Notice pkg-static nss upgraded: 3.117 -> 3.118.1
2025-12-03T21:40:51 Notice pkg-static sqlite3 upgraded: 3.50.2_1,1 -> 3.50.4_2,1
2025-12-03T21:40:51 Notice pkg-static smartmontools upgraded: 7.5 -> 7.5_1
2025-12-03T21:40:51 Notice pkg-static realtek-re-kmod upgraded: 1100.00.1403000_1 -> 1101.00.1403000
2025-12-03T21:40:51 Notice pkg-static php83-mbstring upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:40:51 Notice pkg-static php83 upgraded: 8.3.26 -> 8.3.28
2025-12-03T21:40:50 Notice pkg-static openldap26-client reinstalled: 2.6.10 -> 2.6.10
2025-12-03T21:40:50 Notice pkg-static libxml2 upgraded: 2.14.5 -> 2.14.6
2025-12-03T21:40:49 Notice pkg-static cyrus-sasl-gssapi reinstalled: 2.1.28 -> 2.1.28
2025-12-03T21:40:49 Notice pkg-static krb5 reinstalled: 1.22.1 -> 1.22.1
2025-12-03T21:40:49 Notice pkg-static readline upgraded: 8.2.13_2 -> 8.3.1
2025-12-03T21:40:49 Notice pkg-static pkcs11-helper upgraded: 1.29.0_3 -> 1.31.0
2025-12-03T21:40:49 Notice pkg-static pcre2 upgraded: 10.46 -> 10.47
2025-12-03T21:40:48 Notice pkg-static nspr upgraded: 4.37 -> 4.38.2
2025-12-03T21:40:48 Notice pkg-static libunistring upgraded: 1.4 -> 1.4.1
2025-12-03T21:40:48 Notice pkg-static libnghttp2 upgraded: 1.67.0 -> 1.68.0
2025-12-03T21:40:48 Notice pkg-static libiconv upgraded: 1.17_1 -> 1.18_1
2025-12-03T21:40:48 Notice pkg-static libedit upgraded: 3.1.20250104,1 -> 3.1.20251016,1
2025-12-03T21:40:48 Notice pkg-static cyrus-sasl reinstalled: 2.1.28_5 -> 2.1.28_5
2025-12-03T21:40:47 Notice pkg-static brotli upgraded: 1.1.0,1 -> 1.2.0,1
2025-12-03T21:40:16 Notice pkg-static gethostby*.getanswer: asked for "pkg.opnsense.org IN AAAA", got type "HINFO"
2025-12-03T21:40:16 Notice pkg-static gethostby*.getanswer: asked for "pkg.opnsense.org IN AAAA", got type "HINFO"
2025-12-03T21:39:36 Notice pkg gethostby*.getanswer: asked for "pkg.opnsense.org IN AAAA", got type "HINFO"
2025-12-03T21:39:35 Notice pkg gethostby*.getanswer: asked for "pkg.opnsense.org IN AAAA", got type "HINFO"
2025-12-03T21:39:35 Notice pkg gethostby*.getanswer: asked for "pkg.opnsense.org IN AAAA", got type "HINFO"
2025-12-03T21:39:34 Notice pkg gethostby*.getanswer: asked for "pkg.opnsense.org IN AAAA", got type "HINFO"
2025-12-03T21:39:30 Notice pkg gethostby*.getanswer: asked for "pkg.opnsense.org IN AAAA", got type "HINFO"
2025-12-03T21:39:28 Notice pkg gethostby*.getanswer: asked for "pkg.opnsense.org IN AAAA", got type "HINFO"
2025-12-03T21:23:52 Notice pkg gethostby*.getanswer: asked for "pkg.opnsense.org IN AAAA", got type "HINFO"
2025-12-03T21:23:52 Notice pkg gethostby*.getanswer: asked for "pkg.opnsense.org IN AAAA", got type "HINFO"
2025-12-03T21:23:51 Notice pkg gethostby*.getanswer: asked for "pkg.opnsense.org IN AAAA", got type "HINFO"
2025-12-03T21:23:50 Notice pkg pkg upgraded: 1.19.2_6 -> 2.3.1_1
#4
25.7, 25.10 Series / Re: 25.7.8 Wireguard road warr...
Last post by nzkiwi68 - December 03, 2025, 10:01:28 PM
Ok!

Working this morning after leaving it overnight.

Utterly no idea why. I rebooted multiple times both the remote and the main site firewall and yet I could not ping from main site to remote site the wg tunnel interface IP. Yet, after waiting overnight, it's working....


Very strange.
#5
Hardware and Performance / Re: [solved] Intel i226 Firmwa...
Last post by Seimus - December 03, 2025, 09:38:33 PM
You need to do it directly on the underlying OS. If you would like to do in on VM you have to pass-thru the NIC top the VM.

Regards,
S.
#6
Hardware and Performance / Re: [solved] Intel i226 Firmwa...
Last post by fjleon - December 03, 2025, 09:33:37 PM
i'm late to the party, but i also have a N150 mini pc with i226-v (rev 4). I don't have opnsense right now, but will do via VM on proxmox.

Using ethtool -i, i get the firmware listed as "2017:888d". dmesg does not list the firmware (on linux). Does this map to the 2.17 version reported?

The reason I am interested in the firmware upgrade is that i am getting massive packet loss and up to 200 ms latency, even when pinging a device on the LAN. Seems to be completely random and if i unplug / replug the cables it might start working fine. Notably these nics support 2.5gbit but my switches are 1 gbit, though apparently autosensing is working as expected
#7
General Discussion / Port forwarding never reaches ...
Last post by gigagames - December 03, 2025, 09:16:07 PM
Hello,

I try to setup Port Forwarding on my Opsense box, but it seems like the traffic goes out my WAN and not to the Designated machine.

I have setup an PIA Wireguard connection using this script: https://github.com/FingerlessGlov3s/OPNsensePIAWireguard The connection works as expected. But now I want to Enable Port forwarding for this I created the Following under Firewall NAT: Port Forward
You cannot view this attachment.

I also tried to set `Filter rule association` to Disabled and created my Own rule, but the result was the same.

If i now try to connect to the Public PIA address I got + Port I can see the traffic in Opnsense, and I can also see that the traffic is redirected to my 10.30.0.80 machine (On my Server vlan 30 interface)
You cannot view this attachment.

But noting is received by the 10.30.0.80 machine. If i run `tcpdump -ni vlan0.30 port 62217` on Opnsense I also see no traffic.
If i run the tcpdump with my pppoe0 (wan) interface, I can see the traffic.
It seems like the traffic is redirected to the 10.30.0.80 machine but instantly routed through my WAN.
I think its because of this auto generated Rule:
You cannot view this attachment.

But I'm unsure on how to remove that rule.
Do you guys have some advise on what I need to change, so that the traffic is reached by the designated machine on my Server Interface?
#8
25.7, 25.10 Series / Webgui access timing out
Last post by wryriley - December 03, 2025, 08:57:16 PM
Hey hi hello,

I'm having an issue with the webgui that I could use some help debugging.

~~system~~
OPNsense 25.7.8-amd64
FreeBSD 14.3-RELEASE-p5
OpenSSL 3.0.18

I'm running this as a VM on Proxmox

~~primary symptom~~
I can't access the webgui. I can restart all services, or just restart the webgui with configctl, but within a couple of minutes access times out. I've been looking through tons of logs seeing if I can make sense of what's happening.

Beside that, everything else works. I still have ssh access, networking is working as expected. The issue is mostly transparent until I need to reconfigure something.

~~configd logs~~
The first big red flag is that when I tail the configd logs while access is down, I see a lot of invocations of "list shells", "list locales", and "Stream CPU stats", followed by "Script action terminated by other end". When I restart webgui, I get a big dump of termination logs, and the whole cycle repeats until I eventually lose access.

My gut says something is requesting these resources, not getting them, and re-requesting. A queue fills up, eventually terminations occur, and the whole system is locked waiting for something to resolve. I'm just not sure what could be requesting these resources while the dashboard isn't loaded.

~~other notes~~
sockstat | grep configd shows at least 60 open connections from python to not quite that many individual php-cgi processes. lighttpd shows one process with connections in the 700s, mostly pointing to my local IP and a debian host. I don't think I  have 700 active connections. I also have north of 1000 php sessions listed in /var/lib/php/sessions


I think I've exhausted my current skillset for debugging and could use some guidance on where to probe from here.


Thanks!
#9
Q-Feeds (Threat intelligence) / Re: [Feature Request] DNSBL fo...
Last post by Q-Feeds - December 03, 2025, 08:49:41 PM
Hi VPX,

Thank you for this Idea! We will investigate the possibility in the upcoming weeks. I noticed that it already has DNSBL functionality so that could be an easy implementation.. we will get back to you!
#10
Zenarmor (Sensei) / Re: Certificate failure
Last post by immto - December 03, 2025, 08:07:48 PM
Well I was able to clear it up by deleting the orphaned Plugins.