Recent posts

#1
26.1, 26,4 Series / Re: [SOLVED-ish] Degraded Spee...
Last post by juicemain - Today at 08:08:04 PM
Sent an email to my ISP telling them that I observed the behavior when directly connected to the ONT, and they literally responded with an email only saying "it's a poor idea to run directly connected to an ONT."  -_-
#2
26.1, 26,4 Series / Re: cve nginx
Last post by Monviech (Cedrik) - Today at 07:49:00 PM
We have a tier1 reverse proxy available in the business edition:

https://docs.opnsense.org/vendor/deciso/opnwaf.html
#3
26.1, 26,4 Series / Re: cve nginx
Last post by wirehire - Today at 07:47:29 PM
thanks for the insights! We have 6 business firewalls, where nginx run as a  reverse proxy and automatic scanners, which note when it comes to critical cve. So when nginx are focus for community , we musst look to change the reverse proxy package or away from the opnsense as a reverse proxy to a server.

Greets!
#4
26.1, 26,4 Series / Re: Traffic Spike
Last post by nero355 - Today at 07:37:08 PM
Quote from: picos95 on Today at 07:21:56 PMHas anyone ever seen large amounts of traffic suddenly spike in your network with no explanation?
You have posted WAN graphics but how does your LAN look like ?

QuoteIm trying to figure out why sometimes my network drops packets at random times.
And how does your network setup look like ?

QuoteHow can I figure out why mid game sessions all of a sudden my entire network takes a crap
TL;DR : We need more information ;)
#5
26.1, 26,4 Series / Traffic Spike
Last post by picos95 - Today at 07:21:56 PM
Has anyone ever seen large amounts of traffic suddenly spike in your network with no explanation?

Im trying to figure out why sometimes my network drops packets at random times.

How can I figure out why mid game sessions all of a sudden my entire network takes a crap
#6
26.1, 26,4 Series / Re: Degraded Speed Ghost
Last post by juicemain - Today at 07:19:05 PM
Hi guys, back with what will probably be the final update here.  So I did what I should have done from the start and tested with the computer directly connected to the ONT.  I observed the slowdown here as well.  So it's definitely a problem with the ONT, or upstream.  Thanks for all the help.  I guess I can mark this one as solved since we've ruled out Opnsense entirely.  I will post another update when or if the problem gets resolved.  Take care.

If anyone has had a similar issue before, or any advice with dealing with this situation moving forward feel free to share.  Cheers.
#7
General Discussion / Re: TUI for viewing and analys...
Last post by allddd - Today at 06:32:52 PM
Quote from: lmoore on June 19, 2026, 04:48:46 AMOne feature I would find helpful is the inclusion of the rule descriptions, ideally in the main view or at least in the details view and also when '-j' option is used.

I've looked into it and it'd be nice, but the filter log doesn't contain the description. The only thing I can think of is to use the rule id from the log to somehow find the description somewhere else.

/conf/config.xml has descriptions of rules you've added manually, but default rules aren't there. The rules in there are also referenced by a uuid, not by the rule id from the log. I don't know of any other place that has the rule id and the description (of all rules).

If anyone knows a better way to do this, I'd be open to adding this.
#8
Can you try creating a self signed certificate and push that to one of the affected opnsense firewalls? That could rule out its a generic problem or related directly to the ACME client.
#9
26.1, 26,4 Series / Re: OPNCentral: Automatic Cert...
Last post by ig-it1342 - Today at 05:43:01 PM
Hello,

okay, that is indeed strange. We double checked again all the values, and everything seems correct, however it simply does not want to push.

This is the case for all of our 8 firewalls, so the other sites also do not receive a valid certificate.

Is there maybe an internal log / view of the sync process, such that we could debug the issue further?

Thanks in advance
#10
Hardware and Performance / Re: quad interface fierwall PC...
Last post by Greg_E - Today at 05:30:02 PM
I'll have to look at the quote again, I might have seen the wrong version. It's coming as a package so I assume whatever it needs will be installed and working. Either way, $200 for 16gb of ram is crazy!

I paid $200 for 2x16 (used) sodimm not too long ago and going farther back under $200 for 2x32 DDR4 sodimm. My lab is like a gold mine if I decided to sell off the parts and junk the computers. Too bad I still need them to do work.