Recent posts

#91
26.1 Series / Initialization of RRD files fa...
Last post by snyke - January 31, 2026, 04:00:55 PM
Hi,

fresh install of 26.1_4, I did some configuration and enabled data gathering for RRDs.

In the syslog I find tons of:

Quote/usr/local/opnsense/scripts/health/updaterrd.php: The command </usr/local/bin/rrdtool create '/var/db/rrd/ntpd.rrd' --step 0 DS:'offset:GAUGE:120:-1000:1000' DS:'sjit:GAUGE:120:0:1000' DS:'cjit:GAUGE:120:0:1000' DS:'wander:GAUGE:120:0:1000' DS:'freq:GAUGE:120:0:1000' DS:'disp:GAUGE:120:0:1000' RRA:'MIN:0.5:1:1200' RRA:'MIN:0.5:5:720' RRA:'MIN:0.5:60:1860' RRA:'MIN:0.5:1440:2284' RRA:'AVERAGE:0.5:1:1200' RRA:'AVERAGE:0.5:5:720' RRA:'AVERAGE:0.5:60:1860' RRA:'AVERAGE:0.5:1440:2284' RRA:'MAX:0.5:1:1200' RRA:'MAX:0.5:5:720' RRA:'MAX:0.5:60:1860' RRA:'MAX:0.5:1440:2284'> returned exit code 1 and the output was "ERROR: step size: value must be positive"

Basically no single RRD is created, of course creation with a stepsize of 0 fails.

Is this a known bug or a feature to save some disk space? ;-)

I don't think/see the bit of configuration I did on top of the fresh install caused this.

After I created all of the databases with a (guessed) stepsize of 60 the errors stopped.

Best wishes

#92
General Discussion / os-adguardhome-maxit
Last post by Monju0525 - January 31, 2026, 03:54:38 PM
What is the latest version of os-adguardhome-maxit (installed)   1.16? How do I get the latest? How do I upgrade?

fetch -o /usr/local/etc/pkg/repos/mimugmail.conf.new https://www.routerperformance.net/mimugmail.conf
pkg update'''fetch -o /usr/local/etc/pkg/repos/mimugmail.conf https://www.routerperformance.net/mimugmail.conf
pkg update

#93
26.1 Series / Re: Cannot console upgrade to...
Last post by Monju0525 - January 31, 2026, 03:37:01 PM
Quote from: Monju0525 on January 31, 2026, 02:31:35 PM
Quote from: patient0 on January 31, 2026, 02:06:26 PM
Quote from: Monju0525 on January 31, 2026, 01:51:18 PM#1
Versions
OPNsense 25.7.11_9-amd64
FreeBSD 14.3-RELEASE-p7
OpenSSL 3.0.18

#2
Yes
See below


Proceed with this action? [26.1/y/N]: 26.1

Hi there,

For over 11 years now, OPNsense is driving innovation through
...
etc,etc,etc
Mmmh that looks good, what key are you pressing at the end of the text, 'q'?

I was selecting enter. When the ':' I enter 'q'. An it is now installing.
Thank u very much!

===
Download links, an installation guide[1] and the checksums for the images
can be found below as well.

Fetching packages-26.1-amd64.tar: ...




Update: via console took about an hour to upgrade to 26.1_4 and the vpn + other packages worked
#94
26.1 Series / Re: Another smooth upgrade exp...
Last post by TheRealDoug - January 31, 2026, 03:29:26 PM
Also a smooth upgrade experience for me.  Upgraded my lab firewall (virtual on proxmox) on release day and then upgraded my hardware firewall (Protectli VP2430/8GB) this morning without issue.

My hardware appliance took a little bit longer than I expected to reboot and I was getting pretty nervous but it came back up!

I am a pretty new OPNsense user and have been using it full time since November (25.7) and immediately started using Automation rules vs the now legacy rules.  I only had to migrate 4 rules between the two firewalls.  I love the Automation/New Rules and category grouping, it really helps me visualize traffic flow much easier so I don't duplicate rules or have them out of order.


Great work OPNSense team!
#95
26.1 Series / Re: Suricata - Divert (IPS)
Last post by agh1701 - January 31, 2026, 03:19:06 PM
so, I guess I divert from the wan? What I am looking for is an example rule to start with.
#96
26.1 Series / Re: Suricata - Divert (IPS)
Last post by Monviech (Cedrik) - January 31, 2026, 03:07:52 PM
https://docs.opnsense.org/manual/firewall.html#divert-to

The divert to can be added to any firewall rule that already exists, also multiple ones, to redirect the traffic to suricata after it matched in the firewall.
#97
Tutorials and FAQs / Re: Tutorial: Caddy (Reverse P...
Last post by Monviech (Cedrik) - January 31, 2026, 03:06:45 PM
You can look into frankenphp which is caddy with php, it should work nicely for web apps (never tried it though).

You can still keep caddy on the firewall and just reverse proxy to the caddy in your dmz.
#98
26.1 Series / New firewall rule interface
Last post by stanps - January 31, 2026, 03:03:58 PM
So...other than the obvious visual difference, is this just a new way to manage firewall rules?  Or are there actual technical advantages to the new firewall rule interface?

Also, is there a way to remove the [old and busted] Rules menu option, after you've successfully migrated?

Thanks again,
S
#99
26.1 Series / Re: RC1: hundreds of rc.newwan...
Last post by franco - January 31, 2026, 03:02:18 PM
Since we're here can you try this commit?

# opnsense-patch https://github.com/opnsense/core/commit/6933841c6


Cheers,
Franco
#100
26.1 Series / Re: Suricata - Divert (IPS)
Last post by agh1701 - January 31, 2026, 02:53:08 PM
What does the new divert rule look like?