Recent posts

#91
26.1 Series / Track Interface with 26.1
Last post by mrt12 - January 30, 2026, 03:04:45 PM
Good day,
so I already switched in the past away from ISC DHCPD to Kea. It seemed to work fine so far, besides the fact that Kea cannot register DHCPv4 leases in DNS. But I can live with that, I generated static entries for the most important things, so its not a huge thing.

So today I just upgraded to 26.1 and also it still seems to work fine. However, I understand from the release notes, that "Track Interface" is something that is legacy and should not be used anymore. Also in the config page of my LAN interface it reads "Track interface (legacy)". So I tried to switch to "Identity Association" which, apparently, seems to be the new thing.
However, it gives me always the error:

The DHCPv6 Server is active on this interface and it can be used only with a static IPv6 configuration. Please disable the DHCPv6 Server service on this interface first, then change the interface configuration.
I am confused, because under "Services", "Kea DHCPv6" it is disabled. Furthermore, I have uninstalled the ISC-DHCP Plugin, so to my understanding, the DHCPv6 server should not be running at all.

I think I would need this Identity Association, as I needed previously "Track Interface". This is because my ISP gives me a /56 IPv6 Prefix, and I want several subnets of it to be delegated to my different VLANs. So What do I need to change to achieve the same behaviour as before? is is it not even possible anymore?
Note that I don't use dnsmasq, I try the KEA route, as I have already configured it so far to my liking, so if possible, I will prefer not to switch. Also I would prefer not to go back to ISC, as I understand, this is end-of-life, so I don't want to use it anymore.
Also note that the IPs handed out by my ISP are technically not fixed ones. I have dynamic IPs, even though I notice that my IP has not changed since more than 2 years, but technically, I think it can any time, so for this reason my setup needs to be compatible with that and also the delegated prefixes.


#92
26.1 Series / Re: 26.1 is out!!!
Last post by nero355 - January 30, 2026, 03:02:46 PM
Quote from: OPNenthu on January 30, 2026, 10:45:40 AMI can't :(

Ever since I made manual changes to my network layout in NetworkManager, IF up/down commands doesn't have any effect on the bridges.
The only thing that works to clear the network stack is to reboot.
Are you sure : https://man.archlinux.org/man/nmcli.1.en ?!

And if you are running any Desktop Environment on that 'Desktop Client' you should be able to do it with a single click :)

If both things don't work it's time to submit a bug to the NetworkManager developers IMHO...

QuoteJust FF tabs open at that point.
Then there is a chance that Firefox was holding onto the IP stack so to speak and preventing it to recover properly.

At least that's my experience with both the Linux and Windows version.
#93
26.1 Series / Re: os-git-backup error with 2...
Last post by m4nf47 - January 30, 2026, 03:00:00 PM
Exact same issue observed here on 26.1-amd64
I'm using multiple additional config backup options including manually saving plus GDrive and SFTP so this is low priority for me personally but as this is directly config related and as 26.1 is a major release version I suggest the fix is bumped if it likely affects multiple end users. Many thanks for raising this, nice to know I'm not the only one affected!
#94
25.7, 25.10 Series / Re: How to increase a proxmox ...
Last post by teclab - January 30, 2026, 02:55:08 PM
Wanted to grow the root partion from 16GB to 32GB, so I did:

  • Shutdown OpnSense
  • In Proxmox Harddisc->Resize +16
  • Reboot OpnSense

Output of gpart shows:
root@opnsense:~ # gpart show
=>      40  33554352  da0  GPT  (32G) [CORRUPT]
        40      1024    1  freebsd-boot  (512K)
      1064  33553328    2  freebsd-ufs  (16G)

Usage:
root@opnsense:~ # df -h
Filesystem                   Size    Used   Avail Capacity  Mounted on
/dev/da0p2                    15G     14G    705M    95%    /
devfs                        1.0K      0B    1.0K     0%    /dev
tmpfs                        611M    6.3M    604M     1%    /var/log
tmpfs                        1.8G    4.4M    1.8G     0%    /tmp
tmpfs                        1.8G    120K    1.8G     0%    /var/lib/php/tmp
devfs                        1.0K      0B    1.0K     0%    /var/dhcpd/dev
devfs                        1.0K      0B    1.0K     0%    /var/unbound/dev
/usr/local/lib/python3.11     15G     14G    705M    95%    /var/unbound/usr/local/lib/python3.11
/lib                          15G     14G    705M    95%    /var/unbound/lib
/dev/md43                    145M     72K    133M     0%    /usr/local/zenarmor/output/active/temp
tmpfs                        100M     12K    100M     0%    /usr/local/zenarmor/run/tracefs

Details:
root@opnsense:~ # du -hs /*
8.0K    /COPYRIGHT
1.4M    /bin
312M    /boot
 12M    /conf
4.0K    /dev
4.0K    /entropy
2.1M    /etc
4.0K    /home
 17M    /lib
164K    /libexec
4.0K    /media
4.0K    /mnt
4.0K    /net
4.0K    /proc
4.0K    /rescue
 76K    /root
4.9M    /sbin
  0B    /sys
 39M    /tmp
5.1G    /usr
8.5G    /var
root@opnsense:~ # du -hs /var/*
4.0K    /var/account
 12K    /var/at
 12K    /var/audit
4.0K    /var/authpf
 20M    /var/backups
 47M    /var/cache
8.0K    /var/crash
 16K    /var/cron
7.8G    /var/db
104K    /var/dhcpd
4.0K    /var/empty
 60K    /var/etc
4.0K    /var/games
4.0K    /var/heimdal
277K    /var/lib
 15M    /var/log
4.0K    /var/mail
4.0K    /var/msgs
844K    /var/netflow
4.0K    /var/preserve
164K    /var/run
4.0K    /var/rwho
148K    /var/spool
 12K    /var/tmp
696M    /var/unbound
4.0K    /var/yp

Tried this, rebooted, but did not do anything:
touch /.probe.for.growfs.nano

fsck did give lots of weird error:
** /dev/da0p2 (NO WRITE)
** Last Mounted on /mnt
** Root file system
** Phase 1 - Check Blocks and Sizes
INCORRECT BLOCK COUNT I=160265 (31872 should be 28672)
CORRECT? no

INCORRECT BLOCK COUNT I=1602731 (8 should be 0)

tried:
root@opnsense:~ # gpart resize -i 2 da0
gpart: table 'da0' is corrupt: Operation not permitted

  • Booting in single user mode, tried everything again, nothing helped.
  • Restored backup, tried again, same problem.

Found this:
root@opnsense:~ # service growfs onestart
Growing root partition to fill device
da0 recovered
da0p2 resized

And now solved:
root@opnsense:~ # gpart show
=>      40  67108784  da0  GPT  (32G)
        40      1024    1  freebsd-boot  (512K)
      1064  67107760    2  freebsd-ufs  (32G)

But WTF!?
root@opnsense:~ # df -h
Filesystem                   Size    Used   Avail Capacity  Mounted on
/dev/da0p2                    31G    5.8G     23G    20%    /
devfs                        1.0K      0B    1.0K     0%    /dev
tmpfs                        611M    7.9M    603M     1%    /var/log
tmpfs                        1.8G    584K    1.8G     0%    /tmp
tmpfs                        1.8G    120K    1.8G     0%    /var/lib/php/tmp
devfs                        1.0K      0B    1.0K     0%    /var/dhcpd/dev
devfs                        1.0K      0B    1.0K     0%    /var/unbound/dev
/usr/local/lib/python3.11     31G    5.8G     23G    20%    /var/unbound/usr/local/lib/python3.11
/lib                          31G    5.8G     23G    20%    /var/unbound/lib
/dev/md43                    145M     12K    133M     0%    /usr/local/zenarmor/output/active/temp
tmpfs                        100M     32K    100M     0%    /usr/local/zenarmor/run/tracefs

Now only 5.8G is used? Before grow it was 14G ...
Why was /var/db so big?
root@opnsense:~ # du -hs /var/*
4.0K    /var/account
 12K    /var/at
 12K    /var/audit
4.0K    /var/authpf
 20M    /var/backups
156M    /var/cache
8.0K    /var/crash
 16K    /var/cron
 44M    /var/db
100K    /var/dhcpd
4.0K    /var/empty
 64K    /var/etc
4.0K    /var/games
4.0K    /var/heimdal
133K    /var/lib
849K    /var/log
4.0K    /var/mail
4.0K    /var/msgs
844K    /var/netflow
4.0K    /var/preserve
148K    /var/run
4.0K    /var/rwho
148K    /var/spool
 12K    /var/tmp
698M    /var/unbound
4.0K    /var/yp
#95
26.1 Series / Re: MiniUPNPD
Last post by epyon9283 - January 30, 2026, 02:54:30 PM
Quote from: franco on January 30, 2026, 09:23:52 AMI'm liking to https://forum.opnsense.org/index.php?topic=50566.msg258338#msg258338 which could be related since we don't get anywhere with older OS versions.

No luck. Same behavior after patching.
#96
German - Deutsch / Re: Problem mit Port Forwardin...
Last post by Patrick M. Hausen - January 30, 2026, 02:54:12 PM
Das ist falsch. WAN muss pppoe0 sein. re1 sollte überhaupt nicht zugewiesen sein.
#97
25.1, 25.4 Series / Re: Business GEOIP Data
Last post by Monviech (Cedrik) - January 30, 2026, 02:52:50 PM
Have a good weekend too :)
#98
25.7, 25.10 Series / Re: Seting up Vlan
Last post by JustSecure - January 30, 2026, 02:51:32 PM
Thank you for replying.

After reading it all, i have ordered a TP-Link TL-SG105E. This should hook me up properly.

i made this little picture of my network.



Doesnt show picture in IMG tag, not enough posts? here is the link : https://myjoint.nl/Gemini_Generated_Image.png
#99
German - Deutsch / Re: Problem mit Port Forwardin...
Last post by BeTZe313 - January 30, 2026, 02:50:37 PM
Also ich habe folgende Interfaces
LAN Device re0
OPT1 Device pppoe0
WAN Device re1

Ist das so nicht richtig? Das OPT1 wurde angelegt, als ich das pppoe für die Telekom angelegt habt.

Ich habe jetzt mal folgendes beim tcpdump gemacht
tcpdump i- re1 port 8080

Wenn ich dann von extern die Seite aufrufen möchte, erscheinen da keine Einträge.

Wenn ich den Port weglasse, erscheinen jede Menge Einträge
#100
25.1, 25.4 Series / Re: Business GEOIP Data
Last post by wirehire - January 30, 2026, 02:46:16 PM
thanks, now its loaded and worked like a charme!

Have a good weekend , and thanks for this beautiful software!