After 3 days, LAN interface completely drops connectivity

Started by dfw3xam1n3r, April 10, 2023, 03:51:01 PM

Previous topic - Next topic
April 26, 2023, 05:10:23 PM #15 Last Edit: April 26, 2023, 05:12:43 PM by dfw3xam1n3r
Quote from: mtchetch on April 25, 2023, 04:44:46 PM
We have the exact same issue running 23.1 with an Watchguard M370 appliance.

Lan port appears up but the connectivity is lost and it is not visible from the lat network even with arp -a.

The problem happens infrequently every 7-14 days and is very difficult to track down. VPN and WAN interface work and the firewall management is acccessible when this happens (Through VPN). Zenarmor is activated, but it is not really doing much besides reporting: Routed Mode (L3 Mode, Reporting + Blocking) with native netmap driver.

Will try with the emulated driver if that will fix the issue. The logs have nothing noteworthy from the time of the issue happening.

Just installed the latest 23.1.6 patches but not feeling optimistic since this has happened multiple times already.

Any ideas on tracking down the issue?

This issue will be fixed in 23.1.7 coming out in a couple of weeks, re: netmap/ZenArmor issue. Here is a thread on it. https://forum.opnsense.org/index.php?topic=32114.75. In the thread there were patches you can apply in the interim. I just have my ZenArmor set to monitoring only for now.
OPNsense 24.7.7  - QEMU/KVM (Ubuntu), i9-9900K 16 core @ 5ghz, 16GB RAM, 64GB SSD, 2 dedicated SFP+ NICs

23.1.7 sounds wrong to me. Not sure which fix you reference.


Cheers,
Franco

Quote from: schnipp on April 14, 2023, 03:20:33 PM
I had a similar issue some days ago. The bare metal LAN interface (intel) of my VoIP network lost the carrier and dropped its IPv4 address. A reboot solved the issue. But I don't know if this issue is related to yours.

Today again, my Fritzbox updated its firmware and took a reboot. Within this time the physical network interface permanently lost the carrier. Even a reboot and short poweroff did not solve the problem. So, it can also happen that the Fritzbox is the issue. When it happens again, I'll try to investigate further.
OPNsense 24.7.11_2-amd64

I did some investigations since my Fritzbox 7490 offered a new labor firmware. After the update has been completed with a reboot the physical network of the box permanently lost the carrier again. Tests revealed that it is a bug in the labor firmware. In client mode the network interface LAN1 often does not come up, all the other interfaces work well.

I'll report to AVM.
OPNsense 24.7.11_2-amd64