2021/12/02 20:50:00 warn 81735#100805 "ssl_stapling" ignored, host not found in OCSP responder "r3.o.lencr.org" in the certificate "/usr/local/etc/nginx/key/ncloud.example.com.pem"2021/12/02 20:50:00 warn 81735#100805 "ssl_stapling" ignored, host not found in OCSP responder "r3.o.lencr.org" in the certificate "/usr/local/etc/nginx/key/mstream.example.com.pem"
2021-12-02T20:12:00 opnsense[64758] AcmeClient: validation for certificate failed: example.com2021-12-02T20:12:00 opnsense[64758] AcmeClient: domain validation failed (dns01)2021-12-02T20:11:01 php[78431] AcmeClient: running automation (configd): restart proxy2021-12-02T20:11:01 php[78431] AcmeClient: running automations for certificate: example.com2021-12-02T20:11:01 opnsense[78431] AcmeClient: updated ACME X.509 certificate: example.com2021-12-02T20:11:01 opnsense[78431] AcmeClient: successfully issued/renewed certificate: example.com
2021-12-02T20:12:00 acme.sh[87113] { "type": "urn:ietf:params:acme:error:orderNotReady", "detail": "Order's status (\"valid\") is not acceptable for finalization", "status": 403 }2021-12-02T20:12:00 acme.sh[40347] Sign failed, finalize code is not 200.2021-12-02T20:12:00 acme.sh[33746] code='403'
# OPNsense neustart2021-12-02T22:01:56 suricata[9256] [100308] <Notice> -- This is Suricata version 6.0.4 RELEASE running in SYSTEM mode 2021-12-02T21:59:13 suricata[62155] [100298] <Notice> -- Signal Received. Stopping engine. # Bevor ich neugestartet habe2021-12-02T21:16:34 suricata[62155] [100298] <Notice> -- all 12 packet processing threads, 4 management threads initialized, engine started.2021-12-02T21:15:53 suricata[62155] [100298] <Error> -- [ERRCODE: SC_ERR_INVALID_SIGNATURE(39)] - error parsing signature "drop tcp $EXTERNAL_NET any -> $HOME_NET $FILE_DATA_PORTS (msg:"SERVER-WEBAPP Pulse Connect Secure template injection attempt"; flow:to_server,established; content:"/dana-admin/auth/custompage.cgi"; fast_pattern:only; http_uri; file_data; content:"LoginPage.thtml"; metadata:policy balanced-ips drop, policy max-detect-ips drop, policy security-ips drop, service ftp-data, service http, service imap, service pop3; reference:cve,2020-8243; reference:url,kb.pulsesecure.net/articles/Pulse_Security_Advisories/SA44588; classtype:attempted-admin; sid:57452; rev:1;)" from file /usr/local/etc/suricata/opnsense.rules/snort_vrt.server-webapp.rules at line 4720 2021-12-02T21:15:53 suricata[62155] [100298] <Error> -- [ERRCODE: SC_ERR_INVALID_SIGNATURE(39)] - Can't use file_data with flow:to_server or flow:from_client with http. 2021-12-02T21:15:53 suricata[62155] [100298] <Error> -- [ERRCODE: SC_ERR_INVALID_SIGNATURE(39)] - error parsing signature "drop tcp $EXTERNAL_NET any -> $HOME_NET $HTTP_PORTS (msg:"SERVER-WEBAPP Oracle GlassFish Server authentication bypass attempt"; flow:to_server,established; content:"GET"; nocase; http_method; content:"/applications/upload"; http_uri; pcre:"/^(Frame)?\.jsf/R"; content:!"JSESSIONID="; flowbits:set,glassfish_unauth_attempt; metadata:policy max-detect-ips drop, service http; reference:bugtraq,47438; reference:cve,2011-0807; classtype:attempted-admin; sid:20159; rev:9;)" from file /usr/local/etc/suricata/opnsense.rules/snort_vrt.server-webapp.rules at line 3542 2021-12-02T21:15:53 suricata[62155] [100298] <Error> -- [ERRCODE: SC_ERR_INVALID_SIGNATURE(39)] - pcre with /R (relative) needs preceding match in the same buffer