Yes, you are running opnsense-devel and I added kernel/base support there. But you can't install the 17.7.1 kernel and base because you locked them to stay at 18.1-BETA with "opnsense-update -L" so everything is as it should be. Thanks,Franco
Hi Lattera,are you using VLANS on your productions ?I was curious why IPS mode ?
root@firewall:~ # opnsense-update -bkgr 18.1.b -n "snapshots\/beta"Kernel locked at 18.1.b-amd64, skipping.Base locked at 18.1.b-amd64, skipping.Your system is up to date.
OPNsense 17.7.7_1-amd64FreeBSD 11.1-RELEASE-p2OpenSSL 1.0.2l 25 May 2017
Did you change the firmware GUI settings? I used a stale mirror link snapshots/beta to prevent this foot-shooting. Change it back to normal. And btw there is no update so far from 17.7.7.
Unusable when Suricata in IPS mode (+ promiscuous) is enabled on VLANs. This is on a Zotac CI323 with Realtek chips.Endless reboots until Suricata is turned off.Couldn't find anything in dmesg, so it seems to be a different issue than the kernel crashes that used to happen.On a more positive note, FreeBSD 11.1 seems to boot normally on that hardware. It used to be that the card reader would hang the boot process for 1-2 minutes.
Quote from: interfaSys on November 17, 2017, 11:19:42 pmUnusable when Suricata in IPS mode (+ promiscuous) is enabled on VLANs. This is on a Zotac CI323 with Realtek chips.Endless reboots until Suricata is turned off.Couldn't find anything in dmesg, so it seems to be a different issue than the kernel crashes that used to happen.On a more positive note, FreeBSD 11.1 seems to boot normally on that hardware. It used to be that the card reader would hang the boot process for 1-2 minutes.I'm running the same system with 4GB of ram and did not experience any reboots. However my WAN connection speed dropped to 20Mbps from 70Mbps. If i remove my VLAN, and OPENVPN interfaces from the HOME NETWORK tab (only LAN defined) in SURICATA my connection speeds jumps up to 50Mbps. What is the expected performance hit when running Suricata ?