• New Install - Mailreport Package Errors Out When Adding New Report

    5
    0 Votes
    5 Posts
    241 Views
    P

    TIL about the System Patches package and path strips. Thanks for your help @stephenw10 . We're back in business.

  • spontaneous reboots after 24.11 upgrade

    Moved
    10
    0 Votes
    10 Posts
    848 Views
    chudakC

    My reboot issue on 24.11 has NOT been resolved!

    So 24.11 is unusable to me :(

    Netgat TAC support guys suggested it's an h/w issue and offered to wipe out my drive and try to install it clean. I tried uninstalling a bunch of packaging and it did not help.

    I am hesitant to wipe out my drive as I will lose my boot env snapshots.

    Just posting here for posterity.

  • 0 Votes
    21 Posts
    2k Views
    O

    @Gertjan So I used both tcpdump and radsniff to look at packet traces, but I can't see any issues. In both cases (working and non-working) the radius server sends back an Access-Accept message with the same set of fields.

  • Rule Tracker ID Gone Missing?

    9
    0 Votes
    9 Posts
    651 Views
    R

    @stephenw10 - Excellent! Patch worked. Glad I wasn't imagining things.

  • How to run upgrade faster ?

    6
    0 Votes
    6 Posts
    271 Views
    M

    Our solution at this point :

    Automatically :

    Remove unwanted boot environnements Update the train to the stable version Check upgrade availability (pfSense-upgrade -d -c) Prefetch all packages (pkg fetch -u -d -y)

    So we want finally launch the upgrade (pfSense-upgrade -4 -d -y) it's faster !

  • issues with dumpdev in /etc/defaults/rc.conf

    14
    0 Votes
    14 Posts
    558 Views
    JonathanLeeJ

    @JonathanLee said in issues with dumpdev in /etc/defaults/rc.conf:

    sysctl debug.kdb.panic=1

    b9160abf-7a3b-47d4-a8c5-0ace4dae0fe1-image.png

    Custom solution

    add the cron copy the rc.dumpon to rc.dumpon.old
    add the new info

    and it works

  • DNS Forwarder Custom Options always gives "Invalid custom options"

    33
    0 Votes
    33 Posts
    2k Views
    stephenw10S

    I'm referring to the recommends patches list in the System Patches package. I can't see anything there that should make any difference to dnsmasq but it's worth trying.

  • Changing LAN Interface

    8
    0 Votes
    8 Posts
    387 Views
    johnpozJ

    @froussy yeah as long as you connect in on something other than what is being changed you should be fine - if something goes wrong and your change isn't working you can always switch it back, etc.

    Over the years I have myself shot myself in the foot a few times, its never fun.. ;)

    Always give yourself a backup/backout plan.. When doing change on a cisco router or switch that could be problematic etc, always put in a reload command on a timer.. So worse case if goes wrong - it will reboot say in 10 minutes and your back to the start, if your change worked as you expected and all things working you can cancel the reload and save the config, etc.

    I mean the switch/router rebooting might be a shitty outcome and maybe cause a service interruption, but that is far better than being in a broken config for a length of time until you can get to the site to fix, etc.

    I mean your switch of interfaces should be no big deal, and work just fine, etc. "But" what if it doesn't and now you can't get in to fix it.. Better safe than sorry..

    edit: I once getting cocky after so many eventless upgrades - had just clicked upgrade on a one of the old 2440 netgate boxes while home after work because figured hey nobody is there so they won't notice the few minutes of down time while it upgraded... Well it never came back and had to go into the office early to fix it. Only took a few minutes to restore and get the upgrade done when I was there.. And that was always my back up plan in case of disaster.. But this is why during covid and locked out of the office I didn't upgrade anything remotely ;) heheh

    Better safe than sorry is good motto to live by ;)

  • Setup and add PFSense router to existing network

    5
    0 Votes
    5 Posts
    520 Views
    stephenw10S

    @AJ847-63 said in Setup and add PFSense router to existing network:

    trying to figure out why disabling WPS on a router solved speakers not being detectable in the app (despite everyone including the product designer telling me that's not possible)

    Ha, I know that feeling! And, yes, hard to see how that would have any effect. Yet....

    But, yes, I imagine the Asus router is connected to one of the LAN ports on the Telstra CPE?

    In which case you should be able to connect pfSense to one of the other LAN ports on the Telstra without affecting any of the existing network. Just make sure there are no overlapping subnets.

    Then you can experiment with pfSense and move things across to it when it's ready.

  • pfsense crashes lately - how can i analyze logs?

    15
    0 Votes
    15 Posts
    1k Views
    stephenw10S

    Yup, two completely different crashes again. I would definitely do a memory test here as a next step. A software bug would not present such widely varying crashes.

  • How to get rid of not fully installed packages (marked red)

    2
    0 Votes
    2 Posts
    165 Views
    GertjanG

    @conover

    Install pfBlockerng-devel first.

    This will install pfBlockerng-devel, and install the de-install instructions.

    Now de-install.

  • Export All Logs

    6
    0 Votes
    6 Posts
    528 Views
    P

    I understand, thank you for the details and fast reply.

  • DHCP log full of wan renewal requests

    10
    0 Votes
    10 Posts
    457 Views
  • warning: increase kern.maxswzone or reduce amount of swap.

    8
    0 Votes
    8 Posts
    700 Views
    JonathanLeeJ

    @stephenw10 I might have to reformat the micro HDD it’s one big zfs parition

  • arpresolve: can't allocate llinfo for 192.168.100.1

    24
    0 Votes
    24 Posts
    6k Views
    johnpozJ

    @war6000 while that would most likely stop the logs you were seeing. It would prob be a more logical to set your ip to say 192.168.100.2/24 and then if you want to talk to 192.168.100.1 to access say your modems status page you would be coming from 192.168.100.2 vs your public IP on that interface hoping the modem answers, etc.

    vip.jpg

    states.jpg

  • CSS style problem with Status->System Logs->System->General

    9
    0 Votes
    9 Posts
    420 Views
  • pfSense OpenVPN and Wireless network

    2
    0 Votes
    2 Posts
    156 Views
    stephenw10S

    Running an OpenVPN client in pfSense connected to some commercial provider does nothing to protect wireless traffic between clients and pfSense.

    Running a client in AP also doesn't protect the wireless traffic and would prevent pfSense seeing the traffic.

    If you actually want to protect the wireless traffic you would need to run the VPN client on the end point client devices directly. But you shouldn't need to do that unless you have an ancient AP that only supports WEP!

    Steve

  • 0 Votes
    5 Posts
    327 Views
    stephenw10S

    The 4100/6100 bracket fixes to the device using specific mounting holes in the side. The 1100 doesn't have them so you'd need to do some work to it just to allow it to hold it. A shelf or something custom would be better IMO.

  • igmp proxy wont start with following error

    4
    0 Votes
    4 Posts
    511 Views
    C

    Thank you @Konstanti for pointing to the relevant part in the source, as a quick remedy, I changed 5 of the ips to a /29 as other type of alias, and now it stays running.

    However I am clueless on how IGMP is supposed to function, is it actually worth anything when using IPTV app's on smart tv's like ITV player, iplayer, channel 4 etc. or is it just for specific types of TV broadcasts?

    Since turning it on there has been some activity from the TV in question, and my one plus 8 pro phone despite having no TV apps installed is now sending IGMP packets.

    It also is spamming this which is the TV IP.

    The source address 192.168.90.119 for group 239.255.255.250 is from downstream VIF[1]. Ignoring.
  • 0 Votes
    2 Posts
    205 Views
    A

    Ok i worked it out
    first enable 2-Step-Verification
    then go to
    https://myaccount.google.com/apppasswords
    and create a password

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.