Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    MBUF slowly increasing over time

    Scheduled Pinned Locked Moved General pfSense Questions
    23 Posts 2 Posters 2.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S
      stephenw10 Netgate Administrator
      last edited by

      Must be some config you have or something you're running.

      What packages do you have installed?

      Steve

      1 Reply Last reply Reply Quote 0
      • TheCyberfreakT
        TheCyberfreak
        last edited by

        These are my installed packages
        IMG_0685.jpeg

        1 Reply Last reply Reply Quote 0
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          Are you running OpenVPN with DCO enabled perhaps?

          Are you using traffic shaping at all? Captive portal?

          1 Reply Last reply Reply Quote 0
          • TheCyberfreakT
            TheCyberfreak
            last edited by

            I’ve enabled DCO but in the last week there wasn’t any incoming connection.
            I’ve disabled DCO right now, but I dont believe that’s the reason..

            I’m not using traffic shaping or CP

            1 Reply Last reply Reply Quote 0
            • stephenw10S
              stephenw10 Netgate Administrator
              last edited by

              You were definitely seeing it before you enabled DCO?

              1 Reply Last reply Reply Quote 0
              • TheCyberfreakT
                TheCyberfreak
                last edited by

                I have now tested a bit over the day. In fact, the cause was the DCO setting of the OpenVPN tunnels. After I fixed this setting on two tunnels, the problem is gone and the MBUF stays constant again!

                Thanks a lot for your help!

                1 Reply Last reply Reply Quote 0
                • stephenw10S
                  stephenw10 Netgate Administrator
                  last edited by

                  Ooo, that sounds like something we need to address. You just disabled DCO and the mbuf leak stopped? Made some other change?

                  Steve

                  1 Reply Last reply Reply Quote 0
                  • TheCyberfreakT
                    TheCyberfreak
                    last edited by

                    I only disabled DCO on two existing tunnels, since then it has remained constantly at that value, after a restart it is constantly low again.

                    1 Reply Last reply Reply Quote 0
                    • stephenw10S
                      stephenw10 Netgate Administrator
                      last edited by

                      Are you able to share the settings you were using that created the leak? None of my DCO test systems appear to be leaking.

                      1 Reply Last reply Reply Quote 0
                      • TheCyberfreakT
                        TheCyberfreak
                        last edited by

                        Yes, what settings do you need?

                        1 Reply Last reply Reply Quote 0
                        • stephenw10S
                          stephenw10 Netgate Administrator
                          last edited by

                          Ideally the full server config with DCO enabled and whatever redacted you need to.

                          So either the OpenVPN config from:
                          /var/etc/openvpn/server1/config.ovpn

                          Or the server section from the main pfSense config file.

                          But anything you can provide to help us replicate it would be very helpful.

                          Steve

                          1 Reply Last reply Reply Quote 0
                          • TheCyberfreakT
                            TheCyberfreak
                            last edited by TheCyberfreak

                            Since in the VPN config is nothing big in it, I can also simply upload here, but just as TXT, because the upload here does not allow everything.

                            I had DCO now again for a few minutes on and connected with my cell phone via VPN, my MBUF went up in this time about 400. Therefore I have deactivated it now again. Since I pulled the config file afterwards, DCO is now disabled here.

                            For this VPN I have a firewall rule which allows the traffic to all destinations. Only the "Allow IP options" I have activated here.

                            config.txt

                            If you need more data, I am at your disposal!

                            Edit:
                            Do you mean the OpenVPN server excerpt from the pfSense config?

                            1 Reply Last reply Reply Quote 0
                            • TheCyberfreakT
                              TheCyberfreak
                              last edited by

                              So, now I would also have the entire Config. I had DCO only a few minutes on and the value has risen directly again rapidly.

                              How can I send you the config?

                              1 Reply Last reply Reply Quote 0
                              • stephenw10S
                                stephenw10 Netgate Administrator
                                last edited by

                                That's probably good enough but more data never hurts!

                                You can upload files to me here: https://nc.netgate.com/nextcloud/s/kfzcg536kMRgtGd

                                Steve

                                1 Reply Last reply Reply Quote 0
                                • First post
                                  Last post
                                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.