Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    pfSense Plus software version 22.05 is now available for upgrades!

    Scheduled Pinned Locked Moved Messages from the pfSense Team
    26 Posts 18 Posters 7.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • B
      brians
      last edited by

      Updated a 6100, 4100, 2100, and older 2220 so far with no issues.
      OpenVPN site to site, client servers, and IPsec site to site tunnels no issues so far. Have a bunch more to upgrade over the next while but wanted to get the 4100 and 6100 updated because the 4100 is being sent out soon to a remote location with an OpenVPN back to 6100 and I would rather download and test update here first rather than remotely.

      1 Reply Last reply Reply Quote 0
      • R
        reberhar @pfsjap
        last edited by

        @pfsjap I had to uninstall and reinstall. Then Squid came up.

        R 1 Reply Last reply Reply Quote 0
        • R
          reberhar @reberhar
          last edited by

          @reberhar I also had some problems with pfblocker not working.

          1 Reply Last reply Reply Quote 0
          • D
            defunct78
            last edited by

            I ended up doing a reinstall on my SG1100 so that I could get access to “ZFS boot environments”. Personally I think this is an amazing feature and had to have it. So far everything restored cleanly and has been stable for the last couple hours.

            SG-1100 24.03 (ZFS)

            1 Reply Last reply Reply Quote 0
            • GertjanG
              Gertjan
              last edited by

              Upgrade a 22.01 to 22.05 on a 4100.
              Checked the upgrade logs and now checking all the logs.
              Can't find any issue .what so ever ... really ?! 😊

              I use :

              400121b8-2138-4c71-becd-4142387230b4-image.png

              The "patches" list shows

              40a7f136-ddff-47a6-af4a-c31e458dfbda-image.png

              Nice 👍

              No "help me" PM's please. Use the forum, the community will thank you.
              Edit : and where are the logs ??

              1 Reply Last reply Reply Quote 0
              • D
                dgall @dgall
                last edited by

                @dgall uninstalled squid and 2 reboots later everything is working

                1 Reply Last reply Reply Quote 0
                • R
                  Rockyuk
                  last edited by

                  I upgraded from 22.01 to 22.05 and I now have 100% CPU usage for the last day. When I disable pfBlockerNG it goes back to normal. As soon as I re-enable it the CPU goes back to 100% it was working fine on 22.01, what is the best way to diagnose why pfBlockerNG is now using 100% CPU usage?

                  Thanks

                  Rockyuk

                  R 1 Reply Last reply Reply Quote 0
                  • jimpJ
                    jimp Rebel Alliance Developer Netgate
                    last edited by

                    Reminder: If you have issues, start a new thread in an appropriate category (e.g. General pfSense Questions).

                    This thread is an announcement and not intended for diagnosing problems.

                    Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                    Need help fast? Netgate Global Support!

                    Do not Chat/PM for help!

                    1 Reply Last reply Reply Quote 1
                    • R
                      reberhar @Rockyuk
                      last edited by

                      @rockyuk I don't know why you are at 100% cpu usage with pfBlocker. For me it was the downloading and installing of the UTI adult category. I watched the processes on TOP and they pretty well told the story. Dropping to the command line and running

                      top -aSH

                      helps to understand the processes that are using up the cycles.

                      Roy

                      1 Reply Last reply Reply Quote 0
                      • M
                        mark.dodrill
                        last edited by

                        Upgrade from 22.01 to 22.05 on my SG-1000 was successful (only Bandwidthd package installed). It always takes 15+ minutes to reboot and come back up, but it's working.

                        Mark

                        1 Reply Last reply Reply Quote 0
                        • R
                          rredecker
                          last edited by

                          I have upgraded main Router and two of my smaller router to 22.05. With this in mind I ran a test on a small router first. The upgrade went perfect and the upgrade did install perfectly. Now for the problem. If you run openvpn's new version on both router for a site to site vpn I can not get them to stay up at all. They connect fine then drop. I currently run it as TCP. but here is what I have tried all while taking down smaller sites all day yesterday to try to fix this issue.

                          • I change the connection to UDP instead of TCP (added the firewall rule)
                          • I changed the SHA to SHA512
                          • I created a TLS KEY for HMAC Auth and Shared that between the 2
                          • I removed all Encryption Algos except AES-256-GCM on both for main and fall back
                          • I remove DH
                            And it still will not stay connected...

                          However if you run 21.05 to 22.05 it will work fine.

                          Thank you

                          R 1 Reply Last reply Reply Quote 0
                          • R
                            reberhar @rredecker
                            last edited by

                            @rredecker

                            So what are your Ping settings set at?

                            I lost my network periodically and had to change my ping setting

                            Ping settings
                            Inactive
                            Causes OpenVPN to exit after n seconds of inactivity on the TUN/TAP device.
                            Activity is based on the last incoming or outgoing tunnel packet (not control or keep-alive packets).
                            A value of 0 disables this feature.

                            WARNING: Use with caution. When triggered, the client process will exit and it will not automatically restart.
                            Ping method
                            keepalive helper uses interval and timeout parameters to define ping and ping-restart values as follows:
                            ping = interval
                            ping-restart = timeout
                            Interval
                            Timeout

                            R 1 Reply Last reply Reply Quote 0
                            • R
                              reberhar @reberhar
                              last edited by

                              @reberhar cut and past didn't get it. I am at 10 and 300

                              B 1 Reply Last reply Reply Quote 0
                              • B
                                brians @reberhar
                                last edited by

                                @reberhar You can also set a service watchdog (install package) to keep the openvpn service running if disconnects. This has been an issue with OpenVPN site to site for a very long time - when disconnects seems it never reconnects by itself again.

                                R 1 Reply Last reply Reply Quote 0
                                • R
                                  reberhar @brians
                                  last edited by

                                  @brians Yes you are right. It is a pain in the neck when you must rely on tunnel and it is not there. The ping change is a little easier.

                                  1 Reply Last reply Reply Quote 0
                                  • C
                                    crosscheck
                                    last edited by

                                    This post is deleted!
                                    1 Reply Last reply Reply Quote 0
                                    • M marcosm unpinned this topic on
                                    • First post
                                      Last post
                                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.