Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    3.1.0_6 UPDATE

    Scheduled Pinned Locked Moved pfBlockerNG
    77 Posts 14 Posters 16.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • keyserK
      keyser Rebel Alliance @A Former User
      last edited by

      @dobby_ said in 3.1.0_6 UPDATE:

      Why? Because Netgate is now the maintainer? Then you could not trust the whole system (pfSense) and this makes
      no sense for me. If I trust someone (Netgate) and use his entire system I will also trust them if they (Netgate) maintain a package!

      Yes, I agree, if Netgate took over I still trust it although this release without release notes and with the bug still present does shake my confidence a bit.
      But the question is: Is netgate the maintainer now? We have no information, and theoretically this update could come from some other source and was accidentally approved without throrough review (Given the bug is still there, I'm guessing there has been no review.....)

      We need some proper information about these release
      from whoever is responsible for the included changes
      and who approved it.

      Thinking one step ahead please, it is better in my eyes getting the hands on a package that is available and present, then one is not maintained any more!

      I will be more lucky with a patch, given in a short time
      that is working, I mean it is better then watching out the whole ticket parade and not patch is available.

      Ehh no. The 3.1.0_4 build was supported up until recently by BBCAN, and until pfSense has made a new release (2.7/22.11) another pfBlockerNG-devel release is not needed unless it fixes the problem _4 had.

      Love the no fuss of using the official appliances :-)

      J 1 Reply Last reply Reply Quote 0
      • fireodoF
        fireodo
        last edited by fireodo

        @keyser said in 3.1.0_6 UPDATE:

        I haven't updated yet because of this, and as far as I can tell people are still applying the same "fix" by removing the ")" in line 4136. So something is still the same in that section.

        I saw the modifications in 3.1.0_6 FOR pfsense 2.6.0 - I dont know if that is also the case in pfsense+ 22.05!
        (the previous version 3.1.0_5 for 2.6.0 still had the issue in line 4136)

        Kettop Mi4300YL CPU: i5-4300Y @ 1.60GHz RAM: 8GB Ethernet Ports: 4
        SSD: SanDisk pSSD-S2 16GB (ZFS) WiFi: WLE200NX
        pfsense 2.8.0 CE
        Packages: Apcupsd Cron Iftop Iperf LCDproc Nmap pfBlockerNG RRD_Summary Shellcmd Snort Speedtest System_Patches.

        GertjanG 1 Reply Last reply Reply Quote 0
        • GertjanG
          Gertjan @fireodo
          last edited by Gertjan

          Read How to unblock duckduckgo and find why it's being blocked.

          BB is still there 😊

          And @keyser

          No "help me" PM's please. Use the forum, the community will thank you.
          Edit : and where are the logs ??

          fireodoF 1 Reply Last reply Reply Quote 1
          • fireodoF
            fireodo @Gertjan
            last edited by

            @gertjan said in 3.1.0_6 UPDATE:

            Read How to unblock duckduckgo and find why it's being blocked.

            I saw that Thread ☺ and it was nice to see that he is still implicated in pfblockerng ...

            Kettop Mi4300YL CPU: i5-4300Y @ 1.60GHz RAM: 8GB Ethernet Ports: 4
            SSD: SanDisk pSSD-S2 16GB (ZFS) WiFi: WLE200NX
            pfsense 2.8.0 CE
            Packages: Apcupsd Cron Iftop Iperf LCDproc Nmap pfBlockerNG RRD_Summary Shellcmd Snort Speedtest System_Patches.

            1 Reply Last reply Reply Quote 0
            • J
              jdeloach @keyser
              last edited by

              @keyser said in 3.1.0_6 UPDATE:

              @dobby_ said in 3.1.0_6 UPDATE:

              But the question is: Is netgate the maintainer now? We have no information, and theoretically this update could come from some other source and was accidentally approved without throrough review (Given the bug is still there, I'm guessing there has been no review.....)

              Ehh no. The 3.1.0_4 build was supported up until recently by BBCAN, and until pfSense has made a new release (2.7/22.11) another pfBlockerNG-devel release is not needed unless it fixes the problem _4 had.

              What problem did _4 have? I am a long user of this package and was not aware of any bugs/issues.

              GertjanG 1 Reply Last reply Reply Quote 0
              • GertjanG
                Gertjan @jdeloach
                last edited by

                @jdeloach said in 3.1.0_6 UPDATE:

                What problem did _4 have?

                Scroll to the top, start reading ;)

                @keyser said in 3.1.0_6 UPDATE:

                and as far as I can tell people are still applying the same "fix" by removing the ")" in line 4136.

                No "help me" PM's please. Use the forum, the community will thank you.
                Edit : and where are the logs ??

                J 1 Reply Last reply Reply Quote 0
                • J
                  jdeloach @Gertjan
                  last edited by

                  @gertjan said in 3.1.0_6 UPDATE:

                  @jdeloach said in 3.1.0_6 UPDATE:

                  What problem did _4 have?

                  Scroll to the top, start reading ;)

                  @keyser said in 3.1.0_6 UPDATE:

                  and as far as I can tell people are still applying the same "fix" by removing the ")" in line 4136.

                  I don't see any issues listed in any of the messages, that I have ever had. Granted I don't use Netgate hardware and only run CE 2.6.0. Swap space is always 0% and CPU usage is never spikes above about 3%.

                  By the way I'm running Snort as well as pfBlockerNG.

                  ? keyserK 2 Replies Last reply Reply Quote 0
                  • BBcan177B
                    BBcan177 Moderator
                    last edited by

                    Before the pitch forks come out... I am still here and nothing has changed but its been challenging lately ... working on a release which should hopefully be available later this week or next week for the 2.6 and 2.7 branches. Thanks for the patience!

                    Its been quite a ride since 2014:
                    https://twitter.com/BBcan177/status/1354556985652506624

                    "Experience is something you don't get until just after you need it."

                    Website: http://pfBlockerNG.com
                    Twitter: @BBcan177Β  #pfBlockerNG
                    Reddit: https://www.reddit.com/r/pfBlockerNG/new/

                    fireodoF keyserK lohphatL J 5 Replies Last reply Reply Quote 16
                    • fireodoF
                      fireodo @BBcan177
                      last edited by fireodo

                      @bbcan177 said in 3.1.0_6 UPDATE:

                      Before the pitch forks come out..

                      πŸ˜‚ πŸ˜‚ πŸ˜‚

                      Thanks for the patience!

                      Thank YOU for clarification and Thank You for your work! (has to be said)

                      Kind regards,
                      fireodo

                      Kettop Mi4300YL CPU: i5-4300Y @ 1.60GHz RAM: 8GB Ethernet Ports: 4
                      SSD: SanDisk pSSD-S2 16GB (ZFS) WiFi: WLE200NX
                      pfsense 2.8.0 CE
                      Packages: Apcupsd Cron Iftop Iperf LCDproc Nmap pfBlockerNG RRD_Summary Shellcmd Snort Speedtest System_Patches.

                      DefenderLLCD 1 Reply Last reply Reply Quote 3
                      • S SteveITS referenced this topic on
                      • DefenderLLCD
                        DefenderLLC @fireodo
                        last edited by

                        @fireodo said in 3.1.0_6 UPDATE:

                        @bbcan177 said in 3.1.0_6 UPDATE:

                        Before the pitch forks come out..

                        πŸ˜‚ πŸ˜‚ πŸ˜‚

                        Thanks for the patience!

                        Thank YOU for clarification and Thank You for your work! (has to be said)

                        Kind regards,
                        fireodo

                        Amen!

                        fireodoF 1 Reply Last reply Reply Quote 0
                        • fireodoF
                          fireodo @DefenderLLC
                          last edited by

                          @cloudified said in 3.1.0_6 UPDATE:

                          Amen!

                          πŸ˜…

                          Kettop Mi4300YL CPU: i5-4300Y @ 1.60GHz RAM: 8GB Ethernet Ports: 4
                          SSD: SanDisk pSSD-S2 16GB (ZFS) WiFi: WLE200NX
                          pfsense 2.8.0 CE
                          Packages: Apcupsd Cron Iftop Iperf LCDproc Nmap pfBlockerNG RRD_Summary Shellcmd Snort Speedtest System_Patches.

                          1 Reply Last reply Reply Quote 0
                          • keyserK
                            keyser Rebel Alliance @BBcan177
                            last edited by

                            @bbcan177 This is the best news in a long time given the slightly shaky rumours that have been circulating.

                            Thank you for your excellent work - your package is what makes pfSense the best solution around :-)

                            Love the no fuss of using the official appliances :-)

                            1 Reply Last reply Reply Quote 3
                            • ?
                              A Former User @jdeloach
                              last edited by

                              @jdeloach said in 3.1.0_6 UPDATE:

                              I don't see any issues listed in any of the messages, that
                              I have ever had.

                              This is also not a must be for everybody I would be glad about to see the same here, but I am also using very old
                              hardware and perhaps to "small foot print" for this load.
                              PC Engines APU4D4

                              Granted I don't use Netgate hardware and only run
                              CE 2.6.0.

                              It is an software problem so it should be nothing to do
                              with the hardware it selfs, but with much packages installed and much of list feeds, snort rules and av signatures it is perhaps here and there able to point on.

                              Swap space is always 0% and CPU usage is never
                              spikes above about 3%.

                              Only my AV signatures are taking 1 GB - 1,7 GB of ram and I only own 4 GB hard soldered on the board! So 4 GB swap is not such a great thing if you have to deal with a bunch of rules and lists.

                              By the way I'm running Snort as well as pfBlockerNG.

                              Me too, but it comes squid & squidguard plus clamav on top of it and with some lists I havenΒ΄t seen such numbers
                              before like you. And WiFi and FreeRadius are not activated
                              at this time. I really think it should be in the near future another box more strong or powerful.

                              1 Reply Last reply Reply Quote 0
                              • keyserK
                                keyser Rebel Alliance @jdeloach
                                last edited by

                                @jdeloach said in 3.1.0_6 UPDATE:

                                I don't see any issues listed in any of the messages, that I have ever had. Granted I don't use Netgate hardware and only run CE 2.6.0. Swap space is always 0% and CPU usage is never spikes above about 3%.

                                By the way I'm running Snort as well as pfBlockerNG.

                                As I understand the issue, it’s related to a change in the logging format pfsense uses in pfSense+ 22.05
                                That release is as far as I remember a pfsense+ release only - there where no CE 2.6.1 or whatever that could have been called.
                                I might remember wrong, but CE2.6 came with pfsense+ 22.01

                                Love the no fuss of using the official appliances :-)

                                ? 1 Reply Last reply Reply Quote 0
                                • ?
                                  A Former User @keyser
                                  last edited by

                                  @keyser said in 3.1.0_6 UPDATE:

                                  I might remember wrong, but CE2.6 came with pfsense+ 22.01

                                  CE branch (CE tree)
                                  pfSense CE 2.5 > 2.6 > 2.7.....
                                  Plus branch (Plus tree)
                                  pfSense+ (Plus) 22.01 > 22.05 > 22.09 > 22.11....
                                  Developer branch (devel tree)
                                  pfSense x.y devel is even a developer version for testing out
                                  using at home and/or in some rarely cases, only.

                                  1 Reply Last reply Reply Quote 0
                                  • lohphatL
                                    lohphat @BBcan177
                                    last edited by

                                    @bbcan177 Yay! Just upped my Patreon contribution.

                                    SG-3100 24.11-RELEASE (arm) | Avahi (2.2_6) | ntopng (5.6.0_1) | openvpn-client-export (1.9.5) | pfBlockerNG-devel (3.2.1_20) | System_Patches (2.2.20_1)

                                    DefenderLLCD 1 Reply Last reply Reply Quote 2
                                    • DefenderLLCD
                                      DefenderLLC @lohphat
                                      last edited by DefenderLLC

                                      @lohphat said in 3.1.0_6 UPDATE:

                                      @bbcan177 Yay! Just upped my Patreon contribution.

                                      For those that need to donate to the cause (myself included):

                                      https://www.patreon.com/pfBlockerNG

                                      1 Reply Last reply Reply Quote 5
                                      • lohphatL
                                        lohphat
                                        last edited by

                                        I upgraded from _4 to _6, had to manually restart unbound (as usual), and had to reapply the pre-existing patch in /net/usr/local/pkg/pfblockerng/pfblockerng.inc

                                        ...
                                        -                $r = explode(')', $result, 2);
                                        +                $r = explode(' ', $result, 2);
                                        ...
                                        

                                        Watching the git commits, there was activity in the pfblockerng.inc file but not the above change.

                                        Is there a Redmine bug tracking that?

                                        SG-3100 24.11-RELEASE (arm) | Avahi (2.2_6) | ntopng (5.6.0_1) | openvpn-client-export (1.9.5) | pfBlockerNG-devel (3.2.1_20) | System_Patches (2.2.20_1)

                                        1 Reply Last reply Reply Quote 0
                                        • S
                                          SteveITS Galactic Empire @SteveITS
                                          last edited by

                                          @lohphat said in 3.1.0_6 UPDATE:

                                          Is there a Redmine bug tracking that?

                                          yes

                                          @steveits said in 3.1.0_6 UPDATE:

                                          https://redmine.pfsense.org/issues/13154

                                          The code changes didn't find their way into _5 or _6.

                                          Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                                          When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                                          Upvote πŸ‘ helpful posts!

                                          1 Reply Last reply Reply Quote 1
                                          • DefenderLLCD
                                            DefenderLLC
                                            last edited by

                                            FYI, 3.1.0_7 is out now with the included fix... Just installed it on my 6100 and everything is working fine.

                                            lohphatL 1 Reply Last reply Reply Quote 1
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.