• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

2.6.0 & 23.01 netgate and custom HW. Web UI extremely slow when no WAN present.

Scheduled Pinned Locked Moved General pfSense Questions
23 Posts 7 Posters 2.0k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • P
    PhlMike @coxhaus
    last edited by May 15, 2023, 8:57 PM

    @coxhaus I run a MSP managing 700+ sites, ranging from 1 user to 2,000 users. DNS resolving has no bearing because the unit isn't connected to the network. The issue today wasn't a large network. It was a single Unifi 48-port switch, handling maybe 20 people with wired computers and voip phones. Their DNS server was over an IPSEC tunnel with a backup of the local pfSense firewall. The Internet was a single SMB/Consumer grade Verizon FiOS ONT. Single internet port with single static IP address. The current firewall was a Netgate unit that was just replaced three days ago, but had its config backed up and restored to the newer unit from the older unit that died. Today that unit started crashing, so a tech brought over a brand new netgate unit, but instead of restoring the old config, needed to recreate it himself while onsite. Local DNS would have done nothing for him. So he tool the company down, plugged in the new firewall, set up WAN and then I logged into his Surface and did the config because I am the pfSense SME. I can make a pfSense run a cappuccino machine from a magic packet. This is a long standing known issue with pfSense and it gathers up over the years until I lose it and publish a bug.

    I refuse to use Cisco or Meraki anything. I run UBNT or Microtik switches or APs. In a pinch I'll run Aruba/HPE. Yes, I have all fancy networks with all the fancy buzzwords the kids learn in Network+ class but in those networks I have numerous firewalls and internet lines and the firewalls are usually virtual anyway. Pointless to have a hardware firewall. I have a few vmware stacks running a few hundred VMs on hundres or so vlans.

    1 Reply Last reply Reply Quote 0
    • P
      PhlMike @SteveITS
      last edited by PhlMike May 15, 2023, 9:00 PM May 15, 2023, 8:59 PM

      @steveits 2.7.0 isn't out yet and I can absolutely confirm it is not resolved on 23.01 as I just did today about 10 minutes before making the ticket. I can even give you the PO number when I bought the TAC Lite to get PFSense plus.

      10:44am EST. I can PM you the order number if you don't believe me. That was on the Xeon Silver with 128GB of RAM.

      1 Reply Last reply Reply Quote 0
      • P
        PhlMike @SteveITS
        last edited by PhlMike May 15, 2023, 9:16 PM May 15, 2023, 9:16 PM

        @steveits 22.05 seems to be better, but its an empty config. You still have to get rid of the warranty tile for it to really speed up. I don't have a production 22.05 to test on. But 23.01 still takes a bit.

        1 Reply Last reply Reply Quote 0
        • S
          stephenw10 Netgate Administrator
          last edited by May 15, 2023, 10:55 PM

          It's no where near as bad as it used to be but I agree it can still be frustratingly slow if no WAN is available. I may be conflating a number of bug reports in my head but I thought there was something open other than 12141.
          This might be better served as a new feature request for an off-line config mode or similar.

          Steve

          P R 2 Replies Last reply May 15, 2023, 11:12 PM Reply Quote 0
          • P
            PhlMike @stephenw10
            last edited by May 15, 2023, 11:12 PM

            @stephenw10 Once you nick the warranty tile on the Dashboard in 22.05 and 23.01 on a "lite" config. Things smooth up. What happened today was the unit my tech had still had CE 2.6.0 on it which is BRUTAL and caused him to complain and then the business owner to explode on the phone at me. Hence my frustration. Poo rolls down hill. There have been from what I recall, dozens of tickets. I remember one from 2.4.5. Because 2.4.3 and 2.4.4 were beyond brutal, literally minutes. On a well-used firewall with mileage on it, 10's of minutes, not joking. 23.01 seems noticeably slower than when I reverted to 22.05, but that is a test machine which was an old 45-drives CEPH service delivery node that I had laying around. For a firewall with no real config, its a little overkill (yes that IS an understatement).

            I like your idea of an Offline Config mode. I'll make one on redmine, but for pfSense+ as it would be more likely to be addressed sooner as a "premium" option.

            I'll notate this post on the ticket.

            1 Reply Last reply Reply Quote 0
            • S
              stephenw10 Netgate Administrator
              last edited by May 15, 2023, 11:21 PM

              What would probably be a relatively easy solution would be a php shell script that disables whatever is needed from the cli before you reach the login. A slightly bigger ask might be console menu option directly. The issue would probably be making sure some of those things are re-enabled again at the appropriate time. I could imagine posting an alert perhaps.

              I've been there in older versions when restoring a config resulted in pkg reinstalling having to timeout for each package. It was not fun!

              P 1 Reply Last reply May 15, 2023, 11:32 PM Reply Quote 0
              • P
                PhlMike @stephenw10
                last edited by May 15, 2023, 11:32 PM

                @stephenw10 I added that in as well to Feature #14387. I also decided to make another feature to search in the timezone list - but I set that as low priority for the CE base. The Offline Config I set for pfSense+ because I want to see that sooner.

                I haven't been a programmer in over 20 years, otherwise I would contribute code. Maybe I'll just ask ChatGPT. ;-) (I am just joking, I'm not going to submit AI generated code).

                S 1 Reply Last reply May 15, 2023, 11:41 PM Reply Quote 0
                • S
                  stephenw10 Netgate Administrator @PhlMike
                  last edited by May 15, 2023, 11:41 PM

                  @phlmike said in 2.6.0 & 23.01 netgate and custom HW. Web UI extremely slow when no WAN present.:

                  Maybe I'll just ask ChatGPT. ;-)

                  Probably better than anything I could "write". 😉

                  1 Reply Last reply Reply Quote 0
                  • R
                    RobbieTT @stephenw10
                    last edited by May 16, 2023, 8:41 AM

                    @stephenw10 said in 2.6.0 & 23.01 netgate and custom HW. Web UI extremely slow when no WAN present.:

                    This might be better served as a new feature request for an off-line config mode or similar.

                    Steve

                    When done, send a copy to Microsoft for attention of the Windows Installation team. 🫠

                    ☕️

                    P 1 Reply Last reply May 16, 2023, 1:07 PM Reply Quote 1
                    • P
                      PhlMike @RobbieTT
                      last edited by May 16, 2023, 1:07 PM

                      @robbiett said in 2.6.0 & 23.01 netgate and custom HW. Web UI extremely slow when no WAN present.:

                      @stephenw10 said in 2.6.0 & 23.01 netgate and custom HW. Web UI extremely slow when no WAN present.:

                      This might be better served as a new feature request for an off-line config mode or similar.

                      Steve

                      When done, send a copy to Microsoft for attention of the Windows Installation team. 🫠

                      ☕️

                      Use no@thankyou.com and it will error out and let you continue locally for home. For pro, use domain join. However the best solution is to install linux. 😀

                      1 Reply Last reply Reply Quote 1
                      23 out of 23
                      • First post
                        23/23
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                        This community forum collects and processes your personal information.
                        consent.not_received