Cannot upgrade to v24.03
-
So, every time I try to update pfSense, same thing.
Also tried to update from console. It just keeps looping.
Any ideas?
Enter an option: 13 pfSense-repoc-static: no package 'name' pfSense-repoc-static: no pfSense packages installed ERROR: It was not possible to determine pkg remote version >>> Updating repositories metadata... pkg-static: Warning: Major OS version upgrade detected. Running "pkg bootstrap -f" recommended Updating ntop repository catalogue... pkg-static: An error occured while fetching package pkg-static: An error occured while fetching package repository ntop has no meta file, using default settings pkg-static: An error occured while fetching package pkg-static: An error occured while fetching package Unable to update repository ntop Updating pfSense-core repository catalogue... Fetching meta.conf: . done Fetching packagesite.pkg: . done Processing entries: . done pfSense-core repository update completed. 5 packages processed. Updating pfSense repository catalogue... Fetching meta.conf: . done Fetching packagesite.pkg: .......... done Processing entries: .......... done pfSense repository update completed. 736 packages processed. Error updating repositories! >>> Locking package pkg... done. ERROR: It was not possible to determine pfSense-upgrade remote version ERROR: It was not possible to determine pfSense-upgrade remote version >>> Upgrading pfSense-upgrade... done. >>> Unlocking package pkg... done. pfSense-repoc-static: no package 'name' pfSense-repoc-static: no pfSense packages installed >>> Setting vital flag on pfSense-upgrade...done. ERROR: It was not possible to determine pkg remote version >>> Updating repositories metadata... pkg-static: Warning: Major OS version upgrade detected. Running "pkg bootstrap -f" recommended Updating ntop repository catalogue... pkg-static: An error occured while fetching package pkg-static: An error occured while fetching package repository ntop has no meta file, using default settings pkg-static: An error occured while fetching package pkg-static: An error occured while fetching package Unable to update repository ntop Updating pfSense-core repository catalogue... Fetching meta.conf: . done Fetching packagesite.pkg: . done Processing entries: . done pfSense-core repository update completed. 5 packages processed. Updating pfSense repository catalogue... Fetching meta.conf: . done Fetching packagesite.pkg: .......... done Processing entries: .......... done pfSense repository update completed. 736 packages processed. Error updating repositories! >>> Locking package pkg...done. ERROR: It was not possible to determine pfSense-upgrade remote version ERROR: It was not possible to determine pfSense-upgrade remote version >>> Upgrading pfSense-upgrade...
[23.09.1-RELEASE][admin@pfsense.haighaccess.local]/root: pkg bootstrap -f The package management tool is not yet installed on your system. Do you want to fetch and install it now? [y/N]: y Bootstrapping pkg from https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest, please wait... Certificate verification failed for /C=US/O=Let's Encrypt/CN=R3 002081A94D290000:error:0A000086:SSL routines:tls_post_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-23_09_1-main/sources/FreeBSD-src-plus-RELENG_23_09_1/crypto/openssl/ssl/statem/statem_clnt.c:1890: Certificate verification failed for /C=US/O=Let's Encrypt/CN=R3 002081A94D290000:error:0A000086:SSL routines:tls_post_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-23_09_1-main/sources/FreeBSD-src-plus-RELENG_23_09_1/crypto/openssl/ssl/statem/statem_clnt.c:1890: Certificate verification failed for /C=US/O=Let's Encrypt/CN=R3 002081A94D290000:error:0A000086:SSL routines:tls_post_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-23_09_1-main/sources/FreeBSD-src-plus-RELENG_23_09_1/crypto/openssl/ssl/statem/statem_clnt.c:1890: Certificate verification failed for /C=US/O=Let's Encrypt/CN=R3 002081A94D290000:error:0A000086:SSL routines:tls_post_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-23_09_1-main/sources/FreeBSD-src-plus-RELENG_23_09_1/crypto/openssl/ssl/statem/statem_clnt.c:1890: Certificate verification failed for /C=US/O=Let's Encrypt/CN=R3 002081A94D290000:error:0A000086:SSL routines:tls_post_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-23_09_1-main/sources/FreeBSD-src-plus-RELENG_23_09_1/crypto/openssl/ssl/statem/statem_clnt.c:1890: Certificate verification failed for /C=US/O=Let's Encrypt/CN=R3 002081A94D290000:error:0A000086:SSL routines:tls_post_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-23_09_1-main/sources/FreeBSD-src-plus-RELENG_23_09_1/crypto/openssl/ssl/statem/statem_clnt.c:1890:
-
Try running:
certctl rehash
Then check it can see pkgs with:
pkg-static -d update
Steve
-
-
@stephenw10 said in Cannot upgrade to v24.03:
Try running:
certctl rehash
Then check it can see pkgs with:
pkg-static -d update
Steve
Thanks, did not work. See output.
[23.09.1-RELEASE][admin@pfsense.haighaccess.local]/root: certctl rehash Scanning /usr/share/certs/untrusted for certificates... Scanning /usr/share/certs/trusted for certificates... Scanning /usr/local/share/certs for certificates... [23.09.1-RELEASE][admin@pfsense.haighaccess.local]/root: pkg-static -d update DBG(1)[92212]> pkg initialized pkg-static: Warning: Major OS version upgrade detected. Running "pkg bootstrap -f" recommended DBG(1)[92212]> CURL> No mirror set url to https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/meta.conf DBG(1)[92212]> CURL> attempting to fetch from https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/meta.conf, left retry 3 * Couldn't find host packages.ntop.org in the .netrc file; using defaults * Trying 167.99.215.164:443... * Trying [2a03:b0c0:2:d0::d27:3001]:443... * Immediate connect fail for 2a03:b0c0:2:d0::d27:3001: No route to host * Connected to packages.ntop.org (167.99.215.164) port 443 * ALPN: curl offers http/1.1 * CAfile: /etc/ssl/netgate-ca.pem * CApath: /etc/ssl/certs/ * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 * ALPN: server accepted http/1.1 * Server certificate: * subject: CN=packages.ntop.org * start date: Apr 18 02:41:58 2024 GMT * expire date: Jul 17 02:41:57 2024 GMT * subjectAltName: host "packages.ntop.org" matched cert's "packages.ntop.org" * issuer: C=US; O=Let's Encrypt; CN=R3 * SSL certificate verify ok. * using HTTP/1.1 > GET /FreeBSD/FreeBSD:15:amd64/latest/meta.conf HTTP/1.1 Host: packages.ntop.org User-Agent: pkg/1.20.8 Accept: */* If-Modified-Since: Thu, 01 Jan 1970 00:00:00 GMT * old SSL session ID is stale, removing < HTTP/1.1 404 Not Found * Failed writing header * Closing connection pkg-static: An error occured while fetching package DBG(1)[92212]> Request to fetch https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/meta.txz DBG(1)[92212]> curl_open DBG(1)[92212]> Fetch: fetcher used: https DBG(1)[92212]> curl> fetching https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/meta.txz DBG(1)[92212]> CURL> No mirror set url to https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/meta.txz DBG(1)[92212]> CURL> attempting to fetch from https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/meta.txz, left retry 3 * Couldn't find host packages.ntop.org in the .netrc file; using defaults * Hostname packages.ntop.org was found in DNS cache * Trying 167.99.215.164:443... * Trying [2a03:b0c0:2:d0::d27:3001]:443... * Immediate connect fail for 2a03:b0c0:2:d0::d27:3001: No route to host * Connected to packages.ntop.org (167.99.215.164) port 443 * ALPN: curl offers http/1.1 * CAfile: /etc/ssl/netgate-ca.pem * CApath: /etc/ssl/certs/ * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 * ALPN: server accepted http/1.1 * Server certificate: * subject: CN=packages.ntop.org * start date: Apr 18 02:41:58 2024 GMT * expire date: Jul 17 02:41:57 2024 GMT * subjectAltName: host "packages.ntop.org" matched cert's "packages.ntop.org" * issuer: C=US; O=Let's Encrypt; CN=R3 * SSL certificate verify ok. * using HTTP/1.1 > GET /FreeBSD/FreeBSD:15:amd64/latest/meta.txz HTTP/1.1 Host: packages.ntop.org User-Agent: pkg/1.20.8 Accept: */* If-Modified-Since: Thu, 01 Jan 1970 00:00:00 GMT * old SSL session ID is stale, removing < HTTP/1.1 404 Not Found * Failed writing header * Closing connection pkg-static: An error occured while fetching package repository ntop has no meta file, using default settings DBG(1)[92212]> Request to fetch https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/packagesite.pkg DBG(1)[92212]> curl_open DBG(1)[92212]> Fetch: fetcher used: https DBG(1)[92212]> curl> fetching https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/packagesite.pkg DBG(1)[92212]> CURL> No mirror set url to https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/packagesite.pkg DBG(1)[92212]> CURL> attempting to fetch from https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/packagesite.pkg, left retry 3 * Couldn't find host packages.ntop.org in the .netrc file; using defaults * Hostname packages.ntop.org was found in DNS cache * Trying 167.99.215.164:443... * Trying [2a03:b0c0:2:d0::d27:3001]:443... * Immediate connect fail for 2a03:b0c0:2:d0::d27:3001: No route to host * Connected to packages.ntop.org (167.99.215.164) port 443 * ALPN: curl offers http/1.1 * CAfile: /etc/ssl/netgate-ca.pem * CApath: /etc/ssl/certs/ * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 * ALPN: server accepted http/1.1 * Server certificate: * subject: CN=packages.ntop.org * start date: Apr 18 02:41:58 2024 GMT * expire date: Jul 17 02:41:57 2024 GMT * subjectAltName: host "packages.ntop.org" matched cert's "packages.ntop.org" * issuer: C=US; O=Let's Encrypt; CN=R3 * SSL certificate verify ok. * using HTTP/1.1 > GET /FreeBSD/FreeBSD:15:amd64/latest/packagesite.pkg HTTP/1.1 Host: packages.ntop.org User-Agent: pkg/1.20.8 Accept: */* If-Modified-Since: Thu, 01 Jan 1970 00:00:00 GMT * old SSL session ID is stale, removing < HTTP/1.1 404 Not Found * Failed writing header * Closing connection pkg-static: An error occured while fetching package DBG(1)[92212]> Request to fetch https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/packagesite.txz DBG(1)[92212]> curl_open DBG(1)[92212]> Fetch: fetcher used: https DBG(1)[92212]> curl> fetching https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/packagesite.txz DBG(1)[92212]> CURL> No mirror set url to https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/packagesite.txz DBG(1)[92212]> CURL> attempting to fetch from https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/packagesite.txz, left retry 3 * Couldn't find host packages.ntop.org in the .netrc file; using defaults * Hostname packages.ntop.org was found in DNS cache * Trying 167.99.215.164:443... * Trying [2a03:b0c0:2:d0::d27:3001]:443... * Immediate connect fail for 2a03:b0c0:2:d0::d27:3001: No route to host * Connected to packages.ntop.org (167.99.215.164) port 443 * ALPN: curl offers http/1.1 * CAfile: /etc/ssl/netgate-ca.pem * CApath: /etc/ssl/certs/ * SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384 * ALPN: server accepted http/1.1 * Server certificate: * subject: CN=packages.ntop.org * start date: Apr 18 02:41:58 2024 GMT * expire date: Jul 17 02:41:57 2024 GMT * subjectAltName: host "packages.ntop.org" matched cert's "packages.ntop.org" * issuer: C=US; O=Let's Encrypt; CN=R3 * SSL certificate verify ok. * using HTTP/1.1 > GET /FreeBSD/FreeBSD:15:amd64/latest/packagesite.txz HTTP/1.1 Host: packages.ntop.org User-Agent: pkg/1.20.8 Accept: */* If-Modified-Since: Thu, 01 Jan 1970 00:00:00 GMT * old SSL session ID is stale, removing < HTTP/1.1 404 Not Found * Failed writing header * Closing connection pkg-static: An error occured while fetching package Unable to update repository ntop Updating pfSense-core repository catalogue... DBG(1)[92212]> PkgRepo: verifying update for pfSense-core DBG(1)[92212]> Pkgrepo, begin update of '/var/db/pkg/repo-pfSense-core.sqlite' DBG(1)[92212]> Request to fetch pkg+https://pfsense-plus-pkg.netgate.com/pfSense_plus-v24_03_amd64-core/meta.conf DBG(1)[92212]> curl_open DBG(1)[92212]> Fetch: fetcher used: pkg+https DBG(1)[92212]> curl> fetching https://pfsense-plus-pkg.netgate.com/pfSense_plus-v24_03_amd64-core/meta.conf DBG(1)[92212]> CURL> attempting to fetch from , left retry 3 * Couldn't find host pfsense-plus-pkg00.atx.netgate.com in the .netrc file; using defaults * Trying 208.123.73.207:443... * Trying [2610:160:11:18::207]:443... * Immediate connect fail for 2610:160:11:18::207: No route to host * Connected to pfsense-plus-pkg00.atx.netgate.com (208.123.73.207) port 443 * ALPN: curl offers http/1.1 * CAfile: /etc/ssl/netgate-ca.pem * CApath: /etc/ssl/certs/ * SSL connection using TLSv1.2 / ECDHE-RSA-AES256-GCM-SHA384 * ALPN: server accepted http/1.1 * Server certificate: * subject: C=US; ST=Texas; L=Austin; O=Rubicon Communications, LLC (Netgate); OU=pfSense Plus; CN=pfsense-plus-pkg00.atx.netgate.com * start date: Mar 15 20:23:11 2022 GMT * expire date: Feb 19 20:23:11 2122 GMT * common name: pfsense-plus-pkg00.atx.netgate.com (matched) * issuer: C=US; ST=Texas; L=Austin; O=Rubicon Communications, LLC (Netgate); OU=Netgate CA; CN=Netgate CA * SSL certificate verify ok. * using HTTP/1.1 > GET /pfSense_plus-v24_03_amd64-core/meta.conf HTTP/1.1 Host: pfsense-plus-pkg00.atx.netgate.com User-Agent: pkg/1.20.8 Accept: */* If-Modified-Since: Fri, 19 Apr 2024 01:25:58 GMT < HTTP/1.1 304 Not Modified < Server: nginx < Date: Wed, 24 Apr 2024 21:54:07 GMT < Last-Modified: Fri, 19 Apr 2024 01:25:58 GMT < Connection: keep-alive < ETag: "6621c826-b2" < * Connection #0 to host pfsense-plus-pkg00.atx.netgate.com left intact DBG(1)[92212]> Request to fetch pkg+https://pfsense-plus-pkg.netgate.com/pfSense_plus-v24_03_amd64-core/packagesite.pkg DBG(1)[92212]> curl_open DBG(1)[92212]> Fetch: fetcher used: pkg+https DBG(1)[92212]> curl> fetching https://pfsense-plus-pkg.netgate.com/pfSense_plus-v24_03_amd64-core/packagesite.pkg DBG(1)[92212]> CURL> attempting to fetch from , left retry 3 * Couldn't find host pfsense-plus-pkg00.atx.netgate.com in the .netrc file; using defaults * Found bundle for host: 0x2125f3b10960 [serially] * Re-using existing connection with host pfsense-plus-pkg00.atx.netgate.com > GET /pfSense_plus-v24_03_amd64-core/packagesite.pkg HTTP/1.1 Host: pfsense-plus-pkg00.atx.netgate.com User-Agent: pkg/1.20.8 Accept: */* If-Modified-Since: Fri, 19 Apr 2024 01:25:58 GMT < HTTP/1.1 304 Not Modified < Server: nginx < Date: Wed, 24 Apr 2024 21:54:07 GMT < Last-Modified: Fri, 19 Apr 2024 01:25:58 GMT < Connection: keep-alive < ETag: "6621c826-62c" < * Connection #0 to host pfsense-plus-pkg00.atx.netgate.com left intact pfSense-core repository is up to date. Updating pfSense repository catalogue... DBG(1)[92212]> PkgRepo: verifying update for pfSense DBG(1)[92212]> Pkgrepo, begin update of '/var/db/pkg/repo-pfSense.sqlite' DBG(1)[92212]> Request to fetch pkg+https://pfsense-plus-pkg.netgate.com/pfSense_plus-v24_03_amd64-pfSense_plus_v24_03/meta.conf DBG(1)[92212]> curl_open DBG(1)[92212]> Fetch: fetcher used: pkg+https DBG(1)[92212]> curl> fetching https://pfsense-plus-pkg.netgate.com/pfSense_plus-v24_03_amd64-pfSense_plus_v24_03/meta.conf DBG(1)[92212]> CURL> attempting to fetch from , left retry 3 * Couldn't find host pfsense-plus-pkg00.atx.netgate.com in the .netrc file; using defaults * Trying 208.123.73.207:443... * Trying [2610:160:11:18::207]:443... * Immediate connect fail for 2610:160:11:18::207: No route to host * Connected to pfsense-plus-pkg00.atx.netgate.com (208.123.73.207) port 443 * ALPN: curl offers http/1.1 * CAfile: /etc/ssl/netgate-ca.pem * CApath: /etc/ssl/certs/ * SSL connection using TLSv1.2 / ECDHE-RSA-AES256-GCM-SHA384 * ALPN: server accepted http/1.1 * Server certificate: * subject: C=US; ST=Texas; L=Austin; O=Rubicon Communications, LLC (Netgate); OU=pfSense Plus; CN=pfsense-plus-pkg00.atx.netgate.com * start date: Mar 15 20:23:11 2022 GMT * expire date: Feb 19 20:23:11 2122 GMT * common name: pfsense-plus-pkg00.atx.netgate.com (matched) * issuer: C=US; ST=Texas; L=Austin; O=Rubicon Communications, LLC (Netgate); OU=Netgate CA; CN=Netgate CA * SSL certificate verify ok. * using HTTP/1.1 > GET /pfSense_plus-v24_03_amd64-pfSense_plus_v24_03/meta.conf HTTP/1.1 Host: pfsense-plus-pkg00.atx.netgate.com User-Agent: pkg/1.20.8 Accept: */* If-Modified-Since: Wed, 24 Apr 2024 17:48:06 GMT < HTTP/1.1 304 Not Modified < Server: nginx < Date: Wed, 24 Apr 2024 21:54:08 GMT < Last-Modified: Wed, 24 Apr 2024 17:48:06 GMT < Connection: keep-alive < ETag: "662945d6-b2" < * Connection #0 to host pfsense-plus-pkg00.atx.netgate.com left intact DBG(1)[92212]> Request to fetch pkg+https://pfsense-plus-pkg.netgate.com/pfSense_plus-v24_03_amd64-pfSense_plus_v24_03/packagesite.pkg DBG(1)[92212]> curl_open DBG(1)[92212]> Fetch: fetcher used: pkg+https DBG(1)[92212]> curl> fetching https://pfsense-plus-pkg.netgate.com/pfSense_plus-v24_03_amd64-pfSense_plus_v24_03/packagesite.pkg DBG(1)[92212]> CURL> attempting to fetch from , left retry 3 * Couldn't find host pfsense-plus-pkg00.atx.netgate.com in the .netrc file; using defaults * Found bundle for host: 0x2125f3b11da0 [serially] * Re-using existing connection with host pfsense-plus-pkg00.atx.netgate.com > GET /pfSense_plus-v24_03_amd64-pfSense_plus_v24_03/packagesite.pkg HTTP/1.1 Host: pfsense-plus-pkg00.atx.netgate.com User-Agent: pkg/1.20.8 Accept: */* If-Modified-Since: Wed, 24 Apr 2024 17:48:06 GMT < HTTP/1.1 304 Not Modified < Server: nginx < Date: Wed, 24 Apr 2024 21:54:08 GMT < Last-Modified: Wed, 24 Apr 2024 17:48:06 GMT < Connection: keep-alive < ETag: "662945d6-2fe54" < * Connection #0 to host pfsense-plus-pkg00.atx.netgate.com left intact pfSense repository is up to date. Error updating repositories!
-
@deanfourie said in Cannot upgrade to v24.03:
DBG(1)[92212]> CURL> No mirror set url to https://packages.ntop.org/FreeBSD/FreeBSD:15:amd64/latest/meta.conf
It's trying to connect to a 3rd party repo and failing.
Remove any custom repo file you have added.
-
@stephenw10 Yea I just noticed this yesterday after I re read through the logs.
Then I removed the ntop repo and now update has completed.
Sorry, thats my bad.
All sorted now thanks