Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    High CPU USAGE IN 2.7.0-RELEASE

    Scheduled Pinned Locked Moved General pfSense Questions
    41 Posts 4 Posters 2.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      Gokulapandi
      last edited by

      Hi @slu ,

      While upgrading to 2.7.2, Having the below issue.

      7bb23cfd-b0a7-435a-ac91-db9144b29880-image.png

      Installed packages

      9dc76040-c64b-4747-b10b-9b43ef77a8ef-image.png

      S 1 Reply Last reply Reply Quote 0
      • S
        slu @Gokulapandi
        last edited by

        @Gokulapandi

        pretty sure this is the upgrade problem and I recommend the update over ssh!
        https://forum.netgate.com/post/1140955

        Maybe ntopng is the CPU load issue, try to disable/remove it.

        pfSense Gold subscription

        1 Reply Last reply Reply Quote 0
        • G
          Gokulapandi
          last edited by

          @slu

          Ntopng service has already stopped. I will install the 2.7.2. over ssh
          how do we find the CPU usage issue and network connectivity issues ?

          S 1 Reply Last reply Reply Quote 0
          • S
            slu @Gokulapandi
            last edited by

            @Gokulapandi said in High CPU USAGE IN 2.7.0-RELEASE:

            how do we find the CPU usage issue and network connectivity issues ?

            No idea, sorry. This must depend on your setup.

            pfSense Gold subscription

            G 1 Reply Last reply Reply Quote 0
            • G
              Gokulapandi @slu
              last edited by

              @slu

              Thanks.

              Before upgrading the version. It was working fine, there was no CPU usage and network connectivity issue s mentioned earlier.

              GertjanG 1 Reply Last reply Reply Quote 0
              • GertjanG
                Gertjan @Gokulapandi
                last edited by

                @Gokulapandi

                There is something else, did you mention somewhere you use a VM ?
                If so :
                The pfSense from last decade, 2.4.5, used an very ancient FreeBSD kernel.
                The recent 2.7.2 uses what, freeBSD 14 or even 15 ?
                The hypervisor model or VM settings should be 'updated' (upgraded ?) also.
                if not, bad, or even horrible network virtualization has been seen before.

                No "help me" PM's please. Use the forum, the community will thank you.
                Edit : and where are the logs ??

                G 1 Reply Last reply Reply Quote 1
                • G
                  Gokulapandi @Gertjan
                  last edited by Gokulapandi

                  @Gertjan

                  Thanks for your response.

                  Firewall current kernel version is FreeBSD 14.0-CURRENT amd64. We are running pf sense in physical machine.

                  our issue is below - FYI.
                  only If a few users using connecting in the firewall, it's working fine. When connecting more users in firewall, only we can able to use the internet, cant access another network (ipsec network/ openvpn network). After rebooting the firewall, everything is working fine

                  GertjanG stephenw10S 2 Replies Last reply Reply Quote 0
                  • stephenw10S
                    stephenw10 Netgate Administrator
                    last edited by

                    Does it happen immediately or after the firewall has been running for a while? Does the interrupt load increase slowly?

                    What NICs do you have in that box? I can see re0 there.

                    stephenw10S 1 Reply Last reply Reply Quote 0
                    • GertjanG
                      Gertjan @Gokulapandi
                      last edited by Gertjan

                      @Gokulapandi said in High CPU USAGE IN 2.7.0-RELEASE:

                      We are running pf sense in physical machine

                      Ok, good to know.

                      I didn't understand why this installed :

                      680b14c9-e37a-4803-964f-b8666eac5a06-image.png

                      No "help me" PM's please. Use the forum, the community will thank you.
                      Edit : and where are the logs ??

                      1 Reply Last reply Reply Quote 1
                      • stephenw10S
                        stephenw10 Netgate Administrator @Gokulapandi
                        last edited by

                        @Gokulapandi said in High CPU USAGE IN 2.7.0-RELEASE:

                        When connecting more users in firewall,

                        How many users? Are you using the Captive Portal?

                        G 1 Reply Last reply Reply Quote 0
                        • stephenw10S stephenw10 moved this topic from Problems Installing or Upgrading pfSense Software on
                        • G
                          Gokulapandi @stephenw10
                          last edited by

                          @stephenw10

                          e3ae36d4-9fff-4796-a907-06d43f6a3806-image.png

                          We are not using captive portal. Around 50 devices are connecting in LAN.

                          95fdf01b-17eb-4dbc-85cb-af793e43681a-image.png

                          Interrupt load increases as number devices connection increase in LAN.

                          "LAN in" Traffic has reaching till 300 M as cpu interrupt load increases.Then we need to reboot firewall.

                          1 Reply Last reply Reply Quote 0
                          • stephenw10S
                            stephenw10 Netgate Administrator @stephenw10
                            last edited by

                            @stephenw10 said in High CPU USAGE IN 2.7.0-RELEASE:

                            What NICs do you have in that box? I can see re0 there.

                            Is it all Realtek NICs?

                            G 1 Reply Last reply Reply Quote 0
                            • G
                              Gokulapandi @stephenw10
                              last edited by Gokulapandi

                              @stephenw10

                              We are using three NIC.

                              We are using two WANs and one LAN.

                              WAN1 is Intel adapters
                              LAN is Intel adapters
                              WAN 2 is Realtek adapter

                              1 Reply Last reply Reply Quote 0
                              • stephenw10S
                                stephenw10 Netgate Administrator
                                last edited by

                                Are you load-balancing traffic between those WANs?

                                G 1 Reply Last reply Reply Quote 0
                                • G
                                  Gokulapandi @stephenw10
                                  last edited by Gokulapandi

                                  @stephenw10

                                  No, We are not doing a load balancer as secondary WAN has less bandwidth.

                                  FYI - We have updated now the version to 2.7.2

                                  1 Reply Last reply Reply Quote 0
                                  • stephenw10S
                                    stephenw10 Netgate Administrator
                                    last edited by

                                    What does vmstat -i show is creating the interrupt load?

                                    G 1 Reply Last reply Reply Quote 0
                                    • G
                                      Gokulapandi @stephenw10
                                      last edited by

                                      @stephenw10

                                      This is taken before issue.

                                      7be22a64-b947-4b05-ab46-9bc25277c1b6-image.png

                                      1 Reply Last reply Reply Quote 0
                                      • stephenw10S
                                        stephenw10 Netgate Administrator
                                        last edited by

                                        Ok nothing too huge there. What does it show when the issue happens?

                                        G 1 Reply Last reply Reply Quote 0
                                        • G
                                          Gokulapandi @stephenw10
                                          last edited by

                                          @stephenw10

                                          Our Network has IPsec VPN, and OpenVPN. I can access the firewall via web GUI and SSH, IPsec network, and Open VPN Client.

                                          Once issue has arrived, I can't able to firewall via SSH, web GUI, IPsec Network, and OpenVPN client but all existing devices can connect to the internet continuously without any issue..

                                          1 Reply Last reply Reply Quote 0
                                          • stephenw10S
                                            stephenw10 Netgate Administrator
                                            last edited by

                                            Can you connect to the console to check that? You captured the top output above.

                                            G 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.