Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    To do 25.07 or not?! That is the question!

    Scheduled Pinned Locked Moved General pfSense Questions
    34 Posts 9 Posters 4.8k Views 7 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • GertjanG Offline
      Gertjan @chudak
      last edited by

      @chudak

      Same thing here : SG-4100 and it really looks like 25.07 was build for it ๐Ÿ˜Š
      Its up and running now for two days, all is well, nothing goes of the charts.
      Captive portal clients can still connect (its high season) - no one is yelling here.

      @mcury said in To do 25.07 or not?! That is the question!:

      Service_Watchdog

      Really ? The best known system killer out there.

      It has been ages for me that processes died on me.

      edit : ah, ok, Rebel Alliance - I get it ;)

      No "help me" PM's please. Use the forum, the community will thank you.
      Edit : and where are the logs ??

      M 1 Reply Last reply Reply Quote 0
      • M Offline
        mcury Rebel Alliance @Gertjan
        last edited by mcury

        @Gertjan said in To do 25.07 or not?! That is the question!:

        Same thing here : SG-4100 and it really looks like 25.07 was build for it ๐Ÿ˜Š

        Indeed =)

        It has been ages for me that processes died on me.

        In version 24.11, I had issues with the NUT service failing to start on boot. That's why the service watchdog, only for NUT.
        Iโ€™ll try disabling it in this new version 25.07 to see how that goes now.

        edit : ah, ok, Rebel Alliance - I get it ;)

        ahahahah, nothing like fresh adrenaline in the morning ๐Ÿ˜Š

        Edit:

        One thing I noticed is the disk IO decreased?
        iostat -x is showing now around 50, it was around 75 before, can you confirm ?

        dead on arrival, nowhere to be found.

        GertjanG 1 Reply Last reply Reply Quote 0
        • GertjanG Offline
          Gertjan @mcury
          last edited by Gertjan

          @mcury said in To do 25.07 or not?! That is the question!:

          In version 24.11, I had issues with the NUT service failing to start on boot. That's why the service watchdog, only for NUT.
          Iโ€™ll try disabling it in this new version 25.07 to see how that goes now.

          Wait .....
          Thanks !!
          I still see that : after a upgrade-reboot and normal reboot (?) the UPS service is shown down on the dashboard. After hitting 'Save' on the Services > UPS > Settings page, it's up and running. Never actually took some time to investigate why it doesn't start on boot.
          So, I could (ab)use the "service watchdog" for this .... interesting ๐Ÿ‘
          Thanks again for the suggestion.

          No "help me" PM's please. Use the forum, the community will thank you.
          Edit : and where are the logs ??

          1 Reply Last reply Reply Quote 1
          • J Offline
            JD 0
            last edited by

            I saw similar behavior in NUT several releases back (don't recall which). But it's not resurfaced since. The instance running is polling the UPS over SNMP.

            1 Reply Last reply Reply Quote 0
            • Z Offline
              Zermus
              last edited by Zermus

              FWIW doing a "pfSense-upgrade -d" from CLI fixes this for me and does the upgrade properly. Not sure why that works and the GUI fails lol. I did have to rebuild my base packages. Here is what ChatGPT had to say about it. I had the same problem, two different locations, network providers, etc. One is in a datacenter with multiple network redundancies so I doubt it was a network issue.

              1. Root cause:
                The core problem was due to an incomplete or partially failed upgrade from pfSense 24.11 to 25.07. The missing critical libraries (libmd.so.7), corrupted package repositories, and broken package signatures indicate that some part of the upgrade script was interrupted, incomplete, or encountered dependency conflicts.

              2. Specific indicators of broken upgrade:
                Missing libraries (libmd.so.7) causing package operations to fail.

              Missing critical files (/usr/local/sbin/read_global_var, /usr/local/libexec/pfSense-upgrade, and /etc/version) indicate that pfSense-base or core packages were only partially upgraded.

              Invalid or broken repository signatures (pkg-static: Error loading trusted certificates) point to repository configuration or trust issues post-upgrade.

              Dependency conflicts (IGNORE_OSVERSION prompts) clearly indicated version mismatches due to packages from different pfSense/FreeBSD versions.

              1 Reply Last reply Reply Quote 1
              • AndyRHA Offline
                AndyRH
                last edited by

                Updated my 7100. Took less than 5 minutes.

                For some unknown reason the CPU usage has dropped. Even with a speed test pushing 1.29Gb the CPU only gets to about 50%. Yesterday that same test was pushing 80%. Crazy...

                o||||o
                7100-1u

                1 Reply Last reply Reply Quote 0
                • stephenw10S Offline
                  stephenw10 Netgate Administrator
                  last edited by

                  Hmm, what version were you seeing 80% usage in?

                  AndyRHA 1 Reply Last reply Reply Quote 0
                  • AndyRHA Offline
                    AndyRH @stephenw10
                    last edited by

                    @stephenw10 24.11 would idle above 30% and speed test would push it over 80%. The only change was the upgrade.
                    I never saw a performance problem so I never chased it.
                    For a short time I had 2Gb internet and it would hit 100% pushing 2.5Gb which was the limit of the test machine.

                    o||||o
                    7100-1u

                    1 Reply Last reply Reply Quote 0
                    • stephenw10S Offline
                      stephenw10 Netgate Administrator
                      last edited by

                      Hmm, interesting! PPPoE WAN with the new driver maybe?

                      AndyRHA 1 Reply Last reply Reply Quote 0
                      • AndyRHA Offline
                        AndyRH @stephenw10
                        last edited by

                        @stephenw10 Fiber straight into the 7100. Nothing funky. No heavy packages.
                        With no performance hit I did not see a reason to chase it.

                        Someone fixed something and made it better.

                        In theory I could boot the old image and Clonezilla the disk. ๐Ÿ˜€

                        o||||o
                        7100-1u

                        stephenw10S 1 Reply Last reply Reply Quote 0
                        • stephenw10S Offline
                          stephenw10 Netgate Administrator @AndyRH
                          last edited by

                          @AndyRH said in To do 25.07 or not?! That is the question!:

                          Someone fixed something and made it better.

                          I'll take it. ๐Ÿ˜

                          1 Reply Last reply Reply Quote 1
                          • chudakC Offline
                            chudak
                            last edited by chudak

                            Finally upgraded 24.03 to 25.07.1

                            After the initial reboot the network seemed to be messed up, I could not even ping or login to my router.

                            However after the power off and on everything looks normal.

                            I did skip the previous major update as my system was rebooting by itself every 5-11 minutes.

                            So now need to see that that problem is gone.

                            Cross my fingers :)

                            List of installed packadges:

                            9b71728a-04e3-4c55-a685-cb7762109473-image.png

                            UPDATE

                            The problem is not fixed :(

                            I see every ~17 minutes system kinda reboots.

                            The reason I say "kinda" that last shows one reboot I did after upgrade

                            [25.07.1-RELEASE][admin@pfsense.wawona.lan]/root: last -4 reboot
                            shutdown time Tue Aug 19 13:23

                            But up-time in the UI goes up to ~17 min, then I see services go down and then back up again

                            And that's every ~17 min!!!

                            Anybody any clues?

                            1 Reply Last reply Reply Quote 0
                            • stephenw10S Offline
                              stephenw10 Netgate Administrator
                              last edited by

                              What do you see logged when that happens?

                              What are you running on?

                              chudakC 1 Reply Last reply Reply Quote 0
                              • chudakC Offline
                                chudak @stephenw10
                                last edited by chudak

                                @stephenw10 said in To do 25.07 or not?! That is the question!:

                                What do you see logged when that happens?

                                What are you running on?

                                QOTOM-Q355G4

                                UPDATE:
                                https://www.youtube.com/watch?v=2RR26J-dDzc

                                Spent 2 h trying to see what could have caused reboots/resets/up/down unsuccessfully and decided to restore the 24.03 boot env. And ... it did not work, verification during the boot failed!!!! And then another one did not work either etc. Finally I got old 23.x version booted. But I realized that I need to do a fresh install.

                                Thx to AI for helping to figure what key to press for BIOS setup :)

                                Long story short, I did fresh install + restore old config.xml and so been running for 24 + min (before it was rebooting every 17)

                                So hope I am out of the woods....

                                chudakC 1 Reply Last reply Reply Quote 0
                                • stephenw10S Offline
                                  stephenw10 Netgate Administrator
                                  last edited by

                                  So a clean install of 25.07.1 is running OK?

                                  Hmm, hard to imagine would could have caused that. ๐Ÿค”

                                  chudakC 1 Reply Last reply Reply Quote 0
                                  • chudakC Offline
                                    chudak @stephenw10
                                    last edited by chudak

                                    @stephenw10 said in To do 25.07 or not?! That is the question!:

                                    So a clean install of 25.07.1 is running OK?

                                    Hmm, hard to imagine would could have caused that. ๐Ÿค”

                                    Well there are several issues

                                    1. The s/w change from 24.03 + caused issues. Support's assumption it was h/w issue turned out to be untrue
                                      This is a difficult problem to find a root cause for and my route h/w may have played a role as well.

                                    2. Boot environments restore failed for multiple snapshots. That is really bad. I have no system around anymore for troubleshooting but I hope somebody can reflect and think about what could have caused that. That was scary, the whole reason I did not to want fresh reinstall because my false feeling that boot envs were safe. Alas :(

                                    1 Reply Last reply Reply Quote 0
                                    • A Offline
                                      Antibiotic @chudak
                                      last edited by Antibiotic

                                      @chudak Looks like on 25.07.1 AES-GSM broken, have a speed 2oo mb with openVPN client and DCO enabled. Before on 24.11 has a speed almost 1 gb with openVPN. https://forum.netgate.com/topic/198535/massive-10x-performance-regression-in-aes-gcm/7

                                      pfSense plus 25.07.1 on Topton mini PC
                                      CPU: Intel N100
                                      NIC: Intel i-226v 4 pcs
                                      RAM : 16 GB DDR5
                                      Disk: 128 GB NVMe
                                      Brgds, Archi

                                      1 Reply Last reply Reply Quote 0
                                      • stephenw10S Offline
                                        stephenw10 Netgate Administrator
                                        last edited by

                                        That is the testing tool only. Whatever you've hitting there it's not a general openssl issue.

                                        1 Reply Last reply Reply Quote 0
                                        • chudakC Offline
                                          chudak @chudak
                                          last edited by

                                          said in To do 25.07 or not?! That is the question!:

                                          @stephenw10 said in To do 25.07 or not?! That is the question!:

                                          What do you see logged when that happens?

                                          What are you running on?

                                          QOTOM-Q355G4

                                          UPDATE:
                                          https://www.youtube.com/watch?v=2RR26J-dDzc

                                          Spent 2 h trying to see what could have caused reboots/resets/up/down unsuccessfully and decided to restore the 24.03 boot env. And ... it did not work, verification during the boot failed!!!! And then another one did not work either etc. Finally I got old 23.x version booted. But I realized that I need to do a fresh install.

                                          Thx to AI for helping to figure what key to press for BIOS setup :)

                                          Long story short, I did fresh install + restore old config.xml and so been running for 24 + min (before it was rebooting every 17)

                                          So hope I am out of the woods....

                                          My adventure did not end there.
                                          I found that 25.07.1 was very unstable.

                                          I could not reboot the system running 25.07.1.

                                          It'd come up but no LAN or WAN name resolutions and no matter what I tried I could not make it reboot with no issues. I suspect it was Kea DHCP but switching back did not help either...

                                          So I had to reinstall clean 24.03 and .... I see no issues!

                                          Not sure what to say, but 25.07.1 was a disaster (at least for me :( )

                                          1 Reply Last reply Reply Quote 0
                                          • stephenw10S Offline
                                            stephenw10 Netgate Administrator
                                            last edited by

                                            Can you get a boot log? Or anything showing any errors you might have hit?

                                            chudakC 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.