Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    2.4.5 Snapshots are Live

    Scheduled Pinned Locked Moved Development
    39 Posts 15 Posters 9.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • jimpJ
      jimp Rebel Alliance Developer Netgate
      last edited by

      @behemyth said in 2.4.5 Snapshots are Live:

      I upgraded my sg-3100 from 2.4.4-p3 to 2.4.5, and received the following error. This is a very basic install, no weird rules or packages running:

      Notices
      Filter Reload
      There were error(s) loading the rules: /tmp/rules.debug:18: cannot define table bogonsv6: too many elements. - The line in question reads [18]: table <bogonsv6> persist file "/etc/bogonsv6"
      @ 2020-02-10 20:57:07

      If this is something that's already been reported sorry - I didn't see anything on it.

      That would not be from the upgrade. Nothing there changed.

      System > Advanced, Firewall/NAT tab, check the value of Firewall Maximum Table Entries. It should be set quite high, a couple hundred thousand at least. If that doesn't help, start a new thread.

      Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

      Need help fast? Netgate Global Support!

      Do not Chat/PM for help!

      1 Reply Last reply Reply Quote 0
      • B
        behemyth
        last edited by behemyth

        This is already set at 400k, my guess is it needs to be above 650k. I'll adjust it and try the upgrade again.

        1 Reply Last reply Reply Quote 0
        • B
          behemyth
          last edited by behemyth

          I got the same error with 650k firewall table entries, I'll go ahead and open a redmine ticket.

          jimpJ 1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate @behemyth
            last edited by

            @behemyth said in 2.4.5 Snapshots are Live:

            I got the same error with 650k firewall table entries, I'll go ahead and open a redmine ticket.

            No need for a Redmine issue. That is 100% a config problem, not a bug. Start a new thread to discuss what you have going on that could cause it.

            Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • jimpJ
              jimp Rebel Alliance Developer Netgate
              last edited by jimp

              Actually I might be wrong. This might have popped up on 2.4.5: https://redmine.pfsense.org/issues/9356

              But I do not see that on my 2.4.5 system(s).

              Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

              Need help fast? Netgate Global Support!

              Do not Chat/PM for help!

              1 Reply Last reply Reply Quote 0
              • GertjanG
                Gertjan
                last edited by

                Running pfSense on an intel based system using 2 GB - like your SG-3100.
                Using default settings :

                50a3b481-3a78-4450-9fbf-d842623c35fe-image.png

                which is / should be fine because I'm loading, as you, the same bogons and bogonsv6 files ( 70 lines / 1136 Bytes and 108611 Lines / 1767 KB ).

                @behemyth : save your config - and reboot, activate default settings = console menu option 4.
                => The error should be gone.
                Afterwards, import your saved settings. If the error pops up now, you will know where to look.

                No "help me" PM's please. Use the forum, the community will thank you.
                Edit : and where are the logs ??

                jimpJ 1 Reply Last reply Reply Quote 0
                • jimpJ
                  jimp Rebel Alliance Developer Netgate @Gertjan
                  last edited by

                  @Gertjan said in 2.4.5 Snapshots are Live:

                  which is / should be fine because I'm loading, as you, the same bogons and bogonsv6 files ( 70 lines / 1136 Bytes and 108611 Lines / 1767 KB ).

                  His error is not the usual error for that condition. I can't load bogonsv6 on amd64 or arm with the same error. Read the redmine issue I linked above (#9356) and https://redmine.pfsense.org/issues/10254 which is what's happening on 2.4.5.

                  Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

                  Need help fast? Netgate Global Support!

                  Do not Chat/PM for help!

                  1 Reply Last reply Reply Quote 0
                  • B
                    behemyth
                    last edited by

                    Are the multiple times a day updates going to stay normal, or are you guys really pushing that many fixes to the RC still? I know I saw that you guys had an internal bug fix board somewhere, I'm just assuming all the updates are because of fixes from there.

                    jimpJ 1 Reply Last reply Reply Quote 1
                    • jimpJ
                      jimp Rebel Alliance Developer Netgate @behemyth
                      last edited by

                      @behemyth said in 2.4.5 Snapshots are Live:

                      Are the multiple times a day updates going to stay normal, or are you guys really pushing that many fixes to the RC still? I know I saw that you guys had an internal bug fix board somewhere, I'm just assuming all the updates are because of fixes from there.

                      The snapshot builds are now on a timer, and not triggered by changes. So even though a new one shows up every ~3 hrs that doesn't necessarily mean it contains anything new.

                      Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

                      Need help fast? Netgate Global Support!

                      Do not Chat/PM for help!

                      cybrnookC 1 Reply Last reply Reply Quote 1
                      • cybrnookC
                        cybrnook @jimp
                        last edited by cybrnook

                        @jimp said in 2.4.5 Snapshots are Live:

                        @behemyth said in 2.4.5 Snapshots are Live:

                        Are the multiple times a day updates going to stay normal, or are you guys really pushing that many fixes to the RC still? I know I saw that you guys had an internal bug fix board somewhere, I'm just assuming all the updates are because of fixes from there.

                        The snapshot builds are now on a timer, and not triggered by changes. So even though a new one shows up every ~3 hrs that doesn't necessarily mean it contains anything new.

                        Is it best then to just keep an eye on the commit history: https://github.com/pfsense/pfsense/commits/RELENG_2_4_5

                        Then, when we see something that has been commited, it's safe to assume any timestamped generated update AFTER the commit contains the changes?

                        1 Reply Last reply Reply Quote 0
                        • jimpJ
                          jimp Rebel Alliance Developer Netgate
                          last edited by

                          Essentially, yes, though it would also include changes in the freebsd-ports and freebsd-src repositories.

                          Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

                          Need help fast? Netgate Global Support!

                          Do not Chat/PM for help!

                          cybrnookC 1 Reply Last reply Reply Quote 1
                          • cybrnookC
                            cybrnook @jimp
                            last edited by

                            @jimp Yep Yep, naturally. Thank you Jim.

                            cybrnookC 1 Reply Last reply Reply Quote 0
                            • cybrnookC
                              cybrnook @cybrnook
                              last edited by cybrnook

                              Just following up, been running 2.4.5 for the past few days. Nothing to report........

                              Intel E3-1275v5, Supermicro C236 based MB, Dual WAN, OpenVPN client to Mullvad, some port forwards, 3 VLAN's, few bits here and there... all working as expected.

                              1 Reply Last reply Reply Quote 0
                              • J
                                johnsonmagnus
                                last edited by

                                I upgraded a relatively new (~2 weeks since clean install from iso) 2.4.4 p3 installation to 2.4.5.r.20200317.1200 today via System --> Upgrade within WebGUI, mainly to benefit from the many security patches in 2.4.5.

                                I have just the Avahi & iperf packages installed, nothing fancy. Hardware is PCEngines APU2E4.

                                The upgrade went smoothly and rebooted with no problems. It has been only 30 minutes or so but everything appears to be working normally. Will update this comment if any problems appear.

                                1 Reply Last reply Reply Quote 0
                                • L
                                  louis2
                                  last edited by

                                  Jimp,

                                  I did the upgrade via shell command 13

                                  I noticed, quick reading during startup scroll,

                                  package pecl-radius reinstall i think
                                  package net-socket same i think

                                  routing invallid argument

                                  After reboot and back in the gui pfSense is reporting 245 now just as it should be (was reporting 244 before, some halfway status)

                                  There is no error message on the dashboard.

                                  Louis

                                  1 Reply Last reply Reply Quote 0
                                  • B
                                    brcisna @Gertjan
                                    last edited by

                                    @Gertjan

                                    Does this fix this issue on recent updates from 2.4.4 to 2.4.5?
                                    Updated (2) XG-7100 appliances two weeks ago,and have this problem with Captive Portal. Have never tried the Package patch addon but may give this a try?

                                    Thank You

                                    1 Reply Last reply Reply Quote 0
                                    • GertjanG
                                      Gertjan
                                      last edited by Gertjan

                                      I can confirm that the patch :
                                      @free4 said in 2.4.5 Snapshots are Live:

                                      https://github.com/pfsense/pfsense/compare/RELENG_2_4_4...Augustin-FL:fix-reconfig-for-2-4-4.diff

                                      is now retired, as of 2.4.5 based on FreeBSD 11.3 - the Tue Jun 02 17:51:17 build.

                                      The patch cant' be used any more as the files to be patched don't match with patch.
                                      Now, I can be 'stupid' and edit portal settings while portal user are connected.

                                      No "help me" PM's please. Use the forum, the community will thank you.
                                      Edit : and where are the logs ??

                                      F 1 Reply Last reply Reply Quote 0
                                      • F
                                        free4 Rebel Alliance @Gertjan
                                        last edited by free4

                                        @Gertjan said in 2.4.5 Snapshots are Live:

                                        I can confirm that the patch :
                                        @free4 said in 2.4.5 Snapshots are Live:

                                        https://github.com/pfsense/pfsense/compare/RELENG_2_4_4...Augustin-FL:fix-reconfig-for-2-4-4.diff

                                        is now retired, as of 2.4.5 based on FreeBSD 11.3 - the Tue Jun 02 17:51:17 build.

                                        The patch cant' be used any more as the files to be patched don't match with patch.
                                        Now, I can be 'stupid' and edit portal settings while portal user are connected.

                                        oooops
                                        sorry, it's my fault. I thought I could delete my github repo safely

                                        would you like me to restore the patch?

                                        1 Reply Last reply Reply Quote 0
                                        • GertjanG
                                          Gertjan
                                          last edited by

                                          The initial issue is gone now.

                                          No "help me" PM's please. Use the forum, the community will thank you.
                                          Edit : and where are the logs ??

                                          1 Reply Last reply Reply Quote 0
                                          • First post
                                            Last post
                                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.