Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Problems with pfsense.localdomain hostname

    Scheduled Pinned Locked Moved General pfSense Questions
    20 Posts 4 Posters 2.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S
      stephenw10 Netgate Administrator
      last edited by

      Yes or at least check the state table to see what states are opened from your client and on which interfaces.

      1 Reply Last reply Reply Quote 0
      • F
        fw
        last edited by

        I figured out what the problem was. I had switched the webconfigurator to http instead of https at one point during console mode. Chrome had apparently cached the LAN IP as https instead of http, but not the interface IPs. So when I typed the LAN IP into chrome, it expanded it to https://10.0.1.1, which no longer worked. I guess the other interface IPs were expanded to http://*.

        1 Reply Last reply Reply Quote 0
        • stephenw10S
          stephenw10 Netgate Administrator
          last edited by

          Ah, yeah, Chrome loves to do that. ๐Ÿ™„

          F 1 Reply Last reply Reply Quote 1
          • F
            fw @stephenw10
            last edited by

            @stephenw10 I need to just stop using chrome completely. All it does is cause me headaches.

            1 Reply Last reply Reply Quote 0
            • jimpJ
              jimp Rebel Alliance Developer Netgate
              last edited by

              It was doing you a favor, though. Go back to HTTPS :-)

              Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

              Need help fast? Netgate Global Support!

              Do not Chat/PM for help!

              F 1 Reply Last reply Reply Quote 0
              • F
                fw @jimp
                last edited by

                @jimp yes did that already :) Although Chrome does not work at all with my self signed certificate. I added my SSL certificate and my intermediate root authority certificate in my keychain (MacOS) and it still refuses to connect over HTTPS. If I click on the security icon in Chrome to view the certificate, it says that it is trusted by the OS, even though Chrome says that it is "revoked". Firefox works great though.

                1 Reply Last reply Reply Quote 0
                • jimpJ
                  jimp Rebel Alliance Developer Netgate
                  last edited by

                  Probably the default cert lifetime. The GUI certs on 2.4.4-p3 and earlier default to 2000 days, Macs only allow 825 now (and will lower that to 389 soon).

                  https://redmine.pfsense.org/issues/9825

                  Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

                  Need help fast? Netgate Global Support!

                  Do not Chat/PM for help!

                  F 1 Reply Last reply Reply Quote 0
                  • F
                    fw @jimp
                    last edited by

                    @jimp this is a Chrome specific issue. MacOS says that the cert is trusted. Firefox also says that it is trusted. Also, I generated the Cert a couple of weeks ago, so this is definitely not reaching a cert lifetime issue.

                    1 Reply Last reply Reply Quote 0
                    • jimpJ
                      jimp Rebel Alliance Developer Netgate
                      last edited by

                      It still can be. Look at the change made in https://redmine.pfsense.org/projects/pfsense/repository/revisions/71185882dc168e49347f0924f33a207aaf6e2db0/diff and make that edit yourself by hand (but use 389, not 825, and then go to a shell prompt (ssh or console) and run pfSsh.php playback generateguicert and see what happens.

                      Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

                      Need help fast? Netgate Global Support!

                      Do not Chat/PM for help!

                      F 1 Reply Last reply Reply Quote 0
                      • F
                        fw @jimp
                        last edited by

                        @jimp Ohh I see what you are saying. I'll give that a try. Thanks.

                        F 1 Reply Last reply Reply Quote 0
                        • F
                          fw @fw
                          last edited by

                          That worked thanks! It's annoying that Chrome's error was this:
                          NET::ERR_CERT_REVOKED

                          instead of this:
                          NET::ERR_CERT_VALIDITY_TOO_LONG

                          1 Reply Last reply Reply Quote 2
                          • johnpozJ
                            johnpoz LAYER 8 Global Moderator
                            last edited by

                            Exactly!!! BS error that doesn't say what the problem is!

                            An intelligent man is sometimes forced to be drunk to spend time with his fools
                            If you get confused: Listen to the Music Play
                            Please don't Chat/PM me for help, unless mod related
                            SG-4860 24.11 | Lab VMs 2.8, 24.11

                            1 Reply Last reply Reply Quote 2
                            • First post
                              Last post
                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.