Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Fetching package: connection reset by peer

    Scheduled Pinned Locked Moved pfSense Packages
    89 Posts 4 Posters 17.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • DaddyGoD
      DaddyGo @float
      last edited by

      @float

      What do you see then?

      Diagnostics /Command Prompt

      and paste:
      service nginx oneupgrade

      Cats bury it so they can't see it!
      (You know what I mean if you have a cat)

      1 Reply Last reply Reply Quote 0
      • F
        float
        last edited by

        Performing sanity check on nginx configuration:
        nginx: the configuration file /usr/local/etc/nginx/nginx.conf syntax is ok
        nginx: configuration file /usr/local/etc/nginx/nginx.conf test is successful
        Upgrading nginx binary:
        nginx not running? (check /var/run/nginx.pid).

        DaddyGoD 1 Reply Last reply Reply Quote 0
        • DaddyGoD
          DaddyGo @float
          last edited by

          @float

          Nginx looks good

          Did you not change the default Cert.?
          Can you install another package on the box?

          f.e.: iperf (try it, just for the sake of curiosity)

          Cats bury it so they can't see it!
          (You know what I mean if you have a cat)

          1 Reply Last reply Reply Quote 0
          • F
            float
            last edited by

            I did not change the default cert.

            Installing pfSense-pkg-iperf...
            Updating pfSense-core repository catalogue...
            pfSense-core repository is up to date.
            Updating pfSense repository catalogue...
            pfSense repository is up to date.
            All repositories are up to date.
            The following 2 package(s) will be affected (of 0 checked):

            New packages to be INSTALLED:
            iperf3: 3.7 [pfSense]
            pfSense-pkg-iperf: 3.0.2_4 [pfSense]

            Number of packages to be installed: 2

            122 KiB to be downloaded.
            [1/2] Fetching pfSense-pkg-iperf-3.0.2_4.txz: . done
            [2/2] Fetching iperf3-3.7.txz: .......... done
            Checking integrity... done (0 conflicting)
            [1/2] Installing iperf3-3.7...
            [1/2] Extracting iperf3-3.7: .......... done
            [2/2] Installing pfSense-pkg-iperf-3.0.2_4...
            [2/2] Extracting pfSense-pkg-iperf-3.0.2_4: ......... done
            Saving updated package information...
            done.
            Loading package configuration... done.
            Configuring package components...
            Custom commands...
            Menu items... done.
            Services... done.
            Writing configuration... done.

            Cleaning up cache... done.
            Success

            DaddyGoD 1 Reply Last reply Reply Quote 0
            • DaddyGoD
              DaddyGo @float
              last edited by

              @float

              Super...
              and now again with pfBlockerNG

              btw:
              was pfBlockerNG already installed earlier?

              Cats bury it so they can't see it!
              (You know what I mean if you have a cat)

              1 Reply Last reply Reply Quote 0
              • F
                float
                last edited by

                Helas :-)

                The process will require 9 MiB more space.
                190 KiB to be downloaded.
                [1/6] Fetching whois-5.2.17.txz: ....... done
                pkg-static: https://firmware.netgate.com/pkg/pfSense_factory-v2_4_5_amd64-pfSense_factory-v2_4_5/All/whois-5.2.17.txz: Connection reset by peer
                Failed

                No, it's a brand new installation.

                DaddyGoD 1 Reply Last reply Reply Quote 0
                • DaddyGoD
                  DaddyGo @float
                  last edited by

                  @float said in Fetching package: connection reset by peer:

                  No, it's a brand new installation.

                  OK...

                  Your version: 2.4.5-p1?

                  Out of ideas ...temporarily
                  I’m trying to update one on my own pfBlockerNG to see what’s going on.

                  btw:
                  (Connection reset by peer)

                  This is because it is an RST from the Netgate server, which is only for the whois package...???

                  Cats bury it so they can't see it!
                  (You know what I mean if you have a cat)

                  1 Reply Last reply Reply Quote 0
                  • F
                    float
                    last edited by

                    Yes, I only receive the error for the whois package.
                    Can I install it manually in some way?

                    DaddyGoD 1 Reply Last reply Reply Quote 0
                    • DaddyGoD
                      DaddyGo @float
                      last edited by DaddyGo

                      @float said in Fetching package: connection reset by peer:

                      Can I install it manually in some way?

                      This is a complex installer where package dependencies are present during installation.
                      So manual installation is not a solution as the pfBlockerNG installer does not proceed due to the error...

                      Recently, @viktor_g has been working on pfBlockerNG, if I can see clearly.......
                      So let him know this problem, might help

                      btw:
                      whois-5.2.17.txz" package I don't see either ...

                      Cats bury it so they can't see it!
                      (You know what I mean if you have a cat)

                      1 Reply Last reply Reply Quote 0
                      • F
                        float
                        last edited by

                        Thank you. I'll open a new topic.

                        I can see the package on the website:
                        whois-5.2.17.txz 31-Jan-2020 17:14 59136

                        DaddyGoD 1 Reply Last reply Reply Quote 0
                        • DaddyGoD
                          DaddyGo @float
                          last edited by DaddyGo

                          @float said in Fetching package: connection reset by peer:

                          Thank you. I'll open a new topic.

                          There are very few on the forum these days, it’s such a late summer thing....😉
                          Viktor will see that we mentioned it

                          ++++edit:
                          ok I have it too
                          http://162.208.119.40/pkg/pfSense_factory-v2_4_5_amd64-pfSense_factory-v2_4_5/All/

                          Cats bury it so they can't see it!
                          (You know what I mean if you have a cat)

                          1 Reply Last reply Reply Quote 0
                          • RicoR
                            Rico LAYER 8 Rebel Alliance
                            last edited by

                            Why open multiple threads for the same problem/question?
                            I just tried to install pfBlockerNG-devel 2.2.5_34 and it's working

                            >>> Installing pfSense-pkg-pfBlockerNG-devel... 
                            Updating pfSense-core repository catalogue...
                            pfSense-core repository is up to date.
                            Updating pfSense repository catalogue...
                            pfSense repository is up to date.
                            All repositories are up to date.
                            The following 10 package(s) will be affected (of 0 checked):
                            
                            New packages to be INSTALLED:
                            	grepcidr: 2.0 [pfSense]
                            	iprange: 1.0.4 [pfSense]
                            	jq: 1.6 [pfSense]
                            	libmaxminddb: 1.4.2 [pfSense]
                            	lighttpd: 1.4.54 [pfSense]
                            	lua52: 5.2.4 [pfSense]
                            	pfSense-pkg-pfBlockerNG-devel: 2.2.5_34 [pfSense]
                            	py37-maxminddb: 1.4.1_1 [pfSense]
                            	py37-sqlite3: 3.7.7_7 [pfSense]
                            	whois: 5.2.17 [pfSense]
                            
                            Number of packages to be installed: 10
                            
                            The process will require 9 MiB more space.
                            2 MiB to be downloaded.
                            [1/10] Fetching pfSense-pkg-pfBlockerNG-devel-2.2.5_34.txz: .......... done
                            [2/10] Fetching lighttpd-1.4.54.txz: .......... done
                            [3/10] Fetching lua52-5.2.4.txz: .......... done
                            [4/10] Fetching jq-1.6.txz: .......... done
                            [5/10] Fetching whois-5.2.17.txz: ........ done
                            [6/10] Fetching py37-maxminddb-1.4.1_1.txz: .... done
                            [7/10] Fetching libmaxminddb-1.4.2.txz: ..... done
                            [8/10] Fetching iprange-1.0.4.txz: ... done
                            [9/10] Fetching grepcidr-2.0.txz: ... done
                            [10/10] Fetching py37-sqlite3-3.7.7_7.txz: .... done
                            Checking integrity... done (0 conflicting)
                            [1/10] Installing lua52-5.2.4...
                            [1/10] Extracting lua52-5.2.4: ......... done
                            [2/10] Installing libmaxminddb-1.4.2...
                            [2/10] Extracting libmaxminddb-1.4.2: .......... done
                            [3/10] Installing lighttpd-1.4.54...
                            ===> Creating groups.
                            Using existing group 'www'.
                            ===> Creating users
                            Using existing user 'www'.
                            [3/10] Extracting lighttpd-1.4.54: .......... done
                            [4/10] Installing jq-1.6...
                            [4/10] Extracting jq-1.6: .......... done
                            [5/10] Installing whois-5.2.17...
                            [5/10] Extracting whois-5.2.17: .......... done
                            [6/10] Installing py37-maxminddb-1.4.1_1...
                            [6/10] Extracting py37-maxminddb-1.4.1_1: .......... done
                            [7/10] Installing iprange-1.0.4...
                            [7/10] Extracting iprange-1.0.4: ..... done
                            [8/10] Installing grepcidr-2.0...
                            [8/10] Extracting grepcidr-2.0: ..... done
                            [9/10] Installing py37-sqlite3-3.7.7_7...
                            [9/10] Extracting py37-sqlite3-3.7.7_7: ........ done
                            [10/10] Installing pfSense-pkg-pfBlockerNG-devel-2.2.5_34...
                            [10/10] Extracting pfSense-pkg-pfBlockerNG-devel-2.2.5_34: .......... done
                            Saving updated package information...
                            done.
                            Loading package configuration... done.
                            Configuring package components...
                            Loading package instructions...
                            Custom commands...
                            Executing custom_php_install_command()...
                            MaxMind GeoIP databases are not pre-installed during installation.
                            To utilize the MaxMind GeoIP functionalities, you will be required to register for a free MaxMind user account and access key. Review the IP tab: MaxMind Settings for more details.
                            
                            
                            Adding pfBlockerNG Widget to the Dashboard... done.
                            
                            Creating Firewall filter service... done.
                            Renew Firewall filter executables... done.
                            Starting Firewall filter Service... done.
                            
                            Creating DNSBL service... done.
                            Renew DNSBL lighttpd executable... done.
                            Starting DNSBL Service... done.
                            
                            Upgrading previous settings:
                             Adv. Inbound firewall rule settings... no changes required ... done.
                             OpenVPN/IPSec interface selections... no changes required ... done.
                             Proofpoint/ET IQRisk settings... no changes required ... done.
                             General Tab -> IP Tab settings... no changes required ... done.
                             pfBlockerNGSuppress Alias -> IPv4 Suppression Customlist... no changes required ... done.
                             Upgrading previous EasyLists to new format... no changes required ... done.
                            Upgrading... done
                            
                            Custom commands completed ... done.
                            Executing custom_php_resync_config_command()...done.
                            Menu items... done.
                            Services... done.
                            Writing configuration... done.
                            =====
                            Message from grepcidr-2.0:
                            
                            --
                            ===>   NOTICE:
                            
                            The grepcidr port currently does not have a maintainer. As a result, it is
                            more likely to have unresolved issues, not be up-to-date, or even be removed in
                            the future. To volunteer to maintain this port, please create an issue at:
                            
                            https://bugs.freebsd.org/bugzilla
                            
                            More information about port maintainership is available at:
                            
                            https://www.freebsd.org/doc/en/articles/contributing/ports-contributing.html#maintain-port
                            >>> Cleaning up cache... done.
                            Success
                            

                            -Rico

                            1 Reply Last reply Reply Quote 0
                            • F
                              float
                              last edited by

                              I thought I had to open another topic in the pfblocker section. You can delete it. I can't delete it.
                              I reinstalled the image that I received from netgate for the XG-7100 and the "whois" change is the only package that I'm not able to install.

                              DaddyGoD 1 Reply Last reply Reply Quote 0
                              • DaddyGoD
                                DaddyGo @float
                                last edited by DaddyGo

                                @float said in Fetching package: connection reset by peer:

                                netgate for the XG-7100

                                Okay, the installation works for me too (lab APU4d4), so you have - something on your side

                                Stay on this thread... @Rico is right

                                This is genuine Netgate stuff, so you have more options for troubleshooting - error ticket for example

                                Cats bury it so they can't see it!
                                (You know what I mean if you have a cat)

                                1 Reply Last reply Reply Quote 0
                                • RicoR
                                  Rico LAYER 8 Rebel Alliance
                                  last edited by

                                  Can you fetch the file manually from the local console or SSH without errors?

                                  [2.4.5-RELEASE][admin@pfSense2.localdomain]/root: fetch -o /dev/null https://firmware.netgate.com/pkg/pfSense_factory-v2_4_5_amd64-pfSense_factory-v2_4_5/All/whois-5.2.17.txz
                                  /dev/null                                               57 kB  317 kBps    00s
                                  [2.4.5-RELEASE][admin@pfSense2.localdomain]/root:
                                  

                                  -Rico

                                  1 Reply Last reply Reply Quote 0
                                  • F
                                    float
                                    last edited by

                                    No.

                                    [2.4.5-RELEASE][admin@*]/root: fetch -o /dev/null https://firmware.netgate.com/pkg/pfSense_factory-v2_4_5_amd64-pfSense_factory-v2_4_5/All/whois-5.2.17.txz
                                    /dev/null 82% of 57 kB 596 Bps 17s
                                    fetch: https://firmware.netgate.com/pkg/pfSense_factory-v2_4_5_amd64-pfSense_factory-v2_4_5/All/whois-5.2.17.txz: Connection reset by peer

                                    1 Reply Last reply Reply Quote 0
                                    • F
                                      float
                                      last edited by

                                      Resolving the website takes also very long.
                                      DNS issue?

                                      6f82a5b6-fc3f-4e3a-a63c-5209b188b6fd-image.png

                                      1 Reply Last reply Reply Quote 0
                                      • RicoR
                                        Rico LAYER 8 Rebel Alliance
                                        last edited by

                                        Yeah there must be a problem between you and the netgate server.
                                        Other files are working for you?!

                                        [2.4.5-RELEASE][admin@pfSense2.localdomain]/root: fetch -o /dev/null https://firmware.netgate.com/pkg/pfSense_factory-v2_4_5_amd64-pfSense_factory-v2_4_5/All/arm-none-eabi-gcc-6.4.0_7.txz
                                        /dev/null                                               19 MB 2118 kBps    09s
                                        [2.4.5-RELEASE][admin@pfSense2.localdomain]/root:
                                        

                                        -Rico

                                        1 Reply Last reply Reply Quote 0
                                        • F
                                          float
                                          last edited by float

                                          Yes, no problem with other files. The only problem is with the "whois" package.

                                          [2.4.5-RELEASE][admin@*]/root: fetch -o /dev/null https://firmware.netgate.com/pkg/pfSense_factory-v2_4_5_amd64-pfSense_factory-v2_4_5/All/arm-none-eabi-gcc-6.4.0_7.txz
                                          /dev/null 19 MB 1239 kBps 16s

                                          DaddyGoD 1 Reply Last reply Reply Quote 0
                                          • RicoR
                                            Rico LAYER 8 Rebel Alliance
                                            last edited by

                                            What's the output here?

                                            [2.4.5-RELEASE][admin@pfSense2.localdomain]/root: fetch -v -o /dev/null https://firmware.netgate.com/pkg/pfSense_factory-v2_4_5_amd64-pfSense_factory-v2_4_5/All/whois-5.2.17.txz
                                            resolving server address: firmware.netgate.com:443
                                            SSL options: 83004bff
                                            Peer verification enabled
                                            Using CA cert file: /usr/local/etc/ssl/cert.pem
                                            Verify hostname
                                            TLSv1.2 connection established using ECDHE-RSA-AES256-GCM-SHA384
                                            Certificate subject: /OU=Domain Control Validated/OU=PositiveSSL Wildcard/CN=*.netgate.com
                                            Certificate issuer: /C=GB/ST=Greater Manchester/L=Salford/O=Sectigo Limited/CN=Sectigo RSA Domain Validation Secure Server CA
                                            requesting https://firmware.netgate.com/pkg/pfSense_factory-v2_4_5_amd64-pfSense_factory-v2_4_5/All/whois-5.2.17.txz
                                            remote size / mtime: 59136 / 1580490860
                                            /dev/null                                               57 kB  319 kBps    00s
                                            [2.4.5-RELEASE][admin@pfSense2.localdomain]/root:
                                            

                                            -Rico

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.