Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    There were error(s) loading the rules: /tmp/rules.debug:19: cannot define table bogonsv6: too many elements.

    Scheduled Pinned Locked Moved 2.5 Development Snapshots (Retired)
    20 Posts 7 Posters 2.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • L
      louis2 @w0w
      last edited by

      @w0w

      The moment I saw those messages, I realized that I had a serious security issue.

      So I did decide to reinstall "immediately".

      Something was terrible wrong with the system, for some unknown (upgrade) reason.

      To answer your question, no I did not open the SSH-port!
      So the only conclusion can be that the FW was not working correctly!

      Of course they still had to guess my password etc, but never the less "far from OK".

      Louis

      1 Reply Last reply Reply Quote 0
      • A
        amiah
        last edited by

        FYI I had the same error with no internet, and had to go to INTERFACES and disable Block bogon network. I hope the next update can fix this issue.

        1 Reply Last reply Reply Quote 0
        • A
          abuttino
          last edited by

          I have lost all LAN to WAN communication. Suggestions?

          1 Reply Last reply Reply Quote 0
          • w0wW
            w0w @w0w
            last edited by

            @abuttino

            @w0w said in There were error(s) loading the rules: /tmp/rules.debug:19: cannot define table bogonsv6: too many elements.:

            create system tunable named net.pf.request_maxcount
            in System/Advanced/System Tunables and put 2000000 as value.

            and REBOOT the firewall!

            1 Reply Last reply Reply Quote 1
            • A
              abuttino
              last edited by

              @w0w Thanks!

              1 Reply Last reply Reply Quote 0
              • L
                louis2
                last edited by

                For two reasons that is IMHO not the good solution:

                • At least for me a clean install solved the problem, so there seems to be a different problem
                • if (!!) the table is really to small, than Netgate should change the table size. So than your action is only a temporarily solution.

                My advice is to save your config and to do a clean install based on the actual snapshot.

                Louis

                w0wW 1 Reply Last reply Reply Quote 0
                • w0wW
                  w0w @louis2
                  last edited by w0w

                  @louis2
                  Did you really read that?
                  https://redmine.pfsense.org/issues/10861
                  This is the clean installation from the latest ISO, nothing have been changed or imported:
                  VirtualBox_pfSense-244 testing bug_17_09_2020_06_29_32.png

                  The problem is not solved even on clean install. You will not receive this error until pf bogonsv6 table is full.

                  1 Reply Last reply Reply Quote 1
                  • L
                    louis2
                    last edited by

                    Yep, the table is to small should be at least 200000, however:

                    There are another problem as well !!

                    • after a fresh install ...... the bogon tables are not loaded, automatically!! Oeps!!
                    • and I also noticed an error "Bogons V6 file downloaded: pfctl: Invalid argument."
                    • you can have big questions about rule tables as big as 114000 rules. I did not test, but it is probably dramatically affecting performance!!

                    I also wonder why this is still not fixed !!!

                    IPV6 is not in every regard a blessing 😥

                    Louis

                    w0wW 1 Reply Last reply Reply Quote 0
                    • w0wW
                      w0w @louis2
                      last edited by

                      @louis2
                      If I got it right this time It's on FreeBSD 12.2-PRERELEASE side not pfSense directly. Looks like not everyone have been noticed that base system is changed 🤗

                      1 Reply Last reply Reply Quote 0
                      • L
                        louis2
                        last edited by

                        Thanx!

                        I checked pfSense is on 12.2 now. I think Jim should have communicated that.

                        Not for every one relevant, but for me and others that is important to know.

                        Louis

                        1 Reply Last reply Reply Quote 0
                        • First post
                          Last post
                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.