Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    21.02 Sudden lockup

    Scheduled Pinned Locked Moved Official Netgate® Hardware
    164 Posts 30 Posters 51.8k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • stephenw10S
      stephenw10 Netgate Administrator
      last edited by

      Not beyond 'as soon as possible' unfortunately.

      We have to confirm that is the cause and that the listed fix works as expected. Generate new images and test them.

      More info to follow as we get it.

      Steve

      K 1 Reply Last reply Reply Quote 2
      • K
        kphillips Administrator Netgate @stephenw10
        last edited by

        @stephenw10 said in 21.02 Sudden lockup:

        Not beyond 'as soon as possible' unfortunately.

        We have to confirm that is the cause and that the listed fix works as expected. Generate new images and test them.

        More info to follow as we get it.

        Steve

        Pretty much this. The patch I mentioned earlier was literally put into code less than an hour ago. We don't want to make anything worse by just sending it.

        1 Reply Last reply Reply Quote 5
        • R
          router @kphillips
          last edited by

          @kphillips said in 21.02 Sudden lockup:

          @router Packet loss is not a symptom of this issue. The SG-3100 would completely freeze up and force a reboot. If you have packet loss, its not 21.02 most likely. Check your gateway monitoring.

          Thanks for the reply. However,

          Nothing was changed other than this update.
          When pfsense is bypassed all the issues go away.

          I guess we are left with no choice other than to revert or switch to opnsense.

          stephenw10S 1 Reply Last reply Reply Quote 0
          • MaxK 0M
            MaxK 0 @bldnightowl
            last edited by

            @bldnightowl Mission critical software development, testing, deployment, and support has been my career since 1985. First rule for applying an update: develop and test a contingency plan to ensure you can fallback to a known operational state if anything goes wrong during or after the update.

            You can blame Netgate for missing a defect but we are all responsible for ensuring that we follow industry established best practices to ensure a rapid recovery from an unplanned event or disaster. If I upgraded my environment without testing or having a fallback plan and I am suffering from unexpected or degraded performance, I am to blame - not Netgate.

            If I don’t have the time or resources to test or recover then I wait to upgrade and monitor forums like this to see if there are any issues that may impact my environment.

            Finally, thank you very much to everyone who did discover this issue and provided the valuable information for Netgate to address this issue.

            1 Reply Last reply Reply Quote 5
            • stephenw10S
              stephenw10 Netgate Administrator @router
              last edited by

              @router You should open a new thread for that because what you're seeing there is not the pf reload issue this thread is documenting.
              Packet loss from the SG-3100 is not an issue we are aware of so if you are hittinf something new then we need info about that in order to address it.
              But you can certainly re-install 2.4.5p1 until we have an update ready. Just open a ticket with us:
              https://go.netgate.com/

              Steve

              1 Reply Last reply Reply Quote 0
              • R
                router
                last edited by

                Is there somewhere in particular we can check to see when this major issue is resolved? Like a release page or email?

                S 1 Reply Last reply Reply Quote 0
                • S
                  softcoder @router
                  last edited by

                  @router https://redmine.pfsense.org/issues/11444

                  1 Reply Last reply Reply Quote 1
                  • stephenw10S
                    stephenw10 Netgate Administrator
                    last edited by

                    Yup there. But we will also post here and on the blog etc. It should be pretty hard to miss.

                    Steve

                    1 Reply Last reply Reply Quote 1
                    • J
                      jkibbey
                      last edited by

                      Thank you for getting this resolved. I've been quietly waiting. Thankfully manual restarts haven't caused me too much grief and my remote instance held strong somehow (which gets much more traffic.)

                      1 Reply Last reply Reply Quote 0
                      • R
                        rloeb
                        last edited by

                        Is Snort still not working or is it just not starting correctly?

                        S 1 Reply Last reply Reply Quote 0
                        • stephenw10S
                          stephenw10 Netgate Administrator
                          last edited by

                          The 21.02p1 update released today addresses only https://redmine.pfsense.org/issues/11444.

                          By doing we could get the required testing completed faster the fix released to impacted users.

                          The issue with the Snort package is being worked on now. Since that is a package issue it can be fixed outside of the pfSense releases.

                          Steve

                          R 1 Reply Last reply Reply Quote 1
                          • R
                            rloeb @stephenw10
                            last edited by

                            @stephenw10 Understood. Be nice if we could communicate a more global situational awareness...

                            1 Reply Last reply Reply Quote 1
                            • S
                              SteveITS Galactic Empire @rloeb
                              last edited by

                              @rloeb said in 21.02 Sudden lockup:

                              Snort

                              See the Redmine entry for that in this thread.

                              Netgate: kudos on the super fast turnaround on the SG-3100 fix.

                              Pre-2.7.2/23.09: Only install packages for your version, or risk breaking it. Select your branch in System/Update/Update Settings.
                              When upgrading, allow 10-15 minutes to restart, or more depending on packages and device speed.
                              Upvote 👍 helpful posts!

                              F 1 Reply Last reply Reply Quote 1
                              • F
                                ffuentes @SteveITS
                                last edited by

                                @teamits said in 21.02 Sudden lockup:

                                Netgate: kudos on the super fast turnaround on the SG-3100 fix.

                                This!

                                1 Reply Last reply Reply Quote 0
                                • A
                                  alpharulez
                                  last edited by

                                  Blog post here for more details: https://www.netgate.com/blog/pfsense-obscure-bugs-and-code-wizards.html

                                  How can I find out when the snort issue has been fixed?

                                  Thanks for the fix.

                                  bmeeksB 1 Reply Last reply Reply Quote 0
                                  • bmeeksB
                                    bmeeks @alpharulez
                                    last edited by

                                    @alpharulez said in 21.02 Sudden lockup:

                                    Blog post here for more details: https://www.netgate.com/blog/pfsense-obscure-bugs-and-code-wizards.html

                                    How can I find out when the snort issue has been fixed?

                                    Thanks for the fix.

                                    You can track the Snort issue here: https://redmine.pfsense.org/issues/11466. This one may take several days to figure out and clear up.

                                    1 Reply Last reply Reply Quote 2
                                    • First post
                                      Last post
                                    Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.