2.3.1 & 2.3.2 cant install packages



  • i have tried 2.3.1 and now have done a fresh install of 2.3.2 and i still cant do updates or install packages.

    completely fresh install on a vm , running on esxi.  only settings i have changed are to make it my gateway with dhcp and set a static internal ipaddress.

    the web GUI give me the error:
    Packages
    × Unable to retrieve package information.

    and if i try to do updates in the console i get rsa and ssl errors.

    and i supposed to have set up a key to access the pfsense servers?



  • Is it possible there is a transparent HTTPS proxy between you and the Internet? And it really depends on what SSL/RSA errors you're getting.



  • as far as i know there aren't any of anything between me and the internet, unless my isp is doing something funky…

    i'm plugged directly into the fibre node termination point in my house.

    ubuntu and raspbian have no issues running apt-get updates.

    got this twice trying to install open-vm-tools:-

    678460032:error:1408F119:SSL routines:SSL3_GET_RECORD:decryption failed or bad record mac:/builder/pfsense-232/tmp/FreeBSD-src/secure/lib/libssl/../../../crypto/openssl/ssl/s3_pkt.c:518:

    and if i try an manual upgrade in the console i get this:-

    [2.3.2-RELEASE][root@pfSense.localdomain]/root: pfSense-upgrade -d

    Updating repositories metadata…
    Updating pfSense-core repository catalogue...
    pfSense-core repository is up-to-date.
    Updating pfSense repository catalogue...
    pfSense repository is up-to-date.
    All repositories are up-to-date.
    Certificate verification failed for /C=GB/ST=Greater Manchester/L=Salford/O=COMODO CA Limited/CN=COMODO RSA Domain Validation Secure Server CA
    678460032:error:0407006A:rsa routines:RSA_padding_check_PKCS1_type_1:block type is not 01:/builder/pfsense-232/tmp/FreeBSD-src/secure/lib/libcrypto/../../../crypto/openssl/crypto/rsa/rsa_pk1.c:103:
    678460032:error:04067072:rsa routines:RSA_EAY_PUBLIC_DECRYPT:padding check failed:/builder/pfsense-232/tmp/FreeBSD-src/secure/lib/libcrypto/../../../crypto/openssl/crypto/rsa/rsa_eay.c:705:
    678460032:error:0D0C5006:asn1 encoding routines:ASN1_item_verify:EVP lib:/builder/pfsense-232/tmp/FreeBSD-src/secure/lib/libcrypto/../../../crypto/openssl/crypto/asn1/a_verify.c:218:
    678460032:error:14090086:SSL routines:SSL3_GET_SERVER_CERTIFICATE:certificate verify failed:/builder/pfsense-232/tmp/FreeBSD-src/secure/lib/libssl/../../../crypto/openssl/ssl/s3_clnt.c:1185:

    Unlocking package pfSense-kernel-pfSense...
    Unlocking pfSense-kernel-pfSense-2.3.2

    **** WARNING ****
    Reboot will be required!!
    Proceed with upgrade? (y/N)
    Aborting...

    Locking package pfSense-kernel-pfSense...
    Locking pfSense-kernel-pfSense-2.3.2
    [2.3.2-RELEASE][root@pfSense.localdomain]/root:


Log in to reply