Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Re: Feedback on new CA manager - https nogo after resetup and restoring config

    Scheduled Pinned Locked Moved 2.0-RC Snapshot Feedback and Problems - RETIRED
    5 Posts 3 Posters 2.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      panachoi
      last edited by

      I'm just curious here – I've been running a snapshot from the beginning of september, but when I write a new CF card, and then try to restore my configuration, I'm unable to connect to the web interface anymore. The configuration seems to work (i.e. firewalling, NAT, etc) just not the https connection on the (reconfigured 8443) port.

      1 Reply Last reply Reply Quote 0
      • T
        thekod
        last edited by

        I would think that's a question for its own thread.

        1 Reply Last reply Reply Quote 0
        • P
          panachoi
          last edited by

          Well, I just thought this issue might be connected with my inability to restore the previous configuration.

          Its actually even worse, as I cannot restore even parts of the same configuration, even though the pulldown on the restore function would seem to permit this (does this even work?)

          I can access my box (embedded) via the console, where everything appears to be normal, I can even see the web config listening on port 8443, as specified in the configuration, but I cannot connect to it.

          1 Reply Last reply Reply Quote 0
          • dotdashD
            dotdash
            last edited by

            @panachoi:

            Its actually even worse, as I cannot restore even parts of the same configuration, even though the pulldown on the restore function would seem to permit this (does this even work?)

            Did you specify only the part you wanted to restore when you backed up the config? You can't backup the entire config and restore only the firewall rules, for example. You need to backup the firewall rules, then restore them.
            @panachoi:

            I can access my box (embedded) via the console, where everything appears to be normal, I can even see the web config listening on port 8443, as specified in the configuration, but I cannot connect to it.

            I thought I explained this in my original post, but the new CA manager presently requires you to create a CA, create a cert, then enable https using the cert. If you are restoring a 1.2 config with https webgui, you will need to create the cert to use https. In my case, I was able to connect via http to configure.

            1 Reply Last reply Reply Quote 0
            • P
              panachoi
              last edited by

              Did you specify only the part you wanted to restore when you backed up the config? You can't backup the entire config and restore only the firewall rules, for example. You need to backup the firewall rules, then restore them.

              This was not clear to me, but it does explain the errors I was getting. I guess I have to save individual parts of the configuration, and then restore them. From the GUI its not clear at all that you cannot selectively restore part of an entire configuration.

              I thought I explained this in my original post, but the new CA manager presently requires you to create a CA, create a cert, then enable https using the cert. If you are restoring a 1.2 config with https webgui, you will need to create the cert to use https. In my case, I was able to connect via http to configure.

              I'm trying to restore an "earler" 1.3 config (from around the beginning of Sept. I believe). It seems that with the new CA manager, its not possible to restore an entire configuration anymore.

              I guess I'll have to start from scratch, and then load those bits of the configuration that are important to me  to get back the "previous" state…Perhaps when I get some time.... :-}

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.