• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

RuleError:There were errors loading the rules: /tmp/rules.debug:18: cannot alloc

Scheduled Pinned Locked Moved General pfSense Questions
25 Posts 17 Posters 66.4k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • B
    barbarin
    last edited by Apr 3, 2018, 4:33 PM

    I have the same problem on 4 pfsense servers, yesterday reinstall one and today 3 more shows the errors!!!! I suspect it's a hacking problem….

    Any can help us??

    Thanks.

    1 Reply Last reply Reply Quote 0
    • J
      jahonix
      last edited by Apr 3, 2018, 4:39 PM

      That's not a hacking problem, it's an upgrade glitch.
      Several others reported this already so watch the forum and read what other threads come up with.

      1 Reply Last reply Reply Quote 0
      • D
        Derelict LAYER 8 Netgate
        last edited by Apr 3, 2018, 4:41 PM

        Not hacking ffs.

        Do a forum search.

        Increase the Firewall Maximum Table Entries size to 400000 in System > Advanced, Firewall & NAT

        Chattanooga, Tennessee, USA
        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
        Do Not Chat For Help! NO_WAN_EGRESS(TM)

        1 Reply Last reply Reply Quote 5
        • B
          barbarin
          last edited by Apr 3, 2018, 5:04 PM

          Thanks Derelict, I make a search but don´t see the answer, sorry for that…

          Again thanks to all.

          Greetings...

          1 Reply Last reply Reply Quote 0
          • K
            KOM
            last edited by Apr 3, 2018, 5:33 PM

            Not hacking ffs.

            No, I'm pretty sure it's hacking.  It's always hacking.  ;D

            1 Reply Last reply Reply Quote 1
            • T
              toms88
              last edited by Apr 5, 2018, 10:10 AM

              Thanks all, il give that a try and see if it helps.

              1 Reply Last reply Reply Quote 0
              • K
                kyawwinhtun
                last edited by Apr 7, 2018, 3:18 AM

                @Derelict:

                Not hacking ffs.

                Do a forum search.

                Increase the Firewall Maximum Table Entries size to 400000 in System > Advanced, Firewall & NAT

                It Works Well!!!!!!Thanks  :D

                1 Reply Last reply Reply Quote 1
                • C
                  csandoval012
                  last edited by Apr 7, 2018, 10:52 PM

                  mine is on default
                  Maximum number of connections to hold in the firewall state table.
                  Note: Leave this blank for the default. On this system the default size is: 4909000

                  should I put more than that?

                  1 Reply Last reply Reply Quote 0
                  • D
                    Derelict LAYER 8 Netgate
                    last edited by Apr 7, 2018, 10:56 PM

                    It is not the Firewall Maximum States entry it is the Firewall Maximum Table Entries setting. Set it to 400000.

                    Chattanooga, Tennessee, USA
                    A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                    DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                    Do Not Chat For Help! NO_WAN_EGRESS(TM)

                    1 Reply Last reply Reply Quote 0
                    • E
                      eddie4
                      last edited by Apr 10, 2018, 7:40 AM

                      Jeej fixed my problem!!!!

                      1 Reply Last reply Reply Quote 0
                      • F
                        Floppie
                        last edited by Apr 15, 2018, 3:54 PM

                        @Derelict:

                        Not hacking ffs.

                        Do a forum search.

                        Increase the Firewall Maximum Table Entries size to 400000 in System > Advanced, Firewall & NAT

                        This solved it for me after losing NAT port forwarding during a reboot this morning.  Thanks!

                        1 Reply Last reply Reply Quote 0
                        • I
                          irfanit02gmail.com
                          last edited by Apr 17, 2018, 4:22 AM

                          @Derelict:

                          Not hacking ffs.

                          Do a forum search.

                          Increase the Firewall Maximum Table Entries size to 400000 in System > Advanced, Firewall & NAT

                          =================================

                          Post increasing the Firewall Maximum Table Entries size to 400000 , all rules started working.. Thanks buddy.. i helped a lot..

                          1 Reply Last reply Reply Quote 0
                          • I
                            itlogicsystems
                            last edited by Apr 26, 2018, 8:51 AM

                            Thanks so much for the input!  the changing of the 'max table entries' size to 400k did the trick!!

                            1 Reply Last reply Reply Quote 0
                            • A
                              aagaag
                              last edited by May 8, 2018, 3:47 PM

                              Just wanted to say that I got the same message today, although my system says that its default is 6 million entries.

                              1 Reply Last reply Reply Quote 0
                              • D
                                Derelict LAYER 8 Netgate
                                last edited by May 8, 2018, 4:10 PM

                                Set it to 400000.

                                Chattanooga, Tennessee, USA
                                A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                                DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                                Do Not Chat For Help! NO_WAN_EGRESS(TM)

                                B 1 Reply Last reply Oct 18, 2018, 2:35 PM Reply Quote 0
                                • D
                                  DrRobe
                                  last edited by Jul 1, 2018, 11:19 PM

                                  Worked perfectly, thank you!

                                  1 Reply Last reply Reply Quote 0
                                  • B
                                    Bon Jovi @Derelict
                                    last edited by Oct 18, 2018, 2:35 PM

                                    @derelict hello, i have set it in 400000 and even don't work. Can you suggest any other solution, please?

                                    1 Reply Last reply Reply Quote 0
                                    • jimpJ
                                      jimp Rebel Alliance Developer Netgate
                                      last edited by Oct 18, 2018, 3:28 PM

                                      Use a bigger number. Try 2000000.

                                      If you have a lot of table entries (especially with pfBlockerNG) you might need that or more.

                                      Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

                                      Need help fast? Netgate Global Support!

                                      Do not Chat/PM for help!

                                      Sergei_ShablovskyS 1 Reply Last reply Feb 4, 2020, 10:14 PM Reply Quote 3
                                      • D
                                        Derelict LAYER 8 Netgate
                                        last edited by Oct 18, 2018, 8:59 PM

                                        And be sure you're changing the right value. People, for some reason, seem to confuse Maximum States and Maximum Table Entries. Maximum Table Entries is what you want to change here.

                                        Chattanooga, Tennessee, USA
                                        A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                                        DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                                        Do Not Chat For Help! NO_WAN_EGRESS(TM)

                                        1 Reply Last reply Reply Quote 0
                                        • K
                                          Khampol
                                          last edited by May 5, 2019, 2:29 AM

                                          ok that works !
                                          ps : if i put it to 500000 ? is there any pb ? 😂

                                          1 Reply Last reply Reply Quote 0
                                          • First post
                                            Last post
                                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                                            [[user:consent.lead]]
                                            [[user:consent.not_received]]