601.423468 [3911] netmap_transmit em1 full hwcur 222 hwtail 155 qlen 66
-
Only happens on em1. Not em0.
Both are E1000 NIC's
What triggers this?
-
The netmap messages are coming from either Snort's or Suricata's netmap kernel device (whichever package you have installed and running using Inline IPS Mode). Snort inline is only available on pfSense-2.5.
The message is informational and means your firewall CPU is getting busy and is not emptying the netmap buffers fast enough (hence the "netmap_transmit full" messages).
If these messages always appear along with the pfBlockerNG entries, then a logical conclusion is that whatever pfBlockerNG is having the CPU do during those periods is keeping it busy and it is failing to empty the netmap buffers fast enough.
-
@bmeeks Thanks B.
Waiting for the 2.4.5p1 release to be available to upgrade the CPU cores to 16 again. Hopefully it will solve the problem.