Update failure
-
@tedquade said in Update failure:
@gabacho4 Reboot didn't resolve the issue for me.
Ted Quade
For me neither. Rebooted, even cut power off in case it was a hardware error of the quick assist adapter.
Getting the same certificate validation error.
-
@jjstecchino it’s so strange. Maybe toggle your update repo to 22.05 and then back to DEV? When I check on a production SG5100 is is able to see the newest dev update. I won’t update it of course so no way to say if the update would go through or not. But my lab 5100 did work.
-
@gabacho4 Good thinking and worth a try. Still no go but a different error.
Now getting bad request!
-
Enter an option: 13 >>> Updating repositories metadata... Updating pfSense-core repository catalogue... pkg-static: https://pfsense-plus-pkg-beta00.atx.netgate.com/pfSense_plus-master_amd64-core/meta.txz: Bad Request repository pfSense-core has no meta file, using default settings pkg-static: https://pfsense-plus-pkg-beta00.atx.netgate.com/pfSense_plus-master_amd64-core/packagesite.pkg: Bad Request pkg-static: https://pfsense-plus-pkg-beta00.atx.netgate.com/pfSense_plus-master_amd64-core/packagesite.txz: Bad Request Unable to update repository pfSense-core Updating pfSense repository catalogue... pkg-static: https://pfsense-plus-pkg-beta01.atx.netgate.com/pfSense_plus-master_amd64-pfSense_plus_devel/meta.txz: Bad Request repository pfSense has no meta file, using default settings pkg-static: https://pfsense-plus-pkg-beta01.atx.netgate.com/pfSense_plus-master_amd64-pfSense_plus_devel/packagesite.pkg: Bad Request pkg-static: https://pfsense-plus-pkg-beta01.atx.netgate.com/pfSense_plus-master_amd64-pfSense_plus_devel/packagesite.txz: Bad Request Unable to update repository pfSense Error updating repositories! >>> Upgrading pfSense-upgrade... failed.
-
@jjstecchino well there’s nothing left to do than attach an old Nintendo controller and try the forever famous ️️️️️️B A combination.
-
@gabacho4 said in Update failure:
@jjstecchino well there’s nothing left to do than attach an old Nintendo controller and try the forever famous ️️️️️️B A combination.
lol!
-
Wanted to flag this for Netgate as it seems you all are having cert issues. Aside from what has been discussed in the thread, here is what I just got on a box running the latest development build while trying to check for updates via ssh/console:
>>> Updating repositories metadata... Updating pfSense-core repository catalogue... Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: pkg-static: https://repo01.atx.netgate.com/beta/packages/pfSense_plus-master_amd64-core/meta.txz: Authentication error repository pfSense-core has no meta file, using default settings Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: pkg-static: https://repo01.atx.netgate.com/beta/packages/pfSense_plus-master_amd64-core/packagesite.pkg: Authentication error Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: pkg-static: https://repo01.atx.netgate.com/beta/packages/pfSense_plus-master_amd64-core/packagesite.txz: Authentication error Unable to update repository pfSense-core Updating pfSense repository catalogue... Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: pkg-static: https://repo01.atx.netgate.com/beta/packages/pfSense_plus-master_amd64-pfSense_plus_devel/meta.txz: Authentication error repository pfSense has no meta file, using default settings Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: pkg-static: https://repo01.atx.netgate.com/beta/packages/pfSense_plus-master_amd64-pfSense_plus_devel/packagesite.pkg: Authentication error Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: Certificate verification failed for /C=US/ST=Texas/L=Austin/O=Rubicon Communications, LLC (Netgate)/CN=repo01.atx.netgate.com 34960412672:error:1416F086:SSL routines:tls_process_server_certificate:certificate verify failed:/var/jenkins/workspace/pfSense-Plus-snapshots-master-main/sources/FreeBSD-src-plus-devel-main/crypto/openssl/ssl/statem/statem_clnt.c:1921: pkg-static: https://repo01.atx.netgate.com/beta/packages/pfSense_plus-master_amd64-pfSense_plus_devel/packagesite.txz: Authentication error Unable to update repository pfSense Error updating repositories! >>> Upgrading pfSense-upgrade... failed.
-
@gabacho4 same error I am getting.
-
@jjstecchino Me to.
Ted Quade
-
@tedquade it may be a problem with their server.it will be fixed soon.
-
Started working for me now
-
@jjstecchino Still problem for me.
Ted Quade
-
@tedquade said in Update failure:
@jjstecchino Still problem for me.
Ted Quade
If I remember correctly from some old posts on a similar issue, the server need to send a certificate and there is a limit on how many certificates it will send within a given time. After a while it will reset and will start working again. If it doesn't by tomorrow you may want to send an email to negate support with your Netgate Device Id and they will reset the NDI on the server for you
-
@jjstecchino Just completed update. Thanks for your guidance.
Ted Quade
-
-
-
are you guys still having update goofiness? I am dead in the water. Get all the SSL errors if I update via console and then if I try via GUI I get an error that the server could not be contacted and the check fails.
-
@gabacho4 said in Update failure:
are you guys still having update goofiness? I am dead in the water. Get all the SSL errors if I update via console and then if I try via GUI I get an error that the server could not be contacted and the check fails.
I was successful updating after about 8h. No issue with today update.
If you are getting the same error we discussed at the beginning of the thread, I would try to switch to the stable update version, back to development and then wait several hours.
My understanding on the update process is that your machine requests a certificate as one of the first steps and then uses this certificate for the update. If for some reason the cert you get is invalid, the server won’t issue another certificate for a period of time. I am not sure how long before you can get on other certificate. If still you can’t update, submit a ticket to net gate with your NDI and they will reset the time limit for you.
@gabacho4 said in Update failure:
are you guys still having update goofiness? I am dead in the water. Get all the SSL errors if I update via console and then if I try via GUI I get an error that the server could not be contacted and the check fails.
-
@jjstecchino well that is sure annoying. What is the build version you’re running now?
-
23.01-DEVELOPMENT (amd64)
built on Mon Nov 21 06:05:21 UTC 2022 -
@jjstecchino well suck! I’m behind. I’ll give your proposal a try although it basically sat for 12 hours today. What a goofy way to authenticate.
-