Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Listen queue overflow: 193 already in queue awaiting acceptance

    Scheduled Pinned Locked Moved General pfSense Questions
    9 Posts 2 Posters 1.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • mtarboxM
      mtarbox
      last edited by

      From the forums back in 2020, but there was never a conclusion.
      link text

      Sep 27 21:57:05 pfSense kernel: sonewconn: pcb 0xffffa00050cc3540 (10.10.10.1:443 (proto 6)): Listen queue overflow: 193 already in queue awaiting acceptance (28 occurrences), euid 0, rgid 0, jail 0

      Every couple of days I will see the above flood my logs. It is a remote system. A reboot fixes it, but why am I seeing them in the first place? What is the root cause?

      Avahi is not installed.

      DHCPD, dpinger, ipsec, ntpd, pfb_dnsbl, pfb_filter, syslogd, tailscale and unbound are the only services running.

      Ideas?

      Si vis pacem, para pactum.

      stephenw10S 1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        Because some service is unable to service the incoming connection requests fast enough. Or more commonly it's stopped servicing requests at all and so the socket queues fill up fast. I'd guess Unbound from that list. Had the service stopped? Was the box still able to resolve?

        Steve

        mtarboxM 1 Reply Last reply Reply Quote 0
        • mtarboxM
          mtarbox @stephenw10
          last edited by

          @stephenw10 Unbound is still working with no issues resolving.

          Si vis pacem, para pactum.

          1 Reply Last reply Reply Quote 0
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            But was it before the reboot?

            It might not be that. Check the other logs, did something stop or get blocked?

            mtarboxM 1 Reply Last reply Reply Quote 0
            • mtarboxM
              mtarbox @stephenw10
              last edited by

              @stephenw10 it was.
              I remoted in, and was able to resolve websites and blocks.

              Si vis pacem, para pactum.

              1 Reply Last reply Reply Quote 0
              • stephenw10S
                stephenw10 Netgate Administrator @mtarbox
                last edited by

                @mtarbox said in Listen queue overflow: 193 already in queue awaiting acceptance:

                (10.10.10.1:443 (proto 6)):

                That implies the webgui itself. I assume that is the LAN IP of the firewall?

                The fact it's shown as protocol 6 is odd though.

                mtarboxM 1 Reply Last reply Reply Quote 0
                • mtarboxM
                  mtarbox @stephenw10
                  last edited by

                  @stephenw10 No, it is the Unbound webserver virtual ip address.

                  Si vis pacem, para pactum.

                  1 Reply Last reply Reply Quote 0
                  • stephenw10S
                    stephenw10 Netgate Administrator
                    last edited by

                    Oh, the pfBlocker server. Hmm well check the logs for that then. That almost certainly stopped since it serves only tiny ad replacements. I'd be amazed if it ever got overloaded.

                    mtarboxM 1 Reply Last reply Reply Quote 0
                    • mtarboxM
                      mtarbox @stephenw10
                      last edited by

                      @stephenw10 Hmmm, I will have to wait it does it again..
                      Thank you for taking the time, and I will report back the next time it does it.

                      Si vis pacem, para pactum.

                      1 Reply Last reply Reply Quote 1
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.