Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    strange characters in syslog message

    Scheduled Pinned Locked Moved General pfSense Questions
    7 Posts 2 Posters 728 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      michmoor LAYER 8 Rebel Alliance
      last edited by

      Does anyone know what the additional information is in the FRR routing adjacency syslog message in the 23.09 update?

      pre-23.09
      d45523ba-484a-41b8-8edd-a28fc6262d12-image.png

      post-23.09
      941f044b-0918-43ee-8e34-1b9bd0fd60f9-image.png

      Firewall: NetGate,Palo Alto-VM,Juniper SRX
      Routing: Juniper, Arista, Cisco
      Switching: Juniper, Arista, Cisco
      Wireless: Unifi, Aruba IAP
      JNCIP,CCNP Enterprise

      1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        Where are you viewing that? It feels like something misinterpreting and translating an address perhaps.

        M 1 Reply Last reply Reply Quote 0
        • M
          michmoor LAYER 8 Rebel Alliance @stephenw10
          last edited by

          @stephenw10
          From my remote syslog server which pushes out an email to me when there is a routing protocol adj blip.
          So we're just looking at the snippet from syslog.

          I checked syslog and i see the message.

          01c59980-dd62-4235-98fd-6fe7effbfc41-image.png

          Firewall: NetGate,Palo Alto-VM,Juniper SRX
          Routing: Juniper, Arista, Cisco
          Switching: Juniper, Arista, Cisco
          Wireless: Unifi, Aruba IAP
          JNCIP,CCNP Enterprise

          1 Reply Last reply Reply Quote 0
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            Can you verify it appears the same way in the pfSense gui directly? Just in case it's some local interpreting it.

            M 1 Reply Last reply Reply Quote 0
            • M
              michmoor LAYER 8 Rebel Alliance @stephenw10
              last edited by

              @stephenw10

              This is from the routing.log on the 6100

              ./routing.log:Nov  6 11:43:06 GAFW bgpd[40594]: %ADJCHANGE: neighbor 10.6.106.10(ep_141) in vrf default Up
              ./routing.log:Nov  6 13:22:13 GAFW bgpd[81763]: [N9HHH-F8H1M] %ADJCHANGE: neighbor 10.6.106.10(ep_141) in vrf default Up
              ./routing.log:Nov  6 22:02:58 GAFW bgpd[81763]: [PXVXG-TFNNT] %ADJCHANGE: neighbor 10.6.106.10(ep_141) in vrf default Down Interface down
              ./routing.log:Nov  6 22:02:58 GAFW bgpd[81763]: [H4B4J-DCW2R][EC 33554455] 10.6.106.10 [Error] bgp_read_packet error: Connection reset by peer
              ./routing.log:Nov  6 22:04:58 GAFW bgpd[81763]: [N9HHH-F8H1M] %ADJCHANGE: neighbor 10.6.106.10(ep_141) in vrf default Up
              ./routing.log:Nov  6 22:22:57 GAFW bgpd[81763]: [PXVXG-TFNNT] %ADJCHANGE: neighbor 10.6.106.10(ep_141) in vrf default Down Interface down
              ./routing.log:Nov  6 22:22:57 GAFW bgpd[81763]: [H4B4J-DCW2R][EC 33554455] 10.6.106.10 [Error] bgp_read_packet error: Connection reset by peer
              ./routing.log:Nov  6 22:24:57 GAFW bgpd[81763]: [N9HHH-F8H1M] %ADJCHANGE: neighbor 10.6.106.10(ep_141) in vrf default Up
              ./routing.log:Nov  7 15:14:11 GAFW bgpd[81763]: [PXVXG-TFNNT] %ADJCHANGE: neighbor 10.6.106.10(ep_141) in vrf default Down Interface down
              ./routing.log:Nov  7 15:14:11 GAFW bgpd[81763]: [H4B4J-DCW2R][EC 33554455] 10.6.106.10 [Error] bgp_read_packet error: Connection reset by peer
              ./routing.log:Nov  7 15:16:11 GAFW bgpd[81763]: [N9HHH-F8H1M] %ADJCHANGE: neighbor 10.6.106.10(ep_141) in vrf default Up
              
              

              Firewall: NetGate,Palo Alto-VM,Juniper SRX
              Routing: Juniper, Arista, Cisco
              Switching: Juniper, Arista, Cisco
              Wireless: Unifi, Aruba IAP
              JNCIP,CCNP Enterprise

              1 Reply Last reply Reply Quote 0
              • stephenw10S
                stephenw10 Netgate Administrator
                last edited by

                Ok that appears to be the FRR_ID for the message type:
                https://docs.frrouting.org/en/latest/extlog.html#structured-data

                M 1 Reply Last reply Reply Quote 0
                • M
                  michmoor LAYER 8 Rebel Alliance @stephenw10
                  last edited by

                  @stephenw10
                  Interesting..Must be a v9 thing then.

                  Thanks for checking.

                  Firewall: NetGate,Palo Alto-VM,Juniper SRX
                  Routing: Juniper, Arista, Cisco
                  Switching: Juniper, Arista, Cisco
                  Wireless: Unifi, Aruba IAP
                  JNCIP,CCNP Enterprise

                  1 Reply Last reply Reply Quote 1
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.