Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    24.03-BETA to 24.03-RC update hiccup

    Problems Installing or Upgrading pfSense Software
    4
    18
    820
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • P
      pfsjap
      last edited by

      Updating Netgate 6100 via GUI went smooth (console not connected), but when it booted up, unbound would not restart:

      4210d3b5-5f1a-476c-8c70-d7ceeae7f48e-image.png

      Switched from DNS Resolver to Forwarder, which worked ok. Then rebooted 6100 and when booted up, it greeted me with verification prompt (Verify, Reboot), which I did. Switched back to Resolver, which now worked ok.

      GertjanG 1 Reply Last reply Reply Quote 0
      • stephenw10S
        stephenw10 Netgate Administrator
        last edited by

        Hmm. I assume you had enabled 'Manual Boot Verification'?

        P 1 Reply Last reply Reply Quote 0
        • P
          pfsjap @stephenw10
          last edited by

          @stephenw10 No, it had the default value (disabled).

          1 Reply Last reply Reply Quote 0
          • stephenw10S
            stephenw10 Netgate Administrator
            last edited by

            Hmm, yet the webgui displayed the manual option with the countdown timer?

            P 1 Reply Last reply Reply Quote 0
            • P
              pfsjap @stephenw10
              last edited by

              @stephenw10 I don't remember there being any indication of countdown being in progress, just two buttons Verify and Reboot.

              Does automatic verification need DNS and network connection? DNS was a bit shaky during update.

              1 Reply Last reply Reply Quote 0
              • stephenw10S
                stephenw10 Netgate Administrator
                last edited by

                Nope. Not unless something else in the boot process requires that and prevents it ever completing boot.

                1 Reply Last reply Reply Quote 0
                • P
                  pfsjap
                  last edited by

                  Happened again updating from previous RC to latest.

                  When 6100 rebooted after update, unbound would not start:

                  Apr 17 09:30:36	php-cgi	808	rc.bootup: The command '/usr/local/sbin/unbound -c /var/unbound/unbound.conf' returned exit code '1', the output was '[1713335436] unbound[97504:0] error: Error for server-cert-file: /var/unbound/unbound_server.pem [1713335436] unbound[97504:0] error: Error in SSL_CTX use_certificate_chain_file crypto error:80000002:system library::No such file or directory [1713335436] unbound[97504:0] error: and additionally crypto error:10080002:BIO routines::system lib [1713335436] unbound[97504:0] error: and additionally crypto error:0A080002:SSL routines::system lib [1713335436] unbound[97504:0] fatal error: could not set up remote-control'
                  

                  After second (manual) reboot dashboard shows (Manual Boot Verification was not set):

                  002e7c95-cc43-402a-a7ed-e3c068e53116-image.png

                  stephenw10S 1 Reply Last reply Reply Quote 0
                  • GertjanG
                    Gertjan @pfsjap
                    last edited by

                    @pfsjap

                    While decoding the log messages, I see "can't write a file"
                    Just to be sure :
                    Check avaible disk space, as 'no space left' might explain the write errors.
                    It also never hurts to do this : How to Run a pfSense Software File System Check.

                    No "help me" PM's please. Use the forum, the community will thank you.
                    Edit : and where are the logs ??

                    P 2 Replies Last reply Reply Quote 0
                    • P
                      pfsjap @Gertjan
                      last edited by

                      @Gertjan said in 24.03-BETA to 24.03-RC update hiccup:

                      "can't write a file"

                      Do you by this refer to log entry in the first post containing "SSL_write() failed"? I don't think it is related to disk activity, but rather to HTTP/2 communication between client and pfSense.

                      There is plenty of disk space on this device:

                      eadbcd38-9365-4b98-a440-f4fc810305d0-image.png

                      As for running fsck in single user mode, I may be wrong, but these instructions may not be valid anymore, maybe because of changes in boot environments. I tried to run fsck in single user mode on my Netgate 1100 with initial RC installed. Couldn't do it, I didn't take note of the message, but think it was something like "PFSENSE default not found".

                      GertjanG 1 Reply Last reply Reply Quote 0
                      • GertjanG
                        Gertjan @pfsjap
                        last edited by

                        @pfsjap

                        Ok, your observations make sense.
                        "SSL_write() failed" could be a error to "write to pipe", to a connected user visiting the GUI.

                        105 G Free, look like a 4100, the one I have.

                        You don't use the pfSense Watchdog package, right ?

                        No "help me" PM's please. Use the forum, the community will thank you.
                        Edit : and where are the logs ??

                        P 1 Reply Last reply Reply Quote 0
                        • stephenw10S
                          stephenw10 Netgate Administrator @pfsjap
                          last edited by

                          @pfsjap said in 24.03-BETA to 24.03-RC update hiccup:

                          After second (manual) reboot dashboard shows (Manual Boot Verification was not set):

                          If you see that with the -1 countdown value it's because you've managed to login to the gui before the bootup completed It this case it could be because something is holding up the boot perhaps.

                          Burt normally the bootup should complete and the automatic verification takes place. Reloading the dashboard would clear it.

                          P 1 Reply Last reply Reply Quote 0
                          • P
                            pfsjap @stephenw10
                            last edited by

                            @stephenw10 Ok, maybe I was just too quick when logging in. But that dashboard notification is not the issue here, it's that the unbound will not start. Or would that be resolved automatically too, some time later?

                            1 Reply Last reply Reply Quote 0
                            • P
                              pfsjap @Gertjan
                              last edited by

                              @Gertjan This is 6100MAX and nope, never used Watchdog.

                              GertjanG 1 Reply Last reply Reply Quote 0
                              • GertjanG
                                Gertjan @pfsjap
                                last edited by

                                @pfsjap

                                Maybe we'll can throw this one on the "can't reproduce" list ? 🙄

                                No "help me" PM's please. Use the forum, the community will thank you.
                                Edit : and where are the logs ??

                                P 1 Reply Last reply Reply Quote 0
                                • stephenw10S
                                  stephenw10 Netgate Administrator
                                  last edited by

                                  It's possible Unbound was also still starting at that point. I have seen that will large configs.

                                  1 Reply Last reply Reply Quote 0
                                  • P pfsjap referenced this topic on
                                  • P
                                    pfsjap @Gertjan
                                    last edited by

                                    @Gertjan said in 24.03-BETA to 24.03-RC update hiccup:

                                    It also never hurts to do this : How to Run a pfSense Software File System Check.

                                    The video instructed to use fsck, but does not work with ZFS.

                                    1 Reply Last reply Reply Quote 0
                                    • P
                                      pfsjap @Gertjan
                                      last edited by

                                      @Gertjan said in 24.03-BETA to 24.03-RC update hiccup:

                                      Maybe we'll can throw this one on the "can't reproduce" list ?

                                      There seems to be someone else with the same symptom of DNS not working until another reboot after update.

                                      M 1 Reply Last reply Reply Quote 0
                                      • M
                                        mikey_s @pfsjap
                                        last edited by

                                        @pfsjap

                                        Yes I had that

                                        1 Reply Last reply Reply Quote 1
                                        • First post
                                          Last post
                                        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.