High CPU USAGE IN 2.7.0-RELEASE
-
Hi,
I have upgraded the firewall to 2.7.0. Now I am facing a high CPU usage issue. Can any help to solve this issue.
root 12 300.0 0.0 0 336 - WL 12:37 88:16.05 [intr]
My machine configuration is below
RAM is 8 GB.
-
What did you upgrade from?
What is using the CPU cycles?
Any reason you are not running 2.7.2?
Steve
-
@Gokulapandi said in High CPU USAGE IN 2.7.0-RELEASE:
Now I am facing a high CPU usage issue. Can any help to solve this issue.
Look which process have the high cpu load:
top -aSHm cpu
-
Hi @stephenw10 ,
Thanks for your response.
Our firewall was in the 2.4.5-p1 version initially. I upgraded to 2.6 then upgraded to 2.7. I didn't get an update for 2.7,2 as below, it's up to date
only If a few users using connecting in the firewall, it's working fine. When connecting more users in firewall, only we can able to use the internet, cant access another network (ipsec network/ openvpn network). After rebooting the firewall, everything is working fine.
root 12 300.0 0.0 0 336 - WL 12:37 88:16.05 [intr]
root 11 100.0 0.0 0 64 - RNL 12:37 69:57.24 [idle]
root 0 0.1 0.0 0 704 - DLs 12:37 0:27.57 [kernel] -
At the command line run:
certctl rehash
Then check for updates again. -
@stephenw10 said in High CPU USAGE IN 2.7.0-RELEASE:
certctl rehash
@stephenw10Thank you. I have received an update for 2.7.2 now. Will it fix above mentioned high cpu usage issue and connectivity issue if update the version?
-
@Gokulapandi said in High CPU USAGE IN 2.7.0-RELEASE:
Will it fix above mentioned high cpu usage issue and connectivity issue if update the version?
Give it a try!
-
It might there have been numerous fixes between 2.7.0 and 2.7.2. But even if it doesn't you need to test in 2.7.2.
-
Hi @stephenw10 @slu
As of now, I upgraded to 7.1 version. I am facing the same issue. How to fix this issue.
-
Hi @stephenw10 @slu
As of now, I upgraded to 7.1 version. I am facing the same issue. How to fix this issue.
-
Please update to 2.7.2.
netisr:
https://man.freebsd.org/cgi/man.cgi?format=html&query=netisr(9)Some load for some reason.
Installed packages? -
-
pretty sure this is the upgrade problem and I recommend the update over ssh!
https://forum.netgate.com/post/1140955Maybe ntopng is the CPU load issue, try to disable/remove it.
-
Ntopng service has already stopped. I will install the 2.7.2. over ssh
how do we find the CPU usage issue and network connectivity issues ? -
@Gokulapandi said in High CPU USAGE IN 2.7.0-RELEASE:
how do we find the CPU usage issue and network connectivity issues ?
No idea, sorry. This must depend on your setup.
-
Thanks.
Before upgrading the version. It was working fine, there was no CPU usage and network connectivity issue s mentioned earlier.
-
There is something else, did you mention somewhere you use a VM ?
If so :
The pfSense from last decade, 2.4.5, used an very ancient FreeBSD kernel.
The recent 2.7.2 uses what, freeBSD 14 or even 15 ?
The hypervisor model or VM settings should be 'updated' (upgraded ?) also.
if not, bad, or even horrible network virtualization has been seen before. -
Thanks for your response.
Firewall current kernel version is FreeBSD 14.0-CURRENT amd64. We are running pf sense in physical machine.
our issue is below - FYI.
only If a few users using connecting in the firewall, it's working fine. When connecting more users in firewall, only we can able to use the internet, cant access another network (ipsec network/ openvpn network). After rebooting the firewall, everything is working fine -
Does it happen immediately or after the firewall has been running for a while? Does the interrupt load increase slowly?
What NICs do you have in that box? I can see re0 there.
-
@Gokulapandi said in High CPU USAGE IN 2.7.0-RELEASE:
We are running pf sense in physical machine
Ok, good to know.
I didn't understand why this installed :