Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    check_upgrade: "Updating repositories metadata" returned error code 1

    Scheduled Pinned Locked Moved Problems Installing or Upgrading pfSense Software
    153 Posts 41 Posters 30.7k Views 38 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T Offline
      tariqali
      last edited by

      Jumping in with a "me too", seeing a bunch of these errors recently as well.

      Anyone figure out how to stop them yet?

      1 Reply Last reply Reply Quote 0
      • stephenw10S Offline
        stephenw10 Netgate Administrator
        last edited by

        A backend change has been reverted. You should not hit this issue now. Or at least not for that reason.

        K T static418S 3 Replies Last reply Reply Quote 0
        • K Offline
          Kelpie @stephenw10
          last edited by

          @stephenw10 Thankyou

          1 Reply Last reply Reply Quote 0
          • T Offline
            tariqali @stephenw10
            last edited by

            @stephenw10 Thank you, so far so good today, no errors.

            1 Reply Last reply Reply Quote 0
            • G Offline
              ghc88
              last edited by

              Can also confirm the high number of errors has stopped here as well. Do we have any idea what it is about 2.8 onwards that causes them to occur occasionally?

              stephenw10S 1 Reply Last reply Reply Quote 0
              • static418S Offline
                static418 @stephenw10
                last edited by

                @stephenw10
                Looks like success to me! No new alerts since yesterday afternoon on any of my sites. Much appreciated :)

                1 Reply Last reply Reply Quote 1
                • stephenw10S Offline
                  stephenw10 Netgate Administrator @ghc88
                  last edited by

                  @ghc88 said in check_upgrade: "Updating repositories metadata" returned error code 1:

                  Do we have any idea what it is about 2.8 onwards that causes them to occur occasionally?

                  It appears to be a race condition. It mostly happens at boot. The re-write of the certctl hashing function will likely prevent it in the next version. It's much, much faster!

                  1 Reply Last reply Reply Quote 1
                  • P Offline
                    py
                    last edited by

                    I'm getting the same error. Other symptoms include:

                    Available Packages is empty;

                    "pkg -d update"
                    returns
                    "ld-elf.so.1: Shared object "libutil.so.10" not found, required by "pkg"";

                    "pfSense-repoc -ND"
                    returns
                    OS: FreeBSD
                    OS Version: 15.0-CURRENT
                    Platform: amd64
                    Product: Netgate pfSense Plus
                    Version: 25.07.1-RELEASE
                    FS type: zfs
                    Language: en_US
                    Model: unknown hardware
                    NDI: <redacted>
                    Package prefix: pfSense-pkg-
                    Serial: (null)
                    Repo path: /usr/local/etc/pfSense
                    Request query: {"platform":"unknown hardware","os":"FreeBSD","osver":"15.0-CURRENT","prod":"Netgate pfSense Plus","ver":"25.07.1-RELEASE","ed":"Plus","fstype":"zfs","pkgs":"<redacted>
                    POST data: uid=<redacted>
                    Messages:
                    Your device has not been registered for pfSense+. Please purchase a pfSense+ subscription to receive future updates. <a href="https://shop.netgate.com/products/pfsense-software-subscription" target="_blank" rel="noopener noreferrer">Netgate store</a>;

                    I few days ago the console showed errors indicating possible problems with the SSD, but the SMART monitoring seems good. I just attempted a reinstall to format the SSD, but it ends up indicating this machine is not registered with Negate and offers to install CE. I've got my original order no. from Netgate if that helps.

                    1 Reply Last reply Reply Quote 0
                    • stephenw10S Offline
                      stephenw10 Netgate Administrator
                      last edited by

                      Looks like your NDI might have changed. Send it to me in chat and I'll check it.

                      1 Reply Last reply Reply Quote 0
                      • morrealeM Offline
                        morreale
                        last edited by morreale

                        same issues here - I have not renewed my scubscription because of all the issues I have had since upating to this latest version. also how do i change my signature? or please delete it - very old

                        [25.07.1-RELEASE][admin@pfSense.home.arpa]/root: pkg -d update
                        ld-elf.so.1: Shared object "libutil.so.10" not found, required by "pkg"

                        [25.07.1-RELEASE][admin@pfSense.home.arpa]/root: pfSense-repoc -ND
                        OS: FreeBSD
                        OS Version: 15.0-CURRENT
                        Platform: amd64
                        Product: Netgate pfSense Plus
                        Version: 25.07.1-RELEASE
                        FS type: zfs
                        Language: en_US
                        Model: unknown hardware
                        NDI: <redacted>
                        Package prefix: pfSense-pkg-
                        Serial: <redacted>
                        Repo path: /usr/local/etc/pfSense
                        Request query: {"platform":"unknown hardware","os":"FreeBSD","osver":"15.0-CURRENT","prod":"Netgate pfSense Plus","ver":"25.07.1-RELEASE","ed":"Plus","fstype":"zfs","pkgs":"[{"name":"Cron","ver":"0.3.8_6"},{"name":"acme","ver":"1.0"},{"name":"Avahi","ver":"2.2_7"},{"name":"Nexus","ver":"25.07.1_1"},{"name":"snort","ver":"4.1.6_28"},{"name":"arping","ver":"1.2.2_6"},{"name":"arpwatch","ver":"0.2.3"},{"name":"Tailscale","ver":"0.1.8"},{"name":"RRD_Summary","ver":"2.2"},{"name":"pfBlockerNG","ver":"3.2.7"},{"name":"System_Patches","ver":"2.2.23"},{"name":"Service_Watchdog","ver":"1.8.7_4"},{"name":"Status_Traffic_Totals","ver":"2.3.3"},{"name":"openvpn-client-export","ver":"1.9.5"},{"name":"openvpn-client-import","ver":"1.2_3"}]"}
                        POST data: uid=<redacted>
                        Messages:
                        Your TAC Subscription expired on 2025-11-01 00:00:00. Please renew your TAC Subscription or purchase a pfSense+ subscription by visiting the <a href="https://shop.netgate.com/products/pfsense-software-subscription" target="_blank" rel="noopener noreferrer">Netgate store</a>.

                        [25.07.1-RELEASE][admin@pfSense.home.arpa]/root: pfSense-upgrade -dc
                        Messages:
                        Your TAC Subscription expired on 2025-11-01 00:00:00. Please renew your TAC Subscription or purchase a pfSense+ subscription by visiting the <a href="https://shop.netgate.com/products/pfsense-software-subscription" target="_blank" rel="noopener noreferrer">Netgate store</a>.
                        ERROR: It was not possible to determine pkg remote version

                        Updating repositories metadata...
                        Updating pfSense-core repository catalogue...
                        pkg-static: Repository pfSense-core has a wrong packagesite, need to re-create database
                        Unable to update repository pfSense-core
                        Updating pfSense repository catalogue...
                        pkg-static: Repository pfSense has a wrong packagesite, need to re-create database
                        Unable to update repository pfSense
                        Error updating repositories!
                        ERROR: It was not possible to determine pfSense-base remote version
                        ERROR: It was not possible to determine pfSense-kernel-pfSense remote version
                        ERROR: It was not possible to determine pfSense remote version
                        Your system is up to date

                        pfSense 25.07.1-RELEASE (amd64) / Supermicro X11SDV-8C-TP8F / 1TB / 32Gb 2666MHz ECC

                        tinfoilmattT stephenw10S 2 Replies Last reply Reply Quote 0
                        • tinfoilmattT Offline
                          tinfoilmatt @morreale
                          last edited by

                          @morreale said in check_upgrade: "Updating repositories metadata" returned error code 1:

                          also how do i change my signature? or please delete it - very old

                          Home / morreale / Edit

                          morrealeM 1 Reply Last reply Reply Quote 0
                          • stephenw10S Offline
                            stephenw10 Netgate Administrator @morreale
                            last edited by

                            @morreale said in check_upgrade: "Updating repositories metadata" returned error code 1:

                            Messages:
                            Your TAC Subscription expired on 2025-11-01 00:00:00. Please renew your TAC Subscription or purchase a pfSense+ subscription

                            That is the expected response if your Plus subscription expired. The Plus pkg repos won't be accessible until it's renewed.

                            You can always reinstall as CE and import the config.

                            1 Reply Last reply Reply Quote 0
                            • morrealeM Offline
                              morreale @tinfoilmatt
                              last edited by

                              @tinfoilmatt nope - i think it limited now

                              a8ecc6f3-6a06-4aca-9637-cb8506b78a9f-image.png

                              pfSense 25.07.1-RELEASE (amd64) / Supermicro X11SDV-8C-TP8F / 1TB / 32Gb 2666MHz ECC

                              tinfoilmattT 1 Reply Last reply Reply Quote 0
                              • tinfoilmattT Offline
                                tinfoilmatt @morreale
                                last edited by tinfoilmatt

                                @morreale Any browser extensions in use?

                                270badd0-a50e-40dd-bce4-fa29e31a72e9-image.png

                                1 Reply Last reply Reply Quote 0
                                • stephenw10S Offline
                                  stephenw10 Netgate Administrator
                                  last edited by

                                  I think you need some reputation to see it. Try again now

                                  morrealeM 1 Reply Last reply Reply Quote 2
                                  • morrealeM Offline
                                    morreale @stephenw10
                                    last edited by

                                    @stephenw10 thanks

                                    pfSense 25.07.1-RELEASE (amd64) / Supermicro X11SDV-8C-TP8F / 1TB / 32Gb 2666MHz ECC

                                    1 Reply Last reply Reply Quote 0
                                    • P Offline
                                      pfpv
                                      last edited by

                                      I want to add that I had this problem when I updated to 2.8.0 and changed DHCP server to KEA, and I switched from the DNS Forwarder to DNS Resolver.

                                      I switched from the DNS Forwarder to DNS Resolver only because the new KEA settings state: "DNS Registration. When checked, DHCP leases will automatically be registered with the DNS Resolver." So, I thought if I kept using the DNS Forwarder I'd lose DHCP lease registration. I wanted to use KEA but didn't want to lose DHCP lease registration and I wanted to use my pi-holes on my LAN that run unbound anyway. I used the forward-zone:
                                      setting in pfSense's unbound to forward all DNS queries to my pi-hole(s).

                                      With this setup I had the aforementioned error frequently. I have to say that I had had it before I made the changes in the unbound settings, i.e., when unbound was running without predefined upstream resolver.

                                      When I realized that my DHCP leases will still be registered when I use the DNS Forwarder I switched to it and haven't seen this error ever since. So,

                                      1. This error has something to do with unbound. I think the culprit has already been found (some kind of a race condition).
                                      2. Please change the description in the DHCP Server settings from "When checked, DHCP leases will automatically be registered with the DNS Resolver" to "When checked, DHCP leases will automatically be registered with the DNS Resolver or Forwarder."
                                      GertjanG 1 Reply Last reply Reply Quote 0
                                      • stephenw10S Offline
                                        stephenw10 Netgate Administrator
                                        last edited by

                                        Hmm, so you hit it even using Unbound in forwarding mode?

                                        P 1 Reply Last reply Reply Quote 0
                                        • P Offline
                                          pfpv @stephenw10
                                          last edited by

                                          @stephenw10 Yes, that is correct. I thought maybe because I pointed to IPs on my LAN but it should work.

                                          1 Reply Last reply Reply Quote 0
                                          • GertjanG Offline
                                            Gertjan @pfpv
                                            last edited by

                                            @pfpv

                                            The recent kea DHCP server supported fully automated DNS hist name integration into local pfSense DNS system, 'unbound'.
                                            This is a new solution to a very old problem.
                                            New solutions are often most not perfect the first time, so ... why do you want to deal with the issues known to 2.8.0 when the way better 2.8.1 is available (since a couple of months now) ? My advise : easy : get the latest version.
                                            I'm using myself the 2.8.1 equivalent, 25.07.1, and it works fine for me.

                                            "unbound" is by nature a resolver, but you can tell it to 'forward'. That will be like doing your daily shoppings with a Ferrari, but why not, you decide ^^ And I get it, you have another 'DNS' device, the pi-hole.

                                            You can also consider disabling unbound, and activate the original 'ancient' forwarder that came with pfSense, also called dnsmasq :

                                            2eea2f88-46e7-4f43-abd6-27888741d5fd-image.png

                                            and forward this forwader to your LAN pi-hilo.
                                            This forwarder can't do 'DHCP host name integration' though ...

                                            No "help me" PM's please. Use the forum, the community will thank you.
                                            Edit : and where are the logs ??

                                            P 1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.