Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    check_upgrade: "Updating repositories metadata" returned error code 1

    Scheduled Pinned Locked Moved Problems Installing or Upgrading pfSense Software
    153 Posts 41 Posters 30.7k Views 38 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • K Offline
      Kelpie @stephenw10
      last edited by

      @stephenw10 Thankyou

      1 Reply Last reply Reply Quote 0
      • T Offline
        tariqali @stephenw10
        last edited by

        @stephenw10 Thank you, so far so good today, no errors.

        1 Reply Last reply Reply Quote 0
        • G Offline
          ghc88
          last edited by

          Can also confirm the high number of errors has stopped here as well. Do we have any idea what it is about 2.8 onwards that causes them to occur occasionally?

          stephenw10S 1 Reply Last reply Reply Quote 0
          • static418S Offline
            static418 @stephenw10
            last edited by

            @stephenw10
            Looks like success to me! No new alerts since yesterday afternoon on any of my sites. Much appreciated :)

            1 Reply Last reply Reply Quote 1
            • stephenw10S Offline
              stephenw10 Netgate Administrator @ghc88
              last edited by

              @ghc88 said in check_upgrade: "Updating repositories metadata" returned error code 1:

              Do we have any idea what it is about 2.8 onwards that causes them to occur occasionally?

              It appears to be a race condition. It mostly happens at boot. The re-write of the certctl hashing function will likely prevent it in the next version. It's much, much faster!

              1 Reply Last reply Reply Quote 1
              • P Offline
                py
                last edited by

                I'm getting the same error. Other symptoms include:

                Available Packages is empty;

                "pkg -d update"
                returns
                "ld-elf.so.1: Shared object "libutil.so.10" not found, required by "pkg"";

                "pfSense-repoc -ND"
                returns
                OS: FreeBSD
                OS Version: 15.0-CURRENT
                Platform: amd64
                Product: Netgate pfSense Plus
                Version: 25.07.1-RELEASE
                FS type: zfs
                Language: en_US
                Model: unknown hardware
                NDI: <redacted>
                Package prefix: pfSense-pkg-
                Serial: (null)
                Repo path: /usr/local/etc/pfSense
                Request query: {"platform":"unknown hardware","os":"FreeBSD","osver":"15.0-CURRENT","prod":"Netgate pfSense Plus","ver":"25.07.1-RELEASE","ed":"Plus","fstype":"zfs","pkgs":"<redacted>
                POST data: uid=<redacted>
                Messages:
                Your device has not been registered for pfSense+. Please purchase a pfSense+ subscription to receive future updates. <a href="https://shop.netgate.com/products/pfsense-software-subscription" target="_blank" rel="noopener noreferrer">Netgate store</a>;

                I few days ago the console showed errors indicating possible problems with the SSD, but the SMART monitoring seems good. I just attempted a reinstall to format the SSD, but it ends up indicating this machine is not registered with Negate and offers to install CE. I've got my original order no. from Netgate if that helps.

                1 Reply Last reply Reply Quote 0
                • stephenw10S Offline
                  stephenw10 Netgate Administrator
                  last edited by

                  Looks like your NDI might have changed. Send it to me in chat and I'll check it.

                  1 Reply Last reply Reply Quote 0
                  • morrealeM Offline
                    morreale
                    last edited by morreale

                    same issues here - I have not renewed my scubscription because of all the issues I have had since upating to this latest version. also how do i change my signature? or please delete it - very old

                    [25.07.1-RELEASE][admin@pfSense.home.arpa]/root: pkg -d update
                    ld-elf.so.1: Shared object "libutil.so.10" not found, required by "pkg"

                    [25.07.1-RELEASE][admin@pfSense.home.arpa]/root: pfSense-repoc -ND
                    OS: FreeBSD
                    OS Version: 15.0-CURRENT
                    Platform: amd64
                    Product: Netgate pfSense Plus
                    Version: 25.07.1-RELEASE
                    FS type: zfs
                    Language: en_US
                    Model: unknown hardware
                    NDI: <redacted>
                    Package prefix: pfSense-pkg-
                    Serial: <redacted>
                    Repo path: /usr/local/etc/pfSense
                    Request query: {"platform":"unknown hardware","os":"FreeBSD","osver":"15.0-CURRENT","prod":"Netgate pfSense Plus","ver":"25.07.1-RELEASE","ed":"Plus","fstype":"zfs","pkgs":"[{"name":"Cron","ver":"0.3.8_6"},{"name":"acme","ver":"1.0"},{"name":"Avahi","ver":"2.2_7"},{"name":"Nexus","ver":"25.07.1_1"},{"name":"snort","ver":"4.1.6_28"},{"name":"arping","ver":"1.2.2_6"},{"name":"arpwatch","ver":"0.2.3"},{"name":"Tailscale","ver":"0.1.8"},{"name":"RRD_Summary","ver":"2.2"},{"name":"pfBlockerNG","ver":"3.2.7"},{"name":"System_Patches","ver":"2.2.23"},{"name":"Service_Watchdog","ver":"1.8.7_4"},{"name":"Status_Traffic_Totals","ver":"2.3.3"},{"name":"openvpn-client-export","ver":"1.9.5"},{"name":"openvpn-client-import","ver":"1.2_3"}]"}
                    POST data: uid=<redacted>
                    Messages:
                    Your TAC Subscription expired on 2025-11-01 00:00:00. Please renew your TAC Subscription or purchase a pfSense+ subscription by visiting the <a href="https://shop.netgate.com/products/pfsense-software-subscription" target="_blank" rel="noopener noreferrer">Netgate store</a>.

                    [25.07.1-RELEASE][admin@pfSense.home.arpa]/root: pfSense-upgrade -dc
                    Messages:
                    Your TAC Subscription expired on 2025-11-01 00:00:00. Please renew your TAC Subscription or purchase a pfSense+ subscription by visiting the <a href="https://shop.netgate.com/products/pfsense-software-subscription" target="_blank" rel="noopener noreferrer">Netgate store</a>.
                    ERROR: It was not possible to determine pkg remote version

                    Updating repositories metadata...
                    Updating pfSense-core repository catalogue...
                    pkg-static: Repository pfSense-core has a wrong packagesite, need to re-create database
                    Unable to update repository pfSense-core
                    Updating pfSense repository catalogue...
                    pkg-static: Repository pfSense has a wrong packagesite, need to re-create database
                    Unable to update repository pfSense
                    Error updating repositories!
                    ERROR: It was not possible to determine pfSense-base remote version
                    ERROR: It was not possible to determine pfSense-kernel-pfSense remote version
                    ERROR: It was not possible to determine pfSense remote version
                    Your system is up to date

                    pfSense 25.07.1-RELEASE (amd64) / Supermicro X11SDV-8C-TP8F / 1TB / 32Gb 2666MHz ECC

                    tinfoilmattT stephenw10S 2 Replies Last reply Reply Quote 0
                    • tinfoilmattT Offline
                      tinfoilmatt @morreale
                      last edited by

                      @morreale said in check_upgrade: "Updating repositories metadata" returned error code 1:

                      also how do i change my signature? or please delete it - very old

                      Home / morreale / Edit

                      morrealeM 1 Reply Last reply Reply Quote 0
                      • stephenw10S Offline
                        stephenw10 Netgate Administrator @morreale
                        last edited by

                        @morreale said in check_upgrade: "Updating repositories metadata" returned error code 1:

                        Messages:
                        Your TAC Subscription expired on 2025-11-01 00:00:00. Please renew your TAC Subscription or purchase a pfSense+ subscription

                        That is the expected response if your Plus subscription expired. The Plus pkg repos won't be accessible until it's renewed.

                        You can always reinstall as CE and import the config.

                        1 Reply Last reply Reply Quote 0
                        • morrealeM Offline
                          morreale @tinfoilmatt
                          last edited by

                          @tinfoilmatt nope - i think it limited now

                          a8ecc6f3-6a06-4aca-9637-cb8506b78a9f-image.png

                          pfSense 25.07.1-RELEASE (amd64) / Supermicro X11SDV-8C-TP8F / 1TB / 32Gb 2666MHz ECC

                          tinfoilmattT 1 Reply Last reply Reply Quote 0
                          • tinfoilmattT Offline
                            tinfoilmatt @morreale
                            last edited by tinfoilmatt

                            @morreale Any browser extensions in use?

                            270badd0-a50e-40dd-bce4-fa29e31a72e9-image.png

                            1 Reply Last reply Reply Quote 0
                            • stephenw10S Offline
                              stephenw10 Netgate Administrator
                              last edited by

                              I think you need some reputation to see it. Try again now

                              morrealeM 1 Reply Last reply Reply Quote 2
                              • morrealeM Offline
                                morreale @stephenw10
                                last edited by

                                @stephenw10 thanks

                                pfSense 25.07.1-RELEASE (amd64) / Supermicro X11SDV-8C-TP8F / 1TB / 32Gb 2666MHz ECC

                                1 Reply Last reply Reply Quote 0
                                • P Offline
                                  pfpv
                                  last edited by

                                  I want to add that I had this problem when I updated to 2.8.0 and changed DHCP server to KEA, and I switched from the DNS Forwarder to DNS Resolver.

                                  I switched from the DNS Forwarder to DNS Resolver only because the new KEA settings state: "DNS Registration. When checked, DHCP leases will automatically be registered with the DNS Resolver." So, I thought if I kept using the DNS Forwarder I'd lose DHCP lease registration. I wanted to use KEA but didn't want to lose DHCP lease registration and I wanted to use my pi-holes on my LAN that run unbound anyway. I used the forward-zone:
                                  setting in pfSense's unbound to forward all DNS queries to my pi-hole(s).

                                  With this setup I had the aforementioned error frequently. I have to say that I had had it before I made the changes in the unbound settings, i.e., when unbound was running without predefined upstream resolver.

                                  When I realized that my DHCP leases will still be registered when I use the DNS Forwarder I switched to it and haven't seen this error ever since. So,

                                  1. This error has something to do with unbound. I think the culprit has already been found (some kind of a race condition).
                                  2. Please change the description in the DHCP Server settings from "When checked, DHCP leases will automatically be registered with the DNS Resolver" to "When checked, DHCP leases will automatically be registered with the DNS Resolver or Forwarder."
                                  GertjanG 1 Reply Last reply Reply Quote 0
                                  • stephenw10S Offline
                                    stephenw10 Netgate Administrator
                                    last edited by

                                    Hmm, so you hit it even using Unbound in forwarding mode?

                                    P 1 Reply Last reply Reply Quote 0
                                    • P Offline
                                      pfpv @stephenw10
                                      last edited by

                                      @stephenw10 Yes, that is correct. I thought maybe because I pointed to IPs on my LAN but it should work.

                                      1 Reply Last reply Reply Quote 0
                                      • GertjanG Offline
                                        Gertjan @pfpv
                                        last edited by

                                        @pfpv

                                        The recent kea DHCP server supported fully automated DNS hist name integration into local pfSense DNS system, 'unbound'.
                                        This is a new solution to a very old problem.
                                        New solutions are often most not perfect the first time, so ... why do you want to deal with the issues known to 2.8.0 when the way better 2.8.1 is available (since a couple of months now) ? My advise : easy : get the latest version.
                                        I'm using myself the 2.8.1 equivalent, 25.07.1, and it works fine for me.

                                        "unbound" is by nature a resolver, but you can tell it to 'forward'. That will be like doing your daily shoppings with a Ferrari, but why not, you decide ^^ And I get it, you have another 'DNS' device, the pi-hole.

                                        You can also consider disabling unbound, and activate the original 'ancient' forwarder that came with pfSense, also called dnsmasq :

                                        2eea2f88-46e7-4f43-abd6-27888741d5fd-image.png

                                        and forward this forwader to your LAN pi-hilo.
                                        This forwarder can't do 'DHCP host name integration' though ...

                                        No "help me" PM's please. Use the forum, the community will thank you.
                                        Edit : and where are the logs ??

                                        P 1 Reply Last reply Reply Quote 0
                                        • P Offline
                                          pfpv @Gertjan
                                          last edited by pfpv

                                          @Gertjan I think you misread my post or didn't read it fully.

                                          I was providing historical information when I was on 2.8.0. I updated to 2.8.1 next day it came out.

                                          I used to use DNS Forwarder, then for the reasons given I switched to DNS Resolver and then switched back to DNS Forwarder. Contrary to what I also believed KEA DHCP Server does register DHCP leases with DNS Forwarder just like ISC did. It's all good now. No errors and local DNS is working.

                                          GertjanG 1 Reply Last reply Reply Quote 0
                                          • GertjanG Offline
                                            Gertjan @pfpv
                                            last edited by

                                            @pfpv said in check_upgrade: "Updating repositories metadata" returned error code 1:

                                            misread my post

                                            This post ? is what I see/have.

                                            No "help me" PM's please. Use the forum, the community will thank you.
                                            Edit : and where are the logs ??

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.