Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Fresh install pfblockerNG on pfSense 25.11 RC a lot problems

    Scheduled Pinned Locked Moved pfBlockerNG
    22 Posts 4 Posters 237 Views 4 Watching
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A Offline
      Antibiotic @tinfoilmatt
      last edited by

      @tinfoilmatt Please read name of post. This is fresh installation of 25.11 RC and fresh installation of pfblockerNG. From scratch

      pfSense plus 25.11 on Topton mini PC
      CPU: Intel N100
      NIC: Intel i-226v 4 pcs
      RAM : 16 GB DDR5
      Disk: 128 GB NVMe
      Brgds, Archi

      tinfoilmattT 1 Reply Last reply Reply Quote 0
      • tinfoilmattT Offline
        tinfoilmatt @Antibiotic
        last edited by

        @Antibiotic Not so fresh if you (at least) made ill-advised Unbound configuration changes.

        A 1 Reply Last reply Reply Quote 0
        • A Offline
          Antibiotic @tinfoilmatt
          last edited by

          @tinfoilmatt I think this soft should work at any way. Doesn't matter what we will change in unbound. But anyway this is RC not stable version, time to correct bugs still to go.

          pfSense plus 25.11 on Topton mini PC
          CPU: Intel N100
          NIC: Intel i-226v 4 pcs
          RAM : 16 GB DDR5
          Disk: 128 GB NVMe
          Brgds, Archi

          tinfoilmattT 1 Reply Last reply Reply Quote 0
          • tinfoilmattT Offline
            tinfoilmatt @Antibiotic
            last edited by

            @Antibiotic Or it's an issue with your system configuration. I would personally have to troubleshoot your system myself to develop a hunch one way or the other.

            1 Reply Last reply Reply Quote 0
            • W Offline
              Wolf666 @Antibiotic
              last edited by

              @Antibiotic you should enable python module on general settings.

              Modem Draytek Vigor 130
              pfSense 2.4 Supermicro A1SRi-2558 - 8GB ECC RAM - Intel S3500 SSD 80GB - M350 Case
              Switch Cisco SG350-10
              AP Netgear R7000 (Stock FW)
              HTPC Intel NUC5i3RYH
              NAS Synology DS1515+
              NAS Synology DS213+

              A 1 Reply Last reply Reply Quote 0
              • A Offline
                Antibiotic @Wolf666
                last edited by

                @Wolf666 The pictures were made in unbound mode not a python mode. That why this is option not ticked. When unbound python mode enabled in pfblockerNG this settings going ON by auto.

                pfSense plus 25.11 on Topton mini PC
                CPU: Intel N100
                NIC: Intel i-226v 4 pcs
                RAM : 16 GB DDR5
                Disk: 128 GB NVMe
                Brgds, Archi

                GertjanG 1 Reply Last reply Reply Quote 0
                • GertjanG Offline
                  Gertjan @Antibiotic
                  last edited by

                  @Antibiotic said in Fresh install pfblockerNG on pfSense 25.11 RC a lot problems:

                  When unbound python mode enabled in pfblockerNG this settings going ON by auto.

                  I was somewhat surprised to read this, but is is the case.
                  Settings in a package (pfBlockerng) will modify pfSense 'core' (unbound) settings.

                  warning: so-sndbuf 4194304 was not granted. Got 57344

                  I translate :
                  I want 4 million, only got 50k ..... that's some ressource missing, and you need 80 (!!) times more.
                  This can't be a simple RAM, you should have enough of it.
                  Some "buffer size", see pfSense advanced settings ?

                  No "help me" PM's please. Use the forum, the community will thank you.
                  Edit : and where are the logs ??

                  tinfoilmattT 1 Reply Last reply Reply Quote 0
                  • tinfoilmattT Offline
                    tinfoilmatt @Gertjan
                    last edited by

                    @Gertjan said in Fresh install pfblockerNG on pfSense 25.11 RC a lot problems:

                    see pfSense advanced settings

                    Services / DNS Resolver / Advanced Settings / Advanced Resolver Options / Message Cache Size

                    GertjanG 1 Reply Last reply Reply Quote 0
                    • GertjanG Offline
                      Gertjan @tinfoilmatt
                      last edited by

                      @tinfoilmatt

                      This :

                      127235a2-d185-4b63-aa03-08d6d842e51b-image.png

                      is some internal unbound cache.

                      The errors, imho, talks about something else.
                      I have this "kern.ipc.maxsockbuf(bsd) value" set to :

                      ab11ca5f-7aeb-4ef7-8ca9-3d0b81f2d8e4-image.png

                      a bit more as 4 million ^^
                      Under System > Advanced >System Tunables

                      Btw : I'm just making noise here, as I didn't install the RC yet (as it is less candidate as release to me ^^).

                      No "help me" PM's please. Use the forum, the community will thank you.
                      Edit : and where are the logs ??

                      tinfoilmattT 2 Replies Last reply Reply Quote 0
                      • tinfoilmattT Offline
                        tinfoilmatt @Gertjan
                        last edited by

                        @Gertjan said in Fresh install pfblockerNG on pfSense 25.11 RC a lot problems:

                        The errors, imho, talks about something else.

                        The error was generated by PID 55760, user "unbound".

                        1 Reply Last reply Reply Quote 0
                        • tinfoilmattT Offline
                          tinfoilmatt @Gertjan
                          last edited by

                          @Gertjan FWIW, the (apparent) default kern.ipc.maxsockbuf is also ~ 4 MB on CE. Presumably OP could've increased this value dramatically—in excess of 10 MB—to match Unbound's configured 'message cache size.' But that's as bad of an idea as arbitrarily increasing the latter in the first place.

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.