Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    New alert found: There were error(s) loading the rules:

    Scheduled Pinned Locked Moved 2.0-RC Snapshot Feedback and Problems - RETIRED
    9 Posts 8 Posters 9.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • L
      LostInIgnorance
      last edited by

      When updating (full install) to Dec. 1st snap, I am getting these errors on boot. [Please ignore the HAVP errors as I am working with dvserg about them].
      Noticed also, I can not browse the web, so I rolled back to the 2.0-BETA4 (i386) built on Mon Nov 29 17:36:11 EST 2010 .

      Dec 1 09:14:25 check_reload_status: reloading filter
      Dec 1 09:14:25 kernel: pflog0: promiscuous mode enabled
      Dec 1 09:14:26 php: : The command '/sbin/pfctl -o basic -f /tmp/rules.debug' returned exit code '1', the output was '/tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded'
      Dec 1 09:14:27 php: : New alert found: There were error(s) loading the rules: /tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded The line in question reads [83]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:14:27 php: : There were error(s) loading the rules: /tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded - The line in question reads [83]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:14:27 apinger: Starting Alarm Pinger, apinger(36291)
      Dec 1 09:14:30 php: : ROUTING: add default route to X.X.X.X
      Dec 1 09:14:34 dhcpd: Internet Systems Consortium DHCP Server 4.1.1-P1
      Dec 1 09:14:34 dhcpd: Copyright 2004-2010 Internet Systems Consortium.
      Dec 1 09:14:34 dhcpd: All rights reserved.
      Dec 1 09:14:34 dhcpd: For info, please visit https://www.isc.org/software/dhcp/
      Dec 1 09:14:34 dnsmasq[55952]: started, version 2.55 cachesize 10000
      Dec 1 09:14:34 dnsmasq[55952]: compile time options: no-IPv6 GNU-getopt no-DBus I18N DHCP TFTP
      Dec 1 09:14:34 dnsmasq[55952]: reading /etc/resolv.conf
      Dec 1 09:14:34 dnsmasq[55952]: using nameserver 216.146.36.36#53
      Dec 1 09:14:34 check_reload_status: updating all dyndns
      Dec 1 09:14:34 dnsmasq[55952]: using nameserver 216.146.35.35#53
      Dec 1 09:14:34 dnsmasq[55952]: read /etc/hosts - 2 addresses
      Dec 1 09:14:36 kernel: ipfw2 (+ipv6) initialized, divert loadable, nat loadable, rule-based forwarding enabled, default to accept, logging disabled
      Dec 1 09:14:36 kernel: load_dn_sched dn_sched FIFO loaded
      Dec 1 09:14:36 kernel: load_dn_sched dn_sched QFQ loaded
      Dec 1 09:14:36 kernel: load_dn_sched dn_sched RR loaded
      Dec 1 09:14:36 kernel: load_dn_sched dn_sched WF2Q+ loaded
      Dec 1 09:14:36 kernel: load_dn_sched dn_sched PRIO loaded
      Dec 1 09:14:45 php: : rc.newwanip: Informational is starting vr0.
      Dec 1 09:14:45 php: : rc.newwanip: on (IP address: X.X.X.X) (interface: wan) (real interface: vr0).
      Dec 1 09:14:46 php: : ROUTING: change default route to X.X.X.X
      Dec 1 09:14:46 php: : DynDns: Running updatedns()
      Dec 1 09:14:46 php: : DynDns: updatedns() starting
      Dec 1 09:14:46 apinger: Exiting on signal 15.
      Dec 1 09:14:46 php: : DynDns: _detectChange() starting.
      Dec 1 09:14:46 php: : DynDns: _checkIP() starting.
      Dec 1 09:14:46 php: : DynDns debug information: X.X.X.X extracted from local system.
      Dec 1 09:14:46 php: : DynDns: Current WAN IP: X.X.X.X
      Dec 1 09:14:46 php: : DynDns: Cached IP: X.X.X.X
      Dec 1 09:14:46 apinger: Starting Alarm Pinger, apinger(20329)
      Dec 1 09:14:46 php: : phpDynDNS: No change in my IP address and/or 25 days has not passed. Not updating dynamic DNS entry.
      Dec 1 09:14:48 php: : The command '/sbin/pfctl -o basic -f /tmp/rules.debug' returned exit code '1', the output was '/tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded'
      Dec 1 09:14:48 php: : New alert found: There were error(s) loading the rules: /tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded The line in question reads [83]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:14:48 php: : There were error(s) loading the rules: /tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded - The line in question reads [83]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:14:49 php: : The command '/sbin/pfctl -o basic -f /tmp/rules.debug' returned exit code '1', the output was '/tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded'
      Dec 1 09:14:49 php: : Creating rrd update script
      Dec 1 09:14:49 php: : The command '/sbin/pfctl -o basic -f /tmp/rules.debug' returned exit code '1', the output was '/tmp/rules.debug:83: syntax error /tmp/rules.debug:85: cannot define table bogons: Device busy pfctl: Syntax error in config file: pf rules not loaded'
      Dec 1 09:14:49 php: : New alert found: There were error(s) loading the rules: /tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded The line in question reads [83]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:14:50 php: : There were error(s) loading the rules: /tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded - The line in question reads [83]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:14:51 php: : New alert found: There were error(s) loading the rules: /tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded The line in question reads [83]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:14:51 php: : There were error(s) loading the rules: /tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded - The line in question reads [83]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:14:51 php: : Resyncing configuration for all packages.
      Dec 1 09:14:53 php: : The command 'ln -s /usr/local/bin/perl /usr/bin/perl' returned exit code '1', the output was 'ln: /usr/bin/perl: File exists'
      Dec 1 09:14:55 check_reload_status: syncing firewall
      Dec 1 09:14:56 dnsmasq[55952]: reading /etc/resolv.conf
      Dec 1 09:14:56 dnsmasq[55952]: using nameserver 216.146.36.36#53
      Dec 1 09:14:56 dnsmasq[55952]: using nameserver 216.146.35.35#53
      Dec 1 09:14:58 last message repeated 3 times
      Dec 1 09:15:31 php: : Starting Squid
      Dec 1 09:15:31 squid[20515]: Squid Parent: child process 21135 started
      Dec 1 09:15:32 check_reload_status: reloading filter
      Dec 1 09:15:32 squid[20515]: Squid Parent: child process 21135 exited due to signal 15
      Dec 1 09:15:49 php: : The command '/sbin/pfctl -o basic -f /tmp/rules.debug' returned exit code '1', the output was '/tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded'
      Dec 1 09:15:49 php: : New alert found: There were error(s) loading the rules: /tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded The line in question reads [83]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:15:49 php: : There were error(s) loading the rules: /tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded - The line in question reads [83]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:16:00 php: : Starting Squid
      Dec 1 09:16:00 squid[63858]: Squid Parent: child process 320 started
      Dec 1 09:16:01 check_reload_status: reloading filter
      Dec 1 09:16:02 php: : The command 'chown -R -v havp /usr/local/etc/havp' returned exit code '1', the output was 'chown: havp: Invalid argument'
      Dec 1 09:16:02 php: : The command 'chown -R -v havp /var/tmp/havp' returned exit code '1', the output was 'chown: havp: Invalid argument'
      Dec 1 09:16:02 php: : The command 'chown -R -v havp /var/tmp/havpRAM' returned exit code '1', the output was 'chown: havp: Invalid argument'
      Dec 1 09:16:02 php: : The command 'chown -R -v havp /usr/local/share/examples/havp/templates' returned exit code '1', the output was 'chown: havp: Invalid argument'
      Dec 1 09:16:02 php: : The command 'chown -R -v havp /usr/local/share/examples/havp/templates_ex' returned exit code '1', the output was 'chown: havp: Invalid argument'
      Dec 1 09:16:03 php: : The command 'chown -R -v havp /var/log/havp' returned exit code '1', the output was 'chown: havp: Invalid argument'
      Dec 1 09:16:03 php: : The command 'chown -R -v havp /var/run/havp.pid' returned exit code '1', the output was 'chown: havp: Invalid argument'
      Dec 1 09:16:03 php: : The command 'chown -R -v havp /usr/local/etc/freshclam.conf' returned exit code '1', the output was 'chown: havp: Invalid argument'
      Dec 1 09:16:03 php: : The command 'chown -R -v havp /var/log/clamav' returned exit code '1', the output was 'chown: havp: Invalid argument'
      Dec 1 09:16:03 php: : The command 'chown -R -v havp /usr/local/etc/rc.d/havp_avupdate' returned exit code '1', the output was 'chown: havp: Invalid argument'
      Dec 1 09:16:03 php: : The command 'chown -R -v havp /usr/local/etc/clamd.conf' returned exit code '1', the output was 'chown: havp: Invalid argument'
      Dec 1 09:16:03 php: : The command 'chown -R -v havp /usr/local/etc/havp' returned exit code '1', the output was 'chown: havp: Invalid argument'
      Dec 1 09:16:03 php: : Starting HAVP
      Dec 1 09:16:04 check_reload_status: syncing firewall
      Dec 1 09:16:32 php: : The command '/sbin/pfctl -o basic -f /tmp/rules.debug' returned exit code '1', the output was '/tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded'
      Dec 1 09:16:34 php: : New alert found: There were error(s) loading the rules: /tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded The line in question reads [83]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:16:34 php: : There were error(s) loading the rules: /tmp/rules.debug:83: syntax error pfctl: Syntax error in config file: pf rules not loaded - The line in question reads [83]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:16:58 php: : Reloading Squid for configuration sync
      Dec 1 09:16:58 check_reload_status: reloading filter
      Dec 1 09:16:58 php: : The command 'chown -R -v havp /usr/local/etc/freshclam.conf' returned exit code '1', the output was 'chown: havp: Invalid argument'
      Dec 1 09:17:01 check_reload_status: syncing firewall
      Dec 1 09:17:02 usbhid-ups[43567]: Startup successful
      Dec 1 09:17:02 upsd[43884]: listening on 0.0.0.0 port 3493
      Dec 1 09:17:02 upsd[43884]: Connected to UPS [XS1000]: usbhid-ups-XS1000
      Dec 1 09:17:02 upsd[44024]: Startup successful
      Dec 1 09:17:03 upsmon[44559]: Startup successful
      Dec 1 09:17:03 upsd[44024]: Client monuser@127.0.0.1 logged into UPS [XS1000]
      Dec 1 09:17:04 login: login on console as root
      Dec 1 09:17:05 sshlockout[48644]: sshlockout v2.0 starting up
      Dec 1 09:17:05 sshlockout[48644]: sshlockout v2.0 starting up
      Dec 1 09:17:28 php: : The command '/sbin/pfctl -o basic -f /tmp/rules.debug' returned exit code '1', the output was '/tmp/rules.debug:97: syntax error pfctl: Syntax error in config file: pf rules not loaded'
      Dec 1 09:17:29 php: : New alert found: There were error(s) loading the rules: /tmp/rules.debug:97: syntax error pfctl: Syntax error in config file: pf rules not loaded The line in question reads [97]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:17:29 php: : There were error(s) loading the rules: /tmp/rules.debug:97: syntax error pfctl: Syntax error in config file: pf rules not loaded - The line in question reads [97]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:18:57 check_reload_status: syncing firewall
      Dec 1 09:19:04 last message repeated 2 times
      Dec 1 09:19:04 php: /pkg_mgr_install.php: The command 'killall -9 havp' returned exit code '1', the output was 'No matching processes were found'
      Dec 1 09:19:06 check_reload_status: syncing firewall
      Dec 1 09:19:06 check_reload_status: reloading filter
      Dec 1 09:19:11 php: : The command '/sbin/pfctl -o basic -f /tmp/rules.debug' returned exit code '1', the output was '/tmp/rules.debug:92: syntax error pfctl: Syntax error in config file: pf rules not loaded'
      Dec 1 09:19:11 php: : New alert found: There were error(s) loading the rules: /tmp/rules.debug:92: syntax error pfctl: Syntax error in config file: pf rules not loaded The line in question reads [92]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:19:11 php: : There were error(s) loading the rules: /tmp/rules.debug:92: syntax error pfctl: Syntax error in config file: pf rules not loaded - The line in question reads [92]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:20:07 php: /pkg_edit.php: Reloading Squid for configuration sync
      Dec 1 09:20:07 check_reload_status: reloading filter
      Dec 1 09:20:08 check_reload_status: syncing firewall
      Dec 1 09:20:08 check_reload_status: reloading filter
      Dec 1 09:20:29 php: : The command '/sbin/pfctl -o basic -f /tmp/rules.debug' returned exit code '1', the output was '/tmp/rules.debug:92: syntax error pfctl: Syntax error in config file: pf rules not loaded'
      Dec 1 09:20:30 php: : New alert found: There were error(s) loading the rules: /tmp/rules.debug:92: syntax error /tmp/rules.debug:94: cannot define table bogons: Device busy pfctl: Syntax error in config file: pf rules not loaded The line in question reads [92]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:20:30 php: : The command '/sbin/pfctl -o basic -f /tmp/rules.debug' returned exit code '1', the output was '/tmp/rules.debug:92: syntax error pfctl: Syntax error in config file: pf rules not loaded'
      Dec 1 09:20:30 php: : There were error(s) loading the rules: /tmp/rules.debug:92: syntax error /tmp/rules.debug:94: cannot define table bogons: Device busy pfctl: Syntax error in config file: pf rules not loaded - The line in question reads [92]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:20:31 php: : New alert found: There were error(s) loading the rules: /tmp/rules.debug:92: syntax error pfctl: Syntax error in config file: pf rules not loaded The line in question reads [92]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:20:31 php: : There were error(s) loading the rules: /tmp/rules.debug:92: syntax error pfctl: Syntax error in config file: pf rules not loaded - The line in question reads [92]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:20:39 php: /pkg_edit.php: Reloading Squid for configuration sync
      Dec 1 09:20:39 check_reload_status: reloading filter
      Dec 1 09:20:43 php: : The command '/sbin/pfctl -o basic -f /tmp/rules.debug' returned exit code '1', the output was '/tmp/rules.debug:92: syntax error pfctl: Syntax error in config file: pf rules not loaded'
      Dec 1 09:20:43 php: : New alert found: There were error(s) loading the rules: /tmp/rules.debug:92: syntax error pfctl: Syntax error in config file: pf rules not loaded The line in question reads [92]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:20:43 php: : There were error(s) loading the rules: /tmp/rules.debug:92: syntax error pfctl: Syntax error in config file: pf rules not loaded - The line in question reads [92]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
      Dec 1 09:25:31 check_reload_status: syncing firewall
      Dec 1 09:25:32 syslogd: exiting on signal 15
      Dec 1 09:25:32 syslogd: kernel boot file is /boot/kernel/kernel</webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout></webconfiguratorlockout>

      1 Reply Last reply Reply Quote 0
      • F
        FisherKing
        last edited by

        I got the same syntax error here on the Dec 1 snap.

        1 Reply Last reply Reply Quote 0
        • M
          mxx
          last edited by

          Yes me too.. didn't have any connectivity from lan -> wan, but lan -> vpn worked.
          Pfsense itself had connectivity:

          
          php: : There were error(s) loading the rules: /tmp/rules.debug:82: syntax error pfctl: Syntax error in config file: pf rules not loaded - The line in question reads [82]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
          Dec 1 16:33:57 	php: : New alert found: There were error(s) loading the rules: /tmp/rules.debug:82: syntax error pfctl: Syntax error in config file: pf rules not loaded The line in question reads [82]: block in log quick proto tcp from <webconfiguratorlockout>to any port label "webConfiguratorlockout"
          Dec 1 16:33:57 	php: : The command '/sbin/pfctl -o basic -f /tmp/rules.debug' returned exit code '1', the output was '/tmp/rules.debug:82: syntax error pfctl: Syntax error in config file: pf rules not loaded'</webconfiguratorlockout></webconfiguratorlockout> 
          

          I removed the whole line that adds this webconfigurator rule in filter.inc and everything was fine.

          1 Reply Last reply Reply Quote 0
          • J
            josemaX
            last edited by

            Hello

            Today upgraded (Auto Update) and got the same problem. There were no traffic from LAN > WAN but i was able to ssh into pfSense from outside.

            Removing the line as mxx says, solved the problem.  :)

            Best.

            1 Reply Last reply Reply Quote 0
            • C
              C7J0yC3
              last edited by

              Where is the file that I need to edit. I SSH into my pfSense box, cd /tmp and then vi rules.debug I then delete the line stated my mxx, save the file with :q! and then reboot the pfsense box. The line keeps coming back.

              Sorry for being a noob.

              1 Reply Last reply Reply Quote 0
              • N
                Nixus
                last edited by

                Hi, I did this…

                (Changed "$webConfiguratorlockoutport" to "88") in /etc/inc/filter.inc:

                $ipfrules .= "block in log quick proto tcp from <webconfiguratorlockout>to any port {$webConfiguratorlockoutport} label "webConfiguratorlockout"\n";

                To:

                $ipfrules .= "block in log quick proto tcp from <webconfiguratorlockout>to any port { 88 } label "webConfiguratorlockout"\n";

                Now it seems to work just fine. I've set port 88 to configurate pfsense.</webconfiguratorlockout></webconfiguratorlockout>

                1 Reply Last reply Reply Quote 0
                • C
                  C7J0yC3
                  last edited by

                  Perfect, that fixed it!

                  1 Reply Last reply Reply Quote 0
                  • R
                    roi
                    last edited by

                    Same problem here. (Fixed by editing)

                    Version 2.0-BETA4 (i386)
                    AMD Athlon™ XP 2000+

                    1 Reply Last reply Reply Quote 0
                    • D
                      dr85
                      last edited by

                      I fixit.

                      Modify /etc/inc/filter.inc

                      2051 line

                      	if(!isset($config['webgui']['port'])) {
                      		if($config['webgui']['protocol'] == "http") 
                      			$webConfiguratorlockoutport = "80";
                      		elseif($config['webgui']['protocol'] == "https") 
                      			$webConfiguratorlockoutport = "443";
                      	} else {
                      		$webConfiguratorlockoutport = $config['webgui']['port'];
                      	}
                      
                      

                      replace with

                      	if(!isset($config['system']['webgui']['port'])) {
                      		if($config['system']['webgui']['protocol'] == "http") 
                      			$webConfiguratorlockoutport = "80";
                      		elseif($config['system']['webgui']['protocol'] == "https") 
                      			$webConfiguratorlockoutport = "443";
                      	} else {
                      		$webConfiguratorlockoutport = $config['system']['webgui']['port'];
                      	}
                      
                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.