Project

General

Profile

Activity

From 05/19/2024 to 06/17/2024

06/17/2024

05:17 PM Bug #15196: AWS ena interfaces can become unstable/stop responding
dtrace submitted based on: https://redmine.pfsense.org/issues/15196#note-21
HS# 2755313440...
Craig Coonrad
12:31 PM Bug #15196: AWS ena interfaces can become unstable/stop responding
`can't allocate llinfo` is logged by arpresolve_full(), when lltable_alloc_entry() returns NULL. lltable_alloc_entry(... Kristof Provost

06/14/2024

04:13 PM Bug #15196: AWS ena interfaces can become unstable/stop responding
Kristof Provost wrote in #note-31:
> Are the users affected by `kernel: arpresolve: can't allocate llinfo` running a...
Christopher Cope
03:27 PM Bug #15196: AWS ena interfaces can become unstable/stop responding
Are the users affected by `kernel: arpresolve: can't allocate llinfo` running a routing daemon (openbgpd, frr, ...)?
...
Kristof Provost
01:43 PM Bug #15196: AWS ena interfaces can become unstable/stop responding
Kristof Provost wrote in #note-29:
> Was there a `kernel: arpresolve: can't allocate llinfo ` in HS# 2828658261?
> ...
Christopher Cope
07:39 AM Bug #15196: AWS ena interfaces can become unstable/stop responding
Was there a `kernel: arpresolve: can't allocate llinfo ` in HS# 2828658261?
What sort of connection issues is it see...
Kristof Provost
01:14 AM Bug #15196: AWS ena interfaces can become unstable/stop responding
A fresh deployment of 24.03 on a t3.small. HS# 2828658261. No unusual CPU load.... Chris W

06/13/2024

11:57 AM Feature #11920: SAML Authentication for pfSense (VPN and webConfigurator)
That would be great, I'm changing my LOCAL AD to Microsoft Entra ID and I now need to authenticate my VPN with it. Wagner Ferreira

06/11/2024

10:05 PM Bug #15511 (Closed): Factory resetting the configuration removes WireGuard
Luiz Souza

06/09/2024

12:49 AM Regression #15494: Reinstall Packages button reports another instance of ``pfSense-upgrade`` is running
Still seeing the same on... Christopher Cope

06/07/2024

04:26 PM Bug #15196: AWS ena interfaces can become unstable/stop responding
fresh dtrace didn't produce meaningful results.
asked client to work with affected firewall instead of restoring it ...
Georgiy Tyutyunnik
12:23 PM Bug #15545 (Incomplete): traffic shaper (Limiter) causes kernel panic -> random reboot
Please attach the full crash dump including the backtrace. Without that information there isn't enough to go on here ... Jim Pingle
07:54 AM Bug #15545: traffic shaper (Limiter) causes kernel panic -> random reboot
Fatal trap 12: page fault while in kernel mode Evgeny Korostelev
07:37 AM Bug #15545 (Incomplete): traffic shaper (Limiter) causes kernel panic -> random reboot
After update Pfsense Plus on version 24.03 random reboots appeared.
Canceling the use of a limiter in the rules so...
Evgeny Korostelev

06/06/2024

07:03 PM Bug #15535: Outgoing packets with Private source IP on WAN
I don’t use NAT in such a way that it would try to make two connections use the same conflicting information
There a...
David G

06/05/2024

06:19 PM Feature #15412 (Pull Request Review): Improve error feedback from pfSense-upgrade
It's not really practical to implement root cause tests in this case, but we can expose what part of the process fail... Marcos M

06/04/2024

07:02 PM Regression #15539 (Resolved): PF syntax error when ``pflow`` is present on ``block`` rules
Fixed with 91628a2ed3d32140a2ee66806504590a65e2654f. Marcos M
06:54 PM Regression #15539 (In Progress): PF syntax error when ``pflow`` is present on ``block`` rules
Marcos M
06:43 PM Regression #15539 (Resolved): PF syntax error when ``pflow`` is present on ``block`` rules
Something either changed in rule generation or pf that is now triggering a syntax error for rules which have the @pfl... Jim Pingle
12:24 PM Bug #15446 (Resolved): Kernel panic with pflow configured and active
Jim Pingle
03:36 AM Bug #15446: Kernel panic with pflow configured and active
I booted to the 24.08 dev build and ran IPFIX for about 8-10 hours.
No kernel panics. This appears resolved. Thanks.
Craig Coonrad
12:08 AM Bug #15538: RAM disks trigger boot failure warning when using ZFS
This actually fails the same way if you enable RAM disks after upgrading. Steve Wheeler
12:03 AM Bug #15538 (Resolved): RAM disks trigger boot failure warning when using ZFS
Upgrades from 24.03 to 24.08-dev builds fail at first boot after rebooting into the new BE for the upgrade.... Steve Wheeler

06/03/2024

10:39 PM Bug #13964 (Resolved): PHP syntax error in ``ec2_setup.php``
This is fixed with the config access work in 24.08. Marcos M
06:14 PM Bug #15196: AWS ena interfaces can become unstable/stop responding
So the log in comment 23 has "kernel: arpresolve: can't allocate llinfo for 172.21.253.1 on ena1". So I'm wondering i... Kristof Provost
07:24 AM Bug #15196: AWS ena interfaces can become unstable/stop responding
Here's dtrace from HS# 2785863048. This is the ticket Chris mentioned: https://redmine.pfsense.org/issues/15196#note-23 Azamat Khakimyanov
12:22 PM Bug #15535 (Not a Bug): Outgoing packets with Private source IP on WAN
If you use NAT in such a way that it would try to make two connections use the same conflicting information, it will ... Jim Pingle
12:18 PM Bug #15418 (Incomplete): Incorrect links to edit static mapping and WOL on DHCPv6 leases (status_dhcpv6_leases.php). URL parameter values missing.
Jim Pingle

06/02/2024

03:59 PM Bug #15196: AWS ena interfaces can become unstable/stop responding
They do not appear to be seeing noticeably-high CPU load. Chris Linstruth
02:35 PM Bug #15196: AWS ena interfaces can become unstable/stop responding
Another user is seeing similar behavior on an m5.xlarge with 24.03.
Main symptom there is pfSense static routes de...
Chris Linstruth

06/01/2024

01:10 PM Bug #15535: Outgoing packets with Private source IP on WAN
After stopping and starting the SIP traffic the processing is correct:
Host is sending the same UDP packets with s...
David G
06:40 AM Bug #15535 (Incomplete): Outgoing packets with Private source IP on WAN
Capture on the WAN interface shows, that there are some packets leaving towards the Internet with Private RFC1918 sou... David G
01:12 AM Bug #15418: Incorrect links to edit static mapping and WOL on DHCPv6 leases (status_dhcpv6_leases.php). URL parameter values missing.
This should be marked as Incomplete until more information can be provided on how this is reproduced. I don't see a ... Kris Phillips

05/31/2024

09:46 PM Bug #15533 (New): Boot verification script over matches
The boot verification script for ZFS boot environments can over match against other processes and fail to run due to ... Steve Wheeler
09:42 PM Bug #14685: Kernel panic on reroot
Since this bug is triggered by unloading the zfs module incorrectly on systems that do not require it also see: https... Steve Wheeler
09:11 PM Bug #14685 (Feedback): Kernel panic on reroot
I fixed it, see https://gitlab.netgate.com/pfSense/FreeBSD-src/-/commit/17758247bb690c60c7e1dbdbded2f21ad61d1f82 Mateusz Guzik

05/30/2024

02:42 AM Bug #14968: Google LDAP fail to bind
Customer in ticket 2768927031 running into this issue. Kris Phillips

05/29/2024

04:49 PM Feature #14743: Add Passkey/Certificate-based Authentication
UPVOTE THIS
Nowadays with numbers of hacking attacks rapidly increasing each day, securing the access to firewall ...
Sergei Shablovsky

05/28/2024

06:52 PM Bug #15196: AWS ena interfaces can become unstable/stop responding
Update from the user who provided us the dtrace outputs (HS# 2718685720)
> Hi, just an update. I changed EC2 type ...
Craig Coonrad
12:57 PM Feature #15523: Allow to set a password policy for users in the local database
It's something we may expand on in the future, the framework is in place to do it now, but it would require creating ... Jim Pingle
12:37 PM Feature #15506 (Duplicate): GEOM mirrors from previous UFS installs break ability to install with ZFS RAIDZ1 "No Disks Available"
Already covered by internal issue 12393 Jim Pingle

05/27/2024

11:51 AM Feature #15523 (New): Allow to set a password policy for users in the local database
It would be great if we can set password requirements for the local users like minimun lenght and complexity at less.... Javier Herrera

05/25/2024

10:49 PM Feature #15506 (Confirmed): GEOM mirrors from previous UFS installs break ability to install with ZFS RAIDZ1 "No Disks Available"
Confirmed. Having this automated would make the install smoother. Christopher Cope
05:33 PM Bug #15509 (Not a Bug): Debian OpenVPN client breaks the connections
Christopher Cope

05/24/2024

06:06 PM Bug #15511 (Resolved): Factory resetting the configuration removes WireGuard
Marcos M
04:02 PM Bug #15511 (Feedback): Factory resetting the configuration removes WireGuard
The WireGuard package is now in the list of installed packages and won't be removed on the factory reset. Luiz Souza

05/23/2024

09:24 AM Bug #15196: AWS ena interfaces can become unstable/stop responding
Okay, that would seem to indicate that we're not spending our CPU time in the ena driver. That's a bit unexpected, gi... Kristof Provost
03:45 AM Bug #15196: AWS ena interfaces can become unstable/stop responding
Here's another dtrace from HS# 2718685720.
I'm not sure if this will be helpful or much different than the previou...
Craig Coonrad
08:14 AM Bug #15511: Factory resetting the configuration removes WireGuard
I couldn't reproduce this.
Tested against:
23.09
23.09.1
24.03
Is there any other specific configuration set...
Danilo Zrenjanin

05/22/2024

02:22 AM Bug #15196: AWS ena interfaces can become unstable/stop responding
I looked at the status output for the same case that included the dtrace. It involves high CPU and loss of network. (... Craig Coonrad

05/21/2024

12:38 PM Bug #15196: AWS ena interfaces can become unstable/stop responding
This was on a VM that was manifesting the problem (i.e. elevated CPU use and loss of connectivity) at the time the dt... Kristof Provost

05/20/2024

11:56 PM Bug #15511 (Closed): Factory resetting the configuration removes WireGuard
Resetting the configuration to factory defaults removes the WireGuard package. This package should be kept given that... Marcos M
11:08 AM Bug #15509: Debian OpenVPN client breaks the connections
Sorry, was problem with network. Evgeny Korostelev
05:19 AM Bug #15509 (Not a Bug): Debian OpenVPN client breaks the connections
After applying patch https://redmine.pfsense.org/issues/15440, the OpenVPN client on Debian 11 breaks the connection ... Evgeny Korostelev

05/19/2024

12:50 AM Bug #12759: Proprietary packages link to non-existant or non-public github pages
Testing this on 24.03, this seems to be less of an issue since it looks like the FreeBSD-ports tree has empty/blank p... Kris Phillips
 

Also available in: Atom