|
mastermindpro
|
 |
« on: October 20, 2010, 12:45:01 pm » |
|
Installed the Oct. 20th snap on one of my pfSense boxes that has two WAN's. After the update, the OPT1 interface stopped responding to pings from the outside world. Also, all traffic NAT'd in on that interface is not responding. The interface is handling traffic, however, but only that which comes from the LAN.
|
|
|
|
|
Logged
|
|
|
|
|
|
ermal
|
 |
« Reply #1 on: October 20, 2010, 02:49:34 pm » |
|
Wrong snapshot please upgrade to a newer one if you can find.
|
|
|
|
|
Logged
|
|
|
|
|
|
mastermindpro
|
 |
« Reply #2 on: October 20, 2010, 03:08:07 pm » |
|
Guess I have to wait until tomorrow, then.
|
|
|
|
|
Logged
|
|
|
|
|
|
mastermindpro
|
 |
« Reply #3 on: October 21, 2010, 10:23:39 am » |
|
Installed the Wednesday night snapshot, and the problem is not resolved. Additionally, I have more problems:
There were error(s) loading the rules: pfctl: Duplicate signature for BeOS 5.1 : File exists pfctl: Duplicate signature for BeOS 5.0-5.1 : File exists pfctl: Duplicate signature for BeOS 5.0 : File exists pfctl: Duplicate signature for BeOS 5.0 : File exists pfctl: Duplicate signature for OS/400 VR4 : File exists pfctl: Duplicate signature for OS/400 VR4 : File exists pfctl: Duplicate signature for OS/400 VR5 : File exists pfctl: Duplicate signature for OS/400 VR5 : File exists pfctl: Duplicate signature for OS/400 V4R5 CF67032: File exists pfctl: Duplicate signature for OS/400 V4R5 CF67032: File exists pfctl: Duplicate signature for ULTRIX 4.5 : File exists pfctl: Duplicate signature for ULTRIX 4.5 : File exists pfctl: Duplicate signature for QNX : File exists pfctl: Duplicate signature for QNX : File exists pfctl: Duplicate signature for Novell NetWare 5.0: File exists pfctl: Duplicate signature for Novell NetWare 5.0: File exists pfctl: Duplicate signature for Novell IntranetWare 4.11: File exists pfctl: Duplicate signature for Novell IntranetWare 4.11: File exists pfctl: Duplicate signature for Novell BorderManager : File exists pfctl: Duplicate signature for Novell BorderManager : File exists pfctl: Duplicate signature for Novell Netware 6: File exists pfctl: Duplicate signature for Novell Netware 6: File exists pfctl: Duplicate signature for SCO UnixWare 7.1: File exists pfctl: Duplicate signature for SCO UnixWare 7.1: File exists pfctl: Duplicate signature for SCO UnixWare 7.1: File exists pfctl: Duplicate signature for SCO UnixWare 7.1: File exists pfctl: Duplicate signature for SCO OpenServer 5.0: File exists pfctl: Duplicate signature for SCO OpenServer 5.0: File exists pfctl: Duplicate signature for DOS WATTCP 1.05: File exists pfctl: Duplicate signature for DOS WATTCP 1.05: File exists pfctl: Duplicate signature for DOS WATTCP 1.05Arachne: File exists The line in question reads [ Duplicate signature for BeOS 5.1 ]:
There were error(s) loading the rules: pfctl: Duplicate signature for NeXTSTEP 3.3 : File exists pfctl: Duplicate signature for BeOS 5.0 : File exists pfctl: Duplicate signature for BeOS 5.1 : File exists pfctl: Duplicate signature for BeOS 5.0-5.1 : File exists pfctl: Duplicate signature for BeOS 5.0 : File exists pfctl: DIOCADDRULE: Device busy The line in question reads [ Duplicate signature for NeXTSTEP 3.3 ]:
There were error(s) loading the rules: /tmp/rules.debug:148: cannot define table bogons: Device busy pfctl: Syntax error in config file: pf rules not loaded The line in question reads [148]: table <bogons> persist file "/etc/bogons"
There were error(s) loading the rules: pfctl: Duplicate signature for HP-UX 11.11 : File exists pfctl: Duplicate signature for HP-UX B.11.00 A: File exists pfctl: Duplicate signature for HP-UX B.11.00 A: File exists pfctl: Duplicate signature for RISC OS 3.70 4.10: File exists pfctl: Duplicate signature for RISC OS 3.70 4.10: File exists pfctl: Duplicate signature for BSD/OS 3.1 : File exists pfctl: Duplicate signature for BSD/OS 3.1 : File exists pfctl: Duplicate signature for BSD/OS 4.0 : File exists pfctl: Duplicate signature for BSD/OS 4.1 : File exists pfctl: Duplicate signature for BSD/OS 4.2 : File exists pfctl: Duplicate signature for BSD/OS 4.3 : File exists pfctl: Duplicate signature for BSD/OS 4.0-4.3 : File exists pfctl: Duplicate signature for BSD/OS 4.0 : File exists pfctl: Duplicate signature for BSD/OS 4.1 : File exists pfctl: Duplicate signature for BSD/OS 4.2 : File exists pfctl: Duplicate signature for BSD/OS 4.3 : File exists pfctl: Duplicate signature for BSD/OS 4.0-4.3 : File exists pfctl: Duplicate signature for NewtonOS 2.1 : File exists pfctl: Duplicate signature for NewtonOS 2.1 : File exists pfctl: Duplicate signature for NeXTSTEP 3.3 : File exists pfctl: Duplicate signature for NeXTSTEP 3.3 : File exists pfctl: Duplicate signature for NeXTSTEP 3.3 : File exists /tmp/rules.debug:148: cannot define table bogons: Device busy pfctl: Syntax error in config file: pf rules not loaded The line in question reads [ Duplicate signature for HP-UX 11.11 ]:
There were error(s) loading the rules: pfctl: DIOCADDRULE: Device busy The line in question reads [ DIOCADDRULE]:
|
|
|
|
|
Logged
|
|
|
|
|
|
ermal
|
 |
« Reply #4 on: October 21, 2010, 11:34:51 am » |
|
Can you post your config?
|
|
|
|
|
Logged
|
|
|
|
|
|
mastermindpro
|
 |
« Reply #5 on: October 21, 2010, 11:42:36 am » |
|
Sure, here's the firewall rules. Let me know if you need something else.
|
|
|
|
|
Logged
|
|
|
|
|
|
ermal
|
 |
« Reply #6 on: October 21, 2010, 11:51:57 am » |
|
I do need the other sections as well. Remove all the other sensitive data.
|
|
|
|
|
Logged
|
|
|
|
|
|
mastermindpro
|
 |
« Reply #7 on: October 21, 2010, 12:04:25 pm » |
|
Got it. Here you go.
|
|
|
|
|
Logged
|
|
|
|
|
|
xudus
|
 |
« Reply #8 on: October 21, 2010, 02:41:24 pm » |
|
Got the same problem here too. 2nd WAN got a static IP, plus AON and PBR is on. Egress traffic works as expected, however ingress is just plain dead.
TIA Dave
2.0-BETA4 (i386) built on Wed Oct 20 20:31:52 EDT 2010 FreeBSD 8.1-RELEASE-p1
|
|
|
|
|
Logged
|
|
|
|
|
|
mastermindpro
|
 |
« Reply #9 on: October 24, 2010, 06:44:07 pm » |
|
Was this fixed in a newer snapshot? I see multiple people with multiple problems with the snaps over the last few days.
|
|
|
|
|
Logged
|
|
|
|
|
|
mastermindpro
|
 |
« Reply #10 on: October 27, 2010, 10:46:03 am » |
|
To answer my own question, this is not fixed with the snapshot built today. Any idea what's going on here?
|
|
|
|
|
Logged
|
|
|
|
|
|
databeestje
|
 |
« Reply #11 on: October 27, 2010, 12:44:54 pm » |
|
I can confirm it
|
|
|
|
|
Logged
|
|
|
|
|
|