Re: [pfSense Support] Phantom rules

2010-07-07 Thread David Rees
On Mon, Jul 5, 2010 at 2:57 PM, Chris Buechler cbuech...@gmail.com wrote:
 On Mon, Jul 5, 2010 at 11:37 AM, David Rees dree...@gmail.com wrote:
 I've got a system (1.2.3, set up in a cluster) which has a couple of
 phantom rules - rules that exist in the config.xml file, but don't
 show up so they can't be deleted.

 It appears that somehow they lost their interface element and since
 all rules are keyed off what interface they are on, they don't show
 up.

 What's the recommended way to remove these rules?

 It looks like I have two options:

 1. Remove the rules manually from the config file from each system in
 the cluster.
 2. Download a backup, remove the rules manually, then restore the backup.

 Those are your options. When you delete an interface it orphans its
 rules in the config (IIRC that's not the case in 2.0).

Thanks - went for option #2 which worked great and thanks to the
cluster, only had a couple seconds of downtime.

-Dave

-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org



Re: [pfSense Support] Phantom rules

2010-07-07 Thread Paul Mansfield
On 05/07/10 16:37, David Rees wrote:
 I've got a system (1.2.3, set up in a cluster) which has a couple of
...
 phantom rules - rules that exist in the config.xml file, but don't
...
 It appears that somehow they lost their interface element and since

it occurred to me, could you not re-create the interface to access the
rules and then delete afterwards

mind you, creating and deleting interfaces can come with its own problems!

-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org



Re: [pfSense Support] Phantom rules

2010-07-07 Thread Chris Buechler
On Wed, Jul 7, 2010 at 10:51 AM, Paul Mansfield
it-admin-pfse...@taptu.com wrote:
 On 05/07/10 16:37, David Rees wrote:
 I've got a system (1.2.3, set up in a cluster) which has a couple of
 ...
 phantom rules - rules that exist in the config.xml file, but don't
 ...
 It appears that somehow they lost their interface element and since

 it occurred to me, could you not re-create the interface to access the
 rules and then delete afterwards


Those rules will never be re-associated with any interface.

-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org



Re: [pfSense Support] Phantom rules

2010-07-05 Thread Chris Buechler
On Mon, Jul 5, 2010 at 11:37 AM, David Rees dree...@gmail.com wrote:
 I've got a system (1.2.3, set up in a cluster) which has a couple of
 phantom rules - rules that exist in the config.xml file, but don't
 show up so they can't be deleted.

 It appears that somehow they lost their interface element and since
 all rules are keyed off what interface they are on, they don't show
 up.

 What's the recommended way to remove these rules?

 It looks like I have two options:

 1. Remove the rules manually from the config file from each system in
 the cluster.
 2. Download a backup, remove the rules manually, then restore the backup.


Those are your options. When you delete an interface it orphans its
rules in the config (IIRC that's not the case in 2.0).

-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org