I had the system working pretty well for about a month with the only issue with the zulu ring delay with large ring groups over 15 users.
Now I get disconnects from dashboard, ucp and Zulu and fop2, about every 4 minutes. When in a phone call for a short time, 30 seconds or 3 minutes, at one point in the call silence. Its like the connection to the pbxact box is dropping, but nothing is changing.
What commands can I run to troubleshoot this?
How can I view the logs to see what is happening?
PBxact 40 system with all modules and services running the latest version of everything including asterisk.
The issue of the disconnecting SSH, web GUI, Zulu, fop2 and UCP are seen remotely from VPN and locally the same physical network on site. I have a pfsense router, but that is behind the ISP cablemodem/router. But it was working much better days ago, and I didnβt change the network setup at all. Do I have to open more ports up? I have not had this issue before. about every 4 minutes it disconnects.
update, SSH connection trying different commands, it would freeze, but not disconnect, at that same time Zulu and UCP would disconnect.
this is the info from chrome when ucp stopped working
Failed to load resource: the server responded with a status of 403 (Forbidden)
jsphpg_ae2b33db35c56d3d87a2b8828c33b54c.js?load_version=v15.0.6.15:2431 Forbidden: ajaxRequest declined
(anonymous) @ jsphpg_ae2b33db35c56d3d87a2b8828c33b54c.js?load_version=v15.0.6.15:2431
DevTools failed to load SourceMap: Could not load content for chrome-extension://gighmmpiobklfepjocnamgkkbiglidom/include.preload.js.map: HTTP error: status code 404, net::ERR_UNKNOWN_URL_SCHEME
DevTools failed to load SourceMap: Could not load content for chrome-extension://hdokiejnpimakedhajhdlcegeplioahd/sourcemaps/onloadwff.js.map: HTTP error: status code 404, net::ERR_UNKNOWN_URL_SCHEME
DevTools failed to load SourceMap: Could not load content for chrome-extension://gighmmpiobklfepjocnamgkkbiglidom/include.postload.js.map: HTTP error: status code 404, net::ERR_UNKNOWN_URL_SCHEME
DevTools failed to load SourceMap: Could not load content for https://192.168.1.210/ucp/assets/js/compiled/main/bootstrap-toggle.min.js.map: HTTP error: status code 403, net::ERR_HTTP_RESPONSE_CODE_FAILURE
DevTools failed to load SourceMap: Could not load content for chrome-extension://ndjpnladcallmjemlbaebfadecfhkepb/editor/config.js.map: HTTP error: status code 404, net::ERR_UNKNOWN_URL_SCHEME
DevTools failed to load SourceMap: Could not load content for chrome-extension://ndjpnladcallmjemlbaebfadecfhkepb/editor/content.js.map: HTTP error: status code 404, net::ERR_UNKNOWN_URL_SCHEME
From the log file, it shows the disconnects and reconnects. my pfsense router is not dropping any other connections. Iβm not sure if it is a hardware issue on the pbxact or software issue.
my setup was working fine just a few days ago.
[2020-06-20 05:42:49] NOTICE[15651] chan_sip.c: Peer βfpbx-1-###########β is now UNREACHABLE! Last qualify: 46
[2020-06-20 05:42:52] NOTICE[15651] chan_sip.c: Peer βfpbx-2-###########β is now UNREACHABLE! Last qualify: 88
[2020-06-20 05:42:55] NOTICE[15651] chan_sip.c: Peer β4004β is now UNREACHABLE! Last qualify: 40
[2020-06-20 05:42:56] NOTICE[15651] chan_sip.c: Peer β4003β is now Reachable. (36ms / 2000ms)
[2020-06-20 05:42:56] NOTICE[15651] chan_sip.c: Peer β4013β is now Reachable. (41ms / 2000ms)
[2020-06-20 05:42:57] NOTICE[15651] chan_sip.c: Peer β4000β is now Reachable. (43ms / 2000ms)
[2020-06-20 05:42:59] NOTICE[15651] chan_sip.c: Peer β4004β is now Reachable. (35ms / 2000ms)
[2020-06-20 05:43:01] NOTICE[15651] chan_sip.c: Peer β4012β is now UNREACHABLE! Last qualify: 12
[2020-06-20 05:43:01] NOTICE[15651] chan_sip.c: Peer β4002β is now UNREACHABLE! Last qualify: 15
[2020-06-20 05:43:01] NOTICE[15651] chan_sip.c: Peer β4014β is now UNREACHABLE! Last qualify: 15
[2020-06-20 05:43:01] NOTICE[15651] chan_sip.c: Peer β4011β is now UNREACHABLE! Last qualify: 15
[2020-06-20 05:43:02] NOTICE[15651] chan_sip.c: Peer β4009β is now UNREACHABLE! Last qualify: 14
[2020-06-20 05:43:04] NOTICE[15651] chan_sip.c: Peer β4012β is now Reachable. (12ms / 2000ms)
[2020-06-20 05:43:05] NOTICE[15651] chan_sip.c: Peer β4002β is now Reachable. (15ms / 2000ms)
[2020-06-20 05:43:05] NOTICE[15651] chan_sip.c: Peer β4014β is now Reachable. (14ms / 2000ms)
[2020-06-20 05:43:05] NOTICE[15651] chan_sip.c: Peer β4011β is now Reachable. (14ms / 2000ms)
[2020-06-20 05:43:05] NOTICE[15651] chan_sip.c: Peer β4009β is now Reachable. (14ms / 2000ms)
[2020-06-20 05:43:12] NOTICE[15651] chan_sip.c: Peer β4001β is now UNREACHABLE! Last qualify: 15
[2020-06-20 05:43:13] NOTICE[15651] chan_sip.c: Peer β4007β is now UNREACHABLE! Last qualify: 14
[2020-06-20 05:43:15] NOTICE[15651] chan_sip.c: Peer β4001β is now Reachable. (14ms / 2000ms)
[2020-06-20 05:43:16] NOTICE[15651] chan_sip.c: Peer β4007β is now Reachable. (15ms / 2000ms)
[2020-06-20 05:43:18] NOTICE[15651] chan_sip.c: Peer β4015β is now UNREACHABLE! Last qualify: 14
[2020-06-20 05:43:22] NOTICE[15651] chan_sip.c: Peer β4015β is now Reachable. (14ms / 2000ms)
[2020-06-20 05:43:41] NOTICE[15651] chan_sip.c: Peer βfpbx-1-###########β is now Reachable. (44ms / 2000ms)
[2020-06-20 05:43:44] NOTICE[15651] chan_sip.c: Peer βfpbx-2-###########β is now Reachable. (93ms / 2000ms)
Im using snort on my pfsense box. and im seeing internal ip address ranges that i didnt create. then i used advanced ip to search the ranges, and I see this. Have I been hacked? I have a double NAT and my out facing IP address is 192.168.9.183 My firewall responsive firewall for pbxact is on. When I reboot the device, the firewall is off and Legacy SIP (chan_sip) was disabled for firewall when I thought that i disabled it. I only have local access to everything. does the pbxact just create many ipaddresses to make calls? is this normal?
it also seems that the pbxact box creates a device on the network called uc-845****9 with an ip-address 192.168.1.20 which is different than the ip address i use for that pbxact box (192.168.1.210)
why is another ip address created? This device name is set in the system and this is the same name as my licensing file. i just realized now, even though my firewall was on, that I had set eth0 as local, so nothing was working?, possibly, i set eth0 to internet now. so firewall is on. I was not able to detect any robocalls, i didnt see any activity. how would i search if robocalls were being made from my system?
Update, so i changed my firewall. still having the same issue with not being able to access the pbxact device. I wouldnt be able to SSH.
I would have an SSH session open on the local network, and then about every 5 minutes, not responsive.
I can make a call to my cell phone, works great, then cuts out after a few minutes for about 20 seconds, then magically the call works again without disconnecting at all. just silence during those 20 seconds.
The same with SSH , i would do a core show calls command and 0 calls active, 79 calls for the day (so not hacked?) but then i would get a message that one device is UNREACHABLE and then the SSH screen would hang for about 20 seconds, then work again for a few minutes. like clockwork.
Is there a cron job that can be causing this? how could I find out?
Im using asterisk 16 and freepbx 15 pbxact , most updated everything. asterisk -vvvvvr shows when the system hangs. its like clockwork
Solved. I have a device called a fingbox. It detects new connections to the network. Freepbx creates another ip address on the network other than the main IP address when you try to have a ftp hosted cfg files for phones. So it was blocked. I did unblock it with the fingbox app, but i believe it didnβt work right and was preventing the pbxact to have a stable network connection. I disconnected it from the network and will not let it arp poison my network again. I still donβt know what device created all those other ip ranges that seem to have something to do with freepbx. the search continues for that.