This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

External WAN connection goes down but modem is fine.

Hello I am using Sophos UTM9 and have been using it for a few months just fine. Today I was browsing the Internet and suddenly it stopped working. I log onto the web admin page and saw the external WAN connection stat as "down" and link "up" so I assumed the ISP connection had gone down. A couple hours later the Internet is still down so I log onto the Comcast website and the connection status for me is good but the Internet still isn't working. After a couple hours of troubleshooting I discover that the modem is fine and connected but UTM9 is showing a down connection so I can't get online without bypassing UTM and connecting straight to the modem. I can look at the network usage log and see the external connection traffic then all of a sudden nothing. Like I said I have been running just fine for months and haven't configured anything on it in a couple months. I am currently running 9.352-6. Any help will be appreciated and let me know if I need to post any logs.


This thread was automatically locked due to age.
  • Anything odd showing in the kernel messages log?
    __________________
    ACE v8/SCA v9.3

    ...still have a v5 install disk in a box somewhere.

    http://xkcd.com
    http://www.tedgoff.com/mb
    http://www.projectcartoon.com/cartoon/1
  • The kernel messages log is empty. Nothing reported. I looked in the selfmonitoring log and this entry pops up every minute. Is this normal? 2015:12:24-07:42:01 firewall selfmonng[3915]: I check Failed increment var_storage_freeSpace counter 1 - 3
  • Hi, Bryan, and welcome to the UTM Community!

    A not-uncommon problem is the failure of UTM and modem to auto-negotiate speed/duplex after a brief flicker by the modem/ISP. On the 'Hardware' tab of 'Interfaces', disable Auto negotiation and set the NIC for the WAN connection to "100baseT/Full." Also configure the modem to the same fixed settings. Any luck?

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • Thanks for the welcome. Sorry I haven't gotten back to you sooner I was out of town on vacation for Christmas.

    I went to interfaces->hardware but I was unable to select the speed. The only parameters I can modify are HA link monitoring and Set Virtual MAC, and they are only check boxes. I do have Sophos running on a VM and was able to set the speed there for the WAN port but that had no affect on connectivity either.
  • Based on that selfmon fail: How much space have you provisioned for the virtual disk that the UTM is using? It should be 40GB or greater. You didn't thin provision, I hope.  From shell, what do you get if you run du -sh /var/storage/* as root?

    __________________
    ACE v8/SCA v9.3

    ...still have a v5 install disk in a box somewhere.

    http://xkcd.com
    http://www.tedgoff.com/mb
    http://www.projectcartoon.com/cartoon/1
  • I only provisioned 16gb for the VM, and I didn't thin provision.

    I ran the command you posted above and it listed off a couple inaccessible areas and then listed the size of a bunch (I'm guessing) folders. What should I be looking for or what do you want me to post? I am doing this on my phone and am unable to upload anything. Could I provision more after the fact?
  • I have only provisioned 16gb, and I didn't thin provision.

    I ran the command above. What should I be looking for or what should I post?
  • So I ended up spinning up another VM and installing Sophos UTM on there. Did a quick and dirty configuration to get it up an running so I could update it. Then exported a backup from the existing UTM configuration and imported it to the new UTM VM, and within about an hour was back up and running. This time I provisioned 50GB per Scott_Klassen suggestion of 40GB+ so hopefully I wont run into a storage problem again.

    I would like to keep trying to solve this because it could happen again and spinning up another VM isn't a permanent solution for me. I did keep the old instance of UTM on the host so we can keep working through this. Please keep the suggestions coming.
  • Do you have a Dynamic IP or Static IP issued from your ISP ?

    I had a similar issue when setting a static IP in the WAN interface settings. My internet connection would just die throughout the day. Since I have a dynamic IP, checking off the dynamic ip check box solved this problem.

    --
    SCA/UTM/XG  Sophos Platinum Partner

  • I do have a dynamic IP but it was/is configured for that. It wasn't updating the IP for the WAN connection. I would click renew but it would still read 0.0.0.0 for the IP. The modem and UTM weren't communicating with each other even though I saw the traffic light blinking on the modem and packets being sent out on the WAN connection.