Project

General

Profile

Activity

From 11/10/2015 to 12/09/2015

12/09/2015

03:57 PM Bug #5547 (Resolved): sarg log rotate is broken
thanks Chris Buechler
10:20 AM Bug #5547: sarg log rotate is broken
Fixed in 0.6.9 by removing the nasty "feature". (You might want to re-save your scheduled reports to get rid of linge... Kill Bill
03:53 PM Feature #5434: Let's Encrypt pfSense support
+1 Elias Gabrielsson
03:32 PM Bug #5594: Captive portal patch does not work anymore
For those who needs to deny access to squid package before captive portal authentication, here is a patch to apply on... Marcello Silva Coutinho
05:19 AM Bug #5594: Captive portal patch does not work anymore
Still not merged.
The equivalent fixes for 2.3 are @ https://github.com/pfsense/FreeBSD-ports/pull/18
Kill Bill
11:03 AM Feature #3497 (Resolved): Zabbix-2 Proxy needs a custom field box.
Jim Pingle
10:56 AM Feature #3497: Zabbix-2 Proxy needs a custom field box.
Been done ages ago, please close this. Kill Bill
11:03 AM Feature #2592 (Closed): Allow squid to listen on multiple interfaces
Jim Pingle
10:53 AM Feature #2592: Allow squid to listen on multiple interfaces
Been there for ages, plese close this. Kill Bill

12/08/2015

06:39 PM Bug #5614: mailreport - emails are going out when manually triggered, but not via cron
Thanks, will work on it later to see what I can figure out. Eduard Rozenberg
10:06 AM Bug #5614 (Feedback): mailreport - emails are going out when manually triggered, but not via cron
I got one from cron overnight last night, works fine here. Please start a forum thread for discussion. Jim Pingle
10:04 AM Bug #5614 (Resolved): mailreport - emails are going out when manually triggered, but not via cron
I've got notification settings properly configured, and added 3 reports in Email Reports, a daily, weekly, montly.
...
Eduard Rozenberg
09:09 AM Todo #5578 (Feedback): Convert the pfSense package Mail Reports (mail/pfSense-pkg-mailreport) to Bootstrap
Pushed fixes for the remaining issues, it appears to be ready for general testing. Jim Pingle
08:07 AM Todo #5571: Convert the pfSense package Cron (sysutils/pfSense-pkg-Cron) to Bootstrap
One more: There is a double confirmation prompt when deleting an item from the list Jim Pingle
08:06 AM Todo #5571 (Assigned): Convert the pfSense package Cron (sysutils/pfSense-pkg-Cron) to Bootstrap

A couple issues:
* The fields on the edit page do not need htmlspecialchars on the stored values when building the...
Jim Pingle
02:10 AM Todo #5571: Convert the pfSense package Cron (sysutils/pfSense-pkg-Cron) to Bootstrap
https://github.com/pfsense/FreeBSD-ports/pull/9 Kill Bill
03:44 AM Bug #4288: inetd is missed by check_mk
When you choose to manage NAT manually, then yeah, you need to manage it manually. Fail to see how you imagine to get... Kill Bill
03:27 AM Bug #4288: inetd is missed by check_mk
I still have the following issuse, which seems not to be resolved jet:
- The automatic generated NAT Port-Forwardin...
Ph. T
02:36 AM Bug #5594: Captive portal patch does not work anymore
Looks like you forgot to press the merge button :) I'll do the same for 2.3 shortly. Kill Bill

12/07/2015

11:47 PM Todo #5571: Convert the pfSense package Cron (sysutils/pfSense-pkg-Cron) to Bootstrap
@Jared - no new version is showing up. I think you need to bump the version in the various places it is recorded. Phillip Davis
04:35 PM Todo #5571 (Feedback): Convert the pfSense package Cron (sysutils/pfSense-pkg-Cron) to Bootstrap
This is my first package to convert. Feedback appreciated. Jared Dillard
11:40 PM Todo #5583: Convert the pfSense package Service Watchdog (sysutils/pfSense-pkg-Service_Watchdog) to Bootstrap
And some "crash dump" PHP warning being reported for calls to servicewatchdog_cron_job()
https://github.com/pfsense/...
Phillip Davis
11:56 AM Todo #5583: Convert the pfSense package Service Watchdog (sysutils/pfSense-pkg-Service_Watchdog) to Bootstrap
Yeah I must have missed that one, and I even grepped for patch. I'll fix it momentarily. Jim Pingle
11:52 AM Todo #5583: Convert the pfSense package Service Watchdog (sysutils/pfSense-pkg-Service_Watchdog) to Bootstrap
https://github.com/pfsense/FreeBSD-ports/blob/devel/sysutils/pfSense-pkg-Service_Watchdog/files/usr/local/www/service... Phillip Davis
11:21 AM Todo #5583: Convert the pfSense package Service Watchdog (sysutils/pfSense-pkg-Service_Watchdog) to Bootstrap
...and I found/fixed a problem, 1.8.1 is good for general testing. Jim Pingle
11:06 AM Todo #5583 (Feedback): Convert the pfSense package Service Watchdog (sysutils/pfSense-pkg-Service_Watchdog) to Bootstrap
Committed a converted version. Once 1.8 shows up in the package list it will be ready for testing. Jim Pingle
10:36 PM Bug #5594 (Resolved): Captive portal patch does not work anymore
merged, thanks!
probably ought to just restrict ports users are allowed to access without being authenticated in i...
Chris Buechler
04:36 PM Todo #5578: Convert the pfSense package Mail Reports (mail/pfSense-pkg-mailreport) to Bootstrap
Committed what I have so far so it's mostly usable instead of mostly unusable.
Deleting of items from the report d...
Jim Pingle
02:53 PM Bug #4583 (Closed): Squid3 breaking /etc/inc/captiveportal.inc
Chris Buechler
12:34 PM Todo #5582 (Feedback): Convert the pfSense package RRD Summary (sysutils/pfSense-pkg-RRD_Summary) to Bootstrap
Committed an updated package. Once version 1.3 shows up, it is ready for general testing.
The formatting could use...
Jim Pingle

12/05/2015

04:09 AM Bug #5594: Captive portal patch does not work anymore
https://github.com/pfsense/pfsense-packages/pull/1210 removes the broken thing for 2.2.x. If someone writes an update... Kill Bill
02:47 AM Bug #4583: Squid3 breaking /etc/inc/captiveportal.inc
Please, close this in favor of #5594 - and I'd really appreciate some input there regarding the ipfw hook for packages. Kill Bill

12/04/2015

03:47 PM Todo #5569 (Resolved): Convert the pfSense package AutoConfigBackup (sysutils/pfSense-pkg-AutoConfigBackup) to Bootstrap
all working fine across a number of systems here. Chris Buechler
09:26 AM Bug #5594: Captive portal patch does not work anymore
Laurent Legendre wrote:
> But if the patch option is officially considered broken, it'd be a good idea to hide the o...
Kill Bill
09:07 AM Bug #5594: Captive portal patch does not work anymore
OK, I understand that.
But if the patch option is officially considered broken, it'd be a good idea to hide the opti...
Laurent Legendre
08:39 AM Bug #5594: Captive portal patch does not work anymore
Not sure I want to make the patch work again. Considering it was broken for about a year without anyone noticing, I t... Kill Bill
08:03 AM Bug #5594 (Resolved): Captive portal patch does not work anymore
Hi guys.
First thanks for your work !! pfSense is amazing.
---
I think that due to modifications in captivepor...
Laurent Legendre
07:48 AM Todo #5586: Convert the pfSense package Squid (www/pfSense-pkg-squid) to Bootstrap
Just a note here - need to split most of the antivirus stuff to security/clamav. There's at least the E2Guardian thin... Kill Bill
04:34 AM Bug #5547: sarg log rotate is broken
https://github.com/pfsense/pfsense-packages/pull/1205 Kill Bill
03:37 AM Todo #5580 (Assigned): Convert the pfSense package pfBlockerNG (net/pfSense-pkg-pfBlockerNG) to Bootstrap
Anthony told me he is doing the conversion Renato Botelho

12/03/2015

07:38 PM Todo #5569 (Feedback): Convert the pfSense package AutoConfigBackup (sysutils/pfSense-pkg-AutoConfigBackup) to Bootstrap
Committed a converted version a couple hours ago and it's up now, tested on two systems and it seemed to work well, c... Jim Pingle
12:35 PM Todo #5569 (Resolved): Convert the pfSense package AutoConfigBackup (sysutils/pfSense-pkg-AutoConfigBackup) to Bootstrap
Convert the pfSense package AutoConfigBackup (sysutils/pfSense-pkg-AutoConfigBackup) to Bootstrap Jim Pingle
02:25 PM Todo #5580: Convert the pfSense package pfBlockerNG (net/pfSense-pkg-pfBlockerNG) to Bootstrap
OK I can't assign that to him here but I'll mark it on the sheet I've got. Thanks! Jim Pingle
02:23 PM Todo #5580: Convert the pfSense package pfBlockerNG (net/pfSense-pkg-pfBlockerNG) to Bootstrap
bbcan117 has been working steadily on the convert.
still needs a bit of work, but most of the pages are ready for te...
jeroen van breedam
12:38 PM Todo #5580 (Resolved): Convert the pfSense package pfBlockerNG (net/pfSense-pkg-pfBlockerNG) to Bootstrap
Convert the pfSense package pfBlockerNG (net/pfSense-pkg-pfBlockerNG) to Bootstrap Jim Pingle
12:41 PM Todo #5590 (Resolved): Convert the pfSense package System Patches (sysutils/pfSense-pkg-System_Patches) to Bootstrap
Convert the pfSense package System Patches (sysutils/pfSense-pkg-System_Patches) to Bootstrap Jim Pingle
12:41 PM Todo #5589 (Resolved): Convert the pfSense package OpenVPN Client Export (security/pfSense-pkg-openvpn-client-export) to Bootstrap
Convert the pfSense package OpenVPN Client Export (security/pfSense-pkg-openvpn-client-export) to Bootstrap Jim Pingle
12:40 PM Todo #5588 (Resolved): Convert the pfSense package Suricata (security/pfSense-pkg-suricata) to Bootstrap
Convert the pfSense package Suricata (security/pfSense-pkg-suricata) to Bootstrap Jim Pingle
12:40 PM Todo #5587 (Resolved): Convert the pfSense package SquidGuard (www/pfSense-pkg-squidGuard) to Bootstrap
Convert the pfSense package SquidGuard (www/pfSense-pkg-squidGuard) to Bootstrap Jim Pingle
12:40 PM Todo #5586 (Resolved): Convert the pfSense package Squid (www/pfSense-pkg-squid) to Bootstrap
Convert the pfSense package Squid (www/pfSense-pkg-squid) to Bootstrap Jim Pingle
12:39 PM Todo #5585 (Resolved): Convert the pfSense package Snort (security/pfSense-pkg-snort) to Bootstrap
Convert the pfSense package Snort (security/pfSense-pkg-snort) to Bootstrap Jim Pingle
12:39 PM Todo #5584 (Resolved): Convert the pfSense package siproxd (net/pfSense-pkg-siproxd) to Bootstrap
Convert the pfSense package siproxd (net/pfSense-pkg-siproxd) to Bootstrap Jim Pingle
12:39 PM Todo #5583 (Resolved): Convert the pfSense package Service Watchdog (sysutils/pfSense-pkg-Service_Watchdog) to Bootstrap
Convert the pfSense package Service Watchdog (sysutils/pfSense-pkg-Service_Watchdog) to Bootstrap Jim Pingle
12:39 PM Todo #5582 (Resolved): Convert the pfSense package RRD Summary (sysutils/pfSense-pkg-RRD_Summary) to Bootstrap
Convert the pfSense package RRD Summary (sysutils/pfSense-pkg-RRD_Summary) to Bootstrap Jim Pingle
12:38 PM Todo #5581 (Resolved): Convert the pfSense package Quagga OSPF (net/pfSense-pkg-Quagga_OSPF) to Bootstrap
Convert the pfSense package Quagga OSPF (net/pfSense-pkg-Quagga_OSPF) to Bootstrap Jim Pingle
12:38 PM Todo #5579 (Resolved): Convert the pfSense package OpenBGPD (net/pfSense-pkg-OpenBGPD) to Bootstrap
Convert the pfSense package OpenBGPD (net/pfSense-pkg-OpenBGPD) to Bootstrap Jim Pingle
12:38 PM Todo #5578 (Resolved): Convert the pfSense package Mail Reports (mail/pfSense-pkg-mailreport) to Bootstrap
Convert the pfSense package Mail Reports (mail/pfSense-pkg-mailreport) to Bootstrap Jim Pingle
12:37 PM Todo #5577 (Resolved): Convert the pfSense package Lightsquid (www/pfSense-pkg-Lightsquid) to Bootstrap
Convert the pfSense package Lightsquid (www/pfSense-pkg-Lightsquid) to Bootstrap Jim Pingle
12:37 PM Todo #5576 (Resolved): Convert the pfSense package LADVD (net/pfSense-pkg-LADVD) to Bootstrap
Convert the pfSense package LADVD (net/pfSense-pkg-LADVD) to Bootstrap Jim Pingle
12:37 PM Todo #5575 (Resolved): Convert the pfSense package HAProxy-devel (net/pfSense-pkg-haproxy-devel) to Bootstrap
Convert the pfSense package HAProxy-devel (net/pfSense-pkg-haproxy-devel) to Bootstrap Jim Pingle
12:37 PM Todo #5574 (Resolved): Convert the pfSense package HAProxy (net/pfSense-pkg-haproxy) to Bootstrap
Convert the pfSense package HAProxy (net/pfSense-pkg-haproxy) to Bootstrap Jim Pingle
12:36 PM Todo #5573 (Resolved): Convert the pfSense package gwled (sysutils/pfSense-pkg-gwled) to Bootstrap
Convert the pfSense package gwled (sysutils/pfSense-pkg-gwled) to Bootstrap Jim Pingle
12:36 PM Todo #5572 (Resolved): Convert the pfSense package FreeRADIUS2 (net/pfSense-pkg-freeradius2) to Bootstrap
Convert the pfSense package FreeRADIUS2 (net/pfSense-pkg-freeradius2) to Bootstrap Jim Pingle
12:36 PM Todo #5571 (Resolved): Convert the pfSense package Cron (sysutils/pfSense-pkg-Cron) to Bootstrap
Convert the pfSense package Cron (sysutils/pfSense-pkg-Cron) to Bootstrap Jim Pingle
12:35 PM Todo #5570 (Resolved): Convert the pfSense package Backup (sysutils/pfSense-pkg-Backup) to Bootstrap
Convert the pfSense package Backup (sysutils/pfSense-pkg-Backup) to Bootstrap Jim Pingle
12:33 PM Todo #5568 (Resolved): Convert Package PHP GUI Files to Bootstrap
Some packages contain PHP GUI pages that need changes for Bootstrap on pfSense 2.3.
For links to info on how to co...
Jim Pingle

12/01/2015

07:53 PM Bug #5560: AutoConfigBackup curl session does not verify SSL/TLS certificate of portal.pfsense.org, allowing for possible MiTM attacks
Great, glad to help and get it fixed. Ian Gallagher
04:49 PM Bug #5560 (Resolved): AutoConfigBackup curl session does not verify SSL/TLS certificate of portal.pfsense.org, allowing for possible MiTM attacks
Thanks. That was initially intentional because we didn't ship root CAs on the versions that were out there at the tim... Chris Buechler
01:46 PM Bug #5560 (Resolved): AutoConfigBackup curl session does not verify SSL/TLS certificate of portal.pfsense.org, allowing for possible MiTM attacks
The configuration of the curl session used for submitting AutoConfigBackup blobs to the pfSense portal is explicitly ... Ian Gallagher
04:11 PM Bug #5318: Upgrade FreeRadius to 2.2.9
hi,
Windows 10 has adapted this "problem" also...
https://support.microsoft.com/en-us/kb/3121002
Would be ni...
Cullen Trey
10:22 AM Bug #5547: sarg log rotate is broken
In DG, I guess not really, it's dead. There's a pending pull request for E2Guardian on GitHub, so, perhaps you could ... Kill Bill
06:55 AM Bug #5547: sarg log rotate is broken
Thanks for your answer !
Yes, for sure, it is uggly feature.
Since I use dansguardian, I had to manually activate l...
Nicolas Marot

11/30/2015

12:24 PM Bug #5546 (Duplicate): Sarg x Squid - Cron Rotate_logs Order
Chris Buechler
10:30 AM Feature #5466 (Feedback): inline config option for Viscosity
Applied in changeset commit:043bd6b3a5d02b3aead7a982f0e86348280af20d. Jim Pingle

11/28/2015

04:41 PM Bug #5546: Sarg x Squid - Cron Rotate_logs Order
As already noted on the other (duplicate) bug - stop touching this Sarg misfeature. Do NOT use it. Kill Bill
04:38 PM Bug #5547: sarg log rotate is broken
This "feature" will go to /dev/null as soon as I get to it. Stop using this. It screws permissions and is an absolute... Kill Bill

11/27/2015

03:36 AM Bug #5547 (Resolved): sarg log rotate is broken
when rotate dansguardian logs (but should applied for other proxy, since it is a function), sarg does a mistake on fi... Nicolas Marot

11/26/2015

09:50 AM Bug #5546 (Duplicate): Sarg x Squid - Cron Rotate_logs Order
When Log rotate is filled on General Proxy Server tab, the Squid cron job runs before sarg cron job. On this case, sa... Michel Santello
08:00 AM Bug #5511: quagga zebra.conf and openvpn interface
could the zebra package be updated to not input a bad configuration line? whatever interface monitoring that is remo... paul f

11/25/2015

09:49 AM Bug #5534 (Resolved): Captive Portal stop sending accounting updates to free radius
After several days we need to restart captive portal because it stop sending accounting updates to freeradius.
Fre...
Alberto Palau

11/24/2015

05:18 PM Todo #5530: Shellcmd displays wrong text on edit button.
Chris Buechler wrote:
> not for the add button, but edit would be possible.
That's not possible either with the p...
Kill Bill
04:24 PM Todo #5530 (Needs Patch): Shellcmd displays wrong text on edit button.
not for the add button, but edit would be possible. Not that it really matters though. If someone wants to submit a p... Chris Buechler
01:43 PM Todo #5530: Shellcmd displays wrong text on edit button.
And it will remain so since no such differention is possible. Kill Bill
01:21 PM Todo #5530 (Needs Patch): Shellcmd displays wrong text on edit button.
The edit button is labeled "Edit this (early)shellcmd entry" regardless of the type of shellcmd in use. Doug Dimick

11/23/2015

07:31 PM Bug #5524 (Resolved): bind package is patching /etc/inc/system.inc (syslog configuration)
Once again, filing for tracking purposes here:
https://github.com/pfsense/pfsense-packages/blob/master/config/bind...
Kill Bill
02:48 PM Bug #5494: NRPEv2
Kill bill
I have a fw with pfsense v.2.2.4 and 2.2.5, works with nrpe v 2.2.5 this had 2 Bind IP Address
because ...
Gerson Ramirez
09:10 AM Bug #5374: postfix package is patching /etc/inc/system.inc (syslog configuration)
Jim Thompson wrote:
> I'm not sure why we have/need/want a "Postfix" package anyway.
It's being removed on 2.3
Renato Botelho
09:09 AM Bug #5374: postfix package is patching /etc/inc/system.inc (syslog configuration)
I'm not sure why we have/need/want a "Postfix" package anyway.
Jim Thompson
09:06 AM Feature #5466 (Assigned): inline config option for Viscosity
moved from Feedback to Assigned
assigned to Pingle.
Jim Thompson
09:05 AM Bug #5511: quagga zebra.conf and openvpn interface
And, as you'll note, that patch is not committed because it'll break things in some circumstances. Jim Thompson

11/22/2015

01:13 PM Bug #5515 (Closed): Squid3 change log URL leads to a 404 error
If you head over to packages and try to see the change log for Squid3 package, you get a 404 Not Found from Github wh... Brian Spittle

11/21/2015

09:37 PM Bug #5511: quagga zebra.conf and openvpn interface
Duplicate of #4868 - you need the patch from there. Kill Bill
04:32 PM Bug #5511 (Resolved): quagga zebra.conf and openvpn interface
On pfsense 2.2.4 with openvpn interfaces having accept filters in quagga (do not redistribute the interface), when th... paul f
02:55 PM Bug #5506: Gateway restart stops service and does not restart Squid
Well yes, if you stop the package, the watchdog gets stopped as well. And on another note: looks like you did not ena... Kill Bill
01:35 PM Bug #5506: Gateway restart stops service and does not restart Squid
I've seen other services like ntp go off and come back online before but I checked back at least 30 mins later and sq... Walt McDonald
07:32 AM Bug #5506: Gateway restart stops service and does not restart Squid
And FWIW, there's even a watchdog script that checks whether Squid is running every minute and restarts it if needed.... Kill Bill
05:45 AM Bug #5506: Gateway restart stops service and does not restart Squid
This is not a Squid package issue, guys. Kill Bill

11/20/2015

05:00 PM Bug #5506 (Closed): Gateway restart stops service and does not restart Squid
Hi
Gateway is no longer active (in this case connected via PPPoE)
Service (squid) stops
Gateway becomes active
...
Walt McDonald
03:55 PM Bug #5501: apinger still giving unrealistic low RTTs after some time. Restarting it always fix it.
alot of those other tickets dont tie to 2.3 Michael Kellogg
01:49 PM Bug #5501 (Duplicate): apinger still giving unrealistic low RTTs after some time. Restarting it always fix it.
duplicate of about a half dozen other various apinger sucks tickets Chris Buechler
09:31 AM Bug #5501 (Duplicate): apinger still giving unrealistic low RTTs after some time. Restarting it always fix it.
It IS pinging the correct "monitor" IP, I can see it through tcpdump
12:36:47.624421 IP 201.72.x.x > 72.14.197.x: ...
Heiler Bemerguy
03:57 AM Bug #5494 (Resolved): NRPEv2
merged, thanks Kill Bill. Chris Buechler
03:29 AM Bug #5494: NRPEv2
And, while here - the input validation should check for a *configured* local IP, not just valid IP. Done here: https:... Kill Bill
03:09 AM Bug #5494: NRPEv2
And that has never worked before the upgrade either, such configuration cannot be even saved now with the input valid... Kill Bill
12:42 AM Bug #5446: System Patches doesn't auto-apply on upgrade from 2.2 to 2.3
I didn't test that scenario, just noted what happened after the update reboot, as you can see in the screenshots. I d... Stilez y

11/19/2015

07:11 PM Bug #5494 (Resolved): NRPEv2
After update nrpev2 to v2.2.6, the service not works with 2 ip on Bind IP address
log: nrpe[85643]: bad addr or ho...
Gerson Ramirez
09:35 AM Bug #5446: System Patches doesn't auto-apply on upgrade from 2.2 to 2.3
Stilez y wrote:
> I hadn't noticed autoapply not happening after previous upgrades (2.2.3->2.2.4, 2.2.4->2.2.5) so i...
Renato Botelho
03:02 AM Bug #5468 (Feedback): iperf service won't shutdown
Pull request has been merged Renato Botelho
02:53 AM Bug #3495 (Feedback): Zabbix2-Agent and Zabbix2-proxy upgrade.
Pull request has been merged Renato Botelho

11/18/2015

03:05 PM Bug #4331 (Resolved): Issue with VPN interface within Squid 3.4 for Transparent Proxy
thanks Chris Buechler
04:16 AM Bug #4331: Issue with VPN interface within Squid 3.4 for Transparent Proxy
Fixed in 0.4.4 - invalid subnets are ignored and not added to the localnet ACL, error logged in System Logs - General. Kill Bill
07:48 AM Bug #4526: Incorrect subnet is calculated for proxy server on WAN with "Allow users on interface"
ACLs? Like, in Squid? Must be a joke, seriously. So, I assume that 80.64.24.129/unknown_something is something you di... Kill Bill
07:02 AM Bug #4526: Incorrect subnet is calculated for proxy server on WAN with "Allow users on interface"
Who said it's open? ACLs are set as needed. I repeat myself again: the checkbox was checked on by *default*. That's all. Dmitriy K
04:32 AM Bug #4526: Incorrect subnet is calculated for proxy server on WAN with "Allow users on interface"
I got it from your original log in your original post.... Kill Bill
04:20 AM Bug #4526: Incorrect subnet is calculated for proxy server on WAN with "Allow users on interface"
I don't think so.
@$ ifconfig pppoe0
pppoe0: flags=88d1<UP,POINTOPOINT,RUNNING,NOARP,SIMPLEX,MULTICAST> metric 0 mt...
Dmitriy K
03:51 AM Bug #4526: Incorrect subnet is calculated for proxy server on WAN with "Allow users on interface"
Just tried on a box with PPPoE WAN, emulating exactly what Squid package is doing:... Kill Bill
03:33 AM Bug #4526: Incorrect subnet is calculated for proxy server on WAN with "Allow users on interface"
May I ask what useful outcome did you expect from that? It would allow access, hmmm... lets see, from nowhere but WAN... Kill Bill
03:26 AM Bug #4526: Incorrect subnet is calculated for proxy server on WAN with "Allow users on interface"
Chris Buechler wrote:
> how would the subnet be invalid in a way that you end up with a non-integer? That's not clea...
Dmitriy K
02:40 AM Bug #4526: Incorrect subnet is calculated for proxy server on WAN with "Allow users on interface"
Just for completeness sake - that checkbox uses interface configuration obtained straight from interface configuratio... Kill Bill
02:27 AM Bug #4526: Incorrect subnet is calculated for proxy server on WAN with "Allow users on interface"
@Chris: That whacky code is widely used as a way to convert long netmask to CIDR. Couldn't make this produce non-inte... Kill Bill
12:35 AM Bug #4526 (Resolved): Incorrect subnet is calculated for proxy server on WAN with "Allow users on interface"
Merged, thanks doktornotor.
how would the subnet be invalid in a way that you end up with a non-integer? That's n...
Chris Buechler

11/17/2015

07:58 PM Bug #4526: Incorrect subnet is calculated for proxy server on WAN with "Allow users on interface"
https://github.com/pfsense/pfsense-packages/pull/1181 - this will simply ignore invalid subnets and omit those from t... Kill Bill
07:04 AM Bug #4526: Incorrect subnet is calculated for proxy server on WAN with "Allow users on interface"
It's not that invalid subnet is calculated, it's that you *HAVE* invalid subnet on your WAN. This should be validated... Kill Bill
07:57 PM Bug #4331: Issue with VPN interface within Squid 3.4 for Transparent Proxy
https://github.com/pfsense/pfsense-packages/pull/1181 - this will simply ignore invalid subnets and omit those from t... Kill Bill
05:34 PM Bug #5468: iperf service won't shutdown
https://github.com/pfsense/pfsense/pull/2076 - plus, a bottom line: If nothing was stopped, the GUI shouldn't say som... Kill Bill
03:46 PM Bug #5468: iperf service won't shutdown
Maybe this works: https://github.com/pfsense/pfsense-packages/pull/1180/files
Report back when it's merged.
Kill Bill
02:46 PM Bug #5468: iperf service won't shutdown
This thing was never designed to be run as a permanent service. You click in the GUI, run it while needed, then kill ... Kill Bill
02:24 PM Bug #5468: iperf service won't shutdown
Thanks, that fixed it for now.
Still seems like a bug to me.
Corey Boyle
02:19 PM Bug #5468: iperf service won't shutdown
... Kill Bill
12:15 PM Bug #5468 (Closed): iperf service won't shutdown
After starting the iperf service, I am unable to stop it. When I click stop, I get "iperf has been stopped" flash mes... Corey Boyle
10:29 AM Feature #5466: inline config option for Viscosity
It does work, but it is missing these lines...
#viscosity startonopen false
#viscosity dhcp true
#viscosity dnss...
Corey Boyle
10:15 AM Feature #5466 (Feedback): inline config option for Viscosity
The "Other" type inline works for me on Viscosity on both last time I tried it. Does it fail in some way when you try... Jim Pingle
10:14 AM Feature #5466 (Resolved): inline config option for Viscosity
It would be really nice if the OpenVPN Client Export Utility had an export option for “Inline Viscosity” that would w... Corey Boyle
05:00 AM Bug #5447: CSS/icon issues - system_patches.php 2.3 alpha
jeroen van breedam wrote:
> @renato
> so i understand,i can try convert it then? it has to be done at one point any...
Renato Botelho
04:35 AM Bug #5447: CSS/icon issues - system_patches.php 2.3 alpha
@renato
so i understand,i can try convert it then? it has to be done at one point anyways.
what branch of the ports...
jeroen van breedam
03:06 AM Bug #5447: CSS/icon issues - system_patches.php 2.3 alpha
Kill Bill wrote:
> jeroen van breedam wrote:
> > how would i go about migrating this package to bootstrap ?
>
> ...
Renato Botelho
03:03 AM Bug #3525: Dansguardian Writing Script Garbage (CsrfMagic.end)
That page is a XML template and the textarea is base64-encoded. This bug doesn't make any sense and does not exist as... Kill Bill

11/16/2015

03:18 PM Bug #4369 (Resolved): patch fetching doesn't work if pfsense is behind proxy
thanks Chris Buechler
08:07 AM Bug #4369: patch fetching doesn't work if pfsense is behind proxy
Fixed in 1.0.7. Kill Bill
10:31 AM Bug #5446: System Patches doesn't auto-apply on upgrade from 2.2 to 2.3
I could not reproduce the issue. I added a patch, mark it to auto apply, rebooted after an upgrade and it was applied Renato Botelho
05:09 AM Bug #5447: CSS/icon issues - system_patches.php 2.3 alpha
Assigned to sbeaver, who can give advice. Jim Thompson

11/15/2015

01:35 PM Bug #5447: CSS/icon issues - system_patches.php 2.3 alpha
jeroen van breedam wrote:
> how would i go about migrating this package to bootstrap ?
Waste of time while the pa...
Kill Bill
11:48 AM Bug #5447: CSS/icon issues - system_patches.php 2.3 alpha
how would i go about migrating this package to bootstrap ?
this isn't an xml-only package. it has several .php fil...
jeroen van breedam
12:36 PM Bug #5446: System Patches doesn't auto-apply on upgrade from 2.2 to 2.3
Frankly, I don't think anything at all changed here. Kill Bill
09:12 AM Bug #5446: System Patches doesn't auto-apply on upgrade from 2.2 to 2.3
I hadn't noticed autoapply not happening after previous upgrades (2.2.3->2.2.4, 2.2.4->2.2.5) so it looks like someth... Stilez y
09:11 AM Bug #5446: System Patches doesn't auto-apply on upgrade from 2.2 to 2.3
In which case the check for autoapply needs to trigger on post_install as well as earlyshellcmd...? Stilez y
05:40 AM Bug #5446: System Patches doesn't auto-apply on upgrade from 2.2 to 2.3
Hmmm, and thinking about this, this could have never worked. You upgrade, the packages get removed, then you reboot, ... Kill Bill
05:24 AM Bug #5446: System Patches doesn't auto-apply on upgrade from 2.2 to 2.3
Well, this uses earlyshellcmd in config.xml. Whatever broke there is an issue in pfSense core very likely, not in pac... Kill Bill
09:03 AM Bug #3442: Stunnel package $config issue?
Can't test - stunnel not yet showing as a pfSense package available on 2.3 . Stilez y
04:47 AM Bug #5081: LADVD failing on LAGG INTERFACE
Hmmm, so I'm not blind at least :) Franly, I do not feel like inventing something from scratch since I'm definitely n... Kill Bill
04:30 AM Bug #5081: LADVD failing on LAGG INTERFACE
Kill Bill wrote:
> @Chris - you have some good code example to check for bridge/lagg and drill down to physical ones...
Chris Buechler
04:20 AM Bug #5081: LADVD failing on LAGG INTERFACE
@Chris - you have some good code example to check for bridge/lagg and drill down to physical ones? Couldn't really fi... Kill Bill
04:12 AM Bug #5081: LADVD failing on LAGG INTERFACE
The issue is in any situation with virtual interfaces (lagg or VLANs), the package should enable ladvd on the parent ... Chris Buechler
12:50 AM Bug #5081: LADVD failing on LAGG INTERFACE
I'd like Jeremy to recheck this. Jim Thompson
03:50 AM Bug #4288 (Resolved): inetd is missed by check_mk
thanks! Chris Buechler
03:38 AM Bug #4288: inetd is missed by check_mk
Ok, managed to get one user (out of the two in total who use this :P) to test it on the forum - looks like it works.
...
Kill Bill
03:00 AM Bug #4288 (Feedback): inetd is missed by check_mk
Chris Buechler
02:20 AM Bug #4288: inetd is missed by check_mk
Merged, please test with 0.1.6 and report back. I have no good way to test this, but it cannot be really more broken ... Kill Bill
03:00 AM Bug #5406 (Resolved): FreeRADIUS will run with its default conf after being reinstalled by pfsense's upgrade process
thanks Chris Buechler
02:58 AM Bug #5406: FreeRADIUS will run with its default conf after being reinstalled by pfsense's upgrade process
Should be fixed in 1.6.18 Kill Bill
02:57 AM Bug #4561 (Resolved): siproxd listening port redirect rule pulling wrong tag from <siproxdsettings> (config.xml)
thanks Chris Buechler
02:49 AM Bug #4561: siproxd listening port redirect rule pulling wrong tag from <siproxdsettings> (config.xml)
This is fixed in 1.0.6 package version.
https://github.com/pfsense/pfsense-packages/blob/master/config/siproxd/sip...
Kill Bill
12:59 AM Bug #4561: siproxd listening port redirect rule pulling wrong tag from <siproxdsettings> (config.xml)
assigned to cmb, because this has been in feedback for 4 months now, and we've released since then.
I'd like to kn...
Jim Thompson
02:56 AM Feature #5052: Avahi Proxy Package: Add option to disable/control cache size.
Not exactly convinced that switching from Lennertware to BittenFruitWare is going to change anything for the better..... Kill Bill
12:55 AM Feature #5052: Avahi Proxy Package: Add option to disable/control cache size.
avahi should be deprecated (it's also GPL, and mDNSresponder is Apache licensed, and in ports)
Jim Thompson
12:57 AM Bug #4926: Please update darkstat to 3.0.719
seems like another piece of useless GPL-ed bloatware, but .. whatever. Jim Thompson

11/14/2015

11:36 PM Bug #3606 (Resolved): can't use content scanner in Dansguardian 2.12.0.3_2 pkg v.0.1.8 pfsense 2.1.2-RELEASE (amd64)
thanks Chris Buechler
08:17 AM Bug #3606: can't use content scanner in Dansguardian 2.12.0.3_2 pkg v.0.1.8 pfsense 2.1.2-RELEASE (amd64)
Definitely fixed on 2.2.x (https://github.com/pfsense/pfsense-packages/blob/master/pkg_config.10.xml#L529) - as for 2... Kill Bill
12:57 PM Bug #5449: Reinstall syslog-ng failed after upgrade to 2.3 alpha (couldn't install Perl: makewhatis not found)
Also note - same happened on trying to reinstall Squid...
However, despite the error, the package was *successfully*...
Stilez y
12:53 PM Bug #5449: Reinstall syslog-ng failed after upgrade to 2.3 alpha (couldn't install Perl: makewhatis not found)
Note that after this, syslog-ng was still shown as installed, despite "Deleting files for syslog-ng-3.6.4" ..... Stilez y
12:52 PM Bug #5449 (Resolved): Reinstall syslog-ng failed after upgrade to 2.3 alpha (couldn't install Perl: makewhatis not found)
Package install log as displayed:
>>> Installing pfSense-pkg-syslog-ng...
Checking integrity... done (0 conflict...
Stilez y
12:22 PM Bug #5447 (Closed): CSS/icon issues - system_patches.php 2.3 alpha
Screenshot below. All other pages (so far) are clear and on a white background. This one seems to be blue on dark gre... Stilez y
12:18 PM Bug #5446 (Closed): System Patches doesn't auto-apply on upgrade from 2.2 to 2.3
Backed up my current 2.2.5, installed on a VM, updated to 2.3 alpha (14 Nov), and noticed that none of the patches th... Stilez y
09:07 AM Bug #3942: bind - allow starting named with "-4" argument
As noted above, fixed over half year ago. Kill Bill

11/13/2015

08:16 AM Bug #3343: (re)starting freeradius service throws "The command '/usr/local/etc/rc.d/radiusd.sh stop' returned exit code '1', the output was 'radiusd not running?'"
Adrian Lewis wrote:
> this issue stops freeradius from starting back up.
No, it absolutely does not. You have dif...
Kill Bill
08:10 AM Bug #3343: (re)starting freeradius service throws "The command '/usr/local/etc/rc.d/radiusd.sh stop' returned exit code '1', the output was 'radiusd not running?'"
I have this problem too.
Unfortunately this isn't a non-issue. In the scenario where pfsense panics or otherwise d...
Adrian Lewis

11/12/2015

03:02 PM Bug #5250 (Resolved): ACB backup time should display local time
Seems fine all around here as well. Closing this out. Jim Pingle
02:58 PM Bug #5250: ACB backup time should display local time
Works. I guess all set now. :) Kill Bill
02:50 PM Bug #5250: ACB backup time should display local time
Applied in changeset commit:13fcabcbb24889a43afb3748bdda5e9905de1fe5. Jim Pingle
02:46 PM Bug #5250: ACB backup time should display local time
Went ahead and fixed it up there, too. It wasn't difficult to accommodate, better off this way anyhow. Jim Pingle
02:00 PM Bug #5250: ACB backup time should display local time
Yeah, deleting works now as well. Probably should nuke the {$_REQUEST['rmver']} from the savemsg on line 196, since i... Kill Bill
01:50 PM Bug #5250 (Feedback): ACB backup time should display local time
Applied in changeset commit:a9caf736867d5df0ff3b82c9e8500318832fa537. Jim Pingle
01:43 PM Bug #5250: ACB backup time should display local time
OK fix pushed. I tested and re-tested on 2.0.x and 2.1 as well, worked OK everywhere. Changing the firewall time zone... Jim Pingle
01:39 PM Bug #5250 (Assigned): ACB backup time should display local time
Looks like a small-ish bug, when deleting it wants the old TS, I'll keep working on it. Jim Pingle
01:21 PM Bug #5250: ACB backup time should display local time
Jim P wrote:
> went a fairly standard datestamp output format, feel free to submit suggestions for a different post-...
Kill Bill
01:10 PM Bug #5250: ACB backup time should display local time
Applied in changeset commit:683f9eced9675528b61558ed327be89168b5d33f. Jim Pingle
12:59 PM Bug #5250: ACB backup time should display local time
I just pushed a fix, give it a shot. Went went a fairly standard datestamp output format, feel free to submit suggest... Jim Pingle
12:15 PM Bug #5250: ACB backup time should display local time
LOLz... Well, unless you have had a DST switch in past two weeks, your server seems to be some sort of time travel ma... Kill Bill
12:05 PM Bug #5250: ACB backup time should display local time
I meant I fixed the assignment :-)
Jim Pingle
11:56 AM Bug #5250: ACB backup time should display local time
Jim P wrote:
> fixed now
It's now 7 hours off, instead of 6 previously.
!http://s24.postimg.org/4sark1kk5/Scr...
Kill Bill
09:23 AM Bug #5250: ACB backup time should display local time
That was when it was waiting for feedback from you, it should have been moved back after we got the additional info, ... Jim Pingle
09:21 AM Bug #5250: ACB backup time should display local time
Uhm. No idea why this bug got assigned to me. Nothing I could fix here. Kill Bill
01:12 PM Feature #5434: Let's Encrypt pfSense support
Yeah, it looks like it needs to mature.
I will stay tuned and check what is going on once in a while.
Thanks a ...
Federico Castagnini
01:02 PM Feature #5434: Let's Encrypt pfSense support
We're in the Lets encrypt beta, but won't be looking at this until after 2.3. Jeremy Porter
12:55 PM Feature #5434: Let's Encrypt pfSense support
Federico Castagnini wrote:
> Did anyone dig into it?
Yeah, I did.
- the automated thing lacks lighttpd suppo...
Kill Bill
12:47 PM Feature #5434 (Resolved): Let's Encrypt pfSense support
So there is this thing called https://letsencrypt.org and it is planned to launch in the week of November 16, 2015.
...
Federico Castagnini
11:13 AM Bug #4369: patch fetching doesn't work if pfsense is behind proxy
https://github.com/pfsense/pfsense-packages/pull/1156 should work with 2.1.x as well. Kill Bill
10:21 AM Bug #4369: patch fetching doesn't work if pfsense is behind proxy
You can use this on pfSense 2.2 and newer:... Kill Bill
06:36 AM Bug #5117: HAVP fails to start after claimed to be successfull install 2.2.4
Fixed. Kill Bill
06:21 AM Bug #3343: (re)starting freeradius service throws "The command '/usr/local/etc/rc.d/radiusd.sh stop' returned exit code '1', the output was 'radiusd not running?'"
This is a complete non-issue. Restart = stop + start. If it's not running yet, then stop will "fail" ('radiusd not ru... Kill Bill

11/11/2015

12:29 PM Bug #5417 (Rejected): squid "refresh patterns" adding range_offset_limit -1 globally
refresh_patterns are gone in 2.3 Jim Thompson
10:39 AM Bug #5417: squid "refresh patterns" adding range_offset_limit -1 globally
All predefined refresh_patterns crap will be gone from next version, as already noted on the forums. Meanwhile, simpl... Kill Bill
10:35 AM Bug #5417 (Rejected): squid "refresh patterns" adding range_offset_limit -1 globally
On "local cache" tab, when you enable any of the hardcoded refresh patterns (windows update, symantec, avira, avast),... Heiler Bemerguy
04:08 AM Bug #4518: Pfsense 2.2 squid3 + negotiate_kerberos_auth
Cannot exactly see where's it missing?... Kill Bill
12:07 AM Bug #4862 (Needs Patch): HAVP won't start
HAVP has been removed from 2.3 Chris Buechler

11/10/2015

08:34 AM Bug #3986: BandwidthD can break php-fpm in unknown rare edge case
I have updated to 2.2.5 and reinstalled bandwithd. The problem still occurs.
Russell Morris wrote:
> Hi,
>
...
Tom Peeters
02:56 AM Bug #5406: FreeRADIUS will run with its default conf after being reinstalled by pfsense's upgrade process
That's because freeradius_modulesldap_resync() is not called anywhere on install.
https://github.com/pfsense/pfse...
Kill Bill
 

Also available in: Atom