Project

General

Profile

Activity

From 04/11/2016 to 05/10/2016

05/10/2016

12:18 AM Bug #6339 (Resolved): OpenVPN Client Export package option for "Use Microsoft Certificate Storage" does not specify which certificate to use
Just spent a while tracking this down, please disregard if it's a PEBKAC issue. :)
I tried the option in the clie...
Scott Bradner

05/09/2016

04:52 PM Bug #6116: pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
Devs:
Do you have any concerns with restoring the DNSBL database in the **/var/unbound** folder on **reboot**...
BBcan177 .
01:19 AM Bug #6305: Quagga problems updating routes / mistakenly showing "kernel"-routes while they are not
for me, downgrading to older version seems to solve all issues. no confirmation if this is the case for the OP of the... jeroen van breedam

05/08/2016

01:21 PM Todo #6190: Convert and add NUT package to pfsense 2.3
Looks like feature implemented and it works for me at least. Vladimir Suhhanov

05/06/2016

10:25 PM Bug #6229 (Resolved): pfblockerng: implode(): Invalid arguments passed in /usr/local/pkg/pfblockerng/pfblockerng.inc on line 4638
merged, thanks BBcan. Chris Buechler
07:42 PM Bug #6229: pfblockerng: implode(): Invalid arguments passed in /usr/local/pkg/pfblockerng/pfblockerng.inc on line 4638
I have posted a PR https://github.com/pfsense/FreeBSD-ports/pull/125 for this issue.
When $pfb['interval'] is ...
BBcan177 .
12:31 AM Bug #6229 (Feedback): pfblockerng: implode(): Invalid arguments passed in /usr/local/pkg/pfblockerng/pfblockerng.inc on line 4638
Pushed a fix to make sure it's an array before it hits that line. BBcan might want to check that thread to find root ... Chris Buechler
12:23 AM Bug #6229 (Confirmed): pfblockerng: implode(): Invalid arguments passed in /usr/local/pkg/pfblockerng/pfblockerng.inc on line 4638
I misread that as it having been fixed previously. Still being reported as an issue.
https://forum.pfsense.org/inde...
Chris Buechler

05/05/2016

07:34 PM Bug #6229 (Resolved): pfblockerng: implode(): Invalid arguments passed in /usr/local/pkg/pfblockerng/pfblockerng.inc on line 4638
Chris Buechler

05/04/2016

08:45 AM Bug #6313 (Duplicate): Squid 0.4.16_2 Local Authentication fails with passwords +8 characters
Hi,
I just made a fresh install of 2.3 amd64 with Squid 0.4.16_2 (squid-3.5.16).
Adding local Squid users with pa...
Markus Brungs

05/03/2016

01:00 PM Bug #6294: Squid and "Bypass Proxy for These Source IPs"
Thank you, Jim. That worked. Vinod Adhikary
01:33 AM Bug #6305 (Closed): Quagga problems updating routes / mistakenly showing "kernel"-routes while they are not
please see https://forum.pfsense.org/index.php?topic=111108.0
jeroen van breedam

05/02/2016

01:47 PM Bug #6301 (Closed): Error on squidGuard's Common ACL tab after enabling blacklists
After enabling blacklists in squidGuard on 2.3, I see this error above the Target Rules on the Common ACL tab:
War...
Cindy Ames

05/01/2016

01:32 PM Bug #6294 (Not a Bug): Squid and "Bypass Proxy for These Source IPs"
When you put a hostname into that field it is only resolved when the ruleset is loaded. If the hostnames cannot be re... Jim Pingle

04/30/2016

10:21 PM Bug #6294 (Not a Bug): Squid and "Bypass Proxy for These Source IPs"
It might be a Squid issue and please let me know if I need to file this issue at Squid upstream.
Following is what...
Vinod Adhikary

04/28/2016

03:41 PM Bug #6284 (Not a Bug): Firewall Rules change order automatically
Please discuss this on the forum before opening a bug report.
Also, this is mostly duplicated from #6281 from just a...
Jim Pingle
03:32 PM Bug #6284 (Not a Bug): Firewall Rules change order automatically
I have created a *pfB_Top_v4 auto rule* to basically block ALL traffic from the Top 20 Spamming countries, using the ... IT Department
02:25 AM Bug #6276: Squid non-functional in transparent mode in 2.3 and 2.3.1
Dear Jim,
maybe you are right, I put my pfsense config file in forum.
https://forum.pfsense.org/index.php?topic=110...
Amin Z

04/27/2016

09:15 PM Bug #6279 (Rejected): squidguard blacklist update not working after initial update
squidguard is not able to download from http://www.shallalist.de/Downloads/shallalist.tar.gz or from http://urlblackl... Jeoffrey Palacio
09:40 AM Bug #6276 (Rejected): Squid non-functional in transparent mode in 2.3 and 2.3.1
The conclusions you have reached are incorrect. It is working for others (and myself), and if something is broken it ... Jim Pingle
09:19 AM Bug #6276 (Rejected): Squid non-functional in transparent mode in 2.3 and 2.3.1
In fresh new installation:
Squid non-functional in transparent mode in 2.3 and 2.3.1
I did this solution: https...
Amin Z
05:49 AM Bug #6274 (Resolved): Missing tabbar in HAProxy for restricted group
The HAProxy tabbar is missing (Settings, Frontend, Backend, etc.) for users of a group, where the users are only allo... Kevin Seidel
04:41 AM Feature #6141: Convert apcupsd package to 2.3
Sergio Handal wrote:
> It would be nice to convert "apcupsd" package to bootstrap so it can be used in version 2.3.x...
Max Frames

04/26/2016

07:59 AM Bug #4736: ladvd crashes, dumps core
Adam Thompson wrote:
> No longer crashes, but also doesn't detect any peers. Same behaviour on two different i386 f...
Adam Thompson
07:59 AM Bug #4736: ladvd crashes, dumps core
No longer crashes, but also doesn't detect any peers. Same behaviour on two different i386 firewalls. Adam Thompson
06:06 AM Bug #6047: syslog-ng does not logrotate
I can word this, logs ain't getting rotated. Martin Hansen
03:46 AM Bug #6116: pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
... I've posted a forum query re trying to get pfBlockerNG to update on reboot so I can continue to use RAM disks.
...
Andrew -
12:26 AM Bug #5869: Squid non-functional in transparent mode in 2.3
Please come to https://forum.pfsense.org/index.php?topic=110731.0 Amin Z

04/25/2016

10:00 PM Bug #6246 (Feedback): pfBlockerNG - filter rule error if all entries in a block list de-dupe out
PR merged. Chris Buechler
09:43 PM Bug #6246: pfBlockerNG - filter rule error if all entries in a block list de-dupe out
This issue is fixed in: PR # 121 https://github.com/pfsense/FreeBSD-ports/pull/121/files BBcan177 .
08:49 AM Bug #5869: Squid non-functional in transparent mode in 2.3
If that didn't work, this is not your issue. Please start a forum thread to discuss and troubleshoot. Jim Pingle
04:42 AM Bug #5869: Squid non-functional in transparent mode in 2.3
Jim Pingle wrote:
> Looks good now, others on the forum and here have also confirmed it is working now. Closing.
...
Amin Z
04:41 AM Bug #5869: Squid non-functional in transparent mode in 2.3
I installed new pfsense 2.3 and installed squid.
I did this command: chgrp squid /dev/pf
problem is same exist: Squ...
Amin Z
02:19 AM Bug #6252 (Not a Bug): Can't access darkstat if webgui is on HTTPS.
0. Make sure WebGUI is on HTTPS.
1. Install Darkstat.
2. Configure Darkstat and try to access it.
3. "Access Darks...
Dmitriy K

04/24/2016

09:07 PM Bug #6250 (Needs Patch): Sarg frame.php memory size
Hi,
I was wondering if someone had this or is there a fix when i want to see the denied reports? pfSense 2.2.4 64BIT...
Albert Yang
06:11 PM Bug #6246: pfBlockerNG - filter rule error if all entries in a block list de-dupe out
Thanks. The edit to the pfblockerng.sh file seems to have worked - will report back if I have any issues.
Thanks ...
Andrew -
01:20 PM Bug #6246: pfBlockerNG - filter rule error if all entries in a block list de-dupe out
Hi Andrew,
"Occasionally, the content of the various lists means that one of the lists completely de-dupes out"
"...
BBcan177 .
01:12 PM Bug #6246: pfBlockerNG - filter rule error if all entries in a block list de-dupe out
Thanks. I'll try that edit.
I'm probably being slow, but I didn't follow your comment in relation to the original...
Andrew -
11:45 AM Bug #6246: pfBlockerNG - filter rule error if all entries in a block list de-dupe out
Thanks for the report, please add the following line to */usr/local/pkg/pfblockerng/pfblockerng.sh*
Add this line...
BBcan177 .
03:35 AM Bug #6246 (Resolved): pfBlockerNG - filter rule error if all entries in a block list de-dupe out
I have a number of IPv4 block lists active in pfBlockerNG. Occasionally, the content of the various lists means that... Andrew -
11:51 AM Bug #6229: pfblockerng: implode(): Invalid arguments passed in /usr/local/pkg/pfblockerng/pfblockerng.inc on line 4638
FYI, I have had no one else report this issue in the Forum or via PM... I can't reproduce this issue either... The on... BBcan177 .
07:19 AM Bug #6248 (Resolved): Feedback for NUT package
I have created a merge request (https://github.com/pfsense/FreeBSD-ports/pull/120) for the NUT package for PFSense. P... Sander Peterse
07:17 AM Bug #6247 (Rejected): Feedback for TeamSpeak 3 package
I have created a merge request (https://github.com/pfsense/FreeBSD-ports/pull/119) for the TeamSpeak 3 package for PF... Sander Peterse

04/22/2016

11:44 PM Bug #6235: Snort sometimes crashes during rule update process (specifically related to VRT .so rule update?)
This happens fairly frequently for me - it crashed again on Apr. 22nd when pulling in the latest VRT rules (SIGSEGV).... Andrew W
05:57 PM Bug #6235: Snort sometimes crashes during rule update process (specifically related to VRT .so rule update?)
The rules update process will restart any running Snort processes at the end of the update. However, I guess it is p... Bill Meeks
09:03 AM Bug #6235 (Resolved): Snort sometimes crashes during rule update process (specifically related to VRT .so rule update?)
Snort occasionally crashes during the rule update process and doesn't start again until I manually restart it via the... Andrew W
04:43 PM Todo #6190: Convert and add NUT package to pfsense 2.3
Pull-request is send, needs some testing though. https://github.com/pfsense/FreeBSD-ports/pull/111
Pi Ba
04:26 PM Bug #6182: HAProxy not supporting ALPN
Likely related to haproxy being build against openssl 1.0.1, where it used to be against 1.0.2. Can see that in hapro... Pi Ba
02:36 PM Bug #6197 (Resolved): Quagga package can get stuck during sync
Works, for this case anyhow. Jim Pingle

04/21/2016

10:00 PM Bug #6229: pfblockerng: implode(): Invalid arguments passed in /usr/local/pkg/pfblockerng/pfblockerng.inc on line 4638
It's a trivially small portion of the total PHP warning crash reports, no need for a rush fix for purposes of reducin... Chris Buechler
08:32 PM Bug #6229: pfblockerng: implode(): Invalid arguments passed in /usr/local/pkg/pfblockerng/pfblockerng.inc on line 4638
I can submit a Rush patch if that makes it less "Noisy" for you? :) But I still need to see why this tag is missing.... BBcan177 .
08:14 PM Bug #6229: pfblockerng: implode(): Invalid arguments passed in /usr/local/pkg/pfblockerng/pfblockerng.inc on line 4638
BBcan177 . wrote:
> Are these crash reports from multiple IPs?
>
Yes, at least a dozen different systems, diffe...
Chris Buechler
07:36 PM Bug #6229: pfblockerng: implode(): Invalid arguments passed in /usr/local/pkg/pfblockerng/pfblockerng.inc on line 4638
Are these crash reports from multiple IPs?
I had one user PM me with this issue (Full Install in a KVM VM w/o Ramd...
BBcan177 .
03:51 PM Bug #6229 (Resolved): pfblockerng: implode(): Invalid arguments passed in /usr/local/pkg/pfblockerng/pfblockerng.inc on line 4638
getting a number of crash reports with: ... Chris Buechler
12:05 PM Feature #6226 (Closed): Add usb_modeswitch to the pfSense package repo
Having usb_modeswitch and it's dependencies available in the pfSense default package repo will allow people to use 3g... Steve Wheeler

04/19/2016

12:53 PM Bug #6098 (Resolved): Can't change/modify custom rules in Suricata pkg
Thanks Bill Chris Buechler
10:09 AM Bug #6098: Can't change/modify custom rules in Suricata pkg
This bug was fixed in Suricata GUI package version 3.0_6 merged on April 18, 2016.
Bill
Bill Meeks
10:13 AM Bug #6084: Snort custom rule page does not update on apply
This bug is fixed in Snort GUI package version 3.2.9.1_11 that is currently awaiting review and merge of the pull req... Bill Meeks
09:14 AM Feature #6204 (Duplicate): Integrate ntopng with pfSense - assistance required by ntopng developer
Hi
Apologies if this is doubling up (as I can see various threats on it on the pfSense forum), but Luca Deri who i...
Andrew -

04/18/2016

03:52 PM Bug #6085: Typo
Ah there, thanks. I should have added a -i to my grep. Fixed that in all 3 branches. I didn't bump the version though... Chris Buechler
02:59 PM Bug #3525: Dansguardian Writing Script Garbage (CsrfMagic.end)
William Bell wrote:
>
> Sounds to me as if you didn't even try to replicate this issue.
I closed this because D...
Chris Buechler
02:47 PM Bug #6194: SSL inspection not working
not sure this is a general issue, probably should post to the proxy board on the forum where more will see it to disc... Chris Buechler
02:20 AM Bug #6194 (Not a Bug): SSL inspection not working
Hi
pfSense 2.3 Https SSL inspection does not work I'm putting together create a certificate to the computer, but ...
Landforces turkuaz
08:38 AM Bug #6197 (Feedback): Quagga package can get stuck during sync
Fix pushed, new version will be up shortly. Jim Pingle
08:20 AM Bug #6197 (Resolved): Quagga package can get stuck during sync
The Quagga_OSPF package can get stuck during sync if there is a problem with the Quagga configuration, leading to the... Jim Pingle
08:05 AM Feature #6196 (Closed): APU2 Thermal sensor
Thermal sensor in new apu2 board.
This is the solution of OPNsense (Don't hate me for this! )
https://github.com/...
Oscar Francia

04/17/2016

07:59 PM Bug #3525: Dansguardian Writing Script Garbage (CsrfMagic.end)
Kill Bill wrote:
> That page is a XML template and the textarea is base64-encoded. This bug doesn't make any sense a...
William Bell
03:19 AM Todo #6190 (Resolved): Convert and add NUT package to pfsense 2.3
Since 2.3 version of pfsense NUT is no longer exists in package list, but it should be added later.
I know that deve...
Vladimir Suhhanov

04/16/2016

05:32 PM Bug #6085: Typo
I'm running the _10 package version now (and 2.3 RELEASE), and it's still saying "Deault is ON".
Andrew -
04:50 PM Bug #6182: HAProxy not supporting ALPN
Also: workaround until ALPN is working again is going back to "npn HTTP/1.1,HTTP/1.0" instead of "alpn HTTP/1.1,HTTP/... Sam Bingner
04:42 PM Bug #6182 (Resolved): HAProxy not supporting ALPN
ALPN is supposed to be superseding NPN, but for some reason ALPN is disabled in the libraries used by HAProxy on 2.3 ... Sam Bingner
12:39 AM Bug #3375 (Closed): BIND, ACLs: Incorrect code is being generated for empty range ACL.
Chris Buechler
12:35 AM Bug #6157 (Resolved): Freeradius OTP verify is missing the shebang
already fixed in 2.3, not fixing the PBI Chris Buechler
12:25 AM Bug #6113 (Resolved): AutoConfigBackup Restore Reboot points to wrong link
works Chris Buechler
12:21 AM Bug #5821: Asterisk - shared object libperl.so not found
PBI crud that won't be an issue if Asterisk package comes back to 2.3 Chris Buechler
12:17 AM Bug #4831 (Closed): ntopng includes vulnerable net/libzmq4 (CVE-2014-9721)
will be resolved when ntopng comes back to 2.3, doesn't currently exist. Chris Buechler
12:16 AM Bug #4912 (Resolved): mtr-nox11 - tcp mode unusable (v0.86 needed)
0.86 is in 2.3 Chris Buechler
12:15 AM Bug #4736 (Feedback): ladvd crashes, dumps core
this still happen with 2.3? Haven't seen it on any of mine, but they're all 64 bit. Chris Buechler
12:14 AM Bug #4662 (Closed): zabbixLTS snmpwalk doesn't work
PBI problem that no longer exists in 2.3+. Chris Buechler
12:13 AM Bug #4654 (Closed): mod_security 0.43 generates a syntax error when "ModSecurity protection" is enabled.
dead package Chris Buechler
12:10 AM Bug #4270 (Closed): Postfix dashboard widget not working in 2.2
Chris Buechler
12:07 AM Bug #3525 (Closed): Dansguardian Writing Script Garbage (CsrfMagic.end)
Chris Buechler
12:07 AM Bug #3495 (Resolved): Zabbix2-Agent and Zabbix2-proxy upgrade.
Chris Buechler

04/15/2016

06:06 PM Feature #6176 (New): Privilege for OpenVPN Client Export
Hello pfsense dev,
When creating a custom group with only "WebCfg - OpenVPN: Client Export Utility" , there is n...
Alexandre Paradis
06:38 AM Bug #6157: Freeradius OTP verify is missing the shebang
We tried with pfSense 2.3 today and we couldn't even find the otpverify script but everything worked most of the time... Jörg Herzinger
06:01 AM Bug #6116: pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
L Jim Thompson
05:59 AM Bug #6023: Traffic Shaper (pfsense 2.3) Suricata V3.0 Inline Mode Operation
Netmap is used for the 3.0 IPS mode.
Jim Thompson
05:56 AM Bug #6061: stunnel package update request
FreeBSD port might need upgrading.
Not updating 2.2.6 pbi though
Jim Thompson

04/14/2016

02:38 PM Bug #6157 (Resolved): Freeradius OTP verify is missing the shebang
I was playing around with pfSense 2.2.6 and FreeRadius OTP authentication. What I found is, that the /usr/pbi/freerad... Jörg Herzinger
05:26 AM Bug #6116: pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
... I was looking at the shellcmd package to see if I could add a start up command to force an update once the system... Andrew -

04/13/2016

07:26 PM Bug #6116: pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
ok Glad that we found the issue :) I can't close the ticket, thats up to the Devs to decide :)
Even if I try to m...
BBcan177 .
07:21 PM Bug #6116: pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
Yes, sorry, I see what you mean. I'm indeed using RAM disks for /tmp and /var. While it's a full install, it's runn... Andrew -
06:53 PM Bug #6116: pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
When you see this message "New DNSBL Cert Created", something is deleting the DNSBL cert in the /var/unbound folder (... BBcan177 .
04:33 AM Bug #6116: pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
There's not a great deal to see.
The upgrade to 2.3 release was done around 20:30 yesterday.
You can see the un...
Andrew -
02:21 PM Feature #6141 (Resolved): Convert apcupsd package to 2.3
It would be nice to convert "apcupsd" package to bootstrap so it can be used in version 2.3.x Its a really useful pac... Sergio Handal
08:10 AM Bug #6127 (Needs Patch): RRD Summary port: Status page shows OPT1, OPT2, etc ... instead of the interface name
The RRD Summary package uses the raw RRD file names in the display. Converting a file name to a friendly interface na... Anonymous
12:42 AM Bug #6127 (Needs Patch): RRD Summary port: Status page shows OPT1, OPT2, etc ... instead of the interface name
RRD Summary shoes OPT1, OPT2, etc in the dropdown menu instead of the interface name.
under https://192.168.5.1/...
Alexandre Paradis
02:03 AM Bug #6129: zabbix agent/proxy 2.4 not ported to pfSense 2.3
I'm not sure why we don't still have both of them. The GUI is identical with LTS which is already converted, and brin... Chris Buechler
01:45 AM Bug #6129 (Resolved): zabbix agent/proxy 2.4 not ported to pfSense 2.3
Hey there,
I saw on https://doc.pfsense.org/index.php/2.3_Removed_Packages that zabbix-agent-2 and zabbix-proxy-2 ...
James Lavoy

04/12/2016

06:34 PM Bug #6116: pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
Can you check your pfblockerng.log? and send me those particular lines about Unbound at the time of your last update? BBcan177 .
06:28 PM Bug #6116: pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
It's a full CD/ISO install.
Yes, it did it on earlier snapshots but I wasn't sure whether it was because of upgrad...
Andrew -
04:34 PM Bug #6116: pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
Is this on a ramdisk or nano? I haven't heard any other issues so far? Have you seen this on any other 2.3 Snapshot? BBcan177 .
04:25 PM Bug #6116: pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
Thanks. Just to clarify, this happens when pfBlockerNG is installed. So, pfBlockerNG is installed, you upgrade the p... Andrew -
04:03 PM Bug #6116: pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
Unfortunately, if you create a backup with pfBlockerNG DNSBL installed and enabled, the backup config will contain th... BBcan177 .
02:51 PM Bug #6116 (Resolved): pfBlockerNG doesn't automatically update after firmware upgrade, meaning that unbound doesn't start and users don't have internet connection
If you're using DNS blocking on PfBlockerNG and update the system firmware, the pfb_dnsbl.conf doesn't exist when the... Andrew -
10:40 AM Bug #6113 (Feedback): AutoConfigBackup Restore Reboot points to wrong link
Form revised to use diag_reboot.php with hidden input override=yes Anonymous
10:14 AM Bug #6113 (Resolved): AutoConfigBackup Restore Reboot points to wrong link
When restoring a backup from ACB, the user is prompted to reboot the firewall. The reboot button on that screen link... George Phillips
10:26 AM Bug #6090 (Closed): OpenVPN Server Status does not show all client status
Closing for lack of evidence and lack of feedback. Can be reopened if the situation changes.
Associated forum thre...
Jim Pingle
06:41 AM Feature #6111 (Needs Patch): DNS Crypt
Jim Pingle
06:39 AM Feature #6111 (Needs Patch): DNS Crypt
A package for DNS Cryt will be nice:
https://forum.pfsense.org/index.php?topic=78446.0
Ni Ma
 

Also available in: Atom