Project

General

Profile

Activity

From 03/03/2017 to 04/01/2017

04/01/2017

06:21 PM Bug #7440: Tinc package WEB GUI not picking up changes made on filesystem
Ok. Thank you. I can understand it would be difficult to write a parser for these config files, especially since they... Stephen Walker-Weinshenker
06:19 PM Bug #7440: Tinc package WEB GUI not picking up changes made on filesystem
Put the settings in the GUI. That's how every part of pfSense works. Manual changes to files will always be overwritt... Jim Pingle
06:16 PM Bug #7440: Tinc package WEB GUI not picking up changes made on filesystem
I understand that this is not the approved way to do things, but now that I have done it, is there any way to get the... Stephen Walker-Weinshenker
06:12 PM Bug #7440 (Rejected): Tinc package WEB GUI not picking up changes made on filesystem
That's not how it's meant to work. All settings must go into the GUI, and the filesystem contents are written out fro... Jim Pingle
05:51 PM Bug #7440 (Rejected): Tinc package WEB GUI not picking up changes made on filesystem
I have been setting up a tinc VPN using a pfsense firewall/router as one of the nodes and everything is working fine,... Stephen Walker-Weinshenker
02:29 PM Feature #6651: Loopback interfaces
+1 for this request. The ability is there as Chris mentioned, but IPs can only be bound to lo0. Additionally, an opti... Anonymous

03/31/2017

08:14 AM Bug #7437: Mail Report package 3.1 removed support for STARTTLS
Is it possible delete or replace attachment here?
Seems like I can edit message, but not delete or replace attached ...
Dmitry Gromov
07:52 AM Bug #7437: Mail Report package 3.1 removed support for STARTTLS
Of course, I tested it - see attached screenshot, in this case notifications cease to works as well as reports.
On...
Dmitry Gromov
05:56 AM Bug #7437: Mail Report package 3.1 removed support for STARTTLS
I'm telling you what to tick so that you have the mail reports working with STARTTLS without any changes needed in th... Kill Bill

03/30/2017

09:53 AM Bug #7437: Mail Report package 3.1 removed support for STARTTLS
Hi!
It looks like you do not understand the difference between SMTPS and STARTTLS.
If I check "Enable SMTP over...
Dmitry Gromov
06:46 AM Bug #7437: Mail Report package 3.1 removed support for STARTTLS
It works just fine on 2.3.3 when you tick the checkbox that you stubbornly refuse to tick for god knows what reason. ... Kill Bill
06:04 AM Bug #7437: Mail Report package 3.1 removed support for STARTTLS
I am glad it works for you in 2.4, but last I checked 2.3.3-RELEASE-p1 is the current release and it does NOT work th... Dmitry Gromov
03:10 AM Bug #7437: Mail Report package 3.1 removed support for STARTTLS
I must be speaking Chinese. Tick the "Enable SMTP over SSL/TLS" and it will work. Simple. (The "Enable STARTTLS" thin... Kill Bill

03/29/2017

07:14 PM Bug #7437: Mail Report package 3.1 removed support for STARTTLS
Are we looking at different codebases?
There are two checkboxes on /usr/local/www/system_advanced_notifications.ph...
Dmitry Gromov
06:35 PM Bug #7437: Mail Report package 3.1 removed support for STARTTLS
Dmitry Gromov wrote:
> And that is _exactly_ what version 3.1 does - it disables handling of STARTTLS if STARTTLS ch...
Kill Bill
06:13 PM Bug #7437: Mail Report package 3.1 removed support for STARTTLS
Hi!
Well, that is kind of strange way to treat the issue, let's not jump to conclusions that fast.
I had a bit ...
Dmitry Gromov
07:37 AM Bug #7437 (Rejected): Mail Report package 3.1 removed support for STARTTLS
It was changed because phpmailer changed. It detects STARTTLS support automatically. If it can't, then the server isn... Jim Pingle
04:49 AM Bug #7437: Mail Report package 3.1 removed support for STARTTLS
It was not removed, it's supposed to be used automatically when you tick SSL and the mailserver is advertising STARTT... Kill Bill
01:17 AM Bug #7437 (Rejected): Mail Report package 3.1 removed support for STARTTLS
I had pfSense configured to send mail reports via FastMail on port 587 with STARTTLS.
All worked great until recent ...
Dmitry Gromov
03:38 PM Bug #7438: Squid 0.4.36_2 Remote Cache Parent not working
Test this: https://github.com/doktornotor/FreeBSD-ports/commit/d2d68063934e1474571e4ef3e0dfb713835b9b22.patch Kill Bill
02:16 PM Bug #7438 (Closed): Squid 0.4.36_2 Remote Cache Parent not working
We had transparent mode proxy working with a Remote Cache parent working on 0.4.36
When we upgraded to 0.4.36_2 it...
Robert Siegman

03/27/2017

09:27 AM Bug #7431: BIND (9.11-2) Log shortcut needs to be updated.
Updated to correct Repo (Hpefully) https://github.com/pfsense/FreeBSD-ports/pull/335 Marc Riley

03/26/2017

12:01 PM Bug #7431: BIND (9.11-2) Log shortcut needs to be updated.
You have submitted this against completely wrong abandoned repo. Any fixes need to go to https://github.com/pfsense/F... Kill Bill
11:04 AM Bug #7431 (Resolved): BIND (9.11-2) Log shortcut needs to be updated.
The Shortcut to the BIND Logs (on page /pkg_edit.php?xml=bind.xml) currently points to /diag_logs_resolver.php
...
Marc Riley

03/22/2017

07:12 AM Bug #7417 (Rejected): Avahi ipv6(disabled) port 5353(local link ipv6) firewall log spam until avahi is stopped for a few secs and then restarted
Please discuss and diagnose the problem on the forum before opening a bug report with the precise details and specifi... Jim Pingle
02:40 AM Bug #7417: Avahi ipv6(disabled) port 5353(local link ipv6) firewall log spam until avahi is stopped for a few secs and then restarted
This is a bug tracker, use forums for discussions and mystery stories please. Kill Bill

03/21/2017

11:57 PM Bug #7417: Avahi ipv6(disabled) port 5353(local link ipv6) firewall log spam until avahi is stopped for a few secs and then restarted
Just a small edit: I just noticed that the spam started again. My guess is its some device on my lan, I will turn off... rub man
11:02 PM Bug #7417 (Rejected): Avahi ipv6(disabled) port 5353(local link ipv6) firewall log spam until avahi is stopped for a few secs and then restarted
Hi,
I have ipv6 disabled and have not changed anything major changed on my network that has ipv6 enabled. But when ...
rub man

03/20/2017

02:30 PM Feature #7414 (New): snort needs automated refresh on ip change
if pppoe ip changes snort needs refreshed to deal with that ip change would be nice if it happened automatically Michael Kellogg
02:09 PM Todo #7411: LADVD Devices not wide enough
Andy Kniveton wrote:
> The output is when run from a shell is fine , but the output is cut off via the web gui in th...
Andy Kniveton
06:07 AM Todo #7411 (New): LADVD Devices not wide enough
The output is when run from a shell is fine , but the output is cut off via the web gui in the top section :-
+GUI...
Andy Kniveton

03/19/2017

10:46 AM Bug #7310: Packages pre-deinstall script removes temporary files used by pkg
This is not a Snort bug. Beyond already linked #7229, there's another example of pkg being braindead junk here: https... Kill Bill

03/18/2017

02:55 PM Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
https://github.com/pfsense/FreeBSD-ports/pull/334
Should be pretty much complete now.
Kill Bill

03/17/2017

09:12 AM Bug #7403: Captive Portal + freeradius2 + MySQL problems with German Umlaut
https://redmine.pfsense.org/issues/4497 John Wayne
09:08 AM Bug #7403: Captive Portal + freeradius2 + MySQL problems with German Umlaut
http://lists.freeradius.org/pipermail/freeradius-users/2005-November/004818.html John Wayne
08:36 AM Bug #7403: Captive Portal + freeradius2 + MySQL problems with German Umlaut
In the log files it seems all correct:
Mar 17 13:41:05 radiusd 74676 Login incorrect: [guest/müller] (from clie...
John Wayne
05:02 AM Bug #7403 (New): Captive Portal + freeradius2 + MySQL problems with German Umlaut
We have a setup using a Captive Portal and freeradius2 package + MySQL as database for authentication.
The freerad...
John Wayne
05:22 AM Bug #7404 (Not a Bug): OpenVPN Client Export with custom DynDNS not working
When using the OpenVPN Client Export Utility with a custom DynDNS the Host name resolution combobox-value is empty.
...
John Wayne

03/16/2017

10:59 AM Bug #7319 (Rejected): Tinc uninstall leaves an entry in the firewall rules tab.
The code in the package is OK. Real problem is here: #7401 Jim Pingle
09:11 AM Bug #7390 (Feedback): SquidGuard
Fix pushed. Will show up shortly in pfSense-pkg-squidGuard version 1.16.1. Jim Pingle
08:06 AM Bug #6763: Squid ClamAv wrong redirect URL
Solution:
when I installed pfSense with all packages I use, I gave it a domain name.
After some while, I changed th...
Roma Golbraich
07:33 AM Bug #7263 (Feedback): FreeRADIUS - complete lack of input validation
Jim Pingle
04:09 AM Bug #7263: FreeRADIUS - complete lack of input validation
Merged. Kill Bill

03/15/2017

06:07 PM Bug #7391: 0.4.36_1 localnet ACL missing
Kill Bill wrote:
> And FYI regarding the OpenVPN: https://redmine.pfsense.org/issues/4331 (IOW, it will never be aut...
tqwqllrm tqwqllrm
03:30 PM Bug #7391: 0.4.36_1 localnet ACL missing
And FYI regarding the OpenVPN: https://redmine.pfsense.org/issues/4331 (IOW, it will never be auto-added to localnet ... Kill Bill
09:39 AM Bug #7391: 0.4.36_1 localnet ACL missing
No, it's not, noone touched the relevant code for years.
https://github.com/pfsense/FreeBSD-ports/blame/devel/www...
Kill Bill
09:35 AM Bug #7391: 0.4.36_1 localnet ACL missing
Kill Bill wrote:
> Look, you need either non-empty local interface, or fill in Allowed Subnets on the ACLs tab. Plea...
tqwqllrm tqwqllrm
09:28 AM Bug #7391: 0.4.36_1 localnet ACL missing
Look, you need either non-empty local interface, or fill in Allowed Subnets on the ACLs tab. Please, use forums for d... Kill Bill
09:25 AM Bug #7391: 0.4.36_1 localnet ACL missing
Kill Bill wrote:
> Kindly tick "Allow local network(s) on interface(s)" if you want such ACL.
This is already tic...
tqwqllrm tqwqllrm
09:23 AM Bug #7391: 0.4.36_1 localnet ACL missing
Additional information: The pfSense box is running OpenVPN so this may be a problem with this version of squid not be... tqwqllrm tqwqllrm
09:23 AM Bug #7391: 0.4.36_1 localnet ACL missing
Kindly tick "Allow local network(s) on interface(s)" if you want such ACL. Kill Bill
08:00 AM Bug #7391 (Not a Bug): 0.4.36_1 localnet ACL missing
Version 0.4.36_1 of Squid on pfSense 2.3.3 does not provide the "localnet" acl anymore in /usr/local/etc/squid/squid.... tqwqllrm tqwqllrm
03:45 PM Bug #7390 (Confirmed): SquidGuard
Jim Pingle
06:44 AM Bug #7390 (Resolved): SquidGuard
When a @'@ caracter is inserted in a comment, the "filter config" button in "Log" tab no longer works.
Javascript ca...
Aurélien BONANNI
11:04 AM Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
Thanks, can start killing some code now. :) Kill Bill
10:38 AM Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
FYI- I merged that PR, should be good to continue. Jim Pingle
05:17 AM Bug #7388: Suricata does not property recognize MTU for PPPOE interfaces
See this: https://redmine.openinfosecfoundation.org/issues/1556#note-2 Kill Bill

03/14/2017

09:11 PM Bug #7388 (New): Suricata does not property recognize MTU for PPPOE interfaces
Due to path MTU discovery (via ICMPv6) issues with some IPv6 TCP traffic I have to manually set MSS to 1452 in the WA... Kristopher Kolpin
02:02 PM Bug #7319: Tinc uninstall leaves an entry in the firewall rules tab.
Assigned to Pingle for tracking. Jim Thompson

03/13/2017

11:34 AM Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
OK, I'll figure something out and do a PR. Need https://github.com/pfsense/FreeBSD-ports/pull/308 merged first before... Kill Bill
08:20 AM Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
I agree, it could/should be killed for 2.4.
Not that far out, probably a few weeks.
Jim Pingle
05:35 AM Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
Guys, any ETA for 2.4 release (not date, but weeks/months, that sort of thing)? Would be a good opportunity to get ri... Kill Bill

03/11/2017

01:59 AM Feature #7377 (Resolved): ACME Certificate DNS-Digitalocean Verification Method
It would be great to have a DNS verification method for DigitalOcean DNS API that is now natively in GitHub for acme.... the wer

03/10/2017

07:03 PM Feature #7376 (Closed): ACME Package - Please add support Namecheap DNS service
Please add DNS support in the ACME Package for the Namecheap DNS service provider.
Namecheap API documentation
h...
User Name
09:46 AM Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
You can take it whereever you want. There's no reference to Snort in the config [1], and no useful information here.
...
Kill Bill
09:43 AM Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
I'll take it up with Netgate support if this is the attitude I get here.
Easy to be a dick when you don't use your r...
Randy Terbush
09:42 AM Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
I'll track this and contact Bill Meeks.
"Kill Bill", please find a way to interact with a more professional tone....
Jim Thompson
09:33 AM Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
Like, read what? There is zero information here to determine anything and it has nothing to do with the PBI junk on <... Kill Bill
09:16 AM Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
Maybe you can take a little different attitude and take time to read what I wrote since I took the time to search the... Randy Terbush
08:50 AM Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
Randy Terbush wrote:
> This seems to be possible duplicate of #3756
No, absolutely not, plus completely unclear ...
Kill Bill
08:12 AM Bug #7374 (Closed): Barnyard2 package has incomplete install when installed as Suricata depedency
This seems to be possible duplicate of #3756 which was marked resolved 2 years ago, but still appears to be an issue.... Randy Terbush

03/08/2017

02:11 PM Bug #7237: ACME - first table row on certs tab does not autoexpand the fields
Should get fixed/changed with this: https://github.com/pfsense/FreeBSD-ports/pull/329 Pi Ba
02:09 PM Bug #7342: Acme Certificates option to change the order of certificates is broken
@Sam, thanks for clarifying, should get fixed with this: https://github.com/pfsense/FreeBSD-ports/pull/329 Pi Ba
12:36 AM Bug #7342: Acme Certificates option to change the order of certificates is broken
I found what causes it. If I set the name to be the domain name with "."s eg: test.domain.com it won't let me click ... Sam Bingner
02:09 PM Bug #7302 (Resolved): Acme AWS/Route 53 DNS Verification fails
Jim Pingle
02:08 PM Bug #7302: Acme AWS/Route 53 DNS Verification fails
I can confirm that 0.1.14 works with AWS. Doug Twitchell
02:02 PM Bug #7302: Acme AWS/Route 53 DNS Verification fails
Can you check if 0.1.14 fixes this? Pi Ba
02:08 PM Feature #7340: Acme Client nsupdate interface forces a different key-ID for every domain
The way the code works now the key name/id is the domain name. While you could copy the key to a bunch of names on th... Jim Pingle
02:06 PM Feature #7340: Acme Client nsupdate interface forces a different key-ID for every domain
Seems to me if you can set 1 update key in bind you can reuse that key in acme package for each domain?
p.s. ive nev...
Pi Ba
07:30 AM Bug #6748: rrd_fetch_json.php returns html when user is unauthorized (causes "Error: SyntaxError: Unexpected token <")
... Kill Bill

03/07/2017

08:49 PM Bug #7342: Acme Certificates option to change the order of certificates is broken
Maybe a browser cache of old JavaScript for the page? Try force refreshing the page (ctrl-F5) to make sure it is runn... Phillip Davis
06:11 PM Bug #7342: Acme Certificates option to change the order of certificates is broken
I just updated from 0.1.12 to 0.1.14 as it had been updated since I submitted this and verified that it still does no... Sam Bingner
05:53 PM Bug #7342 (Rejected): Acme Certificates option to change the order of certificates is broken
Works here, too. Jim Pingle
05:02 PM Bug #7342: Acme Certificates option to change the order of certificates is broken
Works for me.. Check the box on the second certificate, click the anchor on the first one. After which the second cer... Pi Ba
12:01 PM Feature #7367 (New): Wizard for Squid
I know its easy to install a Proxy Server but is there a way of having a Wizard to set it up.
Using Hardware spec ...
Philip Hadfield
10:43 AM Bug #7310: Packages pre-deinstall script removes temporary files used by pkg
upgrade from 2.3.4 with snort no problem here Michael Kellogg
08:03 AM Bug #7319: Tinc uninstall leaves an entry in the firewall rules tab.
Tough cookies, not a package bug. Kill Bill
07:13 AM Bug #7319: Tinc uninstall leaves an entry in the firewall rules tab.
Still seerms to leave pkg_tinc in the interface groups.
>>> Installing pfSense-pkg-tinc...
Updating pfSense-core...
Andy Kniveton
07:03 AM Bug #7319 (Feedback): Tinc uninstall leaves an entry in the firewall rules tab.
Jim Pingle
07:01 AM Bug #7319: Tinc uninstall leaves an entry in the firewall rules tab.
Merged, test with 1.0.28_3 please. Kill Bill
06:58 AM Bug #7363 (Duplicate): pfsense 2.3.4 - Tinc Package - Interface still visible after uninstallation of package.
Jim Pingle
06:49 AM Bug #7363: pfsense 2.3.4 - Tinc Package - Interface still visible after uninstallation of package.
Duplicate of Bug #7319 Kill Bill
06:38 AM Bug #7363 (Duplicate): pfsense 2.3.4 - Tinc Package - Interface still visible after uninstallation of package.
Did an installation of tinc and then did an uninstallation and the interface still remains visible in "Firewall --> R... Alexander Wilke

03/03/2017

07:20 AM Bug #7211 (Resolved): DNS Made Easy ACME script not parsing domain IDs properly
Jim Pingle
12:10 AM Bug #7211: DNS Made Easy ACME script not parsing domain IDs properly
I got a notification in my install that 0.1.13 was available and saw that those changes were merged into it. After t... Chris Gelatt
 

Also available in: Atom