Project

General

Profile

Activity

From 08/30/2018 to 09/28/2018

09/28/2018

11:35 PM Bug #8975: c-icap not starting - ICAP Inteface for Squid and ClamAV integration
Just some additional feedback.
I reinstalled squid, did not work.
then I uninstalled squid.
then I installed squid...
Marcel Beerli
09:48 PM Bug #8975 (Not a Bug): c-icap not starting - ICAP Inteface for Squid and ClamAV integration
There is no longer a general problem here. Read the last comment on #8832 again.
Uninstall the package and then in...
Jim Pingle
09:43 PM Bug #8975 (Not a Bug): c-icap not starting - ICAP Inteface for Squid and ClamAV integration
Running on PC Engines APU2, pfSense 2.4.4, squid 0.4.44_5 and squidGuard 1.16.17_3
Service c-icap is not starting ...
Marcel Beerli
09:23 PM Bug #8945: SquidGuard ACL blacklists
Any indication when this is getting fixed?
Its in PackageProxy filter SquidGuard: Common Access Control List (ACL)Co...
Marcel Beerli
08:20 AM Bug #8832 (Resolved): c-icap for Squid 5.1 on 2.4.4 Developer not starting
Uninstall squid and then reinstall. If it still won't start, then it's not this issue. Start a new thread on the foru... Jim Pingle
06:12 AM Bug #8966 (Resolved): Patches page uses GET instead of POST when performing actions
Renato Botelho
02:23 AM Bug #8966: Patches page uses GET instead of POST when performing actions
It seems to be fixed now. Thanks for the quick turnaround. Anonymous

09/27/2018

10:20 PM Bug #8832: c-icap for Squid 5.1 on 2.4.4 Developer not starting
upgraded to squid 0.4.44_5 but c-icap is still not starting. Marcel Beerli
07:32 PM Bug #8966: Patches page uses GET instead of POST when performing actions
Yeah that was due to a syntax error I made in the previous commit. Fix has been pushed, update and try again Jim Pingle
06:42 PM Bug #8966: Patches page uses GET instead of POST when performing actions
I'm not entirely sure this related, but I just upgraded a system to 2.4.4 which picked up the new System Patches v1.2... Anonymous
01:36 PM Bug #8966 (Feedback): Patches page uses GET instead of POST when performing actions
Fixed in System Patches v1.2, which will show up shortly. Jim Pingle
11:53 AM Bug #8966 (Resolved): Patches page uses GET instead of POST when performing actions
When the patches page system_patches.php is used to apply or revert a patch, the link in the cookie trail area of tha... Mitch Claborn
02:21 PM Bug #8968 (Duplicate): Proxy filter SquidGuard - not loading properly
ACL issue is a duplicate of #8945
icap issue is a duplicate of #8832
Jim Pingle
02:19 PM Bug #8968 (Duplicate): Proxy filter SquidGuard - not loading properly
Hi,
running with pfsense 2.4.4 with squid 0.4.44_4 and squidguard 1.16.17_3
when Squid Guard Proxy Filter - Group A...
Marcel Beerli
12:55 PM Bug #8945: SquidGuard ACL blacklists
I had to rollback too... lahoucine El kamel

09/26/2018

06:37 AM Bug #8945: SquidGuard ACL blacklists
lahoucine El kamel wrote:
> Hello,
>
> When editing the Squid Guard Proxy Filter I noticed that the settings afte...
Helio Candido
06:00 AM Bug #8945: SquidGuard ACL blacklists
lahoucine El kamel wrote:
> Hello,
>
> When editing the Squid Guard Proxy Filter I noticed that the settings afte...
Charles Melo
01:43 AM Bug #8945: SquidGuard ACL blacklists
Hello,
I have updated Squid and the ACL issue is still there.
When editing the Squid Guard Proxy Filter I noticed...
lahoucine El kamel

09/25/2018

01:52 PM Bug #8832 (Feedback): c-icap for Squid 5.1 on 2.4.4 Developer not starting
This should be fixed now. Update the squid package and it should pick up the c-icap update and then work as expected.... Jim Pingle
11:47 AM Bug #8832: c-icap for Squid 5.1 on 2.4.4 Developer not starting
Attached is a patch to fix the c-icap FreeBSD port default config to use the correct current syntax. Jim Pingle
10:39 AM Bug #8832: c-icap for Squid 5.1 on 2.4.4 Developer not starting
The upstream port is _not_ fine. See the file I linked. The FreeBSD port is explicitly adding the ListenAddress direc... Jim Pingle
10:33 AM Bug #8832: c-icap for Squid 5.1 on 2.4.4 Developer not starting
Hi Jim,
the guy from the mailing list is me.
The "Listen" directive was removed from 0.4 to 0.5.
Upstream port...
Michael M
08:12 AM Bug #8944 (Duplicate): attemp of installing pfblocker brakes system on 2.4.3
Duplicate of #8938 Jim Pingle
04:47 AM Bug #8944 (Duplicate): attemp of installing pfblocker brakes system on 2.4.3
Any attempt to install pfblocker on clean 2.4.3-p1 breaks system.
Errors during installation:...
Constantine Kormashev
07:39 AM Bug #8945: SquidGuard ACL blacklists
The i-cap issue is covered under #8832 Jim Pingle
07:33 AM Bug #8945 (Resolved): SquidGuard ACL blacklists
Hello,
When editing the Squid Guard Proxy Filter I noticed that the settings after saving are not loaded.
Example...
lahoucine El kamel

09/24/2018

10:54 PM Bug #8940 (Duplicate): ICAP Inteface for Squid and ClamAV integration - service not starting
Duplicate of #8832 Jim Pingle
10:18 PM Bug #8940 (Duplicate): ICAP Inteface for Squid and ClamAV integration - service not starting
After the upgrade I had a crash report but it seemed to run. But on a new restart of the pcengines APU2 it would not ... Marcel Beerli
08:05 PM Bug #8832: c-icap for Squid 5.1 on 2.4.4 Developer not starting
If the FreeBSD port is wrong, though, it should be fixed upstream. Then we wouldn't need to make any changes.
Some...
Jim Pingle
07:17 PM Bug #8832: c-icap for Squid 5.1 on 2.4.4 Developer not starting
Suggested fix: https://github.com/stephenw10/FreeBSD-ports/commit/d21954ad3b4e44e4df6e43e88ac22d589d8cf1b7 Steve Wheeler
07:09 PM Bug #8832: c-icap for Squid 5.1 on 2.4.4 Developer not starting
This is a problem in the FreeBSD c-icap port. The port itself contains a patch that adds the ListenAddress line.
h...
Jim Pingle
04:33 PM Bug #8832: c-icap for Squid 5.1 on 2.4.4 Developer not starting
Confirmed the above fix is still functional in 2.4.4r but the default package is still broken.
As a workaround you...
Steve Wheeler
03:45 PM Bug #8932: Upgrade to HaProxy 0.59_11 fails on 2.4.3
Ah, I forgot that it automatically probes the "latest stable" repo which automatically points you to 2.4.4/RELENG_2_4... Jim Pingle
03:44 PM Bug #8932: Upgrade to HaProxy 0.59_11 fails on 2.4.3
I can confirm that upgrading to 2.4.4 fixes it, as well as downgrading haproxy to 0.59_9 via: pkg add -f https://file... Florian Apolloner
03:41 PM Bug #8932: Upgrade to HaProxy 0.59_11 fails on 2.4.3
I agree "it shouldnt be". But i'm seeing my 2.4.3 box offer to install haproxy 0.59_11 .. which at least isn't availa... Pi Ba
03:33 PM Bug #8932: Upgrade to HaProxy 0.59_11 fails on 2.4.3
It shouldn't be, they are on different branches (RELENG_2_4_3 vs RELENG_2_4_4), the commit may have been manually che... Jim Pingle
03:17 PM Bug #8932: Upgrade to HaProxy 0.59_11 fails on 2.4.3
It seems like 2.4.3 is automatically pulling in the 2.4.4 repository files..?? Even though the 2.4.3 files still exis... Pi Ba
02:09 PM Bug #8932: Upgrade to HaProxy 0.59_11 fails on 2.4.3
Well it sounds as if https://github.com/pfsense/FreeBSD-ports/pull/555#discussion_r212271252 got into 2.4.3? Florian Apolloner
02:04 PM Bug #8932: Upgrade to HaProxy 0.59_11 fails on 2.4.3
No, each release has its own branch. It's possible that an edit intended to only stay on 2.4.4 was picked back to 2.4... Jim Pingle
02:03 PM Bug #8932: Upgrade to HaProxy 0.59_11 fails on 2.4.3
Are you saying that packages are served from one repo only and will more or less immediately break if a new release o... Florian Apolloner
01:58 PM Bug #8932: Upgrade to HaProxy 0.59_11 fails on 2.4.3
Upgrade to 2.4.4 and try again. Jim Pingle
01:52 PM Bug #8932 (Resolved): Upgrade to HaProxy 0.59_11 fails on 2.4.3
I cannot upgrade to haproxy 0.59_11 because getarraybyref() no longer exists:... Florian Apolloner
09:36 AM Bug #8931 (Feedback): Service Watchdog PHP Errors
Fix committed in Service Watchdog pkg version 1.8.6, which will be up shortly after 2.4.4-RELEASE Jim Pingle

09/23/2018

02:14 PM Bug #8931: Service Watchdog PHP Errors
After hitting that uninstalling I'm unable to re-install:... Steve Wheeler
01:57 PM Bug #8931 (Resolved): Service Watchdog PHP Errors

PHP errors
PHP ERROR: Type: 1, File: /usr/local/pkg/servicewatchdog.inc, Line: 83, Message: Uncaught Error: ...
Chris Linstruth

09/19/2018

06:44 PM Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
Thanks for this nifty feature. It works well in most cases.
I've seen an issue with some DNS-Providers which are n...
Markus Barckmann
09:40 AM Bug #8918 (Feedback): OpenVPN Client Export: First user does not get username added to filename
Fix coming in OpenVPN Client Export package version 1.4.17_2 Jim Pingle
09:39 AM Bug #8918 (Resolved): OpenVPN Client Export: First user does not get username added to filename
When attempting to export a VPN configuration for a user, if that user's ID is 0 then the username is not added to th... Jim Pingle
07:34 AM Bug #8916 (Not a Bug): Package Shellcmd doesn't install
> 2.4.4-DEVELOPMENT (amd64)
> built on Tue Sep 04 10:04:12 EDT 2018
> FreeBSD 11.2-RELEASE-p2
That snapshot is v...
Jim Pingle

09/18/2018

10:49 PM Bug #8904: Shellcmd: pfBlocker's earlyshellcmd is being removed at boot
Added *Shellcmd package* functionality to *pfBlockerNG-devel* here:
https://github.com/pfsense/FreeBSD-ports/pull/56...
BBcan177 .
09:16 AM Bug #8904 (Feedback): Shellcmd: pfBlocker's earlyshellcmd is being removed at boot
A previous fix to shellcmd to address PHP errors changed it from using references to using a copy of the config, whic... Jim Pingle
09:29 PM Bug #8916 (Not a Bug): Package Shellcmd doesn't install
2.4.4-DEVELOPMENT (amd64)
built on Tue Sep 04 10:04:12 EDT 2018
FreeBSD 11.2-RELEASE-p2
PHP ERROR: Type: 1, F...
BBcan177 .
05:51 AM Bug #8909 (New): tinc package makes /rc.newwanip looping forever
I just realizd that each time the tincd(8) daemon is started, pfSense detects the new IP address on its dedicated int... Andrew Hotlab

09/17/2018

12:05 PM Bug #8904: Shellcmd: pfBlocker's earlyshellcmd is being removed at boot
On install, shellcmd imports the items from the earlyshellcmd tags and reformats them into the shellcmd package setti... Jim Pingle
08:56 AM Bug #8899 (Resolved): AWS-ipsec error
Fixed in commit:59e2c01227cc on factory-ports, aws-wizard pkg version 0.7_2 will contain the fix when it builds. Jim Pingle
07:27 AM Bug #8508 (Resolved): Haproxy: Selecting mode tcp with SSL in backend does not activate SSL in the server config
Jim Pingle
01:58 AM Bug #8508: Haproxy: Selecting mode tcp with SSL in backend does not activate SSL in the server config
Yes, this seems to be fixed for a while now (the upgrade was fun since it broke my workaround :D)). Thanks! Florian Apolloner
05:43 AM Bug #8903: pfBlockerNG: PHP error
Sorry, you're right, this is the -devel package. I'd forgotten I'd installed that.
I agree the earlyshellcmd issue...
Steve Wheeler
04:22 AM Feature #8523: make cookie inserted by haproxy secure
Thank you! I do see the secure option in haproxy version 0.59_9.
Where did you add another options?
Alex Kolesnik

09/16/2018

10:33 PM Bug #8903: pfBlockerNG: PHP error
Posted two PR to fix these issues and add other improvements.
https://github.com/pfsense/FreeBSD-ports/pull/567
h...
BBcan177 .
08:11 PM Bug #8903: pfBlockerNG: PHP error
Steve, Are you sure this is not from pfBlockerNG-devel?
https://github.com/pfsense/FreeBSD-ports/blob/devel/net/pf...
BBcan177 .
01:07 PM Bug #8903: pfBlockerNG: PHP error
This error looks to be triggering an unrequired config update:... Steve Wheeler
10:51 AM Bug #8903: pfBlockerNG: PHP error
Sorry clipped the line in the copy there. Actual warning is:... Steve Wheeler
10:50 AM Bug #8903 (Resolved): pfBlockerNG: PHP error
Seeing this on a clean install of pfSense-2.4.4.r.20180914.1530 and restoring an existing config.... Steve Wheeler
01:08 PM Bug #8904 (Resolved): Shellcmd: pfBlocker's earlyshellcmd is being removed at boot
The Shellcmd package is incorrectly removing the pfBlocker early shellcmd entry at each boot.... Steve Wheeler
08:16 AM Bug #8902: HAproxy package not use custom DNS for lookup on apply new config
Pi Ba wrote:
> Hmm, i suppose your right.
>
> You could add below to the 'global advanced pass thru', that should...
DRago_Angel [InV@DER]
07:48 AM Bug #8902: HAproxy package not use custom DNS for lookup on apply new config
Hmm, i suppose your right.
You could add below to the 'global advanced pass thru', that should solve the issue.
<...
Pi Ba
06:02 AM Bug #8902 (New): HAproxy package not use custom DNS for lookup on apply new config
Package Version:
haproxy-devel net 0.59_9
Package Dependencies:
haproxy-devel-1.8.13 
cat /etc/version
2.4.3...
DRago_Angel [InV@DER]

09/15/2018

10:22 PM Bug #8900: pfBlockerNG
Fixed: https://github.com/pfsense/FreeBSD-ports/pull/567 BBcan177 .
04:05 PM Bug #8900 (Resolved): pfBlockerNG
Crash report begins. Anonymous machine information:
Current Base System 2.4.4.r.20180914.1544
amd64
11.2-RELE...
Chris Macmahon
02:53 PM Bug #8899 (Resolved): AWS-ipsec error
2.4.4-RC (amd64)
built on Fri Sep 14 15:45:39 EDT 2018
FreeBSD 11.2-RELEASE-p3
Factory install aws-wizard: F...
Chris Macmahon
09:20 AM Feature #8523: make cookie inserted by haproxy secure
I've added a bunch of cookie options.. Does it work for you? Pi Ba
09:19 AM Bug #8508: Haproxy: Selecting mode tcp with SSL in backend does not activate SSL in the server config
The server configuration now allows separate activation of ssl for regular traffic and for health-checks. That should... Pi Ba
07:02 AM Bug #8670 (Resolved): HAProxy PHP error
Chris Macmahon
07:02 AM Bug #8670: HAProxy PHP error
I am no longer seeing these errors.
Chris Macmahon

09/13/2018

08:44 AM Bug #8631 (Resolved): syslog-ng - logrotate incorrectly configured to rotate TLS key
Jim Pingle

09/11/2018

05:18 PM Bug #8887: Squid Proxy Interface not assignee to IPv6
For fix this issue maybe better not add IP at all if look to documentation: http://www.squid-cache.org/Versions/v3/3.... DRago_Angel [InV@DER]
05:06 PM Bug #8887 (Resolved): Squid Proxy Interface not assignee to IPv6
Package Version:
squid www 0.4.43_1
Package Dependencies:
squid-3.5.27_3
cat /etc/version
2.4.3-RELEASE
c...
DRago_Angel [InV@DER]
02:29 PM Bug #8885: HAProxy "Log hostname parameter broke local syslog
Package Version:
haproxy-devel net 0.59_9
Package Dependencies:
haproxy-devel-1.8.13 

cat /etc/version
2.4....
DRago_Angel [InV@DER]
02:14 PM Bug #8885 (Closed): HAProxy "Log hostname parameter broke local syslog
DRago_Angel [InV@DER]
01:41 PM Bug #8670 (Feedback): HAProxy PHP error
Jim Pingle

09/10/2018

12:51 PM Bug #8139: LADVD not working on LAGG interfaces
Based on the discussion in the repo (https://github.com/sspans/ladvd/issues/36), the FreeBSD port has been updated: h... Tom Cosmos
04:37 AM Feature #8232: different ssl options based on the sni name
Hi Pi Ba,
looks like this patch not work with the most recent version of pfsense 2.4.3 P1. Can you check please?...
Zoltan Beck

09/09/2018

06:37 PM Bug #8139: LADVD not working on LAGG interfaces
The creator of the LADVD package is saying this is likely fixed in his 1.1.2 implementation, and PFSense is still usi... Tom Cosmos

09/08/2018

03:16 PM Bug #8139: LADVD not working on LAGG interfaces
Created issue to track in official repo:
https://github.com/sspans/ladvd/issues/36
Tom Cosmos

09/07/2018

01:32 PM Bug #8103 (Resolved): squid monitor using hard coded logs location
Jim Pingle
01:30 PM Bug #8103: squid monitor using hard coded logs location
Issue can be closed, already merged on GitHub
https://github.com/pfsense/FreeBSD-ports/commit/b7c4da7878f8da6169c5...
Nano Caiordo

09/06/2018

04:38 PM Feature #8878 (Resolved): Propagate user's description field into QR code for FreeRADIUS
Hi,
it is often desirable (esp. when you have more than one identity added in your Google Auth mobile app) to dist...
Juraj Lutter

09/04/2018

02:36 PM Bug #8873 (Feedback): PHP7 warning in squidguard
Fix pushed. 824d08577196346be0e7d24d925bf3338208bd89
also cherry-picked to 2.4.4 3c1f879caabe7f9059e0a0143689d2d0b3c...
Anonymous
11:15 AM Bug #8873 (Resolved): PHP7 warning in squidguard
[02-Sep-2018 21:00:29 Etc/UTC] PHP Warning: Use of undefined constant GIF_BODY - assumed 'GIF_BODY' (this will throw... Anonymous
02:31 PM Bug #8872: PHP7 error in squid
Cherry-picked to 2.4.4 as well d47455c16c985d3d98fea422855a0dc7bf78c657 Anonymous
02:28 PM Bug #8872 (Feedback): PHP7 error in squid
Fix Pushed 90c367bf2f2fcd61ed631bd3c4fd6634a253b5d6. Anonymous
11:14 AM Bug #8872 (Resolved): PHP7 error in squid
[02-Sep-2018 21:45:02 Etc/UTC] PHP Fatal error: Uncaught Error: Call to undefined function split() in /usr/local/pkg... Anonymous
02:51 AM Bug #8871: Suricata: input not validated properly in suricata_rulesets.php results in wrong argument passed to in_array()
Forgot to set Category -> Suricata.
Running b0703dcab3c(RELENG_2_4_4) (snapshot) with latest Suricata package availa...
L H
02:50 AM Bug #8871 (Resolved): Suricata: input not validated properly in suricata_rulesets.php results in wrong argument passed to in_array()
Spotted this today:... L H

09/02/2018

10:35 PM Feature #8869: HAproxy should use RFC 7919 DH parameter files
It should not let you use a self-generated DH parameter file, but use the stock system DH parameter files which are f... Jim Pingle
10:20 PM Feature #8869 (New): HAproxy should use RFC 7919 DH parameter files
It would be really nice to have a UI option to generate a custom DH parameter file for HAproxy to use.
The origina...
Stéphane Lapie

08/31/2018

05:36 AM Bug #8790 (Resolved): getting PHP error regarding HAproxy pkg
Anonymous
02:08 AM Bug #8790: getting PHP error regarding HAproxy pkg
Hi!
All OK, thanks!
Greg M

08/30/2018

09:53 PM Bug #8829: Keep settings checkbox under Global Settings does not behave as expected
On a fresh install of 2.4.4.a.20180830.1356, when snort 3.2.9.7_2 is installed the output is :... Anonymous
09:30 PM Bug #8829 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
Anonymous
09:17 PM Bug #8829: Keep settings checkbox under Global Settings does not behave as expected
On version 3.2.9.7_2, installed suricata, configured some settings, unchecked the Keep settings checkbox, uninstalled... Anonymous
11:37 AM Bug #8829 (Feedback): Keep settings checkbox under Global Settings does not behave as expected
This should now work as expected. c5d12ed2814f7ed5c002fb71fae6d992708bc4f9
Snort version 3.2.9.7_2
Anonymous
09:49 PM Bug #8828 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
Anonymous
09:49 PM Bug #8828: Keep settings checkbox under Global Settings does not behave as expected
On a fresh install of 2.4.4.a.20180830.1356, when suricata 4.0.13_8 is installed the output is :... Anonymous
05:50 PM Bug #8828: Keep settings checkbox under Global Settings does not behave as expected
On version 4.0.13_8, installed suricata, configured some settings, unchecked the Keep settings checkbox, uninstalled ... Anonymous
11:17 AM Bug #8828 (Feedback): Keep settings checkbox under Global Settings does not behave as expected
Anonymous
11:17 AM Bug #8828: Keep settings checkbox under Global Settings does not behave as expected
I found that the code to remove the package forgot to use 'write_config()' after removing the Suricata configurations... Anonymous
04:49 PM Bug #8670: HAProxy PHP error
This issues with haproxy should be fixed with current 0.59_11 version. If not please let me know the exact error you ... Pi Ba
04:47 PM Bug #8790: getting PHP error regarding HAproxy pkg
Should be fixed with current 0.59_11 version. If not please let me know the exact error you get and when that happens. Pi Ba
04:47 PM Bug #8833: haproxy getarraybyref error
Should be fixed with current 0.59_11 version. If not please let me know the exact error you get and when that happens. Pi Ba
07:59 AM Bug #8620 (Resolved): arpwatch database page is not accessible
Jim Pingle
07:59 AM Bug #8620: arpwatch database page is not accessible
Gitsynced, retested - now looks good, no arpwatch duplicated processes Vladimir Lind
07:51 AM Bug #8620: arpwatch database page is not accessible
OK to test again after a gitsync or an update to a snapshot which includes my last commit on #8850 Jim Pingle
07:40 AM Bug #8620: arpwatch database page is not accessible
Looks like one line of my commit is missing, will push a correction momentarily. The package is OK, the problem is on... Jim Pingle
04:44 AM Bug #8620: arpwatch database page is not accessible
Yup, seeing the same on Wed Aug 29 19:26:24 EDT 2018 with pfSense-pkg-arpwatch-0.1.1:
root 37039 0.0 0.3 ...
Vladimir Lind
 

Also available in: Atom