Project

General

Profile

Activity

From 04/15/2019 to 05/14/2019

05/14/2019

11:09 PM Bug #9424: arpwatch package logs CARP MAC address changes
Just a note that upstream arpwatch from FreeBSD was updated.
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=235...
Art Manion
01:44 PM Bug #9524: HAProxy-Backend blocks routed vlan traffic
Its likely because of transparent-client-ip feature enabled in the backend of haproxy, combined with the 'bug' / miss... Pi Ba
10:26 AM Bug #9524 (Not a Bug): HAProxy-Backend blocks routed vlan traffic
This is almost certainly a configuration issue, and this site is not for support or diagnostic discussion.
For ass...
Jim Pingle
09:56 AM Bug #9524 (Not a Bug): HAProxy-Backend blocks routed vlan traffic
Hi everybody,
we have a weird haproxy-backend problem. HAProxy-backends seems to block routet traffic between two co...
Jonas Bechtel

05/12/2019

11:15 PM Bug #9502: ACME's XMLRPC restart of remote webgui sometimes retains old certificates
Jim Pingle wrote:
> I am not sure it would be related to what you saw, but you might give the newest version of the ...
Mike Barnes
11:02 AM Feature #9523: LADVD: Feature to enable setting interface descriptions
Looking at FreeNAS, they've got a much more succinct description and only added support for the -z option, which seem... Jason Unovitch
10:21 AM Feature #9523 (Resolved): LADVD: Feature to enable setting interface descriptions
Good day. I'd be interested in seeing options for the -y and -z flag to LADVD get added.
These are explain in ladv...
Jason Unovitch
05:33 AM Feature #9521 (Resolved): Upgrade to HAProxy 1.9
Some of our backends support HTTP/2, but it seems that HAProxy 1.8 only support HTTP/2 for the frontends.
The latest...
S. Debreuil

05/08/2019

08:41 AM Bug #9502: ACME's XMLRPC restart of remote webgui sometimes retains old certificates
I am not sure it would be related to what you saw, but you might give the newest version of the ACME package a try (0... Jim Pingle
08:40 AM Bug #9492 (Resolved): Cannot reload remote haproxy via ACME package
Great! Jim Pingle
08:39 AM Bug #9492: Cannot reload remote haproxy via ACME package
Works. Thx! Florian Apolloner
08:00 AM Bug #9492: Cannot reload remote haproxy via ACME package
I pushed another change just now that might help. Not sure it will, but it's worth a try.
Jim Pingle
07:57 AM Bug #9492: Cannot reload remote haproxy via ACME package
Hi Jim. Yes Haproxy did restart. While I agree that the sync error should be from something else it still seems to be... Florian Apolloner
07:58 AM Feature #9498: ACME Package: Sorting on name, expiration, etc
Pushed a new fix just now, try the next version when it shows up. Jim Pingle
01:09 AM Feature #9498: ACME Package: Sorting on name, expiration, etc
Hi!
Great job, but sorting date does not work OK.
Greg M

05/07/2019

10:03 AM Bug #9492: Cannot reload remote haproxy via ACME package
There is no error in that output related to the service restart. The error at the top is from config sync, which isn'... Jim Pingle
02:24 AM Bug #9492: Cannot reload remote haproxy via ACME package
I just installed, 0.5.7 but it still throws an error (Interestingly only on the firewall running ACME). Can I get mor... Florian Apolloner
07:53 AM Bug #9502 (Not a Bug): ACME's XMLRPC restart of remote webgui sometimes retains old certificates
That isn't possible as the code that does the sync comes before the reload, and the sync process blocks. I haven't se... Jim Pingle

05/06/2019

09:54 PM Bug #9502 (Not a Bug): ACME's XMLRPC restart of remote webgui sometimes retains old certificates
I have two hosts using HA syncing to push the certificate store from host1 (primary) to host2 (backup). ACME renewal ... Mike Barnes
01:02 PM Bug #9492 (Feedback): Cannot reload remote haproxy via ACME package
Give 0.5.7 a try when it shows up shortly. It should work. Jim Pingle
02:27 AM Bug #9492: Cannot reload remote haproxy via ACME package
OK, thanks, I was highly optimistic about having found a probable cause for a minute there, but I guess I get to go b... Mike Barnes
02:00 AM Bug #9492: Cannot reload remote haproxy via ACME package
I does not affect the webgui because it uses another xmlrpc call. It affects every normal service though. I could als... Florian Apolloner
01:02 PM Feature #9498 (Feedback): ACME Package: Sorting on name, expiration, etc
ACME pkg 0.5.7 now has search and sorting. Jim Pingle

05/05/2019

08:15 PM Bug #9492: Cannot reload remote haproxy via ACME package
Would this affect more than just haproxy? This fits a failure to restart the webui on a remote system that occurred f... Mike Barnes

05/04/2019

08:51 AM Bug #9500 (New): HAproxy does not delete non-applicable action config
The steps to reproduce this are:
# Create a HAproxy frontend
# Create an action and populate its options
# Expor...
Greg Toombs

05/03/2019

01:20 PM Bug #9355: Telegraf Package - https for InfluxDB Server
https is working for me: https://maxammann.org/posts/2019/05/pfsense-telegraf-letsencrypt/ Max Ammann
01:54 AM Bug #9211: GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
Mark Vejvoda wrote:
> I got this working on my SG-3100 by copying files from:
>
> https://centminmod.com/centminm...
Tj Ng

05/02/2019

09:50 PM Bug #9211: GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
I got this working on my SG-3100 by copying files from:
https://centminmod.com/centminmodparts/geoip-legacy/
to...
Mark Vejvoda
05:52 PM Feature #9498: ACME Package: Sorting on name, expiration, etc
The ACME package has been working flawless for me now, for well over a year, I've migrated all of my ACME certs to it... Dan Thunder
05:44 PM Feature #9498 (Resolved): ACME Package: Sorting on name, expiration, etc

The ACME package has been working flawless for me now, for well over a year, I've migrated all of my ACME certs t...
Dan Thunder

05/01/2019

02:58 PM Bug #9492 (Assigned): Cannot reload remote haproxy via ACME package
Yeah, you're right. I didn't have a setup to test that handy, but it would have to come earlier. I'll come up with a ... Jim Pingle
02:51 PM Bug #9492: Cannot reload remote haproxy via ACME package
Jim Pingle wrote:
> Fixed in ACME pkg v0.5.6
I just tried this and it still throws an error, to the best of my un...
Florian Apolloner
10:52 AM Bug #9492 (Feedback): Cannot reload remote haproxy via ACME package
Fixed in ACME pkg v0.5.6 Jim Pingle
10:54 AM Bug #9368 (Resolved): ACME certificates cannot have more than ~35 SAN entries due to input variable limits
Jim Pingle
10:54 AM Feature #8613 (Resolved): pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
Jim Pingle
10:54 AM Feature #8490 (Resolved): pfSense-pkg-acme: acme_certificates_edit.php - Add ability to specify (vs generate) private key
Jim Pingle
10:53 AM Feature #8211 (Resolved): ACME cron job <- log activity
Jim Pingle
10:52 AM Bug #9340 (Feedback): Buypass CA does not support wildcard
Fixed in ACME pkg v0.5.6 Jim Pingle
10:14 AM Bug #9495: AWS VPC VPN wizard produces incorrect config (SHA256 should be SHA1)
So far I have been unable to replicate this.
Tested with a 7100 and 1100 against us-west-2 and us-east-2 using AWS W...
Steve Wheeler
10:06 AM Bug #9497: AWS VPN Wizard: WebGUI times out.
When you apply the settings at step 3 the GUI times out. If you check AWS suring that time the Virtual Private Gatewa... Steve Wheeler

04/30/2019

01:42 PM Bug #9497 (New): AWS VPN Wizard: WebGUI times out.
When creating a new VPN using the AWS VPN Wizard the webgui times out at step 3 going to step 4 and also at step 4 go... Steve Wheeler
09:53 AM Bug #9495: AWS VPC VPN wizard produces incorrect config (SHA256 should be SHA1)
Sorry, forgot to add: in looking over the download configuration from AWS, I noticed that it also recommends the Phas... Frank Hecker
09:24 AM Bug #9495 (New): AWS VPC VPN wizard produces incorrect config (SHA256 should be SHA1)
I was trying to create a site-to-site VPN to my AWS default VPC in the us-west-2 region using the AWS VPC VPN Wizard ... Frank Hecker

04/29/2019

05:20 AM Bug #9492: Cannot reload remote haproxy via ACME package
If I replace:... Florian Apolloner
05:14 AM Bug #9492 (Resolved): Cannot reload remote haproxy via ACME package
The acme instance cannot restart a remote haproxy service. I looked at the code and found this snippet: https://githu... Florian Apolloner

04/28/2019

09:53 PM Bug #9211: GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
Looks like it :(. Anybody knows how to do a quick workaround and install 3.8 manually? or can I download the old vers... Tj Ng

04/26/2019

01:59 PM Bug #9487: FRR package sending dual Hello packets on carp (OSPF)
v 2.4.4 FRR 0.2_8 Andres Noriega
01:59 PM Bug #9487 (Rejected): FRR package sending dual Hello packets on carp (OSPF)
There is not enough information here to identify anything with certainty. Nothing about the versions, your config, et... Jim Pingle
01:56 PM Bug #9487 (Rejected): FRR package sending dual Hello packets on carp (OSPF)
I have detected FRR package on an OSPF implementation sending hello packets related to the protocol, with 2 ips
car...
Andres Noriega
01:25 PM Bug #9451 (Feedback): Add Zabbix 4.2 (agent and proxy) packages
Applied in changeset pfsense:commit:30335336358db3bcdc0ede634a4f81b7f3273c7b. Renato Botelho
12:47 PM Bug #9451: Add Zabbix 4.2 (agent and proxy) packages
PR adding make.conf items was merged and original commit adding 4.2 to ports tree cherry-picked Renato Botelho
01:08 AM Bug #9451: Add Zabbix 4.2 (agent and proxy) packages
4.2 seems to be available in FreeBSD Ports now. https://www.freebsd.org/cgi/ports.cgi?query=zabbix&stype=all Sebastian Werner
01:16 PM Bug #9486 (New): ifindex values used for softflowd are incorrect
With this patch, we now pass ifIndex values to softflowd for inclusion in the flow packets:
https://github.com/pfs...
Jesse White

04/23/2019

04:43 PM Feature #9238: Add support for Zerotier
I don't think my code would be of much use, I was just trying to get the package to work with the latest pfS version.... Corey Boyle
04:12 PM Feature #9238: Add support for Zerotier
Seconding this request!
It seems Corey has and ChanceM have already done most of the heavy lifting:
Ref: https...
Christian McDonald

04/22/2019

01:54 PM Todo #9482 (Resolved): Remove zabbix 3.2 and 3.4 from pfSense
Zabbix ports versions 3.2.x and 3.4.x will be removed from FreeBSD ports tree in Apr 2019. Remove them from pfSense Renato Botelho

04/21/2019

09:27 AM Bug #9451: Add Zabbix 4.2 (agent and proxy) packages
We don't use precompiled binaries from other sites. It has to be in FreeBSD ports. Jim Pingle
08:48 AM Todo #9200: Add DNS support for Google domain to Acme manager
I would also like to see Google Domains added into the list of supported validation methods. Don McLean

04/20/2019

11:51 PM Bug #9451: Add Zabbix 4.2 (agent and proxy) packages
there is a freebsd package on official site https://www.zabbix.com/download_agents rub man

04/17/2019

03:24 PM Bug #9481 (Closed): traffic totals documentation link goes to 404 page
The question mark on the top right corner goes
Page not found: https://www.netgate.com/docs/pfsense/index.php/Traf...
Brendon Baumgartner
08:26 AM Bug #9211: GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
It seems clear no one at Netgate is reading this ticket. :-( B D

04/15/2019

11:56 AM Bug #9473 (Resolved): Lightsquid 1.8_5 doesn't ensure line breaks between cert and key when generating cert.pem file
Fixed in lightsquid pkg version 3.0.6_6. Jim Pingle
10:44 AM Feature #6226: Add usb_modeswitch to the pfSense package repo
Docs have been updated. Jim Pingle
08:08 AM Feature #6226: Add usb_modeswitch to the pfSense package repo
Jim Pingle wrote:
> usb_modeswitch has been available from the pfSense (not FreeBSD) repo for months now, including ...
Savas Yucedag
07:23 AM Feature #6226 (Closed): Add usb_modeswitch to the pfSense package repo
usb_modeswitch has been available from the pfSense (not FreeBSD) repo for months now, including in the latest release... Jim Pingle
04:27 AM Feature #6226: Add usb_modeswitch to the pfSense package repo
khaled osama wrote:
> update for pfsense 2.4.4
>
> run the following command to support pfsense 2.4.4
>
> pkg ...
Savas Yucedag
09:32 AM Bug #9475 (Duplicate): Monitoring "add view" bug
Duplicate of #9352 Jim Pingle
09:05 AM Bug #9475 (Duplicate): Monitoring "add view" bug
1. Open Status/Monitoring
2. Expand Settings
3. Click Display Advanced
4. Click Add View and then Cancel (or Esc)
...
Alex Kolesnik
 

Also available in: Atom