Activity
From 04/16/2020 to 05/15/2020
05/15/2020
-
01:52 PM Bug #7654 (Resolved): Can't use a LDAP search filter containing an accent
- Supplied string is saved as expected and without error.
-
11:11 AM Feature #10500 (Pull Request Review): Build HAProxy Package with buildin Prometheus exporter
-
10:57 AM Feature #10500: Build HAProxy Package with buildin Prometheus exporter
- https://github.com/pfsense/FreeBSD-ports/pull/861
-
08:35 AM Bug #9635 (Pull Request Review): lldpd (and probably ladvd) doesn't work on units with an integrated switch
-
08:34 AM Bug #10502 (Pull Request Review): LLDP spamming errors on Netgate XG-7100
05/14/2020
-
10:15 AM Bug #4497 (Resolved): Using a specific password within FreeRADIUS user management causes pfSense to restore a backup!
- Field is CDATA escaped in the config. Password @W!f!4c3ss.@ was saved without error and present in the config after.
-
08:40 AM Bug #10502: LLDP spamming errors on Netgate XG-7100
- https://github.com/pfsense/FreeBSD-ports/pull/860
-
08:39 AM Bug #9635: lldpd (and probably ladvd) doesn't work on units with an integrated switch
- https://github.com/pfsense/FreeBSD-ports/pull/860
-
05:17 AM Bug #9635 (New): lldpd (and probably ladvd) doesn't work on units with an integrated switch
- After I manually changed it to:
>
> After I manually changed it to:
> /usr/local/sbin/lldpd -l -I 'lagg0.4089' -C... -
06:45 AM Feature #10557: Add Zabbix 5.0 LTS (agent and proxy) packages
- The latest FreeBSD ports version is 4.4.7:
http://pkg.freebsd.org/freebsd:12:x86:64/latest/All/zabbix44-agent-4.4.7.... -
05:31 AM Feature #10557 (Resolved): Add Zabbix 5.0 LTS (agent and proxy) packages
- New release from zabbix. Please add this new version.
https://www.zabbix.com/rn/rn5.0.0
05/12/2020
-
10:52 AM Bug #10552 (Resolved): Typo in OpenBGPD's settings page
- There's a typo in OpenBGPD's settings page. Below "General Options" it says "Router IP" when in fact it should be say...
05/11/2020
05/10/2020
-
08:10 PM Feature #10547 (New): Add package addrwatch. Addrwatch is like arpwatch but works with ipv4 and ipv6
- From the developer website:
> This is a tool similar to arpwatch. It main purpose is to monitor network and log di...
05/09/2020
-
10:00 AM Feature #10541 (Feedback): Squid failover and load balancing
- https://forum.netgate.com/topic/97328/work-in-progress-squid-failover-and-load-balancing-for-pfsense:
I'm seeking a ... -
08:57 AM Feature #10479: Keep settings after deinstall option
- also remove /usr/local/etc/raddb on package uninstall:
https://github.com/pfsense/FreeBSD-ports/pull/859 -
08:51 AM Bug #10445: BIND crashed when added RPZ. rpz is not a master or slave zone.
- I found that the issue was occurring for me because the *response-policy* setting was defined in the global *options*...
-
03:00 AM Bug #10522 (Resolved): Telegraf, Netstat fails (missing lsof)
- Good:...
05/08/2020
-
07:51 PM Bug #10503: Flapping any GW in multi-WAN influences restating all IPsec tunnels in FRR which leads to dropping all IPsec VTI static routes and related BGP issues
- Working around the issue by splitting FRR from Vti
- Add new VIPs to Local host. (one to each side , do not use th... -
07:28 AM Bug #10536 (Not a Bug): Haproxy doesnt start and exits with error Lua init: table index is nil
- That has to be something in your configuration, it's not a problem with the package in general. This site is not for ...
-
04:42 AM Bug #10536 (Not a Bug): Haproxy doesnt start and exits with error Lua init: table index is nil
- I have just downgraded my SG-3100 from 2.4.5 to 2.4.4-p3 (due to the blocking cpu causing a bit lag.) I made a backup...
05/06/2020
-
01:22 PM Feature #9874 (Resolved): safesearch enforcing
- pfBlockerNG 2.2.5_32
works as expected -
01:09 PM Feature #9833: ACME: add ability to use custom ACME server
- I'll add my voice to this request. I just set up a local step-ca ACME server and would love to use it with pfSense.
-
10:33 AM Todo #10528 (Resolved): OpenVPN client export - 2.4.9
- All done and tested. Exported installer is 2.4.9 and it works (installs, connects, etc) as expected.
-
09:57 AM Todo #10528 (In Progress): OpenVPN client export - 2.4.9
05/05/2020
-
10:28 AM Bug #10522: Telegraf, Netstat fails (missing lsof)
- Thanks very much for the quick action!
-
10:14 AM Bug #10522 (Feedback): Telegraf, Netstat fails (missing lsof)
- PR has been merged. Thanks!
-
08:22 AM Bug #10522 (Pull Request Review): Telegraf, Netstat fails (missing lsof)
-
05:14 AM Bug #10522: Telegraf, Netstat fails (missing lsof)
- correct, see https://github.com/influxdata/telegraf/blob/master/plugins/inputs/net/NETSTAT_README.md:...
-
08:24 AM Todo #10528 (Resolved): OpenVPN client export - 2.4.9
- OpenVPN client 2.4.9 was released.
It would be cool to have it updated: https://openvpn.net/community-downloads/
...
05/04/2020
-
02:11 PM Bug #10522: Telegraf, Netstat fails (missing lsof)
- Yes, it works for me as well - after I manually install lsof. The reason I raised this is that lsof should be include...
-
01:57 PM Bug #10522: Telegraf, Netstat fails (missing lsof)
- can't reproduce, it work for me
[2.4.5-RELEASE][root@pfSense.trmultiservice.lab]/root: telegraf --test --input-filte... -
02:02 PM Bug #7654 (Feedback): Can't use a LDAP search filter containing an accent
-
08:59 AM Bug #10526: Package pfBlockerNG Crashes on Alert view
- Looks like your alert log was allowed to grow too large.
Post on https://forum.netgate.com/category/62/pfblockerng... -
08:54 AM Bug #10526 (New): Package pfBlockerNG Crashes on Alert view
- Error Message:
Fatal error: Allowed memory size of 536870912 bytes exhausted (tried to allocate 513799651 bytes) in ...
05/03/2020
-
07:09 PM Bug #10487: Telegraf package not sending logs to influxdb server
- I confirm that I encounter the same issue with telegraf version 0.9_3 and pfsense 2.4.5 (on a Netgate SG-1100) device
05/02/2020
-
10:27 PM Bug #10522 (Resolved): Telegraf, Netstat fails (missing lsof)
- Enabling netstat from the web interface (as part of Telegraf) ... fails. The error message can be seen from a command...
05/01/2020
-
10:26 AM Feature #9874 (Feedback): safesearch enforcing
- PR has been merged. Thanks!
-
07:27 AM Feature #9874 (Pull Request Review): safesearch enforcing
-
12:53 AM Feature #9874: safesearch enforcing
- Grimson Gretzleburg wrote:
> You forgot to add "/www/pfblockerng/pfblockerng_safesearch.php" to the package meta dat... -
08:27 AM Bug #9537: One month offset in displayed data between time changes
- The underlying vnstat correctly reports the monthly data when run from the command line.
This is from vnstat:
v... -
03:54 AM Bug #10475 (Resolved): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- arpwatch 0.2.0_3 - OK
-
03:42 AM Feature #10479 (Resolved): Keep settings after deinstall option
- 0.15.7_15 works as expected
-
02:05 AM Bug #9424 (Resolved): arpwatch package logs CARP MAC address changes
- works fine on 2.4.5/2.5 and arpwatch pkg 0.2.0_3
04/30/2020
-
09:17 PM Bug #10516 (New): FRR Access list
- When using Access list on BGP neighbor> Peer Filtering (in/out) , All routes will be blocked even if the rule was per...
-
06:29 PM Feature #9874: safesearch enforcing
- You forgot to add "/www/pfblockerng/pfblockerng_safesearch.php" to the package meta data, so it's not included in the...
-
01:36 PM Feature #9874 (Feedback): safesearch enforcing
- PR has been merged. Thanks!
-
12:48 PM Bug #10444: FRR will not start in 2.4.5 aarch64
- Luiz told me he'd work on this
-
09:25 AM Feature #10479 (Feedback): Keep settings after deinstall option
- PR has been merged. Thanks!
-
08:57 AM Feature #10479 (Pull Request Review): Keep settings after deinstall option
-
06:28 AM Feature #10479: Keep settings after deinstall option
- small fix:
https://github.com/pfsense/FreeBSD-ports/pull/855 -
09:22 AM Bug #9211 (Pull Request Review): GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
-
09:17 AM Bug #9211: GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
- https://forum.netgate.com/topic/153105/ntopng-update-to-v0-8-13_4-crashes
clean install fix:
https://github.com/p... -
07:33 AM Bug #9211 (Feedback): GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
- PR has been merged. Thanks!
-
07:33 AM Bug #10475 (Feedback): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- PR has been merged. Thanks!
04/29/2020
-
12:29 AM Bug #10507 (Resolved): Unable to use forwarders
- When setting the forwarders in the settings tabs, the forwarders are added under the general "options" section.
Howe...
04/28/2020
-
11:58 PM Bug #10506 (Resolved): Recursion not working on fresh BIND install
- I just installed BIND for the first time on a pfSense 2.4.5. After installation, despite the fact that I created a Vi...
-
02:38 PM Bug #10475: pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- So the bug is the clear database checkbox was not being honored ever? "oops"
-
02:32 PM Bug #10475 (Pull Request Review): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
-
10:09 AM Bug #10475 (New): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- fix for https://github.com/pfsense/FreeBSD-ports/pull/844
to correctly check 'clear_database' value
otherwise arpwa... -
12:22 PM Bug #10429: Status Traffic Total broken 2.4.5
- I can't replicate anything like this. It's been working solid here, and the data is sane.
The only thing I did not... -
08:46 AM Bug #9211 (Pull Request Review): GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
-
03:31 AM Bug #9211: GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
- Fix:
https://github.com/pfsense/FreeBSD-ports/pull/853 -
08:24 AM Bug #10503 (New): Flapping any GW in multi-WAN influences restating all IPsec tunnels in FRR which leads to dropping all IPsec VTI static routes and related BGP issues
- There are 2 nodes with a multi-WAN setup: 2 WANs, 2 Gateways. The are 2 IPsec VTI tunnel every working through its ow...
04/27/2020
-
01:26 PM Bug #10502: LLDP spamming errors on Netgate XG-7100
- I'm on 2.4.5 now. This error message appears for each ix0-4 and repeat each minute. Lldpd work, at least I can see my...
-
12:07 PM Bug #10502: LLDP spamming errors on Netgate XG-7100
- Please provide more information about this issue.
Seems like https://redmine.pfsense.org/issues/9635
04/26/2020
-
07:05 PM Bug #10502 (In Progress): LLDP spamming errors on Netgate XG-7100
- ...
-
02:16 AM Feature #10500: Build HAProxy Package with buildin Prometheus exporter
- This only apply for HAProxy 2.0 and higher*
-
02:14 AM Feature #10500 (Resolved): Build HAProxy Package with buildin Prometheus exporter
- Now if you try use in fronend:...
04/24/2020
-
09:27 AM Bug #9776 (Resolved): Wrong function in squidguard_log.php
- squidGuard 1.16.18_5 - works fine
-
09:27 AM Bug #9350 (Resolved): not appear proxy config
- squidGuard 1.16.18_5 - works fine
-
08:36 AM Feature #10474 (Resolved): Suppress notifications for specific MACs
- arpwatch 0.2.0_2 works as expected
-
08:02 AM Bug #10494 (Resolved): Snort package Logs Management process not purging correctly
-
07:46 AM Bug #10494: Snort package Logs Management process not purging correctly
- The pull requests have been merged. This bug is corrected in the latest Snort package versions 3.2.9.11 (for pfSense-...
-
03:54 AM Bug #10475 (Resolved): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- arpwatch 0.2.0_2 - works as expected
-
02:00 AM Bug #10369 (Resolved): Remote OpenVPN server protocol definition
- 1.4.22 - legacy client export is OK now
-
01:45 AM Bug #10490 (Resolved): Syslog-ng syntax test failed
- 1.15_5 works as expected
-
01:41 AM Feature #9003 (Resolved): Add 'Copy Running to Saved' option to the raw config
- now it works as expected on FRR 0.6.4_4
-
01:36 AM Bug #10442 (Resolved): ACME: special characters in descriptions trigger silent error and rollback
- tested acme 0.6.7 - now you can use any characters in the Description field
-
01:34 AM Bug #10452 (Resolved): acme - new DNS-Api namemaster.de in overview hash visible
- acme 0.6.7 - resolved
04/23/2020
-
05:46 PM Bug #10490: Syslog-ng syntax test failed
- Works OK with version 1.15_5.
Thanks! -
12:40 PM Bug #10490 (Feedback): Syslog-ng syntax test failed
- PR has been merged. Thanks!
-
07:34 AM Bug #10490 (Pull Request Review): Syslog-ng syntax test failed
-
02:42 AM Bug #10490: Syslog-ng syntax test failed
- On initial setup, syslogng_build_cert() tries to get the parameters from $config, but it needs to get it from $post, ...
-
04:10 PM Bug #10494: Snort package Logs Management process not purging correctly
- Pull requests have been submitted to both the pfSense-2.4.5-RELEASE and pfSense-2.5-DEVEL branches to correct this is...
-
01:19 PM Bug #10494: Snort package Logs Management process not purging correctly
- If one of the pfSense guys can edit the title of this Issue, please correct my typo in "Management" in the title.
-
01:17 PM Bug #10494: Snort package Logs Management process not purging correctly
- Creating this and assigning it to me for tracking purposes. The fix for this will be submitted shortly.
Bill -
01:16 PM Bug #10494 (Resolved): Snort package Logs Management process not purging correctly
- The Logs Management process in Snort, when enabled, does not purge rotated alert logs that have exceeded the configur...
-
12:43 PM Feature #9762 (Feedback): Squid Reverse Proxy Change redir domain(s) to use regex
- PR has been merged. Thanks!
-
12:43 PM Bug #9776 (Feedback): Wrong function in squidguard_log.php
- PR has been merged. Thanks!
-
12:43 PM Bug #10369 (Feedback): Remote OpenVPN server protocol definition
- PR has been merged. Thanks!
-
12:42 PM Feature #10479 (Feedback): Keep settings after deinstall option
- PR has been merged. Thanks!
-
12:41 PM Feature #9003 (Feedback): Add 'Copy Running to Saved' option to the raw config
- PR has been merged. Thanks!
-
12:40 PM Bug #10442 (Feedback): ACME: special characters in descriptions trigger silent error and rollback
- PR has been merged. Thanks!
-
12:40 PM Bug #10452 (Feedback): acme - new DNS-Api namemaster.de in overview hash visible
- PR has been merged. Thanks!
-
07:25 AM Bug #10452 (Pull Request Review): acme - new DNS-Api namemaster.de in overview hash visible
-
01:52 AM Bug #10452: acme - new DNS-Api namemaster.de in overview hash visible
- NameMaster.de uses _nm_sha256_ field name for password hash,
but only fields containing _key, secret, password_ or _... -
12:39 PM Feature #10474 (Feedback): Suppress notifications for specific MACs
- PR has been merged. Thanks!
-
12:39 PM Bug #10475 (Feedback): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- PR has been merged. Thanks!
04/22/2020
-
12:38 PM Feature #10486: Feature Request: Ability to transmit to remote syslog server via TCP
- Jim Pingle wrote:
> This site is not for support or diagnostic discussion.
>
> For assistance in solving problems... -
12:20 PM Feature #10486: Feature Request: Ability to transmit to remote syslog server via TCP
- This site is not for support or diagnostic discussion.
For assistance in solving problems, please post on the "Net... -
12:14 PM Feature #10486: Feature Request: Ability to transmit to remote syslog server via TCP
- Jim Pingle wrote:
> This is already possible with the syslog-ng package. The base system syslog daemon does not supp... -
12:09 PM Bug #10490 (Resolved): Syslog-ng syntax test failed
- Steps to reproduce:
-Install syslog-ng on a new pfSense instance, version 1.15_4;
-go to Package->Services: Syslog-... -
11:43 AM Bug #10476: Services - Acme - Certificates using loopia API
- Tobias Müllauer wrote:
> Jim Pingle wrote:
> > The TTL value of @60@ is hardcoded in the "dns_loopia.sh script":htt...
04/21/2020
-
01:07 PM Bug #10487 (New): Telegraf package not sending logs to influxdb server
- On SG-1100, running 2.4.5-RELEASE, with pfSense-pkg-Telegraf-0.9_3, the Telegraf package does not function as expecte...
-
11:02 AM Feature #10486 (Rejected): Feature Request: Ability to transmit to remote syslog server via TCP
- This is already possible with the syslog-ng package. The base system syslog daemon does not support TCP.
-
10:58 AM Feature #10486 (Rejected): Feature Request: Ability to transmit to remote syslog server via TCP
- For those of us who care about our logs and want to ensure we don't drop events, it's standard practice to configure ...
-
11:00 AM Feature #10485 (Rejected): Feature Request: Ability to leverage a blocklist by domain name or URL, such as at https://www.cyberthreatcoalition.org/ -- the new Cyber Threat Coalition site.
- pfBlockerNG can already reject by domain -- reach out on the forum and raise the topic there: https://forum.netgate.c...
-
10:56 AM Feature #10485 (Rejected): Feature Request: Ability to leverage a blocklist by domain name or URL, such as at https://www.cyberthreatcoalition.org/ -- the new Cyber Threat Coalition site.
- There's a blocklist by domain name or URL at https://www.cyberthreatcoalition.org/
-- the new Cyber Threat Coalition... -
08:02 AM Feature #9003 (Pull Request Review): Add 'Copy Running to Saved' option to the raw config
-
03:50 AM Feature #9003: Add 'Copy Running to Saved' option to the raw config
- Renato Botelho wrote:
> PR has been merged. Thanks!
js function configCheck() is does not exist
This PR adds it...
04/20/2020
-
10:13 AM Feature #10479 (Pull Request Review): Keep settings after deinstall option
-
09:41 AM Feature #10479: Keep settings after deinstall option
- https://github.com/pfsense/FreeBSD-ports/pull/845
-
10:11 AM Bug #10476: Services - Acme - Certificates using loopia API
- Jim Pingle wrote:
> The TTL value of @60@ is hardcoded in the "dns_loopia.sh script":https://github.com/acmesh-offic... -
08:57 AM Bug #10476 (Needs Patch): Services - Acme - Certificates using loopia API
- The TTL value of @60@ is hardcoded in the "dns_loopia.sh script":https://github.com/acmesh-official/acme.sh/blob/mast...
-
08:52 AM Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
- Rules shouldn't be needed for each individual L2TP interface. There is an interface group called "l2tp" which handles...
-
08:48 AM Feature #10474 (Pull Request Review): Suppress notifications for specific MACs
-
08:29 AM Bug #10475 (Pull Request Review): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
04/19/2020
-
03:30 AM Bug #10385 (Resolved): Pb with Username authorized characters when OTP is disabled
- tested on 2.4.5/2.5 with freeradius3 0.15.7_13
works as expected - allows you to use special characters in the use... -
03:21 AM Feature #10479 (Resolved): Keep settings after deinstall option
- Currently, it is not possible to clear FreeRADIUS settings except with the backup / restore configuration.
It will...
04/18/2020
-
05:55 PM Bug #10476 (Resolved): Services - Acme - Certificates using loopia API
- Hello i am trying to add certificate from letsecrypt using Acme.
I try diferent setup but it seams Acme try to ad... -
01:28 PM Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
- Something still needs to be fixed.
Either the rule needs to be applied to any/all L2TP interfaces created, or the ... -
06:35 AM Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
- Mpd5 will create new L2TP interfaces for each client:
l2tp0, l2tp1, l2tp2 etc..
The only way to apply firewall ru... -
12:44 PM Bug #10475 (Resolved): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- I was surprised to find that upgrading the pfSense-pkg-arpwatch package today nuked all of my .dat files. There is an...
-
09:51 AM Feature #10474: Suppress notifications for specific MACs
- https://github.com/pfsense/FreeBSD-ports/pull/843
-
09:46 AM Feature #10474 (Resolved): Suppress notifications for specific MACs
- From https://forum.netgate.com/topic/151832/suppress-arpwatch-flip-flop-emails-for-bonjour-sleep-proxy:
I just set u... -
09:34 AM Bug #10261 (Resolved): Arpwatch fails to download ethercodes.dat
- Tobias Müllauer wrote:
> This is still a issue !!
>
> I have all vendors as unknown.
>
> I fix it and after a... -
09:32 AM Bug #10432 (Resolved): Arpwatch show unknown vendor
- shows correct vendors on 2.4.5/2.5 with arpwatch 0.2.0_1
04/17/2020
-
12:46 PM Feature #10472: Blocked host alert table break out by timestamp and type to allow sorting by date
- Allowing filter by date & time would also be a handy feature on that page as well if that's easier or another thought...
-
12:36 PM Feature #10472 (Resolved): Blocked host alert table break out by timestamp and type to allow sorting by date
- The blocked list doesn't by nature sort by last hit or date of creation so I have to read every entry for the most re...
-
06:18 AM Feature #9774: Squid logs / remote logs
- Allow to download log files from WebGUI feature:
https://redmine.pfsense.org/issues/10468 -
03:10 AM Feature #10466 (New): Add checkbox to Suricata blocked host view to resolve all resolvable IP's automatically
- Manually resolving individual IP's is cumbersome when I want to get a holistic view of the blocked hosts. Also, resol...
04/16/2020
-
08:08 AM Bug #10369 (Pull Request Review): Remote OpenVPN server protocol definition
-
03:14 AM Bug #10369: Remote OpenVPN server protocol definition
- OpenVPN < 2.4 doesn't support remote IPv4/IPv6 protocol definition (udp4/udp6/tcp4/tcp6),
If checkbox **Legacy Clien... -
01:05 AM Feature #10462 (Resolved): CPU Temp Screen
- Hello, is it possible to add to the lcdproc package on pfsense a screen with the CPU-Temperature? I know that is not ...
Also available in: Atom