Activity
From 05/01/2020 to 05/30/2020
05/30/2020
-
08:47 AM Bug #10146: squid4 obsolete options
- https://wiki.squid-cache.org/ConfigExamples/Intercept/SslBumpExplicit#Troubleshooting:
_NO_SSLv2 is relevant only fo... -
06:43 AM Bug #5168: squid doesn't function during/after HA failover
- https://github.com/pfsense/FreeBSD-ports/pull/867
This is mainly for Transparent mode and IPv6 squid configuration...
05/29/2020
-
11:31 PM Feature #10612 (Resolved): Add pfSense package for Zeek (formerly Bro) Network Security Monitor
- PR: https://github.com/pfsense/FreeBSD-ports/pull/866
-
01:00 PM Bug #10611 (Resolved): FRR applies file permissions to missing files
- When FRR starts it tries to apply file permissions to all the conf files for it's daemons. Including those that are n...
-
11:49 AM Bug #10444 (Resolved): FRR will not start in 2.4.5 aarch64
- Same here on SG-1100, services start and I am seeing neighbors and routes exchanged.
-
11:47 AM Bug #10444: FRR will not start in 2.4.5 aarch64
- This looks good in 0.6.5. Service starts as expected.
Tested an SG-1100 running 2.4.5p1. -
10:37 AM Bug #10444: FRR will not start in 2.4.5 aarch64
- Please re-test with pfSense-pkg-frr 0.6.5 / frr7-7.3.1 to make sure problem persists
-
11:06 AM Bug #10573 (Resolved): Netgate_Coreboot_Upgrade cannot write to flash in 2.4.5
-
11:04 AM Bug #10573: Netgate_Coreboot_Upgrade cannot write to flash in 2.4.5
- This works correctly in the 0.28 package.
Tested on an SG-4860 in a 2.4.5p1 snapshot.
!Selection_849.png!
-
05:07 AM Bug #10502: LLDP spamming errors on Netgate XG-7100
- So maybe we can track this issue https://github.com/vincentbernat/lldpd/issues/394 and till it (or if it will not) fi...
-
04:53 AM Bug #10502: LLDP spamming errors on Netgate XG-7100
- DRago_Angel [InV@DER] wrote:
> Additionally LLDPd with active NDP (enabled and forced) throw errors if chosen interf... -
12:43 AM Bug #10608 (Closed): Update squid port to 4.11-p2
- Current pfSense ports squid version 4.10 contains a bug that may cause a crash when users navigate the Internet,
See...
05/28/2020
-
10:06 AM Bug #10606: Snort Inline stopped working after upgrade to FreeBSD 12.1 (network traffic blocked after heavy load randomly)
- You might post on the IDS/IPS category of the forum to catch the snort developer's attention there. Similar issues ha...
-
10:02 AM Bug #10606 (New): Snort Inline stopped working after upgrade to FreeBSD 12.1 (network traffic blocked after heavy load randomly)
- Snort Inline stopped working after upgrade to FreeBSD 12.1 (network traffic blocked after heavy load randomly).
Ne... -
10:01 AM Feature #10605 (Resolved): Add certificates from Trusted Store to Squid cert store
- PfSense 2.5 has the 'add to Trust Store' feature #4068, which allows you to add pfSense certificates to /etc/ssl/cert...
05/27/2020
-
07:44 PM Bug #10602 (Resolved): Dashboard->Traffic Graphs bandwidth designations on hover pop-ups
- The scales are reporting Mbytes/sec but the pop-up is using the Mbits/sec designation: Mb/s. Needs to be corrected ...
-
07:42 PM Bug #10601 (New): Dashboard->Traffic Graphs Scale is capped for outbound
- The WAN out and LAN in scales are capped at 1 Mbyte/sec. They should adjust scale range as do the WAN in and LAN out.
-
03:08 PM Feature #10600: Add support for pfBlockerNG "Action list" feature
- It would be cool if you add both flows. Thank you guys. And about HAproxy Reload Integration it better to be done as ...
-
03:04 PM Feature #10600 (New): Add support for pfBlockerNG "Action list" feature
- Some other plugins that can use pfBlockerNG native aliases can need additional reload/restart action to load new IPs ...
-
02:48 PM Feature #9793 (Pull Request Review): Add support for HAProxy ACLs "src -f /ipalias.lst" to use pfBlockerNG IP Alias Native
-
01:24 PM Feature #9793: Add support for HAProxy ACLs "src -f /ipalias.lst" to use pfBlockerNG IP Alias Native
- Ok, thanks
-
12:15 PM Feature #9793: Add support for HAProxy ACLs "src -f /ipalias.lst" to use pfBlockerNG IP Alias Native
- it would be nice to use "hitless-reloads" with 'action list'
Please create a new redmine issue for this
-
11:43 AM Feature #9793: Add support for HAProxy ACLs "src -f /ipalias.lst" to use pfBlockerNG IP Alias Native
- Tested this patch, it works as expected, thanks!
Could you please advice what the best|correct way(command) to recre... -
11:24 AM Feature #9793: Add support for HAProxy ACLs "src -f /ipalias.lst" to use pfBlockerNG IP Alias Native
- Yep, this fine. And yes, I understand what this commit adds, thanks =)
Will try to test it now. -
11:04 AM Feature #9793: Add support for HAProxy ACLs "src -f /ipalias.lst" to use pfBlockerNG IP Alias Native
- This PR adds support for the URL Table alias type, and it can be not only the pfBlockerNG URL, but also a list on you...
-
10:39 AM Feature #9793: Add support for HAProxy ACLs "src -f /ipalias.lst" to use pfBlockerNG IP Alias Native
- Hi Viktor,
I speak with @bbcan177 about this initially and tested changing files on filesystem. Reloading of SrcIPs ... -
03:30 AM Feature #9793: Add support for HAProxy ACLs "src -f /ipalias.lst" to use pfBlockerNG IP Alias Native
- Allows to use URL Table type alias:
https://github.com/pfsense/FreeBSD-ports/pull/865 -
01:34 PM Feature #10599 (Rejected): Add support for hitless-reloads of HAproxy config
- HAproxy allows reload configs without restart of service via socket command: https://www.haproxy.com/blog/hitless-rel...
05/25/2020
-
03:56 PM Bug #10476 (Resolved): Services - Acme - Certificates using loopia API
- resolved in the latest acme pkg 0.6.8:...
05/24/2020
-
02:44 PM Bug #10502: LLDP spamming errors on Netgate XG-7100
- Additionally LLDPd with active NDP (enabled and forced) throw errors if chosen interfaces are parent or child of VLAN...
-
04:27 AM Bug #10502: LLDP spamming errors on Netgate XG-7100
- From github:
Sorry for late reply,
Yep, I have lagg on SPF+ ix0 & ix1 for reductant connection.
In the UI I select... -
10:16 AM Bug #10590 (Closed): pfBlockerNG: Invalid argument supplied for foreach()
- Dear
I received this crash report today on my router. Maybe this should be checked....
05/23/2020
-
05:12 AM Feature #9315: Add Package: dnscrypt-proxy
- And Nginx can be used as DoH server with common DNS server as upstream which can be localhost unbound server. One min...
05/22/2020
-
12:08 PM Bug #10573 (Feedback): Netgate_Coreboot_Upgrade cannot write to flash in 2.4.5
- New flashrom fails with `-p internal:ich_spi_force=yes`. It should be fixed on version 0.28
-
10:14 AM Feature #8727 (Pull Request Review): Clone button in cron pkg
-
09:11 AM Feature #8727: Clone button in cron pkg
- https://github.com/pfsense/FreeBSD-ports/pull/864
-
09:35 AM Feature #9874 (Pull Request Review): safesearch enforcing
05/21/2020
-
04:23 PM Bug #9139: telegraf: add ping for default gateway(s)
- The current ping plugin works well for pinging external IPs, but it would be really nice if the local gateway(s) were...
-
09:33 AM Bug #10444: FRR will not start in 2.4.5 aarch64
- Jim Pingle wrote:
> Luiz told me he'd work on this
Any news on this? Really looking forward to getting my bgp ba... -
03:38 AM Feature #10500: Build HAProxy Package with buildin Prometheus exporter
- If someone need how-to, I wrote it here: https://www.reddit.com/r/PFSENSE/comments/gns3qr/haproxy_20_prometheus_monit...
-
03:10 AM Feature #10500: Build HAProxy Package with buildin Prometheus exporter
- OK:...
-
03:17 AM Bug #9635 (Resolved): lldpd (and probably ladvd) doesn't work on units with an integrated switch
- tested on SG-1100 and XG-7100 - works as expected, lldpd uses the correct interfaces for integrated switches instead ...
-
01:29 AM Feature #9874: safesearch enforcing
- Minor WebGUI fix:
https://github.com/pfsense/FreeBSD-ports/pull/863
05/20/2020
-
12:41 PM Bug #10579 (Rejected): Blinkled segfaults with SEGV_MAPERR
- Hello,
blinkled seem to segfault on my pfSense.... -
10:45 AM Feature #10500 (Resolved): Build HAProxy Package with buildin Prometheus exporter
-
10:30 AM Feature #10500: Build HAProxy Package with buildin Prometheus exporter
- Tested, build-in exporter works. Thank you.
-
07:41 AM Feature #10500 (Feedback): Build HAProxy Package with buildin Prometheus exporter
- PR has been merged. Thanks!
-
07:44 AM Bug #10572 (Feedback): STARTTLS option is ignored
- PR has been merged. Thanks!
05/19/2020
-
11:52 AM Bug #10573 (Resolved): Netgate_Coreboot_Upgrade cannot write to flash in 2.4.5
- The adi_flash_util binary appears to be handing bad parameters to flashrom in pfSense 2.4.5.
It can read the flash... -
10:16 AM Bug #10572 (Pull Request Review): STARTTLS option is ignored
-
08:46 AM Bug #10572: STARTTLS option is ignored
- https://github.com/pfsense/FreeBSD-ports/pull/862
-
08:44 AM Bug #10572 (Feedback): STARTTLS option is ignored
- STARTTLS option ($usetls or "-ZZ") is never used as arg for _basic_ldap_auth_
-
10:12 AM Feature #10570: OpenVPN Export for iOS should use .ovpn12 for certs and private key
- If we change anything at all, it should only affect the Viscosity bundle export format. Nothing else.
If Apple uti... -
03:04 AM Feature #10570 (New): OpenVPN Export for iOS should use .ovpn12 for certs and private key
- https://forum.netgate.com/topic/144204/openvpn-export-for-ios-should-use-ovpn12-for-certs-and-private-key:
Have a ... -
08:39 AM Feature #10500: Build HAProxy Package with buildin Prometheus exporter
- Kilian Ries wrote:
> I'm also interested in the haproxy prometheus exporter - if you need a tester just let me know.... -
07:34 AM Feature #10500: Build HAProxy Package with buildin Prometheus exporter
- I'm also interested in the haproxy prometheus exporter - if you need a tester just let me know...
-
04:06 AM Feature #10500: Build HAProxy Package with buildin Prometheus exporter
- Hi @Viktor can I test it on my pfsense 2.4.5? And if yes - then how? I have System Patcher but doesn't know if it can...
-
03:57 AM Feature #10500: Build HAProxy Package with buildin Prometheus exporter
- https://github.com/pfsense/pfsense/pull/4320
-
04:26 AM Feature #10571: Add zabbix-proxy50 and zabbix-agent50 packages
- sorry, tried search before create ticket and doesn't saw this one.
-
04:15 AM Feature #10571 (Rejected): Add zabbix-proxy50 and zabbix-agent50 packages
- duplicate of #10557
-
04:09 AM Feature #10571 (Rejected): Add zabbix-proxy50 and zabbix-agent50 packages
- Hi, there is some days ago was been released new version of Zabbix LTS 5.0, could you please add packages for it to p...
-
04:18 AM Feature #10557: Add Zabbix 5.0 LTS (agent and proxy) packages
- https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=246447
05/18/2020
-
09:56 AM Feature #10479 (Feedback): Keep settings after deinstall option
- PR has been merged. Thanks!
-
09:56 AM Bug #9635 (Feedback): lldpd (and probably ladvd) doesn't work on units with an integrated switch
- PR has been merged. Thanks!
05/15/2020
-
01:52 PM Bug #7654 (Resolved): Can't use a LDAP search filter containing an accent
- Supplied string is saved as expected and without error.
-
11:11 AM Feature #10500 (Pull Request Review): Build HAProxy Package with buildin Prometheus exporter
-
10:57 AM Feature #10500: Build HAProxy Package with buildin Prometheus exporter
- https://github.com/pfsense/FreeBSD-ports/pull/861
-
08:35 AM Bug #9635 (Pull Request Review): lldpd (and probably ladvd) doesn't work on units with an integrated switch
-
08:34 AM Bug #10502 (Pull Request Review): LLDP spamming errors on Netgate XG-7100
05/14/2020
-
10:15 AM Bug #4497 (Resolved): Using a specific password within FreeRADIUS user management causes pfSense to restore a backup!
- Field is CDATA escaped in the config. Password @W!f!4c3ss.@ was saved without error and present in the config after.
-
08:40 AM Bug #10502: LLDP spamming errors on Netgate XG-7100
- https://github.com/pfsense/FreeBSD-ports/pull/860
-
08:39 AM Bug #9635: lldpd (and probably ladvd) doesn't work on units with an integrated switch
- https://github.com/pfsense/FreeBSD-ports/pull/860
-
05:17 AM Bug #9635 (New): lldpd (and probably ladvd) doesn't work on units with an integrated switch
- After I manually changed it to:
>
> After I manually changed it to:
> /usr/local/sbin/lldpd -l -I 'lagg0.4089' -C... -
06:45 AM Feature #10557: Add Zabbix 5.0 LTS (agent and proxy) packages
- The latest FreeBSD ports version is 4.4.7:
http://pkg.freebsd.org/freebsd:12:x86:64/latest/All/zabbix44-agent-4.4.7.... -
05:31 AM Feature #10557 (Resolved): Add Zabbix 5.0 LTS (agent and proxy) packages
- New release from zabbix. Please add this new version.
https://www.zabbix.com/rn/rn5.0.0
05/12/2020
-
10:52 AM Bug #10552 (Resolved): Typo in OpenBGPD's settings page
- There's a typo in OpenBGPD's settings page. Below "General Options" it says "Router IP" when in fact it should be say...
05/11/2020
05/10/2020
-
08:10 PM Feature #10547 (New): Add package addrwatch. Addrwatch is like arpwatch but works with ipv4 and ipv6
- From the developer website:
> This is a tool similar to arpwatch. It main purpose is to monitor network and log di...
05/09/2020
-
10:00 AM Feature #10541 (Feedback): Squid failover and load balancing
- https://forum.netgate.com/topic/97328/work-in-progress-squid-failover-and-load-balancing-for-pfsense:
I'm seeking a ... -
08:57 AM Feature #10479: Keep settings after deinstall option
- also remove /usr/local/etc/raddb on package uninstall:
https://github.com/pfsense/FreeBSD-ports/pull/859 -
08:51 AM Bug #10445: BIND crashed when added RPZ. rpz is not a master or slave zone.
- I found that the issue was occurring for me because the *response-policy* setting was defined in the global *options*...
-
03:00 AM Bug #10522 (Resolved): Telegraf, Netstat fails (missing lsof)
- Good:...
05/08/2020
-
07:51 PM Bug #10503: Flapping any GW in multi-WAN influences restating all IPsec tunnels in FRR which leads to dropping all IPsec VTI static routes and related BGP issues
- Working around the issue by splitting FRR from Vti
- Add new VIPs to Local host. (one to each side , do not use th... -
07:28 AM Bug #10536 (Not a Bug): Haproxy doesnt start and exits with error Lua init: table index is nil
- That has to be something in your configuration, it's not a problem with the package in general. This site is not for ...
-
04:42 AM Bug #10536 (Not a Bug): Haproxy doesnt start and exits with error Lua init: table index is nil
- I have just downgraded my SG-3100 from 2.4.5 to 2.4.4-p3 (due to the blocking cpu causing a bit lag.) I made a backup...
05/06/2020
-
01:22 PM Feature #9874 (Resolved): safesearch enforcing
- pfBlockerNG 2.2.5_32
works as expected -
01:09 PM Feature #9833: ACME: add ability to use custom ACME server
- I'll add my voice to this request. I just set up a local step-ca ACME server and would love to use it with pfSense.
-
10:33 AM Todo #10528 (Resolved): OpenVPN client export - 2.4.9
- All done and tested. Exported installer is 2.4.9 and it works (installs, connects, etc) as expected.
-
09:57 AM Todo #10528 (In Progress): OpenVPN client export - 2.4.9
05/05/2020
-
10:28 AM Bug #10522: Telegraf, Netstat fails (missing lsof)
- Thanks very much for the quick action!
-
10:14 AM Bug #10522 (Feedback): Telegraf, Netstat fails (missing lsof)
- PR has been merged. Thanks!
-
08:22 AM Bug #10522 (Pull Request Review): Telegraf, Netstat fails (missing lsof)
-
05:14 AM Bug #10522: Telegraf, Netstat fails (missing lsof)
- correct, see https://github.com/influxdata/telegraf/blob/master/plugins/inputs/net/NETSTAT_README.md:...
-
08:24 AM Todo #10528 (Resolved): OpenVPN client export - 2.4.9
- OpenVPN client 2.4.9 was released.
It would be cool to have it updated: https://openvpn.net/community-downloads/
...
05/04/2020
-
02:11 PM Bug #10522: Telegraf, Netstat fails (missing lsof)
- Yes, it works for me as well - after I manually install lsof. The reason I raised this is that lsof should be include...
-
01:57 PM Bug #10522: Telegraf, Netstat fails (missing lsof)
- can't reproduce, it work for me
[2.4.5-RELEASE][root@pfSense.trmultiservice.lab]/root: telegraf --test --input-filte... -
02:02 PM Bug #7654 (Feedback): Can't use a LDAP search filter containing an accent
-
08:59 AM Bug #10526: Package pfBlockerNG Crashes on Alert view
- Looks like your alert log was allowed to grow too large.
Post on https://forum.netgate.com/category/62/pfblockerng... -
08:54 AM Bug #10526 (New): Package pfBlockerNG Crashes on Alert view
- Error Message:
Fatal error: Allowed memory size of 536870912 bytes exhausted (tried to allocate 513799651 bytes) in ...
05/03/2020
-
07:09 PM Bug #10487: Telegraf package not sending logs to influxdb server
- I confirm that I encounter the same issue with telegraf version 0.9_3 and pfsense 2.4.5 (on a Netgate SG-1100) device
05/02/2020
-
10:27 PM Bug #10522 (Resolved): Telegraf, Netstat fails (missing lsof)
- Enabling netstat from the web interface (as part of Telegraf) ... fails. The error message can be seen from a command...
05/01/2020
-
10:26 AM Feature #9874 (Feedback): safesearch enforcing
- PR has been merged. Thanks!
-
07:27 AM Feature #9874 (Pull Request Review): safesearch enforcing
-
12:53 AM Feature #9874: safesearch enforcing
- Grimson Gretzleburg wrote:
> You forgot to add "/www/pfblockerng/pfblockerng_safesearch.php" to the package meta dat... -
08:27 AM Bug #9537: One month offset in displayed data between time changes
- The underlying vnstat correctly reports the monthly data when run from the command line.
This is from vnstat:
v... -
03:54 AM Bug #10475 (Resolved): pfSense-pkg-arpwatch unconditinally clobbers the arpwatch database files on upgrade
- arpwatch 0.2.0_3 - OK
-
03:42 AM Feature #10479 (Resolved): Keep settings after deinstall option
- 0.15.7_15 works as expected
-
02:05 AM Bug #9424 (Resolved): arpwatch package logs CARP MAC address changes
- works fine on 2.4.5/2.5 and arpwatch pkg 0.2.0_3
Also available in: Atom