Project

General

Profile

Activity

From 09/16/2020 to 10/15/2020

10/15/2020

08:36 PM Bug #10983 (Rejected): pfBlockerNG not cleaning everything behind it
I moved from PI-Hole to pfBlockerNG for a while. I chose to move back to PI-Hole and stopped using pfBlockerNG. After... Jacques Bourdeau
01:02 PM Feature #10969 (Feedback): Add Sekhan/TheGreatWall DoH feeds
PR has been merged. Thanks! Renato Botelho
01:02 PM Bug #10927 (Feedback): pfBlockerNG-devel fullfill the pfsense config history when RAM disk in use
PR has been merged. Thanks! Renato Botelho
12:56 PM Bug #4247 (Feedback): Changes not saved when expression list becomes empty
PR has been merged. Thanks! Renato Botelho
07:22 AM Bug #4247: Changes not saved when expression list becomes empty
https://github.com/pfsense/FreeBSD-ports/pull/964 Viktor Gurov
12:54 PM Bug #10447: Framed-IP-Address with plus sign is deprecated
PR has been merged. Thanks! Renato Botelho

10/14/2020

01:29 PM Bug #10332 (Closed): PFBlockerNG loading GeoLite2-Country.mmdb
Indeed it does! Marcos M
10:20 AM Bug #10976 (Rejected): Freeradius dont start with SQL configuration
no such issue on pfSense 2.5.0.a.20201013.1850 with FreeRADIUS pkg 0.15.7_18:... Viktor Gurov
07:08 AM Bug #10976 (Rejected): Freeradius dont start with SQL configuration
My Pfsense is 2.5
I tried run freeradius with mysql suport but the freeradius dont start. the follow error occur:
...
Teste Teste
04:04 AM Feature #9742 (Resolved): Print Patch ID in log while patching
Tested on :... Danilo Zrenjanin
03:16 AM Bug #10447: Framed-IP-Address with plus sign is deprecated
Danilo Zrenjanin wrote:
> Tested on :
> [...]
>
> I still can enter 192.0.2.32+ with no complaints from pfSense....
Viktor Gurov
02:53 AM Bug #10447: Framed-IP-Address with plus sign is deprecated
Tested on :... Danilo Zrenjanin
03:03 AM Bug #10927: pfBlockerNG-devel fullfill the pfsense config history when RAM disk in use
Fix:
https://github.com/pfsense/FreeBSD-ports/pull/962
Viktor Gurov
01:17 AM Bug #10502: LLDP spamming errors on Netgate XG-7100
Renato Botelho wrote:
> DRago_Angel [InV@DER] wrote:
> > So maybe we can track this issue https://github.com/vincen...
Viktor Gurov
01:06 AM Feature #10969: Add Sekhan/TheGreatWall DoH feeds
https://github.com/pfsense/FreeBSD-ports/pull/961 Viktor Gurov

10/13/2020

04:32 PM Bug #10502 (In Progress): LLDP spamming errors on Netgate XG-7100
There is no PR waiting for review Renato Botelho
04:28 PM Bug #10502: LLDP spamming errors on Netgate XG-7100
DRago_Angel [InV@DER] wrote:
> So maybe we can track this issue https://github.com/vincentbernat/lldpd/issues/394 an...
Renato Botelho
11:04 AM Feature #10134 (Resolved): pfSense-pkg-softflowd: Add additional options available in softflowd-1.0.0
Tested on 2.4.5_p1 and on 2.5.0-DEVELOPMENT (built on Tue Oct 13 07:05:06 EDT 2020)
MAC Address Flow Tracking Leve...
Azamat Khakimyanov
10:55 AM Feature #10893 (Resolved): TFTP package improvements
Tested on 2.4.5_p1 and on 2.5.0-DEVELOPMENT (built on Tue Oct 13 07:05:06 EDT 2020).
"Write access" and "Logging" ...
Azamat Khakimyanov
07:32 AM Bug #10964 (Feedback): pfSense-pkg-frr 0.6.8_4 does not use default ospf area if one is not defined on the interface.
Renato Botelho
07:31 AM Feature #10789: FRR integrated configuration and hitless reloads
PR has been merged. Thanks! Renato Botelho
04:04 AM Feature #10789: FRR integrated configuration and hitless reloads
Chris Evans wrote:
> I'm just going in and adding/removing a fake neighbor to see if it would cause my valid BGP nei...
Ben Hughes
07:26 AM Feature #10909 (Needs Patch): #define MAXVIFS 32 to 64
FreeBSD changes are merged. Waiting for pimd patch Renato Botelho
07:25 AM Feature #10909: #define MAXVIFS 32 to 64
xavier Lemaire wrote:
> do i need to open another request for the pimd part?
Please do it
Renato Botelho

10/12/2020

10:59 PM Feature #10789: FRR integrated configuration and hitless reloads
Ben Hughes wrote:
> Chris Evans wrote:
> > I'm still seeing BGP neighbor resets when changes are being made, I beli...
Chris Evans
03:34 AM Feature #10789: FRR integrated configuration and hitless reloads
Chris Evans wrote:
> I'm still seeing BGP neighbor resets when changes are being made, I believed this effort was to...
Ben Hughes
10:44 AM Feature #10769 (Resolved): Prevent users from creating new ACMEv1 keys
Tested on 2.4.5_p1 and on 2.5.0-DEVELOPMENT (built on Mon Oct 12 07:05:15 EDT 2020)
There is no option to create L...
Azamat Khakimyanov
07:45 AM Bug #7797 (Feedback): Squid Reverse Proxy alternating between destinations
PR has been merged Renato Botelho
07:44 AM Bug #9211 (Feedback): GeoIP broken in pfSense-pkg-ntopng-0.8.13_3
PR has been merged Renato Botelho
07:42 AM Feature #9588 (Duplicate): New package: node_exporter
Duplicate of #9974 Renato Botelho
07:40 AM Feature #9902 (Resolved): add sticky filter for Alert Log please
Already resolved Renato Botelho
07:39 AM Bug #9981 (Resolved): Suricata "Use IP Reputation Lists on this interface." actually defaults to ON, despite incorrect comment.
Already resolved Renato Botelho
07:37 AM Bug #10447 (Feedback): Framed-IP-Address with plus sign is deprecated
PR was merged months ago Renato Botelho
07:29 AM Feature #9721 (Feedback): add squidclient -h 127.0.0.1 mgr:info output to Diagnostics / Squid and status.php
PR has been merged. Thanks! Renato Botelho
07:26 AM Feature #10950 (Feedback): Allow to select only netmap-compatible cards for inline mode
PR has been merged. Thanks! Renato Botelho
07:26 AM Bug #10911 (Feedback): Bandwidthd iframe not resizing in 2.4.5/2.4.5p1
PR has been merged. Thanks! Renato Botelho

10/11/2020

10:41 PM Feature #10789: FRR integrated configuration and hitless reloads
I'm still seeing BGP neighbor resets when changes are being made, I believed this effort was to make it so full reloa... Chris Evans

10/10/2020

04:52 PM Bug #10332: PFBlockerNG loading GeoLite2-Country.mmdb
It appears that this was fixed.
https://github.com/pfsense/FreeBSD-ports/commit/2eae4ebc337619fb4f6f32979968394649...
John Clark
12:36 PM Bug #10332: PFBlockerNG loading GeoLite2-Country.mmdb
I could not reproduce this on pfSense 2.4.5-p1 running pfBlockerNG-devel 2.2.5_36.
Looking under /usr/local/share/...
Marcos M
03:54 PM Bug #10886: NAT64 allows to bypass pfBlockerNG IPv4 feed list
I don't know if this is possible, but a more intuitive solution is to have a "interface" for NAT64 (non-intuitively i... Rick Coats
11:59 AM Bug #10602 (Confirmed): Dashboard->Traffic Graphs bandwidth designations on hover pop-ups
Changing status to confirmed, as this is a reproducible issue that we should patch. Kris Phillips
09:32 AM Bug #10911: Bandwidthd iframe not resizing in 2.4.5/2.4.5p1
Fix:
https://github.com/pfsense/FreeBSD-ports/pull/958
Viktor Gurov
12:16 AM Feature #10969 (Resolved): Add Sekhan/TheGreatWall DoH feeds
https://github.com/Sekhan/TheGreatWall contains the DNS, IPv4 and IPv6 feeds of DoH servers:
https://raw.githubuse...
Viktor Gurov

10/08/2020

12:36 PM Todo #8332 (Resolved): pfBlockerNG doesn't include L2TP interface in outbound floating rules
Jim Pingle
12:25 PM Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
Tested on :... Danilo Zrenjanin
12:36 PM Feature #9721 (Pull Request Review): add squidclient -h 127.0.0.1 mgr:info output to Diagnostics / Squid and status.php
Jim Pingle
10:46 AM Feature #9721: add squidclient -h 127.0.0.1 mgr:info output to Diagnostics / Squid and status.php
https://github.com/pfsense/FreeBSD-ports/pull/957 Viktor Gurov
11:24 AM Bug #10964: pfSense-pkg-frr 0.6.8_4 does not use default ospf area if one is not defined on the interface.
I can confirm that the code change in the pull request (as of the time of this update) resolves this issue for me. S Premeau
08:07 AM Bug #10964 (Pull Request Review): pfSense-pkg-frr 0.6.8_4 does not use default ospf area if one is not defined on the interface.
Jim Pingle
04:33 AM Bug #10964: pfSense-pkg-frr 0.6.8_4 does not use default ospf area if one is not defined on the interface.
Fix:
https://github.com/pfsense/FreeBSD-ports/pull/956
Viktor Gurov

10/07/2020

12:56 PM Bug #10964: pfSense-pkg-frr 0.6.8_4 does not use default ospf area if one is not defined on the interface.
Current version with the issue:
2.5.0-DEVELOPMENT (amd64)
built on Tue Oct 06 12:54:27 EDT 2020
FreeBSD 12.2-STABLE
S Premeau
12:55 PM Bug #10964 (Resolved): pfSense-pkg-frr 0.6.8_4 does not use default ospf area if one is not defined on the interface.
I am not seeing recent changes in the frr package, but this issue occurred when I updated from the 10/5 to 10/6 devel... S Premeau

10/06/2020

03:20 PM Bug #10941 (Closed): pfBlockerNG-devel Bug in ipv6 lists when updating
Jim Pingle
02:56 PM Bug #10941: pfBlockerNG-devel Bug in ipv6 lists when updating
Since it seems to be resolved, it was probably unique to my configuration, so I am amenable to closing or downgrading... Rick Coats
02:54 PM Bug #10941: pfBlockerNG-devel Bug in ipv6 lists when updating
I did the upgrade from .35 to .36 today and did not get this problem this time, so it could be that it has fixed itse... Rick Coats
10:42 AM Todo #9158 (Resolved): Updates for Squid 4.x
Anonymous
10:10 AM Bug #7267 (New): Status Traffic Totals - Stacked Bar - Scale not high enough
Anonymous
09:19 AM Bug #10791: Valid (vlan)interfaces do not get vif reporting "Invalid phyint address"
PIMD-3 is not yet available for testing/development. Pushing this to "Future"
https://github.com/troglobit/pimd/bl...
Anonymous
07:59 AM Todo #8332 (Feedback): pfBlockerNG doesn't include L2TP interface in outbound floating rules
PR has been merged. Thanks! Renato Botelho
07:10 AM Feature #10789 (Feedback): FRR integrated configuration and hitless reloads
PRs #950 and #955 are now merged. Thanks! Renato Botelho

10/05/2020

08:41 AM Feature #10953 (Rejected): IPSec Profile Wizard Unavailable in Community Edition Repos
That's intentional for the time being. Jim Pingle
08:39 AM Todo #8332 (Pull Request Review): pfBlockerNG doesn't include L2TP interface in outbound floating rules
Jim Pingle
08:27 AM Feature #10950 (Pull Request Review): Allow to select only netmap-compatible cards for inline mode
Jim Pingle
07:33 AM Feature #6176: Privilege for OpenVPN Client Export
Adding a per-user privilege so uses can download their own clients is not going to happen (see comments on the PR). T... Jim Pingle
06:34 AM Feature #10415 (Resolved): FreeRADIUS Package: Add option to enter NT or MD5 prehashed passwords in configuration
Tested on:
2.4.5_p1 and
2.5.0-DEVELOPMENT (amd64)
built on Mon Oct 05 00:53:54 EDT 2020
FreeBSD 12.2-STABLE
NT...
Azamat Khakimyanov
01:59 AM Feature #9974 (Resolved): Add pfSense package for sysutils/node_exporter
Tested on:
2.5.0-DEVELOPMENT (amd64)
built on Mon Oct 05 00:53:54 EDT 2020
FreeBSD 12.2-STABLE
I was able succe...
Azamat Khakimyanov

10/04/2020

10:20 AM Feature #10789: FRR integrated configuration and hitless reloads
PR: https://github.com/pfsense/FreeBSD-ports/pull/955 Ben Hughes
07:50 AM Bug #5168 (Resolved): squid doesn't function during/after HA failover
Tested on:
2.5.0-DEVELOPMENT (amd64)
built on Sun Oct 04 00:53:54 EDT 2020
FreeBSD 12.2-STABLE
I created HA cl...
Azamat Khakimyanov

10/03/2020

08:59 PM Feature #10953 (Rejected): IPSec Profile Wizard Unavailable in Community Edition Repos
The IPSec Profile Wizard is not available in pfSense Community Edition, which would be helpful for customers and help... Kris Phillips
05:22 PM Bug #10815: FRR with SNMP AgentX option failed to start
uninstall/install FRR made agentx option working . ( No Crash)
agentx option enabled on Zebra Global Settings .
...
Alhusein Zawi
12:58 PM Feature #9913 (Resolved): Adding note Squid Traffic Managment Settings about feature limit
Tested on :... Danilo Zrenjanin
10:36 AM Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
https://github.com/pfsense/FreeBSD-ports/pull/954 Viktor Gurov
09:31 AM Feature #10950: Allow to select only netmap-compatible cards for inline mode
https://github.com/pfsense/FreeBSD-ports/pull/953 Viktor Gurov
08:58 AM Feature #10950 (Resolved): Allow to select only netmap-compatible cards for inline mode
https://www.freebsd.org/cgi/man.cgi?query=netmap&sektion=4:... Viktor Gurov
09:29 AM Feature #10789: FRR integrated configuration and hitless reloads
Looking into firewalling between two VRFs I've discovered that FRR, contrary to the documentation (http://docs.frrout... Ben Hughes
08:51 AM Bug #10771 (Feedback): arpwatch: option to not send hourly email notification on cron run
already merged Viktor Gurov
03:11 AM Feature #6176: Privilege for OpenVPN Client Export
> bearsh bearsh wrote:
> > it would be very cool to be able to limit access for users to their own client configs. u...
Viktor Gurov

10/02/2020

03:39 PM Bug #10941: pfBlockerNG-devel Bug in ipv6 lists when updating
I could not reproduce this using settings/rules as close as possible. Marcos M

10/01/2020

09:21 PM Bug #10429: Status Traffic Total broken 2.4.5
Manuel Piovan wrote:
> https://forum.netgate.com/topic/151914/traffic-totals-hourly-report-problem/
pfSense versi...
Vinoth Kumar R
03:36 PM Feature #10789 (Pull Request Review): FRR integrated configuration and hitless reloads
Jim Pingle
02:44 PM Feature #10789: FRR integrated configuration and hitless reloads
Fixed case of the fat fingers in frr_bgp.xml: https://github.com/pfsense/FreeBSD-ports/pull/950 Ben Hughes
07:01 AM Bug #10937: HAProxy frontend and backend entry limit
I looked for existing CVE's around increasing the limit, but did not find any issues with it. I would agree however t... Marcos M
03:05 AM Bug #10939 (Resolved): default port is not fixed on 2.4.5
Tested on :... Danilo Zrenjanin

09/30/2020

11:25 PM Bug #10930 (Resolved): Wrong blocklist from dshield.org
test on new pfblockerng-devel pkg install on 2.4.5p1 and 2.5.0-DEVELOPMENT (arm)built on Wed Sep 30 18:54:01 EDT 2020... Jordan G
12:34 PM Bug #10930 (Feedback): Wrong blocklist from dshield.org
PR has been merged. Thanks! Renato Botelho
08:40 AM Bug #10930 (Pull Request Review): Wrong blocklist from dshield.org
Jim Pingle
03:30 AM Bug #10930: Wrong blocklist from dshield.org
Fix:
https://github.com/pfsense/FreeBSD-ports/pull/946
Viktor Gurov
02:19 PM Bug #10941 (Closed): pfBlockerNG-devel Bug in ipv6 lists when updating

I posted initially in the forum with screenshots in case it is something I am doing but during update the pfblock...
Rick Coats
12:38 PM Feature #10915 (Feedback): security/pfSense-pkg-sudo sudo.inc enhancement for better support of NRPE
PR has been merged. Thanks! Renato Botelho
05:11 AM Feature #10915: security/pfSense-pkg-sudo sudo.inc enhancement for better support of NRPE
Previous PR superseded by https://github.com/pfsense/FreeBSD-ports/pull/947 Infra Weavers
12:32 PM Bug #10939 (Feedback): default port is not fixed on 2.4.5
PR has been merged. Thanks! Renato Botelho
08:38 AM Bug #10939 (Pull Request Review): default port is not fixed on 2.4.5
Jim Pingle
02:07 AM Bug #10939: default port is not fixed on 2.4.5
Fix:
https://github.com/pfsense/FreeBSD-ports/pull/945
Viktor Gurov
02:01 AM Bug #10939 (Resolved): default port is not fixed on 2.4.5
it seems https://github.com/pfsense/FreeBSD-ports/commit/8e931a80646180ac8e15b97876140fa0c3e22eca#diff-1eba1393d5e47b... Viktor Gurov
12:31 PM Feature #10908 (Feedback): FreeRADIUS server certificate not using full CA chain
PR has been merged. Thanks! Renato Botelho
08:35 AM Feature #10908 (Pull Request Review): FreeRADIUS server certificate not using full CA chain
Jim Pingle
01:24 AM Feature #10908: FreeRADIUS server certificate not using full CA chain
https://github.com/pfsense/FreeBSD-ports/pull/944 Viktor Gurov
06:48 AM Bug #9980 (Closed): Fresh install of Suricata 4.1.5 package warns about CVE-2015-3152; need newer MySQL
no such message on pfSense 2.4.5-p1/2.5 with suricata-5.0.3/suricata-4.1.8 Viktor Gurov

09/29/2020

05:31 PM Feature #10789 (Feedback): FRR integrated configuration and hitless reloads
PR has been merged. Thanks! Renato Botelho
05:25 PM Bug #10932: wrong link on haproxy
PR has been merged. Thanks! Renato Botelho
11:53 AM Bug #10937: HAProxy frontend and backend entry limit
The input variable change is an OK workaround (I'm not sure why it's at 5000) but also the form code should probably ... Jim Pingle
11:35 AM Bug #10937: HAProxy frontend and backend entry limit
Making the following change then restarting php-fpm and webConfigurator (option 16 & 11 in console) resolved the issu... Marcos M
11:04 AM Bug #10937: HAProxy frontend and backend entry limit
Some additional files from testing. Marcos M
10:42 AM Bug #10937 (Resolved): HAProxy frontend and backend entry limit
There seems to be some sort of limit in the number of entries/rows you can have in a single haproxy frontend or backe... Marcos M
09:57 AM Bug #10936 (Resolved): both haproxy/haproxy-devel non-existent option lb-agent-chk
both 2.4.5-p1 and 2.5.0
setting Health check method to Agent...
Manuel Piovan
07:54 AM Feature #10665 (Assigned): Manual OSPF neighbor definitions
Azamat Khakimyanov
07:53 AM Feature #10665: Manual OSPF neighbor definitions
Tested on:
2.5.0-DEVELOPMENT (amd64)
built on Tue Sep 29 01:01:39 EDT 2020
FreeBSD 12.2-PRERELEASE
Issue with a...
Azamat Khakimyanov
05:49 AM Feature #10479 (Resolved): Keep settings after deinstall option
Tested on 2.4.5_p1 and on 2.5.0-DEVELOPMENT (built on Tue Sep 29 01:00:34 EDT 2020)
There is an option "Save setting...
Azamat Khakimyanov
03:57 AM Bug #10552 (Resolved): Typo in OpenBGPD's settings page
tested on 2.4.5_p1 and on 2.5.0-DEVELOPMENT (built on Tue Sep 29 01:00:34 EDT 2020)
It's Router-ID now.
This bug ...
Azamat Khakimyanov

09/28/2020

08:13 AM Bug #10935 (New): FRR 0.6.7-6 - BGPD service recycled IPv6 without Route Map
https://forum.netgate.com/topic/157120/frr-0-6-7_6-bgp-won-t-start-without-route-map-ipv6-unicast?_=1601149473142
...
Jeremy Peterson

09/26/2020

10:15 AM Bug #10933: Retired / Invalid IPv4 lists in pfBlockerNG
The user email and password need to be included in the link as follows for the BB_C2 feed to work, with %40 replacing... Abhinav Tella
09:36 AM Bug #10933 (Resolved): Retired / Invalid IPv4 lists in pfBlockerNG
I went through the currently available IPv4 lists in pfBlockerNG-devel and noted the ones that are no longer maintain... Marcos M

09/25/2020

05:17 PM Bug #10932: wrong link on haproxy
PR https://github.com/pfsense/FreeBSD-ports/pull/943 Manuel Piovan
04:00 PM Bug #10932 (Resolved): wrong link on haproxy
package haproxy
if you click on
"related log entries"
https://*/status_pkglogs.php?pkg=haproxy
lead to 404 ...
Manuel Piovan
12:00 PM Feature #10789 (Pull Request Review): FRR integrated configuration and hitless reloads
Jim Pingle
11:35 AM Feature #10789: FRR integrated configuration and hitless reloads
Fixup PR: https://github.com/pfsense/FreeBSD-ports/pull/942 Ben Hughes

09/24/2020

01:13 PM Bug #10930: Wrong blocklist from dshield.org
also, https://feeds.dshield.org/top10-2.txt is mentioned in the documentation, which is not a block list. Johannes Ullrich
01:12 PM Bug #10930 (Resolved): Wrong blocklist from dshield.org
The current configuration uses the wrong blocklist from dshield.org (https://isc.sans.edu/api/sources/attacks/1000/30... Johannes Ullrich
03:27 AM Bug #10927 (Resolved): pfBlockerNG-devel fullfill the pfsense config history when RAM disk in use
Hi !
I set pfBlockerNG-devel to update DNSBL hourly, and it works fine.
But this hourly update use to be logged i...
Laurent BONNIN
12:27 AM Bug #10922: Gmail smtp relay TLS stopped working.
Anton Palmgard wrote:
> Hi to clarify we use, smtp-relay.gmail.com as this is used by gsuite.
/usr/local/etc/stun...
Viktor Gurov

09/23/2020

04:37 PM Bug #10922: Gmail smtp relay TLS stopped working.
Hi to clarify we use, smtp-relay.gmail.com as this is used by gsuite. Anton Palmgard
03:01 AM Bug #10922 (Rejected): Gmail smtp relay TLS stopped working.
no such issue on pfSense 2.4.5-p1, pfSense-pkg-stunnel-5.50_4
/usr/local/etc/stunnel/stunnel.conf:...
Viktor Gurov
10:31 AM Feature #10897 (Feedback): SNMPV3-trap/inform Add Snmpv3 trap/inform Field
PR has been merged. Thanks! Renato Botelho
10:30 AM Feature #10913 (Feedback): Allow disabling caching in Squid completly
PR has been merged. Thanks! Renato Botelho
08:54 AM Feature #10913 (Pull Request Review): Allow disabling caching in Squid completly
Jim Pingle
01:14 AM Feature #10913: Allow disabling caching in Squid completly
https://github.com/pfsense/FreeBSD-ports/pull/940 Viktor Gurov
10:30 AM Bug #5168 (Feedback): squid doesn't function during/after HA failover
PR has been merged. Thanks! Renato Botelho
08:59 AM Bug #5168 (Pull Request Review): squid doesn't function during/after HA failover
Jim Pingle
07:07 AM Bug #5168: squid doesn't function during/after HA failover
Azamat Khakimyanov wrote:
> I tested it on 2.5-DEV (built on Wed Sep 16 01:00:40 EDT 2020): With new "CARP Status VI...
Viktor Gurov

09/22/2020

02:51 PM Bug #10646 (Duplicate): Reinstall package process stalls at pfBlockerNG when restoring a config
Duplicate of #10610 Renato Botelho
09:11 AM Feature #10897 (Pull Request Review): SNMPV3-trap/inform Add Snmpv3 trap/inform Field
Jim Pingle
05:29 AM Feature #10897: SNMPV3-trap/inform Add Snmpv3 trap/inform Field
https://github.com/pfsense/FreeBSD-ports/pull/939 Viktor Gurov
08:44 AM Feature #10789: FRR integrated configuration and hitless reloads
Steve Wheeler wrote:
> After upgrading to todays snap with this change I am seeing this error:
> [...]
>
> The c...
Ben Hughes
08:20 AM Feature #10789: FRR integrated configuration and hitless reloads
Steve Wheeler wrote:
> The console hung at 'Writing configuration...' at boot after the update requiring me to Ctl+C...
Jim Pingle
08:19 AM Feature #10789: FRR integrated configuration and hitless reloads
After upgrading to todays snap with this change I am seeing this error:... Steve Wheeler
07:43 AM Bug #10917 (Resolved): snort: invalid pidfile suffix error
Renato Botelho

09/21/2020

03:25 PM Bug #10917: snort: invalid pidfile suffix error
The pull requests against pfSense-2.4.5-RELEASE and pfSense-2.5-DEVELOPMENT have been merged. This issue can be marke... Bill Meeks
03:13 PM Bug #10917 (Feedback): snort: invalid pidfile suffix error
PR has been merged. Thanks! Renato Botelho
03:11 PM Bug #10917: snort: invalid pidfile suffix error
PRs:
* https://github.com/pfsense/FreeBSD-ports/pull/937
* https://github.com/pfsense/FreeBSD-ports/pull/938
Jim Pingle
03:10 PM Bug #10917 (Pull Request Review): snort: invalid pidfile suffix error
Jim Pingle
03:09 PM Bug #10917: snort: invalid pidfile suffix error
Two pull requests have been submitted against pfSense-2.4.5 and pfSense-2.5 to fix the issue reported in this ticket.... Bill Meeks
09:48 AM Bug #10917: snort: invalid pidfile suffix error
This issue also impacts the Snort package on pfSense-2.5 under the same conditions when the physical interface name a... Bill Meeks
10:40 AM Bug #10922 (Rejected): Gmail smtp relay TLS stopped working.
Hi, a few days ago up to a week my stunnel connection to smtp-gmail.gmail.com. stopped working with the error:
ep...
Anton Palmgard
07:39 AM Feature #10665 (Feedback): Manual OSPF neighbor definitions
I committed fixes which should fix this. Will be available shortly. Jim Pingle
07:21 AM Feature #10665: Manual OSPF neighbor definitions
Looks like it's missing entries in pkg-plist and Makefile to install that file. Jim Pingle
07:00 AM Feature #10665 (Assigned): Manual OSPF neighbor definitions
Tested on:
2.5.0-DEVELOPMENT (amd64)
built on Mon Sep 21 01:04:35 EDT 2020
FreeBSD 12.2-PRERELEASE
I didn't fin...
Azamat Khakimyanov
07:33 AM Feature #10789 (Feedback): FRR integrated configuration and hitless reloads
PR has been merged only on 2.5.0 branch for now so we can get it properly tested Renato Botelho

09/20/2020

12:13 PM Bug #10884 (Resolved): wrong link on haproxy-devel
Tested on
2.5.0-DEVELOPMENT (amd64)
built on Sun Sep 20 06:59:15 EDT 2020
FreeBSD 12.2-PRERELEASE
Related ...
Max Leighton
08:36 AM Feature #10725 (Resolved): Squid disable multiple login sessions
Azamat Khakimyanov
08:35 AM Feature #10725: Squid disable multiple login sessions
Tested on:
2.5.0-DEVELOPMENT (amd64)
built on Sun Sep 20 01:01:05 EDT 2020
FreeBSD 12.2-PRERELEASE
With default...
Azamat Khakimyanov
06:56 AM Bug #8625 (Resolved): PFsense squidGuard faulty URL check
Tested on 2.4.4_p3, 2.4.4_p1 and 2.5-DEV (built on Sun Sep 20 01:01:05 EDT 2020):
- no issue if there is an url with...
Azamat Khakimyanov
02:37 AM Bug #7455: Unbound DNS Resolver failed with pfBlockerNG after reboot with /var mounted on ramfs
Similar issue over here, 2.4.5-RELEASE-p1 having LAN, VLAN and WAN1, WAN2 (LoadBalancing&Failover) and IPv4, IPv6 and... Marc Dorando

09/19/2020

01:41 PM Bug #10602: Dashboard->Traffic Graphs bandwidth designations on hover pop-ups
Randall Barth wrote:
> The scales are reporting Mbytes/sec but the pop-up is using the Mbits/sec designation: Mb/s. ...
Kris Phillips
12:31 PM Bug #10917: snort: invalid pidfile suffix error
According to the "pfsense forum":https://forum.netgate.com/topic/156861/upcoming-snort-package-updates-for-pfsense-2-... Anonymous
04:42 AM Bug #10917 (Resolved): snort: invalid pidfile suffix error
After upgrading snort package from *@3.2.9.14_1@* to *@4.1.2@*, I have two interfaces where snort gives the following... Anonymous

09/18/2020

02:54 PM Todo #9158 (Feedback): Updates for Squid 4.x
AFAIK it's been working for some time now. Move to feedback! Renato Botelho
11:33 AM Feature #10915 (Pull Request Review): security/pfSense-pkg-sudo sudo.inc enhancement for better support of NRPE
Jim Pingle
10:19 AM Feature #10915: security/pfSense-pkg-sudo sudo.inc enhancement for better support of NRPE
Pull request:
https://github.com/pfsense/FreeBSD-ports/pull/936
Infra Weavers
10:06 AM Feature #10915 (Resolved): security/pfSense-pkg-sudo sudo.inc enhancement for better support of NRPE
We have a requirement to permit NRPE to run custom commands as root so that we can, for instance, monitor VPN connect... Infra Weavers
09:03 AM Feature #10909: #define MAXVIFS 32 to 64
do i need to open another request for the pimd part? xavier Lemaire
09:01 AM Feature #10909 (Pull Request Review): #define MAXVIFS 32 to 64
Jim Pingle
12:50 AM Feature #10909: #define MAXVIFS 32 to 64
https://github.com/pfsense/FreeBSD-src/pull/37
see also https://www.freebsd.org/cgi/man.cgi?query=multicast&apro...
Viktor Gurov
08:24 AM Feature #10893 (Feedback): TFTP package improvements
PR has been merged. Thanks! Renato Botelho
08:24 AM Bug #10884 (Feedback): wrong link on haproxy-devel
PR has been merged. Thanks! Renato Botelho
04:53 AM Feature #10913 (Resolved): Allow disabling caching in Squid completly
We use Squid as a proxy to audit access to websites (or reject as needed). We disabled the disk cache and set the mem... Florian Apolloner

09/17/2020

11:10 AM Bug #10911 (Resolved): Bandwidthd iframe not resizing in 2.4.5/2.4.5p1
Forum thread from several posters: https://forum.netgate.com/topic/152323/bandwidthd-in-pfsense-2-4-5
Looking at 2...
Steve Y
09:38 AM Feature #10909: #define MAXVIFS 32 to 64
Moving the feature request since it's requesting a change to the kernel. Jim Pingle
08:55 AM Feature #10909 (New): #define MAXVIFS 32 to 64
as discussed in this thread https://forum.netgate.com/topic/156398/deploy-disk-images-with-inter-vlans-mulicast/7
Is...
xavier Lemaire
08:34 AM Feature #10908 (Feedback): FreeRADIUS server certificate not using full CA chain
https://forum.netgate.com/topic/153316/freeradius-acme-built-in-cert-manager-workarounds-with-intermediate-certificat... Viktor Gurov
03:07 AM Bug #10905 (Resolved): Integration between captive portal and squid. Usernames are not showing in access.log file
https://forum.netgate.com/topic/147868/integration-between-captive-portal-and-squid-usernames-are-not-showing-in-acce... Viktor Gurov

09/16/2020

07:19 AM Bug #5168 (Assigned): squid doesn't function during/after HA failover
I've tested it on 2.4.4_p3 - HA cluster with simple Squid config (Transparent mode) so Squid is active on both Primar... Azamat Khakimyanov
05:35 AM Feature #10689 (Resolved): Squid Reverse proxy IPv6 and HA support
tested on:
2.5.0-DEVELOPMENT (amd64)
built on Wed Sep 16 01:00:40 EDT 2020
FreeBSD 12.2-PRERELEASE
Ticket reso...
Azamat Khakimyanov
 

Also available in: Atom