Project

General

Profile

Activity

From 01/24/2021 to 02/22/2021

02/22/2021

06:56 PM Bug #9204: ospfd: GRE tunnels became unnumbered since 2.4.4
...I mean, this is not a proper test, I need to bring up a live tunnel and get some LSAs going first.
But when thi...
Firstname Surname
03:56 PM Bug #9204: ospfd: GRE tunnels became unnumbered since 2.4.4
OK - I just tested that fix.... Firstname Surname
03:37 PM Bug #9204: ospfd: GRE tunnels became unnumbered since 2.4.4
Typically we would wait until it's in an official release. Jim Pingle
02:37 PM Bug #9204: ospfd: GRE tunnels became unnumbered since 2.4.4
FRR have been silent, but it looks like the person who raised this has a patch. What's your policy here, do you apply... Firstname Surname
01:00 PM Bug #11501: Daily acme "expiring soon" warnings about a test Let's Encrypt certificate that expired > 300 days ago
Craig Leres wrote:
> How was I able to go 390+ days before upgrading to 21.02 without getting daily expiring message...
Jim Pingle
12:40 PM Bug #11501: Daily acme "expiring soon" warnings about a test Let's Encrypt certificate that expired > 300 days ago
And I should ask is there a way to delete the certificate but keep the test config in case I need to test in the futu... Craig Leres
12:38 PM Bug #11501: Daily acme "expiring soon" warnings about a test Let's Encrypt certificate that expired > 300 days ago
Jim Pingle wrote:
> Delete it, it's not needed. It's a leftover from previous ACME certificates.
>
> Entries are ...
Craig Leres
12:35 PM Bug #11501 (Not a Bug): Daily acme "expiring soon" warnings about a test Let's Encrypt certificate that expired > 300 days ago
Delete it, it's not needed. It's a leftover from previous ACME certificates.
Entries are never removed automatical...
Jim Pingle
12:25 PM Bug #11501 (Not a Bug): Daily acme "expiring soon" warnings about a test Let's Encrypt certificate that expired > 300 days ago
When I setup acme on my pfsense box I used the same procedure as I would with a FreeBSD host; I created a test cert w... Craig Leres
12:07 PM Bug #11490: Service Watchdog - Impacts Reboots and Package Updates
All fair points.
Have run into a couple occasions where something 'died' (such as Snort, Suricata, lldpd, haproxy)...
A S
10:11 AM Bug #11490: Service Watchdog - Impacts Reboots and Package Updates
This is a problem only with the package and also not likely one that will be solvable in an easy way.
The package ...
Jim Pingle
10:12 AM Feature #11492 (Duplicate): there is an Freebsd version available for a splunk universal forwarder
Duplicate of #7683 Jim Pingle
09:51 AM Bug #11465 (Pull Request Review): Input validation does not prevent multiple conflicting WireGuard peers on a single tunnel from attempting to act as default route
Jim Pingle
09:42 AM Bug #11477 (Pull Request Review): FRR does not recognize some BFD options
Jim Pingle
09:38 AM Bug #11392 (Pull Request Review): FRR - Advanced Routing Behavior - Network Import Check: Flag should be reversed
Jim Pingle
09:38 AM Bug #11445 (Pull Request Review): bgp as-path in wrong position
Jim Pingle
05:44 AM Feature #11386 (Feedback): Add WireGuard tunneled networks to vpnaddresses list
PR has been merged. Thanks! Renato Botelho
05:42 AM Feature #11385 (Feedback): Add WireGuard tunneled networks to vpnaddresses list
PR has been merged. Thanks! Renato Botelho

02/21/2021

05:31 AM Bug #11493 (New): After upgrade zabbix proxy wont start
Due to database changes between zabbix-proxy versions. The proxy database needs to be removed after upgrading else th... Pim Janssen
03:08 AM Feature #11492 (Duplicate): there is an Freebsd version available for a splunk universal forwarder
Splunk is great log analyzer. As well there is a free version available.
I my opinion it might be a good idea to u...
thiamata thiamata
01:18 AM Bug #11491 (Feedback): haproxy-devel v0.62_2 - startup error 'httpchk'
Seeing this error message upon startup (under 2.5.0):
haproxy: startup error output!: [WARNING] 051/015053 (57019)...
A S
01:11 AM Bug #11490 (New): Service Watchdog - Impacts Reboots and Package Updates
All - wasn't quite sure which to attribute this to as its a package, but is impacting standard operation.
Synopsis...
A S

02/20/2021

12:33 PM Bug #8466 (Resolved): radiusd crash
Tested on the latest release.
It works as expected. Ticket resolved.
Danilo Zrenjanin
10:56 AM Bug #11465: Input validation does not prevent multiple conflicting WireGuard peers on a single tunnel from attempting to act as default route
https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/149 Viktor Gurov
05:57 AM Bug #11477: FRR does not recognize some BFD options
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/55 Viktor Gurov
04:20 AM Bug #11477 (Feedback): FRR does not recognize some BFD options
BFD daemon failed to start due to using incorrect command syntax:... Viktor Gurov
05:53 AM Bug #11479 (New): snmptt 1.4.2 does not work in daemon mode
There is a bug in snmptt 1.4.2 that prevents it from starting up in daemon mode.
Upstream bug report: https://sour...
Christian Ullrich
03:05 AM Bug #11392: FRR - Advanced Routing Behavior - Network Import Check: Flag should be reversed
add "no bgp network import-check" if unchecked:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/54
Viktor Gurov

02/19/2021

03:04 PM Bug #11468: pfsense+ 21.02 missing zabbix44 package
Hi Jim, ok, thank you for reply DRago_Angel [InV@DER]
01:58 PM Bug #11468 (Rejected): pfsense+ 21.02 missing zabbix44 package
It's expected, they are EOL and gone from ports so we have no way to keep them.... Jim Pingle
01:49 PM Bug #11468 (Rejected): pfsense+ 21.02 missing zabbix44 package
Hi, after update to pfsense+ 21.02 my zabbix was been removed, I checked and installed 4.0, but my server is 4.4 so p... DRago_Angel [InV@DER]
11:47 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
Thats running pfsense 2.5 upgraded from 2.4.5-p1 Wayne Graves
11:46 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
I'm using a Supermicro SuperServer E200-8D - Mini-1U - Xeon D-1528 1.9 GHz 32g ecc 500g ssd NMVe. A clean bind instal... Wayne Graves
10:41 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
I'll remove all the files tonight and then try it again with clean files.
It's running on a Netgate SG-3100
***...
Tchello Mello
10:37 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
same issue with a clean BIND install?
pfSense Plus 21.02 or pfSense 2.5?
what kind of appliance? VM, Netgate applia...
Viktor Gurov
09:10 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
-I'm going to check how can I install strace on this box to see if I can further debug it.
Used `truss` however, ...
Tchello Mello
05:32 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
Wayne Graves wrote:
> unbound not running when this occurred on my pfsense 2.5.
Yea, ignore my comment (I deleted...
Chris R
05:20 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
unbound not running when this occurred on my pfsense 2.5. Wayne Graves
04:20 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
can be related to #7271 Viktor Gurov
08:01 AM Bug #11465 (Closed): Input validation does not prevent multiple conflicting WireGuard peers on a single tunnel from attempting to act as default route
WireGuard uses Allowed IPs for internal routing to decide where to send traffic to a peer. When a peer has Allowed IP... Jim Pingle
07:55 AM Bug #11459 (Pull Request Review): pfBlockerNG doesn't include WireGuard interface in outbound floating rules
Jim Pingle
04:13 AM Bug #11459: pfBlockerNG doesn't include WireGuard interface in outbound floating rules
https://github.com/pfsense/FreeBSD-ports/pull/1044 Viktor Gurov
04:07 AM Bug #11459 (Resolved): pfBlockerNG doesn't include WireGuard interface in outbound floating rules
pfBlockerNG needs an option on the General tab for "WireGuard" similar to the "IPsec", "OpenVPN" and "L2TP VPN" optio... Viktor Gurov
07:55 AM Feature #10739: Update HAproxy-devel package to 2.2 and HAproxy to 2.0
To add:
1. Now *Auto* SSL/TLS Compatibility Mode description says:
</code>If unsure leave it as 'Auto'</pre>
This ...
DRago_Angel [InV@DER]
07:24 AM Bug #11461: zeek package - Web Interface does not display any log content Package/Zeek/Alerts/Real Time Inspection
Further problems identified in the zeek_alerts.php:
The content is updated every 10 seconds however, the results in ...
Felix S
06:58 AM Bug #11461: zeek package - Web Interface does not display any log content Package/Zeek/Alerts/Real Time Inspection
Further investigation seems to show that the web gui is leveraging zeek_alert_data.php for getting the data. However,... Felix S
04:44 AM Bug #11461 (Resolved): zeek package - Web Interface does not display any log content Package/Zeek/Alerts/Real Time Inspection
Pfsense 2.5.0 - Release, Zeek 3.0.6_1
Confirmed that zeek is working properly by inspecting process list as well as ...
Felix S
02:11 AM Bug #11333 (Resolved): Incorrect community-list format
1.1.0_4 works as expected:... Viktor Gurov

02/18/2021

10:20 PM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
I'm also hitting the same problem on my SG-3100.
Seeing the same permissions problems here is what I'm seeing:
...
Tchello Mello
12:30 PM Bug #11449 (Resolved): BIND fails during/after upgrade to 21.02/2.50
After upgrading to 21.02, the named service wouldn’t start and the logs said it was segfaulting ("signal 11"). So I r... Anthony Pants
12:34 PM Bug #11434 (Feedback): SquidGuard over 1.16.18_11
Fix pushed to version 1.16.18_15. Thank you! Renato Botelho
12:21 PM Bug #11434: SquidGuard over 1.16.18_11
I found the problem in /usr/local/pkg/squidguard_configurator.inc
Line: 903...
Eduardo Silva
10:04 AM Bug #11434: SquidGuard over 1.16.18_11
Hi, i have same problem. i try change Client (source) with ip, domain, etc.. and config file is written with correct ... Eduardo Silva
10:41 AM Bug #11445: bgp as-path in wrong position
fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/53
Viktor Gurov
10:24 AM Bug #11445 (Resolved): bgp as-path in wrong position
https://forum.netgate.com/topic/160998/frr-7-5-full-bgp-table-very-slow-and-as-paths-not-working/4:... Viktor Gurov
09:49 AM Bug #11404 (Feedback): Incorrect prefix/access lists migration on update
Merged Renato Botelho
09:48 AM Feature #11405 (Feedback): add RPKI route map in GUI
Merged Renato Botelho
09:48 AM Bug #8466 (Feedback): radiusd crash
Merged Renato Botelho
08:09 AM Feature #10858: OpenVPN Client silent install
Jordan Fishman wrote:
> Hello,
>
> There appears to be a bug in the page, where the "Save as default" button does...
Viktor Gurov

02/17/2021

08:38 PM Feature #10779: HAProxy SSL/TLS Compatibility Mode
... DRago_Angel [InV@DER]
08:32 PM Feature #10739: Update HAproxy-devel package to 2.2 and HAproxy to 2.0
Hi Actually my ticket was much before of "duplicate", and my ticket contain details, that now issue with 2.2 in 2.5 p... DRago_Angel [InV@DER]
01:23 PM Bug #11434 (Resolved): SquidGuard over 1.16.18_11
Hi, first problem thatI found is when we are using ldapusersearch on groups acl.
In older version when I insert ldap...
Robson Ferreira

02/16/2021

08:38 AM Bug #8466 (Pull Request Review): radiusd crash
Jim Pingle

02/15/2021

07:16 PM Feature #10858: OpenVPN Client silent install
Hello,
There appears to be a bug in the page, where the "Save as default" button does not save/apply the "silent i...
Jordan Fishman
08:46 AM Feature #11043: pfSense GUI for iperf3 / perf
Jim Pingle wrote:
> Maintaining a list of public servers is outside the scope of the package, and encouraging users ...
Sergei Shablovsky

02/13/2021

11:11 PM Feature #11022: Add feeds from Firebog.net to pfBlockerNG
2.4.5p1 w/ pfblockerng-devel 3.0.0_10 shows additional firebog entries in feeds Jordan G
04:58 PM Bug #11333: Incorrect community-list format

/var/log/frr/frr-reload.log is not generated in 2.4.5
2.4.5-RELEASE-p1 FRR 0.6.7_7
FRR 1.1.0_4 is n...
Alhusein Zawi
05:23 AM Bug #8466: radiusd crash
I retested and added another minor fix.
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/51
Danilo Zrenjanin
02:46 AM Bug #11414 (New): Enabling feed "Public_DNS4_all" breaks some Google services
It seems at some point either public-dns.info added a wrong IP to their list of public DNS servers, Google changed so... T Toft
02:25 AM Bug #11131 (Resolved): pfblockerng-devel 3.0.0_2 logs when logging is disabled
Viktor Gurov
02:09 AM Bug #11131: pfblockerng-devel 3.0.0_2 logs when logging is disabled
I completely forgot about this bug report and now it is resolved. Sorry, please close (I don't think I can?). T Toft
01:08 AM Bug #8607: Suricata package fails to prune suricata.log
Got this error again today with Suricata 5.0.4_2.... Car F

02/12/2021

09:29 PM Feature #11411: Smokeping as a default latency measurement tool
Sergei Shablovsky wrote:
> The main advantages:
> - very flexible system of a measurements (due a lot of probes htt...
Sergei Shablovsky
05:12 PM Feature #11411: Smokeping as a default latency measurement tool
Sergei Shablovsky wrote:
> Dear pfSense DevTeam!
>
> Please add Smokeping for monitoring WAN and LAN links state....
Sergei Shablovsky
04:43 PM Feature #11411 (New): Smokeping as a default latency measurement tool
Dear pfSense DevTeam!
Please add Smokeping for monitoring WAN and LAN links state.
The main advantages:
- very...
Sergei Shablovsky
03:53 PM Feature #11410 (New): adding bpytop (former Bashtop)
Dear pfSense DevTeam!
Adding bpytop (former Bashtop) for local monitoring of pfSense-based firewall state: hardwar...
Sergei Shablovsky
12:36 PM Feature #11405 (Pull Request Review): add RPKI route map in GUI
Jim Pingle
02:16 AM Feature #11405: add RPKI route map in GUI
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/50
see https://docs.frrouting.org/en/latest/bgp....
Viktor Gurov
01:54 AM Feature #11405 (Resolved): add RPKI route map in GUI
Allow to select `match rpki` in the WebGUI:... Viktor Gurov
12:35 PM Bug #11404 (Pull Request Review): Incorrect prefix/access lists migration on update
Jim Pingle
01:51 AM Bug #11404: Incorrect prefix/access lists migration on update
fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/49
Viktor Gurov
12:04 AM Bug #11404 (New): Incorrect prefix/access lists migration on update
https://forum.netgate.com/topic/160694/frr-7-3-7-5-bgp-not-announcing-routes:
I notice it now has an IP type selec...
Viktor Gurov
10:35 AM Feature #11408 (Rejected): Store 'Device Key' in config.xml
This would be better served by #11118 Jim Pingle
10:07 AM Feature #11408 (Rejected): Store 'Device Key' in config.xml
Storing the ACB device key in config.xml allows users to use the latest config.xml backup as a safe copy of the Devic... Viktor Gurov
04:43 AM Bug #11391 (Confirmed): Zeek crashes on 2.5.0
running `zeekctl deploy` fixes this issue Viktor Gurov
03:49 AM Bug #11381 (Resolved): PHP error after clean Zeek install
Fixed Viktor Gurov
03:42 AM Feature #10605 (Resolved): Add certificates from Trusted Store to Squid cert store
squid pkg 0.4.45_3 - fixed Viktor Gurov

02/11/2021

11:47 PM Bug #11373 (Resolved): FRR: BGP neighbor remote-as external doesn't work
Viktor Gurov
11:47 PM Bug #11376 (Resolved): BGP MD5 keys are not removed on service stop
Viktor Gurov
01:08 AM Bug #11392: FRR - Advanced Routing Behavior - Network Import Check: Flag should be reversed
Ok I am up and running now and after some testing I can rephrase the issue more clearly.
- We have some changes be...
M Felden

02/10/2021

10:50 PM Bug #11373: FRR: BGP neighbor remote-as external doesn't work
Remote-as external/internal is reflected in configuration and Neighbor-ship is established
router bgp 61000
n...
Alhusein Zawi
10:24 PM Bug #11376: BGP MD5 keys are not removed on service stop
if FRR service stopped/disabled
"setkey -D" is not showing entries "No SAD entries"
if FRR is not stopped ...
Alhusein Zawi
02:29 PM Bug #11398: pfBlocker upgrade hangs forever
At work, but this has happened with every pfblocker upgrade since trialing pfSense 2.5 and then moving to pfblocker 3... andreas vesalius
02:06 PM Bug #11398: pfBlocker upgrade hangs forever
andreas vesalius wrote:
> Also, the bigger issue as the pfblocker-devel package manager upgrade will complete, is th...
Renato Botelho
02:03 PM Bug #11398: pfBlocker upgrade hangs forever
Also, the bigger issue as the pfblocker-devel package manager upgrade will complete, is that unbound fails to restart... andreas vesalius
01:34 PM Bug #11398 (Resolved): pfBlocker upgrade hangs forever
It was first reported at https://redmine.pfsense.org/issues/10610#note-11 but since it never happened again with any ... Renato Botelho
01:35 PM Feature #11396 (Rejected): Add Zeek as an installable package
It is already a pfSense package on 2.5.0: pfSense-pkg-zeek-3.0.6_1 Jim Pingle
01:18 PM Feature #11396 (Rejected): Add Zeek as an installable package
Base install:
Supported in FreeBSD (https://www.freshports.org/security/zeek) so installation and updates should be ...
Charles Johnston
08:54 AM Bug #11388 (Feedback): Captive Portal authentication error with MySQL backend
merged Renato Botelho
07:58 AM Bug #11366: Arpwatch Cron Notification every 15 minutes
Adam French wrote:
> Abdul Khaliq wrote:
> > Viktor Gurov wrote:
> > > You need to check "Disable Cron emails" opt...
Abdul Khaliq
07:54 AM Bug #11366: Arpwatch Cron Notification every 15 minutes
Abdul Khaliq wrote:
> Viktor Gurov wrote:
> > You need to check "Disable Cron emails" option
> > see #10771
>
>...
Adam French
04:46 AM Bug #11392 (Closed): FRR - Advanced Routing Behavior - Network Import Check: Flag should be reversed
In Services -> FRR -> BGP -> Advanced -> Advanced Routing Behavior
There is a "Network Import Check" that is not ...
M Felden

02/09/2021

03:13 PM Bug #11391 (Resolved): Zeek crashes on 2.5.0
Trying to use zeek on 2.5.0 RC and I get a crash email and the service will not start. Also, chose 'sudo' category a... Zachary McGibbon
10:28 AM Bug #11375: UPS Type <BLANK> for USB APC
For clarity can the labels be changed slightly? As I wrote in the forum the column labels look like "UPSTYPEDEVICE" ... Steve Y
05:05 AM Feature #11386: Add WireGuard tunneled networks to vpnaddresses list
https://github.com/pfsense/FreeBSD-ports/pull/1038 Viktor Gurov
12:29 AM Feature #11386 (Resolved): Add WireGuard tunneled networks to vpnaddresses list
Currently it adds (#8688):
- IPsec Mobile IPv4 subnet
- IPsec site-to-site networks
- OpenVPN client/server Tunnel...
Viktor Gurov
04:49 AM Feature #11385: Add WireGuard tunneled networks to vpnaddresses list
https://github.com/pfsense/FreeBSD-ports/pull/1037 Viktor Gurov
12:27 AM Feature #11385 (Resolved): Add WireGuard tunneled networks to vpnaddresses list
Currently it adds (#10700):
- IPsec Mobile IPv4 subnet
- IPsec site-to-site networks
- OpenVPN client/server Tunne...
Viktor Gurov
04:23 AM Bug #11388: Captive Portal authentication error with MySQL backend
fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/48
Viktor Gurov
04:13 AM Bug #11388 (Feedback): Captive Portal authentication error with MySQL backend
https://forum.netgate.com/topic/160549/captive-portal-error:
has anyone encountered this particular issue with Freer...
Viktor Gurov

02/08/2021

12:17 PM Feature #8547: fwknop Port Knocking Package
Kurt Yoder wrote:
> > Because security bugs are frequently discovered in all sorts of software, *including security...
David Yon
07:33 AM Bug #11373 (Feedback): FRR: BGP neighbor remote-as external doesn't work
Merged Renato Botelho
07:17 AM Bug #11373 (Pull Request Review): FRR: BGP neighbor remote-as external doesn't work
Jim Pingle
07:33 AM Bug #11376 (Feedback): BGP MD5 keys are not removed on service stop
Merged Renato Botelho
07:19 AM Bug #11376 (Pull Request Review): BGP MD5 keys are not removed on service stop
Jim Pingle
07:29 AM Feature #10605 (Feedback): Add certificates from Trusted Store to Squid cert store
Merged Renato Botelho
05:16 AM Feature #10605: Add certificates from Trusted Store to Squid cert store
2.4.5 fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/47
Viktor Gurov
04:06 AM Feature #10605 (New): Add certificates from Trusted Store to Squid cert store
works fine on 2.5, but produces php error on 2.4.5 if 'Extra Trusted CA' != none:... Viktor Gurov
07:28 AM Bug #11381 (Feedback): PHP error after clean Zeek install
Merged Renato Botelho
07:21 AM Bug #11377 (Pull Request Review): FRR deinstall
Removing the leftover files is fine but I don't think this package needs the ability to reset/wipe the config. Too da... Jim Pingle
12:51 AM Feature #11295: DNSBL IDN support
https://github.com/pfsense/FreeBSD-ports/pull/1036 Viktor Gurov

02/07/2021

10:44 AM Bug #11381: PHP error after clean Zeek install
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/46 Viktor Gurov
09:48 AM Bug #11381 (Resolved): PHP error after clean Zeek install
If you press save on the Zeek package configuration page without any options/checkboxes, PHP errors will occur:
<pre...
Viktor Gurov
05:40 AM Bug #3085 (Resolved): squidguard: problems when importing a blacklist archive containing soft-links
works as expected, see https://forum.netgate.com/topic/160607/squidguard-ut1-blacklist-support Viktor Gurov
04:00 AM Bug #11334 (Resolved): FRR IPv4 OSPF passive-interface not working
1.1.0_3, /var/etc/frr/frr.conf:... Viktor Gurov
03:28 AM Feature #11199 (Resolved): Minor updates
pfBlockerNG-devel 3.0.0_9 - all OK Viktor Gurov
03:21 AM Bug #11377: FRR deinstall
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/45 Viktor Gurov
03:03 AM Bug #11377 (Pull Request Review): FRR deinstall
After uninstalling FRR all '<frr*>' entries are still in config.xml
`/var/etc/frr' also contains config files
Viktor Gurov
03:00 AM Bug #11376: BGP MD5 keys are not removed on service stop
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/44 Viktor Gurov
02:56 AM Bug #11376 (Resolved): BGP MD5 keys are not removed on service stop
'setkey -D' keeps showing key association when you stop/disable FRR service.
see also #11325
Viktor Gurov
01:53 AM Bug #11375 (Closed): UPS Type <BLANK> for USB APC
there is no issue Viktor Gurov
01:32 AM Bug #11375 (New): UPS Type <BLANK> for USB APC
https://forum.netgate.com/topic/158235/potential-bug-found-with-apcupsd-package-version-0-3-91_8-and-configuring-it-i... Viktor Gurov
12:08 AM Bug #11373: FRR: BGP neighbor remote-as external doesn't work
fix:
2.5:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/42
2.4.5:
https://gitlab.netgate....
Viktor Gurov

02/06/2021

11:03 PM Bug #11191 (Resolved): Installing and Removing pfBlockerNG Leaves Shell Scripts in webConfigurator Messages
Viktor Gurov
05:19 PM Bug #11191: Installing and Removing pfBlockerNG Leaves Shell Scripts in webConfigurator Messages
Verified that this is no longer a problem. Unchecking the save settings checkbox and then removing the package prope... Kris Phillips
10:14 PM Bug #11343: Invalid link to pfSense-pkg-bind changelog
Anthony Pants wrote:
> If you go to "Installed Packages" (/pkg_mgr_installed.php) or "Available Packages" (/pkg_mgr....
Michael Spears
10:33 AM Feature #10619 (Resolved): Various FRR enhancements
Tested on 21.02-DEVELOPMENT (built on Thu Feb 04 22:53:54 CST 2021)
I see all these enhancements enabled.
This ...
Azamat Khakimyanov
10:15 AM Bug #11373 (Resolved): FRR: BGP neighbor remote-as external doesn't work
if you put `external` in the web GUI as the remote-as the generated configuration doesn't include a `neighbor <ip-add... Joel Gallun
04:07 AM Feature #10202 (Resolved): redistribute bgp + route-map filtering in OSPF6
Tested on 21.02-DEVELOPMENT (built on Thu Feb 04 22:53:54 CST 2021)
There are redistribute bgp + route-map filteri...
Azamat Khakimyanov

02/05/2021

09:23 AM Bug #11271 (Resolved): Setting default-originate in FRR/BGP Silently Appends a route-map
Renato Botelho
08:03 AM Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
This works as expected for one route map spanning both families. Much better. Thank you. Chris Linstruth
08:31 AM Bug #11346 (Resolved): Raw-Config not working
Jim Pingle
08:29 AM Bug #6818: WAN traffic graph displays inverted bandwidth columns
I was checking traffic today, in a situation of heavy file upload to the internet, and i'm seeing that everything is ... Fernando Rapetti
04:54 AM Feature #11155: SafeSearch AAAA
Renato Botelho wrote:
> PR has been merged. Thanks!
PR 1035 containing this change has been merged. Thanks!
Renato Botelho
04:52 AM Feature #11155 (Feedback): SafeSearch AAAA
PR has been merged. Thanks! Renato Botelho
04:53 AM Feature #11022 (Feedback): Add feeds from Firebog.net to pfBlockerNG
PR 1035 containing this change has been merged. Thanks! Renato Botelho
04:48 AM Feature #11201 (Feedback): Show iTLD Allow IDN domains
PR has been merged. Thanks! Renato Botelho
04:46 AM Feature #11199 (Feedback): Minor updates
PR has been merged. Thanks! Renato Botelho
04:44 AM Bug #11191 (Feedback): Installing and Removing pfBlockerNG Leaves Shell Scripts in webConfigurator Messages
PR has been merged. Thanks! Renato Botelho

02/04/2021

11:03 PM Bug #11345: FRR-OSPF - No "prefix-list" possible
* prefix can be chosen from Route Filtering in OSPF area.
* Configuration is reflected in config. file.
!
rou...
Alhusein Zawi
09:29 PM Bug #11346: Raw-Config not working
Issue is fixed
* updated the running config (or created new configuration)
* changed the configuration.
* pre...
Alhusein Zawi
12:18 PM Bug #11135: HAproxy OCSP reponse crontab bug
Do not set target version on package tickets Renato Botelho
05:26 AM Bug #11366: Arpwatch Cron Notification every 15 minutes
Viktor Gurov wrote:
> You need to check "Disable Cron emails" option
> see #10771
Option is already checked, I'v...
Abdul Khaliq

02/03/2021

11:17 PM Bug #11366 (Rejected): Arpwatch Cron Notification every 15 minutes
You need to check "Disable Cron emails" option
see #10771
Viktor Gurov
10:11 PM Bug #11366 (Resolved): Arpwatch Cron Notification every 15 minutes
Every 15 mins or so I receive an email containing :
Subject Arpwatch Notification : Cron <root@firewall> /etc/rc.f...
Abdul Khaliq

02/01/2021

08:24 AM Bug #11333: Incorrect community-list format
2.4.5 PR has been merged. Thanks! Renato Botelho
08:22 AM Bug #11346 (Feedback): Raw-Config not working
PR has been merged. Thanks! Renato Botelho
07:57 AM Bug #11346 (Pull Request Review): Raw-Config not working
Jim Pingle
08:22 AM Bug #11345 (Feedback): FRR-OSPF - No "prefix-list" possible
PR has been merged. Thanks! Renato Botelho
07:55 AM Bug #11345 (Pull Request Review): FRR-OSPF - No "prefix-list" possible
Jim Pingle
08:20 AM Bug #11054 (Feedback): Check Client Certificate CN not working as described
PR has been merged. Thanks! Renato Botelho
07:54 AM Bug #11054 (Pull Request Review): Check Client Certificate CN not working as described
Jim Pingle
08:00 AM Todo #11351 (Not a Bug): updated version to pfsense 2.4.5_1
At this point, the 2.5.0 release is close enough that backporting all the changes is unlikely. Jim Pingle
07:25 AM Feature #9555 (Resolved): pimd package
Tested on 2.4.5_p1 and on 21.02-DEVELOPMENT (built on Mon Feb 01 00:05:45 EST 2021)
Tested with 3 different multic...
Azamat Khakimyanov

01/31/2021

09:56 AM Todo #11351 (Not a Bug): updated version to pfsense 2.4.5_1
you did released updated version (1.16.18_14) for pfsense 2.5.devel
but pfsense 2.4.5_1 still at version (1.16.18_...
khaled osama

01/30/2021

05:24 PM Feature #6022: Consider MLVPN for bonded VPN
+1 for this feature.
As I understand it (which may be incorrect), pfSense "bonding" only load-balances by number of ...
Val Schmidt
05:10 PM Feature #9238: Add support for Zerotier
+1 for this feature!!! Val Schmidt
10:08 AM Bug #11331: FreeRADIUS latest package upgrade broke Plain Mac Authentication
I am not sure whether I tested it correctly, though. I used a LapTop as a client trying to authenticate through FreeR... Danilo Zrenjanin
05:58 AM Bug #11331: FreeRADIUS latest package upgrade broke Plain Mac Authentication
Tested on the latest release. Plain Mac Authentication is not working. When it's enabled, I can log in with the wrong... Danilo Zrenjanin
09:20 AM Bug #11333: Incorrect community-list format
works as expected on 2.5 branch
2.4.5 fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/41
Viktor Gurov
08:43 AM Feature #11349 (Resolved): Allow to set minimum TLS version
EAP methods allows to set 'tls_min_version',
which is 1.0 by default
WebGUI dropdown option needed to select betw...
Viktor Gurov
07:57 AM Bug #7271 (Resolved): Co-existence of unbound and BIND/named
this fix is only for clean BIND install
9.16_9 works as expected
Viktor Gurov
06:51 AM Bug #7271: Co-existence of unbound and BIND/named
Tested on the latest release. Bind package version 9.16_9. It's still not fixed. Please check. Danilo Zrenjanin
07:42 AM Bug #11001 (Resolved): freeradius lose sql lib every pfsense update
works as expected Viktor Gurov
05:38 AM Bug #11321 (Resolved): Clamd service fails to start upon reboot when Block PUA option is checked on Squid Proxy Server Package
0.4.45_2 fixed Viktor Gurov
04:20 AM Bug #11346: Raw-Config not working
fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/40
Viktor Gurov
03:32 AM Bug #11346 (Resolved): Raw-Config not working
https://forum.netgate.com/topic/160365/frr-raw-config-not-working:
since an update it seems not to be possible to us...
Viktor Gurov
03:42 AM Bug #11345: FRR-OSPF - No "prefix-list" possible
same issue with Access lists
fix: https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/39
Viktor Gurov
03:21 AM Bug #11345 (Resolved): FRR-OSPF - No "prefix-list" possible
https://forum.netgate.com/topic/160363/frr-ospf-no-prefix-list-possible:
currently it is not possible for me to conf...
Viktor Gurov
03:17 AM Bug #11054: Check Client Certificate CN not working as described
more fixes:
- Fixes SQL backend user existing check;
- Fixes counters issue (`$varsqlconfauthcounters` lines)
http...
Viktor Gurov
01:16 AM Bug #11343 (Resolved): Invalid link to pfSense-pkg-bind changelog
If you go to "Installed Packages" (/pkg_mgr_installed.php) or "Available Packages" (/pkg_mgr.php), there is a link to... Anthony Pants
12:22 AM Bug #11325 (Resolved): BGP MD5 Keys Dropping Unintentionally
Viktor Gurov

01/29/2021

11:19 PM Bug #11234 (Resolved): Filer not create missing necessary folders
Viktor Gurov
10:02 PM Bug #11234: Filer not create missing necessary folders
I was able to create a folder ,
Example:
/var/folder/test1/test2
folder >> folder.
test1 >> folder.
test2...
Alhusein Zawi
09:41 PM Bug #11325: BGP MD5 Keys Dropping Unintentionally

pressing "save" is not interrupting the adjacency. (fixed).
2.5.0.a.20210129.1122
Alhusein Zawi
08:06 AM Bug #11325 (Feedback): BGP MD5 Keys Dropping Unintentionally
PR has been merged. Thanks! Renato Botelho
07:32 AM Bug #11325 (Pull Request Review): BGP MD5 Keys Dropping Unintentionally
Jim Pingle
06:01 AM Bug #11325: BGP MD5 Keys Dropping Unintentionally
- restart setkey only if parameters are changed;
- start setkey on service startup (frr.sh rc file fix);

https:/...
Viktor Gurov
12:09 AM Bug #11325: BGP MD5 Keys Dropping Unintentionally

pressing "save" interrupts the adjacency.
2.5.0.a.20210127.2350
Alhusein Zawi
09:36 AM Bug #10429: Status Traffic Total broken 2.4.5
Patch works for me
2.4.5-RELEASE-p1 (amd64)
built on Tue Jun 02 17:51:17 EDT 2020
FreeBSD 11.3-STABLE
Status...
Andres Mora
08:57 AM Bug #11334 (Feedback): FRR IPv4 OSPF passive-interface not working
Pushed a fix which works for me.
https://github.com/pfsense/FreeBSD-ports/commit/e1a9a4159ad577877ff378bf288cd8ec9...
Jim Pingle
08:51 AM Bug #11334 (Resolved): FRR IPv4 OSPF passive-interface not working
In frr_ospf.inc the list of passive interfaces is built by frr_generate_config_ospf_interfaces(), but that is run aft... Jim Pingle
08:05 AM Bug #11333 (Feedback): Incorrect community-list format
PR has been merged. Thanks! Renato Botelho
07:36 AM Bug #11333 (Pull Request Review): Incorrect community-list format
Jim Pingle
07:20 AM Bug #11333: Incorrect community-list format
fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/37
Viktor Gurov
06:34 AM Bug #11333 (Resolved): Incorrect community-list format
/var/log/frr/frr-reload.log:... Viktor Gurov
08:04 AM Bug #11321 (Feedback): Clamd service fails to start upon reboot when Block PUA option is checked on Squid Proxy Server Package
PR has been merged. Thanks! Renato Botelho
07:26 AM Bug #11321 (Pull Request Review): Clamd service fails to start upon reboot when Block PUA option is checked on Squid Proxy Server Package
Jim Pingle
01:26 AM Bug #11321: Clamd service fails to start upon reboot when Block PUA option is checked on Squid Proxy Server Package
fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/35
Viktor Gurov
08:01 AM Bug #11331 (Feedback): FreeRADIUS latest package upgrade broke Plain Mac Authentication
PR has been merged. Thanks! Renato Botelho
07:25 AM Bug #11331 (Pull Request Review): FreeRADIUS latest package upgrade broke Plain Mac Authentication
Jim Pingle
01:06 AM Bug #11331: FreeRADIUS latest package upgrade broke Plain Mac Authentication
fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/34
Viktor Gurov
01:01 AM Bug #11331 (Feedback): FreeRADIUS latest package upgrade broke Plain Mac Authentication
https://forum.netgate.com/topic/160323/freeradius-latest-package-upgrade:
From system logs:...
Viktor Gurov

01/28/2021

11:17 AM Bug #11325 (Feedback): BGP MD5 Keys Dropping Unintentionally
PR has been merged. Thanks! Renato Botelho
06:47 AM Bug #11325: BGP MD5 Keys Dropping Unintentionally
Great thanks! Christian McDonald
01:10 AM Bug #11325: BGP MD5 Keys Dropping Unintentionally
fix: https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/32 Viktor Gurov
11:15 AM Feature #11320 (Feedback): Update NAS client type
PR has been merged. Thanks! Renato Botelho
11:12 AM Bug #11054 (Feedback): Check Client Certificate CN not working as described
PR has been merged. Thanks! Renato Botelho
07:11 AM Bug #11054: Check Client Certificate CN not working as described
fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/33
Viktor Gurov
11:03 AM Bug #11001 (Feedback): freeradius lose sql lib every pfsense update
PR has been merged. Thanks! Renato Botelho
12:11 AM Bug #11001 (Confirmed): freeradius lose sql lib every pfsense update
see https://forum.netgate.com/topic/149828/freeradius3-0-15-7_9-2020-01-20-its-stops-can-t-find-libmysqlclient-so-20/... Viktor Gurov
11:01 AM Bug #8466 (Feedback): radiusd crash
PR has been merged. Thanks! Renato Botelho
10:01 AM Bug #4088 (Feedback): Buggy squidgurd config file is created
PR has been merged. Thanks! Renato Botelho
10:01 AM Bug #3085 (Feedback): squidguard: problems when importing a blacklist archive containing soft-links
PR has been merged. Thanks! Renato Botelho
10:01 AM Feature #11248 (Feedback): SafeSearch update
PR has been merged. Thanks! Renato Botelho
09:51 AM Bug #11274 (Feedback): ntopng https web server does not present full certificate chain
PR has been merged. Thanks! Renato Botelho
09:49 AM Feature #11060 (Feedback): Block access to consumer Google accounts
PR has been merged. Thanks! Renato Botelho
09:47 AM Bug #11234 (Feedback): Filer not create missing necessary folders
PR has been merged. Thanks! Renato Botelho
09:35 AM Feature #11301 (Feedback): Switch FRR to use default rc file as a service control base
PR has been merged. Thanks! Renato Botelho
09:35 AM Bug #11271 (Feedback): Setting default-originate in FRR/BGP Silently Appends a route-map
PR has been merged. Thanks! Renato Botelho
08:34 AM Bug #11261: pfBlockerNG ASN numbers in IPv4 (/IPv6) Custom_List generate error(s) "Invalid numeric literal at line 1, column 7"
The error may appear when the ASN is empty. See:
[ AS36229_v4 ] Downloading update .parse error: Invalid num...
P L
03:57 AM Bug #11259 (Closed): pfBlockerNG-devel fails to update all IP addresses for ASN using IPv4 Source Definitions
31.13.71.50 is in
https://api.bgpview.io/asn/32934/prefixes:...
Viktor Gurov

01/27/2021

04:09 PM Bug #11325 (Resolved): BGP MD5 Keys Dropping Unintentionally
FRR 1.0.0 on latest v2.5 snapshots.
I'm peering with an upstream that requires a neighbor password.
If I run 's...
Christian McDonald
09:16 AM Feature #11320 (Pull Request Review): Update NAS client type
Jim Pingle
03:47 AM Feature #11320: Update NAS client type
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/30 Viktor Gurov
03:09 AM Feature #11320 (Resolved): Update NAS client type
Client Type field needs update,
Current list of NAT types:
cisco
computone
livingston
max40xx
multitech
nets...
Viktor Gurov
08:03 AM Bug #9542: FreeRadius with MySQL not started and require mysql-client packet
see #11001 Viktor Gurov
08:02 AM Bug #10976: Freeradius dont start with SQL configuration
see #11001 Viktor Gurov
06:39 AM Bug #11321 (Resolved): Clamd service fails to start upon reboot when Block PUA option is checked on Squid Proxy Server Package
The Clamd service fails to start upon reboot when Block PUA option is checked on Squid Proxy Server Package with the ... RED SKULL

01/25/2021

11:39 AM Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
I know you _can_ but why limit the configuration in such a fashion?
Checkbox for enabling default-originate IPv4 w...
Chris Linstruth
11:28 AM Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
Chris Linstruth wrote:
> Shouldn't there be a separate route map selection for each address family?
You can match...
Ben Hughes
08:00 AM Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
Shouldn't there be a separate route map selection for each address family? Chris Linstruth
07:19 AM Bug #11271 (Pull Request Review): Setting default-originate in FRR/BGP Silently Appends a route-map
Jim Pingle
09:56 AM Feature #11310: Adding a widget to apcupsd plug-in
Link to pull request: https://github.com/pfsense/FreeBSD-ports/pull/1034 Andrew S
09:45 AM Feature #11310 (Resolved): Adding a widget to apcupsd plug-in
I was inspired to create a widget for the apcupsd plug-in that is included with pfSense and I would like to contribut... Andrew S
07:49 AM Bug #8466 (Pull Request Review): radiusd crash
Jim Pingle
07:45 AM Feature #11301 (Pull Request Review): Switch FRR to use default rc file as a service control base
Jim Pingle

01/24/2021

12:09 AM Feature #10816 (Resolved): Allow FRR BGP Neighbors to be active in both IPv4 and IPv6
Tested on 21.02-DEVELOPMENT (amd64)
built on Sat Jan 23 00:06:39 EST 2021
FreeBSD 12.2-STABLE
Checkbox "Address ...
Azamat Khakimyanov
12:04 AM Feature #11202 (Resolved): Antivirus feature update
Tested on 21.02-DEVELOPMENT (amd64)
built on Sat Jan 23 00:06:39 EST 2021
FreeBSD 12.2-STABLE
All these new feat...
Azamat Khakimyanov
 

Also available in: Atom