Activity
From 01/26/2021 to 02/24/2021
02/24/2021
-
10:17 PM Bug #11530 (Closed): ntopng 4.2 needs to be updated to 4.3, Bug when accessing a host for details
- On pfsense 2.5, installing ntopng from package manager ntop 0.8.13_9 which is 4.2 version of ntopng, after logging in...
-
10:11 PM Bug #11529 (Rejected): zeek leaves traces after uninstall
- Running latest 2.5 release of pfsense, I installed zeek to test out, but after removing the package, services still s...
-
10:53 AM Bug #11525 (Closed): pfsense 2.5.0 release version for vlan issue to suricata
- I have found that pfsense vlans have issues on suricata after updated to 2.5.0 release in esxi 7.0.1 virtual machine....
-
10:20 AM Bug #11515 (Pull Request Review): node_exporter 0.18.1_1 - Unable to interact or start the service from web ui
-
12:25 AM Bug #11515: node_exporter 0.18.1_1 - Unable to interact or start the service from web ui
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/58 -
10:19 AM Bug #11517 (Pull Request Review): Zebra Access List Names don't prevent spaces, but a whitespace in the name will stop FRR from starting
-
09:56 AM Bug #11511 (Pull Request Review): OSPF distribute List always empty
-
09:48 AM Feature #11520 (Pull Request Review): Add 'explicit-exit-notify' option by default
-
06:50 AM Feature #11520: Add 'explicit-exit-notify' option by default
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/59
-
06:04 AM Feature #11520: Add 'explicit-exit-notify' option by default
- Also see:
https://redmine.pfsense.org/issues/9085
-
04:36 AM Feature #11520 (Resolved): Add 'explicit-exit-notify' option by default
- https://build.openvpn.net/man/openvpn-2.5/openvpn.8.html:...
-
07:13 AM Bug #11522 (New): fping6 error
- we have a XG7100 (not updated to 2.5) with a running zabbix proxy. Now we discovered many entrys in the logfile with:...
02/23/2021
-
11:37 PM Bug #11517: Zebra Access List Names don't prevent spaces, but a whitespace in the name will stop FRR from starting
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/57 -
02:32 PM Bug #11517 (Resolved): Zebra Access List Names don't prevent spaces, but a whitespace in the name will stop FRR from starting
- Services/FRR/Global Settings/Edit/Access Lists allows saving the settings with a whitespace in the name, but this cau...
-
08:07 PM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
- I also have this issue after upgrading to pfsense 2.5. I've noticed that if you reboot the named process doesn't seem...
-
06:22 PM Bug #11501: Daily acme "expiring soon" warnings about a test Let's Encrypt certificate that expired > 300 days ago
- Jim Pingle wrote:
> Craig Leres wrote:
> > How was I able to go 390+ days before upgrading to 21.02 without getting... -
12:36 PM Bug #11515 (Feedback): node_exporter 0.18.1_1 - Unable to interact or start the service from web ui
- This bug can be reproduced on my Netgate XG-7100 running 21.02-RELEASE
After installing the package for the first... -
12:34 PM Bug #11513: FFR won't show Access-List on Distribute List (OSPF)
- Can't access gitlab.netgate.com :/
-
12:21 PM Bug #11513 (Duplicate): FFR won't show Access-List on Distribute List (OSPF)
- Duplicate of #11511
-
12:20 PM Bug #11513 (Duplicate): FFR won't show Access-List on Distribute List (OSPF)
- Pfsense 2.5 and FRR 1.1.0_5.
You create an access list and expect to set it on OSPF "Distribute List".
However ... -
12:18 PM Bug #11511: OSPF distribute List always empty
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/56 -
12:05 PM Bug #11511 (Resolved): OSPF distribute List always empty
- from https://forum.netgate.com/topic/161176/filter-some-routes:
The GUI does not find the configured ACL Lists any m... -
10:47 AM Bug #11509 (Closed): LCD package - not starting at boot - stop and start in Status Window not possible
- Hi all,
I'm using pfSense 2.5 on a WatchGuard XTM 510 on which I started using the built in LCD display. Got it work... -
06:52 AM Bug #11477 (Feedback): FRR does not recognize some BFD options
- PR has been merged. Thanks!
-
06:52 AM Bug #11392 (Feedback): FRR - Advanced Routing Behavior - Network Import Check: Flag should be reversed
- PR has been merged. Thanks!
-
06:52 AM Bug #11445 (Feedback): bgp as-path in wrong position
- PR has been merged. Thanks!
02/22/2021
-
06:56 PM Bug #9204: ospfd: GRE tunnels became unnumbered since 2.4.4
- ...I mean, this is not a proper test, I need to bring up a live tunnel and get some LSAs going first.
But when thi... -
03:56 PM Bug #9204: ospfd: GRE tunnels became unnumbered since 2.4.4
- OK - I just tested that fix....
-
03:37 PM Bug #9204: ospfd: GRE tunnels became unnumbered since 2.4.4
- Typically we would wait until it's in an official release.
-
02:37 PM Bug #9204: ospfd: GRE tunnels became unnumbered since 2.4.4
- FRR have been silent, but it looks like the person who raised this has a patch. What's your policy here, do you apply...
-
01:00 PM Bug #11501: Daily acme "expiring soon" warnings about a test Let's Encrypt certificate that expired > 300 days ago
- Craig Leres wrote:
> How was I able to go 390+ days before upgrading to 21.02 without getting daily expiring message... -
12:40 PM Bug #11501: Daily acme "expiring soon" warnings about a test Let's Encrypt certificate that expired > 300 days ago
- And I should ask is there a way to delete the certificate but keep the test config in case I need to test in the futu...
-
12:38 PM Bug #11501: Daily acme "expiring soon" warnings about a test Let's Encrypt certificate that expired > 300 days ago
- Jim Pingle wrote:
> Delete it, it's not needed. It's a leftover from previous ACME certificates.
>
> Entries are ... -
12:35 PM Bug #11501 (Not a Bug): Daily acme "expiring soon" warnings about a test Let's Encrypt certificate that expired > 300 days ago
- Delete it, it's not needed. It's a leftover from previous ACME certificates.
Entries are never removed automatical... -
12:25 PM Bug #11501 (Not a Bug): Daily acme "expiring soon" warnings about a test Let's Encrypt certificate that expired > 300 days ago
- When I setup acme on my pfsense box I used the same procedure as I would with a FreeBSD host; I created a test cert w...
-
12:07 PM Bug #11490: Service Watchdog - Impacts Reboots and Package Updates
- All fair points.
Have run into a couple occasions where something 'died' (such as Snort, Suricata, lldpd, haproxy)... -
10:11 AM Bug #11490: Service Watchdog - Impacts Reboots and Package Updates
- This is a problem only with the package and also not likely one that will be solvable in an easy way.
The package ... -
10:12 AM Feature #11492 (Duplicate): there is an Freebsd version available for a splunk universal forwarder
- Duplicate of #7683
-
09:51 AM Bug #11465 (Pull Request Review): Input validation does not prevent multiple conflicting WireGuard peers on a single tunnel from attempting to act as default route
-
09:42 AM Bug #11477 (Pull Request Review): FRR does not recognize some BFD options
-
09:38 AM Bug #11392 (Pull Request Review): FRR - Advanced Routing Behavior - Network Import Check: Flag should be reversed
-
09:38 AM Bug #11445 (Pull Request Review): bgp as-path in wrong position
-
05:44 AM Feature #11386 (Feedback): Add WireGuard tunneled networks to vpnaddresses list
- PR has been merged. Thanks!
-
05:42 AM Feature #11385 (Feedback): Add WireGuard tunneled networks to vpnaddresses list
- PR has been merged. Thanks!
02/21/2021
-
05:31 AM Bug #11493 (New): After upgrade zabbix proxy wont start
- Due to database changes between zabbix-proxy versions. The proxy database needs to be removed after upgrading else th...
-
03:08 AM Feature #11492 (Duplicate): there is an Freebsd version available for a splunk universal forwarder
- Splunk is great log analyzer. As well there is a free version available.
I my opinion it might be a good idea to u... -
01:18 AM Bug #11491 (Feedback): haproxy-devel v0.62_2 - startup error 'httpchk'
- Seeing this error message upon startup (under 2.5.0):
haproxy: startup error output!: [WARNING] 051/015053 (57019)... -
01:11 AM Bug #11490 (New): Service Watchdog - Impacts Reboots and Package Updates
- All - wasn't quite sure which to attribute this to as its a package, but is impacting standard operation.
Synopsis...
02/20/2021
-
12:33 PM Bug #8466 (Resolved): radiusd crash
- Tested on the latest release.
It works as expected. Ticket resolved. -
10:56 AM Bug #11465: Input validation does not prevent multiple conflicting WireGuard peers on a single tunnel from attempting to act as default route
- https://gitlab.netgate.com/pfSense/pfSense/-/merge_requests/149
-
05:57 AM Bug #11477: FRR does not recognize some BFD options
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/55
-
04:20 AM Bug #11477 (Feedback): FRR does not recognize some BFD options
- BFD daemon failed to start due to using incorrect command syntax:...
-
05:53 AM Bug #11479 (New): snmptt 1.4.2 does not work in daemon mode
- There is a bug in snmptt 1.4.2 that prevents it from starting up in daemon mode.
Upstream bug report: https://sour... -
03:05 AM Bug #11392: FRR - Advanced Routing Behavior - Network Import Check: Flag should be reversed
- add "no bgp network import-check" if unchecked:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/54
02/19/2021
-
03:04 PM Bug #11468: pfsense+ 21.02 missing zabbix44 package
- Hi Jim, ok, thank you for reply
-
01:58 PM Bug #11468 (Rejected): pfsense+ 21.02 missing zabbix44 package
- It's expected, they are EOL and gone from ports so we have no way to keep them....
-
01:49 PM Bug #11468 (Rejected): pfsense+ 21.02 missing zabbix44 package
- Hi, after update to pfsense+ 21.02 my zabbix was been removed, I checked and installed 4.0, but my server is 4.4 so p...
-
11:47 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
- Thats running pfsense 2.5 upgraded from 2.4.5-p1
-
11:46 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
- I'm using a Supermicro SuperServer E200-8D - Mini-1U - Xeon D-1528 1.9 GHz 32g ecc 500g ssd NMVe. A clean bind instal...
-
10:41 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
- I'll remove all the files tonight and then try it again with clean files.
It's running on a Netgate SG-3100
***... -
10:37 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
- same issue with a clean BIND install?
pfSense Plus 21.02 or pfSense 2.5?
what kind of appliance? VM, Netgate applia... -
09:10 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
- -I'm going to check how can I install strace on this box to see if I can further debug it.
Used `truss` however, ... -
05:32 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
- Wayne Graves wrote:
> unbound not running when this occurred on my pfsense 2.5.
Yea, ignore my comment (I deleted... -
05:20 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
- unbound not running when this occurred on my pfsense 2.5.
-
04:20 AM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
- can be related to #7271
-
08:01 AM Bug #11465 (Closed): Input validation does not prevent multiple conflicting WireGuard peers on a single tunnel from attempting to act as default route
- WireGuard uses Allowed IPs for internal routing to decide where to send traffic to a peer. When a peer has Allowed IP...
-
07:55 AM Bug #11459 (Pull Request Review): pfBlockerNG doesn't include WireGuard interface in outbound floating rules
-
04:13 AM Bug #11459: pfBlockerNG doesn't include WireGuard interface in outbound floating rules
- https://github.com/pfsense/FreeBSD-ports/pull/1044
-
04:07 AM Bug #11459 (Resolved): pfBlockerNG doesn't include WireGuard interface in outbound floating rules
- pfBlockerNG needs an option on the General tab for "WireGuard" similar to the "IPsec", "OpenVPN" and "L2TP VPN" optio...
-
07:55 AM Feature #10739: Update HAproxy-devel package to 2.2 and HAproxy to 2.0
- To add:
1. Now *Auto* SSL/TLS Compatibility Mode description says:
</code>If unsure leave it as 'Auto'</pre>
This ... -
07:24 AM Bug #11461: zeek package - Web Interface does not display any log content Package/Zeek/Alerts/Real Time Inspection
- Further problems identified in the zeek_alerts.php:
The content is updated every 10 seconds however, the results in ... -
06:58 AM Bug #11461: zeek package - Web Interface does not display any log content Package/Zeek/Alerts/Real Time Inspection
- Further investigation seems to show that the web gui is leveraging zeek_alert_data.php for getting the data. However,...
-
04:44 AM Bug #11461 (Resolved): zeek package - Web Interface does not display any log content Package/Zeek/Alerts/Real Time Inspection
- Pfsense 2.5.0 - Release, Zeek 3.0.6_1
Confirmed that zeek is working properly by inspecting process list as well as ... -
02:11 AM Bug #11333 (Resolved): Incorrect community-list format
- 1.1.0_4 works as expected:...
02/18/2021
-
10:20 PM Bug #11449: BIND fails during/after upgrade to 21.02/2.50
- I'm also hitting the same problem on my SG-3100.
Seeing the same permissions problems here is what I'm seeing:
... -
12:30 PM Bug #11449 (Resolved): BIND fails during/after upgrade to 21.02/2.50
- After upgrading to 21.02, the named service wouldn’t start and the logs said it was segfaulting ("signal 11"). So I r...
-
12:34 PM Bug #11434 (Feedback): SquidGuard over 1.16.18_11
- Fix pushed to version 1.16.18_15. Thank you!
-
12:21 PM Bug #11434: SquidGuard over 1.16.18_11
- I found the problem in /usr/local/pkg/squidguard_configurator.inc
Line: 903... -
10:04 AM Bug #11434: SquidGuard over 1.16.18_11
- Hi, i have same problem. i try change Client (source) with ip, domain, etc.. and config file is written with correct ...
-
10:41 AM Bug #11445: bgp as-path in wrong position
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/53 -
10:24 AM Bug #11445 (Resolved): bgp as-path in wrong position
- https://forum.netgate.com/topic/160998/frr-7-5-full-bgp-table-very-slow-and-as-paths-not-working/4:...
-
09:49 AM Bug #11404 (Feedback): Incorrect prefix/access lists migration on update
- Merged
-
09:48 AM Feature #11405 (Feedback): add RPKI route map in GUI
- Merged
-
09:48 AM Bug #8466 (Feedback): radiusd crash
- Merged
-
08:09 AM Feature #10858: OpenVPN Client silent install
- Jordan Fishman wrote:
> Hello,
>
> There appears to be a bug in the page, where the "Save as default" button does...
02/17/2021
-
08:38 PM Feature #10779: HAProxy SSL/TLS Compatibility Mode
- ...
-
08:32 PM Feature #10739: Update HAproxy-devel package to 2.2 and HAproxy to 2.0
- Hi Actually my ticket was much before of "duplicate", and my ticket contain details, that now issue with 2.2 in 2.5 p...
-
01:23 PM Bug #11434 (Resolved): SquidGuard over 1.16.18_11
- Hi, first problem thatI found is when we are using ldapusersearch on groups acl.
In older version when I insert ldap...
02/16/2021
02/15/2021
-
07:16 PM Feature #10858: OpenVPN Client silent install
- Hello,
There appears to be a bug in the page, where the "Save as default" button does not save/apply the "silent i... -
08:46 AM Feature #11043: pfSense GUI for iperf3 / perf
- Jim Pingle wrote:
> Maintaining a list of public servers is outside the scope of the package, and encouraging users ...
02/13/2021
-
11:11 PM Feature #11022: Add feeds from Firebog.net to pfBlockerNG
- 2.4.5p1 w/ pfblockerng-devel 3.0.0_10 shows additional firebog entries in feeds
-
04:58 PM Bug #11333: Incorrect community-list format
/var/log/frr/frr-reload.log is not generated in 2.4.5
2.4.5-RELEASE-p1 FRR 0.6.7_7
FRR 1.1.0_4 is n...-
05:23 AM Bug #8466: radiusd crash
- I retested and added another minor fix.
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/51 -
02:46 AM Bug #11414 (New): Enabling feed "Public_DNS4_all" breaks some Google services
- It seems at some point either public-dns.info added a wrong IP to their list of public DNS servers, Google changed so...
-
02:25 AM Bug #11131 (Resolved): pfblockerng-devel 3.0.0_2 logs when logging is disabled
-
02:09 AM Bug #11131: pfblockerng-devel 3.0.0_2 logs when logging is disabled
- I completely forgot about this bug report and now it is resolved. Sorry, please close (I don't think I can?).
-
01:08 AM Bug #8607: Suricata package fails to prune suricata.log
- Got this error again today with Suricata 5.0.4_2....
02/12/2021
-
09:29 PM Feature #11411: Smokeping as a default latency measurement tool
- Sergei Shablovsky wrote:
> The main advantages:
> - very flexible system of a measurements (due a lot of probes htt... -
05:12 PM Feature #11411: Smokeping as a default latency measurement tool
- Sergei Shablovsky wrote:
> Dear pfSense DevTeam!
>
> Please add Smokeping for monitoring WAN and LAN links state.... -
04:43 PM Feature #11411 (New): Smokeping as a default latency measurement tool
- Dear pfSense DevTeam!
Please add Smokeping for monitoring WAN and LAN links state.
The main advantages:
- very... -
03:53 PM Feature #11410 (New): adding bpytop (former Bashtop)
- Dear pfSense DevTeam!
Adding bpytop (former Bashtop) for local monitoring of pfSense-based firewall state: hardwar... -
12:36 PM Feature #11405 (Pull Request Review): add RPKI route map in GUI
-
02:16 AM Feature #11405: add RPKI route map in GUI
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/50
see https://docs.frrouting.org/en/latest/bgp.... -
01:54 AM Feature #11405 (Resolved): add RPKI route map in GUI
- Allow to select `match rpki` in the WebGUI:...
-
12:35 PM Bug #11404 (Pull Request Review): Incorrect prefix/access lists migration on update
-
01:51 AM Bug #11404: Incorrect prefix/access lists migration on update
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/49 -
12:04 AM Bug #11404 (New): Incorrect prefix/access lists migration on update
- https://forum.netgate.com/topic/160694/frr-7-3-7-5-bgp-not-announcing-routes:
I notice it now has an IP type selec... -
10:35 AM Feature #11408 (Rejected): Store 'Device Key' in config.xml
- This would be better served by #11118
-
10:07 AM Feature #11408 (Rejected): Store 'Device Key' in config.xml
- Storing the ACB device key in config.xml allows users to use the latest config.xml backup as a safe copy of the Devic...
-
04:43 AM Bug #11391 (Confirmed): Zeek crashes on 2.5.0
- running `zeekctl deploy` fixes this issue
-
03:49 AM Bug #11381 (Resolved): PHP error after clean Zeek install
- Fixed
-
03:42 AM Feature #10605 (Resolved): Add certificates from Trusted Store to Squid cert store
- squid pkg 0.4.45_3 - fixed
02/11/2021
-
11:47 PM Bug #11373 (Resolved): FRR: BGP neighbor remote-as external doesn't work
-
11:47 PM Bug #11376 (Resolved): BGP MD5 keys are not removed on service stop
-
01:08 AM Bug #11392: FRR - Advanced Routing Behavior - Network Import Check: Flag should be reversed
- Ok I am up and running now and after some testing I can rephrase the issue more clearly.
- We have some changes be...
02/10/2021
-
10:50 PM Bug #11373: FRR: BGP neighbor remote-as external doesn't work
- Remote-as external/internal is reflected in configuration and Neighbor-ship is established
router bgp 61000
n... -
10:24 PM Bug #11376: BGP MD5 keys are not removed on service stop
- if FRR service stopped/disabled
"setkey -D" is not showing entries "No SAD entries"
if FRR is not stopped ... -
02:29 PM Bug #11398: pfBlocker upgrade hangs forever
- At work, but this has happened with every pfblocker upgrade since trialing pfSense 2.5 and then moving to pfblocker 3...
-
02:06 PM Bug #11398: pfBlocker upgrade hangs forever
- andreas vesalius wrote:
> Also, the bigger issue as the pfblocker-devel package manager upgrade will complete, is th... -
02:03 PM Bug #11398: pfBlocker upgrade hangs forever
- Also, the bigger issue as the pfblocker-devel package manager upgrade will complete, is that unbound fails to restart...
-
01:34 PM Bug #11398 (Resolved): pfBlocker upgrade hangs forever
- It was first reported at https://redmine.pfsense.org/issues/10610#note-11 but since it never happened again with any ...
-
01:35 PM Feature #11396 (Rejected): Add Zeek as an installable package
- It is already a pfSense package on 2.5.0: pfSense-pkg-zeek-3.0.6_1
-
01:18 PM Feature #11396 (Rejected): Add Zeek as an installable package
- Base install:
Supported in FreeBSD (https://www.freshports.org/security/zeek) so installation and updates should be ... -
08:54 AM Bug #11388 (Feedback): Captive Portal authentication error with MySQL backend
- merged
-
07:58 AM Bug #11366: Arpwatch Cron Notification every 15 minutes
- Adam French wrote:
> Abdul Khaliq wrote:
> > Viktor Gurov wrote:
> > > You need to check "Disable Cron emails" opt... -
07:54 AM Bug #11366: Arpwatch Cron Notification every 15 minutes
- Abdul Khaliq wrote:
> Viktor Gurov wrote:
> > You need to check "Disable Cron emails" option
> > see #10771
>
>... -
04:46 AM Bug #11392 (Closed): FRR - Advanced Routing Behavior - Network Import Check: Flag should be reversed
- In Services -> FRR -> BGP -> Advanced -> Advanced Routing Behavior
There is a "Network Import Check" that is not ...
02/09/2021
-
03:13 PM Bug #11391 (Resolved): Zeek crashes on 2.5.0
- Trying to use zeek on 2.5.0 RC and I get a crash email and the service will not start. Also, chose 'sudo' category a...
-
10:28 AM Bug #11375: UPS Type <BLANK> for USB APC
- For clarity can the labels be changed slightly? As I wrote in the forum the column labels look like "UPSTYPEDEVICE" ...
-
05:05 AM Feature #11386: Add WireGuard tunneled networks to vpnaddresses list
- https://github.com/pfsense/FreeBSD-ports/pull/1038
-
12:29 AM Feature #11386 (Resolved): Add WireGuard tunneled networks to vpnaddresses list
- Currently it adds (#8688):
- IPsec Mobile IPv4 subnet
- IPsec site-to-site networks
- OpenVPN client/server Tunnel... -
04:49 AM Feature #11385: Add WireGuard tunneled networks to vpnaddresses list
- https://github.com/pfsense/FreeBSD-ports/pull/1037
-
12:27 AM Feature #11385 (Resolved): Add WireGuard tunneled networks to vpnaddresses list
- Currently it adds (#10700):
- IPsec Mobile IPv4 subnet
- IPsec site-to-site networks
- OpenVPN client/server Tunne... -
04:23 AM Bug #11388: Captive Portal authentication error with MySQL backend
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/48 -
04:13 AM Bug #11388 (Feedback): Captive Portal authentication error with MySQL backend
- https://forum.netgate.com/topic/160549/captive-portal-error:
has anyone encountered this particular issue with Freer...
02/08/2021
-
12:17 PM Feature #8547: fwknop Port Knocking Package
- Kurt Yoder wrote:
> > Because security bugs are frequently discovered in all sorts of software, *including security... -
07:33 AM Bug #11373 (Feedback): FRR: BGP neighbor remote-as external doesn't work
- Merged
-
07:17 AM Bug #11373 (Pull Request Review): FRR: BGP neighbor remote-as external doesn't work
-
07:33 AM Bug #11376 (Feedback): BGP MD5 keys are not removed on service stop
- Merged
-
07:19 AM Bug #11376 (Pull Request Review): BGP MD5 keys are not removed on service stop
-
07:29 AM Feature #10605 (Feedback): Add certificates from Trusted Store to Squid cert store
- Merged
-
05:16 AM Feature #10605: Add certificates from Trusted Store to Squid cert store
- 2.4.5 fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/47 -
04:06 AM Feature #10605 (New): Add certificates from Trusted Store to Squid cert store
- works fine on 2.5, but produces php error on 2.4.5 if 'Extra Trusted CA' != none:...
-
07:28 AM Bug #11381 (Feedback): PHP error after clean Zeek install
- Merged
-
07:21 AM Bug #11377 (Pull Request Review): FRR deinstall
- Removing the leftover files is fine but I don't think this package needs the ability to reset/wipe the config. Too da...
-
12:51 AM Feature #11295: DNSBL IDN support
- https://github.com/pfsense/FreeBSD-ports/pull/1036
02/07/2021
-
10:44 AM Bug #11381: PHP error after clean Zeek install
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/46
-
09:48 AM Bug #11381 (Resolved): PHP error after clean Zeek install
- If you press save on the Zeek package configuration page without any options/checkboxes, PHP errors will occur:
<pre... -
05:40 AM Bug #3085 (Resolved): squidguard: problems when importing a blacklist archive containing soft-links
- works as expected, see https://forum.netgate.com/topic/160607/squidguard-ut1-blacklist-support
-
04:00 AM Bug #11334 (Resolved): FRR IPv4 OSPF passive-interface not working
- 1.1.0_3, /var/etc/frr/frr.conf:...
-
03:28 AM Feature #11199 (Resolved): Minor updates
- pfBlockerNG-devel 3.0.0_9 - all OK
-
03:21 AM Bug #11377: FRR deinstall
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/45
-
03:03 AM Bug #11377 (Pull Request Review): FRR deinstall
- After uninstalling FRR all '<frr*>' entries are still in config.xml
`/var/etc/frr' also contains config files -
03:00 AM Bug #11376: BGP MD5 keys are not removed on service stop
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/44
-
02:56 AM Bug #11376 (Resolved): BGP MD5 keys are not removed on service stop
- 'setkey -D' keeps showing key association when you stop/disable FRR service.
see also #11325 -
01:53 AM Bug #11375 (Closed): UPS Type <BLANK> for USB APC
- there is no issue
-
01:32 AM Bug #11375 (New): UPS Type <BLANK> for USB APC
- https://forum.netgate.com/topic/158235/potential-bug-found-with-apcupsd-package-version-0-3-91_8-and-configuring-it-i...
-
12:08 AM Bug #11373: FRR: BGP neighbor remote-as external doesn't work
- fix:
2.5:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/42
2.4.5:
https://gitlab.netgate....
02/06/2021
-
11:03 PM Bug #11191 (Resolved): Installing and Removing pfBlockerNG Leaves Shell Scripts in webConfigurator Messages
-
05:19 PM Bug #11191: Installing and Removing pfBlockerNG Leaves Shell Scripts in webConfigurator Messages
- Verified that this is no longer a problem. Unchecking the save settings checkbox and then removing the package prope...
-
10:14 PM Bug #11343: Invalid link to pfSense-pkg-bind changelog
- Anthony Pants wrote:
> If you go to "Installed Packages" (/pkg_mgr_installed.php) or "Available Packages" (/pkg_mgr.... -
10:33 AM Feature #10619 (Resolved): Various FRR enhancements
- Tested on 21.02-DEVELOPMENT (built on Thu Feb 04 22:53:54 CST 2021)
I see all these enhancements enabled.
This ... -
10:15 AM Bug #11373 (Resolved): FRR: BGP neighbor remote-as external doesn't work
- if you put `external` in the web GUI as the remote-as the generated configuration doesn't include a `neighbor <ip-add...
-
04:07 AM Feature #10202 (Resolved): redistribute bgp + route-map filtering in OSPF6
- Tested on 21.02-DEVELOPMENT (built on Thu Feb 04 22:53:54 CST 2021)
There are redistribute bgp + route-map filteri...
02/05/2021
-
09:23 AM Bug #11271 (Resolved): Setting default-originate in FRR/BGP Silently Appends a route-map
-
08:03 AM Bug #11271: Setting default-originate in FRR/BGP Silently Appends a route-map
- This works as expected for one route map spanning both families. Much better. Thank you.
-
08:31 AM Bug #11346 (Resolved): Raw-Config not working
-
08:29 AM Bug #6818: WAN traffic graph displays inverted bandwidth columns
- I was checking traffic today, in a situation of heavy file upload to the internet, and i'm seeing that everything is ...
-
04:54 AM Feature #11155: SafeSearch AAAA
- Renato Botelho wrote:
> PR has been merged. Thanks!
PR 1035 containing this change has been merged. Thanks! -
04:52 AM Feature #11155 (Feedback): SafeSearch AAAA
- PR has been merged. Thanks!
-
04:53 AM Feature #11022 (Feedback): Add feeds from Firebog.net to pfBlockerNG
- PR 1035 containing this change has been merged. Thanks!
-
04:48 AM Feature #11201 (Feedback): Show iTLD Allow IDN domains
- PR has been merged. Thanks!
-
04:46 AM Feature #11199 (Feedback): Minor updates
- PR has been merged. Thanks!
-
04:44 AM Bug #11191 (Feedback): Installing and Removing pfBlockerNG Leaves Shell Scripts in webConfigurator Messages
- PR has been merged. Thanks!
02/04/2021
-
11:03 PM Bug #11345: FRR-OSPF - No "prefix-list" possible
- * prefix can be chosen from Route Filtering in OSPF area.
* Configuration is reflected in config. file.
!
rou... -
09:29 PM Bug #11346: Raw-Config not working
- Issue is fixed
* updated the running config (or created new configuration)
* changed the configuration.
* pre... -
12:18 PM Bug #11135: HAproxy OCSP reponse crontab bug
- Do not set target version on package tickets
-
05:26 AM Bug #11366: Arpwatch Cron Notification every 15 minutes
- Viktor Gurov wrote:
> You need to check "Disable Cron emails" option
> see #10771
Option is already checked, I'v...
02/03/2021
-
11:17 PM Bug #11366 (Rejected): Arpwatch Cron Notification every 15 minutes
- You need to check "Disable Cron emails" option
see #10771 -
10:11 PM Bug #11366 (Resolved): Arpwatch Cron Notification every 15 minutes
- Every 15 mins or so I receive an email containing :
Subject Arpwatch Notification : Cron <root@firewall> /etc/rc.f...
02/01/2021
-
08:24 AM Bug #11333: Incorrect community-list format
- 2.4.5 PR has been merged. Thanks!
-
08:22 AM Bug #11346 (Feedback): Raw-Config not working
- PR has been merged. Thanks!
-
07:57 AM Bug #11346 (Pull Request Review): Raw-Config not working
-
08:22 AM Bug #11345 (Feedback): FRR-OSPF - No "prefix-list" possible
- PR has been merged. Thanks!
-
07:55 AM Bug #11345 (Pull Request Review): FRR-OSPF - No "prefix-list" possible
-
08:20 AM Bug #11054 (Feedback): Check Client Certificate CN not working as described
- PR has been merged. Thanks!
-
07:54 AM Bug #11054 (Pull Request Review): Check Client Certificate CN not working as described
-
08:00 AM Todo #11351 (Not a Bug): updated version to pfsense 2.4.5_1
- At this point, the 2.5.0 release is close enough that backporting all the changes is unlikely.
-
07:25 AM Feature #9555 (Resolved): pimd package
- Tested on 2.4.5_p1 and on 21.02-DEVELOPMENT (built on Mon Feb 01 00:05:45 EST 2021)
Tested with 3 different multic...
01/31/2021
-
09:56 AM Todo #11351 (Not a Bug): updated version to pfsense 2.4.5_1
- you did released updated version (1.16.18_14) for pfsense 2.5.devel
but pfsense 2.4.5_1 still at version (1.16.18_...
01/30/2021
-
05:24 PM Feature #6022: Consider MLVPN for bonded VPN
- +1 for this feature.
As I understand it (which may be incorrect), pfSense "bonding" only load-balances by number of ... -
05:10 PM Feature #9238: Add support for Zerotier
- +1 for this feature!!!
-
10:08 AM Bug #11331: FreeRADIUS latest package upgrade broke Plain Mac Authentication
- I am not sure whether I tested it correctly, though. I used a LapTop as a client trying to authenticate through FreeR...
-
05:58 AM Bug #11331: FreeRADIUS latest package upgrade broke Plain Mac Authentication
- Tested on the latest release. Plain Mac Authentication is not working. When it's enabled, I can log in with the wrong...
-
09:20 AM Bug #11333: Incorrect community-list format
- works as expected on 2.5 branch
2.4.5 fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/41 -
08:43 AM Feature #11349 (Resolved): Allow to set minimum TLS version
- EAP methods allows to set 'tls_min_version',
which is 1.0 by default
WebGUI dropdown option needed to select betw... -
07:57 AM Bug #7271 (Resolved): Co-existence of unbound and BIND/named
- this fix is only for clean BIND install
9.16_9 works as expected -
06:51 AM Bug #7271: Co-existence of unbound and BIND/named
- Tested on the latest release. Bind package version 9.16_9. It's still not fixed. Please check.
-
07:42 AM Bug #11001 (Resolved): freeradius lose sql lib every pfsense update
- works as expected
-
05:38 AM Bug #11321 (Resolved): Clamd service fails to start upon reboot when Block PUA option is checked on Squid Proxy Server Package
- 0.4.45_2 fixed
-
04:20 AM Bug #11346: Raw-Config not working
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/40 -
03:32 AM Bug #11346 (Resolved): Raw-Config not working
- https://forum.netgate.com/topic/160365/frr-raw-config-not-working:
since an update it seems not to be possible to us... -
03:42 AM Bug #11345: FRR-OSPF - No "prefix-list" possible
- same issue with Access lists
fix: https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/39 -
03:21 AM Bug #11345 (Resolved): FRR-OSPF - No "prefix-list" possible
- https://forum.netgate.com/topic/160363/frr-ospf-no-prefix-list-possible:
currently it is not possible for me to conf... -
03:17 AM Bug #11054: Check Client Certificate CN not working as described
- more fixes:
- Fixes SQL backend user existing check;
- Fixes counters issue (`$varsqlconfauthcounters` lines)
http... -
01:16 AM Bug #11343 (Resolved): Invalid link to pfSense-pkg-bind changelog
- If you go to "Installed Packages" (/pkg_mgr_installed.php) or "Available Packages" (/pkg_mgr.php), there is a link to...
-
12:22 AM Bug #11325 (Resolved): BGP MD5 Keys Dropping Unintentionally
01/29/2021
-
11:19 PM Bug #11234 (Resolved): Filer not create missing necessary folders
-
10:02 PM Bug #11234: Filer not create missing necessary folders
- I was able to create a folder ,
Example:
/var/folder/test1/test2
folder >> folder.
test1 >> folder.
test2... -
09:41 PM Bug #11325: BGP MD5 Keys Dropping Unintentionally
pressing "save" is not interrupting the adjacency. (fixed).
2.5.0.a.20210129.1122-
08:06 AM Bug #11325 (Feedback): BGP MD5 Keys Dropping Unintentionally
- PR has been merged. Thanks!
-
07:32 AM Bug #11325 (Pull Request Review): BGP MD5 Keys Dropping Unintentionally
-
06:01 AM Bug #11325: BGP MD5 Keys Dropping Unintentionally
- - restart setkey only if parameters are changed;
- start setkey on service startup (frr.sh rc file fix);
https:/... -
12:09 AM Bug #11325: BGP MD5 Keys Dropping Unintentionally
pressing "save" interrupts the adjacency.
2.5.0.a.20210127.2350
-
09:36 AM Bug #10429: Status Traffic Total broken 2.4.5
- Patch works for me
2.4.5-RELEASE-p1 (amd64)
built on Tue Jun 02 17:51:17 EDT 2020
FreeBSD 11.3-STABLE
Status... -
08:57 AM Bug #11334 (Feedback): FRR IPv4 OSPF passive-interface not working
- Pushed a fix which works for me.
https://github.com/pfsense/FreeBSD-ports/commit/e1a9a4159ad577877ff378bf288cd8ec9... -
08:51 AM Bug #11334 (Resolved): FRR IPv4 OSPF passive-interface not working
- In frr_ospf.inc the list of passive interfaces is built by frr_generate_config_ospf_interfaces(), but that is run aft...
-
08:05 AM Bug #11333 (Feedback): Incorrect community-list format
- PR has been merged. Thanks!
-
07:36 AM Bug #11333 (Pull Request Review): Incorrect community-list format
-
07:20 AM Bug #11333: Incorrect community-list format
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/37 -
06:34 AM Bug #11333 (Resolved): Incorrect community-list format
- /var/log/frr/frr-reload.log:...
-
08:04 AM Bug #11321 (Feedback): Clamd service fails to start upon reboot when Block PUA option is checked on Squid Proxy Server Package
- PR has been merged. Thanks!
-
07:26 AM Bug #11321 (Pull Request Review): Clamd service fails to start upon reboot when Block PUA option is checked on Squid Proxy Server Package
-
01:26 AM Bug #11321: Clamd service fails to start upon reboot when Block PUA option is checked on Squid Proxy Server Package
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/35
-
08:01 AM Bug #11331 (Feedback): FreeRADIUS latest package upgrade broke Plain Mac Authentication
- PR has been merged. Thanks!
-
07:25 AM Bug #11331 (Pull Request Review): FreeRADIUS latest package upgrade broke Plain Mac Authentication
-
01:06 AM Bug #11331: FreeRADIUS latest package upgrade broke Plain Mac Authentication
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/34 -
01:01 AM Bug #11331 (Feedback): FreeRADIUS latest package upgrade broke Plain Mac Authentication
- https://forum.netgate.com/topic/160323/freeradius-latest-package-upgrade:
From system logs:...
01/28/2021
-
11:17 AM Bug #11325 (Feedback): BGP MD5 Keys Dropping Unintentionally
- PR has been merged. Thanks!
-
06:47 AM Bug #11325: BGP MD5 Keys Dropping Unintentionally
- Great thanks!
-
01:10 AM Bug #11325: BGP MD5 Keys Dropping Unintentionally
- fix: https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/32
-
11:15 AM Feature #11320 (Feedback): Update NAS client type
- PR has been merged. Thanks!
-
11:12 AM Bug #11054 (Feedback): Check Client Certificate CN not working as described
- PR has been merged. Thanks!
-
07:11 AM Bug #11054: Check Client Certificate CN not working as described
- fix:
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/33 -
11:03 AM Bug #11001 (Feedback): freeradius lose sql lib every pfsense update
- PR has been merged. Thanks!
-
12:11 AM Bug #11001 (Confirmed): freeradius lose sql lib every pfsense update
- see https://forum.netgate.com/topic/149828/freeradius3-0-15-7_9-2020-01-20-its-stops-can-t-find-libmysqlclient-so-20/...
-
11:01 AM Bug #8466 (Feedback): radiusd crash
- PR has been merged. Thanks!
-
10:01 AM Bug #4088 (Feedback): Buggy squidgurd config file is created
- PR has been merged. Thanks!
-
10:01 AM Bug #3085 (Feedback): squidguard: problems when importing a blacklist archive containing soft-links
- PR has been merged. Thanks!
-
10:01 AM Feature #11248 (Feedback): SafeSearch update
- PR has been merged. Thanks!
-
09:51 AM Bug #11274 (Feedback): ntopng https web server does not present full certificate chain
- PR has been merged. Thanks!
-
09:49 AM Feature #11060 (Feedback): Block access to consumer Google accounts
- PR has been merged. Thanks!
-
09:47 AM Bug #11234 (Feedback): Filer not create missing necessary folders
- PR has been merged. Thanks!
-
09:35 AM Feature #11301 (Feedback): Switch FRR to use default rc file as a service control base
- PR has been merged. Thanks!
-
09:35 AM Bug #11271 (Feedback): Setting default-originate in FRR/BGP Silently Appends a route-map
- PR has been merged. Thanks!
-
08:34 AM Bug #11261: pfBlockerNG ASN numbers in IPv4 (/IPv6) Custom_List generate error(s) "Invalid numeric literal at line 1, column 7"
- The error may appear when the ASN is empty. See:
[ AS36229_v4 ] Downloading update .parse error: Invalid num... -
03:57 AM Bug #11259 (Closed): pfBlockerNG-devel fails to update all IP addresses for ASN using IPv4 Source Definitions
- 31.13.71.50 is in
https://api.bgpview.io/asn/32934/prefixes:...
01/27/2021
-
04:09 PM Bug #11325 (Resolved): BGP MD5 Keys Dropping Unintentionally
- FRR 1.0.0 on latest v2.5 snapshots.
I'm peering with an upstream that requires a neighbor password.
If I run 's... -
09:16 AM Feature #11320 (Pull Request Review): Update NAS client type
-
03:47 AM Feature #11320: Update NAS client type
- https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/30
-
03:09 AM Feature #11320 (Resolved): Update NAS client type
- Client Type field needs update,
Current list of NAT types:
cisco
computone
livingston
max40xx
multitech
nets... -
08:03 AM Bug #9542: FreeRadius with MySQL not started and require mysql-client packet
- see #11001
-
08:02 AM Bug #10976: Freeradius dont start with SQL configuration
- see #11001
-
06:39 AM Bug #11321 (Resolved): Clamd service fails to start upon reboot when Block PUA option is checked on Squid Proxy Server Package
- The Clamd service fails to start upon reboot when Block PUA option is checked on Squid Proxy Server Package with the ...
Also available in: Atom