Project

General

Profile

Activity

From 04/22/2023 to 05/21/2023

05/21/2023

04:43 PM Regression #13978: PHP errors with squidGuard
I just found the problem and the solution.
*Problem:*
PHP ERROR: Type: 1, File: /usr/local/pkg/squidguard.inc, ...
EDUARDO RODRIGUEZ ROMERO
09:18 AM Regression #13984: PHP errors with squid
I just found the problem and the solution.
Problem:
The squidguardtime settings it's empty
Solution:
...
EDUARDO RODRIGUEZ ROMERO
06:45 AM Regression #13984: PHP errors with squid
Can please somebody help me. This is really important for me because at this moment i dont have any restriction for t... EDUARDO RODRIGUEZ ROMERO
06:43 AM Regression #13984: PHP errors with squid
I have the same problem with the squidguard package, i try to reinstall the squidguard package and i received the err... EDUARDO RODRIGUEZ ROMERO

05/20/2023

10:52 AM Bug #14369: DNSBL Parsing error when DNSBL Mode "Unbound python mode".
I can't reproduce the errors on 23.01 with pfBlocker 3.2.0_4
Reload went without errors.
Lev Prokofev
10:32 AM Regression #14389: syslog-ng cannot save config
I couldn't reproduce it on:... Danilo Zrenjanin

05/19/2023

05:08 PM Bug #14398 (New): ONBATT Status Missing in apcupsd.widget.php
Description:
The file apcupsd.widget.php is currently lacking the "ONBATT" status. Due to this, when the system is o...
Nick ...
07:57 AM Feature #14101: Add Zabbix 6.4 packages
https://github.com/pfsense/FreeBSD-ports/pull/1263
Looking for a review and hopefully a quick merge into 12.05
Valentin A

05/17/2023

10:23 AM Bug #14390: Squid: SECURITY ALERT: Host header forgery detected
I've written a small Python script to help reliably reproduce and demonstrate this issue.
To simulate an application...
Simon Byrnand

05/16/2023

09:27 AM Bug #14390: Squid: SECURITY ALERT: Host header forgery detected
I can't seem to edit my initial post but wanted to clarify the Squid debug option should be *debug_options ALL,1 rota... Simon Byrnand
09:19 AM Bug #14390 (New): Squid: SECURITY ALERT: Host header forgery detected
In Squid version 3.2 in 2012 a "fix" for a potential security vulnerability involving host header forgery was added, ... Simon Byrnand

05/15/2023

11:38 PM Regression #14389 (Resolved): syslog-ng cannot save config
Trying to save the configuration, even with the default values, in syslog-ng results in an error:... Steve Wheeler
02:12 AM Bug #12808: Wireguard Gateways disabled when Wireguard Service is Manually Restarted
Hi everyone, I know this is closed but I am also experiencing the same issue. Netgate 6100. Just updated to 23.01 (... Allan Dresner

05/14/2023

09:11 AM Bug #14369: DNSBL Parsing error when DNSBL Mode "Unbound python mode".
Thanks for checking it. Hopefully it's fixed then. I'll wait and see what 23.05 does, and come back, if it's still th... Jens Kristensen
02:38 AM Bug #14369: DNSBL Parsing error when DNSBL Mode "Unbound python mode".
Attempted to recreate this in pfSense Plus 23.05 RC with pfBlocker 3.2.0_5. Unable to recreate. Kris Phillips

05/11/2023

05:17 PM Bug #14287: pfBlockerNG does not uninstall cleanly when using RAM disks
No joy with the new 2.2.2 system patches:... Loh Phat
10:08 AM Feature #14372 (New): More advanced filter options on snort interface rules
Hello community,
I think it would make sense to integrate a text search field for the interface rules filter, which ...
Fabian Winzinger

05/10/2023

12:19 PM Bug #14366 (Resolved): Enabling IPv6 DNSBL pfb_dnsbl service startup failure
Jim Pingle
02:37 AM Bug #14366: Enabling IPv6 DNSBL pfb_dnsbl service startup failure
The patch works for me. The DNSBL now starts again. Thank you! Glenn Hall

05/09/2023

09:58 PM Bug #14369: DNSBL Parsing error when DNSBL Mode "Unbound python mode".
pfBlockerNG-devel ver 3.2.0_4 Jens Kristensen
09:50 PM Bug #14369 (Closed): DNSBL Parsing error when DNSBL Mode "Unbound python mode".
Hi,
First, Thank you for this EXCELLENT package!
This may very well be a user-error. In that case I apologize.
...
Jens Kristensen
06:34 PM Bug #14366: Enabling IPv6 DNSBL pfb_dnsbl service startup failure
Patch is in place for development branches and cherry-picked to 23.05. Christian McDonald
06:24 PM Bug #14366 (Feedback): Enabling IPv6 DNSBL pfb_dnsbl service startup failure
Christian McDonald
03:42 PM Bug #14366 (Resolved): Enabling IPv6 DNSBL pfb_dnsbl service startup failure
https://forum.netgate.com/topic/179874/failure-when-starting-pfb_dnsbl-service?lang=en-US Christian McDonald
08:50 AM Bug #14364 (Confirmed): APCUPSD unable to process date string
Hi,
After upgrading on a new install from 2.6.0 to + v23.01 (on amd64 if relevant) I'm unable to use the apcupsd w...
Lloyd Collins

05/07/2023

12:39 PM Feature #9721 (Resolved): add squidclient -h 127.0.0.1 mgr:info output to Diagnostics / Squid and status.php
Tested on 23.01
There is /Services/Squid/Status page and this page has correct /status_squid.php address
I marked t...
Azamat Khakimyanov

05/06/2023

07:57 PM Regression #13984: PHP errors with squid
Thanks for your reply.
For those logs you reviewed the user could not reinstall the package as it would not fully...
Jonathan Lee
04:37 PM Regression #13984: PHP errors with squid
The patch can't be applied to non-existent files, hence (re)installing the package will trigger issues resolved by th... Marcos M
08:42 AM Bug #12705 (Resolved): IPsec Profile Wizard/Apple: IKEv2 VPN with ECDSA server certificate does not connect using generated profile
Tested EAP-TLS using ECDSA certs - works fine
Tested EAP-RADIUS using ECDSA certs - works fine
I am marking this ...
Danilo Zrenjanin
06:52 AM Bug #13632 (Resolved): tailscale does not survive reboot on pfsense with ram disk in use
Danilo Zrenjanin
06:51 AM Bug #13632: tailscale does not survive reboot on pfsense with ram disk in use
Tested against:... Danilo Zrenjanin

05/05/2023

08:36 PM Regression #13984: PHP errors with squid

This patch fixed the issue with the other user ben and the HA use, but the other user Hugo still has issues reinsta...
Jonathan Lee
05:36 AM Bug #14349 (Closed): The ClamAV 0.105.1 got a few vulnerabilities

Current ClamAV 0.105.1 got a few vulnerabilities:
https://blog.clamav.net/2023/02/clamav-01038-01052-and-101-pat...
Lev Prokofev
03:27 AM Feature #10818: UDP Broadcast Relay
I can verify that pkg install *pfSense-pkg-udpbroadcastrelay-1.0.pkg* doesn't work on pfSense 2.6
It would be nice i...
I W

05/04/2023

03:45 PM Feature #10818: UDP Broadcast Relay
Idealy the port would be updated upstream in FreeBSD rather than having to run a pfSense-specific build.
For those a...
Marcos M
04:32 AM Feature #10818: UDP Broadcast Relay
The upstream was updated to add additional features to include options such as --allowcidr and --blockcidr:
https://...
James G
02:02 PM Feature #9749: 95th percentile missing for quality in monitoring
Would still like to see this fixed or implemented Michael Kellogg
12:11 AM Bug #14341 (New): Squid Cache Table Logs Showing incorrect date
Squid - Cache Logs
Date-Time Message
31.12.1969 16:00:00
31.12.1969 16:00:00
31.12.1969 16:00:00
31.12.1969 1...
Jonathan Lee
12:07 AM Regression #13984: PHP errors with squid
Thanks, I appreciate you. I posted the information about this to the Netgate forum again. Jonathan Lee

05/03/2023

11:43 PM Regression #13984: PHP errors with squid
This should resolve the error, thanks! Marcos M
10:19 PM Regression #13984: PHP errors with squid
I got another user https://forum.netgate.com/user/hugoeyng to test with their PHP errors this was his result.
@jona...
Jonathan Lee
08:42 PM Regression #13984: PHP errors with squid
Installed and no errors so far. System running.
Thank you. This is with the change you made.
Jonathan Lee
03:00 PM Regression #13984: PHP errors with squid
Thanks for the test (no need to post patch details). Feel free to try again with the updated squidGuard patch. Marcos M
06:16 AM Regression #13984: PHP errors with squid
It just dawned on me I use both modes on Squid transparently and SSL Intercept is this a problem with me using this p... Jonathan Lee
06:01 AM Regression #13984: PHP errors with squid
Other Patch debug does not show 64 in debug Jonathan Lee
06:00 AM Regression #13984: PHP errors with squid
<removed patch success details> Jonathan Lee
05:52 AM Regression #13984: PHP errors with squid
I ran into an error and had to revert back. Attached is the error. Jonathan Lee
05:47 AM Regression #13984: PHP errors with squid
One error after reboot
Jonathan Lee
05:34 AM Regression #13984: PHP errors with squid
I appreciate all you do. Testing attached patches, I noticed you adjusted clam AV or Squids antivirus to store on the... Jonathan Lee
03:41 AM Regression #13984 (Pull Request Review): PHP errors with squid
https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/337
Patch for both squid and squidGuiard are att...
Marcos M
08:38 PM Regression #13958 (Resolved): Snort exits with signal 10 on arm32
This looks good in current snaps:
pfSense-23.05.b.20230503.0600
pfSense-pkg-snort-4.1.6_7
snort-2.9.20_3
Steve Wheeler
04:04 AM Bug #14287: pfBlockerNG does not uninstall cleanly when using RAM disks
Chris W wrote in #note-7:
> It looks like the issue you're seeing is due to a greater PHP problem as a result of u...
Loh Phat

05/02/2023

07:48 PM Regression #13958 (Feedback): Snort exits with signal 10 on arm32
patches for armv7 are now in our tree. Christian McDonald
04:36 PM Regression #13984: PHP errors with squid
Additional errors:... Marcos M
12:21 PM Feature #14314: Keep DDNS entries on config change
https://github.com/pfsense/FreeBSD-ports/pull/1256 Andreas Pross

05/01/2023

03:28 PM Todo #14333 (New): Reduce config writes
When the service is started, multiple config writes are performed. System logs (reversed) show:... Marcos M
12:40 PM Bug #14330: Arpwatch - Cron "Broken pipe" Errors
Jim Pingle wrote in #note-1:
> Not a bug in arpwatch, it's from #14016 -- see that issue for details. There is a fix...
James Blanton
12:28 PM Bug #14330 (Rejected): Arpwatch - Cron "Broken pipe" Errors
Not a bug in arpwatch, it's from #14016 -- see that issue for details. There is a fix in the recommended patches area... Jim Pingle
12:26 PM Bug #14330 (Rejected): Arpwatch - Cron "Broken pipe" Errors
I've got 11 XG-7100 1U's that I've upgraded to 23.01, all of which have Arpwatch installed. Since upgrading them, I'm... James Blanton

04/30/2023

04:40 PM Bug #14287: pfBlockerNG does not uninstall cleanly when using RAM disks
23.01 is the current stable release for my Netgate 3100
Version 23.01-RELEASE (arm)
built on Fri Feb 10 20:06:58...
Loh Phat
08:40 AM Bug #14315: Routes are not exposed on Tailscale when an empty route entry exists in the GUI
Tested on 23.01 and I can confirm that. aleksei prokofiev

04/29/2023

10:32 PM Bug #14287: pfBlockerNG does not uninstall cleanly when using RAM disks
How did you arrive at 23.01, from a previous CE or Plus version?
I'm not able to reproduce this on a 23.01 Plus inst...
Chris W
07:21 PM Bug #12705: IPsec Profile Wizard/Apple: IKEv2 VPN with ECDSA server certificate does not connect using generated profile
Tested on the MacOS Monterey, Version 12.6.3.
I defined certs on pfSense using ECDSA instead of RSA. IPsec Authe...
Danilo Zrenjanin
04:06 PM Bug #14326 (Rejected): RRD Summary 2.0_2 is not showing any data
Tested on 22.01, 22.05 and 23.01 - all with RRD Summary version 2.0_2
During several weeks I tried but RRD Summary...
Azamat Khakimyanov
04:03 PM Bug #11563: BIND GUI writes TXT records > 255 characters
It seems a bit outdated but I am currently working on a fix for that.
It just needs some testing.
https://github.com...
Andreas Pross
03:13 PM Todo #12865 (Resolved): RRD Summary improvements
Tested on 23.01
I saw correct time period and interface names with 'OPTx' in brackets.
I marked this ToDo as ...
Azamat Khakimyanov
10:33 AM Bug #13878 (Resolved): IPsec Profile Wizard/Apple: Generated profile does not contain the correct ``AuthenticationMethod`` for IKEv2 EAP configurations
Danilo Zrenjanin
10:33 AM Bug #13878: IPsec Profile Wizard/Apple: Generated profile does not contain the correct ``AuthenticationMethod`` for IKEv2 EAP configurations
Tested on: ... Danilo Zrenjanin

04/28/2023

03:11 PM Feature #14324 (New): pfBlockerNG to use geoLite "country" instead of "registered_country"
Hello,
Explanations here: https://forum.netgate.com/topic/179567/country-vs-registered-country/4?_=1682682466761
...
Pierre Chopot
02:28 PM Feature #11719: ACME - Create script for DNSExit API
After a few years updating TXT records manually every 2 months I finally could (with the help of chat gpt) setup my c... drun kly
12:34 PM Feature #14321 (Closed): Add UPS information to LCDproc screen
Hi,
I'd like to add a new screen to LCDproc that reads the UPS information from NUT.
Should show the current U...
Geo Rou

04/26/2023

12:50 PM Bug #14315 (Resolved): Routes are not exposed on Tailscale when an empty route entry exists in the GUI
In the Tailscale package settings, if an empty entry exists for @Advertised Routes@, no routes will be exposed to the... Marcos M
07:32 AM Feature #14311 (Rejected): Widget for System -> Patches
Given the personal and custom nature of patches this is not viable. Not everyone will apply every patch, since not ev... Jim Pingle
06:13 AM Feature #14314 (Pull Request Review): Keep DDNS entries on config change
Each time the BIND config is changed, all DDNS entries in all master zones are lost because the zone.db is overwritte... Andreas Pross

04/25/2023

05:39 PM Feature #14311 (Rejected): Widget for System -> Patches
I have the System_Patches package installed. There is no notification of updates.
It would be nice to have a notifi...
William Liporace
12:45 PM Bug #14287: pfBlockerNG does not uninstall cleanly when using RAM disks
Correction, I applied the patch at https://redmine.pfsense.org/issues/14230 and it didn't help. I know it's a differ... Loh Phat

04/24/2023

04:58 PM Feature #10818 (Feedback): UDP Broadcast Relay
The package is now available for dev snapshots (currently 23.05/2.7). Marcos M
07:16 AM Bug #14299: pfBlockerNG does not honor the cURL source interface setting for DNSBL lists
This morning I noticed the following:... Charles Hamilton

04/23/2023

12:58 PM Bug #14179: FreeRadius is active but in an inoperable state, switches to a generated freeradius-temp certificate upon restart
Hi Chris,
thanks for looking into this.
Yes I upgraded from 2.6.0 and the original version was probably somethi...
name name
10:24 AM Bug #14287: pfBlockerNG does not uninstall cleanly when using RAM disks
Related https://redmine.pfsense.org/issues/13817 Marcos M
10:02 AM Bug #14287: pfBlockerNG does not uninstall cleanly when using RAM disks
Looks like a pfSense PHP 8 code issue.
{main} thrown in /etc/inc/config.lib.inc on line 928
PHP ERROR: Type: 1, Fi...
BBcan177 .
08:50 AM Bug #14287: pfBlockerNG does not uninstall cleanly when using RAM disks
Note that System Patches 2.2.1 is installed with all recommended patches applied. Loh Phat
08:36 AM Bug #14287: pfBlockerNG does not uninstall cleanly when using RAM disks
Error when removing 3.2.0_4:... Loh Phat

04/22/2023

09:48 PM Bug #14287: pfBlockerNG does not uninstall cleanly when using RAM disks
If you update to the latest pfBlockerNG and then uninstall it with Keep Settings unchecked, does this still leave orp... Kris Phillips
09:07 PM Bug #14179: FreeRadius is active but in an inoperable state, switches to a generated freeradius-temp certificate upon restart
Steps taken to reproduce:
1. Install FreeRadius package into a virtual machine of 23.01
2. Configure FreeRadius with...
Chris W
05:33 PM Bug #13632: tailscale does not survive reboot on pfsense with ram disk in use
tailscale v0.1.3 on 23.05.a.20230421.0022 in the package's settings provides a configurable field for state directory... Jordan G
04:02 AM Bug #13632: tailscale does not survive reboot on pfsense with ram disk in use
The latest Tailscale version under available packages is 0.1.2.
v0.1.3 is not listed yet. Please check.
Danilo Zrenjanin
05:38 AM Bug #13936 (Resolved): PHP error from RRD Graphs when attempting a query a newly created empty database
Tested against:... Danilo Zrenjanin
04:38 AM Bug #10900 (Not a Bug): /packages/backup/backup.php?a=download&t=backup HTTP 504, or Sends PHP Error Message as ASCII/Text file Named pfsense.bak.tgz
The References.7z file initially included indicates that the issue was with allocated PHP memory. ... Danilo Zrenjanin
04:17 AM Bug #10936: both haproxy/haproxy-devel non-existent option lb-agent-chk
haproxy 0.61_9
Still has the lb-agent-chk listed as the check method. The needs to be removed.
Danilo Zrenjanin
01:37 AM Bug #13985: Telegraf error After Update PFSense to 23.01
@aleksei prokofiev, what dependent Telefraf Package have you? Marijan Kruljac
01:18 AM Bug #13985: Telegraf error After Update PFSense to 23.01
Can't reproduce,
Installed 2.6 CE
Installed and configure Telegraf with influx DB
Upgraded to 23.01
no errors oc...
Lev Prokofev
 

Also available in: Atom