Project

General

Profile

Activity

From 07/23/2023 to 08/21/2023

08/21/2023

02:01 PM Feature #14696: possible cross site scripting and URL manipulation shell access injection issue sgerror.php
Thanks for looking at this and testing the various inputs. I did not know about the other reporting URL I will use th... Jonathan Lee
01:52 PM Feature #14696 (Rejected): possible cross site scripting and URL manipulation shell access injection issue sgerror.php
That action is just echoing back the input to the user but as it passes through a query string and so on, the content... Jim Pingle

08/19/2023

05:47 PM Bug #14683: PHP error on ``status_frr.php`` from using too much memory
Since this is the same base issue solved by the PHP patch, I'm marking this as a duplicate of https://redmine.pfsense... Christopher Cope
05:47 PM Bug #14683 (Duplicate): PHP error on ``status_frr.php`` from using too much memory
Christopher Cope
12:05 AM Feature #14696: possible cross site scripting and URL manipulation shell access injection issue sgerror.php
/usr/local/www/sgerror.php
has no ability to disable internal error redirect functionality when utilizing externa...
Jonathan Lee
12:03 AM Feature #14696: possible cross site scripting and URL manipulation shell access injection issue sgerror.php
In my case https://192.168.1.1:8080/sgerror.php?url=403%20Blocked%20by%20Mom%20and%20Dad&a=%a&n=%n&i=%i&s=%s&t=%t&u=%... Jonathan Lee
12:02 AM Feature #14696: possible cross site scripting and URL manipulation shell access injection issue sgerror.php
sgerror.php is also still accessible even with the internal error redirector redirecting to external site like Google... Jonathan Lee

08/18/2023

11:13 PM Feature #14696: possible cross site scripting and URL manipulation shell access injection issue sgerror.php
I wonder if there is any php injection vulnerabilities here. I did get it to say hello world. I noticed there is some... Jonathan Lee
10:48 PM Feature #14696: possible cross site scripting and URL manipulation shell access injection issue sgerror.php
if I can force it to say hello world, you could force it to say it a million times and do a denial of service attack ... Jonathan Lee
10:33 PM Feature #14696 (Rejected): possible cross site scripting and URL manipulation shell access injection issue sgerror.php
Hello fellow pfSense Redmine team,

I seem to have found an issue with sgerror.php allowing a user to adapt the ph...
Jonathan Lee
04:31 PM Bug #14694 (Not a Bug): HAProcy
I'm using ACME certs with HAProxy and it works fine here, so it's not clear why yours might be failing.
This site ...
Jim Pingle
05:02 AM Bug #14694 (Not a Bug): HAProcy
After the latest update I can no longer assign an ACME certificate to a HAProxy Frontend, not matter which certificat... Rick Strangman

08/17/2023

08:10 AM Bug #14683: PHP error on ``status_frr.php`` from using too much memory

and changed config.inc
// Set memory limit to 512M on amd64.
if ($ARCH == "amd64") {
ini_set("memory_limit", ...
yon Liu
08:06 AM Bug #14683: PHP error on ``status_frr.php`` from using too much memory
i have changed php tomemory_limit = 1200M now,it is ok.
and if run frr bgp route, the kern.ipc.maxsockbuf must be ch...
yon Liu

08/16/2023

12:57 PM Feature #14689 (Rejected): Warn users about the risks of using snort in a netgate pfsense device
There are already warnings in place in various locations about this.
For example: https://www.netgate.com/supporte...
Jim Pingle

08/15/2023

09:30 PM Feature #14689 (Rejected): Warn users about the risks of using snort in a netgate pfsense device
Hello
I installed pfsense in a computer, running snort, protecting my network, it was awesome.... I decided to purch...
Edgar Estrada

08/14/2023

12:15 PM Bug #14683: PHP error on ``status_frr.php`` from using too much memory
Probably too much data for that page to deal with (e.g. route table is gigantic).
It already tries to limit how th...
Jim Pingle

08/13/2023

04:59 AM Bug #14683 (Duplicate): PHP error on ``status_frr.php`` from using too much memory

amd64
14.0-CURRENT
FreeBSD 14.0-CURRENT #1 plus-RELENG_23_05_1-n256108-459fc493a87: Wed Jun 28 04:26:04 UTC 202...
yon Liu

08/12/2023

08:27 PM Bug #14643 (Not a Bug): Suricata PHP error after upgrade to CE 2.7.0
That is expected as the system upgrades the packages. Since it is working correctly after the upgrade, I'm marking th... Christopher Cope
08:26 PM Bug #14644 (Not a Bug): Zeek PHP error after upgrade to CE 2.7.0
e 1/1 wrote in #note-2:
> Kris Phillips wrote in #note-1:
> > Do any issues occur with the package post-upgrade or ...
Christopher Cope

08/11/2023

07:44 PM Bug #14644: Zeek PHP error after upgrade to CE 2.7.0
Kris Phillips wrote in #note-1:
> Do any issues occur with the package post-upgrade or is just the upgrade PHP errors...
e 1/1
05:38 PM Regression #14636 (Feedback): "Legacy" strength PKCS#12 Export needs ``-legacy`` provider parameter on OpenSSL command
I pushed this change on Wednesday:
https://github.com/pfsense/FreeBSD-ports/commit/f61ca6b81bab553e94046b1e6c5811a...
Jim Pingle
03:52 PM Feature #14423: haproxy 2.7 QUIC support (+ maybe LUA 5.4?)
Pawel Piaskowy wrote:
> Hello,
>
> I appreciate all pfSense+ updates and efforts Team is doing (I am relatively new ...
Torben Hørup
12:36 PM Bug #12899 (Resolved): Suricata doesn't honor Pass List
Jim Pingle
01:14 AM Bug #12899: Suricata doesn't honor Pass List
Another pass at resolving this long standing, but random, issue is in the code of Pull Request 1284 (https://github.c... Bill Meeks
12:36 PM Bug #14530 (Resolved): Suricata 6.0.13 package interface settings
Jim Pingle
01:11 AM Bug #14530: Suricata 6.0.13 package interface settings
This issue is resolved by Pull Request 1285 https://github.com/pfsense/FreeBSD-ports/pull/1285 merged on August 10, 2... Bill Meeks

08/10/2023

06:08 PM Bug #14676 (Confirmed): Listening Port option in the Tailscale configurator is not respected
Christian McDonald
05:37 PM Bug #14676: Listening Port option in the Tailscale configurator is not respected
David G wrote in #note-7:
> Christian McDonald wrote in #note-5:
> > I bet something else is already listening on 1...
David G
05:27 PM Bug #14676: Listening Port option in the Tailscale configurator is not respected
Christian McDonald wrote in #note-5:
> I bet something else is already listening on 11111, forcing tailscaled to cho...
David G
05:14 PM Bug #14676 (Not a Bug): Listening Port option in the Tailscale configurator is not respected
Christian McDonald
05:12 PM Bug #14676: Listening Port option in the Tailscale configurator is not respected
I bet something else is already listening on 11111, forcing tailscaled to choose another port to bind. Christian McDonald
05:09 PM Bug #14676: Listening Port option in the Tailscale configurator is not respected
David G wrote in #note-3:
> Christian McDonald wrote in #note-2:
> > I'm not able to replicate this report myself.
...
David G
04:49 PM Bug #14676: Listening Port option in the Tailscale configurator is not respected
Christian McDonald wrote in #note-2:
> I'm not able to replicate this report myself.
Here are some screenshots of...
David G
04:13 PM Bug #14676: Listening Port option in the Tailscale configurator is not respected
I'm not able to replicate this report myself. Christian McDonald
10:32 AM Bug #14676: Listening Port option in the Tailscale configurator is not respected
Tested on 2.7.0 and 23.05.1 , Tailscale 0.1.4
Can not reproduce, if I change listen port it always changed appropria...
aleksei prokofiev
02:54 AM Bug #14676 (Confirmed): Listening Port option in the Tailscale configurator is not respected
The tailscaled process starts and listens on a random port, instead of the one specified. This causes things like dir... David G
02:15 PM Bug #14674 (Resolved): Error after upgrade to HAProxy 0.62_1
Jim Pingle
02:08 PM Bug #14674: Error after upgrade to HAProxy 0.62_1
It works for me too, thank you so much Crystian Geovani Dorabiatto
02:00 PM Bug #14674: Error after upgrade to HAProxy 0.62_1
It seems to be working properly now with the new build no errors. Thanks Willem-Jan v R
12:54 PM Bug #14674 (Feedback): Error after upgrade to HAProxy 0.62_1
I updated the non-devel version of the package with the code from -devel. The underlying versions of haproxy updated ... Jim Pingle
12:02 PM Bug #14674 (In Progress): Error after upgrade to HAProxy 0.62_1
Jim Pingle
11:56 AM Bug #14674: Error after upgrade to HAProxy 0.62_1
I had the same issue, Im using the Dev PKG but the Dev PKG has a lot of issue about SSL, in the past they fixed the s... Crystian Geovani Dorabiatto
11:36 AM Bug #14674: Error after upgrade to HAProxy 0.62_1
I had the same issue. Luckily the develop version was working. I didn't make a new boot environment to restore from.
...
Willem-Jan v R
02:37 AM Bug #14674: Error after upgrade to HAProxy 0.62_1
Can confirm. Manually editing the file doesn't work. Kevin Ruffus
12:48 AM Bug #14674 (Resolved): Error after upgrade to HAProxy 0.62_1
Looks like nbproc is no long supported in the config file and needs to be removed in order to start the service.
E...
Chad High
12:02 PM Regression #14675 (Duplicate): HA Proxy can’t commit changes
Duplicate of #14674 (it has the full non-cropped error message) Jim Pingle
01:40 AM Regression #14675 (Duplicate): HA Proxy can’t commit changes
There seems to an issue with commiting any changes in HA Proxy after a recent (today) package update.
There are foru...
Mike Moore

08/09/2023

05:17 PM Bug #14671: LCDproc package does not automatically restart after upgrade
I don't believe it has anything to do with the configuration, but some sort of timing issue on when the package is st... Jim Pingle
04:03 PM Bug #14671 (New): LCDproc package does not automatically restart after upgrade
When upgrading LCDproc, the lcdproc daemon does not automatically restart.
One must re-save the LCDproc service se...
Elvis Impersonator
02:11 PM Feature #14653: Update to LCPROC NTP Screen
I've noticed that as well sometimes but haven't yet been able to track it down. That would belong in its own separate... Jim Pingle
02:08 PM Feature #14653: Update to LCPROC NTP Screen

@jimp
23.05.1 I think there might a lingering bug with the package installer for LCDProc
After updating, LCDProc...
Elvis Impersonator
01:33 PM Feature #14653: Update to LCPROC NTP Screen
Elvis Impersonator wrote in #note-3:
> @jimp will it take a few days before the updated package is released?
It ...
Jim Pingle
01:21 PM Bug #14670 (Feedback): net-snmp does not ignore /var/unbound/dev
PR merged Jim Pingle
01:16 PM Bug #14670: net-snmp does not ignore /var/unbound/dev
PR: https://github.com/pfsense/FreeBSD-ports/pull/1283 Jim Pingle
01:15 PM Regression #14445 (Feedback): HAProxy PHP error /usr/local/www/haproxy/haproxy_global.php:138
PR merged -- also the same edit was made to the -devel package.
Jim Pingle

08/08/2023

10:34 PM Feature #14653: Update to LCPROC NTP Screen
@jimp will it take a few days before the updated package is released? Elvis Impersonator
08:41 PM Bug #14670 (Resolved): net-snmp does not ignore /var/unbound/dev
Net-snmp has ignoreDisk directives for devfs mount points /dev and /var/dhcpd/dev, but is missing an ignoreDIsk direc... Denny Page
07:42 PM Feature #13138: DNS over HTTPS/TLS Blocking should be removed from SafeSearch
The block list [if done by IP] offers the option to create an ALIAS which is more flexible then sink holing. I would ... Mike Moore
07:31 PM Bug #14668: FRR BGP route is not making into kernel route table after WireGuard's peer change is applied
Ive ran into a similar issue as well. The routes will appear in FRR but you check the pfsense route table the routes ... Mike Moore
04:22 PM Bug #14668 (New): FRR BGP route is not making into kernel route table after WireGuard's peer change is applied
I was able to reproduce this behavior in clear PfSense 2.7 setup with frr 1.3_1 and WireGuard 0.2.0_2, not sure which... Oleksii Tucha
07:27 PM Feature #14669 (New): pfblocker log rotation on schedule
Allow the option to set logroate option (daily,weekly,monthly)
Im using pfBlocker stats to fill in a report and beca...
Mike Moore

08/07/2023

09:24 PM Bug #14659 (New): vlan (add/modify/delete) with pfblockerNG installed - all interfaces flap
Hard to say if this is a bug per se but its a reproducible problem.
1. create a LAGG with assigned VLANs and those...
Mike Moore
07:13 PM Bug #14654 (Resolved): Can't select BFD Peer for BGP Neighbor in GUI, Route Maps are shown instead
Jim Pingle
06:55 PM Bug #14654: Can't select BFD Peer for BGP Neighbor in GUI, Route Maps are shown instead
Jim Pingle wrote in #note-4:
> Corrected packages are building now.
Updated, configured and checked on 2.7 - work...
Oleksii Tucha
05:44 PM Bug #14654 (Feedback): Can't select BFD Peer for BGP Neighbor in GUI, Route Maps are shown instead
It doesn't appear that I introduced an error in the behavior of the function that gathers BFD peers but I did spot an... Jim Pingle
12:52 PM Bug #14654: Can't select BFD Peer for BGP Neighbor in GUI, Route Maps are shown instead
I probably made an error when updating all the FRR code for the new config access functions. I'll look into it today.
Jim Pingle
06:09 PM Feature #14653 (Feedback): Update to LCPROC NTP Screen
PR merged Jim Pingle
03:39 PM Bug #14496: FATAL ERROR: /usr/local/etc/snort/snort_11005_mvneta1/snort.conf(405) Please activate arpspoof before trying to use arpspoof_detect_host.
This error has returned for some reason Jonathan Lee

08/06/2023

09:14 AM Feature #14652: FRR OSPF6 not working over wireguard
Correct, I am relying on neighbor discovery. But even if I wanted to define a static neighbor, there would not be any... beermount beermount
03:02 AM Regression #14445: HAProxy PHP error /usr/local/www/haproxy/haproxy_global.php:138
Please see this pull request: https://github.com/pfsense/FreeBSD-ports/pull/1282 Alex Neihaus

08/05/2023

11:13 PM Bug #14654: Can't select BFD Peer for BGP Neighbor in GUI, Route Maps are shown instead

confirmed.
BFD option(in BGP Neighbors) does not list BFD peers , it shows Route Map lists.
tested on 2.7 and...
Alhusein Zawi
09:24 PM Bug #14654: Can't select BFD Peer for BGP Neighbor in GUI, Route Maps are shown instead
FRR package version is 1.3, if that does matter.
It was working in FRR 1.1.1_7 (which is still installed in my 2.6 i...
Oleksii Tucha
09:21 PM Bug #14654 (Resolved): Can't select BFD Peer for BGP Neighbor in GUI, Route Maps are shown instead
To reproduce:
1. Install FRR
2. Create Route Map
3. Try to select a BFD Peer for BGP Neighbor
!bfd.png!
The se...
Oleksii Tucha
11:10 PM Bug #12899: Suricata doesn't honor Pass List
This has proven to be a very hard bug to find and fix. The problem is random. I have thus far been unable to reproduc... Bill Meeks
10:45 PM Bug #14644: Zeek PHP error after upgrade to CE 2.7.0
Do any issues occur with the package post-upgrade or is just the upgrade PHP errors the only issue? Kris Phillips
10:44 PM Feature #14652: FRR OSPF6 not working over wireguard
Hello,
Are you relying on neighbor discovery or do you have neighbors manually programmed in across the link? Typ...
Kris Phillips
12:55 PM Feature #14652: FRR OSPF6 not working over wireguard
Also see https://redmine.pfsense.org/issues/12760 beermount beermount
10:53 AM Feature #14652 (New): FRR OSPF6 not working over wireguard
FRR OSPF6 is unable to form neighborship without adding link-local alias to wireguard interface.
Unless i perform:...
beermount beermount
10:20 PM Feature #14653: Update to LCPROC NTP Screen
Update LCDPROC NTP Screen
* Add time zone
* Improved selection between GPS and PPS
* Add stability parameter for P...
Elvis Impersonator
03:01 PM Feature #14653 (Feedback): Update to LCPROC NTP Screen
Update to LCDPROC NTP Screen
* Add time zone
* Add local PPS stability pps
https://github.com/pfsense/FreeBSD-po...
Elvis Impersonator
10:01 PM Bug #14287 (Feedback): pfBlockerNG does not uninstall cleanly when using RAM disks
I'm seeing this on 23.05.1 pfBlockerNG 3.2.0_5 across multiple devices. Perhaps you need an existing pfBlockerNG sect... Jordan G
08:45 AM Bug #14287 (Resolved): pfBlockerNG does not uninstall cleanly when using RAM disks
No PHP errors on 23.05.1 when deleting 3.2.0_5 package with unchecked "keep config"... Lev Prokofev
09:41 AM Regression #14189: pfBlocker-NG: HA-Sync is not working
the typo fix patch from the forum thread does fix the Sync functional for pfBlockerNG
tested on
Version 23.05.1-RE...
Georgiy Tyutyunnik

08/04/2023

06:00 PM Bug #14498: php errors when looking at snort active rules
[04-Aug-2023 09:30:42 US/Pacific] PHP Fatal error: str_ireplace(): Cannot use output buffering in output buffering d... Jonathan Lee
04:36 PM Bug #14498: php errors when looking at snort active rules
@Christopher Cope
I have tested your patch attached here. Strip level 2
set to 512mb
Hover I am still getting...
Jonathan Lee
03:37 PM Bug #14498: php errors when looking at snort active rules
Amazing, thanks for sharing I appreciate you. Jonathan Lee
04:37 PM Feature #13575 (In Progress): Update to frr 9.0.1
This appears to be functioning OK for the most part but it isn't building with the SNMP option enabled yet. There is ... Jim Pingle
03:16 PM Bug #12899: Suricata doesn't honor Pass List
I've also experienced this for quite awhile. I created an alias for a vendor and added all IP addresses and ranges kn... tasty ratz
06:23 AM Feature #14032: Neighbor Discovery Proxy (NDproxy)
NDProxy is the only way we have been able to get IPv6 working for our company network, and that have been possible on... Filippo Tessarotto

08/03/2023

10:05 PM Regression #14189: pfBlocker-NG: HA-Sync is not working
Related: "Sync to configured backup server" option does not allow to Save without an IP address in the target below.
...
dylan mendez
08:09 PM Regression #14189: pfBlocker-NG: HA-Sync is not working
Patch to fix the typo was posted at https://forum.netgate.com/post/1108304 Steve Y
08:57 PM Feature #13575 (Feedback): Update to frr 9.0.1
Merged https://gitlab.netgate.com/pfSense/FreeBSD-ports/-/merge_requests/350 Marcos M
07:49 PM Feature #14625: Add NTP Screens to LCDPROC
The installed packages Widget did not show there was a new package. Package manage did, but that was when it failed.... Elvis Impersonator
07:35 PM Feature #14625: Add NTP Screens to LCDPROC
Probably best to move it to the forum then, there may be something that needs fixed on your system, but it's not a ge... Jim Pingle
07:34 PM Feature #14625: Add NTP Screens to LCDPROC
checked branch and it set correctly
Elvis Impersonator
07:31 PM Feature #14625: Add NTP Screens to LCDPROC
No issues installing or upgrading it here. Make sure the update branch is set to the appropriate version that matches... Jim Pingle
07:15 PM Feature #14625: Add NTP Screens to LCDPROC
@jimp
new LCDPROC package will not install
WARNING: Current pkg repository has a new PHP major
version. pfSens...
Elvis Impersonator
06:36 PM Feature #14625 (Feedback): Add NTP Screens to LCDPROC
Merged in LCDProc package version 0.11.5 Jim Pingle
11:31 AM Feature #9141: FRR xmlrpc
In simple setups like mine I believe having the same BGP configuration on both Primary and Secondary members is what ... Adrian Dascalu

08/02/2023

06:28 PM Bug #14645 (Resolved): Snort interface "External Net" (EXTERNAL_NET) custom IP list should have negation when expanded
Hello,
I'm not really good with Snort but all my search results confirm that it is common to have @EXTERNAL_NET@ c...
Dzmitry Kazei
12:01 PM Bug #14644 (Not a Bug): Zeek PHP error after upgrade to CE 2.7.0
First login after upgrading to 2.7.0, a couple of PHP error notices are shown, one of them related to Zeek:
@PHP E...
e 1/1
12:00 PM Bug #14643 (Not a Bug): Suricata PHP error after upgrade to CE 2.7.0
First login after upgrading to 2.7.0, a couple of PHP error notices are shown, one of them related to Suricata:
@P...
e 1/1

08/01/2023

10:21 PM Feature #13575: Update to frr 9.0.1
Tested in 23.09 by running:... Marcos M
08:06 PM Feature #14642 (New): nfsen-nfdump intergration
Can we get nfdump/nfsen package integrated within pfsense? Have sflow send data to nfsen. The built-in collector woul... Mike Moore
07:25 PM Feature #14625: Add NTP Screens to LCDPROC
Round 3
https://github.com/pfsense/FreeBSD-ports/pull/1278
Elvis Impersonator
04:54 AM Bug #14638 (Closed): Upgrading from Tailscale 0.1.3.1 to 0.1.4 does not start tailscale after upgrading
After upgrading Tailscale from 0.1.3.1 to 0.1.4, Tailscale was not running according to the status page.
I was abl...
R W

07/31/2023

07:47 PM Regression #14636 (Resolved): "Legacy" strength PKCS#12 Export needs ``-legacy`` provider parameter on OpenSSL command
See #14635 for details.
The export package will need a change similar to that one from #14635 but it will need to ...
Jim Pingle
04:46 PM Feature #14625: Add NTP Screens to LCDPROC
Tested files attached Elvis Impersonator
04:44 PM Feature #14625: Add NTP Screens to LCDPROC
Updated PR
https://github.com/pfsense/FreeBSD-ports/pull/1277
Elvis Impersonator
02:53 PM Feature #14625 (Pull Request Review): Add NTP Screens to LCDPROC
Jim Pingle
04:08 PM Feature #14633: Cleanup states on dynamic routing changes
The scripting hook described at https://docs.frrouting.org/en/latest/scripting.html seems promising. If nothing else ... Jim Pingle
03:59 PM Feature #14633: Cleanup states on dynamic routing changes
This is specific to FRR, so I moved it to the FRR package.
Base system routing changes of this nature are already ...
Jim Pingle
03:57 PM Feature #14633 (Feedback): Cleanup states on dynamic routing changes
Currently, with FRR, dynamic routing changes does not cleanup old firewall states causing traffic to flow incorrectly... Christopher de Haas
03:43 PM Feature #14629: Add option control LCDProc ``syslog`` behavior
Worth noting that the old hardcoded default was level 3. When I added the option I made the new default level 2 to al... Jim Pingle
03:18 PM Feature #14629 (Feedback): Add option control LCDProc ``syslog`` behavior
Added in LCDProc package v0.11.4_2 which is building now and will be available shortly.
Jim Pingle
02:36 PM Bug #14627: FRR prefix list creation failure
The validation could use some work but it's not completely broken as-is, it can be worked around.
If you enter the...
Jim Pingle
01:43 PM Feature #14630: FRR script hook for clearing states on routing changes
If such extensions were possible those would require developing new features to accommodate them, adding the new func... Jim Pingle
01:32 PM Feature #14630: FRR script hook for clearing states on routing changes
Hi Jim,
Thanks for responding to this quickly, and thanks for the floating-rule idea. I get that it can help mitigat...
Christopher de Haas
12:34 PM Feature #14630 (Not a Bug): FRR script hook for clearing states on routing changes
There is no event or mechanism by which that situation could be identified and acted upon.
If it were a built-in W...
Jim Pingle
05:55 AM Feature #14630 (New): FRR script hook for clearing states on routing changes
I have been chasing an issue of dropped traffic, and finally found the issue. A client is repeatedly sending traffic ... Christopher de Haas
12:29 PM Feature #14632 (Rejected): Add flock pacakage to pfsense repository
There isn't nearly enough information here. Do you mean the @sysutils/flock@ port from FreeBSD? Or something else?
...
Jim Pingle
11:50 AM Feature #14632 (Rejected): Add flock pacakage to pfsense repository
i would like to use flock with cron jobs
Thanks
Richard Horvath
12:15 PM Bug #14484 (Resolved): lldpd php error on saving with no interface selected
Jim Pingle
07:53 AM Feature #14468: pass along ntopng professional license key
Hi, I thought I was the only one with this issue. I need to install my NTOPNG Pro license on Ver 23.05.1 but even if ... Russ Reynolds

07/30/2023

12:41 PM Feature #14629: Add option control LCDProc ``syslog`` behavior
Another options might be to allow changing the log level
ReportLevel=3
ReportLevel = LEVEL
Sets the reporting lev...
Elvis Impersonator
11:06 AM Feature #14629 (Resolved): Add option control LCDProc ``syslog`` behavior
Currently there is no way via the package config GUI to disable messages getting written to the /var/log/system.log.... Elvis Impersonator
10:48 AM Bug #14572: Unused DNSBL files may not be removed
Hi,
this is stable branch.
Jove Too
01:17 AM Bug #14572: Unused DNSBL files may not be removed
Hello,
Is this with the devel or stable branch of pfBlockerNG?
Kris Phillips
02:02 AM Bug #14287 (Feedback): pfBlockerNG does not uninstall cleanly when using RAM disks
I'm no longer able to recreate this in 23.05.1. If someone else can also confirm no more issues, we can mark this as... Kris Phillips
01:59 AM Feature #14447 (In Progress): Update haproxy from 2.6 to 2.8 lts
HAProxy 2.8.1 is in the stable package in 23.09 of Plus.
Current version in 23.05.1 is 2.2.29.
Kris Phillips

07/29/2023

06:03 PM Bug #14484: lldpd php error on saving with no interface selected
confirmed, now working with lldpd 0.9.11_2 Jordan G
12:30 PM Bug #14484: lldpd php error on saving with no interface selected
Tested on 23.05.1 and 2.7.0 ... aleksei prokofiev
04:53 PM Bug #14627: FRR prefix list creation failure
The same behavior is on FRR v1.2_3 Lev Prokofev
04:40 PM Bug #14627 (New): FRR prefix list creation failure
If you try to create a Prefix List with multiple Prefix List Entries and you check the checkbox Any in the last row, ... Danilo Zrenjanin
03:03 PM Feature #14625 (Feedback): Add NTP Screens to LCDPROC
updated the lcdproc_client.php and lcdproc_screens.php to include NTP screen
https://github.com/pfsense/FreeBSD-po...
Elvis Impersonator
08:25 AM Bug #14275 (Resolved): Deleting a route map that is assigned to an active neighbor causes crash
Tested against FRR Package v1.3.
It's fixed.
I am marking this ticket resolved.
Danilo Zrenjanin
08:00 AM Regression #14561 (Resolved): FRR errors accessing Global Settings after deleting BGP neighbor
Tested against FRR Package v1.3.
It's fixed.
I am marking this ticket resolved.
Danilo Zrenjanin
07:56 AM Bug #14562 (Resolved): PHP error when trying to run OSPF and BGP in the same time
Tested against FRR Package v1.3. It's fixed.
I am marking this ticket resolved.
Danilo Zrenjanin
04:58 AM Regression #14494 (Resolved): FRR,PHP errors when deleting AS-path
No more errors with the 1.3 package, marked it resolved. Lev Prokofev
04:53 AM Regression #14493 (Resolved): FRR,PHP errors when deleting neighbor
No more errors, with the 1.3 package, marked it resolved. Lev Prokofev

07/28/2023

08:46 PM Bug #14606 (Resolved): Deleting Last BFD Profile in FRR Package Causes PHP Fatal Error
Jim Pingle
08:30 PM Bug #14606: Deleting Last BFD Profile in FRR Package Causes PHP Fatal Error
Jim Pingle wrote in #note-4:
> Fixed in FRR Package v1.3, which is building now and will be available shortly.
I ...
Bill Hughes
05:44 PM Bug #14606 (Feedback): Deleting Last BFD Profile in FRR Package Causes PHP Fatal Error
Fixed in FRR Package v1.3, which is building now and will be available shortly. Jim Pingle
05:46 PM Bug #14275 (Feedback): Deleting a route map that is assigned to an active neighbor causes crash
This should be fixed in FRR Package v1.3, which is building now and will be available shortly. Jim Pingle
05:44 PM Regression #14493 (Feedback): FRR,PHP errors when deleting neighbor
Fixed in FRR Package v1.3, which is building now and will be available shortly. Jim Pingle
05:44 PM Regression #14494 (Feedback): FRR,PHP errors when deleting AS-path
Fixed in FRR Package v1.3, which is building now and will be available shortly. Jim Pingle
05:44 PM Regression #14561 (Feedback): FRR errors accessing Global Settings after deleting BGP neighbor
Fixed in FRR Package v1.3, which is building now and will be available shortly. Jim Pingle
05:44 PM Bug #14562 (Feedback): PHP error when trying to run OSPF and BGP in the same time
Fixed in FRR Package v1.3, which is building now and will be available shortly. Jim Pingle

07/26/2023

07:48 PM Bug #14491: FRR not starting with AgentX enabled
The FRR package is built with SNMP support but it doesn't appear to be loading the module somehow.
The vtysh CLI l...
Jim Pingle
12:22 PM Bug #14491: FRR not starting with AgentX enabled
Jim Pingle wrote in #note-3:
> For those hitting this error, do you have the NET-SNMP package installed and active?
...
Yif Swery
12:12 PM Bug #14491: FRR not starting with AgentX enabled
For those hitting this error, do you have the NET-SNMP package installed and active?
The AgentX integration is int...
Jim Pingle
10:15 AM Bug #14491 (Confirmed): FRR not starting with AgentX enabled
I can confirm this behavior.
Tested against:...
Danilo Zrenjanin
07:03 PM Feature #14321 (Feedback): Add UPS information to LCDproc screen
I added screens for both APCUPSD and NUT to LCDProc. The option only appears (and will only work) when the correspond... Jim Pingle
12:33 PM Bug #14484 (Feedback): lldpd php error on saving with no interface selected
I pushed a fix, it is building now and will be available shortly in lldpd pkg version 0.9.11_2 on Plus 23.05.1 and CE... Jim Pingle
06:41 AM Bug #14484 (Confirmed): lldpd php error on saving with no interface selected
Lev Prokofev
06:41 AM Bug #14484: lldpd php error on saving with no interface selected
I can reproduce it on 23.05.1, probably the "No interface selected" warning message is needed here.... Lev Prokofev
09:29 AM Bug #14199 (Resolved): ACME - Issue with corrupted cert
Perhaps this issue is related to the https://redmine.pfsense.org/issues/14592
I couldn't recreate any of the repo...
Danilo Zrenjanin
06:34 AM Bug #14606 (Confirmed): Deleting Last BFD Profile in FRR Package Causes PHP Fatal Error
Lev Prokofev
06:34 AM Bug #14606: Deleting Last BFD Profile in FRR Package Causes PHP Fatal Error
I can reproduce it on 23.05.1, error doesn't come if the BFD daemon is disabled, but occurs immediately when you enab... Lev Prokofev

07/24/2023

01:08 AM Bug #14606 (Resolved): Deleting Last BFD Profile in FRR Package Causes PHP Fatal Error
To reproduce:
1. Enable BFD in FRR.
2. Create a BFD profile (only requires a profile name).
3. Delete the BFD pr...
Bill Hughes

07/23/2023

02:04 AM Bug #14504 (Incomplete): FTP_Client_Proxy package doesn't create firewall rule
Hello,
Do you mean it doesn't create a rule from the inside interface outbound for FTP traffic? If so, typically ...
Kris Phillips
01:27 AM Bug #10502: LLDP spamming errors on Netgate XG-7100
still seeing this on 7100 running 23.05.1 lldpd 0.9.11_1 - set all protocol support to active, save... Jordan G
12:55 AM Bug #14498: php errors when looking at snort active rules
Jonathan Lee wrote in #note-16:
> @Christopher Cope
> I wanted to also take the time to message you and say I am so...
Christopher Cope
 

Also available in: Atom