Project

General

Profile

Activity

From 06/19/2024 to 07/18/2024

07/18/2024

08:36 PM Todo #12717: Squid 5.x Branch
Squid is now recently updated to 6.6 as of 2024 and has many security enhancements. Jonathan Lee
08:34 PM Documentation #14842: Update Squid troubleshooting
Squids http_port tproxy directive spoofs the IP addresses. This can be used in place of intercept to further increase... Jonathan Lee
04:04 PM Feature #15628 (New): Feature request: Squid 6.6 TPROXY directive GUI option
Hello fellow redmine community members.
In the older release of squid in 5.8 we could enable tproxy by just chan...
Jonathan Lee
03:52 PM Bug #15410: cache_object://URL Scheme is removed in Squid-6
Researching with Squid Email support in Squid 6.6
On 2024-07-18 00:55, Jonathan Lee wrote:
curl http://localho...
Jonathan Lee
03:41 PM Feature #15626: Feature Request: Squid 6.6 Rock cache directory
While researching per Squid support emails.
On 2024-07-18 00:33, Jonathan Lee wrote:
What would be the correct ...
Jonathan Lee
02:12 AM Feature #15626 (New): Feature Request: Squid 6.6 Rock cache directory
Hello fellow Redmine members,
I researched and found a cache file system is missing from php GUI options.
This ...
Jonathan Lee
03:11 PM Feature #15627 (Rejected): Make the links open in a new tab
We've considered this in the past and ultimately decided not to go that route. If you force them to a new window you ... Jim Pingle
07:20 AM Feature #15627 (Rejected): Make the links open in a new tab
Can the links to redmine and the various other assets be made to open in a new tab i.e.... Jon Brown
08:48 AM Todo #15281: Upgrade Tailscale to 1.6.0
R W wrote in #note-13:
> So I feel like the approach to manually including a tailscale release with each pfSense bui...
Matt Keys
12:40 AM Todo #15281: Upgrade Tailscale to 1.6.0
So I feel like the approach to manually including a tailscale release with each pfSense build isn't going to work to ... R W

07/16/2024

04:07 PM Bug #15274: HAProxy Configuration Changes Require pfSense Reboot to Take Effect
Please see my last comment here: https://forum.netgate.com/topic/172972/haproxy-config-changes-not-loaded-pfsense-res... Kilian Ries

07/15/2024

04:04 PM Regression #15623 (Resolved): FRR does not load kernel routes at startup
After upgrading from 23.09.1 to 24.03.1 default kernel routes just disappeared from FRR. As a result, it's not possib... Wellington Souza
02:24 PM Bug #15620 (Duplicate): NET-SNMP & FRR with AgentX is not starting with library errors.
Duplicate of #14491 Jim Pingle

07/14/2024

04:39 PM Bug #15618: HAproxy causes system panic
Marcos M wrote in #note-1:
> There's not enough information to investigate further. There should be a compressed fil...
Amin Sadeghi
12:14 AM Bug #15620 (Duplicate): NET-SNMP & FRR with AgentX is not starting with library errors.
... Christopher Cope

07/13/2024

09:08 PM Todo #15281: Upgrade Tailscale to 1.6.0
Elvis Impersonator wrote in #note-11:
> I guess pfSense CE 2.7.2 and 2.8.0 are not important to Netgate. Thanks for...
Christopher Cope
08:36 PM Todo #15281: Upgrade Tailscale to 1.6.0
I guess pfSense CE 2.7.2 and 2.8.0 are not important to Netgate. Thanks for letting us know us know the future of CE... Elvis Impersonator
07:38 PM Todo #15281 (Resolved): Upgrade Tailscale to 1.6.0
Yes, 1.68.1 is already available in the 24.08-DEVELOPMENT release. ... Danilo Zrenjanin
08:48 PM Feature #15619 (New): Upgrade CE to Tailscale 1.68.2
Currently available Tailscale package has known security vulnerabilities.
https://tailscale.com/security-bulletins...
Elvis Impersonator
03:37 PM Bug #15618 (Incomplete): HAproxy causes system panic
There's not enough information to investigate further. There should be a compressed file containing the backtrace alo... Marcos M
12:09 PM Bug #15618 (Duplicate): HAproxy causes system panic
Crash report begins. Anonymous machine information:
amd64
15.0-CURRENT
FreeBSD 15.0-CURRENT #0 plus-RELENG_24_0...
Amin Sadeghi
01:44 PM Bug #9204: ospfd: GRE tunnels became unnumbered since 2.4.4
It appears from the upstream discussion that this patch can cause other issues, so applying it is likely to break exi... Christopher Cope
12:51 PM Bug #9204: ospfd: GRE tunnels became unnumbered since 2.4.4
Here we are 5 years later. Still not fixed.
But the code has been updated a bit. pfSense+ 24.03 still contains...
Dave Rand

07/12/2024

01:57 PM Bug #13043: OSPF over Wireguard interface doesn't populate neighbors after reboot
Hi,
i want to confirm the issue, too. I can reproduce the bug within both installations of my HA setup... Using Wi...
Tjabo T.
12:01 PM Feature #9044: Add SoftEther
Hi evryone,
If can be useful, I'm starting to add a SoftEther package for pfSense: https://github.com/STeXE89/Free...
STeXE89 STeXE89
08:14 AM Bug #15614: Squid 6.6 Package should have NO_TLSv1 and NO_TLSv1_1 feature flags set on directive pls_outgoing_options
www/pfSense-pkg-squid/files/usr/local/pkg/squid.inc
Line 1233 needs feature flags added
Jonathan Lee
08:13 AM Bug #15614 (Duplicate): Squid 6.6 Package should have NO_TLSv1 and NO_TLSv1_1 feature flags set on directive pls_outgoing_options
$sslproxy_options = "NO_SSLv3, NO_TLSv1, NO_TLSv1_1";
This variable is also used with
tls_outgoing_options
...
Jonathan Lee

07/11/2024

01:24 PM Feature #15541: CRON: option to enable/disable task
In the cron configuration file (/etc/crontab), the task would be commented with # when disabled, and when activated, ... Fabio Rafael Kochhann
01:55 AM Bug #15274: HAProxy Configuration Changes Require pfSense Reboot to Take Effect
Also discussed here.
https://forum.netgate.com/topic/178348/haproxy-backend-port-changes-are-not-applied
workarou...
Brendon Baumgartner

07/10/2024

08:39 AM Bug #15610 (New): OSPF with "Redistribute Default" enabled and "Always Redistribute" disabled does not react to WAN link down events
OSPF with "Redistribute Default" *enabled* and "Always Redistribute" *disabled* does not stop redistributing the defa... Patrick Clara

07/09/2024

05:34 PM Bug #15313: Zabbix server 6.4.12 requires Zabbix proxies to be version 6.4.12
That's great to hear!
Will updated Zabbix packages be released for 24.03?
Andrew Almond
07:17 AM Bug #15313: Zabbix server 6.4.12 requires Zabbix proxies to be version 6.4.12
Checked on the last dev 24.08 and Zabbix use zabbix64-proxy-6.4.16 version
24.08-DEVELOPMENT (amd64)
built on Tue ...
aleksei prokofiev
12:32 PM Feature #14633: Cleanup states on dynamic routing changes
Tested on latest 24.08-DEVELOPMENT (built on Fri Jul 5 6:00:00 UTC 2024)
I deployed 2 pfSenses, created Routed IPs...
Azamat Khakimyanov
12:16 PM Bug #15385 (Resolved): PHP crash when exporting Apple profile, while IPsec P1 authentication method set to "Mutual Certificate"
Jim Pingle
07:12 AM Bug #15385: PHP crash when exporting Apple profile, while IPsec P1 authentication method set to "Mutual Certificate"
Tested on ipsec-profile-wizard version 1.2.3 on
24.08-DEVELOPMENT (amd64)
built on Tue Jul 2 9:00:00 MSK 2024
Free...
aleksei prokofiev
09:30 AM Todo #15281: Upgrade Tailscale to 1.6.0
aleksei prokofiev wrote in #note-8:
> Checked on last dev build and tailscale-1.68.1 presented
> 24.08-DEVELOPMENT ...
Elvis Impersonator
07:35 AM Todo #15281: Upgrade Tailscale to 1.6.0
Checked on last dev build and tailscale-1.68.1 presented
24.08-DEVELOPMENT (amd64)
built on Tue Jul 2 9:00:00 MSK 2...
aleksei prokofiev
07:47 AM Regression #15159: XMLRPC Replication Target required even if not using it
I can confirm the same on the last dev build and pfBlockerNG 3.2.0_13
24.08.a.20240702.0600
24.08-DEVELOPMENT (amd...
aleksei prokofiev
06:54 AM Bug #14861: PHP error when pings are enabled but no ping hosts are defined
I can confirm that enabling ping monitor option without specify host IP caused crash. Disabling the option or specify... aleksei prokofiev

07/08/2024

12:31 PM Feature #14321 (Closed): Add UPS information to LCDproc screen
Jim Pingle

07/07/2024

05:36 PM Feature #12711: Add InfluxDB V2 support
Hi Marcos M
> Please open a new redmine (or follow up on the forum) with reproducible steps.
If I configure Tel...
Marc Walter

07/06/2024

10:09 PM Bug #14398: ONBATT Status Missing in apcupsd.widget.php
issue is still present on 24.03 w/ apcupsd v0.3.92_2 Jordan G
08:46 PM Feature #14321: Add UPS information to LCDproc screen

APCUPSD and NUT have been added to LCDproc , they show up after installing packages.
Alhusein Zawi

07/05/2024

01:25 PM Feature #15600 (Closed): pfBlocker Widget - make the failed downloads windows expandable
Christopher Cope
11:31 AM Feature #15600: pfBlocker Widget - make the failed downloads windows expandable
!clipboard-202407051231-rroh6.png!
Jon Brown
11:30 AM Feature #15600: pfBlocker Widget - make the failed downloads windows expandable
ignore me and close this issue. Jon Brown
11:29 AM Feature #15600: pfBlocker Widget - make the failed downloads windows expandable
The setting you mention expands the whole widget. I just want to expand the failed downloads so I can read them. than... Jon Brown
11:23 AM Feature #15600: pfBlocker Widget - make the failed downloads windows expandable
Click on the wrench icon in the widget header. BBcan177 .

07/04/2024

12:47 PM Regression #15469: RRD Graphs height is smaller than expected
Tested against:... Danilo Zrenjanin
11:48 AM Feature #15600 (Closed): pfBlocker Widget - make the failed downloads windows expandable
Currently on the widget you only get a couple of lines to read the fails, can the failed window be made so a user can... Jon Brown
11:46 AM Feature #15599 (New): pfBlockerNG widget dates - Change to better format
In the pfblockerNG widget the dates are shown in American format and these are hard to read if you do not live in USA... Jon Brown
01:58 AM Regression #15158: XMLRPC Timeout won't save if over 150
Still able to replicate this on 24.08.a.20240702.0600 pfBlocker version 3.2.0_13 dylan mendez
12:50 AM Bug #14406: Squid Proxy version 0.4.46 Missing Error subfolder and files for "en" or "en-usa" and all other languages.
Can we reopen this please Jonathan Lee
12:50 AM Bug #14406: Squid Proxy version 0.4.46 Missing Error subfolder and files for "en" or "en-usa" and all other languages.
This issue is still present in Squid 6.6
ln -s /usr/local/etc/squid/errors/templates /usr/local/etc/squid/errors/...
Jonathan Lee

07/03/2024

11:57 AM Regression #15596 (Rejected): follow up to closed tailscale issue 14987....
If you need assistance solving a problem, please post on the forum: https://forum.netgate.com/ Jim Pingle
07:46 AM Regression #15596 (Rejected): follow up to closed tailscale issue 14987....
Hi I have followed the "fix" here.... https://redmine.pfsense.org/issues/14987
this my outbound config ....
!cl...
Harry Smith

07/02/2024

07:58 PM Bug #15594 (Pull Request Review): ERROR when IP are with " " at the start or end of address
Brilliant pfSense DevTeam!
BUG
---------
*ERROR when IP are with " " at the start or end of IP's address.*
Mess...
Sergei Shablovsky

06/30/2024

02:44 AM Feature #15585: Add OpenVPN Option for manually MTU setting
Thanks for considering this. I was researching this after I was testing the VPN to home NAS connection across the Uni... Jonathan Lee
02:02 AM Feature #15585: Add OpenVPN Option for manually MTU setting
Christopher Cope wrote in #note-4:
> Jonathan Lee wrote in #note-3:
> > So the Users on the forum didn’t need to se...
Kris Phillips
02:16 AM Feature #15393: Return to the ga version of NUT
Thanks Kris. Can you look at #15532 as well please? Thanks! Denny Page
01:56 AM Feature #15393 (Resolved): Return to the ga version of NUT
Package is now present with 2.8.2 in the repos for 24.08. Marking as Resolved. Kris Phillips

06/28/2024

02:59 PM Feature #15585: Add OpenVPN Option for manually MTU setting
Jonathan Lee wrote in #note-3:
> So the Users on the forum didn’t need to set custom settings for OpenVPN configurat...
Christopher Cope
05:44 AM Feature #15585: Add OpenVPN Option for manually MTU setting
So the Users on the forum didn’t need to set custom settings for OpenVPN configuration export system? The way I under... Jonathan Lee

06/27/2024

11:23 PM Feature #15585: Add OpenVPN Option for manually MTU setting
Jonathan Lee wrote in #note-1:
> It would be nice to have this as a non custom option a GUI based option for users.
...
Christopher Cope
10:54 PM Feature #15585: Add OpenVPN Option for manually MTU setting
It would be nice to have this as a non custom option a GUI based option for users. Jonathan Lee
10:53 PM Feature #15585 (New): Add OpenVPN Option for manually MTU setting
Ref:
https://forum.netgate.com/topic/148161/how-to-change-mtu-mssfix-values-for-openvpn-in-pfsense
I started to r...
Jonathan Lee

06/26/2024

06:51 PM Bug #15574: Stunnel: Error resolving "r11.o.lencr.org": Address family for nodename not supported (EAI_ADDRFAMILY)
Hi, I went through several rounds of testing and I beleive that this is a bug somewhere in pfsense, stunnel.
Curr...
A Schnee
05:59 PM Bug #15457 (Resolved): HAproxy disable zero copy forwarding
Jim Pingle
05:56 PM Bug #15457: HAproxy disable zero copy forwarding
The forum comments indicate that the new version, 2.9.7, addresses the issue that was raised in this Redmine. We can ... Danilo Zrenjanin
03:19 PM Bug #13405: Wireguard: The webgui becomes excessively slow to respond with a large number of peers
Hello,
any updates?
I notice that the culprit is this line:
https://github.com/pfsense/FreeBSD-ports/blob/08d3...
Federico Foschini
03:12 PM Bug #15580 (New): Squidguard ACL order issue
If you edit either Target Categories or Group ACL entries they are put on top of the list after saving the entry.
...
Jonathan Lee
12:31 PM Regression #15540: Cannot create new System Patches package custom entry on Plus 24.08/CE 2.8.0 Snapshots
The fetch button is working properly here as well on the same system where it failed previously, so that issue does a... Jim Pingle
08:08 AM Regression #15540 (Resolved): Cannot create new System Patches package custom entry on Plus 24.08/CE 2.8.0 Snapshots
Tested against:... Danilo Zrenjanin

06/24/2024

09:26 PM Bug #14523 (Resolved): PHP error when using an unsupported alias type in Advanced Rule Settings
Typo is now fixed. Marcos M
07:52 PM Todo #15281: Upgrade Tailscale to 1.6.0
Matt Keys wrote in #note-6:
> I reported a TS routing issue here 3 months ago: https://redmine.pfsense.org/issues/14...
Elvis Impersonator
11:01 AM Todo #15281: Upgrade Tailscale to 1.6.0
Elvis Impersonator wrote in #note-5:
> So I updated CE 2.7.2 to tailscale 1.68.1
> Seems to be working.
I repo...
Matt Keys
07:23 PM Feature #14453: Expand prefix list entry window
https://forum.netgate.com/topic/188850/gui-frr?_=1719256774819
Is it possible to get this rendered correctly on pf...
Mike Moore
02:48 PM Bug #15574: Stunnel: Error resolving "r11.o.lencr.org": Address family for nodename not supported (EAI_ADDRFAMILY)
Thank you for the quick reply.
I opened this bug after doing a full clean install of pfsense 2.7.2 and experienced t...
A Schnee
02:10 PM Bug #15574 (Not a Bug): Stunnel: Error resolving "r11.o.lencr.org": Address family for nodename not supported (EAI_ADDRFAMILY)
Seems more like a local cert issue than a bug in stunnel. The usual way to fix such things is to delete the stale CA ... Jim Pingle
02:06 PM Bug #15574 (Not a Bug): Stunnel: Error resolving "r11.o.lencr.org": Address family for nodename not supported (EAI_ADDRFAMILY)
I have an issue with the stunnel package in pfsense 2.7.2. Since my certificate renewed a few days ago, I cannot conn... A Schnee

06/23/2024

10:45 AM Feature #15573 (New): Enable tmpfs when ramdisk is used.
The Telegraf package config disables tmpfs which prevents the ramdisks /var and /log to be monitored.... Sebastian mzb
12:16 AM Bug #14523: PHP error when using an unsupported alias type in Advanced Rule Settings
The patch is working on:... Christopher Cope

06/22/2024

07:42 PM Todo #15281: Upgrade Tailscale to 1.6.0
1.68.1 is available with client security fixes
https://www.freshports.org/security/tailscale
https://pkgs.org/downlo...
Elvis Impersonator

06/21/2024

08:42 PM Bug #15567 (New): Continent Alias Lost at Start of pfBlockerNG
I am using the pfblockerNG created continent aliases e.g. "pfB_Europe_v4" in my firewall rules.
Unfortunately they a...
Sebastian mzb
03:44 PM Regression #15540 (Feedback): Cannot create new System Patches package custom entry on Plus 24.08/CE 2.8.0 Snapshots
Fixed with commit:4026d8132d10ec4702b1de6850c49b7723ec04e2. Marcos M
02:42 PM Regression #15540 (Confirmed): Cannot create new System Patches package custom entry on Plus 24.08/CE 2.8.0 Snapshots
Looks like the fetch action isn't storing anything in the patch entry, probably a similar issue to the problem creati... Jim Pingle
10:00 AM Regression #15540: Cannot create new System Patches package custom entry on Plus 24.08/CE 2.8.0 Snapshots
I tested against the version which seems to have the patch applied:... Danilo Zrenjanin
03:21 PM Todo #15563 (Resolved): Remove unsupported dh_file configuration in FreeRADIUS
Marcos M
03:14 PM Todo #15563 (In Progress): Remove unsupported dh_file configuration in FreeRADIUS
FreeRADIUS fails to start now if the configuration contains dh_file:
> /usr/local/etc/raddb/mods-enabled/eap: dh_fil...
Marcos M

06/19/2024

09:09 PM Bug #15131 (Confirmed): OpenVPN client export issues with iPhone and IPV6 connections
I was able to replicate this on 24.03, removing the 4 at the end of udp4 allowed the config from the export package t... Jordan G
08:53 PM Todo #15563 (Resolved): Remove unsupported dh_file configuration in FreeRADIUS
According to "FreeRADIUS":https://github.com/FreeRADIUS/freeradius-server/blob/db3d1924d9a2e8d37c43872932621f69cfdbb0... Markus *
 

Also available in: Atom