Activity
From 06/19/2024 to 07/18/2024
07/18/2024
-
08:36 PM Todo #12717: Squid 5.x Branch
- Squid is now recently updated to 6.6 as of 2024 and has many security enhancements.
-
08:34 PM Documentation #14842: Update Squid troubleshooting
- Squids http_port tproxy directive spoofs the IP addresses. This can be used in place of intercept to further increase...
-
04:04 PM Feature #15628 (New): Feature request: Squid 6.6 TPROXY directive GUI option
- Hello fellow redmine community members.
In the older release of squid in 5.8 we could enable tproxy by just chan... -
03:52 PM Bug #15410: cache_object://URL Scheme is removed in Squid-6
- Researching with Squid Email support in Squid 6.6
On 2024-07-18 00:55, Jonathan Lee wrote:
curl http://localho... -
03:41 PM Feature #15626: Feature Request: Squid 6.6 Rock cache directory
- While researching per Squid support emails.
On 2024-07-18 00:33, Jonathan Lee wrote:
What would be the correct ... -
02:12 AM Feature #15626 (New): Feature Request: Squid 6.6 Rock cache directory
- Hello fellow Redmine members,
I researched and found a cache file system is missing from php GUI options.
This ... -
03:11 PM Feature #15627 (Rejected): Make the links open in a new tab
- We've considered this in the past and ultimately decided not to go that route. If you force them to a new window you ...
-
07:20 AM Feature #15627 (Rejected): Make the links open in a new tab
- Can the links to redmine and the various other assets be made to open in a new tab i.e....
-
08:48 AM Todo #15281: Upgrade Tailscale to 1.6.0
- R W wrote in #note-13:
> So I feel like the approach to manually including a tailscale release with each pfSense bui... -
12:40 AM Todo #15281: Upgrade Tailscale to 1.6.0
- So I feel like the approach to manually including a tailscale release with each pfSense build isn't going to work to ...
07/16/2024
-
04:07 PM Bug #15274: HAProxy Configuration Changes Require pfSense Reboot to Take Effect
- Please see my last comment here: https://forum.netgate.com/topic/172972/haproxy-config-changes-not-loaded-pfsense-res...
07/15/2024
-
04:04 PM Regression #15623 (Resolved): FRR does not load kernel routes at startup
- After upgrading from 23.09.1 to 24.03.1 default kernel routes just disappeared from FRR. As a result, it's not possib...
-
02:24 PM Bug #15620 (Duplicate): NET-SNMP & FRR with AgentX is not starting with library errors.
- Duplicate of #14491
07/14/2024
-
04:39 PM Bug #15618: HAproxy causes system panic
- Marcos M wrote in #note-1:
> There's not enough information to investigate further. There should be a compressed fil... -
12:14 AM Bug #15620 (Duplicate): NET-SNMP & FRR with AgentX is not starting with library errors.
- ...
07/13/2024
-
09:08 PM Todo #15281: Upgrade Tailscale to 1.6.0
- Elvis Impersonator wrote in #note-11:
> I guess pfSense CE 2.7.2 and 2.8.0 are not important to Netgate. Thanks for... -
08:36 PM Todo #15281: Upgrade Tailscale to 1.6.0
- I guess pfSense CE 2.7.2 and 2.8.0 are not important to Netgate. Thanks for letting us know us know the future of CE...
-
07:38 PM Todo #15281 (Resolved): Upgrade Tailscale to 1.6.0
- Yes, 1.68.1 is already available in the 24.08-DEVELOPMENT release. ...
-
08:48 PM Feature #15619 (New): Upgrade CE to Tailscale 1.68.2
- Currently available Tailscale package has known security vulnerabilities.
https://tailscale.com/security-bulletins... -
03:37 PM Bug #15618 (Incomplete): HAproxy causes system panic
- There's not enough information to investigate further. There should be a compressed file containing the backtrace alo...
-
12:09 PM Bug #15618 (Duplicate): HAproxy causes system panic
- Crash report begins. Anonymous machine information:
amd64
15.0-CURRENT
FreeBSD 15.0-CURRENT #0 plus-RELENG_24_0... -
01:44 PM Bug #9204: ospfd: GRE tunnels became unnumbered since 2.4.4
- It appears from the upstream discussion that this patch can cause other issues, so applying it is likely to break exi...
-
12:51 PM Bug #9204: ospfd: GRE tunnels became unnumbered since 2.4.4
- Here we are 5 years later. Still not fixed.
But the code has been updated a bit. pfSense+ 24.03 still contains...
07/12/2024
-
01:57 PM Bug #13043: OSPF over Wireguard interface doesn't populate neighbors after reboot
- Hi,
i want to confirm the issue, too. I can reproduce the bug within both installations of my HA setup... Using Wi... -
12:01 PM Feature #9044: Add SoftEther
- Hi evryone,
If can be useful, I'm starting to add a SoftEther package for pfSense: https://github.com/STeXE89/Free... -
08:14 AM Bug #15614: Squid 6.6 Package should have NO_TLSv1 and NO_TLSv1_1 feature flags set on directive pls_outgoing_options
- www/pfSense-pkg-squid/files/usr/local/pkg/squid.inc
Line 1233 needs feature flags added -
08:13 AM Bug #15614 (Duplicate): Squid 6.6 Package should have NO_TLSv1 and NO_TLSv1_1 feature flags set on directive pls_outgoing_options
- $sslproxy_options = "NO_SSLv3, NO_TLSv1, NO_TLSv1_1";
This variable is also used with
tls_outgoing_options
...
07/11/2024
-
01:24 PM Feature #15541: CRON: option to enable/disable task
- In the cron configuration file (/etc/crontab), the task would be commented with # when disabled, and when activated, ...
-
01:55 AM Bug #15274: HAProxy Configuration Changes Require pfSense Reboot to Take Effect
- Also discussed here.
https://forum.netgate.com/topic/178348/haproxy-backend-port-changes-are-not-applied
workarou...
07/10/2024
-
08:39 AM Bug #15610 (New): OSPF with "Redistribute Default" enabled and "Always Redistribute" disabled does not react to WAN link down events
- OSPF with "Redistribute Default" *enabled* and "Always Redistribute" *disabled* does not stop redistributing the defa...
07/09/2024
-
05:34 PM Bug #15313: Zabbix server 6.4.12 requires Zabbix proxies to be version 6.4.12
- That's great to hear!
Will updated Zabbix packages be released for 24.03? -
07:17 AM Bug #15313: Zabbix server 6.4.12 requires Zabbix proxies to be version 6.4.12
- Checked on the last dev 24.08 and Zabbix use zabbix64-proxy-6.4.16 version
24.08-DEVELOPMENT (amd64)
built on Tue ... -
12:32 PM Feature #14633: Cleanup states on dynamic routing changes
- Tested on latest 24.08-DEVELOPMENT (built on Fri Jul 5 6:00:00 UTC 2024)
I deployed 2 pfSenses, created Routed IPs... -
12:16 PM Bug #15385 (Resolved): PHP crash when exporting Apple profile, while IPsec P1 authentication method set to "Mutual Certificate"
-
07:12 AM Bug #15385: PHP crash when exporting Apple profile, while IPsec P1 authentication method set to "Mutual Certificate"
- Tested on ipsec-profile-wizard version 1.2.3 on
24.08-DEVELOPMENT (amd64)
built on Tue Jul 2 9:00:00 MSK 2024
Free... -
09:30 AM Todo #15281: Upgrade Tailscale to 1.6.0
- aleksei prokofiev wrote in #note-8:
> Checked on last dev build and tailscale-1.68.1 presented
> 24.08-DEVELOPMENT ... -
07:35 AM Todo #15281: Upgrade Tailscale to 1.6.0
- Checked on last dev build and tailscale-1.68.1 presented
24.08-DEVELOPMENT (amd64)
built on Tue Jul 2 9:00:00 MSK 2... -
07:47 AM Regression #15159: XMLRPC Replication Target required even if not using it
- I can confirm the same on the last dev build and pfBlockerNG 3.2.0_13
24.08.a.20240702.0600
24.08-DEVELOPMENT (amd... -
06:54 AM Bug #14861: PHP error when pings are enabled but no ping hosts are defined
- I can confirm that enabling ping monitor option without specify host IP caused crash. Disabling the option or specify...
07/08/2024
07/07/2024
-
05:36 PM Feature #12711: Add InfluxDB V2 support
- Hi Marcos M
> Please open a new redmine (or follow up on the forum) with reproducible steps.
If I configure Tel...
07/06/2024
-
10:09 PM Bug #14398: ONBATT Status Missing in apcupsd.widget.php
- issue is still present on 24.03 w/ apcupsd v0.3.92_2
-
08:46 PM Feature #14321: Add UPS information to LCDproc screen
APCUPSD and NUT have been added to LCDproc , they show up after installing packages.
07/05/2024
-
01:25 PM Feature #15600 (Closed): pfBlocker Widget - make the failed downloads windows expandable
-
11:31 AM Feature #15600: pfBlocker Widget - make the failed downloads windows expandable
- !clipboard-202407051231-rroh6.png!
-
11:30 AM Feature #15600: pfBlocker Widget - make the failed downloads windows expandable
- ignore me and close this issue.
-
11:29 AM Feature #15600: pfBlocker Widget - make the failed downloads windows expandable
- The setting you mention expands the whole widget. I just want to expand the failed downloads so I can read them. than...
-
11:23 AM Feature #15600: pfBlocker Widget - make the failed downloads windows expandable
- Click on the wrench icon in the widget header.
07/04/2024
-
12:47 PM Regression #15469: RRD Graphs height is smaller than expected
- Tested against:...
-
11:48 AM Feature #15600 (Closed): pfBlocker Widget - make the failed downloads windows expandable
- Currently on the widget you only get a couple of lines to read the fails, can the failed window be made so a user can...
-
11:46 AM Feature #15599 (New): pfBlockerNG widget dates - Change to better format
- In the pfblockerNG widget the dates are shown in American format and these are hard to read if you do not live in USA...
-
01:58 AM Regression #15158: XMLRPC Timeout won't save if over 150
- Still able to replicate this on 24.08.a.20240702.0600 pfBlocker version 3.2.0_13
-
12:50 AM Bug #14406: Squid Proxy version 0.4.46 Missing Error subfolder and files for "en" or "en-usa" and all other languages.
- Can we reopen this please
-
12:50 AM Bug #14406: Squid Proxy version 0.4.46 Missing Error subfolder and files for "en" or "en-usa" and all other languages.
- This issue is still present in Squid 6.6
ln -s /usr/local/etc/squid/errors/templates /usr/local/etc/squid/errors/...
07/03/2024
-
11:57 AM Regression #15596 (Rejected): follow up to closed tailscale issue 14987....
- If you need assistance solving a problem, please post on the forum: https://forum.netgate.com/
-
07:46 AM Regression #15596 (Rejected): follow up to closed tailscale issue 14987....
- Hi I have followed the "fix" here.... https://redmine.pfsense.org/issues/14987
this my outbound config ....
!cl...
07/02/2024
-
07:58 PM Bug #15594 (Pull Request Review): ERROR when IP are with " " at the start or end of address
- Brilliant pfSense DevTeam!
BUG
---------
*ERROR when IP are with " " at the start or end of IP's address.*
Mess...
06/30/2024
-
02:44 AM Feature #15585: Add OpenVPN Option for manually MTU setting
- Thanks for considering this. I was researching this after I was testing the VPN to home NAS connection across the Uni...
-
02:02 AM Feature #15585: Add OpenVPN Option for manually MTU setting
- Christopher Cope wrote in #note-4:
> Jonathan Lee wrote in #note-3:
> > So the Users on the forum didn’t need to se... -
02:16 AM Feature #15393: Return to the ga version of NUT
- Thanks Kris. Can you look at #15532 as well please? Thanks!
-
01:56 AM Feature #15393 (Resolved): Return to the ga version of NUT
- Package is now present with 2.8.2 in the repos for 24.08. Marking as Resolved.
06/28/2024
-
02:59 PM Feature #15585: Add OpenVPN Option for manually MTU setting
- Jonathan Lee wrote in #note-3:
> So the Users on the forum didn’t need to set custom settings for OpenVPN configurat... -
05:44 AM Feature #15585: Add OpenVPN Option for manually MTU setting
- So the Users on the forum didn’t need to set custom settings for OpenVPN configuration export system? The way I under...
06/27/2024
-
11:23 PM Feature #15585: Add OpenVPN Option for manually MTU setting
- Jonathan Lee wrote in #note-1:
> It would be nice to have this as a non custom option a GUI based option for users.
... -
10:54 PM Feature #15585: Add OpenVPN Option for manually MTU setting
- It would be nice to have this as a non custom option a GUI based option for users.
-
10:53 PM Feature #15585 (New): Add OpenVPN Option for manually MTU setting
- Ref:
https://forum.netgate.com/topic/148161/how-to-change-mtu-mssfix-values-for-openvpn-in-pfsense
I started to r...
06/26/2024
-
06:51 PM Bug #15574: Stunnel: Error resolving "r11.o.lencr.org": Address family for nodename not supported (EAI_ADDRFAMILY)
- Hi, I went through several rounds of testing and I beleive that this is a bug somewhere in pfsense, stunnel.
Curr... -
05:59 PM Bug #15457 (Resolved): HAproxy disable zero copy forwarding
-
05:56 PM Bug #15457: HAproxy disable zero copy forwarding
- The forum comments indicate that the new version, 2.9.7, addresses the issue that was raised in this Redmine. We can ...
-
03:19 PM Bug #13405: Wireguard: The webgui becomes excessively slow to respond with a large number of peers
- Hello,
any updates?
I notice that the culprit is this line:
https://github.com/pfsense/FreeBSD-ports/blob/08d3... -
03:12 PM Bug #15580 (New): Squidguard ACL order issue
- If you edit either Target Categories or Group ACL entries they are put on top of the list after saving the entry.
... -
12:31 PM Regression #15540: Cannot create new System Patches package custom entry on Plus 24.08/CE 2.8.0 Snapshots
- The fetch button is working properly here as well on the same system where it failed previously, so that issue does a...
-
08:08 AM Regression #15540 (Resolved): Cannot create new System Patches package custom entry on Plus 24.08/CE 2.8.0 Snapshots
- Tested against:...
06/24/2024
-
09:26 PM Bug #14523 (Resolved): PHP error when using an unsupported alias type in Advanced Rule Settings
- Typo is now fixed.
-
07:52 PM Todo #15281: Upgrade Tailscale to 1.6.0
- Matt Keys wrote in #note-6:
> I reported a TS routing issue here 3 months ago: https://redmine.pfsense.org/issues/14... -
11:01 AM Todo #15281: Upgrade Tailscale to 1.6.0
- Elvis Impersonator wrote in #note-5:
> So I updated CE 2.7.2 to tailscale 1.68.1
> Seems to be working.
I repo... -
07:23 PM Feature #14453: Expand prefix list entry window
- https://forum.netgate.com/topic/188850/gui-frr?_=1719256774819
Is it possible to get this rendered correctly on pf... -
02:48 PM Bug #15574: Stunnel: Error resolving "r11.o.lencr.org": Address family for nodename not supported (EAI_ADDRFAMILY)
- Thank you for the quick reply.
I opened this bug after doing a full clean install of pfsense 2.7.2 and experienced t... -
02:10 PM Bug #15574 (Not a Bug): Stunnel: Error resolving "r11.o.lencr.org": Address family for nodename not supported (EAI_ADDRFAMILY)
- Seems more like a local cert issue than a bug in stunnel. The usual way to fix such things is to delete the stale CA ...
-
02:06 PM Bug #15574 (Not a Bug): Stunnel: Error resolving "r11.o.lencr.org": Address family for nodename not supported (EAI_ADDRFAMILY)
- I have an issue with the stunnel package in pfsense 2.7.2. Since my certificate renewed a few days ago, I cannot conn...
06/23/2024
-
10:45 AM Feature #15573 (New): Enable tmpfs when ramdisk is used.
- The Telegraf package config disables tmpfs which prevents the ramdisks /var and /log to be monitored....
-
12:16 AM Bug #14523: PHP error when using an unsupported alias type in Advanced Rule Settings
- The patch is working on:...
06/22/2024
-
07:42 PM Todo #15281: Upgrade Tailscale to 1.6.0
- 1.68.1 is available with client security fixes
https://www.freshports.org/security/tailscale
https://pkgs.org/downlo...
06/21/2024
-
08:42 PM Bug #15567 (New): Continent Alias Lost at Start of pfBlockerNG
- I am using the pfblockerNG created continent aliases e.g. "pfB_Europe_v4" in my firewall rules.
Unfortunately they a... -
03:44 PM Regression #15540 (Feedback): Cannot create new System Patches package custom entry on Plus 24.08/CE 2.8.0 Snapshots
- Fixed with commit:4026d8132d10ec4702b1de6850c49b7723ec04e2.
-
02:42 PM Regression #15540 (Confirmed): Cannot create new System Patches package custom entry on Plus 24.08/CE 2.8.0 Snapshots
- Looks like the fetch action isn't storing anything in the patch entry, probably a similar issue to the problem creati...
-
10:00 AM Regression #15540: Cannot create new System Patches package custom entry on Plus 24.08/CE 2.8.0 Snapshots
- I tested against the version which seems to have the patch applied:...
-
03:21 PM Todo #15563 (Resolved): Remove unsupported dh_file configuration in FreeRADIUS
-
03:14 PM Todo #15563 (In Progress): Remove unsupported dh_file configuration in FreeRADIUS
- FreeRADIUS fails to start now if the configuration contains dh_file:
> /usr/local/etc/raddb/mods-enabled/eap: dh_fil...
06/19/2024
-
09:09 PM Bug #15131 (Confirmed): OpenVPN client export issues with iPhone and IPV6 connections
- I was able to replicate this on 24.03, removing the 4 at the end of udp4 allowed the config from the export package t...
-
08:53 PM Todo #15563 (Resolved): Remove unsupported dh_file configuration in FreeRADIUS
- According to "FreeRADIUS":https://github.com/FreeRADIUS/freeradius-server/blob/db3d1924d9a2e8d37c43872932621f69cfdbb0...
Also available in: Atom