Project

General

Profile

Activity

From 03/08/2023 to 04/06/2023

04/06/2023

10:12 AM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
For what it's worth I still have not seen a timeout again on mine, but I've been running 23.05 snapshots. It's been u... Jim Pingle
09:14 AM Regression #14137: pfSense Plus Upgrade repo data remains on the system after upgradng
aleksei prokofiev wrote in #note-1:
> Also, if package manager unavailable, may help next solution
> Check and then...
Tyler Sparrow

04/05/2023

10:59 AM Regression #14235 (Feedback): Undersized CESA TDMA descriptor pools can be exhausted, leading to errors
fixed https://gitlab.netgate.com/pfSense/FreeBSD-src/-/commit/a483d9cdb658426f55e5cce61ef1fed17d97bddc Mateusz Guzik
07:31 AM Regression #14235 (Resolved): Undersized CESA TDMA descriptor pools can be exhausted, leading to errors
When using CESA in the 3100 in 23.01 the descriptor pools can be exhausted filling the logs with:... Steve Wheeler

04/03/2023

06:22 PM Regression #14233 (Resolved): pfSense installer crashes on the 7100
The pfSense installer in the 23.05 memstick-serial image crashes:... Steve Wheeler
01:56 PM Regression #14137: pfSense Plus Upgrade repo data remains on the system after upgradng
Danilo Zrenjanin wrote in #note-2:
> I hit that case and confirmed that the offered workaround fixes it.
I'm runn...
pierre gleich
07:45 AM Bug #14204 (Feedback): System Information Dashboard widget stops showing CPU details on aarch64
MR merged. Jim Pingle

04/02/2023

10:13 AM Bug #14224 (Duplicate): Error when deleting Boot Environment that was the source for a clone
Marcos M

04/01/2023

08:41 PM Bug #14168: OpenVPN status GUI cannot display RADIUS ACL Generated Ruleset with usernames containing an ``@`` symbol
Jim Pingle wrote in #note-1:
> Is this newly broken in 23.01 (regression) or has it never worked, even on older vers...
Kris Phillips
08:36 PM Bug #14224: Error when deleting Boot Environment that was the source for a clone
Confirmed on 23.01. The boot environment deletes, but throws the error, so it appears to be cosmetic in nature, than... Kris Phillips
12:14 PM Bug #14224 (Duplicate): Error when deleting Boot Environment that was the source for a clone
Steps to reproduce.
1. Navigate to System > Boot Environments
2. Create New Boot Environment
3. Clone that n...
Christopher Cope
12:16 PM Bug #14074 (Resolved): Cannot edit or delete ZFS Boot Environment with a name containing only numbers
Did some more testing. The other error seems to be unrelated to this issue. I created another redmine to track it. ht... Christopher Cope

03/31/2023

03:03 AM Regression #14137 (Confirmed): pfSense Plus Upgrade repo data remains on the system after upgradng
I hit that case and confirmed that the offered workaround fixes it. Danilo Zrenjanin

03/30/2023

11:54 AM Bug #14206: package manager broken
Almost certainly this though: https://redmine.pfsense.org/issues/14137 Steve Wheeler
11:35 AM Bug #14206 (Rejected): package manager broken
This site is not for support or diagnostic discussion.
For assistance in solving problems, please post on the "Net...
Jim Pingle
11:19 AM Bug #14206 (Rejected): package manager broken
newbe question *How do I remove pfsense plus upgrade? *
just upgraded to pfsense plus 23.01
when I click for availa...
Douglas Pannell
07:05 AM Feature #14205 (New): Allow for maximum concurrent users, per user, in captive portal
We have several schools who wish to impose how many devices are allowed to have access via the Captive Portal, per us... Alex Rubenstein
06:58 AM Bug #14204 (Pull Request Review): System Information Dashboard widget stops showing CPU details on aarch64
Steve Wheeler
06:58 AM Bug #14204: System Information Dashboard widget stops showing CPU details on aarch64
https://gitlab.netgate.com/pfSense/factory/-/merge_requests/97 Steve Wheeler
06:43 AM Bug #14204 (Resolved): System Information Dashboard widget stops showing CPU details on aarch64
In aarch64 systems (1100, 2100) the system information widget gets CPU data by greping the strings from dmesg.
Howev...
Steve Wheeler

03/27/2023

05:28 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
I found mmc-utils but I'm sure if it can tell me about the health of the flash. What else can I do to test it? I reme... Craig Leres
10:23 AM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
I have seen the same thing on my 1100 but given the timing (could be hours, days, or even weeks between timeouts) it ... Jim Pingle
11:02 AM Bug #14074: Cannot edit or delete ZFS Boot Environment with a name containing only numbers
OK, it may still be worth a quick look to see if we can make that smoother in case users are stuck with the problem e... Jim Pingle
09:34 AM Bug #14074: Cannot edit or delete ZFS Boot Environment with a name containing only numbers
just want to be precise so you dont spend time on this if you dont have to;
the patch fixed the issue regarding n...
Mark Grant
07:27 AM Bug #14074 (New): Cannot edit or delete ZFS Boot Environment with a name containing only numbers
The current patch was merged into dev builds last week, but since there is still an issue with the patch applied, mov... Jim Pingle
10:31 AM Bug #13967 (Resolved): aarch64 23.01 upgrade can fail to write the bootloader
Jim Pingle
10:13 AM Bug #14140 (Not a Bug): OpenVPN Custom Options removes newline before push statements
Not a bug. Statements must be separated with a *semicolon* , not a newline.
This is stated clearly in the descript...
Jim Pingle
10:10 AM Regression #14180 (Feedback): ConnectX-4 LX MCX4121A-ACAT - VT-d passthrough of both ports, virtualized pfSense fails to boot due to mlx5 driver errors
The error messages are different so this may not be the case, but over on the TNSR side we have seen behavior changes... Jim Pingle
09:52 AM Bug #14175: LDAP authentication for SSH fails
Did the same configuration work before 23.01?
Jim Pingle
09:36 AM Feature #14173: QAT driver does not attach to QAT virtual function devices passed through to VM on Xeon D-2146NT
Hi Jim,
thank you for looking into it.
I'm already in contact with the Intel QAT driver team, to see if the fau...
name name
09:30 AM Feature #14173 (Needs Patch): QAT driver does not attach to QAT virtual function devices passed through to VM on Xeon D-2146NT
If it fails on FreeBSD 14-CURRENT then it needs fixed upstream first and we can pull in the fix from there. It could ... Jim Pingle
09:21 AM Regression #14171 (Not a Bug): High Availability Setup with Gateway to secondary pfSense not working - No Internet
This is not and will not be a supported CARP configuration. WANs must be static using CARP for CARP to function prope... Jim Pingle
09:17 AM Bug #14168: OpenVPN status GUI cannot display RADIUS ACL Generated Ruleset with usernames containing an ``@`` symbol
Is this newly broken in 23.01 (regression) or has it never worked, even on older versions?
Jim Pingle
08:09 AM Bug #14132: Aliases of the same name current as previously deleted will not be respected properly
Thanks for the update. You sparked an idea about not everything being removed when an Alias is changed.
I'm goin...
Steven Cedrone
07:55 AM Bug #14132 (Not a Bug): Aliases of the same name current as previously deleted will not be respected properly
There isn't nearly enough evidence here of a bug and not something else happening in the configuration or existing st... Jim Pingle
08:04 AM Feature #14134: Notifier on main dashboard for other updates availble: Packages / System Patches (if installed) Under the PfSense current Version.
Jim Pingle wrote in #note-1:
> There is already a packages widget which shows available package updates.
My apolo...
Steven Cedrone
07:56 AM Feature #14134 (Rejected): Notifier on main dashboard for other updates availble: Packages / System Patches (if installed) Under the PfSense current Version.
There is already a packages widget which shows available package updates. Jim Pingle
07:59 AM Bug #14135 (Rejected): iOT Devices not reconnecting properly
There isn't any evidence here of a bug in pfSense. Myself and many others use various IOT devices in many different w... Jim Pingle

03/25/2023

08:48 PM Bug #13967: aarch64 23.01 upgrade can fail to write the bootloader
This has been working for over a week now without issue. We can close this as Resolved. Kris Phillips
08:05 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
Well I'm running on a completely different SG-1100 now so I'll wait and see if the problem reoccurs before the next v... Craig Leres
07:23 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
I haven't seen this with any other firewalls or on my personal Netgate 1100. I suspect you might have a fault eMMC t... Kris Phillips
05:00 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
Oops, I'm actually running 23.01. Craig Leres
02:26 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
Craig Leres wrote:
> I've attached two serial console stack traces.
Here's one more crash from a few minutes ago,...
Craig Leres
12:28 PM Regression #14181 (Closed): ``mmcsd0`` controller timeout/system hang on 1100
Several times since upgrading to 23.05 and later reinstalling to switch to zfs root I've had a SG-1100 glitch and los... Craig Leres
07:28 PM Bug #14104: Google LDAP connections still fail even after adding SNI for TLS 1.3
If the client certificate is chained into a single entry with the CA data, may be related to this: https://redmine.pf... Kris Phillips
06:30 PM Regression #13993: Switch ports on 7100/1100/2100 do not have Auto MDI-X support enabled
switch is not detected under interfaces menu with current build - 23.05.a.20230322.0600 Jordan G
12:24 PM Bug #14140 (Confirmed): OpenVPN Custom Options removes newline before push statements
Chris W
09:43 AM Bug #14140: OpenVPN Custom Options removes newline before push statements
I'm not able to reproduce this on the server settings, but can on the Client Specific Overrides page. After saving an... Chris W
09:19 AM Regression #14180 (Feedback): ConnectX-4 LX MCX4121A-ACAT - VT-d passthrough of both ports, virtualized pfSense fails to boot due to mlx5 driver errors
I've been running the following configuration for months now:
Hypervisor:
Linux Kernel 5.15
libvirt/qemu/kvm
...
name name

03/24/2023

01:25 PM Bug #14175: LDAP authentication for SSH fails
Can confirm the issue.... Lev Prokofev
12:58 PM Bug #14175 (New): LDAP authentication for SSH fails
LDAP authentication fails for SSH user authentication via LDAP with error (Invalid credentials).
Same user successfu...
Georgiy Tyutyunnik
10:20 AM Feature #14173 (Needs Patch): QAT driver does not attach to QAT virtual function devices passed through to VM on Xeon D-2146NT
pfSense is virtualized under Linux.
Hypervisor:
* qemu-kvm
* i440fx (q35 doesn't work either)
* kernel 5.15.9...
name name
10:03 AM Regression #14102 (Feedback): Console menu incorrectly shows option ``99`` on some ARMv7/ARM64 installations
Fixed in 209cb8b1. Reid Linnemann
09:59 AM Regression #14102: Console menu incorrectly shows option ``99`` on some ARMv7/ARM64 installations
I've simplified and improved the EMMC/SATA rootdev check for aarch64 devices. The modified script is more specific ab... Reid Linnemann
09:51 AM Regression #14171: High Availability Setup with Gateway to secondary pfSense not working - No Internet
I forgot to add: All currently available patches were applied via the System Patches package, before any testing was ... name name
09:44 AM Regression #14171 (Not a Bug): High Availability Setup with Gateway to secondary pfSense not working - No Internet
Hi,
the following setup is working just fine on pfSense CE 2.6.0:
* High Availability/CARP
* Gateway group WAN...
name name

03/23/2023

08:35 PM Bug #14168 (New): OpenVPN status GUI cannot display RADIUS ACL Generated Ruleset with usernames containing an ``@`` symbol
When looking at the Status --> OpenVPN page and viewing a user's ACLs from RADIUS, if the user signed in with user@do... Kris Phillips

03/22/2023

12:55 PM Bug #14158: Unable to delete boot environment "X". Error 3
Duplicate of https://redmine.pfsense.org/issues/14074 Christopher Cope
12:55 PM Bug #14158 (Duplicate): Unable to delete boot environment "X". Error 3
Christopher Cope
12:38 PM Bug #14158 (Duplicate): Unable to delete boot environment "X". Error 3
Hi,
I was going to make a new backup recovery in the Boot Environments.
I name it with one number ie. 1, then save ...
B. B.
08:35 AM Bug #14140: OpenVPN Custom Options removes newline before push statements
Sorry, i forgot to describe WHY this is a problem.
The issue is that the invalid formatting of the options will ca...
Nick Maludy

03/21/2023

01:54 PM Bug #14140 (Not a Bug): OpenVPN Custom Options removes newline before push statements
Hello,
I'm setting up an OpenVPN server and need to pass in some additional option in two places:
1. VPN -> Ope...
Nick Maludy
12:09 AM Regression #14137: pfSense Plus Upgrade repo data remains on the system after upgradng
Also, if package manager unavailable, may help next solution
Check and then uncheck dashboard auto update box in Sys...
aleksei prokofiev

03/20/2023

07:21 PM Regression #14137 (Resolved): pfSense Plus Upgrade repo data remains on the system after upgradng
After upgrading from CE to pfSense Plus the repo data used for that should be removed from the firewall leaving it us... Steve Wheeler
04:38 AM Bug #14135: iOT Devices not reconnecting properly
I forgot to mention we also tested this with a Sony TV (1 year old and up to date Firmware) on an ethernet connection... Steven Cedrone
04:24 AM Bug #14135 (Rejected): iOT Devices not reconnecting properly
IOT Devices of different manufacturers all seem to have this problem and while the problem is being experienced I wou... Steven Cedrone
04:32 AM Bug #13497: unbound process looks like stuck periodically
Yaroslav Semenenko wrote:
> Hello,
>
> I have Netgate 2100.
> Unbound service is needed to restart sometimes due...
Steven Cedrone
03:50 AM Feature #14134 (Rejected): Notifier on main dashboard for other updates availble: Packages / System Patches (if installed) Under the PfSense current Version.
A notifier on the Main Landing page under the Current PfSense Version number that lets you also know if your packages... Steven Cedrone
03:47 AM Feature #14133 (New): Exporting and Importing - Change Layout
Please change Backup & Restore to allow for choosing only what areas you want to import/export without having to do i... Steven Cedrone
03:39 AM Bug #14132 (Not a Bug): Aliases of the same name current as previously deleted will not be respected properly
This problem is hard to describe so I'll give as much information as possible as best as I can.
-Alias was created...
Steven Cedrone
03:30 AM Feature #14131 (New): Add Dynamic DNS Service: DYNU
Please add Dynamic DNS provider DYNU
https://www.dynu.com/en-US/
It's working now but sometimes won't update an...
Steven Cedrone

03/19/2023

10:52 PM Bug #14129 (Resolved): Chelsio T520 unable to route past 470Mbps
Chelsio T520-CR and T420-CR are unable to route speeds over 470mbps when updated to 23.01 code. Goes to full 1gb spee... Bruce Talbot
04:01 PM Bug #12974 (Closed): Typing anything into 1100/2100 recovery installer causes process to stop
This should be closed. Updating to reflect. Ryan Coleman
02:33 AM Feature #14125 (New): Add Cateogory field to Available Packages Tab like Installed Packages Tab
Under the Installed Packages the header fields have the following listed at the top Name Category Version Description... Scott Costa

03/18/2023

08:02 PM Bug #14074: Cannot edit or delete ZFS Boot Environment with a name containing only numbers
i installed the patch.
it renamed the two broken boot environments with the name i originally gave them, swapping ...
Mark Grant
04:57 PM Bug #14074: Cannot edit or delete ZFS Boot Environment with a name containing only numbers
The patch works well. I'm not hitting any of the problems I encountered previously. *It only applies to the currently... Chris W
01:57 PM Bug #14074 (Pull Request Review): Cannot edit or delete ZFS Boot Environment with a name containing only numbers
https://gitlab.netgate.com/pfSense/factory/-/merge_requests/94 Christopher Cope
01:01 PM Bug #14074 (Confirmed): Cannot edit or delete ZFS Boot Environment with a name containing only numbers
I was able to reproduce this by cloning the default environment, naming it 20230318 (today's date), no description. C... Chris W

03/17/2023

06:16 PM Bug #13967 (Feedback): aarch64 23.01 upgrade can fail to write the bootloader
Fix has been released to the world this week. Reid Linnemann

03/15/2023

02:40 PM Feature #14112 (Duplicate): Allow user to trigger license re-sync and/or reset in system_register.php
We already have an internal issue for this.
Jim Pingle
01:57 PM Bug #14104: Google LDAP connections still fail even after adding SNI for TLS 1.3
LDAP client certs are only available on Plus. Jim Pingle

03/14/2023

08:44 PM Feature #14112 (Duplicate): Allow user to trigger license re-sync and/or reset in system_register.php
There may be a case for adding some buttons in system_register.php that allow the user to 1) Force the existing pfSen... M Felden
10:41 AM Bug #14106 (New): arc4random: WARNING: initial seeding bypassed the cryptographic random device because it was not yet seeded and the knob 'bypass_before_seeding' was enabled.
23.01 is now showing this error after a fresh firmware install on a Netgate 2100-MAX system. It will continue to boot... Jonathan Lee
08:08 AM Regression #13895: Early boot hangs on Hyper-V with Gen2 VMs
Thanks Chris.
While this doesn't solve your immediate situation, it looks like repro is possible with Windows Serv...
Leon Dang
03:11 AM Bug #14104 (New): Google LDAP connections still fail even after adding SNI for TLS 1.3
tested on 23.01 and with IPv6
After fixing https://redmine.pfsense.org/issues/11626 I see that the LDAP client is ...
Azamat Khakimyanov

03/13/2023

09:17 PM Regression #13895: Early boot hangs on Hyper-V with Gen2 VMs
Here is a screenshot of the memmap command on an affect VM. This machine is on Windows Server 2022. The Pfsense VM ... Chris Poillion
05:54 PM Regression #14102 (Resolved): Console menu incorrectly shows option ``99`` on some ARMv7/ARM64 installations
The console menu is intended to only show menu option 99 'Install to device' if pfSense is not running from eMMC or S... Steve Wheeler
01:10 PM Regression #13824: CPU/Crypto Detection for the 3100 is not functioning properly
Bill McGonigle wrote in #note-4:
> Is the patch world-readable anywhere? I have affected hardware and the System Pa...
Jim Pingle
01:08 PM Regression #13824: CPU/Crypto Detection for the 3100 is not functioning properly
Is the patch world-readable anywhere? I have affected hardware and the System Patches feature can't resolve this com... Bill McGonigle
09:28 AM Regression #14099 (Duplicate): snmpd SIOCGIFDESCR (e6000sw0port1): Device not configured
Duplicate of #13976 Jim Pingle
09:26 AM Regression #14099 (Duplicate): snmpd SIOCGIFDESCR (e6000sw0port1): Device not configured
See bug #8600 Björn Bylander
09:18 AM Bug #8600: "snmpd SIOCGIFDESCR (e6000sw0port1): Device not configured"
This bug seems to have popped up again on my SG-3100 after upgrading to 23.01. Björn Bylander

03/11/2023

09:37 PM Feature #13786: ldap intergration for firewall rules
Mike Moore wrote in #note-4:
> So there is no way in the future to create a LAN rule stating
> Src: AD/mmoore
> Ds...
Kris Phillips
09:29 PM Feature #14017: Ability to remove all packages before upgardes with saved configuration
There is already an option to reinstall packages from Diagnostics --> Backup and Restore. It would be beneficial for... Kris Phillips
09:25 PM Regression #14080: Installer fails to install to a geom mirror
Typically right now we also have issues with the installer converting from gmirror to ZFS. Haven't tested since 22.0... Kris Phillips
12:30 PM Bug #13981 (Resolved): PHP Error on ``status_interfaces.php`` with empty switch VLAN group configuration and assigned VLAN interfaces
Replicated the issue on SG-2100.... Danilo Zrenjanin

03/10/2023

10:29 AM Bug #14068 (Closed): Importing Chained Cert Data into the System --> Cert Manager --> Certificates Breaks Authentication
Kris Phillips wrote in #note-2:
> The message of "Unknown CA" is what pfSense is sending to the remote host. This w...
Jim Pingle
10:16 AM Bug #14068: Importing Chained Cert Data into the System --> Cert Manager --> Certificates Breaks Authentication
Jim Pingle wrote in #note-1:
> Allowing multiple CAs in a single entry was always a hackish workaround for things th...
Kris Phillips

03/09/2023

02:45 PM Bug #14090 (New): Significant State Creation Causes LACP, BGP, and Possibly Other Components to Temporarily Fail
When testing with a customer, when a remote host has a large number of new states being created, then transitioning t... Kris Phillips
07:02 AM Bug #14085 (New): QAT not working / same speed as AES-NI with CPIC-8955!
My post on the netgate forum, still no unanswer:
https://forum.netgate.com/topic/175096/ipsec-with-qat-low-performan...
Alexandru Racovita

03/08/2023

06:57 PM Regression #13895: Early boot hangs on Hyper-V with Gen2 VMs
I can't repro it in Win-11 Hyper-V. 4GB, ZFS, 3 NICs, ISO still attached.
In the loader prompt (option 3), can you...
Leon Dang
07:54 AM Regression #14080: Installer fails to install to a geom mirror
Reid Linnemann wrote in #note-2:
> Do we want to cut the cord on UFS and just be done with it?
UFS is OK and not ...
Jim Pingle
 

Also available in: Atom