Activity
From 03/08/2023 to 04/06/2023
04/06/2023
-
10:12 AM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
- For what it's worth I still have not seen a timeout again on mine, but I've been running 23.05 snapshots. It's been u...
-
09:14 AM Regression #14137: pfSense Plus Upgrade repo data remains on the system after upgradng
- aleksei prokofiev wrote in #note-1:
> Also, if package manager unavailable, may help next solution
> Check and then...
04/05/2023
-
10:59 AM Regression #14235 (Feedback): Undersized CESA TDMA descriptor pools can be exhausted, leading to errors
- fixed https://gitlab.netgate.com/pfSense/FreeBSD-src/-/commit/a483d9cdb658426f55e5cce61ef1fed17d97bddc
-
07:31 AM Regression #14235 (Resolved): Undersized CESA TDMA descriptor pools can be exhausted, leading to errors
- When using CESA in the 3100 in 23.01 the descriptor pools can be exhausted filling the logs with:...
04/03/2023
-
06:22 PM Regression #14233 (Resolved): pfSense installer crashes on the 7100
- The pfSense installer in the 23.05 memstick-serial image crashes:...
-
01:56 PM Regression #14137: pfSense Plus Upgrade repo data remains on the system after upgradng
- Danilo Zrenjanin wrote in #note-2:
> I hit that case and confirmed that the offered workaround fixes it.
I'm runn... -
07:45 AM Bug #14204 (Feedback): System Information Dashboard widget stops showing CPU details on aarch64
- MR merged.
04/02/2023
-
10:13 AM Bug #14224 (Duplicate): Error when deleting Boot Environment that was the source for a clone
04/01/2023
-
08:41 PM Bug #14168: OpenVPN status GUI cannot display RADIUS ACL Generated Ruleset with usernames containing an ``@`` symbol
- Jim Pingle wrote in #note-1:
> Is this newly broken in 23.01 (regression) or has it never worked, even on older vers... -
08:36 PM Bug #14224: Error when deleting Boot Environment that was the source for a clone
- Confirmed on 23.01. The boot environment deletes, but throws the error, so it appears to be cosmetic in nature, than...
-
12:14 PM Bug #14224 (Duplicate): Error when deleting Boot Environment that was the source for a clone
- Steps to reproduce.
1. Navigate to System > Boot Environments
2. Create New Boot Environment
3. Clone that n... -
12:16 PM Bug #14074 (Resolved): Cannot edit or delete ZFS Boot Environment with a name containing only numbers
- Did some more testing. The other error seems to be unrelated to this issue. I created another redmine to track it. ht...
03/31/2023
-
03:03 AM Regression #14137 (Confirmed): pfSense Plus Upgrade repo data remains on the system after upgradng
- I hit that case and confirmed that the offered workaround fixes it.
03/30/2023
-
11:54 AM Bug #14206: package manager broken
- Almost certainly this though: https://redmine.pfsense.org/issues/14137
-
11:35 AM Bug #14206 (Rejected): package manager broken
- This site is not for support or diagnostic discussion.
For assistance in solving problems, please post on the "Net... -
11:19 AM Bug #14206 (Rejected): package manager broken
- newbe question *How do I remove pfsense plus upgrade? *
just upgraded to pfsense plus 23.01
when I click for availa... -
07:05 AM Feature #14205 (New): Allow for maximum concurrent users, per user, in captive portal
- We have several schools who wish to impose how many devices are allowed to have access via the Captive Portal, per us...
-
06:58 AM Bug #14204 (Pull Request Review): System Information Dashboard widget stops showing CPU details on aarch64
-
06:58 AM Bug #14204: System Information Dashboard widget stops showing CPU details on aarch64
- https://gitlab.netgate.com/pfSense/factory/-/merge_requests/97
-
06:43 AM Bug #14204 (Resolved): System Information Dashboard widget stops showing CPU details on aarch64
- In aarch64 systems (1100, 2100) the system information widget gets CPU data by greping the strings from dmesg.
Howev...
03/27/2023
-
05:28 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
- I found mmc-utils but I'm sure if it can tell me about the health of the flash. What else can I do to test it? I reme...
-
10:23 AM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
- I have seen the same thing on my 1100 but given the timing (could be hours, days, or even weeks between timeouts) it ...
-
11:02 AM Bug #14074: Cannot edit or delete ZFS Boot Environment with a name containing only numbers
- OK, it may still be worth a quick look to see if we can make that smoother in case users are stuck with the problem e...
-
09:34 AM Bug #14074: Cannot edit or delete ZFS Boot Environment with a name containing only numbers
- just want to be precise so you dont spend time on this if you dont have to;
the patch fixed the issue regarding n... -
07:27 AM Bug #14074 (New): Cannot edit or delete ZFS Boot Environment with a name containing only numbers
- The current patch was merged into dev builds last week, but since there is still an issue with the patch applied, mov...
-
10:31 AM Bug #13967 (Resolved): aarch64 23.01 upgrade can fail to write the bootloader
-
10:13 AM Bug #14140 (Not a Bug): OpenVPN Custom Options removes newline before push statements
- Not a bug. Statements must be separated with a *semicolon* , not a newline.
This is stated clearly in the descript... -
10:10 AM Regression #14180 (Feedback): ConnectX-4 LX MCX4121A-ACAT - VT-d passthrough of both ports, virtualized pfSense fails to boot due to mlx5 driver errors
- The error messages are different so this may not be the case, but over on the TNSR side we have seen behavior changes...
-
09:52 AM Bug #14175: LDAP authentication for SSH fails
- Did the same configuration work before 23.01?
-
09:36 AM Feature #14173: QAT driver does not attach to QAT virtual function devices passed through to VM on Xeon D-2146NT
- Hi Jim,
thank you for looking into it.
I'm already in contact with the Intel QAT driver team, to see if the fau... -
09:30 AM Feature #14173 (Needs Patch): QAT driver does not attach to QAT virtual function devices passed through to VM on Xeon D-2146NT
- If it fails on FreeBSD 14-CURRENT then it needs fixed upstream first and we can pull in the fix from there. It could ...
-
09:21 AM Regression #14171 (Not a Bug): High Availability Setup with Gateway to secondary pfSense not working - No Internet
- This is not and will not be a supported CARP configuration. WANs must be static using CARP for CARP to function prope...
-
09:17 AM Bug #14168: OpenVPN status GUI cannot display RADIUS ACL Generated Ruleset with usernames containing an ``@`` symbol
- Is this newly broken in 23.01 (regression) or has it never worked, even on older versions?
-
08:09 AM Bug #14132: Aliases of the same name current as previously deleted will not be respected properly
- Thanks for the update. You sparked an idea about not everything being removed when an Alias is changed.
I'm goin... -
07:55 AM Bug #14132 (Not a Bug): Aliases of the same name current as previously deleted will not be respected properly
- There isn't nearly enough evidence here of a bug and not something else happening in the configuration or existing st...
-
08:04 AM Feature #14134: Notifier on main dashboard for other updates availble: Packages / System Patches (if installed) Under the PfSense current Version.
- Jim Pingle wrote in #note-1:
> There is already a packages widget which shows available package updates.
My apolo... -
07:56 AM Feature #14134 (Rejected): Notifier on main dashboard for other updates availble: Packages / System Patches (if installed) Under the PfSense current Version.
- There is already a packages widget which shows available package updates.
-
07:59 AM Bug #14135 (Rejected): iOT Devices not reconnecting properly
- There isn't any evidence here of a bug in pfSense. Myself and many others use various IOT devices in many different w...
03/25/2023
-
08:48 PM Bug #13967: aarch64 23.01 upgrade can fail to write the bootloader
- This has been working for over a week now without issue. We can close this as Resolved.
-
08:05 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
- Well I'm running on a completely different SG-1100 now so I'll wait and see if the problem reoccurs before the next v...
-
07:23 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
- I haven't seen this with any other firewalls or on my personal Netgate 1100. I suspect you might have a fault eMMC t...
-
05:00 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
- Oops, I'm actually running 23.01.
-
02:26 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
- Craig Leres wrote:
> I've attached two serial console stack traces.
Here's one more crash from a few minutes ago,... -
12:28 PM Regression #14181 (Closed): ``mmcsd0`` controller timeout/system hang on 1100
- Several times since upgrading to 23.05 and later reinstalling to switch to zfs root I've had a SG-1100 glitch and los...
-
07:28 PM Bug #14104: Google LDAP connections still fail even after adding SNI for TLS 1.3
- If the client certificate is chained into a single entry with the CA data, may be related to this: https://redmine.pf...
-
06:30 PM Regression #13993: Switch ports on 7100/1100/2100 do not have Auto MDI-X support enabled
- switch is not detected under interfaces menu with current build - 23.05.a.20230322.0600
-
12:24 PM Bug #14140 (Confirmed): OpenVPN Custom Options removes newline before push statements
-
09:43 AM Bug #14140: OpenVPN Custom Options removes newline before push statements
- I'm not able to reproduce this on the server settings, but can on the Client Specific Overrides page. After saving an...
-
09:19 AM Regression #14180 (Feedback): ConnectX-4 LX MCX4121A-ACAT - VT-d passthrough of both ports, virtualized pfSense fails to boot due to mlx5 driver errors
- I've been running the following configuration for months now:
Hypervisor:
Linux Kernel 5.15
libvirt/qemu/kvm
...
03/24/2023
-
01:25 PM Bug #14175: LDAP authentication for SSH fails
- Can confirm the issue....
-
12:58 PM Bug #14175 (New): LDAP authentication for SSH fails
- LDAP authentication fails for SSH user authentication via LDAP with error (Invalid credentials).
Same user successfu... -
10:20 AM Feature #14173 (Needs Patch): QAT driver does not attach to QAT virtual function devices passed through to VM on Xeon D-2146NT
- pfSense is virtualized under Linux.
Hypervisor:
* qemu-kvm
* i440fx (q35 doesn't work either)
* kernel 5.15.9... -
10:03 AM Regression #14102 (Feedback): Console menu incorrectly shows option ``99`` on some ARMv7/ARM64 installations
- Fixed in 209cb8b1.
-
09:59 AM Regression #14102: Console menu incorrectly shows option ``99`` on some ARMv7/ARM64 installations
- I've simplified and improved the EMMC/SATA rootdev check for aarch64 devices. The modified script is more specific ab...
-
09:51 AM Regression #14171: High Availability Setup with Gateway to secondary pfSense not working - No Internet
- I forgot to add: All currently available patches were applied via the System Patches package, before any testing was ...
-
09:44 AM Regression #14171 (Not a Bug): High Availability Setup with Gateway to secondary pfSense not working - No Internet
- Hi,
the following setup is working just fine on pfSense CE 2.6.0:
* High Availability/CARP
* Gateway group WAN...
03/23/2023
-
08:35 PM Bug #14168 (New): OpenVPN status GUI cannot display RADIUS ACL Generated Ruleset with usernames containing an ``@`` symbol
- When looking at the Status --> OpenVPN page and viewing a user's ACLs from RADIUS, if the user signed in with user@do...
03/22/2023
-
12:55 PM Bug #14158: Unable to delete boot environment "X". Error 3
- Duplicate of https://redmine.pfsense.org/issues/14074
-
12:55 PM Bug #14158 (Duplicate): Unable to delete boot environment "X". Error 3
-
12:38 PM Bug #14158 (Duplicate): Unable to delete boot environment "X". Error 3
- Hi,
I was going to make a new backup recovery in the Boot Environments.
I name it with one number ie. 1, then save ... -
08:35 AM Bug #14140: OpenVPN Custom Options removes newline before push statements
- Sorry, i forgot to describe WHY this is a problem.
The issue is that the invalid formatting of the options will ca...
03/21/2023
-
01:54 PM Bug #14140 (Not a Bug): OpenVPN Custom Options removes newline before push statements
- Hello,
I'm setting up an OpenVPN server and need to pass in some additional option in two places:
1. VPN -> Ope... -
12:09 AM Regression #14137: pfSense Plus Upgrade repo data remains on the system after upgradng
- Also, if package manager unavailable, may help next solution
Check and then uncheck dashboard auto update box in Sys...
03/20/2023
-
07:21 PM Regression #14137 (Resolved): pfSense Plus Upgrade repo data remains on the system after upgradng
- After upgrading from CE to pfSense Plus the repo data used for that should be removed from the firewall leaving it us...
-
04:38 AM Bug #14135: iOT Devices not reconnecting properly
- I forgot to mention we also tested this with a Sony TV (1 year old and up to date Firmware) on an ethernet connection...
-
04:24 AM Bug #14135 (Rejected): iOT Devices not reconnecting properly
- IOT Devices of different manufacturers all seem to have this problem and while the problem is being experienced I wou...
-
04:32 AM Bug #13497: unbound process looks like stuck periodically
- Yaroslav Semenenko wrote:
> Hello,
>
> I have Netgate 2100.
> Unbound service is needed to restart sometimes due... -
03:50 AM Feature #14134 (Rejected): Notifier on main dashboard for other updates availble: Packages / System Patches (if installed) Under the PfSense current Version.
- A notifier on the Main Landing page under the Current PfSense Version number that lets you also know if your packages...
-
03:47 AM Feature #14133 (New): Exporting and Importing - Change Layout
- Please change Backup & Restore to allow for choosing only what areas you want to import/export without having to do i...
-
03:39 AM Bug #14132 (Not a Bug): Aliases of the same name current as previously deleted will not be respected properly
- This problem is hard to describe so I'll give as much information as possible as best as I can.
-Alias was created... -
03:30 AM Feature #14131 (New): Add Dynamic DNS Service: DYNU
- Please add Dynamic DNS provider DYNU
https://www.dynu.com/en-US/
It's working now but sometimes won't update an...
03/19/2023
-
10:52 PM Bug #14129 (Resolved): Chelsio T520 unable to route past 470Mbps
- Chelsio T520-CR and T420-CR are unable to route speeds over 470mbps when updated to 23.01 code. Goes to full 1gb spee...
-
04:01 PM Bug #12974 (Closed): Typing anything into 1100/2100 recovery installer causes process to stop
- This should be closed. Updating to reflect.
-
02:33 AM Feature #14125 (New): Add Cateogory field to Available Packages Tab like Installed Packages Tab
- Under the Installed Packages the header fields have the following listed at the top Name Category Version Description...
03/18/2023
-
08:02 PM Bug #14074: Cannot edit or delete ZFS Boot Environment with a name containing only numbers
- i installed the patch.
it renamed the two broken boot environments with the name i originally gave them, swapping ... -
04:57 PM Bug #14074: Cannot edit or delete ZFS Boot Environment with a name containing only numbers
- The patch works well. I'm not hitting any of the problems I encountered previously. *It only applies to the currently...
-
01:57 PM Bug #14074 (Pull Request Review): Cannot edit or delete ZFS Boot Environment with a name containing only numbers
- https://gitlab.netgate.com/pfSense/factory/-/merge_requests/94
-
01:01 PM Bug #14074 (Confirmed): Cannot edit or delete ZFS Boot Environment with a name containing only numbers
- I was able to reproduce this by cloning the default environment, naming it 20230318 (today's date), no description. C...
03/17/2023
-
06:16 PM Bug #13967 (Feedback): aarch64 23.01 upgrade can fail to write the bootloader
- Fix has been released to the world this week.
03/15/2023
-
02:40 PM Feature #14112 (Duplicate): Allow user to trigger license re-sync and/or reset in system_register.php
- We already have an internal issue for this.
-
01:57 PM Bug #14104: Google LDAP connections still fail even after adding SNI for TLS 1.3
- LDAP client certs are only available on Plus.
03/14/2023
-
08:44 PM Feature #14112 (Duplicate): Allow user to trigger license re-sync and/or reset in system_register.php
- There may be a case for adding some buttons in system_register.php that allow the user to 1) Force the existing pfSen...
-
10:41 AM Bug #14106 (New): arc4random: WARNING: initial seeding bypassed the cryptographic random device because it was not yet seeded and the knob 'bypass_before_seeding' was enabled.
- 23.01 is now showing this error after a fresh firmware install on a Netgate 2100-MAX system. It will continue to boot...
-
08:08 AM Regression #13895: Early boot hangs on Hyper-V with Gen2 VMs
- Thanks Chris.
While this doesn't solve your immediate situation, it looks like repro is possible with Windows Serv... -
03:11 AM Bug #14104 (New): Google LDAP connections still fail even after adding SNI for TLS 1.3
- tested on 23.01 and with IPv6
After fixing https://redmine.pfsense.org/issues/11626 I see that the LDAP client is ...
03/13/2023
-
09:17 PM Regression #13895: Early boot hangs on Hyper-V with Gen2 VMs
- Here is a screenshot of the memmap command on an affect VM. This machine is on Windows Server 2022. The Pfsense VM ...
-
05:54 PM Regression #14102 (Resolved): Console menu incorrectly shows option ``99`` on some ARMv7/ARM64 installations
- The console menu is intended to only show menu option 99 'Install to device' if pfSense is not running from eMMC or S...
-
01:10 PM Regression #13824: CPU/Crypto Detection for the 3100 is not functioning properly
- Bill McGonigle wrote in #note-4:
> Is the patch world-readable anywhere? I have affected hardware and the System Pa... -
01:08 PM Regression #13824: CPU/Crypto Detection for the 3100 is not functioning properly
- Is the patch world-readable anywhere? I have affected hardware and the System Patches feature can't resolve this com...
-
09:28 AM Regression #14099 (Duplicate): snmpd SIOCGIFDESCR (e6000sw0port1): Device not configured
- Duplicate of #13976
-
09:26 AM Regression #14099 (Duplicate): snmpd SIOCGIFDESCR (e6000sw0port1): Device not configured
- See bug #8600
-
09:18 AM Bug #8600: "snmpd SIOCGIFDESCR (e6000sw0port1): Device not configured"
- This bug seems to have popped up again on my SG-3100 after upgrading to 23.01.
03/11/2023
-
09:37 PM Feature #13786: ldap intergration for firewall rules
- Mike Moore wrote in #note-4:
> So there is no way in the future to create a LAN rule stating
> Src: AD/mmoore
> Ds... -
09:29 PM Feature #14017: Ability to remove all packages before upgardes with saved configuration
- There is already an option to reinstall packages from Diagnostics --> Backup and Restore. It would be beneficial for...
-
09:25 PM Regression #14080: Installer fails to install to a geom mirror
- Typically right now we also have issues with the installer converting from gmirror to ZFS. Haven't tested since 22.0...
-
12:30 PM Bug #13981 (Resolved): PHP Error on ``status_interfaces.php`` with empty switch VLAN group configuration and assigned VLAN interfaces
- Replicated the issue on SG-2100....
03/10/2023
-
10:29 AM Bug #14068 (Closed): Importing Chained Cert Data into the System --> Cert Manager --> Certificates Breaks Authentication
- Kris Phillips wrote in #note-2:
> The message of "Unknown CA" is what pfSense is sending to the remote host. This w... -
10:16 AM Bug #14068: Importing Chained Cert Data into the System --> Cert Manager --> Certificates Breaks Authentication
- Jim Pingle wrote in #note-1:
> Allowing multiple CAs in a single entry was always a hackish workaround for things th...
03/09/2023
-
02:45 PM Bug #14090 (New): Significant State Creation Causes LACP, BGP, and Possibly Other Components to Temporarily Fail
- When testing with a customer, when a remote host has a large number of new states being created, then transitioning t...
-
07:02 AM Bug #14085 (New): QAT not working / same speed as AES-NI with CPIC-8955!
- My post on the netgate forum, still no unanswer:
https://forum.netgate.com/topic/175096/ipsec-with-qat-low-performan...
03/08/2023
-
06:57 PM Regression #13895: Early boot hangs on Hyper-V with Gen2 VMs
- I can't repro it in Win-11 Hyper-V. 4GB, ZFS, 3 NICs, ISO still attached.
In the loader prompt (option 3), can you... -
07:54 AM Regression #14080: Installer fails to install to a geom mirror
- Reid Linnemann wrote in #note-2:
> Do we want to cut the cord on UFS and just be done with it?
UFS is OK and not ...
Also available in: Atom