Project

General

Profile

Activity

From 03/19/2023 to 04/17/2023

04/17/2023

02:55 PM Bug #13497: unbound process looks like stuck periodically
Yaroslav Semenenko wrote:
> Hello,
>
> I have Netgate 2100.
> Unbound service is needed to restart sometimes due...
Ketul Patel
10:44 AM Regression #14235: Undersized CESA TDMA descriptor pools can be exhausted, leading to errors
Updating subject for release notes. Jim Pingle
10:00 AM Regression #13993: Switch ports on 7100/1100/2100 do not have Auto MDI-X support enabled
Updating subject for release notes. Jim Pingle
09:49 AM Bug #14204: System Information Dashboard widget stops showing CPU details on aarch64
Updating subject for release notes. Jim Pingle

04/16/2023

05:51 AM Bug #13975: when assigning a vlan to wan interface configured mac address is not used
Hi Chris,
I've opened two tac cases (as I have a primary fw as a whitebox, and the sg-3100 as backup). I did a rec...
Oscar Muntenaar

04/15/2023

10:29 PM Bug #14106: arc4random: WARNING: initial seeding bypassed the cryptographic random device because it was not yet seeded and the knob 'bypass_before_seeding' was enabled.
Nothing has occurred that I can see. Tubi steaming service is having issues but that is not related. Jonathan Lee
09:27 PM Bug #14106: arc4random: WARNING: initial seeding bypassed the cryptographic random device because it was not yet seeded and the knob 'bypass_before_seeding' was enabled.
Warning message appears to be expected. Do you have any issues as a result of this message? Kris Phillips
10:04 AM Bug #13975 (Not a Bug): when assigning a vlan to wan interface configured mac address is not used
I'm unable e to reproduce this. Steps taken:
1. Flash a 3100 with a new installation of 22.05
2. Noted original W...
Chris W

04/14/2023

03:41 PM Bug #13497: unbound process looks like stuck periodically
I use the Netgate 1100 with 23.01-RELEASE and can second that unbound from time to time stuck. Only restart the servi... Tom Joad

04/12/2023

06:38 AM Bug #13976: SNMP logs "Device not configured" error message when queries involve built-in switch port interfaces
I have the same on my Netgate 7100. Hope there is a fix soon because this **** is flooding mit logs :/ Manuel M.

04/11/2023

09:57 AM Regression #13993 (Resolved): Switch ports on 7100/1100/2100 do not have Auto MDI-X support enabled
This is fixed in current snapshots. The switch ports link MDI and MDIX as expected.
The other issues reported here...
Steve Wheeler
07:58 AM Regression #14269 (Duplicate): 1100/2100: switch ports not enabled for auto-mdi-x
Fix appears to be in and working for me as well. I get a link between the LAN and OPT ports on an 1100 running a 23.0... Jim Pingle
07:50 AM Regression #14269 (Feedback): 1100/2100: switch ports not enabled for auto-mdi-x
The same fix that applied to the 7100 is already in 23.05 snapshots. The switch ports link MDI and MDIX there as expe... Steve Wheeler
04:15 AM Regression #14269: 1100/2100: switch ports not enabled for auto-mdi-x
aleksei prokofiev wrote:
> In 23.01 the 1100 switch ports do not support auto-MDI/X. The customer try to connect 110...
Peter Poulos
03:51 AM Regression #14269 (Duplicate): 1100/2100: switch ports not enabled for auto-mdi-x
In 23.01 the 1100 switch ports do not support auto-MDI/X. The customer try to connect 1100 with 2100 and no success, ... aleksei prokofiev

04/10/2023

08:52 AM Bug #14259 (Duplicate): Limiters with the fq_pie scheduler don't pass any traffic.
Duplicate of #13996 -- let's keep all the discussion on there.
Jim Pingle

04/09/2023

02:25 PM Bug #14259 (Duplicate): Limiters with the fq_pie scheduler don't pass any traffic.
After updating to 23.01 limiters using the fq_pie scheduler don't pass any traffic.
I'm using floating rules to as...
Anonymous
02:50 AM Feature #14252 (New): Optimization for 10GB-Connection/Throughput
Tuning a 10GB Connection, i´ve spent many days to get the most performance out of pfSense.
I´ve found the followin...
Dieter Kreuz

04/08/2023

12:26 PM Regression #13993: Switch ports on 7100/1100/2100 do not have Auto MDI-X support enabled
Successfully linked 7100 to 1100 both on 23.05.a.20230407.0116
Switches are back in the interfaces menu on 7100 @ 23...
Jordan G
08:18 AM Regression #13993: Switch ports on 7100/1100/2100 do not have Auto MDI-X support enabled
That's this netlink issue: https://redmine.pfsense.org/issues/14233 Steve Wheeler
04:44 AM Regression #13993: Switch ports on 7100/1100/2100 do not have Auto MDI-X support enabled
Tested against 23.05.a.20230405.0600
The switch gets detected correctly and can negotiate the link with SG-1100 an...
Danilo Zrenjanin

04/07/2023

12:18 PM Bug #14243 (Not a Bug): PFSENSE 23.01
This site is not for support or diagnostic discussion.
For assistance in solving problems, please post on the "Net...
Jim Pingle
12:17 PM Bug #14243 (Not a Bug): PFSENSE 23.01
activating dns over tls following this tuto
https://docs.netgate.com/pfsense/en/latest/recipes/dns-over-tls.html
br...
Jimmy Parr
11:40 AM Regression #14102 (New): Console menu incorrectly shows option ``99`` on some ARMv7/ARM64 installations
Hate to be the bearer of bad news but I still see option 99 offered on my 1100. It's running ZFS, not UFS, so there i... Jim Pingle
02:49 AM Bug #14175: LDAP authentication for SSH fails
The same on 2.6... Lev Prokofev
01:51 AM Bug #14175: LDAP authentication for SSH fails
Tested on 2.5.1 and get the same auth error on an attempt to SSH.... Lev Prokofev
01:39 AM Regression #14137: pfSense Plus Upgrade repo data remains on the system after upgradng
Tyler Sparrow wrote in #note-4:
> aleksei prokofiev wrote in #note-1:
> > Also, if package manager unavailable, may...
yon Liu

04/06/2023

10:12 AM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
For what it's worth I still have not seen a timeout again on mine, but I've been running 23.05 snapshots. It's been u... Jim Pingle
09:14 AM Regression #14137: pfSense Plus Upgrade repo data remains on the system after upgradng
aleksei prokofiev wrote in #note-1:
> Also, if package manager unavailable, may help next solution
> Check and then...
Tyler Sparrow

04/05/2023

10:59 AM Regression #14235 (Feedback): Undersized CESA TDMA descriptor pools can be exhausted, leading to errors
fixed https://gitlab.netgate.com/pfSense/FreeBSD-src/-/commit/a483d9cdb658426f55e5cce61ef1fed17d97bddc Mateusz Guzik
07:31 AM Regression #14235 (Resolved): Undersized CESA TDMA descriptor pools can be exhausted, leading to errors
When using CESA in the 3100 in 23.01 the descriptor pools can be exhausted filling the logs with:... Steve Wheeler

04/03/2023

06:22 PM Regression #14233 (Resolved): pfSense installer crashes on the 7100
The pfSense installer in the 23.05 memstick-serial image crashes:... Steve Wheeler
01:56 PM Regression #14137: pfSense Plus Upgrade repo data remains on the system after upgradng
Danilo Zrenjanin wrote in #note-2:
> I hit that case and confirmed that the offered workaround fixes it.
I'm runn...
pierre gleich
07:45 AM Bug #14204 (Feedback): System Information Dashboard widget stops showing CPU details on aarch64
MR merged. Jim Pingle

04/02/2023

10:13 AM Bug #14224 (Duplicate): Error when deleting Boot Environment that was the source for a clone
Marcos M

04/01/2023

08:41 PM Bug #14168: OpenVPN status GUI cannot display RADIUS ACL Generated Ruleset with usernames containing an ``@`` symbol
Jim Pingle wrote in #note-1:
> Is this newly broken in 23.01 (regression) or has it never worked, even on older vers...
Kris Phillips
08:36 PM Bug #14224: Error when deleting Boot Environment that was the source for a clone
Confirmed on 23.01. The boot environment deletes, but throws the error, so it appears to be cosmetic in nature, than... Kris Phillips
12:14 PM Bug #14224 (Duplicate): Error when deleting Boot Environment that was the source for a clone
Steps to reproduce.
1. Navigate to System > Boot Environments
2. Create New Boot Environment
3. Clone that n...
Christopher Cope
12:16 PM Bug #14074 (Resolved): Cannot edit or delete ZFS Boot Environment with a name containing only numbers
Did some more testing. The other error seems to be unrelated to this issue. I created another redmine to track it. ht... Christopher Cope

03/31/2023

03:03 AM Regression #14137 (Confirmed): pfSense Plus Upgrade repo data remains on the system after upgradng
I hit that case and confirmed that the offered workaround fixes it. Danilo Zrenjanin

03/30/2023

11:54 AM Bug #14206: package manager broken
Almost certainly this though: https://redmine.pfsense.org/issues/14137 Steve Wheeler
11:35 AM Bug #14206 (Rejected): package manager broken
This site is not for support or diagnostic discussion.
For assistance in solving problems, please post on the "Net...
Jim Pingle
11:19 AM Bug #14206 (Rejected): package manager broken
newbe question *How do I remove pfsense plus upgrade? *
just upgraded to pfsense plus 23.01
when I click for availa...
Douglas Pannell
07:05 AM Feature #14205 (New): Allow for maximum concurrent users, per user, in captive portal
We have several schools who wish to impose how many devices are allowed to have access via the Captive Portal, per us... Alex Rubenstein
06:58 AM Bug #14204 (Pull Request Review): System Information Dashboard widget stops showing CPU details on aarch64
Steve Wheeler
06:58 AM Bug #14204: System Information Dashboard widget stops showing CPU details on aarch64
https://gitlab.netgate.com/pfSense/factory/-/merge_requests/97 Steve Wheeler
06:43 AM Bug #14204 (Resolved): System Information Dashboard widget stops showing CPU details on aarch64
In aarch64 systems (1100, 2100) the system information widget gets CPU data by greping the strings from dmesg.
Howev...
Steve Wheeler

03/27/2023

05:28 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
I found mmc-utils but I'm sure if it can tell me about the health of the flash. What else can I do to test it? I reme... Craig Leres
10:23 AM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
I have seen the same thing on my 1100 but given the timing (could be hours, days, or even weeks between timeouts) it ... Jim Pingle
11:02 AM Bug #14074: Cannot edit or delete ZFS Boot Environment with a name containing only numbers
OK, it may still be worth a quick look to see if we can make that smoother in case users are stuck with the problem e... Jim Pingle
09:34 AM Bug #14074: Cannot edit or delete ZFS Boot Environment with a name containing only numbers
just want to be precise so you dont spend time on this if you dont have to;
the patch fixed the issue regarding n...
Mark Grant
07:27 AM Bug #14074 (New): Cannot edit or delete ZFS Boot Environment with a name containing only numbers
The current patch was merged into dev builds last week, but since there is still an issue with the patch applied, mov... Jim Pingle
10:31 AM Bug #13967 (Resolved): aarch64 23.01 upgrade can fail to write the bootloader
Jim Pingle
10:13 AM Bug #14140 (Not a Bug): OpenVPN Custom Options removes newline before push statements
Not a bug. Statements must be separated with a *semicolon* , not a newline.
This is stated clearly in the descript...
Jim Pingle
10:10 AM Regression #14180 (Feedback): ConnectX-4 LX MCX4121A-ACAT - VT-d passthrough of both ports, virtualized pfSense fails to boot due to mlx5 driver errors
The error messages are different so this may not be the case, but over on the TNSR side we have seen behavior changes... Jim Pingle
09:52 AM Bug #14175: LDAP authentication for SSH fails
Did the same configuration work before 23.01?
Jim Pingle
09:36 AM Feature #14173: QAT driver does not attach to QAT virtual function devices passed through to VM on Xeon D-2146NT
Hi Jim,
thank you for looking into it.
I'm already in contact with the Intel QAT driver team, to see if the fau...
name name
09:30 AM Feature #14173 (Needs Patch): QAT driver does not attach to QAT virtual function devices passed through to VM on Xeon D-2146NT
If it fails on FreeBSD 14-CURRENT then it needs fixed upstream first and we can pull in the fix from there. It could ... Jim Pingle
09:21 AM Regression #14171 (Not a Bug): High Availability Setup with Gateway to secondary pfSense not working - No Internet
This is not and will not be a supported CARP configuration. WANs must be static using CARP for CARP to function prope... Jim Pingle
09:17 AM Bug #14168: OpenVPN status GUI cannot display RADIUS ACL Generated Ruleset with usernames containing an ``@`` symbol
Is this newly broken in 23.01 (regression) or has it never worked, even on older versions?
Jim Pingle
08:09 AM Bug #14132: Aliases of the same name current as previously deleted will not be respected properly
Thanks for the update. You sparked an idea about not everything being removed when an Alias is changed.
I'm goin...
Steven Cedrone
07:55 AM Bug #14132 (Not a Bug): Aliases of the same name current as previously deleted will not be respected properly
There isn't nearly enough evidence here of a bug and not something else happening in the configuration or existing st... Jim Pingle
08:04 AM Feature #14134: Notifier on main dashboard for other updates availble: Packages / System Patches (if installed) Under the PfSense current Version.
Jim Pingle wrote in #note-1:
> There is already a packages widget which shows available package updates.
My apolo...
Steven Cedrone
07:56 AM Feature #14134 (Rejected): Notifier on main dashboard for other updates availble: Packages / System Patches (if installed) Under the PfSense current Version.
There is already a packages widget which shows available package updates. Jim Pingle
07:59 AM Bug #14135 (Rejected): iOT Devices not reconnecting properly
There isn't any evidence here of a bug in pfSense. Myself and many others use various IOT devices in many different w... Jim Pingle

03/25/2023

08:48 PM Bug #13967: aarch64 23.01 upgrade can fail to write the bootloader
This has been working for over a week now without issue. We can close this as Resolved. Kris Phillips
08:05 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
Well I'm running on a completely different SG-1100 now so I'll wait and see if the problem reoccurs before the next v... Craig Leres
07:23 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
I haven't seen this with any other firewalls or on my personal Netgate 1100. I suspect you might have a fault eMMC t... Kris Phillips
05:00 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
Oops, I'm actually running 23.01. Craig Leres
02:26 PM Regression #14181: ``mmcsd0`` controller timeout/system hang on 1100
Craig Leres wrote:
> I've attached two serial console stack traces.
Here's one more crash from a few minutes ago,...
Craig Leres
12:28 PM Regression #14181 (Closed): ``mmcsd0`` controller timeout/system hang on 1100
Several times since upgrading to 23.05 and later reinstalling to switch to zfs root I've had a SG-1100 glitch and los... Craig Leres
07:28 PM Bug #14104: Google LDAP connections still fail even after adding SNI for TLS 1.3
If the client certificate is chained into a single entry with the CA data, may be related to this: https://redmine.pf... Kris Phillips
06:30 PM Regression #13993: Switch ports on 7100/1100/2100 do not have Auto MDI-X support enabled
switch is not detected under interfaces menu with current build - 23.05.a.20230322.0600 Jordan G
12:24 PM Bug #14140 (Confirmed): OpenVPN Custom Options removes newline before push statements
Chris W
09:43 AM Bug #14140: OpenVPN Custom Options removes newline before push statements
I'm not able to reproduce this on the server settings, but can on the Client Specific Overrides page. After saving an... Chris W
09:19 AM Regression #14180 (Feedback): ConnectX-4 LX MCX4121A-ACAT - VT-d passthrough of both ports, virtualized pfSense fails to boot due to mlx5 driver errors
I've been running the following configuration for months now:
Hypervisor:
Linux Kernel 5.15
libvirt/qemu/kvm
...
name name

03/24/2023

01:25 PM Bug #14175: LDAP authentication for SSH fails
Can confirm the issue.... Lev Prokofev
12:58 PM Bug #14175 (New): LDAP authentication for SSH fails
LDAP authentication fails for SSH user authentication via LDAP with error (Invalid credentials).
Same user successfu...
Georgiy Tyutyunnik
10:20 AM Feature #14173 (Needs Patch): QAT driver does not attach to QAT virtual function devices passed through to VM on Xeon D-2146NT
pfSense is virtualized under Linux.
Hypervisor:
* qemu-kvm
* i440fx (q35 doesn't work either)
* kernel 5.15.9...
name name
10:03 AM Regression #14102 (Feedback): Console menu incorrectly shows option ``99`` on some ARMv7/ARM64 installations
Fixed in 209cb8b1. Reid Linnemann
09:59 AM Regression #14102: Console menu incorrectly shows option ``99`` on some ARMv7/ARM64 installations
I've simplified and improved the EMMC/SATA rootdev check for aarch64 devices. The modified script is more specific ab... Reid Linnemann
09:51 AM Regression #14171: High Availability Setup with Gateway to secondary pfSense not working - No Internet
I forgot to add: All currently available patches were applied via the System Patches package, before any testing was ... name name
09:44 AM Regression #14171 (Not a Bug): High Availability Setup with Gateway to secondary pfSense not working - No Internet
Hi,
the following setup is working just fine on pfSense CE 2.6.0:
* High Availability/CARP
* Gateway group WAN...
name name

03/23/2023

08:35 PM Bug #14168 (New): OpenVPN status GUI cannot display RADIUS ACL Generated Ruleset with usernames containing an ``@`` symbol
When looking at the Status --> OpenVPN page and viewing a user's ACLs from RADIUS, if the user signed in with user@do... Kris Phillips

03/22/2023

12:55 PM Bug #14158: Unable to delete boot environment "X". Error 3
Duplicate of https://redmine.pfsense.org/issues/14074 Christopher Cope
12:55 PM Bug #14158 (Duplicate): Unable to delete boot environment "X". Error 3
Christopher Cope
12:38 PM Bug #14158 (Duplicate): Unable to delete boot environment "X". Error 3
Hi,
I was going to make a new backup recovery in the Boot Environments.
I name it with one number ie. 1, then save ...
B. B.
08:35 AM Bug #14140: OpenVPN Custom Options removes newline before push statements
Sorry, i forgot to describe WHY this is a problem.
The issue is that the invalid formatting of the options will ca...
Nick Maludy

03/21/2023

01:54 PM Bug #14140 (Not a Bug): OpenVPN Custom Options removes newline before push statements
Hello,
I'm setting up an OpenVPN server and need to pass in some additional option in two places:
1. VPN -> Ope...
Nick Maludy
12:09 AM Regression #14137: pfSense Plus Upgrade repo data remains on the system after upgradng
Also, if package manager unavailable, may help next solution
Check and then uncheck dashboard auto update box in Sys...
aleksei prokofiev

03/20/2023

07:21 PM Regression #14137 (Resolved): pfSense Plus Upgrade repo data remains on the system after upgradng
After upgrading from CE to pfSense Plus the repo data used for that should be removed from the firewall leaving it us... Steve Wheeler
04:38 AM Bug #14135: iOT Devices not reconnecting properly
I forgot to mention we also tested this with a Sony TV (1 year old and up to date Firmware) on an ethernet connection... Steven Cedrone
04:24 AM Bug #14135 (Rejected): iOT Devices not reconnecting properly
IOT Devices of different manufacturers all seem to have this problem and while the problem is being experienced I wou... Steven Cedrone
04:32 AM Bug #13497: unbound process looks like stuck periodically
Yaroslav Semenenko wrote:
> Hello,
>
> I have Netgate 2100.
> Unbound service is needed to restart sometimes due...
Steven Cedrone
03:50 AM Feature #14134 (Rejected): Notifier on main dashboard for other updates availble: Packages / System Patches (if installed) Under the PfSense current Version.
A notifier on the Main Landing page under the Current PfSense Version number that lets you also know if your packages... Steven Cedrone
03:47 AM Feature #14133 (New): Exporting and Importing - Change Layout
Please change Backup & Restore to allow for choosing only what areas you want to import/export without having to do i... Steven Cedrone
03:39 AM Bug #14132 (Not a Bug): Aliases of the same name current as previously deleted will not be respected properly
This problem is hard to describe so I'll give as much information as possible as best as I can.
-Alias was created...
Steven Cedrone
03:30 AM Feature #14131 (New): Add Dynamic DNS Service: DYNU
Please add Dynamic DNS provider DYNU
https://www.dynu.com/en-US/
It's working now but sometimes won't update an...
Steven Cedrone

03/19/2023

10:52 PM Bug #14129 (Resolved): Chelsio T520 unable to route past 470Mbps
Chelsio T520-CR and T420-CR are unable to route speeds over 470mbps when updated to 23.01 code. Goes to full 1gb spee... Bruce Talbot
04:01 PM Bug #12974 (Closed): Typing anything into 1100/2100 recovery installer causes process to stop
This should be closed. Updating to reflect. Ryan Coleman
02:33 AM Feature #14125 (New): Add Cateogory field to Available Packages Tab like Installed Packages Tab
Under the Installed Packages the header fields have the following listed at the top Name Category Version Description... Scott Costa
 

Also available in: Atom