Project

General

Profile

Activity

From 11/20/2023 to 12/19/2023

12/19/2023

05:42 AM Bug #15104: Layer 2 experimental Firewall/Rules/Ethernet: new broadcast domain issues
Thanks happy holidays. I enjoyed the experimental layer 2 broadcast storm puzzles that took me way back to old CCNA c... Jonathan Lee
05:40 AM Bug #15104: Layer 2 experimental Firewall/Rules/Ethernet: new broadcast domain issues
Also you can see traffic on the experimental layer 2 firewall rules between the interfaces that is the main concern h... Jonathan Lee
05:23 AM Bug #15104: Layer 2 experimental Firewall/Rules/Ethernet: new broadcast domain issues
I will be moving back to 23.05.01 it's layer 2 abilities were more secure within the broadcast domains. Jonathan Lee
05:21 AM Bug #15104: Layer 2 experimental Firewall/Rules/Ethernet: new broadcast domain issues
Please see photo. Also when a client has a static entry for the firewall on a secure side "Firewall's LAN(WLAN)" and ... Jonathan Lee
01:18 AM Bug #15103: Netgate Crypto ID missing in 23.09.01 after fresh firmware
ping-auth -s no longer populates it for you so its empty, how does this effect OpenVPN users? Jonathan Lee
01:17 AM Bug #15103: Netgate Crypto ID missing in 23.09.01 after fresh firmware
It still works the thorth folder is empty.
I fixed it by transferring the folder over from an older SSD
Jonathan Lee
12:56 AM Bug #15103 (Confirmed): Netgate Crypto ID missing in 23.09.01 after fresh firmware
Also see: https://redmine.netgate.com/issues/12636
The CryptoID is shown as expected if the /etc/thoth/thothid is ...
Steve Wheeler

12/18/2023

10:48 PM Bug #15104 (New): Layer 2 experimental Firewall/Rules/Ethernet: new broadcast domain issues
Layer 2 broadcast domain in 23.05.01 would separate compex card from the LAN RJ45 ports. It no longer separates the l... Jonathan Lee
10:39 PM Bug #15103 (Resolved): Netgate Crypto ID missing in 23.09.01 after fresh firmware
Hello I noticed this after fresh firmware install on a SG-2100
@ The command '/usr/local/sbin/ping-auth -s > /etc/...
Jonathan Lee
04:34 PM Feature #15101 (Rejected): Warning about using Kea DHCP for HA env
Kea does not support HA yet, and that has been warned about in the release notes. We aim to have support in the next ... Jim Pingle
04:29 PM Feature #15101 (Rejected): Warning about using Kea DHCP for HA env
Using Kea DHCP for HA environment can and will lead to issues with ARPs if you are using dynamic leases. Nice to have... Bartłomiej Bujak
09:25 AM Bug #14824: OpenVPN instance on IPv6 PPPoE interface does not always start automatically
is there any progress yet or will it never work properly ???
Dec 18 10:19:00 openvpn 15608 Exiting due to fatal...
Łukasz Rojczyk

12/17/2023

03:11 AM Bug #15097: Upgrade to 23.09.1 is not offered for 23.05.1
Can confirm that this seems to consistently happen basically every time someone upgrades from 23.01 to 23.05.1. Kris Phillips

12/15/2023

06:29 PM Bug #15097 (Resolved): Upgrade to 23.09.1 is not offered for 23.05.1
Since the release of 23.09.1, devices that upgrade to 23.05.1 from a previous version are unable to upgrade to 23.09.... Kris Phillips

12/10/2023

01:09 AM Bug #15006: Upgrade Issue to 23.09 Results in Stuck Prompt Mid-upgrade
This seems to be present with 23.09.1 as well. Kris Phillips

12/06/2023

05:22 AM Feature #15070: Script to fix: ld-elf.so.1: Shared object "libssl.so.30" not found, required by "pfSense-repoc" error when downgrading boot environments
WARNING: DTB version is 6.4 while kernel expects 5.13, please update the DTB in the ESP
is also displayed when dow...
Jonathan Lee
05:14 AM Feature #15070 (New): Script to fix: ld-elf.so.1: Shared object "libssl.so.30" not found, required by "pfSense-repoc" error when downgrading boot environments
When using boot environments to move system back a version to last stable version users can no longer check for updat... Jonathan Lee

12/01/2023

05:15 PM Bug #15040: ld-elf.so.1: Shared object "libssl.so.30" not found, required by "pfSense-repoc"
stephenw10 fixed my issue with the linked library Boot Environment issue for plus
pkg-static upgrade -f pfSense-repoc
Jonathan Lee
04:45 PM Bug #15040: ld-elf.so.1: Shared object "libssl.so.30" not found, required by "pfSense-repoc"
This is plus with use of Boot environments Jonathan Lee

11/29/2023

07:51 PM Bug #15017 (Incomplete): DHCP relay CARP status VIP function is not working in pfsense+ 23.09
I was not able to replicate this on 23.09 - toggling maintenance mode on/off on the master correctly stops/starts the... Marcos M

11/28/2023

04:37 PM Bug #15017: DHCP relay CARP status VIP function is not working in pfsense+ 23.09
OK, this is much more serious than it first looks, if you enter to CARP failover mode then leave CARP failover mode o... Robert Karsai
10:52 AM Feature #15038: Operating System support for PF ``pflow`` packet data flow export
The plan is to start by importing OpenBSD's pflow(4), and then extending it to expose more NAT information (see RFC 8... Kristof Provost
06:25 AM Bug #15035: System GUI unaccessable
23.05.01 with squid was the everything bagel of open source community firewall software... 🥯 Jonathan Lee

11/27/2023

07:59 PM Bug #15035: System GUI unaccessable
TAC ticket number is: 2113707645 Jonathan Lee
07:53 PM Bug #15035: System GUI unaccessable
https://forum.netgate.com/topic/184377/4-1-6_14-snort-23-09-issue-arm Jonathan Lee
07:49 PM Bug #15035: System GUI unaccessable
NogBadTheBad
also stated issues with the ".14 fix" Snort update however the thread was locked right after he reporte...
Jonathan Lee
07:46 PM Bug #15035: System GUI unaccessable
I had to uninstall Snort to access the web GUI. It does not work for my configuration you see above at all. I am stuc... Jonathan Lee
07:03 PM Bug #15035: System GUI unaccessable
wrt snort, the issue with killing states is resolved; see https://forum.netgate.com/topic/184112/important-snort-and-... Marcos M
05:12 PM Bug #15035: System GUI unaccessable
Thank you open source community for all you do. Jonathan Lee
05:11 PM Bug #15035: System GUI unaccessable
23.09 is not stable when Snort is used with blocking enabled it will depreciate a firewall to no gui access with bloc... Jonathan Lee
05:08 PM Bug #15035: System GUI unaccessable
Packages running
23.05.01 final ARM SG2100 stable version time to stable config 2019->2023
I hope that provides...
Jonathan Lee
05:02 PM Bug #15035: System GUI unaccessable
ACLs Jonathan Lee
04:53 PM Bug #15035: System GUI unaccessable
Squid uses both splice for some and intercept for others Jonathan Lee
04:52 PM Bug #15035: System GUI unaccessable
None of that is relevant if you cannot reproduce the PHP error while you are on a stock/unmodified 23.09. If you only... Jim Pingle
04:51 PM Bug #15035: System GUI unaccessable
took from 2019 until 23.05.01 for this to be stable
23.09 on arm processor is not stable with Snort active .14 ver...
Jonathan Lee
04:50 PM Bug #15035: System GUI unaccessable
backups/patched custom Jonathan Lee
04:34 PM Bug #15035: System GUI unaccessable
Attached is information on how my system works in 23.05.01. This is stable and runs for days without issues even with... Jonathan Lee
03:58 PM Bug #15035: System GUI unaccessable
23.09 is not stable for Snort it just doesn't work with it on ARM. Jonathan Lee
03:57 PM Bug #15035: System GUI unaccessable
Steps to reproduce.
1. Use boot environments I went to test out 23.09 again with the latest Snort update. I starte...
Jonathan Lee
02:12 PM Bug #15035 (Rejected): System GUI unaccessable
There is no code like that on line 535 in a current version of head.inc. On 23.05.1 it would imply that the content o... Jim Pingle
02:28 AM Bug #15035: System GUI unaccessable
Errors that are listed in logs Jonathan Lee
02:26 AM Bug #15035: System GUI unaccessable
I noticed this after some snort changes when this GUI access was removed
Changes marked unknown...
Jonathan Lee
02:00 AM Bug #15035 (Rejected): System GUI unaccessable
/head.inc, Line: 535, Message: Uncaught TypeError: count): Argument #1 (Svalue) must be of type Countable|array, bool... Jonathan Lee
06:59 PM Bug #15040 (Closed): ld-elf.so.1: Shared object "libssl.so.30" not found, required by "pfSense-repoc"
It's a known issue that's resolved by https://redmine.pfsense.org/issues/10464. Marcos M
06:07 PM Bug #15040 (Closed): ld-elf.so.1: Shared object "libssl.so.30" not found, required by "pfSense-repoc"
When using boot environments to move system back to last stable version users can no longer check for updates
@ld...
Jonathan Lee
05:35 PM Feature #15039 (Closed): GUI to configure Packet Flow Data (``pflow``) export
Following #15038 the GUI will need a set of options to configure @pflow(4)@ behavior
It will need at least the fol...
Jim Pingle
05:25 PM Feature #15038 (Closed): Operating System support for PF ``pflow`` packet data flow export
Import the "pflow(4)":https://man.openbsd.org/pflow.4 netflow/IPFIX export functionality for PF from OpenBSD into pfS... Jim Pingle
01:57 PM Bug #15026 (Not a Bug): PHP Error since upgrading to 23.09
This isn't a bug, either something didn't complete in your upgrade or something else patched on there is causing it. ... Jim Pingle
01:39 PM Bug #15036: Traffic Shaper Wizard Dedicated generates error
Please include the details of all the inputs that were given in the wizard which resulted in the error. It should all... Jim Pingle
06:09 AM Bug #15036: Traffic Shaper Wizard Dedicated generates error
Tested on
23.09-RELEASE (amd64)
built on Thu Nov 23 9:32:00 UTC 2023
FreeBSD 14.0-CURRENT
I can confirm this e...
aleksei prokofiev
05:56 AM Bug #15036 (Confirmed): Traffic Shaper Wizard Dedicated generates error
I can reproduce it on 23.01, 23.05_1 and 23.09
All the time I run *Traffic Shaper Wizard Dedicated* with HFSC que...
Azamat Khakimyanov

11/26/2023

02:52 PM Bug #15026: PHP Error since upgrading to 23.09

cat /etc/inc/util.inc | grep "php_default_memory"
it is there and the code as well
function get_php_default_memory...
Eric Nguyen
01:43 AM Bug #15026: PHP Error since upgrading to 23.09
Those patches shouldn't affect it. That function 'get_php_default_memory()' should be defined in /etc/inc/util.inc. I... Christopher Cope
12:03 AM Bug #15029 (Not a Bug): Additional packages are blank
Christopher Cope

11/25/2023

03:41 PM Bug #15029: Additional packages are blank
Rebooted system again this morning and its working fine now. thanks for the help. John Beaudoin
03:17 PM Bug #15029: Additional packages are blank
You can try these steps to force download new repository files. This is often all you need to do but repo issues are ... Chris W

11/24/2023

06:41 PM Bug #15029 (Not a Bug): Additional packages are blank
running version
Version 23.09-RELEASE (amd64)
built on Tue Oct 31 15:56:00 EDT 2023
FreeBSD 14.0-CURRENT
Unabl...
John Beaudoin

11/23/2023

12:30 PM Bug #15026 (Not a Bug): PHP Error since upgrading to 23.09
Hello all,
Since upgrading to 23.09, have the following error messages in my notice area coming up at regular inte...
Eric Nguyen

11/20/2023

07:51 PM Bug #15017 (Incomplete): DHCP relay CARP status VIP function is not working in pfsense+ 23.09
Hello,
It seems that after 23.05.1->23.09 upgrade DHCP relay CARP status VIP function is not working properly, DHCP ...
Robert Karsai
 

Also available in: Atom