Project

General

Profile

Activity

From 12/31/2023 to 01/29/2024

01/29/2024

02:16 PM Bug #15205 (Not a Bug): Changing a WAN type interface from DHCP to static IPv4 address causes WAN to appear in DHCP server configuration
This is normal and expected. Any static interface with a sufficient size subnet will appear in the DHCP server as an ... Jim Pingle

01/28/2024

02:41 AM Bug #14401: Changing from Switchport to Discrete Interface in VGA/Serial Console Breaks Port Status Monitoring
possibly related? https://redmine.netgate.com/issues/12480 Jordan G
02:24 AM Bug #14894: Password protected console login prompt does not render properly on 4100/6100/8200 serial console
seems present on ARM-based as well, when connecting with 1100 console, this is all we see of the first line after con... Jordan G
02:10 AM Bug #15205 (Not a Bug): Changing a WAN type interface from DHCP to static IPv4 address causes WAN to appear in DHCP server configuration
WAN interface currently using IPv4 DHCP type address, switch this interface to static, enter IP, create gateway, save... Jordan G

01/27/2024

10:28 PM Bug #15202 (New): Add Option for Network Portion of Subnet "Wildcard" for IPv6 Rules
Filtering hosts with IPv6 is extremely difficult when utilizing an upstream provider that is providing a Prefix Deleg... Kris Phillips
01:01 AM Bug #15196 (Not a Bug): AWS ena interfaces can become unstable/stop responding
On AMD Epyc hardware in AWS, pfSense Plus ena interfaces can lose their IP addressing and then stop responding entire... Kris Phillips

01/25/2024

01:52 PM Feature #15186: Test DNS over TLS
Such a test wouldn't be ideal to mix in the settings since there are other required parts for that to work that aren'... Jim Pingle

01/24/2024

11:57 PM Feature #15186 (New): Test DNS over TLS
The ability to readily confirm TLS DNS would be established once saved. Jeff Kuehl
09:00 PM Feature #15039: GUI to configure Packet Flow Data (``pflow``) export
Things to keep in mind when testing.
When _inactive_ (disabled or not yet applied):...
Jim Pingle
08:47 PM Feature #15039 (Feedback): GUI to configure Packet Flow Data (``pflow``) export
MR merged:
https://gitlab.netgate.com/pfSense/factory/-/commit/e755ceefc81c7942797459bc1fd6132343ec2cfc
New fil...
Jim Pingle
08:56 PM Feature #15038 (Closed): Operating System support for PF ``pflow`` packet data flow export
Looks good on current snapshots, everything appears to be working as expected.... Jim Pingle

01/23/2024

09:11 PM Feature #15039 (Pull Request Review): GUI to configure Packet Flow Data (``pflow``) export
MR: https://gitlab.netgate.com/pfSense/factory/-/merge_requests/117
Jim Pingle

01/22/2024

11:45 PM Feature #15038 (Feedback): Operating System support for PF ``pflow`` packet data flow export
The signed vs. unsigned issue will be fixed in the next snapshot.
The issue in comment 8 is actually expected beha...
Kristof Provost
04:26 PM Feature #15038: Operating System support for PF ``pflow`` packet data flow export
Per Kristof, the above was an output printing issue in @pflowctl@ and it was correct internally. That will be fixed s... Jim Pingle
03:13 PM Feature #15038 (In Progress): Operating System support for PF ``pflow`` packet data flow export
After testing a bit I discovered what might be a minor issue.
Not that I expect anyone to need to go this high, bu...
Jim Pingle
02:39 PM Feature #15038 (Feedback): Operating System support for PF ``pflow`` packet data flow export
Module is present now on latest build (24.03.a.20240122.0600) and loads OK.
Had a weird glitch once where I couldn...
Jim Pingle
05:46 PM Todo #15164 (Resolved): Add ZFS Boot Environment list to status output
Jim Pingle
05:44 PM Todo #15164 (Confirmed): Add ZFS Boot Environment list to status output
Confirmed working in 24.03.a.20240122.0600. Craig Coonrad
02:48 PM Feature #15039 (In Progress): GUI to configure Packet Flow Data (``pflow``) export
Jim Pingle

01/19/2024

10:42 PM Feature #15038: Operating System support for PF ``pflow`` packet data flow export
I forgot to include the module in the image in cross build. That's done now, so the next build will have it. Kristof Provost
04:12 PM Feature #15038 (In Progress): Operating System support for PF ``pflow`` packet data flow export
On 24.03.a.20240117.0600 which should be after this was merged, @pflowctl@ complaints that @pflow.ko@ is not loaded, ... Jim Pingle

01/18/2024

08:39 PM Bug #15103: Netgate Crypto ID missing in 23.09.01 after fresh firmware
I thought I would mention, I also have this issue in 23.09.1 that I just did a reinstall on. 23.09.1 is running on a... Jeff Kuehl

01/17/2024

09:02 PM Todo #15164 (Feedback): Add ZFS Boot Environment list to status output
Added to Plus:
https://gitlab.netgate.com/pfSense/factory/-/commit/3a52d6afc43efcd2e4166a7b23fd15aba6a33dff
Jim Pingle
09:00 PM Todo #15164 (In Progress): Add ZFS Boot Environment list to status output
Jim Pingle
05:07 PM Feature #15168 (Rejected): Tracker ID as a column
Each redmine must only be a single request.
There is already a way to make a user read-only, there is a "deny conf...
Jim Pingle

01/16/2024

09:40 PM Bug #15169 (Duplicate): Allowed IP Address does not control incoming speed in captive portal, PF Sense Plus Release 23.xx.x
Marcos M
09:30 PM Bug #15169 (Duplicate): Allowed IP Address does not control incoming speed in captive portal, PF Sense Plus Release 23.xx.x
Hello engineers,
I would like to report a bug that has already been submitted and confirmed but only on the PF CE ...
Zephan NLD
03:25 PM Feature #15039: GUI to configure Packet Flow Data (``pflow``) export
The required OS code has been merged.
pflow configuration is done through `pflowctl`. Use `pflowctl -c` to create...
Kristof Provost
03:20 PM Feature #15038 (Feedback): Operating System support for PF ``pflow`` packet data flow export
I've merged the upstream pflow code. It'll be part of the next snapshot builds.
It includes support for netflow v5...
Kristof Provost
07:36 AM Feature #15168 (Rejected): Tracker ID as a column
This is a 2 part request.
1. Have the Firewall rules screen locked. Right an admin can click around firewall rules a...
Mike Moore
02:50 AM Bug #15006: Upgrade Issue to 23.09 Results in Stuck Prompt Mid-upgrade
I have not encountered this personally, but can confirm multiple instances of upgrades failing with:... Craig Coonrad

01/15/2024

12:11 AM Todo #15164 (Resolved): Add ZFS Boot Environment list to status output
This is needed to review the BE status/options of the device as well as troubleshoot potential disk space issues.
...
Craig Coonrad

01/14/2024

06:14 AM Bug #15036: Traffic Shaper Wizard Dedicated generates error
Tested on
24.03-DEVELOPMENT (amd64)
built on Fri Jan 12 6:00:00 UTC 2024
FreeBSD 15.0-CURRENT
The error is pres...
aleksei prokofiev

01/13/2024

11:06 AM Bug #15036 (Confirmed): Traffic Shaper Wizard Dedicated generates error
I've replicated the issue on:... Danilo Zrenjanin

01/11/2024

01:28 PM Bug #15153 (Not a Bug): Backup Restore Issues restoring (Restore Area: Firewall Rules) Aliases for Subnets
That is expected behavior in this case, as the Firewall Rules area of the backup/restore selection does not include A... Jim Pingle
07:56 AM Bug #15151: OpenVPN TAP & BRIDGE
Jim,
we don't need a forum, we need a contact to people who have real influence on the pfSense code - you don't ha...
Łukasz Rojczyk

01/10/2024

11:28 PM Bug #15149: Hardware Crypto showing No Hardware Crypto Acceleration for system with crypto chip installed
25.05.01 It has no issues with that ID Jonathan Lee
11:27 PM Bug #15149: Hardware Crypto showing No Hardware Crypto Acceleration for system with crypto chip installed
@Jim Pingle
@dco_update_peer_stat: invalid peer ID 0 returned by kernel@
shows when using the crypto chip it...
Jonathan Lee
11:22 PM Bug #15153 (Not a Bug): Backup Restore Issues restoring (Restore Area: Firewall Rules) Aliases for Subnets
Hello fellow Redmine members,
I wanted to report a bug I found in the Backup Restore section of pfSense Plus.
...
Jonathan Lee
07:41 PM Bug #15151: OpenVPN TAP & BRIDGE
A tap bridge is only useful for linking L2 which would see MAC addresses, so you reserve hosts in DHCP by MAC address... Jim Pingle
07:21 PM Bug #15151: OpenVPN TAP & BRIDGE
I checked what you suggested but from the client side it is also no longer possible to make a bridge with the OpenVPN... Łukasz Rojczyk
05:41 PM Bug #15151 (Rejected): OpenVPN TAP & BRIDGE
I provided a link with the "official" way to bridge OpenVPN to a LAN.
Third party guides/videos are not good refer...
Jim Pingle
05:30 PM Bug #15151: OpenVPN TAP & BRIDGE
You remain in error.
Somehow it was able to work well for 6 years and I think it was used by many people who use T...
Łukasz Rojczyk
05:20 PM Bug #15151 (Feedback): OpenVPN TAP & BRIDGE
Normally with a tap bridge you don't have an interface address / tunnel network on the member interfaces, only on the... Jim Pingle
04:44 PM Bug #15151 (Rejected): OpenVPN TAP & BRIDGE
When configuring OpenVPN TAP with a static address pool, there is a problem when configuring the TAP bridge with anot... Łukasz Rojczyk
03:46 PM Bug #14824: OpenVPN instance on IPv6 PPPoE interface does not always start automatically
I have diagnosed something, so far I know that removing the TAP bridge from the LAN solves the problem above.
Is t...
Łukasz Rojczyk

01/09/2024

10:54 PM Bug #15104: Layer 2 experimental Firewall/Rules/Ethernet: new broadcast domain issues
This is what I mean by rule id I use it with my LED script. With the new rules when using them with wlan address they... Jonathan Lee
10:50 PM Bug #15104: Layer 2 experimental Firewall/Rules/Ethernet: new broadcast domain issues
https://forum.netgate.com/topic/185443/example-of-layer-2-ethernet-firewall-rules
I was able to get it to work how...
Jonathan Lee
03:43 PM Bug #15149: Hardware Crypto showing No Hardware Crypto Acceleration for system with crypto chip installed
If it's shown on the dashboard as active, and there is kernel encryption happening on the VPN (e.g. OpenVPN DCO, IPse... Jim Pingle
03:27 PM Bug #15149: Hardware Crypto showing No Hardware Crypto Acceleration for system with crypto chip installed
Is there anything I can do because I have the older 2100 that has this chip, I understand the new 2100 does not come ... Jonathan Lee
01:49 PM Bug #15149 (Not a Bug): Hardware Crypto showing No Hardware Crypto Acceleration for system with crypto chip installed
The OpenVPN crypto hardware choice is not relevant and hasn't done anything meaningful in years. It should probably b... Jim Pingle
01:36 AM Bug #15149: Hardware Crypto showing No Hardware Crypto Acceleration for system with crypto chip installed
New firmware was installed also same issue Jonathan Lee
01:36 AM Bug #15149: Hardware Crypto showing No Hardware Crypto Acceleration for system with crypto chip installed
https://forum.netgate.com/topic/185411/23-09-01-hardware-crypto-showing-no-hardware-crypto-acceleration-for-system-wi... Jonathan Lee
01:30 AM Bug #15149 (Not a Bug): Hardware Crypto showing No Hardware Crypto Acceleration for system with crypto chip installed
The Hardware Crypto is no longer showing up under OpenVPN configuration. My Netgate appliance has a crypto chip insta... Jonathan Lee

01/04/2024

12:35 PM Bug #14824: OpenVPN instance on IPv6 PPPoE interface does not always start automatically
Jan 4 13:00:00 openvpn 21642 Exiting due to fatal error
Jan 4 13:00:00 openvpn 21642 FreeBSD ifconfig failed: ...
Łukasz Rojczyk

01/03/2024

03:23 PM Bug #15097: Upgrade to 23.09.1 is not offered for 23.05.1
I had this issue on appliances while upgrading to 23.09 two branches back, where new version check was always failing... Clément PAPPALARDO

01/02/2024

03:48 PM Bug #15097: Upgrade to 23.09.1 is not offered for 23.05.1
Marcos M wrote in #note-4:
> The issue is due to a missing @.default@ file, e.g. @/usr/local/etc/pfSense/pkg/repos/pf...
Tom L
01:33 PM Regression #14964 (Not a Bug): SG-3100: iscsi support removed from 23.09 kernel
At this point things removed from 3100 are unlikely to return as they were probably removed due to problems with armv... Jim Pingle

12/31/2023

12:43 AM Bug #15126: SG-1100 pfSense+ recovery results in non aligned disk slices
David Burns wrote:
> Currently preparing for an upgrade of SG-1100 remote worker fleet.
>
> However after install...
Kris Phillips
 

Also available in: Atom