Project

General

Profile

Activity

From 10/14/2009 to 11/12/2009

11/10/2009

10:08 AM Feature #132: update OLSRd to 0.5.6-r6
Thank you for syncing ... when will a nanobsd snapshot be available to download? It looks like snapshot building has ... Daniel Binder
06:01 AM Bug #116 (Feedback): Carp and Captive portal don't work together
Patch commited on 2.0 Ermal Luçi
06:00 AM Bug #118 (Feedback): Captive portal not work
Patch commited. Ermal Luçi

11/09/2009

06:07 PM pfSense Packages Bug #133 (Feedback): console change lan ip causes fatal trap 12
This should be fixed on newer snapshots. Ermal Luçi
01:16 PM Bug #142: Alias autocompletion broken
It's working again, but it isn't case-insensitive like it is when nesting aliases. Can you fix that? Chris Buechler
11:54 AM Bug #142 (Feedback): Alias autocompletion broken
Patch commited. Ermal Luçi

11/08/2009

11:19 PM Bug #66: Nanobsd does not work on WRAP
Work around here.
http://doc.pfsense.org/index.php/NanoBSD_on_WRAP
Chris Buechler
08:06 PM Bug #146 (Resolved): Missing validation for alias usage
Aliases are allowed to be used in several ways that breaks the ruleset.
firewall_nat_edit.php needs a check to on...
Chris Buechler
08:04 PM Bug #145 (Resolved): DHCP server available range is wrong
The DHCP server range allows network and broadcast addresses.
Chris Buechler
07:50 PM Bug #144 (Closed): Syslog messages violate RFC 3164
RFC 3164 ("The BSD Syslog Protocol") dictates that following the Timestamp field will be a space then the "HOSTNAME" ... Chris Buechler
07:45 PM Bug #143 (Resolved): Apostrophe in alias description breaks mouse-over display
An apostrophe in alias' descriptions (e.g., "ABC's LAN") prevents the mouse-over display from working (i.e., where it... Chris Buechler
07:45 PM Bug #142 (Resolved): Alias autocompletion broken
Alias autocompletion is broken in the firewall and NAT edit pages at a minimum, though it works for nesting aliases. Chris Buechler
07:27 PM Bug #141 (Resolved): Reserved names cannot be used for aliases or interfaces
If a reserved name, such as 'max', is used for an alias or interface it breaks the ruleset. Need either an alias blac... Chris Buechler
07:24 PM Bug #140 (Resolved): Switching to AON should generate proper full NAT rules
Switching to AON only adds an outbound NAT rule for the LAN subnet, for outbound traffic to WAN.
It should add th...
Chris Buechler
06:38 PM Bug #139 (Resolved): PPTP Server subnet and clients needs combined
The PPTP subnet size and number of users field needs to be combined as it is in m0n0wall, since the two are tied toge... Chris Buechler
06:28 PM Bug #138 (Resolved): Missing input validation for aliases
Aliases have nearly no input validation, making it very easy to create invalid rulesets. Chris Buechler

11/07/2009

10:13 PM Bug #137 (Resolved): Change of IPsec remote gateway doesn't trigger SPD reload
To replicate:
1) Add a IPsec VPN, check SPD
2) Change remote endpoint IP
3) Check SPD - old endpoint IP is used...
Chris Buechler
09:07 PM Bug #136 (Resolved): Issues with linked filter/NAT rules
1) Multiple NAT rules can be assigned the same filter rule
2) when removing the link (i.e. switching to "pass" or "n...
Chris Buechler
08:55 PM Bug #120 (Resolved): 1.2.3 RC3 NO NAT rules have ports 1024:65535 added to destination
Applied in changeset commit:"4937fc88d1f0f9bf5b4d0268797de7a6e6ddcecc". Anonymous
01:01 PM Bug #93 (Closed): Filter log parsing - potential 2.0 bug
I can no longer reproduce this. It may have been a side effect of another bug, or something specific about the log en... Jim Pingle
04:46 AM Bug #135 (Resolved): Connecting to FTP server causes panic
If you add a port forward for TCP 21 on WAN, and connect to the FTP server from the WAN side, the box panics.
FTP...
Chris Buechler
04:10 AM Feature #132: update OLSRd to 0.5.6-r6
Scott asked because we currently don't know of anyone using it. It's the only feature not in widespread use to our kn... Chris Buechler
03:58 AM Feature #132: update OLSRd to 0.5.6-r6
Currently not.
Our mesh network operators require the users to use r5 or r6, because of some problems in r4.
So...
Daniel Binder

11/06/2009

11:36 PM Bug #134 (Resolved): Active mode FTP causes a panic
To replicate, connect to any FTP server in active mode, and try a directory listing. The box will immediately panic w... Chris Buechler
10:49 PM Bug #127: Empty config entries returned as array
This is wrecking all kinds of things in 2.0, so the new xmlreader has been reverted for the time being.
If you wo...
Chris Buechler
05:46 PM pfSense Packages Bug #133 (Resolved): console change lan ip causes fatal trap 12
Reproduce:
1) Install pfsense-2.0-ALPHA-ALPHA-2009-10-25-1210 into vmware (esxi4) on 0.9gb HD, used default of smp e...
Scott Griepentrog
04:02 PM Feature #132: update OLSRd to 0.5.6-r6
Are you using OLSRd currently in pfS? Scott Ullrich
03:02 PM Feature #132 (Resolved): update OLSRd to 0.5.6-r6
it looks like 0.5.6-r6 is out with some bugfixes ( http://www.olsr.org )
Is it possible to get it into the 1.2.3 r...
Daniel Binder

11/05/2009

03:47 PM Feature #129 (Closed): CNAME support for dnsmasq
Chris Buechler
09:07 AM Feature #129: CNAME support for dnsmasq
I did some more research on this matter.
* There are reasons not to use CNAME records:
http://cr.yp.to/djbdns/n...
znerol znerol

11/04/2009

09:42 PM Bug #131: "Static route filtering" doesn't add rules for routes on WAN
It's intentionally skipped for WAN (and WAN only, OPT WANs are handled correctly - except in the case of a DHCP inter... Chris Buechler
06:11 PM Bug #131: "Static route filtering" doesn't add rules for routes on WAN
That code didn't paste well. Here's a second go at it:... Garret Huntress
06:11 PM Bug #131 (Resolved): "Static route filtering" doesn't add rules for routes on WAN
The "Static route filtering" option (under System -> Advanced) doesn't account for packets entering and leaving the s... Garret Huntress
08:36 PM Bug #111 (Resolved): addresses ending in .224-239 will not policy route
Chris Buechler
08:35 PM Bug #81 (Resolved): Captive portal problems
Chris Buechler
01:53 PM Feature #130 (Closed): Add color picker to rules / nat rows
Add a color picker widget and allow user to pick a color that will appear in the rule row. Scott Ullrich
11:53 AM Feature #129: CNAME support for dnsmasq
No. We would loose too many features such as failover-dhcp (CARP). Scott Ullrich
11:51 AM Feature #129: CNAME support for dnsmasq
I see. Would'nt it be possible to substitude isc dhcpd entirely with dnsmasq? znerol znerol
11:48 AM Feature #129: CNAME support for dnsmasq
Thanks but we cannot migrate to the new version of DNSMASQ until someone writes a replacement for the isc log scannin... Scott Ullrich
11:46 AM Feature #129 (Closed): CNAME support for dnsmasq
As of version 2.46 dnsmasq supports limited support for CNAME entries(1,2). When i was about to test the attached pat... znerol znerol
08:32 AM pfSense Packages Bug #128: squid upstream proxy
https://rcs.pfsense.org/projects/pfsense-packages/repos/mainline/commits/4c09ba4183f227ffc827f08c74e929738796e883 Anonymous
08:30 AM pfSense Packages Bug #128: squid upstream proxy
fixed ! Anonymous

11/03/2009

10:53 AM pfSense Packages Bug #128 (Resolved): squid upstream proxy
Using Squid with an upstream proxy, the GUI says to use port 7 to disable ICP protocol, but the config file does not ... Nuno Marques

11/02/2009

03:31 AM Bug #126: XML parser errors when enabling SSH
This also happens when adding a new interface under Interfaces -> Assign.
Warning: XMLReader::read(): /cf/conf/ba...
Chris Buechler
02:24 AM Bug #126 (Resolved): XML parser errors when enabling SSH
Enabling SSH under System -> Advanced results in this at the top of the screen after saving:
Warning: XMLReader::...
Chris Buechler
02:47 AM Bug #127: Empty config entries returned as array
Here's another instance of something being returned as "Array" when it shouldn't be.
php: : There were error(s) l...
Chris Buechler
02:26 AM Bug #127 (Resolved): Empty config entries returned as array
I've seen this pop up in many text boxes of the web interface, for instance by browsing to Interfaces -> WAN, with th... Chris Buechler
02:08 AM Bug #125 (Resolved): Erroneous "interface not present" alert
after booting a fresh install and logging into the web interface, an alert is erroneously shown:
[interfaces] vr1 i...
Chris Buechler
02:04 AM Bug #124 (Resolved): Polling problems with 8
in system logs after boot with default config.xml:
php: : The command 'sysctl kern.polling.enable=0' returned exi...
Chris Buechler

10/29/2009

12:45 PM pfSense Packages Bug #123 (Resolved): apache_mod_security_settings.xml bad formating.
Applied in changeset commit:"5804c04459a7746b0b73caf42e2e937fcc640f8b". Scott Ullrich
12:05 PM pfSense Packages Bug #123: apache_mod_security_settings.xml bad formating.
Scott Ullrich wrote:
> Which field tag? The file looks OK at first glance.
Look at line 155 on the repository li...
Grégory Boddin
11:45 AM pfSense Packages Bug #123: apache_mod_security_settings.xml bad formating.
Which field tag? The file looks OK at first glance. Scott Ullrich
11:38 AM pfSense Packages Bug #123 (Resolved): apache_mod_security_settings.xml bad formating.
On http://redmine.pfsense.org/repositories/entry/pfsense-packages/config/apache_mod_security/apache_mod_security_sett... Grégory Boddin
03:23 AM Todo #122 (Resolved): Update the miniupnpd pfPort after the 1.2.3 release
There is a typo in miniupnpd, and might as well update the current miniupnpd in the process.
Oct 29 08:18:32 miniup...
Seth Mos

10/28/2009

08:06 PM pfSense Packages Bug #121 (Rejected): Problem with VIA Veloctiy NetworkCard
Hi,
my Via Velocity network card (onboard of my VIA EPIA EN1200EG) runs in this error when I install 1.2.3RC3 new:...
Anonymous

10/27/2009

09:15 PM Bug #120 (New): 1.2.3 RC3 NO NAT rules have ports 1024:65535 added to destination
Scott Ullrich
08:45 PM Bug #120 (Resolved): 1.2.3 RC3 NO NAT rules have ports 1024:65535 added to destination
Applied in changeset commit:"8763e56d20eec74f1c4caaea80ac1cfcb46bbe03". Scott Ullrich
08:16 PM Bug #120: 1.2.3 RC3 NO NAT rules have ports 1024:65535 added to destination
I'm not sure if this is the proper method for fixing this issue, but I modified my /etc/inc/filter.inc file with the ... Garret Huntress
07:57 PM Bug #120 (Resolved): 1.2.3 RC3 NO NAT rules have ports 1024:65535 added to destination
In 1.2.3 RC3, when creating a NO NAT rule, ports 1024:65535 are added to the destination portion of the statement. F... Garret Huntress

10/23/2009

04:49 PM pfSense Packages Bug #119 (Resolved): axfrdns not working in dns-server package
Zone transfers are not working in the dns-server package.
I have traced the problem out to these issues:
1. tin...
Mike Jones

10/22/2009

08:26 AM Bug #118 (Resolved): Captive portal not work
Dear Sir
I use this version "2.0-ALPHA-ALPHA built on Tue Oct 20 04:02:07 UTC 2009
FreeBS...
ChihWei Wang

10/21/2009

08:35 PM Bug #117 (Resolved): dns forewarder + carp not working properly
sullrich pushed 020d757a to pfsense/mainline on branch master
Reload filter in case we need to sync CARP data
sullr...
Scott Ullrich
07:03 PM Bug #117 (Resolved): dns forewarder + carp not working properly
I have two pfsense boxes: core-01a and core-01b. The two boxes have a working carp setup on the LAN side. IP's are:
...
Nico de Haer

10/19/2009

11:33 AM Bug #116 (Resolved): Carp and Captive portal don't work together
I've set CARP to work between two servers, using the WAN interface for synchronization, and it works fine.
Problem...
Roberto Greiner

10/17/2009

11:13 AM Feature #115 (Rejected): PPTP Idle Timeout Options
I would like to request the ability to set an idle timeout for a PPTP session. This way the session would be disconn... Alan Shearer

10/15/2009

10:38 PM Bug #112 (Resolved): mDNS firewall logs not displayed properly.
This does appear to be fine in 1.2.3 and 2.0. Chris Buechler
10:30 PM pfSense Packages Bug #114 (Resolved): squid.inc issue cache_replacement_policy heap LFUDA
Applied in changeset commit:"c0c5582340eaf9eebf2ba363eb786b88758110ef". Scott Ullrich
09:20 PM pfSense Packages Bug #114 (Resolved): squid.inc issue cache_replacement_policy heap LFUDA
This issue is a mistake on the order of the line default config squid.inc
@
cache_dir $disk_cache_system $cache...
Fahmi Syafrizal
03:31 PM Bug #111: addresses ending in .224-239 will not policy route
I've tested with pfSense-1.2.3-2g-20091015-0138-nanobsd.img.gz and everything is now routing correctly. Jon Klinck
11:40 AM Bug #113 (Resolved): Large failover DHCP scopes don't work
Applied in changeset commit:"d5f5cf26af62467bdadba5be592e3ddbc6ac2df3". Scott Ullrich
09:55 AM Bug #113: Large failover DHCP scopes don't work
It's the lease cleanup/deletion code that's using too much memory, it looks like. I suppose that could do a size chec... Jim Pingle
03:17 AM Bug #113 (Resolved): Large failover DHCP scopes don't work
As reported here:
http://article.gmane.org/gmane.comp.security.firewalls.pfsense.support/18749
If a large (tens o...
Chris Buechler

10/14/2009

05:59 PM pfSense Packages Bug #94 (Resolved): Prevent Dashboard (re)install on 2.0
I committed a fix that should prevent the files from being copied over on 2.0. Should fix this.
https://rcs.pfsense....
Jim Pingle
10:24 AM Bug #111 (Feedback): addresses ending in .224-239 will not policy route
Feedback is needed after a new patch is in.
New builds of pfSense 1.2.3 are needed since this is a kernel patch.
Ermal Luçi
 

Also available in: Atom