Project

General

Profile

Activity

From 10/25/2009 to 11/23/2009

11/23/2009

11:06 PM Revision 2a203afd: Wireless cleanups for the new wireless format of FreeBSD 8
Changing between different ssids, wpa, wep and channels works. Needs thorough testing.
Client mode also works again, ...
Seth Mos
05:26 PM Bug #159: "." in hostname creates invalid dhcpd.conf
Ok, I misunderstood, sorry. It's clear now ;-)
Pierre POMES
05:16 PM Bug #159: "." in hostname creates invalid dhcpd.conf
Oh, I didn't mean changing the actual entries in the config.xml. Just when they're written out from the config.xml to... Chris Buechler
05:14 PM Bug #159: "." in hostname creates invalid dhcpd.conf
> why does the config need to be upgraded?
As you mentionned in earlier post of this tickets, the '.' in static m...
Pierre POMES
05:08 PM Bug #159: "." in hostname creates invalid dhcpd.conf
why does the config need to be upgraded?
By the way - Scott fixed the hostname verification in RELENG_1_2 yesterd...
Chris Buechler
05:07 PM Bug #159: "." in hostname creates invalid dhcpd.conf
Question for the dhcp server config upgrade: may it be an option to change version number from 6.0 to 6.1 (etc/inc/gl... Pierre POMES
06:46 AM Bug #168: Backup area
I did more tests and this only happens when 'Do not backup package information' is selected, so:
- go to backup/re...
Nuno Marques
01:14 AM Revision 16058a05: Add back mbstring for firewall_rules_edit
Scott Ullrich
01:02 AM Revision 1420c055: Update fieldname, it should be hostname and not host Ticket #159
Scott Ullrich
01:02 AM Revision 07ab4926: Update fieldname, it should be hostname and not host Ticket #159
Scott Ullrich
12:56 AM Revision be1db1d3: Document known module purpouses:
Scott Ullrich
12:53 AM Revision fca48a65: Add back ctype and document what its for
Scott Ullrich
12:50 AM Revision 6028a72d: Update doc header
Scott Ullrich
12:49 AM Revision b927a013: Allow specifying colors by their name
Scott Ullrich
12:17 AM Revision 385a3a31: Return color code, not echo
Scott Ullrich
12:04 AM Revision fdf3af3f: Add function header markup for doc generation. Add color() function that will output a color ansi sequence if the terminal supports it. No arguments to color will reset the terminal
Scott Ullrich

11/22/2009

10:14 PM Revision b15ae348: Deleting a IP alias needs the IP as a argument, just issuing delete is not valid syntax
Seth Mos
10:03 PM Todo #178 (Resolved): Import MAC address formatting option from m0n0
In m0n0wall under captive portal there is a feature where you can specify how the MAC address was sent as a username ... Chris Buechler
09:59 PM Feature #177 (Resolved): IPv6 support
(moved from cvstrac)
IPv6 support needs to be added at some point (post-2.0)
Chris Buechler
09:59 PM Revision 9006e9f8: Reformat. No functional changes
Scott Ullrich
09:42 PM Revision 37a53d16: Use interface_bring_down()
Scott Ullrich
09:38 PM Revision f07bee94: Ensure all interface delete code is wrapped in does_interface_exist()
Scott Ullrich
08:28 PM pfSense Packages Bug #121 (Rejected): Problem with VIA Veloctiy NetworkCard
This is a FreeBSD hardware issue of some sort that we can't do anything about.
http://doc.pfsense.org/index.php/Pol...
Chris Buechler
08:26 PM pfSense Packages Bug #133 (Resolved): console change lan ip causes fatal trap 12
this is fixed Chris Buechler
08:07 PM Bug #176 (Resolved): GMT offset zones reversed
The GMT timezones in the TZ database are opposite of what they appear they should be. i.e. GMT-4 is really GMT +4.
...
Chris Buechler
07:57 PM Bug #175 (Resolved): convert_real_interface_to_friendly_descr doesn't work for disabled interfaces
It needs to because some parts of the GUI use it to display interface info (system_gateways.php for one) where it cur... Chris Buechler
07:56 PM Bug #159: "." in hostname creates invalid dhcpd.conf
Hi,
My cloned repo is updated with the first part. For the second one, you are right, I will follow your advices, ...
Pierre POMES
07:50 PM Bug #174 (Resolved): Re-assigning interfaces doesn't reconfigure them
Re-assigning interfaces does not reconfigure their IP assignments. Example: if you have OPT1 assigned to em2 and OPT2... Chris Buechler
05:55 PM Revision 45e63af1: Include config.inc and functions.inc
Scott Ullrich
03:51 AM Revision d4ac1b88: We need mhash for the user manager
Scott Ullrich
03:46 AM Revision 2a7a9e3b: Add shaper.inc and auth.inc
Scott Ullrich
03:23 AM Revision 7c6cef3c: Add shaper.inc
Scott Ullrich
12:43 AM Revision 5fbcc12a: Add blank row to match firewall rules layout
Scott Ullrich
12:41 AM Revision 1b43f08f: Move linked rule below pass icon. Cleanup tables
Scott Ullrich
12:34 AM Revision 1a03cf69: Include filter.inc and shaper.inc
Scott Ullrich
12:28 AM Revision 7a927e67: Require filter.inc and shaper.inc
Scott Ullrich
12:10 AM Revision 5f2d078e: Decouple filter.inc from functions.inc. There is no need to process filter functions most of the time. Include filter.inc where it is needed
Scott Ullrich

11/21/2009

11:49 PM Revision c987ed88: Escape $myurl so that it can be replaced
Scott Ullrich
11:44 PM Revision 7f16265a: Ensure dynamodules directory exists
Scott Ullrich
11:37 PM Revision fcdf9492: Fix spelling mistake
Scott Ullrich
11:34 PM Revision 80d887d1: Note modules no longer included by default. If a module is needed simply touch /etc/php_dynamodules/$modulename
Scott Ullrich
11:30 PM Revision c44417f8: Include captiveportal for captiveportal_radius_stop_all()
Scott Ullrich
11:07 PM Revision 47eee8fa: Use dmesg -a when /var/log/dmesg.boot is not available
Scott Ullrich
10:56 PM Revision 668e761d: Include ipsec.inc and vpn.inc
Scott Ullrich
10:48 PM Revision f7e3f9ac: Include certs.inc
Scott Ullrich
10:05 PM Revision 880637d2: Default to only system information and interfaces widgets. This reduces load time on RSPRO from 9+ seconds to 2.5
Scott Ullrich
09:30 PM Revision 980df75c: Set max_procs for > 128 megabytes ram. Set min-procs to 0. Set the MAX_REQUESTS to 2 when memory under 128 megabytes
Scott Ullrich
09:18 PM Revision f82be9e4: Set default size for apc shm to 10 megs for < 128
Scott Ullrich
09:14 PM Revision 2b11ff4d: Calculate PHP APC SHM size according to memory detected
Scott Ullrich
09:08 PM Revision 483e6de8: Rework includes/require. This saves about 4 megabytes.
Simplify get_memory(). Tested on mips/i386 Scott Ullrich
12:23 AM Revision e2d90eac: Fix the status wireless page for 2.0 using the correct _wlan0 interface
name.
Also bring over a fix for ssid values with spaces, there is a different
fix in 1.2. This one splits on Mac addr...
Seth Mos
12:01 AM Bug #173 (Resolved): Missing input validation for gateways
system_gateways_edit.php does not sanity check entries. Two checks should be added:
1) The gateway IP is within t...
Chris Buechler

11/20/2009

11:30 PM Bug #172 (Closed): Daylight savings causes duplicate months in RRD (sometimes)
(moved from cvstrac # 1681, with updated info)
Occasionally there are duplicate months in RRD graphs. It used to a...
Chris Buechler
11:07 PM Bug #171 (Resolved): "LICENSE" shows up in L7 protocol list
It appears that everything in /usr/local/share/protocols is shown in the L7 protocol list, including "LICENSE", the c... Chris Buechler
10:59 PM Bug #170 (Resolved): Shaper multi-all wizard doesn't work
After entering the number of WAN and LAN connections at the first screen of the multi-all shaper wizard, it comes bac... Chris Buechler
10:57 PM Bug #169 (Resolved): Shaper needs to show friendly interface name
The shaper shows wan/lan/optX, it should show the friendly interface name to avoid confusion where numerous OPT inter... Chris Buechler
10:47 AM Bug #168: Backup area
Can you explain what you mean and how to replicate in more depth? That doesn't make any sense to me. Chris Buechler
07:23 AM Bug #168 (Resolved): Backup area
Independently of backup area selected the backup is always full Nuno Marques
10:46 AM Bug #134 (New): Active mode FTP causes a panic
Chris Buechler
07:33 AM Bug #134: Active mode FTP causes a panic
Same problem here with 2.0-ALPHA-ALPHA version 20 11 2009
connect to any FTP server in active mode, and try a di...
Thierry Pimont
01:23 AM Revision ba3e5c6c: More help page adjustments
Jim Pingle

11/19/2009

11:14 PM Revision c5ee0e21: More help pages
Jim Pingle
09:29 PM Bug #16 (New): Deleting multiple OPT interfaces results in an invalid configuration
Not fixed. Chris Buechler
05:06 PM Todo #36 (Resolved): Replace PPP
Scott Ullrich
03:33 PM Todo #34: PPTP users integration with user manager
The Radius server settings need to also be pulled from the User Manager authentication server setup as well. Jim Pingle
03:33 PM Todo #33: L2TP users integration with user manager
The Radius server settings need to also be pulled from the User Manager authentication server setup as well. Jim Pingle
03:33 PM Todo #32: PPPoE Server users integration with user manager
The Radius server settings need to also be pulled from the User Manager authentication server setup as well. Jim Pingle
12:59 PM Bug #167 (Resolved): CARP error
When I hit save on CARP Settings page I get the following error:
Fatal error: Call to undefined function interface...
Nuno Marques
08:17 AM Bug #134: Active mode FTP causes a panic
when using frox to achieve transparent ftp proxy the same thing happens, using 2.0-ALPHA-ALPHA built on Wed Nov 18 01... Nuno Marques
02:34 AM Revision 387d2afe: More help pages
Jim Pingle

11/18/2009

11:15 PM Revision 56f86399: More help page mappings
Jim Pingle
10:54 PM Bug #159: "." in hostname creates invalid dhcpd.conf
The first part is good.
On the second, I would prefer to avoid changing people's configuration. If they already h...
Chris Buechler
10:21 PM Bug #159: "." in hostname creates invalid dhcpd.conf
I am working on it, two targets :
- make sure the 2.0 gui does not allow to enter fqdn reservation.
- during the up...
Pierre POMES
08:15 PM Bug #166 (Closed): Input validation on Gateway editor needs work
When attempting to save a Gateway with a space in the name (e.g "a b") the input validation throws an error as it sho... Jim Pingle
06:09 PM Bug #165: Serial console on 8.x doesn't work properly
I should note this is full installs only - nanobsd is fine.
Chris Buechler
06:08 PM Bug #165 (Resolved): Serial console on 8.x doesn't work properly
The serial console on 8.x based versions doesn't work properly. The boot messages show up, and if the system panics y... Chris Buechler
05:53 PM Revision f98810b4: Remove another obsolete file, add some other files that no longer exist in the repo to the obsoleted files list.
Jim Pingle
04:37 PM Bug #163 (Rejected): TCP Traffic on bridged multiwan config being blocked. Explicit PASS rules in place.
this is not a legit bug report.
http://doc.pfsense.org/index.php/Bug_reporting
Please ask about this on the forum ...
Chris Buechler
04:23 PM Bug #163 (Rejected): TCP Traffic on bridged multiwan config being blocked. Explicit PASS rules in place.
Hi All,
I'm new to this so please excuse any fopars.
I have a the following pfsense config running on 1.2.3 RC3...
James Black
04:23 PM Bug #164 (Resolved): Custom installer does not allow kernel selection
When going through the custom installer, you are no longer prompted to select the kernel for installation. Chris Buechler
04:02 PM Bug #162 (Resolved): Expanding traffic graphs and saving doesn't save
If you expand traffic graphs in the dashboard, and save settings, it doesn't actually save. Always goes back to only ... Chris Buechler
03:54 PM Bug #161 (Resolved): HTTPS certificates invalid - duplicate serial
Generating a certificate and using it for HTTPS results in an unusable web interface.
"You have received an inval...
Chris Buechler
12:06 PM Bug #160: Captive portal interfaces box doesn't expand
Could it not just be made as long as the interface list? Generally that isn't going to be more than maybe 10-20 entri... Chris Buechler
10:24 AM Bug #160: Captive portal interfaces box doesn't expand
The only option is to make a multi column combo box.
I am not sure this is possible in a web based GUI though i see ...
Ermal Luçi
03:58 AM Revision 3a4fb57e: fix up text
Chris Buechler
03:33 AM Revision f79ceb07: Add interfaces_wlan_scan.php and firewall_nat_server.php to obsoleted files list
Scott Ullrich
02:46 AM Revision 7c33eb64: Remove obsolete file, its functionality is now in status_wireless.php
Jim Pingle
02:37 AM Revision cde575e0: Even more help page mappings
Jim Pingle
12:06 AM Revision b873ded5: Lots of help page mappings to newly created content. Adjust package editing logic a tad.
Jim Pingle

11/17/2009

10:02 PM Bug #160 (Resolved): Captive portal interfaces box doesn't expand
On a system with > 3 interfaces, the Interface box on services_captiveportal.php needs to expand so all the interface... Chris Buechler
07:45 PM Revision 7f9ad068: Fix hostname in page title. thanks to sullrich@ for pointer
Chris Buechler
05:29 PM Bug #159 (Resolved): "." in hostname creates invalid dhcpd.conf
Creating a reservation with a FQDN results in an invalid dhcpd.conf.
php: /services_dhcp.php: The command '/usr/l...
Chris Buechler
03:51 PM Revision f7eae2bf: Align the help link to the right of the title. Less wasted space this way.
Seems to work OK in FF, IE8, and Opera. If anyone knows a better way to align images to the right, I'm all ears. Jim Pingle
02:27 AM Revision 79fd4b18: More help pages.
Jim Pingle
01:58 AM Revision c45ca271: Add empty hash assignment syntax to the remaining files. (Got tired of adding them every single time I made a change)
Jim Pingle
01:58 AM Revision 4afdaac1: Add a few more mappings.
Jim Pingle
01:31 AM Revision 174fa1ab: Merge branch 'master' of git://rcs.pfsense.org/pfsense/pierrepomes-max-src-conn into review/master
Scott Ullrich
01:26 AM Revision 664efd43: A couple more mappings, plus change to leading with tabs and not spaces. (oops).
Jim Pingle
01:01 AM Revision 6df21728: Help page adjustments and additions. Periodic commit.
Jim Pingle

11/16/2009

09:43 PM Revision 26dd6a54: Add support for 'max-src-conn' PF feature, to limit the maximum number of established connections per host
Pierre POMES
03:52 PM Bug #155: Space in hostname breaks dhcpd
this works now, thanks! Chris Buechler
06:55 AM Bug #155 (Resolved): Space in hostname breaks dhcpd
Applied in changeset commit:"ad30055f6e376a1e0aa5e81d70d46ba27bc85a91". Ermal Luçi
06:53 AM Bug #155 (Feedback): Space in hostname breaks dhcpd
Patch commited. Ermal Luçi
01:47 PM Revision ad30055f: Resolves #155. Replace space characters with underscore ones.
Ermal Luçi
07:12 AM Revision cf21c8ad: Put the FQDN back into the page title. Many people have numerous firewalls up across tabs, and it's impossible to differentiate without this, which we've had for many years.
Chris Buechler
06:46 AM Bug #156 (Rejected): OpenVPN rules not added properly
tun/vpns/ovpns interfaces needs to be added to the openvpn group.
This is the behaviour intended so this report is bo...
Ermal Luçi
06:44 AM Revision 30a5a9d7: trigger setup wizard
Chris Buechler
02:20 AM Revision 1fdc32e4: More updates to help page mappings.
Jim Pingle
02:15 AM Revision d520c62b: Jettison never used pages
Scott Ullrich
02:02 AM Bug #158 (Resolved): Setup wizard breaks single interface configurations
After going through the setup wizard with a single interface assigned, you're left with a broken configuration. LAN i... Chris Buechler
01:50 AM Bug #157 (Resolved): Setup wizard redirect broken
At the end of the setup wizard, a redirect to "http:///" is attempted. $myurl is blank. That bit of the XML looks the... Chris Buechler

11/15/2009

11:41 PM Revision 92d5144e: this is not a required field
Chris Buechler
11:41 PM Revision 6b20b7a8: Properly correct ipfw rule.
Ermal Luçi
11:41 PM Revision f8fa3dd4: Revert "Correct ipfw rule."
Error of copy paste
This reverts commit 0f6fdf29a2f31bbf816eb3df33c3f1fc38c8b2a6.
Ermal Luçi
11:40 PM Revision 540963fd: Add some more redirect definitions.
Still working on this, just a periodic commit so nothing gets lost. Jim Pingle
11:39 PM Revision a9c0ebfe: Fix whitespace error
Jim Pingle
11:38 PM Revision 9cd1eade: Make help link open in a new window
Jim Pingle
11:24 PM Revision 5e08497c: properly enable/disable Everything field
Chris Buechler
10:41 PM Bug #156 (Rejected): OpenVPN rules not added properly
OpenVPN rules are added to $OpenVPN, which is set to:
OpenVPN = "{ openvpn }"
needs to specify the tun interfa...
Chris Buechler
10:27 PM Revision 5d55ecfc: fix typo
Chris Buechler
10:13 PM Revision 5262b29a: Proof of concept for a contextual help redirector. Still in early stages of content, but the code behind it works (for ?page= type redirection, http referral url is not yet tested)
Jim Pingle
10:13 PM Revision 0a3eaf4d: Add support for contextual help on each page. Add a help icon to the upper right, and an entry under the Help menu. (Text, style, placement, etc are open for suggestions)
Jim Pingle
10:13 PM Revision 462c4a27: Add a help_base_url variable to globals.inc for use with contextual help.
Jim Pingle
10:06 PM Revision 123f030c: Fix proxy ARP VIP addition (was calling old function)
rename function from interfaces_proxyarp... to interface_ to be consistent with the functions for carp, carpdev, and ... Chris Buechler
09:27 PM Revision 08991766: Add a help icon to each theme. Part of the contextual help project.
Jim Pingle
09:19 PM Revision 12fafaf7: I see no reason to retain this "braindeadedness". Create each CARP VIP with its VHID, and destroy accordingly.
Resolves #151 Chris Buechler
09:16 PM Revision 0f6fdf29: Correct ipfw rule.
Ermal Luçi
08:49 PM Revision 1ba7a81b: Propperly fix the special case of proxyarp vip deleteion. With comments from cbuechler@.
Ermal Luçi
08:47 PM Revision d9d95b0a: Revert "Resolves #153 Treat proxyarp special case during deletion."
This reverts commit 5d5ec271de58dd8306fa7bacfb439b07b3dd2e51. Ermal Luçi
08:38 PM Revision 5d5ec271: Resolves #153 Treat proxyarp special case during deletion.
Ermal Luçi
07:17 PM Bug #155 (Resolved): Space in hostname breaks dhcpd
This is a regression from 1.2, where we must have stripped spaces.
Aug 3 23:32:56 dhcpd: Configuration file errors...
Chris Buechler
07:12 PM Bug #154 (Resolved): New interface does not have RRD graphs created
(verified and moved from cvstrac # 1943)
After assigning an interface, the RRDgraph database files are no generated ...
Chris Buechler
06:32 PM Revision 6593dae6: Update page title to reflect its current menu name
Jim Pingle
06:13 PM Bug #153: Removing proxy ARP VIP doesn't kill off choparp
this works now, thanks! Chris Buechler
06:07 PM Bug #153: Removing proxy ARP VIP doesn't kill off choparp
This is the right commit.
cc76d08dcc63b628eb548201454341f21d8c56b3
Ermal Luçi
06:05 PM Bug #153 (Resolved): Removing proxy ARP VIP doesn't kill off choparp
Applied in changeset commit:"d9d95b0a30c6b37c3525ee38d99495c63f7044f6". Ermal Luçi
05:59 PM Bug #153 (New): Removing proxy ARP VIP doesn't kill off choparp
This still doesn't properly kill choparp. I think now because the vip is unset before the function gets called, so ag... Chris Buechler
05:55 PM Bug #153 (Resolved): Removing proxy ARP VIP doesn't kill off choparp
Applied in changeset commit:"5d5ec271de58dd8306fa7bacfb439b07b3dd2e51". Ermal Luçi
05:20 PM Bug #153 (Resolved): Removing proxy ARP VIP doesn't kill off choparp
When a proxy ARP VIP is removed, its choparp is left running. This appears to be because:
1) When saving changes an...
Chris Buechler
05:12 PM Revision 2ee5fe9b: Fix Bug #147.
Ermal Luçi
04:36 PM Bug #152 (Closed): Deleting a VIP leaves <vip/> in config.xml
Each deleted VIP leaves <vip/> in config.xml. For example after deleting 3 VIPs:
<virtualip>
...
Chris Buechler
04:26 PM Revision 68b89303: Set executable
jim-p
04:22 PM Revision e390b503: Move two include files to /etc/inc instead of leaving them in the www dir. Move filterparser.php to /usr/local/bin since it's not meant to be used from the web interface.
Jim Pingle
04:20 PM Bug #151 (Resolved): Deleting a CARP IP doesn't remove it
Applied in changeset commit:"12fafaf755a9968306057952e63103ea034d7292". Chris Buechler
04:00 PM Bug #151 (Resolved): Deleting a CARP IP doesn't remove it
Deleting a CARP IP from firewall_virtual_ip.php does not remove it.
On a positive note, 'ifconfig vip0 destroy' d...
Chris Buechler
04:10 PM Revision 9c563754: Remove redundant page title tag
Jim Pingle
03:25 PM Bug #147: Voucher test page throws lock error
This error is gone now, thanks.
There is a new problem that did not happen previously - when testing vouchers, it...
Chris Buechler
12:25 PM Bug #147 (Feedback): Voucher test page throws lock error
Ermal Luçi
01:24 AM Bug #147 (Resolved): Voucher test page throws lock error
When testing a voucher in status_captiveportal_test.php, the test displays and works fine, but it also shows on the p... Chris Buechler
06:28 AM Revision 7540905c: call first tab "Active Users", and make it consistent
Chris Buechler
06:26 AM Revision e593f555: yes, I'll even fix typos in comments
Chris Buechler
05:27 AM Revision dd35bb5a: Not sure why this was changed like this. As is, you couldn't disconnect the first client. I don't see any reason to do it that way, and this is the way it's done in RELENG_1_2
Chris Buechler
05:00 AM Revision 4fca1592: Don't add hard coded rules to allow traffic to the portal.
1) the no state breaks CP
2) it's never been automatically allowed previously, and hard coded non-editable rules are ...
Chris Buechler
04:21 AM Revision cc125e13: always return the IP address hosting the page, rather than forcing to the hostname, requiring functional DNS name resolution which possibly doesn't exist. Restores 1.2.x behavior where client IP isn't in the same subnet as any CP-enabled interface.
Chris Buechler
04:12 AM Revision 18cbd65f: fix typos
Chris Buechler
03:42 AM Feature #150 (Closed): Option to change syslog facility
(moved from cvstrac # 1740)
Is it possible to add the option of changing which syslog facility the firewall messages...
Chris Buechler
03:39 AM Feature #149 (Needs Patch): !ports in firewall rules
(moved from cvstrac #1600)
Currently the web gui does not allow rules like this, i want to be able to use the "NOT...
Chris Buechler
03:36 AM Feature #148 (Resolved): Allow alias usage on Outbound NAT
It's possible to use aliases in outbound NAT with PF, web interface doesn't allow it.
Chris Buechler
03:15 AM Revision 729b7029: fix typo
Chris Buechler
03:12 AM Revision d102e3ed: fix typos
Chris Buechler
02:10 AM Revision 734f3966: actually allow DNS to forwarder. CP is still broken, but this is closer at least.
pointy-hat-to: eri Chris Buechler
12:15 AM Bug #118 (Resolved): Captive portal not work
Captive portal is functional now after my earlier commits, though there are still some major problems. Closing this i... Chris Buechler

11/14/2009

10:39 PM Revision 647a1090: Sanitize username and only return letters numbers and spaces on the username. This eliminates the error during login that was cosmetic only in nature. The previous two commits where edge cases as the webConfigurator would never allow a blank username or password and was revised just for completeness sakes.
Scott Ullrich
07:59 PM Revision 7466951a: Disallow blank passwords
Scott Ullrich
07:48 PM Revision 2b1e35e6: Disallow blank passwords
Scott Ullrich
03:26 AM Revision a094d47c: Patch from Ron Lockard that fixed restore_chflags due to a STDOUT redirection issue
Scott Ullrich
03:26 AM Revision d2307ffb: Patch from Ron Lockard that fixed restore_chflags due to a STDOUT redirection issue
Scott Ullrich

11/13/2009

09:30 AM Bug #135 (Feedback): Connecting to FTP server causes panic
Patch committed on 2.0 Ermal Luçi
09:29 AM Bug #134 (Feedback): Active mode FTP causes a panic
Patch committed in 2.0. Ermal Luçi

11/12/2009

10:33 PM Revision fe126e77: When renaming an interface make sure to rename even its ng_ether node so mpd does not fail.
Ermal Luçi

11/11/2009

06:31 PM Revision 0bcff7b2: Allow udp only from/to our local dns server. If wanted pass through can be added.
Ermal Luçi
12:27 PM Revision 6ec23212: Simplify divert port generation and make sure it is even to leave room to ipfw-classifyd to always open 2 divert sockets one for reading and one for writing.
Ermal Luçi
02:27 AM Revision 06231a7d: Default to top -HS
Scott Ullrich

11/10/2009

02:20 PM Revision 66f2dd0e: Second pass at updateing protocol definitions.
Ermal Luçi
02:18 PM Revision c97ab82a: Update layer 7 protocol definitions and adding new regex definitions.
Ermal Luçi
01:34 PM Revision 61c3a5af: Remove brain dead comment by another brain washed comment.
Ermal Luçi
12:51 PM Revision bbc6768b: - Should fix captive portal on carps Issue #116
- Should fix the captive portal not working reports and Issue #118
NOTE: Now Captive portal is open on dns so...
Ermal Luçi
12:38 PM Revision 564df7c2: Previous commit on carp was strange and breaking the distinction and usefulness of some functions.
Make sure that the behaviour returns to the previous architecture and to keep things right.
Carp needs some more wor...
Ermal Luçi
11:40 AM Revision 51b14faa: Do not 'spam' a new ipfw-classifyd for each save. If we hit save for an existing configuration(did changes to existing one) just tell ipfw-classifyd to reload the config.
Ermal Luçi
11:20 AM Revision 21d40ff9: Remove \r it makes editing in vi ugly.
Ermal Luçi
10:08 AM Feature #132: update OLSRd to 0.5.6-r6
Thank you for syncing ... when will a nanobsd snapshot be available to download? It looks like snapshot building has ... Daniel Binder
06:01 AM Bug #116 (Feedback): Carp and Captive portal don't work together
Patch commited on 2.0 Ermal Luçi
06:00 AM Bug #118 (Feedback): Captive portal not work
Patch commited. Ermal Luçi

11/09/2009

06:49 PM Revision 9eb60dcc: Fixes Issue #142
Ermal Luçi
06:07 PM pfSense Packages Bug #133 (Feedback): console change lan ip causes fatal trap 12
This should be fixed on newer snapshots. Ermal Luçi
01:16 PM Bug #142: Alias autocompletion broken
It's working again, but it isn't case-insensitive like it is when nesting aliases. Can you fix that? Chris Buechler
11:54 AM Bug #142 (Feedback): Alias autocompletion broken
Patch commited. Ermal Luçi
12:56 AM Revision 6097246c: fix typo
Chris Buechler
12:36 AM Revision e89f2008: fix typo
Chris Buechler
12:07 AM Revision e3d345ab: err, this defeats the entire purpose of NAT-T for clients behind the firewall, let's not do this.
Chris Buechler

11/08/2009

11:58 PM Revision f9f160b1: clean up RADIUS issued IPs, shouldn't be two fields, and it wasn't properly checked/unchecked before. Fixes cvstrac # 1722
Chris Buechler
11:34 PM Revision ba9d3f07: Add explanation for additional fields.
Chris Buechler
11:19 PM Bug #66: Nanobsd does not work on WRAP
Work around here.
http://doc.pfsense.org/index.php/NanoBSD_on_WRAP
Chris Buechler
08:06 PM Bug #146 (Resolved): Missing validation for alias usage
Aliases are allowed to be used in several ways that breaks the ruleset.
firewall_nat_edit.php needs a check to on...
Chris Buechler
08:04 PM Bug #145 (Resolved): DHCP server available range is wrong
The DHCP server range allows network and broadcast addresses.
Chris Buechler
07:50 PM Bug #144 (Closed): Syslog messages violate RFC 3164
RFC 3164 ("The BSD Syslog Protocol") dictates that following the Timestamp field will be a space then the "HOSTNAME" ... Chris Buechler
07:45 PM Bug #143 (Resolved): Apostrophe in alias description breaks mouse-over display
An apostrophe in alias' descriptions (e.g., "ABC's LAN") prevents the mouse-over display from working (i.e., where it... Chris Buechler
07:45 PM Bug #142 (Resolved): Alias autocompletion broken
Alias autocompletion is broken in the firewall and NAT edit pages at a minimum, though it works for nesting aliases. Chris Buechler
07:27 PM Bug #141 (Resolved): Reserved names cannot be used for aliases or interfaces
If a reserved name, such as 'max', is used for an alias or interface it breaks the ruleset. Need either an alias blac... Chris Buechler
07:24 PM Bug #140 (Resolved): Switching to AON should generate proper full NAT rules
Switching to AON only adds an outbound NAT rule for the LAN subnet, for outbound traffic to WAN.
It should add th...
Chris Buechler
06:38 PM Bug #139 (Resolved): PPTP Server subnet and clients needs combined
The PPTP subnet size and number of users field needs to be combined as it is in m0n0wall, since the two are tied toge... Chris Buechler
06:28 PM Bug #138 (Resolved): Missing input validation for aliases
Aliases have nearly no input validation, making it very easy to create invalid rulesets. Chris Buechler
03:37 AM Revision 7a6a0c0a: Stop spamming the logs with config_unlock() is depricated please use unlock().
Scott Ullrich
03:22 AM Revision ddf2c940: Merge branch 'master' of git@rcs.pfsense.org:pfsense/mainline
Chris Buechler
03:22 AM Revision 8b0d920e: allow sending of same message twice when 'testing' smtp service
Scott Ullrich
03:21 AM Revision 09725e76: add links to IPsec logs under IPsec status and other pages
Chris Buechler
02:34 AM Revision c20acc35: Kill racoon when disabling IPSEC. Restart it if re-enabled.
Scott Ullrich
01:51 AM Revision 4937fc88: Don't add port on no nat rules. Fixes #120
Chris Buechler
01:29 AM Revision e979cfc6: Don't add port on no nat rules. Fixes #120
Chris Buechler
01:03 AM Revision 68b0c7eb: show what pass/linked icons mean
Chris Buechler
12:55 AM Revision 537dff78: show pass icon for rdr pass entries, fix editing of pass entries
Chris Buechler
12:34 AM Revision f891bf66: old version got committed accidentally, fix
Chris Buechler

11/07/2009

10:13 PM Bug #137 (Resolved): Change of IPsec remote gateway doesn't trigger SPD reload
To replicate:
1) Add a IPsec VPN, check SPD
2) Change remote endpoint IP
3) Check SPD - old endpoint IP is used...
Chris Buechler
09:07 PM Bug #136 (Resolved): Issues with linked filter/NAT rules
1) Multiple NAT rules can be assigned the same filter rule
2) when removing the link (i.e. switching to "pass" or "n...
Chris Buechler
08:55 PM Bug #120 (Resolved): 1.2.3 RC3 NO NAT rules have ports 1024:65535 added to destination
Applied in changeset commit:"4937fc88d1f0f9bf5b4d0268797de7a6e6ddcecc". Anonymous
01:01 PM Bug #93 (Closed): Filter log parsing - potential 2.0 bug
I can no longer reproduce this. It may have been a side effect of another bug, or something specific about the log en... Jim Pingle
08:57 AM Revision 297ed624: Fix "Filter rule association" "Pass" option
unknown
04:46 AM Bug #135 (Resolved): Connecting to FTP server causes panic
If you add a port forward for TCP 21 on WAN, and connect to the FTP server from the WAN side, the box panics.
FTP...
Chris Buechler
04:10 AM Feature #132: update OLSRd to 0.5.6-r6
Scott asked because we currently don't know of anyone using it. It's the only feature not in widespread use to our kn... Chris Buechler
03:58 AM Feature #132: update OLSRd to 0.5.6-r6
Currently not.
Our mesh network operators require the users to use r5 or r6, because of some problems in r4.
So...
Daniel Binder
03:33 AM Revision 093bcebc: Move newer xmlreader code to xmlreader.inc. Restore old xmlparse code to xmlparse.inc. Default to the older xmlparse.inc but add a flag check if /cf/conf/use_xmlreader is present the newer code will be included instead until the remaining bugs can be resolved with it (see rcs for many).
Scott Ullrich
03:28 AM Revision 26433cb8: Adding newer xmlreader code to it's own file so that it can be turned and off until remaining bugs are fixed
Scott Ullrich
01:24 AM Revision d1f9da0a: Nuke old dev bootstrap code that is no longer in use
Scott Ullrich

11/06/2009

11:36 PM Bug #134 (Resolved): Active mode FTP causes a panic
To replicate, connect to any FTP server in active mode, and try a directory listing. The box will immediately panic w... Chris Buechler
10:49 PM Bug #127: Empty config entries returned as array
This is wrecking all kinds of things in 2.0, so the new xmlreader has been reverted for the time being.
If you wo...
Chris Buechler
05:46 PM pfSense Packages Bug #133 (Resolved): console change lan ip causes fatal trap 12
Reproduce:
1) Install pfsense-2.0-ALPHA-ALPHA-2009-10-25-1210 into vmware (esxi4) on 0.9gb HD, used default of smp e...
Scott Griepentrog
04:02 PM Feature #132: update OLSRd to 0.5.6-r6
Are you using OLSRd currently in pfS? Scott Ullrich
03:02 PM Feature #132 (Resolved): update OLSRd to 0.5.6-r6
it looks like 0.5.6-r6 is out with some bugfixes ( http://www.olsr.org )
Is it possible to get it into the 1.2.3 r...
Daniel Binder

11/05/2009

03:47 PM Feature #129 (Closed): CNAME support for dnsmasq
Chris Buechler
09:07 AM Feature #129: CNAME support for dnsmasq
I did some more research on this matter.
* There are reasons not to use CNAME records:
http://cr.yp.to/djbdns/n...
znerol znerol

11/04/2009

09:42 PM Bug #131: "Static route filtering" doesn't add rules for routes on WAN
It's intentionally skipped for WAN (and WAN only, OPT WANs are handled correctly - except in the case of a DHCP inter... Chris Buechler
06:11 PM Bug #131: "Static route filtering" doesn't add rules for routes on WAN
That code didn't paste well. Here's a second go at it:... Garret Huntress
06:11 PM Bug #131 (Resolved): "Static route filtering" doesn't add rules for routes on WAN
The "Static route filtering" option (under System -> Advanced) doesn't account for packets entering and leaving the s... Garret Huntress
08:36 PM Bug #111 (Resolved): addresses ending in .224-239 will not policy route
Chris Buechler
08:35 PM Bug #81 (Resolved): Captive portal problems
Chris Buechler
01:53 PM Feature #130 (Closed): Add color picker to rules / nat rows
Add a color picker widget and allow user to pick a color that will appear in the rule row. Scott Ullrich
11:53 AM Feature #129: CNAME support for dnsmasq
No. We would loose too many features such as failover-dhcp (CARP). Scott Ullrich
11:51 AM Feature #129: CNAME support for dnsmasq
I see. Would'nt it be possible to substitude isc dhcpd entirely with dnsmasq? znerol znerol
11:48 AM Feature #129: CNAME support for dnsmasq
Thanks but we cannot migrate to the new version of DNSMASQ until someone writes a replacement for the isc log scannin... Scott Ullrich
11:46 AM Feature #129 (Closed): CNAME support for dnsmasq
As of version 2.46 dnsmasq supports limited support for CNAME entries(1,2). When i was about to test the attached pat... znerol znerol
08:32 AM pfSense Packages Bug #128: squid upstream proxy
https://rcs.pfsense.org/projects/pfsense-packages/repos/mainline/commits/4c09ba4183f227ffc827f08c74e929738796e883 Anonymous
08:30 AM pfSense Packages Bug #128: squid upstream proxy
fixed ! Anonymous

11/03/2009

05:27 PM Revision cf222376: Relax some very strict cases.
Ermal Luçi
05:12 PM Revision f5881023: Be more strict on shaper checking and what is written to config. Clean up whitespace while here.
Ermal Luçi
12:30 PM Revision 154deb02: Unbreak returning the real mem and web interface in general. Pointy-hat-to: Scott.
Ermal Luçi
12:26 PM Revision 101ccd14: Unbreak the wizards. Some one enabled this disabled parts without even testing! Pointy-hat-to: scott@?!
Ermal Luçi
10:53 AM pfSense Packages Bug #128 (Resolved): squid upstream proxy
Using Squid with an upstream proxy, the GUI says to use port 7 to disable ICP protocol, but the config file does not ... Nuno Marques
02:35 AM Revision 8217d34d: Fallback to using hw.realmem and hw.physmem sysctl's when we cannot probe the available memory from bootup log file. RouterStationPRO is an example
Scott Ullrich

11/02/2009

09:27 PM Revision 08b17c6d: Add default load balancing monitor types for ICMP, TCP, HTTP, HTTPS and SMTP from BillM
Scott Ullrich
05:57 PM Revision 361a1b3e: The wizards do not set the rule type and queues should be enabled even on block rules so add the queues to the rules even if the type of rule is not set(which means pass btw). This unbreaks the traffic shaper wizards and block shaping rules.
Ermal Luçi
12:38 PM Revision 3b52c5af: Woops, remove accidental debugging line.
Seth Mos
09:41 AM Revision 2580f584: remove unnecessary cat
Chris Buechler
09:27 AM Revision 5d412624: Cleanup of firewall_nat_out_edit.php, whitespace changes, add curlies
for statements. Unset dstport and natport so the firewall rules do not
break.
Seth Mos
03:31 AM Bug #126: XML parser errors when enabling SSH
This also happens when adding a new interface under Interfaces -> Assign.
Warning: XMLReader::read(): /cf/conf/ba...
Chris Buechler
02:24 AM Bug #126 (Resolved): XML parser errors when enabling SSH
Enabling SSH under System -> Advanced results in this at the top of the screen after saving:
Warning: XMLReader::...
Chris Buechler
02:47 AM Bug #127: Empty config entries returned as array
Here's another instance of something being returned as "Array" when it shouldn't be.
php: : There were error(s) l...
Chris Buechler
02:26 AM Bug #127 (Resolved): Empty config entries returned as array
I've seen this pop up in many text boxes of the web interface, for instance by browsing to Interfaces -> WAN, with th... Chris Buechler
02:08 AM Bug #125 (Resolved): Erroneous "interface not present" alert
after booting a fresh install and logging into the web interface, an alert is erroneously shown:
[interfaces] vr1 i...
Chris Buechler
02:04 AM Bug #124 (Resolved): Polling problems with 8
in system logs after boot with default config.xml:
php: : The command 'sysctl kern.polling.enable=0' returned exi...
Chris Buechler

10/29/2009

12:45 PM pfSense Packages Bug #123 (Resolved): apache_mod_security_settings.xml bad formating.
Applied in changeset commit:"5804c04459a7746b0b73caf42e2e937fcc640f8b". Scott Ullrich
12:05 PM pfSense Packages Bug #123: apache_mod_security_settings.xml bad formating.
Scott Ullrich wrote:
> Which field tag? The file looks OK at first glance.
Look at line 155 on the repository li...
Grégory Boddin
11:45 AM pfSense Packages Bug #123: apache_mod_security_settings.xml bad formating.
Which field tag? The file looks OK at first glance. Scott Ullrich
11:38 AM pfSense Packages Bug #123 (Resolved): apache_mod_security_settings.xml bad formating.
On http://redmine.pfsense.org/repositories/entry/pfsense-packages/config/apache_mod_security/apache_mod_security_sett... Grégory Boddin
03:23 AM Todo #122 (Resolved): Update the miniupnpd pfPort after the 1.2.3 release
There is a typo in miniupnpd, and might as well update the current miniupnpd in the process.
Oct 29 08:18:32 miniup...
Seth Mos

10/28/2009

08:06 PM pfSense Packages Bug #121 (Rejected): Problem with VIA Veloctiy NetworkCard
Hi,
my Via Velocity network card (onboard of my VIA EPIA EN1200EG) runs in this error when I install 1.2.3RC3 new:...
Anonymous
07:46 PM Revision 84fa0d60: Turn off IPSEC net.inet.ip.ipsec_in_use when IPSEC is disabled
Scott Ullrich
02:56 PM Revision ad6722c5: Set sysctl net.inet.ip.ipsec_in_use=1 when starting racoon
Scott Ullrich
01:14 AM Revision 4e3cdd2e: Revert "Fix no nat rules where ports 1024:65535 is added Resolves #120"
This reverts commit 395a0413858c2301732e82d89f6a1b94ea0886f4. Scott Ullrich
01:13 AM Revision 6734081a: Revert "Fix no nat rules where ports 1024:65535 is added Resolves #120"
This reverts commit 8763e56d20eec74f1c4caaea80ac1cfcb46bbe03. Scott Ullrich
12:40 AM Revision 8763e56d: Fix no nat rules where ports 1024:65535 is added Resolves #120
Scott Ullrich
12:40 AM Revision 395a0413: Fix no nat rules where ports 1024:65535 is added Resolves #120
Scott Ullrich

10/27/2009

09:15 PM Bug #120 (New): 1.2.3 RC3 NO NAT rules have ports 1024:65535 added to destination
Scott Ullrich
08:45 PM Bug #120 (Resolved): 1.2.3 RC3 NO NAT rules have ports 1024:65535 added to destination
Applied in changeset commit:"8763e56d20eec74f1c4caaea80ac1cfcb46bbe03". Scott Ullrich
08:16 PM Bug #120: 1.2.3 RC3 NO NAT rules have ports 1024:65535 added to destination
I'm not sure if this is the proper method for fixing this issue, but I modified my /etc/inc/filter.inc file with the ... Garret Huntress
07:57 PM Bug #120 (Resolved): 1.2.3 RC3 NO NAT rules have ports 1024:65535 added to destination
In 1.2.3 RC3, when creating a NO NAT rule, ports 1024:65535 are added to the destination portion of the statement. F... Garret Huntress

10/26/2009

05:14 PM Revision 9694e102: Automatically populate linespeed when prefilling
Scott Ullrich
04:50 PM Revision 9d933d94: Handle secondary DNS correctly for 3G
Scott Ullrich
04:43 PM Revision 1d894eaf: Switch over to handling DNS from ppp.linkup allowing mulitple 3G cards to coexist on the same box
Scott Ullrich
06:08 AM Revision d0c04c77: Kill foreach error
Scott Ullrich
06:06 AM Revision 5870589c: Adding diag_logs_ppp.php
Scott Ullrich
06:02 AM Revision 220ee0de: s/IPsec VPN/IPsec/ to keep the tab behavior
Scott Ullrich
06:00 AM Revision 16bc1e31: Set correct tab title
Scott Ullrich
05:59 AM Revision beb26389: Set title
Scott Ullrich
05:48 AM Revision 295e19dd: Add PPP logging tab
Scott Ullrich
05:40 AM Revision ffeb5acf: Handle uping interfaces a bit more sanely
Scott Ullrich
05:27 AM Revision 7284d850: Revert interfaces_bring_up changes
Scott Ullrich
05:26 AM Revision 2ebf3945: Check to see if interface exists
Scott Ullrich
05:09 AM Revision a6bce436: Add space between interface and real interface brackets
Scott Ullrich
04:55 AM Revision 70af94d7: Add ppp endpoints IP as gateway
Scott Ullrich
04:25 AM Revision 36bf235e: Add and use ppp-script
Scott Ullrich
03:53 AM Revision bb26581c: Move "
Scott Ullrich
03:48 AM Revision f532da19: Remove extra "
Scott Ullrich
03:41 AM Revision 08f03cdf: Add newline
Scott Ullrich
03:29 AM Revision 55563f1b: Give more room to the interfaces td (40%)
Scott Ullrich
03:22 AM Revision 87519eb7: Fix typo (missing ])
Scott Ullrich
03:17 AM Revision 7a6f7c55: Show when configuring interfaces on bootup for newly added interfaces (qinq, ppp, etc)
Scott Ullrich
02:49 AM Revision 5ad9b2a7: Call rc.linkup after up event
Scott Ullrich
02:26 AM Revision b8103b06: Return up instead of running
Scott Ullrich
02:03 AM Revision 2a1226ad: Simplify logic
Scott Ullrich
01:47 AM Revision 30cee7b2: Add dns server discovered with ppp
Scott Ullrich
01:07 AM Revision 8995a99c: Remove booting newline:
Scott Ullrich
12:55 AM Revision 410cdac4: Set booting to true.. not TRUE
Scott Ullrich
12:37 AM Revision 568b1358: When a real interface is passed to get_real_interface() simply pass it back
Scott Ullrich
12:06 AM Revision 77ccab82: On second look, turn on PPP interfaces at the get_interfaces_with_gateway level
Scott Ullrich

10/25/2009

11:57 PM Revision 23557bc3: Add nat on rules for PPP
Scott Ullrich
11:24 PM Revision ec054b7c: s/interface_bring_up/interfaces_bring_up/
Scott Ullrich
11:15 PM Revision 891546ea: Full wlan name is returned now. Use it
Scott Ullrich
11:02 PM Revision b99256c1: Add misc comments
Scott Ullrich
11:02 PM Revision a2934331: Use get_real_interface() and does_interface_exist()
Scott Ullrich
10:31 PM Revision cddb1be2: Do not specify a wlan # and let freebsd decide and return the interface that was created before renaming.
Scott Ullrich
09:31 PM Revision 19e83210: Refactor wireless code a hair making it work on 8.x
Scott Ullrich
09:04 PM Revision 88157f66: Take into account hostap type interfaces
Scott Ullrich
08:37 PM Revision 10394059: Unbreak wireless on 8.x
Scott Ullrich
07:38 PM Revision 46c3f09a: Add links to prefill ATT and Spring settings
Scott Ullrich
 

Also available in: Atom