Activity
From 12/01/2010 to 12/30/2010
12/30/2010
-
09:20 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
- Hi Michel,
Can you copy/paste me (with anonymous IP's and keys) your ipsec section from /cf/conf/config.xml ?
T... -
01:49 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
- but i can see in syslog
php: /status_services.php: The command '/usr/local/sbin/setkey -f /var/etc/spd.conf' retu... -
01:47 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
- working for me :)
-
07:45 PM Revision 02e9880e: Improve parse_config to not be recursive for no reason. This fixes some strange cases of config lock being left held and blocking GUI.
-
06:47 PM Revision f9626e57: Only unlink /conf/needs_package_sync if no packages are installed, otherwise leave it to the package manager to take care of it.
-
01:05 PM Revision 9b1939e1: Move unlink back to the correct line.
-
10:17 AM Bug #1141: smtp authentication not working
- Notes:
- /etc/inc/notices.inc at line 309 should set $smtp->user (and not $smtp->username which does not exist)
- A... -
10:08 AM Todo #1139: Email notification test button
- Also there is no smtp-auth types. there must be some auth methots in my opinion.
TLS, Plain etc. -
09:49 AM Revision eebccaca: Fix PHP warning related to recent update of apc extension.
-
09:30 AM Todo #1144 (Rejected): notifications - E-mail test and smtp TLS or plain auth
- Duplicate of #1139 and #1141 - please look at existing tickets before opening new ones.
-
09:28 AM Todo #1144 (Rejected): notifications - E-mail test and smtp TLS or plain auth
- Hello
there is no test button on Natification setup page
/system_advanced_notifications.php
when I set up a e-m... -
06:03 AM Feature #1104: mwl driver patch to enable generation of new BSSIDs for additional VAPs
- Uploaded an updated patch with a correction to code having to do with limiting the number of APs allowed (limit of 8 ...
-
04:47 AM Bug #337: sticky connections do not work
- Could this freebsd kernel issue be related?
http://www.freebsd.org/cgi/query-pr.cgi?pr=148290 -
04:29 AM Bug #337: sticky connections do not work
- For me sticky connections works for like a minute or 2, then suddenly no connections are possible at all to any host....
12/29/2010
- 11:33 PM Revision e8f4a58f: make rebrand friendly
- 09:27 PM Revision 7385a6b4: Turn off csrf checks
-
09:11 PM Revision f2141df0: Allow entering an arbitrary subnet for outbound NAT translations.
- 08:54 PM Revision d3bea818: Add 10 to row count on textarea
-
08:52 PM Bug #491 (New): Dynamic DNS upgrade code not working
- Closer, everything but the username and password is converted properly. It's completely missing the username and pass...
- 08:48 PM Revision 2388a97d: Nuke newline
- 08:48 PM Revision 5edb6fee: Unbreak installedinfo option
-
07:04 PM Revision 09315582: Add address pool support to outbound NAT. Allow specifying a subnet for outbound NAT rules (via a subnet of proxy arp VIPs) or a host-type alias for outbound NAT rules, and give the user a choice of pool options for address selection from within the pool.
-
06:06 PM Feature #820 (Feedback): Expose interface for PF address pools on outbound NAT rules
- You can now use address pools for outbound NAT in three different ways after commits I made today:
* By picking a ... -
05:26 PM Bug #1030: Interface case change in apinger.conf needs reverted
- I guess it should be mentioned in the release notes at some point then, as many people will have the problem.
Or p... -
05:17 PM Bug #1141: smtp authentication not working
- http://forum.pfsense.org/index.php/topic,31580.msg163359.html#msg163359
-
04:34 PM Bug #1141 (Resolved): smtp authentication not working
- I tried to setup smtp notifications, but it keeps failing with authentication errors.
Another user also verified t... -
05:14 PM Bug #1143 (Rejected): smtp authentication not working
- duplicate of #1141, please stop opening duplicates.
-
05:11 PM Bug #1143 (Rejected): smtp authentication not working
- smtp email notifications setup from the websense interface does not seem to work - fails authentication.
Another u... -
05:13 PM Bug #1142 (Rejected): smtp authentication not working
- duplicate of #1141
-
05:11 PM Bug #1142 (Rejected): smtp authentication not working
- smtp email notifications setup from the websense interface does not seem to work - fails authentication.
Another u... -
04:53 PM Revision a9a5b957: Fix multi_all wizard to properly verify VoIP bandwidth specified.
-
04:52 PM Revision ef6f09b3: Fix multi_all wizard to properly verify VoIP bandwidth specified.
12/28/2010
-
10:39 PM Revision 66bcba1b: Ticket #802. During a config restore detect if the vlan interfaces need reassignment too. This might be problematic for other type of interfaces on 2.0!
-
10:10 PM Revision c3583058: Add radius port and radius accounting port to config if supplied.
-
09:50 PM Bug #1116 (Feedback): IPsec error, racoon won't start with more than one phase 2
-
04:26 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
- Hi !
Jim: I just commited what we concluded a few days ago. If we need more logic, I suppose we could open a new t... -
09:23 PM Revision 8f5c3d8d: Ticket #1116: anonymous sainfo may be used only for single phase2 ipsec VPN's
-
08:04 PM Revision c23b4f0d: Fix case statements, may fix rrd graph generation for certain periods.
-
06:03 PM Feature #1140 (Needs Patch): Option to delete more than one "confguration history" at one time.
- Diagnostics: Configuration History
add an option whitch can delete more than one snapshot.
Additional: option to... -
05:55 PM Bug #1134: Adding new Gateway in interface page does not work
- I used IE. But actual snapshot is fine.
-
04:56 PM Bug #1134 (Closed): Adding new Gateway in interface page does not work
-
01:55 PM Bug #1134: Adding new Gateway in interface page does not work
- It was Firefox. But after update to the latest snapshot it works just fine. No more problems.
-
05:51 PM Bug #1013: Captive Portal Reauthentication broken
- An internal server error happens if I try to upload the config.xml.
http://depositfiles.com/files/3dwu89fko -
05:46 PM Bug #1013: Captive Portal Reauthentication broken
- I reinstalled pfsense from CD. I created the complete configuration via webinterface.
Is there any option to creat... -
05:50 PM Bug #943: 2.0-BETA4 Dynamic DNS updates not working
- Yes, the connection is Comcast Cable with DHCP.
I agree it seems strange, but it happens every time.
Thankfully, th... -
05:18 PM Bug #943: 2.0-BETA4 Dynamic DNS updates not working
- It looks strange to me that your dns updates during dyndns running which is highly unlikely to happen!
Are you on dh... -
05:38 PM Bug #802 (Feedback): Interface reassignment with VLANs after config restore to diff hardware doesn't work
- Committed patch.
-
05:15 PM Revision 8e9adb53: Run filter configure after doing a save on CP.
-
05:10 PM Bug #853 (Feedback): PPPoE Server radius config not applied
- Added the radius port and accounting port to the config.
https://rcs.pfsense.org/projects/pfsense/repos/mainline/co... -
04:57 PM Bug #829 (Resolved): WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
- 04:55 PM Revision 3e360ca7: clarify CSRF failure message
-
04:54 PM Todo #1139 (Resolved): Email notification test button
- Having a test button to be clicked while configuring e-mail notifications is a must.
-
08:23 AM Bug #1121: wireless interface antenna settings not applied at boot
- Is the diversity setting still not showing up in /var/tmp/ath0_wlan0_setup.sh? (do you have it configured for default...
- 05:09 AM Revision a82e6d37: fix text
- 04:23 AM Revision 46a9f4e1: Undo last commit. Need to add an additional check for opackage count == 0
-
01:20 AM Revision 0f288647: Don't include rfc1918 in bogons
-
12:38 AM Revision e240969e: Allow any port to go out for CP. This should unbreak traffic of CP rdr!
12/27/2010
-
07:22 PM Revision 23d69b98: Use convert_friendly_interface_to_friendly_descr in the wol widget, just like on the main page. Ticket #1103
-
07:22 PM Revision e18278d1: Use strtoupper here
- 06:40 PM Revision 6622e126: Unlink needs_package_sync after one pkg has installed OK which means that our internet connection is up.
-
05:52 PM pfSense Packages Bug #770: imspector don't install on 2.0-BETA3-20100727
- I can confirm that instalation is ok, but nothing is logged.
2.0-BETA5 (i386)
built on Mon Dec 27 09:05:00 EST 2010 -
04:41 PM Revision 528992be: Fix OpenVPN NetBIOS settings not propagating from the wizard to the server instance.
-
03:15 PM Bug #1134: Adding new Gateway in interface page does not work
- It works for me on the most current snapshot (2.0-BETA5 (i386) built on Mon Dec 27 09:05:00 EST 2010) with Firefox 3....
-
02:35 PM Bug #1134: Adding new Gateway in interface page does not work
- What browser is this?
-
12:55 PM Bug #1134: Adding new Gateway in interface page does not work
- I can confirm the same problem with 2.0-BETA4 (i386) built on Fri Dec 17 15:11:41 EST 2010. I had to go to Routing ->...
-
05:18 AM Bug #1134 (Closed): Adding new Gateway in interface page does not work
- Adding new Gateway in interface page does not work.
If you klick on "add a new one" and enter a gateway the page s... -
03:09 PM Revision 6b78bed7: Ticket #944. Wehn changing the parent interface make sure to destroy the old vlan before creating the new one. Since vlans use the name of the parent the old interface referencing the old parent vlan will remain intact.
-
01:42 PM Bug #1137 (Resolved): Global reply-to disable checkbox missing from 2.0
- In 1.2.3 there is a checkbox to disable reply-to on WAN rules under System > Advanced. The same option and functional...
-
01:38 PM Feature #1136: Add logic to automatically avoid route-to for static route networks
- Yeah after looking it over some more and in light of it coming from 1.2-RELEASE I've changed the description a bit. I...
-
01:28 PM Feature #1136: Add logic to automatically avoid route-to for static route networks
- Oh, there is no handling of networks reachable via routers other than the gateway on that interface. Just have to dis...
-
01:15 PM Feature #1136: Add logic to automatically avoid route-to for static route networks
- Seth's router was hitting reply-to for a network reachable via static route, so there may still be a bug then.
-
12:47 PM Feature #1136: Add logic to automatically avoid route-to for static route networks
- We already automatically bypass reply-to for directly connected subnets via a kernel patch, have since 1.2.3 (at leas...
-
12:32 PM Feature #1136: Add logic to automatically avoid route-to for static route networks
- Note that this was hit when someone upgraded from a 1.2-RELEASE box. 1.2.2/1.2.3 had a global reply-to disable checkb...
-
10:11 AM Feature #1136 (New): Add logic to automatically avoid route-to for static route networks
- If pfSense is in use as an intermediate router (multiple networks on LAN and WAN directly connected or reachable by d...
-
09:24 AM Bug #829: WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
- Ermal Luçi wrote:
> It does not matter really if it was WAN/LAN/OPT# ... Just test if it works as you expect.
the... -
08:34 AM Bug #829: WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
- It does not matter really if it was WAN/LAN/OPT# ... Just test if it works as you expect.
-
09:17 AM Bug #1135 (Rejected): Empty DHCP client hostname and client identifier in GUI not respected
- While replacing my telco router with pfSense I came across an issue where the telco DHCP server would not respond to ...
-
09:15 AM Bug #944 (Feedback): Moving VLANs to lagg doesn't remove old VLANs
- Committed the fix even on vlan config page.
Please test! -
08:31 AM Bug #1013: Captive Portal Reauthentication broken
- Can you give me a packet trace and your config.xml about this?
-
05:31 AM Bug #1013: Captive Portal Reauthentication broken
- Does still not work at
2.0-BETA5 (i386)
built on Sun Dec 26 01:03:42 EST 2010
Same behaviour. -
05:26 AM Bug #1075: rrd graphs missing / duplicate
- Sorry for the delay.
The Problem is still there.
See attached screenshot of recent
snapshot.
12/26/2010
-
02:04 AM Bug #755: dnswatch not working
- Chris Buechler wrote:
> Warren: have you tested this?
Yeah - it was working 100%. I could not test for extended p... -
01:23 AM Bug #1121: wireless interface antenna settings not applied at boot
- i tried the latest snap now what happens is as soon as the system boots the values r
dev.ath.0.txantenna: 0
dev.ath... -
12:02 AM Revision c9d174df: Properly ignore the local link addresses
12/25/2010
-
11:40 PM Revision 196b6749: call interfaces_gif_configure() before proceeding with system routing configure so that the tunnel is up when adding routes.
-
11:00 PM Revision e802607f: Fix the group for dhcpd
- 09:32 PM Revision 2b656168: fix text
- 09:19 PM Revision 33802679: fix text
- 09:06 PM Revision 9422a50f: default to single host on 1:1 NAT as it always has and is the most common usage
- 08:56 PM Revision df0c55a3: switch back to Internal rather than Source, Source is just confusing
- 08:43 PM Revision 3ec4b9de: update bogons
- 06:51 PM Revision 7dbbaecd: More misc pkg install txt fixups
- 06:50 PM Revision f169e274: More misc pkg install txt fixups
- 06:45 PM Revision 73e52b99: Add newline after restoring libs
- 06:40 PM Revision 4c6a49d7: backup and restore libs in correct location
- 06:38 PM Revision 2b216e51: misc text formatting fixes (tabs)
-
06:36 PM Bug #829: WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
- Alexandre Paradis wrote:
> Right now it seems to work, but my pppoe was on a OPT1 interface, i will try again on ano... -
06:35 PM Bug #829: WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
- Right now it seems to work, but my pppoe was on a OPT1 interface, i will try again on another box with pppoe as prima...
-
06:24 PM pfSense Packages Bug #770 (Resolved): imspector don't install on 2.0-BETA3-20100727
-
05:27 PM pfSense Packages Bug #770: imspector don't install on 2.0-BETA3-20100727
- Seems to work now !
Beginning package installation for imspector...
Downloading package configuration file... d... - 06:07 PM Revision 9b3ade76: Increase textarea col size now that there is a lot more pkg install/deinstall information being output
- 06:04 PM Revision b2dd7ab4: Only backup libraries at the beginning of the deinstall cycle.
- 06:03 PM Revision 7102210a: Add tab
- 05:52 PM Revision d96623ef: Add newline after installation aborted
- 05:51 PM Revision 76a6d6ae: s/Trying to download/Downloading
- 05:34 PM Revision 62743ffa: Version bump to 2.0-BETA5. Merry christmas!
- 05:20 PM Revision e9c7a334: Backup system libraries and restore during pkg deinstall.
-
05:19 PM Bug #1075 (Feedback): rrd graphs missing / duplicate
-
05:13 PM Bug #555 (Resolved): Certificate Revocation List (CRL) missing from Certificate Manager
-
04:56 PM Bug #950 (Resolved): Package installation failures leaves package installed
-
04:54 PM Feature #935: User manager RADIUS authentication method
- needs refinement in the future
-
04:54 PM Feature #935 (New): User manager RADIUS authentication method
-
04:53 PM Bug #912 (Resolved): PPTP/PPPoE/L2TP VPN logs missing
-
04:53 PM Bug #987 (Resolved): PPPoE Server instances cannot be disabled
-
04:52 PM Bug #714 (Resolved): Cellular RRD Graph Shows w/o 3G Modem Installed
-
04:52 PM Bug #863 (New): floating rules breaks passive mode ftp
-
04:51 PM Bug #1123 (Resolved): FEC type lagg not shown as VLAN-capable
-
04:51 PM Bug #1101 (Resolved): Wake-on-Lan display issue
-
04:51 PM Bug #1025 (Resolved): OpenVPN in client mode requires local port set for multiple instances
-
04:50 PM Feature #934 (New): Add RADIUS support to Diag>Auth page
-
04:48 PM Bug #959 (Resolved): Config sync removes alias VIPs on the slave
-
04:47 PM Bug #841 (Resolved): hostapd doesn't work with spoofed MAC (but should be able to)
-
04:45 PM Todo #765 (Resolved): Patch: Add custom DHCP configuration
-
04:43 PM Bug #944 (New): Moving VLANs to lagg doesn't remove old VLANs
- Still leaves behind the old VLAN. ...
-
04:41 PM Bug #921 (Resolved): Gateway monitoring stops after interface goes down
-
04:41 PM Bug #786 (Resolved): UDP traffic blocked by a floating rule
- can't replicate
-
04:38 PM Todo #764 (Resolved): Patch: Add per-host netboot filename to DHCP static mappings
-
04:37 PM Feature #810 (Resolved): Allow multiple servers for DHCP relay
-
04:37 PM Bug #743 (Resolved): Installation: textual label: (Select task="Advanced Installation") <> (Are you sure="Custom Install")
-
04:36 PM Bug #725 (Resolved): DHCP Relay missing logic for dynamic routes
-
04:36 PM Bug #88 (Resolved): TXCSUM forced on at boot which breaks wireless bridging
-
04:34 PM Bug #821 (Resolved): Captive Portal URL redirect macro is not correct when using a forced redirect
-
04:33 PM Bug #774 (Resolved): $priv array defined in priv.defs.inc doesnt store all match values
-
04:33 PM Bug #657 (Resolved): Setting IBSS on a wireless interface doesn't take effect when applied
-
04:33 PM Bug #645 (Resolved): OpenVPN Settings do not sync to peers
-
04:32 PM Bug #646 (Resolved): DHCP Daemon settings do not sync to peers
-
04:32 PM Feature #635 (Resolved): Update ipfw-classifyd
-
04:32 PM Bug #388 (Resolved): Setup GEOM Mirror with BSD Installer errors out
-
04:28 PM Bug #755: dnswatch not working
- Warren: have you tested this?
-
04:27 PM Bug #682 (New): WAN traffic graph is broken with MLPPP
-
04:26 PM Bug #853 (New): PPPoE Server radius config not applied
- Ports for RADIUS and accounting are still not used
-
04:22 PM Bug #715 (Resolved): RRD Graph on Throughput Contains No Info
-
04:22 PM Bug #632 (Resolved): Change type of Virtual IP not work.
-
04:21 PM Feature #861 (Resolved): Clicking MAC Address in DHCP Leases Sends WOL Packet
-
04:21 PM Bug #835 (Resolved): Captive portal non redirecting correctly when logout popup is enabled
-
04:20 PM Feature #951 (Resolved): CARP doesn't sync Layer 7 rule groups
-
04:20 PM Bug #920 (Resolved): Routing groups don't change monitor IP address when PPPoE reconnects
-
04:20 PM Bug #892 (Resolved): loader.conf.local changes lost after nanobsd upgrade
-
04:19 PM Bug #947 (Resolved): existing lagg members should not be able to be added to lagg
-
04:18 PM Feature #1086 (Resolved): [patch] CARP IPs as outer source addressed for GRE and GIF tunnels
-
04:17 PM Bug #883 (Resolved): Renaming gateway doesn't update static routes
-
04:15 PM Bug #960 (Resolved): Problem with config sync + ipsec + special characters
-
04:15 PM Bug #985 (Resolved): L2TP server is not using renamed interfaces
-
04:15 PM Bug #1022 (Resolved): DNS rebind check blocks web gui access to configured host if changed during setup wizard
-
04:12 PM Bug #695 (Resolved): In firewall rules and NAT some wrong displaying.
-
04:12 PM Bug #907 (Resolved): Prefer older IPsec SAs doesn't change when checked/unchecked
-
04:11 PM Bug #954 (New): Switching to manual outbound NAT creates incorrect rule for PPTP server
- Not fixed. It uses the server address rather than the client addresses.
-
04:10 PM Bug #1006 (Resolved): XMLRPC sync from the CLI as well as the UI Fail on error conditions
-
04:09 PM Bug #1051 (Resolved): radius support in racoon
-
04:08 PM Bug #1015 (Resolved): Gateways IP subnet check needs to check IP aliases
-
04:07 PM Bug #1018 (Resolved): Dynamic DNS issue with multiple Dyndns-Entries
-
04:07 PM Bug #1066 (Resolved): Remove old dynamic caches
-
04:06 PM Bug #1041 (Resolved): IP Alias VIPs are not available for use by IPsec
-
04:06 PM Bug #1132: bogons table not kept after upgrade
- Scott probably fixed it in Revision e584baa8903c7f83d8de6440563b200aacd1e53c
Will check in next snapshot. -
03:42 PM Bug #1132 (Closed): bogons table not kept after upgrade
- that's by design. copy included with releases has been updated.
-
12:46 PM Bug #1132 (Closed): bogons table not kept after upgrade
- The bogons table is kept updated after a reboot without upgrading, but its being overwriten when we update to a newer...
-
04:05 PM Bug #1096 (Resolved): pf TSO patch fallout - squid (and potentially other) issues
-
04:05 PM Bug #1073 (Resolved): Disabled 1:1 NAT entries need to be grayed out
-
03:51 PM Bug #1093 (New): Problems with em(4)
- This is obviously not entirely fixed, though the bulk of the issues are gone. Something bad in the RELENG_8 driver st...
-
03:49 PM Bug #1106 (Resolved): Error in boot process
-
03:43 PM Bug #1133: Static DHCP lease showing offline
- wouldn't scale, and would take way too long to load the page. It works, I just tried it.
-
03:41 PM Bug #1133: Static DHCP lease showing offline
- even if i ping from the lan interface, its still offline. maybe we could setup a way to ping certain specific lease s...
-
03:39 PM Bug #1133 (Rejected): Static DHCP lease showing offline
- works fine. the host has to be active in the firewall's ARP cache to show online, so it won't if it's not accessing t...
-
02:57 PM Bug #1133 (Rejected): Static DHCP lease showing offline
- Static dhcp lease is showing offline in the dhcp lease page, even if the computer is online.
12/24/2010
-
04:47 PM Bug #1130: NAT reflection broken...
- Seems related to the fact that if port 80 is used for access to the webgui, port 80 doesnt seem to be able nat reflec...
-
06:01 AM Bug #1130 (Resolved): NAT reflection broken...
- I cant get NAT reflection to work or stay working.
The recent build got it working again, until I changed it and c... -
09:19 AM Bug #1093: Problems with em(4)
- Then close it. I am not buying another NIC to test it. I can say that the PCI Express NIC I have never had any trou...
-
07:34 AM Bug #1093: Problems with em(4)
- I'm on i386 full latest and never had any problems either. I got 2 dual GBit intel pci-x nics using em drivers..
-
07:16 AM Bug #1093: Problems with em(4)
- I am using 23rd Dec BETA4 amd64 on vmware with em driver.
I have been using this for some time and have never ha... -
09:11 AM Bug #757: PPPoE Disconnect button with multiple PPPoE interfaces
- Hi there - I'm still following this issue. I will update to the latest snap when I'm back onsite later today and rep...
-
07:06 AM Bug #1106: Error in boot process
- I have not seen this error on yesterday's BETA4.
I have rebooted twice just to be sure so I think it is safe to ... -
06:58 AM pfSense Packages Bug #1131 (Closed): str_split function missing in squidGuard
- squidGuard gives errors under pfSense 1.2.3 because php4 does not provide the str_split function required by squidGua...
-
06:52 AM pfSense Packages Bug #719: Squid doesn't use local DNS cache (and fails after WAN failover)
- i agree that this is a good idea especially when running in a multi-wan environment where upstream proxies are used t...
-
03:38 AM Bug #1081 (Resolved): traffic shaper wizard loops endless back to VOIP-settings
-
02:49 AM Bug #1081: traffic shaper wizard loops endless back to VOIP-settings
- ok under 2.0-BETA4 (i386) built on Thu Dec 23 13:17:58 EST 2010
12/23/2010
-
08:39 PM Bug #636: layer7 not work correctly
- Just updated to 2.0-BETA4 (i386) built on Thu Dec 23 15:39:33 EST 2010. Created a new L7 group for HTTP. Applied the ...
-
08:11 PM Revision 1916d34a: Instead of replacing the whole array just add the new vlanif member to the config. Should fix issues reported in http://forum.pfsense.org/index.php/topic,28202.15.html
-
08:07 PM Revision 5af3a589: Add some more safe belts and remove code that is commented from long time now. Reported on http://forum.pfsense.org/index.php/topic,28202.15.html
-
08:06 PM Revision e503c44a: Add some more safe belts and remove code that is commented from long time now. Reported on http://forum.pfsense.org/index.php/topic,28202.15.html
-
07:19 PM Revision c6c26178: Add OSPF to firewall rule protocol choices
-
06:41 PM Revision 60b66b60: Ticket #1128. Ooops pass the right parameter to unlock.
-
04:21 PM Revision 057c83f5: Accept # for a DNS override domain DNS server, this makes dnsmasq ignore a previous less specific domain and use system default name servers instead. So you can override example.com to 10.10.10.2 but www.example.com will consult normal DNS.
-
02:43 PM Feature #1129 (Resolved): Add enable/disable toggle for VPN tunnels
- It would be nice eventually to have an enable/disable toggle button (with a confirmation dialog) for VPN tunnels that...
-
01:58 PM Revision 100b7219: Hanlde the case when advbase is not present especially on previous 2.0 setups.
-
01:48 PM Bug #1127 (Resolved): bug in apinger halts failover and load balancing
- Committed thanks.
-
01:46 AM Bug #1127 (Resolved): bug in apinger halts failover and load balancing
- on pfSense 1.2.3-RELEASE
Running in Failover mode between WAN and OPT1 I noticed that once in a while monitoring ... -
01:40 PM Bug #1128 (Resolved): Captive Portal Error
- Fixed thank you for reporting.
-
11:13 AM Bug #1128 (Resolved): Captive Portal Error
- on Version 2.0-BETA4 (i386) built on Thu Dec 23 03:37:06 EST 2010
After Auth on Captive Portal the following error ...
12/22/2010
-
11:51 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
- Well of course they should, but whether or not both Cisco and Shrew will work with the same config is the question. :...
-
11:47 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
- If you're asking if multiple P2 networks should be supported then YES! I was using this regularly from Shrew and my i...
-
05:46 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
- I think that sounds right, it should do the right thing automatically then.
Not sure if we should prevent someone ... -
05:41 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
- Ok, so:
- for multi p2, use complete sainfo.
- for mobile single p2, for pure-psk or psk/xauth, generate anonymous ... -
03:59 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
- Sounds OK, though we also had reports that the Cisco VPN client would only connect with sainfo anonymous even without...
-
03:09 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
- I check the code a little, we can have "sainfo anonymous" when setting the phase2 to "transport". So for such mobiles...
-
10:32 PM Revision c513c309: Prevent other types of interface for being added to ng_ether(4). It might be the cause of panics reported here http://forum.pfsense.org/index.php/topic,31404.0.html
-
08:51 PM Revision cd3346e2: Ticket #749. Do not create the queues at LAN side for traffic_shaper_wizard_dedicated. Since we cannot control bandwidth its useless to try to handle it(ALTQ was built with this concept in mind).
- 08:41 PM Revision 01184e21: misc comments
-
08:40 PM Revision 44473583: Ticket #749. Do not create the queues at LAN side for traffic_shaper_wizard and traffic_shaper_wizard_multi_all. Since we cannot control bandwidth its useless to try to handle it(ALTQ was built with this concept in mind.
-
08:33 PM Revision 95b71980: Use correct lock.
- 08:05 PM Revision 60e70198: Add back easy install options for UFS and ZFS
-
07:51 PM Revision a8d6ac1a: Ticket #757. Use correct pidfile.
-
05:23 PM Bug #1126 (Resolved): Duplicate "System Activity" in /etc/inc/priv.defs.inc
- Fixes incorrect label that displays in system_groupmanager_addprivs.php Screen shot and git patch attached
- 04:54 PM Revision a3ccdf6e: Add newline and comment header for each disk
- 04:42 PM Revision 4e8d55dd: Include captiveportal.inc if captiveportal_syslog() is not defined.
- 04:41 PM Revision 34507786: Use captiveportal_syslog()
- 04:06 PM Revision ba482f41: Fix whitespace.
- 04:06 PM Revision 9c7b9ba0: Rework how disk definitions are defined per Kris.
- 03:57 PM Revision f6d4854b: Typecast second param for array_merge to silent a warning that is breaking build since we check output of test_php.php looking for a string 'FCGI-PASSED PASSED'
-
03:46 PM Bug #1075: rrd graphs missing / duplicate
- There were some commits related to RRD can you please try a new snapshot.
-
03:45 PM Bug #1107: mpd on AMD64 generates invalid checksums with NAT
- Does you vpn have lower mtu than openvpn?
That would explain it with that DF bit set on packets. -
03:43 PM Revision 1e312328: Add missing semicolon.
-
03:40 PM Bug #749 (Feedback): Downstream queues should not be assigned to LAN interfaces
- Traffic_shaper_wizard, traffic_shaper_wizard_dedicated and Traffic_shaper_wizard_multi_all will not show this problem...
- 03:39 PM Revision 673e8095: nuke trailing carriage returns
- 03:36 PM Revision 2d7bbd65: Nuke trailing carriage returns
- 03:32 PM Revision 4d5bbdfb: White space fixes and (C) for both Ermal and myself
- 03:29 PM Revision 4ac251b8: Log voucher errors. Fix whitespace. Remove trailing c/r
-
03:18 PM Revision 6ac988f1: Display confirmation before sending Wake on LAN packet to clicked MAC address in list of DHCP leases. Ticket #861
-
02:58 PM Revision 3440de72: Change appearance of fields for saved "Additional BOOTP/DHCP Options" to be consistent with other fields on the page.
-
02:54 PM Bug #927 (Closed): 3G modem rendered un-usable by forced cycling of connection
- I do not think there is any issue here so move along.
-
02:51 PM Bug #757: PPPoE Disconnect button with multiple PPPoE interfaces
- Committed the last missing fix.
Please test again. -
02:32 PM Revision f39b73ad: Fix interface names for Wake on LAN entries. Fixes #1101
-
02:29 PM Bug #636: layer7 not work correctly
- Committed another fix can you please try again with newer snapshots.
It will be worth to try even blocking http with... -
02:27 PM Revision 227f2be5: Fix routed starting. Reported-by: http://forum.pfsense.org/index.php/topic,29015.0.html
-
02:08 PM Revision 40eb0394: Fix incorrect variable name.
-
02:05 PM Revision 1930ccb6: Modify comparisons for antenna settings to be more restrictive. Might help with ticket #1121
-
02:02 PM Revision 0d86d650: Remove extra (. Reported-by: http://forum.pfsense.org/index.php/topic,31246.msg161929.html#msg161929
-
01:59 PM Revision 475c1932: Use the provided settings even for HFSC scheduler instead of hardcoding 32Kbit/s speed on VoIP. Also cleanup some whitespace.
-
01:59 PM Revision d526314b: Be consistent on having 1K == 1024
-
01:41 PM Bug #863: floating rules breaks passive mode ftp
- Tested with latest snapshot (2.0-BETA 4 (i386) built on Tue Dec 21 12:44:54 EST 2010), and still not working. Activ...
-
12:40 PM Revision ad65b15a: Fix incorrect merge in vslb.inc
-
11:51 AM Bug #886: RRD graph generation time scaling not written correctly
- hmm, the quality RRD doesn't seem to be working recently, although for entirely different reasons I'm sure.
-
11:17 AM Feature #1103: Wake-on-Lan Widget for Dashboard (with code)
- I just found out about 'convert_friendly_interface_to_friendly_descr()' from another ticket.
Should I submit another... -
10:38 AM Bug #1125 (Resolved): RRD Graphs broken on built on Mon Dec 20 22:18:43 EST 2010
- A fix was already checked in today for this:
https://rcs.pfsense.org/projects/pfsense/repos/mainline/commits/0d86d... -
10:30 AM Bug #1125 (Resolved): RRD Graphs broken on built on Mon Dec 20 22:18:43 EST 2010
- When trying to access the graphs the following error occurs:
Parse error: syntax error, unexpected '{' in /usr/loc... -
10:31 AM Feature #861 (Feedback): Clicking MAC Address in DHCP Leases Sends WOL Packet
- There was already a bit of text that would pop up when you put the cursor over the link. With the addition of the co...
-
09:35 AM Bug #1101 (Feedback): Wake-on-Lan display issue
- Applied in changeset commit:"f39b73ad06be35f2da4b227e4894f56d412e4175".
-
09:17 AM Bug #1121: wireless interface antenna settings not applied at boot
- I've committed a fix for an issue that it may possibly display the wrong option as selected and may possibly save the...
-
12:28 AM Bug #1121: wireless interface antenna settings not applied at boot
- diversity setting command doesn't appear in that file, i pasted the exact contents of the file.
the order of the com... -
09:00 AM Bug #1081 (Feedback): traffic shaper wizard loops endless back to VOIP-settings
- https://rcs.pfsense.org/projects/pfsense/repos/mainline/commits/475c1932c3158a4e9ca718ae3ba2a2eee739ef61
Please tr... - 02:02 AM Revision 9b4e0168: Do not break on header titles
- 01:57 AM Revision a1d3953f: Turn off csrf for dashboard
- 01:25 AM Revision f7bd0032: Remove note about encyrption password only used for encryped fs type. It's handled by enable/disable js code now.
-
01:11 AM Revision d31bc32a: Make the CP locking more granular and make use correctly of exclusive/shared locks where appripriate. This speeds up CP login process.
- 01:09 AM Revision 3da60e0d: Correcly fire delete event
- 12:56 AM Revision 68867598: Fire event for delete too
- 12:52 AM Revision 3be68b60: Auto insert disk size
- 12:52 AM Revision 2fa74698: Default to UFS+S
- 12:28 AM Revision 72c0d2e3: Disable the available space field too
-
12:27 AM Revision eb7aa263: * Use exclusive locking for parts of config involving CP db.
- * Use more strict checking against empty/not set values for timeout and idletimeout
* Do not overwrite idletimeout va... - 12:26 AM Revision bfff9331: nuke the leave one megabyte free on each disk business.
- 12:15 AM Revision 5a04b6d8: Revise not about leaving 1 megabyte free on each disk
- 12:10 AM Revision 3e4fbe67: Turn background of input box red if you over allocate
- 12:07 AM Revision 96b25714: Add delete button. Move the add button to the right of total allocated.
12/21/2010
- 11:53 PM Revision 09348d5f: Oops, check against disksseen variable
- 11:50 PM Revision ec981fc5: Turn background field to green when all disk capacity has been correctly allocated to the various slices.
-
11:45 PM Revision 7513352b: merge the dynamic obtained result with the static maintained list to not avoid strange problems as in Ticket #1123.
-
11:45 PM Revision 31eee4a6: Do not do useless work.
- 11:33 PM Revision 19f6b3c5: Show the capacity of all allocated disks in addition to the amount of space allocated
-
11:11 PM Bug #1121: wireless interface antenna settings not applied at boot
- Is the diversity setting in there as well, or is it missing? Do the commands work when used in the exact order in wh...
-
02:34 AM Bug #1121: wireless interface antenna settings not applied at boot
- i use the atheros based Compex WLM54SAG23 which doesnt have 802.11n so that cant be an issue, on the opt1 page i have...
-
09:26 PM Revision 503f3c65: Fix double click editing of GRE interfaces
-
08:44 PM Bug #919 (Resolved): dynamic gateway handling is broken
- It has been working correctly for several snapshots now.
-
08:43 PM Bug #672 (Resolved): Reflection, netcat usage error
- This avoids errors and does the right thing now.
-
08:42 PM Bug #867 (Resolved): Activating vlan interface via webgui deletes interface
-
08:39 PM Feature #850 (Resolved): Rename "Overload Tables" in the Diagnostics menu to "Tables"
-
08:38 PM Bug #694 (Resolved): Change interface with virtual IPs
-
08:37 PM Bug #823 (Resolved): Adding an interface drops connectivity
- This is done totally differently and in a more smart way now.
-
08:36 PM Bug #758 (Resolved): sshlockout_pf doesn't work on 64 bit
- This is not anymore the case.
-
08:15 PM Todo #1071 (Feedback): Reevaluate locks
- The necessary places for re-evaluation of locks are completed.
If there are other areas this needs to be done post 2.0. -
07:28 PM Bug #1013: Captive Portal Reauthentication broken
- I just committed fixes to this please test latest snapshots.
-
07:03 PM Bug #847 (Resolved): Deleting interface leaves remnant in interface groups
-
07:02 PM Bug #1058 (Resolved): filterdns not honoring quit signal
-
07:02 PM Bug #911 (Resolved): Need option to disable state killing on WAN failure
- Confirmed working from forums.
-
07:01 PM Bug #1061 (Resolved): Error after upgrade to latest version
-
06:57 PM Bug #1042 (Resolved): CARP VIP Descriptions incorrect on IPsec/OpenVPN
-
06:54 PM Bug #863: floating rules breaks passive mode ftp
- This should be ok on latest snapshots as confirmed by others.
Please confirm or this will be put to resolved status. -
06:46 PM Bug #1123 (Feedback): FEC type lagg not shown as VLAN-capable
-
06:55 AM Bug #1123 (Resolved): FEC type lagg not shown as VLAN-capable
- lagg using FEC do not show up as VLAN-capable, though it works w/VLANs when manually hacked in.
-
04:41 PM Revision d776efd8: Black list gre interfaces from bridge member list since they cannot be part of a bridge.
-
04:38 PM Revision a2ec32a9: Reconfigure the assigned interface settings if we are modifying the clone settings from interfaces->assign->TYPE.
-
04:38 PM Revision dbdcaef4: Use 1024 not 1000 in conversion.
-
04:35 PM pfSense Packages Feature #1100 (Feedback): Add additional ports to squid (includes patch)
- Applied in changeset commit:"dd44ad60dc3f3f7e736e26644f7ea706127a6779".
-
01:31 AM pfSense Packages Feature #1100: Add additional ports to squid (includes patch)
- This is the correct one.
The SSH program I use to copy the files from my pfSense dev box to my regular computer some... -
01:29 AM pfSense Packages Feature #1100: Add additional ports to squid (includes patch)
- Of course, again, I upload the wrong files.
Please wait... -
01:27 AM pfSense Packages Feature #1100: Add additional ports to squid (includes patch)
- OK. I moved the options to the AC page.
-
01:01 PM pfSense Packages Bug #1124 (Resolved): Bandwidthd has missing dependencies
-
01:00 PM pfSense Packages Bug #1124: Bandwidthd has missing dependencies
- OK. I removed libpq.so.* from the package builder and rebuilt all packages just to be safe.
-
12:35 PM pfSense Packages Bug #1124: Bandwidthd has missing dependencies
- Bug seemed to be caused by a failed attempt to install ntop, reinstalling both pfsense and bandwidthd posed no proble...
-
08:09 AM pfSense Packages Bug #1124: Bandwidthd has missing dependencies
- i386 or amd64?
-
08:08 AM pfSense Packages Bug #1124 (Resolved): Bandwidthd has missing dependencies
- I found the following missing dependencies when installing bandwidthd:
libpq.so.5 (from postgresql-client-8.4.4_1.... -
07:06 AM Bug #1122 (Closed): Can't edit lagg entries
- fixed after a gitsync actually, change not in newest snapshot yet.
-
06:45 AM Bug #1122 (Closed): Can't edit lagg entries
- When you edit a lagg entry, it doesn't show the active interfaces on the lagg as being selected, hence you cannot cha...
-
04:33 AM Bug #1102 (Resolved): Captive Portal does not work after upgrade
-
04:17 AM Bug #1102: Captive Portal does not work after upgrade
- Ermal Luçi wrote:
> I fixed it right now.
> https://rcs.pfsense.org/projects/pfsense/repos/mainline/commits/4cc2337... -
03:23 AM Bug #1096: pf TSO patch fallout - squid (and potentially other) issues
- I've been testing squid in transparent mode for the last few days at work and haven't noticed any problems.
Curren...
12/20/2010
-
10:30 PM Revision c7cfbbd8: Reinvent the 8 hour graph period, this one should work properly, needs test
-
10:24 PM Revision d1f48a88: Show on the interface list present members of the lagg.
- 09:48 PM Revision 90b4cc7d: This checkbox enables, remove confusing enable/disable.
-
08:06 PM Revision aadcf6ac: Merge remote branch 'upstream/master'
-
08:06 PM Revision 81afb509: Merge remote branch 'upstream/master'
- Conflicts:
etc/inc/interfaces.inc
etc/inc/vslb.inc
usr/local/www/interfaces.php -
08:01 PM Revision e2c1d6c5: Add a per-entry option for Proxy ARP VIPs of the Network type to disable their expansion on Port Forwards and Outbound NAT screens. Will allow users with large proxy arp subnets used only with 1:1 to still load those pages in a reasonable time. Resolves #1119
-
07:41 PM Revision 49659e1c: Move the CP rule below webConfigurator abusal rule to allow adding the same protection to CP.
-
07:38 PM Revision 4cc23374: Well now that CP has the proper conditions and fastforwarding is disabled by default its needed to untighten a bit the rule of CP with direction out on pf(4).
-
07:11 PM Bug #1121: wireless interface antenna settings not applied at boot
- On a system I just tested it on, it is being applied just fine at boot. What type of card do you have? IIRC, I have...
-
01:37 PM Bug #1121 (Closed): wireless interface antenna settings not applied at boot
- wireless interface antenna settings not applied at boot as well as if u click save on the wireless page
-
05:42 PM Bug #812 (Feedback): RRD graph time axis not locked to latest times with higher average samples
- I have just committed a 8 hour graph in git that should do what I outline above
-
04:20 PM Bug #812: RRD graph time axis not locked to latest times with higher average samples
- It took me a great while and I've just remembered some of the how and what.
The gist of it is this, we do not have... -
05:37 PM Bug #886 (Feedback): RRD graph generation time scaling not written correctly
- in place of the 12 hour timespan I've made the 8hour timespan instead, which is easier to craft. This also has to do ...
-
05:22 PM Bug #636: layer7 not work correctly
- Yes, after every firewall rule change I make, I close uTorrent, clear the states, and start uTorrent back up.
-
04:54 PM Bug #636: layer7 not work correctly
- Did you clear states?
-
05:03 PM Bug #1111 (Resolved): SIGTERM to syslogd after enabling Remote syslog'ing
-
04:34 PM Bug #1111: SIGTERM to syslogd after enabling Remote syslog'ing
- Thanks
this issue is fixed -
04:47 PM Revision 3d04de61: attach to ng_ether(4) only on pppoe/l2tp/pptp links no others.
-
04:43 PM Revision 92a1c8e6: Unbreak pppoe clients. Pointy-hat: myself
-
03:05 PM Feature #1119 (Feedback): Add a per-VIP override to hide it from expansion in drop-down fields
- Applied in changeset commit:"e2c1d6c5cf3fda8b9fb370cdb50d4a3578c8efa6".
-
01:23 PM Feature #1119: Add a per-VIP override to hide it from expansion in drop-down fields
- Lazy loading can be a solution to this too.
We program javascript in the background to load, let say, 1000 entries a... -
08:19 AM Feature #1119 (Resolved): Add a per-VIP override to hide it from expansion in drop-down fields
- For some people using Proxy ARP VIPs on large networks (like a /16) the GUI can be very slow to display certain NAT s...
-
03:02 PM Todo #881 (Resolved): Passive FTP over pfsense
-
02:59 PM Bug #1102: Captive Portal does not work after upgrade
- I fixed it right now.
https://rcs.pfsense.org/projects/pfsense/repos/mainline/commits/4cc233748fa7e79ac743364404152b... -
02:01 PM pfSense Packages Feature #1100: Add additional ports to squid (includes patch)
- One problem with what you have:
squid_resync_nac() which contains your change:... -
11:42 AM Feature #1120 (Closed): Add checkbox on OpenVPN server/client to use cryptodev
- It would be handy to have a checkbox on the OpenVPN server and Client pages that would add "engine cryptodev" into th...
-
12:27 AM Bug #1118 (Resolved): Adding NAT rule based on a NAT rule moves it to bottom of list
- When adding a new NAT rule based on another NAT rule, it adds the new one to the bottom of the list. Doesn't matter m...
12/19/2010
-
10:37 PM Bug #1096 (Feedback): pf TSO patch fallout - squid (and potentially other) issues
- 09:56 PM Revision 10518768: Fire this event later in the script
- 09:50 PM Revision fb34dd22: Add effect when total allocated amount changes
- 09:38 PM Revision e1271f32: Add note about leaving 1 megabyte free
- 09:36 PM Revision 5c5610e9: Reword to not confuse
- 09:35 PM Revision b98e3a72: Comment
- 09:34 PM Revision d9f22217: Add rowhelper_onDelete call
- 09:31 PM Revision 1c53acd3: Nuke function_exists()
- 09:31 PM Revision 8fdc5159: Only for once
- 09:29 PM Revision 346cc87f: Disable changing of allocated box. Merge two functions into one
- 09:23 PM Revision 28a9cb7f: Add and use rowhelper_onAdd which will fire javascript code after adding new row
- 09:15 PM Revision 8e946201: Remove debugging alert()
- 09:14 PM Revision a17f284c: Add rowhelper_onChange variable for row helper and remove the previous function detection code
-
09:08 PM Todo #881: Passive FTP over pfsense
- work for me too.
can connect from the LAN to remote FTP servers using PASV. - 08:51 PM Revision a1532937: Minor formatting fixes
- 08:46 PM Revision b1782537: Correctly --
- 08:37 PM Revision d8c96528: Decrease size by 1 megabyte as some disks are failing
- 08:34 PM Revision 47127d13: Format please wait better with a table
- 08:32 PM Revision a97279db: Style the hr
- 08:22 PM Revision ba0c3651: Save boot manager selection when returning to previous screens
-
08:13 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
- Will probably need some more logic in there then, because several types of mobile configurations will break without j...
-
07:55 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
- Note : the bug seems to be in /etc/inc/vpn.inc, line 640:...
- 08:13 PM Revision 8206c01d: Fix typos. Align to middle in table header row
- 08:11 PM Revision be1be0b8: Jettison the ugly yellow box. Customize the title of each page in the header of table. If an error has occurred do not show the begin installation button.
- 07:40 PM Revision 97e721e7: Fix typos. Only show the encryption notice once.
- 06:40 PM Revision cace4c41: Only show encryption warning once
- 06:21 PM Revision 80f2185d: Only add to total allocated field if the value is above > 0 for the item
- 06:18 PM Revision 611c9b3d: Disable encpass when we are not using an encrypted fstype. Alert to the operator that defining an encpass on an encyrpted volume will require a password on each bootup.
- 06:14 PM Revision 40f9accf: Use full path to binaries. Make savemsg a global
- 06:06 PM Revision 28f9612c: Throw an error if we have an encrypted / without a non-encrypted /boot
-
04:53 PM pfSense Packages Bug #310: Nut needs changes for latest version
- I don't want to be the inpatient en annoying guy,
But could someone implement a fix so it recognizes both types of s... -
03:51 PM pfSense Packages Bug #1117 (Resolved): TinyDNS-- Warning: Invalid argument supplied for foreach() in /usr/local/www/pkg.php on line 241
- dns-server Version 1.0.6.14 running on pfsense 2.0-BETA4 (i386)built on Fri Dec 17 22:35:37 EST 2010 shows
Warnin... -
12:53 PM Bug #636: layer7 not work correctly
- 2.0-BETA4 (i386) built on Sun Dec 19 06:36:15 EST 2010
I have tried all my same combination of firewall rules (def... -
11:09 AM Bug #1102: Captive Portal does not work after upgrade
- Hello,
I've tested today with pfSense-Full-Update-2.0-BETA4-20101219-0151.tgz (built on Sun Dec 19 05:36:18 EST) :... - 12:39 AM Revision 332bb9ab: Remove newline
- 12:24 AM Revision 5faeedc6: Move total allocated box below rowhelper
12/18/2010
- 11:48 PM Revision 4f646415: Add total allocated box that adds up all of the sizes that have been allocated thus far
- 11:05 PM Revision 4b54648c: Rename conf to x counter
- 11:04 PM Revision 99a20c51: Do not allow /conf and inform user to use /cf when making a dedicated conf slice
-
10:58 PM Bug #636: layer7 not work correctly
- Using 2.0-BETA4 (i386) built on Sat Dec 18 09:51:58 EST 2010, I re-applied the Layer 7 rule I'd created before (which...
-
10:46 PM Bug #1116 (Resolved): IPsec error, racoon won't start with more than one phase 2
- Mobile IPsec connection with more than one Phase 2 connections create an invalid /var/etc/racoon.conf file that preve...
- 10:41 PM Revision a16d38c9: Fix softupdates
- 09:43 PM Revision b8791a31: Restore encpass as well
- 09:38 PM Revision 4fdc80b1: Save layout on disk. If an installer error occurs the layout will be restored on the rowhelper screen so that you can easily make changes
- 09:20 PM Revision 1ddd4ba3: USe memory *2 for default swap space
- 09:14 PM Revision 502e7c83: Note that .eli are encrypted
- 08:43 PM Revision df40aa86: Be less chatty
- 08:32 PM Revision e9954aef: Do not spam console, spam log
- 08:22 PM Revision 77a842ef: No need to output 'Loading new configuration'. We already have a line written out telling the user what we are doing
- 08:12 PM Revision 81868072: use is_dir(). Sometimes php lack of uniform function names can be annoying.
- 07:57 PM Revision 42ee8bde: Ensure log directory exists before invoking syslogd
- 07:42 PM Revision d64fa7f2: Touch log file so it can be created on livecd
-
02:00 PM Bug #1102: Captive Portal does not work after upgrade
- I just upgrade to 2.0-BETA4 (i386) built on Sat Dec 18 09:51:58 EST 2010, and still the same problem.
Thanks
-
10:59 AM Bug #1115 (Closed): squid bug
- There was already a ticket on here for that, and it was closed because it was fixed. In the future, please update to ...
-
07:33 AM Bug #1115: squid bug
- Fixed on latest upgrade
-
05:30 AM Bug #1115 (Closed): squid bug
- Doesn't work "Transparent proxy" feature.
When it is enabled - blocks all HTTP traffic.
workaround - configuring us... - 07:02 AM Revision cc9464c1: Disable easy options until refactored to work with new rowhelper style post
- 06:25 AM Revision 75a28755: Redirect to / if already installed
- 06:21 AM Revision 37bd1cbb: Misc comments
- 06:06 AM Revision 72b14823: Add mirroring. Default to no boot manager saving a few seconds on bootup
- 04:56 AM Revision dabad9b7: Correct path
- 04:44 AM Revision 2f13a852: We do not need these files
- 04:43 AM Revision e2912927: Add new files
- 04:38 AM Revision 9b8707c3: Catch up to recent FreeBSD-9-CURRENT changes
- 03:49 AM Revision 65c6cdfa: Show begabyte size in addition to pretty formatted style
- 03:44 AM Revision 4d0a1ade: Echo out newline
- 03:30 AM Revision d4e79776: Correct reboot link
- 03:00 AM Revision b526ca11: Unbreak more than 2 slices
- 02:49 AM Revision 8b590740: Auto set 256 and remaining to /
- 01:22 AM Revision 86b521ea: Ignore mountpoint for SWAP
- 01:19 AM Revision ba3feae8: Add rowhelper support
- 01:19 AM Revision d5b2cfd4: Adding support for custom hooks. If the function row_helper_dynamic_custom() exists it will be called and pass a tr object which is the createElement("tr") handle.
- 01:19 AM Revision b176ce91: Honor rowsize.
12/17/2010
-
11:28 PM Revision 7afb7ea9: Safe belts to avoid errors.
-
10:55 PM Revision 67b057a9: Do not attach ng_etther(4) to every system interface. Instead do a search if netgraph is needed on single/every interface during interface configuration. Also enable netgraph support for interface as needed when enabling pptp/l2tp/pppoe/... . This should prevent the netgraph queue to slow down network performance on fast links.
- 10:52 PM Revision 0183a568: Move to index.php.
- 10:10 PM Revision 15226bf3: Moving installer to it's own directory since we will have a number of helper javascript files and such soon
- 09:57 PM Revision 9f154c16: Do not copy non existent /sys
- 09:56 PM Revision a37308b2: Add /boot when encrypting
- 09:52 PM Revision 7168ab88: Pass bootmanager and encryption settings
-
09:35 PM Revision 89058570: Allow carp as parent only to ipalias.
-
09:31 PM Bug #1102: Captive Portal does not work after upgrade
- That date is an hour before the fix was committed and comment here. "test new snapshots" always means a date of at le...
-
09:23 PM Bug #1102: Captive Portal does not work after upgrade
- Ermal Luçi wrote:
> Please test new snapshots it should be fixed.
I've just tested 2.0-BETA4 (i386) built on Fri ... -
08:21 PM Bug #1102: Captive Portal does not work after upgrade
- Thomas NOEL wrote:
> Hello,
>
> Found a solution : # /sbin/sysctl net.inet.ip.fastforwarding=1
>
> I think the... -
03:51 PM Bug #1102 (Feedback): Captive Portal does not work after upgrade
- Please test new snapshots it should be fixed.
-
01:46 PM Bug #1102: Captive Portal does not work after upgrade
- Thomas NOEL wrote:
> Can you try this (on a shell) :
> # /sbin/sysctl net.inet.ip.fastforwarding=1
>
> It work... -
10:20 AM Bug #1102: Captive Portal does not work after upgrade
- Same problem here! As soon as I enable captive portal there is no redirect and no more internet access on that interf...
-
08:12 AM Bug #1102: Captive Portal does not work after upgrade
- gerard grazzini wrote:
> with 2.0-BETA4 (i386) built on Fri Dec 17 01:17:30 EST 2010
> the Captive Portal still be ... -
07:14 AM Bug #1102: Captive Portal does not work after upgrade
- with 2.0-BETA4 (i386) built on Fri Dec 17 01:17:30 EST 2010
the Captive Portal still be broken for me ... -
04:39 AM Bug #1102: Captive Portal does not work after upgrade
- Hello,
Found a solution : # /sbin/sysctl net.inet.ip.fastforwarding=1
I think the regression came from commit:4... -
09:31 PM Revision 82db1bc5: More safety belts. Do not allow a carp referenced by an ipalias to be deleted.
-
09:22 PM Revision b3c1391a: Fallback to the sane limit of 255 now that the patch is backed out.
-
09:19 PM Revision a5a6ab28: Add safety belts since only aliases on same subnet can be added to an carp(4)
-
09:11 PM Revision dc2bb9e5: Allow ip aliases to be added to vips.
- 08:49 PM Revision 6b740881: Allow setting none for boot manager to turn off F1 pfSense
- 08:34 PM Revision ffdc499a: Show when disk is encrypted. Do not uppercase .eli
- 07:32 PM Revision d48927b4: Supply encpass if needed
-
06:34 PM Bug #1087: vouchers need to save to CF periodically
- I committed code to prevent that foreach error.
-
06:34 PM Bug #1030: Interface case change in apinger.conf needs reverted
- Well as it is now it cannot use any lowercase name since it uses the gateway name!
Possibly on 2.x++ this can be fix... -
06:29 PM Feature #385: Allow the use of Captive Portal to restrict services on the firewall itself.
- Well there is a possiblity to add an ipfw rule with direction out and keep-state to provision this!?
-
06:27 PM Bug #1072 (Closed): Issues with increased CARP VHID limits
- This is not anymore present in builds.
-
06:19 PM pfSense Packages Bug #1110 (Resolved): libgd.so.4 => not found (0x0) - bandwidthd won't start
- I just installed OK on both i386 and amd64. All expected dependencies installed, ldd showed all libraries present.
... -
05:47 PM pfSense Packages Bug #1110: libgd.so.4 => not found (0x0) - bandwidthd won't start
- Nah just uninstall the package by hitting the 'x' on the Installed Packages screen. Then find it in the list and try ...
-
05:41 PM pfSense Packages Bug #1110: libgd.so.4 => not found (0x0) - bandwidthd won't start
- Hello Jim,
just did the following on amd64:
- Update to Vesion 2.0-Beta4 from Fri Dec 17 01:17:30 EST 2010 to hav... -
06:19 PM Revision f8895161: Add missing - in syslogd command line parameters, fixes #1111
-
04:51 PM Bug #1088 (Resolved): CARP sync broken
-
04:46 PM Bug #1088: CARP sync broken
- Tested with 2.0-BETA4 (i386) built on Fri Dec 17 01:17:30 EST 2010
Revision: http://redmine.pfsense.org/projects/pf... - 04:09 PM Revision d9587b98: Add on disk encryption options and ability to set a encpass to the experimental installer
-
03:53 PM Bug #636: layer7 not work correctly
- I committed a change, please test newer snapshots.
- 03:53 PM Revision 6141561c: Add newline after 99 menu option. Otherwise it looks very strange.
-
03:32 PM Revision 3aad9551: When we supply a version number, it should be under All/ and not Latest/ (which has names but no version numbers)
-
01:20 PM Bug #1111 (Feedback): SIGTERM to syslogd after enabling Remote syslog'ing
- Applied in changeset commit:"f889516190ab1ec29ab533c662d932bb4f02c392".
-
12:55 PM pfSense Packages Bug #1098 (Resolved): Squid Installation fail on 2.0-BETA4 (amd64) built on Wed Dec 8 22:08:02 UTC 2010
-
12:24 PM pfSense Packages Bug #1098: Squid Installation fail on 2.0-BETA4 (amd64) built on Wed Dec 8 22:08:02 UTC 2010
- Yes installed and running.
-
03:08 AM Feature #1113: WAN Interfaces with the same Gateway
- ok, but couldn't be an arp-proxy the solution of the problem ?
Falk -
02:14 AM Feature #1113: WAN Interfaces with the same Gateway
- There's one ARP table for the entire system regardless of how many NICs or jails or routing tables you have, and that...
-
02:08 AM Feature #1113: WAN Interfaces with the same Gateway
- excuse my investigation, its only for my understanding. if I wish to send an ip-packet from my box to an ip-adress, i...
-
01:16 AM Feature #1113: WAN Interfaces with the same Gateway
- layer 2 is the issue, not layer 3.
-
01:14 AM Feature #1113: WAN Interfaces with the same Gateway
- Yes You are right its ugly, but a small router with a 9V DC power supply beside is much uglier. I thought, that in Fr...
-
12:45 AM Revision f444c396: Prevent division by zero if the file size is zero.
12/16/2010
-
10:36 PM pfSense Packages Bug #1110: libgd.so.4 => not found (0x0) - bandwidthd won't start
- It should be all clear on i386 now, too.
-
03:32 PM pfSense Packages Bug #1110: libgd.so.4 => not found (0x0) - bandwidthd won't start
- FYI- It should be OK on amd64 now:...
-
02:32 PM pfSense Packages Bug #1110: libgd.so.4 => not found (0x0) - bandwidthd won't start
- sorry i can only test the amd64 packages right now; still experiencing the same error
-
02:27 PM pfSense Packages Bug #1110 (Feedback): libgd.so.4 => not found (0x0) - bandwidthd won't start
- This should have been set to feedback, not resolved just yet.
-
02:25 PM pfSense Packages Bug #1110 (Resolved): libgd.so.4 => not found (0x0) - bandwidthd won't start
- I did quite a bit of cleanup on the i386 package build machine today and did a complete fresh run just now. Can you t...
-
02:17 PM pfSense Packages Bug #1110: libgd.so.4 => not found (0x0) - bandwidthd won't start
- Hi,
i can confirm this issues. Running 'ldd /usr/local/bandwidthd/bandwidthd' as mentioned in Issue 1033 show a mi... -
06:56 PM Revision 979c5783: Make $rel lowercase, since that's how it is on FreeBSD's package servers.
-
03:12 PM Revision 9c4c5e80: If the IP stays the same, still resync VPNs if it's a PPP type interface.
-
03:12 PM Revision ebbae443: Move these back, it may not play nice with DHCP renews
-
02:57 PM Revision b7c38b2e: Move IPsec up too, it should always resync.
-
02:55 PM Revision 4d3367b1: OpenVPN needs resync even if the IP did not change, because the IP may have disappeared and caused it to exit.
-
02:38 PM pfSense Packages Bug #1114 (Resolved): Snort Dashboard Widget has wrong link
- When activating the Dashboard Widget for snort and clicking the widget title '' it leads to the url https://snort/sno...
-
02:29 PM Feature #1113: WAN Interfaces with the same Gateway
- that's not a viable solution for the same reasons it doesn't work without having a jail, and it's extremely ugly. it'...
-
02:15 PM Feature #1113: WAN Interfaces with the same Gateway
- excuse, but my proposal is not the duplicate of the problem, what is part of the system, it is a way for the solution...
-
01:58 PM Feature #1113 (Rejected): WAN Interfaces with the same Gateway
- duplicate of #228. please look at the open features before opening one.
-
01:55 PM Feature #1113 (Rejected): WAN Interfaces with the same Gateway
- if someone has two Cablemodems from the same provider and get via DHCP different IP-Adresses, but the same gateway, t...
-
01:56 PM pfSense Packages Bug #1091 (Closed): snort - mysql package installation fails
- Duplicate of #1080
-
01:52 PM pfSense Packages Bug #1091: snort - mysql package installation fails
- Think this is a duplicate to Bug #1080 which i just updated a few seconds ago
-
01:54 PM pfSense Packages Bug #668: Snort does not deinstall properly
- just for the record. I just did a deinstall / install for another ticket and had no issues with deinstalling.
(updat... -
01:51 PM pfSense Packages Bug #1080: Snort Installation fails
- Thx to Dienis this helps intalling snort package, but i also experienced this error. AFAICS it depends on the url's u...
-
12:47 PM Bug #1111: SIGTERM to syslogd after enabling Remote syslog'ing
- I confirm this bug.
-
06:51 AM Bug #1111 (Resolved): SIGTERM to syslogd after enabling Remote syslog'ing
- In Status->System Logs->Settings
When enabling "Enable syslog'ing to remote syslog server"
syslogd gets terminat... -
12:42 PM Feature #1103 (Resolved): Wake-on-Lan Widget for Dashboard (with code)
- If it tested ok, I'll go ahead and close the ticket out.
Thanks for the contribution!
-
12:35 PM Feature #1103: Wake-on-Lan Widget for Dashboard (with code)
- It looks like it is working in "2.0-BETA4 (i386) - Thu Dec 16 04:59:28 EST 2010"
I tested display with 1, 2, and 3 e... -
10:32 AM Bug #1112 (Resolved): IPsec GUI/backend missing RADIUS support
- The User and Group choices for User Authentication in the IPsec Mobile GUI are hardcoded to only show "System" and no...
-
09:39 AM Bug #1102: Captive Portal does not work after upgrade
- Yes, that update should no longer contain the patch in question. So it may not be related to that one after all.
-
09:37 AM Bug #1102: Captive Portal does not work after upgrade
Tested pfSense-Full-Update-2.0-BETA4-20101216-0237.tgz : no redirection... :(
Does this update include the (anti...-
03:21 AM Bug #1096: pf TSO patch fallout - squid (and potentially other) issues
- Updated to:
2.0-BETA4 (i386)
built on Wed Dec 15 20:50:23 EST 2010
Seems to work fine so far. -
12:19 AM Revision 451e4a05: Fix condition that needed to be negated after a recent layout change here and prevent a PHP warning if there are no voucher rolls. Fixes #1106
12/15/2010
-
10:43 PM Bug #1093: Problems with em(4)
- Arrggghhh!! Problem came back. page fault related to the intel nic.
-
09:32 PM Bug #1093: Problems with em(4)
- I just reinstalled the Intel GB NIC. Loaded a build earlier today, and then just upgraded the build this evening. Al...
-
10:20 PM Feature #385: Allow the use of Captive Portal to restrict services on the firewall itself.
- I just brought this up on the forum this week (http://forum.pfsense.org/index.php/topic,31079.0.html)
Regular user... -
08:05 PM Bug #1102: Captive Portal does not work after upgrade
- What was new at that time is the patch that was backed out of the firmware updates I built above, and it will also be...
-
07:57 PM Bug #1102: Captive Portal does not work after upgrade
- Thomas NOEL wrote:
> Thomas NOEL wrote:
> > the captive portal works with pfSense-Full-Update-2.0-BETA4-20101201-2... -
02:17 PM Bug #1102: Captive Portal does not work after upgrade
- Thomas NOEL wrote:
> the captive portal works with pfSense-Full-Update-2.0-BETA4-20101201-2252.tgz
works with pf... -
01:37 PM Bug #1102: Captive Portal does not work after upgrade
- Thomas NOEL wrote:
> However, I tested this firmware (...)
Just for information : the captive portal works with ... -
12:35 PM Bug #1102: Captive Portal does not work after upgrade
- Olé,
Jim P wrote:
> (...) It would help us narrow down the problem if you
> could test with the appropriate firm... -
11:07 AM Bug #1102: Captive Portal does not work after upgrade
- As a test, I have built a custom firmware image without the TSO patch that Chris mentioned. It would help us narrow d...
-
10:56 AM Bug #1102: Captive Portal does not work after upgrade
- Hello, the probleme is present for me too with build on : built on Tue Dec 14 05:32:26 EST 2010
and the probleme is ... -
06:20 AM Bug #1102: Captive Portal does not work after upgrade
- Same here happened on snapshot 14December, 13 December, 8December.
So now I'm using December 1 snapshot. -
07:25 PM Bug #1106 (Feedback): Error in boot process
- Applied in changeset commit:"451e4a05edd8f1a65dde0e32f7d6015c3c20cfcb".
-
07:10 PM Bug #1106: Error in boot process
- I found that there was a change yesterday that unintentionally made it so that code would run when vouchers are disab...
-
06:39 PM Bug #1106: Error in boot process
- Erik Fonnesbeck wrote:
> Looking at the source code, it looks like that probably means you don't have any voucher ro... -
06:33 PM Bug #1106: Error in boot process
- Looking at the source code, it looks like that probably means you don't have any voucher rolls yet. However, this is...
-
01:20 PM Bug #1106 (Resolved): Error in boot process
- I am not sure how important this is, but I saw this error flash by during boot:
Enabling voucher support...
Warni... -
05:07 PM pfSense Packages Bug #1110 (Resolved): libgd.so.4 => not found (0x0) - bandwidthd won't start
- I did everything mentioned in http://redmine.pfsense.org/issues/1033. I'm running latest 2.0 firmware. Here's what I ...
-
04:57 PM Feature #1109 (Duplicate): Allow prepending exception entries to SPD
- I'm using pfsense 2.0 at a remote office, with an IPSEC site-to-site tunnel. Let's say that we have lots of sites, s...
-
03:55 PM Bug #1096: pf TSO patch fallout - squid (and potentially other) issues
- I disabled the patch and have a new snapshot building now. The next new snapshot dated after this update should be OK.
-
03:35 PM Revision 254ac496: Add contributed WOL widget. Resolves #1103
-
01:53 PM Bug #1107 (Resolved): mpd on AMD64 generates invalid checksums with NAT
- The issue is that I think that the checksum for some reason is calculated wrong or byte swapped when routing (with NA...
-
12:21 PM Feature #1099: pptp does not use User Manager
- It has already been changed to reflect that.
-
12:11 PM Feature #1099: pptp does not use User Manager
- Then can the doc wiki be changed to say that this is not the case until the feature works?
Thanks. -
10:40 AM Feature #1103 (Feedback): Wake-on-Lan Widget for Dashboard (with code)
- Applied in changeset commit:"254ac496401b2259a17dc2deee1fa19f963d89c6".
-
09:57 AM Bug #1105 (Closed): WLAN Broadcom BCM 4306 problems -the fw file(bwn_v4_ucode5) not found
- I'm using Broadcom BCM4306 802.11b/g Wireless in my pfSense 2.0 BETA 4 full.
(kernel: FreeBSD 8.1-RELEASE-p2 #1: Tue... -
08:09 AM Feature #1104 (Closed): mwl driver patch to enable generation of new BSSIDs for additional VAPs
- The current version of the mwl driver we are using has something that is disabling the code that generates new BSSIDs...
-
04:22 AM Revision a5e64ca0: Remove config lock for filter reload, since no config file reads or writes are happening here. Ticket #1071
- 03:47 AM Revision fb548cde: No need to use escapeshellcmd here.
-
02:31 AM Bug #1090: clean up interfaces mess in setup wizard
- It is assumed that the port for your WAN connection is already assigned to WAN before the setup wizard is even starte...
-
01:56 AM Bug #1090: clean up interfaces mess in setup wizard
- This is probably obvious, but the Setup Wizard will silently fail to create a valid PPPoE or PPTP link if the WAN is ...
-
12:34 AM Bug #1090: clean up interfaces mess in setup wizard
- As far as I could tell, it doesn't end up writing that to the config between those steps, but it would probably be be...
-
02:20 AM Bug #1072: Issues with increased CARP VHID limits
- In the patch file, I saw this change that commented out this line:...
12/14/2010
-
11:43 PM Feature #1103: Wake-on-Lan Widget for Dashboard (with code)
- Looks like it did not work again.
There is just one line missing from the end.
The last line should be:... -
11:41 PM Feature #1103: Wake-on-Lan Widget for Dashboard (with code)
- Looks like I uploaded and old version of the php file...
-
11:40 PM Feature #1103 (Resolved): Wake-on-Lan Widget for Dashboard (with code)
- This is a dashboard widget for quick access to Wake-on-Lan.
-
11:22 PM Bug #1102: Captive Portal does not work after upgrade
- I'm almost certain this is a duplicate of #1096, which describes the actual cause, but will leave it open to make sur...
-
10:07 PM Bug #1102 (Resolved): Captive Portal does not work after upgrade
- I upgraded to the latest snapshot 14 December but it failed the captive portal
access.
Whenever I activate captiv... -
11:03 PM Revision 622bd5e7: Ticket #1043. Check for '' and not for 'default' since this is the default value of the select.
-
10:59 PM Revision 1d164dd4: Provide a default value to the function for converting kb/Mb to coeficient for math.
-
10:48 PM Revision f5c05fcc: Make voucher xmlrpc error checking the same as others.
-
10:39 PM Revision 666bc4d1: Ticket #1087. Cleanup whitespace and also do not rely on having the db dirty flag set for backing up the dbs but always do this!
-
10:28 PM Bug #1101: Wake-on-Lan display issue
- Ok, it is not quite that simple.
(I would not be surprised if there was already be a function that does this.)
if... -
09:35 PM Bug #1101: Wake-on-Lan display issue
- It looks like a lot of my ticket got cut off.
if ($wolent['interface'] == "lan")
echo "LAN";
else
echo $confi... -
09:32 PM Bug #1101 (Resolved): Wake-on-Lan display issue
- Even if you have renamed the LAN interface, the page still shows saved clients on interface LAN.
The fix is easy, re... -
10:27 PM Revision eaca40df: Cleanup of whitespace and use exclusive lock during reconfiguration of vouchers.
-
10:27 PM Revision c1f9a4df: Set default interval of syncing voucher db to config to 5 minutes instead of 300. Ticket #1087.
-
10:22 PM Revision d12003c9: Revert "Add voucher backup, configurable from Diagnostics > NanoBSD. Fixes #1087" - voucher db backup already existed under a different name. Ticket is still fixed, just by different code that was already there.
- This reverts commit 0d89a2fcac3deea06bdc4a481bbdfae4f18b1ff8.
-
10:21 PM Revision deeaf52c: Revert "Set execute bit on backup script" Not needed.
- This reverts commit d3a217e5d9e615058652cff5881a216c1a91a8c0.
-
10:13 PM Revision d3a217e5: Set execute bit on backup script
-
10:10 PM Revision 0d89a2fc: Add voucher backup, configurable from Diagnostics > NanoBSD. Fixes #1087
-
09:15 PM Revision 95ceb35b: No functional change just simple cleanup.
- 08:59 PM Revision 70ed5a6a: Use file_put_contents()
- 08:57 PM Revision d98d2db3: Redirect to the installedinfo page after package installation giving the system a chance to refresh the menus and the final installation text
-
08:35 PM Bug #1072: Issues with increased CARP VHID limits
- According to packet dump
carp vhid=1
192.168.252.254 > 224.0.0.18: VRRPv2, Advertisement, vrid 1, prio 0, autht... -
07:03 PM Bug #1072: Issues with increased CARP VHID limits
- yes
-
07:01 PM Bug #1072: Issues with increased CARP VHID limits
- Does anyone looking into the issue with broken CARP?
-
07:48 PM Bug #1030: Interface case change in apinger.conf needs reverted
- Changed to uppercase you mean?
I guess the question is: Should it also be reverted to lowercase?
(I think it should... -
06:03 PM Bug #1030: Interface case change in apinger.conf needs reverted
- Well that has changes since long time now.
It is more than 5-6 months it has changed! -
07:13 PM pfSense Packages Bug #1098 (Feedback): Squid Installation fail on 2.0-BETA4 (amd64) built on Wed Dec 8 22:08:02 UTC 2010
- Should be good now. Installs fine after a fresh package builder run.
-
01:17 PM pfSense Packages Bug #1098: Squid Installation fail on 2.0-BETA4 (amd64) built on Wed Dec 8 22:08:02 UTC 2010
- Known issue, something in the nightly rebuild is clobbering it. There's a forum thread already started for it as well...
-
12:36 PM pfSense Packages Bug #1098 (Resolved): Squid Installation fail on 2.0-BETA4 (amd64) built on Wed Dec 8 22:08:02 UTC 2010
- Squid 2.7.9 installation failed with following error on 2.0-BETA4 (amd64) built on Wed Dec 8 22:08:02 UTC 2010
perl... -
07:12 PM Bug #1043 (Resolved): Inadequate input validation on limiters with floating rules
- thanks
-
06:19 PM Bug #1043: Inadequate input validation on limiters with floating rules
- No problem.
It's working now.
Thank you.
-
06:02 PM Bug #1043 (Feedback): Inadequate input validation on limiters with floating rules
- Yeah, thank you for catching that wrong check.
-
06:27 PM pfSense Packages Feature #1100 (Resolved): Add additional ports to squid (includes patch)
- Background:
People on our network use Citrix XenApp to connect to other locations.
Citrix XenApp uses TCP ports 149... -
06:25 PM Bug #1088: CARP sync broken
- It seems like that is only a cosmetic issue.
After a configuration sync filter reload status file just remains unt... -
05:55 PM Bug #1087: vouchers need to save to CF periodically
- oh, yeah it has a save interval there, guessing that wasn't working previously. Needs testing.
-
05:40 PM Bug #1087: vouchers need to save to CF periodically
- Just test with a snapshot including all the changes.
Should be ok now. -
05:26 PM Bug #1087: vouchers need to save to CF periodically
- I backed out the changes I made. This was already present under the voucher config, there is an interval that can be ...
-
05:25 PM Bug #1087: vouchers need to save to CF periodically
- Applied in changeset commit:"d12003c99517c25105673c557aebec7e3fa55dcb".
-
05:15 PM Bug #1087 (Feedback): vouchers need to save to CF periodically
- Applied in changeset commit:"0d89a2fcac3deea06bdc4a481bbdfae4f18b1ff8".
-
05:42 PM Bug #1093 (Feedback): Problems with em(4)
- New driver is on new snapshots now.
-
05:38 PM Revision 74b7361f: Backend support for the retry parameter.
-
05:19 PM Revision 7a517ee4: Add a retry field to the LB Pool config to allow specifying how many times to retry a server before declaring it dead.
-
05:06 PM Revision ece25730: Replace the LB status widget completely with one that supports the current LB system.
-
03:42 PM Revision a776c720: Move some lb status parsing functions to a common area so they can be reused by the widget.
-
03:01 PM Revision 5ca559d2: Use a slightly different regex to catch all non-whitespace characters here instead of the current method. Fixes #1085
-
02:45 PM Feature #1099 (Closed): pptp does not use User Manager
- In the wiki (http://doc.pfsense.org/index.php/PPTP_VPN_Settings and http://doc.pfsense.org/index.php/User_Manager) it...
-
01:47 PM Bug #1079 (Feedback): Load balancer widget doesn't work on 2.0
- Should be fixed on new snaps. I completely rewrote it to use data from the new load balancer setup.
-
01:46 PM Revision 7bc5c543: For bsnmpd, checking hostres also requires checking mibii. Note this requirement in the GUI and enforce it via a simple JS check.
-
01:21 PM Revision 841c4125: Remove dropdown to select interface. Should fix #1090
-
12:34 PM Bug #1081 (New): traffic shaper wizard loops endless back to VOIP-settings
-
04:29 AM Bug #1081: traffic shaper wizard loops endless back to VOIP-settings
- Ermal Luçi wrote:
> Fixed in latest snaps.
As of today with snap (i386) built on Mon Dec 13 21:32:21 EST its stil... - 12:03 PM Revision d299e102: Merge remote branch 'mainline/master'
- Conflicts:
usr/local/www/fbegin.inc - 11:56 AM Revision c92ccac7: Merge remote branch 'mainline/master' into inc
- Conflicts:
etc/inc/auth.inc
etc/inc/config.lib.inc
etc/inc/filter.inc
etc/inc/gwlb.in... -
10:05 AM Bug #1085 (Feedback): Status: Load Balancer: Virtual Server fails to display a correct status for «some» "virtual server" names
- Applied in changeset commit:"5ca559d227855d9293a1d194e6981b8275e043ae".
-
09:19 AM Bug #1096: pf TSO patch fallout - squid (and potentially other) issues
- Same issue here.
Performed an auto update today. Installed squid. Normal proxy works ok, transparent does not. Fro... -
08:37 AM Bug #757: PPPoE Disconnect button with multiple PPPoE interfaces
- FYI, this behavior and surrounding trouble about the disconnect button is because one user felt that if the "disconne...
-
08:28 AM Bug #1090: clean up interfaces mess in setup wizard
- Committed the removal of the dropdown interfaces select box.
About the temp variable, I couldn't really figure out... -
08:25 AM Bug #1090 (Feedback): clean up interfaces mess in setup wizard
- Applied in changeset commit:"841c4125a6b4488c16a0c69e7642779f294fa449".
12/13/2010
-
10:04 PM Revision d2cba83b: A few help page updates
-
09:37 PM Bug #1043: Inadequate input validation on limiters with floating rules
- It seems like the issue is still present but only for gateways check since the $_POST['gateway'] contains an empty st...
-
09:01 PM Bug #1043: Inadequate input validation on limiters with floating rules
- Sure I can read code and any text since I've read your response and writing an answer here.
I'm sorry for that I've ... -
05:07 PM Bug #1043: Inadequate input validation on limiters with floating rules
- Hah it seems you cannot read code!
That code is correct! -
09:18 PM Revision 26732357: Ticket #960. Use XMLRPC automatic base64 encoding for strings (XML_RPC_auto_base64)
-
04:18 PM Bug #960 (Feedback): Problem with config sync + ipsec + special characters
- Hi Thiago,
This problem should be solved now. Can you try again ?
Thanks !
Pierre
-
11:47 AM Bug #960: Problem with config sync + ipsec + special characters
- Other information:
1) In the GUI, I used "CARP LAN éé" as description
2) config.xml shows :... -
11:21 AM Bug #960: Problem with config sync + ipsec + special characters
- Hi,
This also happens for other descriptions, I tested for a carp VIP description and the problem is the same (als... -
02:26 PM Bug #1097: Onload Javascript on Rules page of management GUI
- I ask because I've been on several systems with a lot of rules and never seen anything like you describe, and figured...
-
02:22 PM Bug #1097: Onload Javascript on Rules page of management GUI
- You've got me a bit worried with that question?!
I cannot get the 2.0-BETA4 GUI to even load in IE7, on any machine,... -
12:38 PM Bug #1097: Onload Javascript on Rules page of management GUI
- You seeing this in IE?
-
12:32 PM Bug #1097 (Closed): Onload Javascript on Rules page of management GUI
- I attempted to install and run a test bed running 2.0-BETA4.
I proceeded to import existing rules from a live 1.2.3 ... -
02:44 AM pfSense Packages Bug #1094: Clicking pfSense logo start deinstall/reinstall of HAVP package
- It is possible to repeat again?
12/12/2010
-
11:53 PM Bug #1096 (Resolved): pf TSO patch fallout - squid (and potentially other) issues
- With commit:c57f939b20a6a7a66351ce973843ce7d8564ed72 ( https://rcs.pfsense.org/projects/pfsense-tools/repos/mainline/...
-
11:49 PM Revision c9b08a50: Show the full URL used to download package files, to aid in tracking down packages that do not install correctly.
-
07:32 PM Bug #1093: Problems with em(4)
- FYI: Let me know when you change the driver. I can throw the Intel NIC back in and test at that point.
-
07:31 PM Bug #1093: Problems with em(4)
- Ah, interesting. I assumed it was the BSD 8 default driver.
-
07:29 PM Bug #1093: Problems with em(4)
- Thanks for confirming, it is a pfSense issue though as we changed the driver, need to change back to what we had prev...
-
07:17 PM Bug #1093: Problems with em(4)
- I think your hunch was on the money. I looked into known issues with em(4), and subsequently yanked the dual GB Inte...
-
01:39 AM Bug #1093 (New): Problems with em(4)
- this sounds like the same thing I hit last night on em(4) as well, any traffic initiated by or destined to the host i...
-
01:12 AM Bug #1093: Problems with em(4)
- I just updated to the latest build. I then initiated an install of squid as an example. shortly after starting the ...
-
12:48 AM Bug #1093 (Feedback): Problems with em(4)
- Needs a lot more detail.
I'm running snapshots later than that on amd64 and they do not crash. We need at the ver... -
12:45 AM Bug #1093 (Resolved): Problems with em(4)
- Some time after Dec 2, something has changed in the build. Now, when I attempt to upgrade to newer builds, or instal...
-
05:44 PM pfSense Packages Bug #1094: Clicking pfSense logo start deinstall/reinstall of HAVP package
- If you did this after a firmware update, the flag file that tells the GUI it needs to reinstall all packages may stil...
-
05:20 PM pfSense Packages Bug #1094: Clicking pfSense logo start deinstall/reinstall of HAVP package
- That should say 'logo' but I don't think I can edit the title.
-
05:15 PM pfSense Packages Bug #1094 (Resolved): Clicking pfSense logo start deinstall/reinstall of HAVP package
- Hi, after installation of HAVP, when still on the package installation page, click the pfSense logo and an immediate ...
-
05:39 PM pfSense Packages Bug #1095 (Rejected): HAVP attempts to write to readonly file system
- Duplicate of #679. Please don't open new tickets if there is an existing ticket for the same issue. Put the full text...
-
05:22 PM pfSense Packages Bug #1095 (Rejected): HAVP attempts to write to readonly file system
- Error message shown in browse:
-----
Warning: file_put_contents(/usr/local/etc/havp/havp_conf.xml): failed to open ... -
05:37 PM pfSense Packages Bug #679 (New): HAVP error message shows up behind top menu.
-
05:03 PM pfSense Packages Bug #679: HAVP error message shows up behind top menu.
- Hi, the problem persists, see attached image.
----
Version 2.0-BETA4 (i386)
built on Sat Dec 11 21:35:41 EST 20... -
03:31 PM Revision 96b4c29a: Ticket 1041. Fix bad commit...
-
06:52 AM Bug #1072: Issues with increased CARP VHID limits
- Understood.
So the pfSense is not compatible with *BSD.
And I understood why CARP is broken now. -
05:17 AM Bug #1092 (Closed): Changing NAT Port forward port setting not applied to firewall rule
- I've tested every possible scenario here and they all work.
-
05:14 AM Bug #1092: Changing NAT Port forward port setting not applied to firewall rule
- Correct the associated filter rule. Just tried to replicate but couldn't. I must have missed the apply button or look...
-
02:45 AM Bug #1092: Changing NAT Port forward port setting not applied to firewall rule
- with a linked rule you mean?
-
01:04 AM Bug #1043 (New): Inadequate input validation on limiters with floating rules
12/11/2010
-
08:31 PM Revision 00752d5a: Ticket #959. Keep local items at the top of vip section
-
07:39 PM Bug #1030: Interface case change in apinger.conf needs reverted
- For me, the quality graph was always the offending one.
-
07:38 PM Bug #943: 2.0-BETA4 Dynamic DNS updates not working
- Any ideas on this one?
-
03:34 PM Bug #959: Config sync removes alias VIPs on the slave
- Hi Thiago,
I finally added your suggestion, everything is ok on my pair of boxes
Revision 00752d5a82baea1f05c8d... -
11:51 AM Bug #1092 (Closed): Changing NAT Port forward port setting not applied to firewall rule
- Was changing sip to alias with 5060 and 16300:16700
-
10:36 AM Bug #1072: Issues with increased CARP VHID limits
- We have a patch in the builds which expands the field to two bytes.
-
05:59 AM Bug #1072: Issues with increased CARP VHID limits
- vhid field in CARP packet is one byte long, so this GUI change does not make any sense.
-
07:41 AM Bug #1088: CARP sync broken
- I'm not sure fixed it or not, because after a configuration sync "Filter reload status" just hangs on "Syncing CARP d...
-
06:29 AM Bug #1043: Inadequate input validation on limiters with floating rules
- The same needs to be done in:
&& $_POST['gateway'] != "default" && (empty($_POST['direction']) || $_POST['directio... -
06:14 AM Bug #1043: Inadequate input validation on limiters with floating rules
- Unfortunatelly it's not fixed.
Problem is in program logic:
http://redmine.pfsense.org/projects/pfsense/repositor... -
01:42 AM Revision 25f6730a: Add IPSec 'ipalias' VIP support. Ticket #1041
-
12:01 AM pfSense Packages Bug #1091 (Closed): snort - mysql package installation fails
- The snort package fails to install due to not being able to download mysql-client-5.1.53 after upgrade to "2.0-BETA4 ...
12/10/2010
-
11:44 PM Revision 2c6b0d67: Call a filter reload even though the ip might not have changed. This makes the gateway pools work after an interface comes up again.
- 11:26 PM Revision 6d8ff5e9: Hard code maxlockouts to 15 until GUI portion is ready
-
10:51 PM Revision ca092d26: Correct error messages.
-
10:47 PM Revision 37d202a3: Do not allow gateways to be selected without a direction.
- 09:53 PM Revision 65f7fba8: Correct webConfgurator auth/error messages
-
09:38 PM Revision 20699f3f: Some IPsec mobile changes to inch a little closer to working L2TP+IPsec. Ticket #475
- 09:02 PM Revision 3aba1835: Add log_auth() which with send items to syslogd using LOG_AUTH facilities. Use this new log_authh() for login error and success entries
-
08:50 PM Bug #1041 (Feedback): IP Alias VIPs are not available for use by IPsec
- VIP aliases should now work with ipsec.
-
08:24 PM Revision 6735d092: Allow floating rules without direction to be created again.
-
07:38 PM Revision d0f980d4: Log on the host the errors so we can use the sshlockout software for protection against abusal.
-
07:35 PM Revision 4d775dd0: Be consistent on shifting array during authentication. Also check for array to avoid strange errors.
-
07:13 PM Revision 602cb4b0: Leave a notice for this as well.
-
07:10 PM Revision 52a93b82: If we fail to authenticate consider it as fatal since nothing else can be done.
-
07:04 PM Revision a79c72d7: Actually the passed config sections are part of index 1 of the array. This fixes config sync of vips as well.
- 06:55 PM Revision 9e18b392: Do not call rc.newwanip on bootup. Remove bogus return 0;
-
06:53 PM Revision d1265444: Start relayd after routing has been started.
-
06:43 PM Revision 9132ae35: Do not spam logs uselessly on bootup and sleep a bit before starting apinger.
-
06:34 PM Revision 0567899d: Fix config synchronization. Also unbreak the config when erroring out because it will loop indefinitely.
-
03:42 PM Bug #1090 (Resolved): clean up interfaces mess in setup wizard
- Revision 389c778ec29d929a17843139f8cddf337b8fa9ad by gnhb added an interface drop down to the WAN configuration page ...
-
03:23 PM Bug #1043 (Feedback): Inadequate input validation on limiters with floating rules
- I fixed even the regression caused by fixing the limiters.
Test it with latest snapshots. -
11:18 AM Bug #1043: Inadequate input validation on limiters with floating rules
- this particular issue isn't a problem, but yeah the fix broke other things.
-
11:17 AM Bug #1043: Inadequate input validation on limiters with floating rules
- Whoops, didn't see the comment by Alexander when I posted.
I can confirm the bug he reported, setting direction t... -
11:14 AM Bug #1043: Inadequate input validation on limiters with floating rules
- Tested on 2.0-beta4 (i386) Dec 10 02:17:09:EST 2010
When I tried to add a limiter (In/Out, which is not a very des... -
10:06 AM Bug #1043 (New): Inadequate input validation on limiters with floating rules
-
09:52 AM Bug #1043: Inadequate input validation on limiters with floating rules
- This fix led to that every rule in Floating tab MUST contain a direction.
So now it's unable to create there a rule ... -
02:37 PM Bug #1088: CARP sync broken
- Ok should be better than before on latest snapshot.
Be careful to have all the related commits. -
06:42 AM Bug #1088: CARP sync broken
- Still broken.
Dec 10 13:41:43 php: : The other member is on older version of . Sync will not be done to prevent p... -
03:25 AM Bug #1088: CARP sync broken
- Will check in 5 hrs.
Current snapshots has been compiled with an old code. -
12:13 PM pfSense Packages Bug #679 (Closed): HAVP error message shows up behind top menu.
- Sounds good. Closing for now unless someone can reconfirm it with modern versions.
-
12:01 PM pfSense Packages Bug #679: HAVP error message shows up behind top menu.
- In my opinion this is should be closed. There have been changes in the code, solve the this problem.
-
11:00 AM pfSense Packages Bug #979 (Resolved): Broken LightSquid installation on 2.0 amd64
-
10:57 AM pfSense Packages Bug #979: Broken LightSquid installation on 2.0 amd64
- Works. Thank you.
-
01:18 AM Revision 4ecc2263: Hmmm use correct keys to returned array.
-
01:02 AM Revision bb92b70f: Actually pass the right parameter!
-
12:53 AM Revision 01b1cc6a: Fix line because of copy/pasto.
-
12:51 AM Revision 728719dd: Its too late and this is optional.
-
12:44 AM Revision de272dac: Just the password here.
-
12:34 AM Revision 18be996d: Actually we expect an array to be returned.
-
12:19 AM Revision e501de37: Hello xmlrpc to another function!
12/09/2010
-
08:42 PM Revision 68ef6e03: Teach convert_friendly_interface_to_friendly_descr about carp vips. This helps cases like Ticket #1086.
-
08:33 PM Revision 8c3450c7: Make this at least right though it might not be correct.
-
07:44 PM Revision 89428f03: Use correct variable name so the message is actually displayed.
-
07:18 PM Bug #1088 (Feedback): CARP sync broken
- Check new snapshots.
-
03:36 PM Bug #1088 (Resolved): CARP sync broken
- After http://redmine.pfsense.org/projects/pfsense/repository/revisions/7380bcdbe4be18bcb007f283b71fd5f83b51fced revis...
-
07:03 PM Revision ec3e48f1: Remove \n here, it was being printed on the console. Echo should do the right thing and print a newline at the end on its own.
- 05:18 PM Revision 76bbcff0: make rebrand-friendly
-
05:10 PM Bug #1083: aliases cause error when creating NAT 1:1 rules
- just need to remove alias capabilities from 1:1 NAT for now (it's not valid syntax in PF, though it's simply user spa...
-
04:55 PM pfSense Packages Bug #1089 (Rejected): Carp and SYNC broken after upgrade to latest snapshot
- Duplicate of #1088
-
04:51 PM pfSense Packages Bug #1089 (Rejected): Carp and SYNC broken after upgrade to latest snapshot
- After upgrade to latest snapshot the sync was stoped.
Dec 9 17:53:20 hsfw-1 check_reload_status: syncing firewall... -
03:43 PM Feature #1086: [patch] CARP IPs as outer source addressed for GRE and GIF tunnels
- Should be ok in new snapshots.
The method used is different. -
10:56 AM Feature #1086: [patch] CARP IPs as outer source addressed for GRE and GIF tunnels
- Forgot to add the patch to visualise CARP IPs/Parent Interfaces in the GRE/GIF interfaces summary...
-
08:31 AM Feature #1086 (Feedback): [patch] CARP IPs as outer source addressed for GRE and GIF tunnels
- https://rcs.pfsense.org/projects/pfsense/repos/mainline/commits/11decf6ef66b329df6bd0e39ccfc57134c46d8d8
Thanks. -
08:20 AM Feature #1086 (Resolved): [patch] CARP IPs as outer source addressed for GRE and GIF tunnels
- I applied the code from the ipsec/openvpn interface lists to include CARP VIP interfaces as outer source addresses fo...
-
02:25 PM Revision 11decf6e: Show carp on the list of interfaces to be used for creating gif/gre tunnels.
-
02:24 PM Revision f1a93dee: Use the array index for this.
-
01:30 PM pfSense Packages Bug #1084 (Resolved): nmap package libpcap errors
- Thanks for testing
-
01:30 PM pfSense Packages Bug #1084: nmap package libpcap errors
- Updated to latest snapshot and it's working now.
-
08:42 AM Bug #1087 (Resolved): vouchers need to save to CF periodically
- Vouchers need to save to CF periodically the same as we have options for RRD and DHCP leases to avoid losing usage in...
-
06:32 AM Bug #1085 (Resolved): Status: Load Balancer: Virtual Server fails to display a correct status for «some» "virtual server" names
- I've noticed how inserting characters like «-» in a virtual server name breaks the regex match on the output of «rela...
-
05:44 AM Revision 71809626: If available, display source IP's CIDR mask on external IP as well.
-
05:12 AM Revision 35aa4df3: This code must come after natent is defined or the style will never be applied. Ticket #1073
-
04:23 AM Feature #13: wireless page to have option to select transmit and receive antennas
- on latest snap, 9th dec, i have set diversity to 1 as i have connected antennas on both connectors and set the tx and...
12/08/2010
-
09:51 PM Revision 1634524d: Fix field descriptions on input validation for LAGG edit.
-
06:45 PM Revision 4f76b144: Get rid of fastforwarding since it is not maintained from long time. Courtesy-of: battlez_ IRC
-
06:04 PM Revision 8ab82dec: Only print "sainfo anonymous" also for xauth-psk setups. See http://forum.pfsense.org/index.php/topic,29164.msg157864.html#msg157864
-
05:57 PM Revision 409dc2e1: Actually we do not use this code at all in pfSense.
-
05:55 PM Revision 6cf1cc61: Do not overrite the default gateway if already found.
-
05:52 PM pfSense Packages Bug #1084: nmap package libpcap errors
- That issue has been fixed in HEAD since yesterday but a new snapshot hasn't uploaded yet. When a new snapshot is uplo...
-
05:51 PM pfSense Packages Bug #1084: nmap package libpcap errors
- That fixed the libpcap errors. It still goes to the dashboard page when I select Diagnostics -> NMap.
-
01:42 PM pfSense Packages Bug #1084 (Feedback): nmap package libpcap errors
- I fixed some dependency issues, recompiled, and reuploaded nmap. Installs and runs fine for me now.
-
01:09 PM pfSense Packages Bug #1084 (Resolved): nmap package libpcap errors
- I installed the nmap package and when I go to Diagnostics -> NMap, I'm redirected to the dashboard page. When I run ...
-
03:45 PM Revision 20e18ef2: Properly test for ldap case when clicking save and test for GUI authserver.
-
10:00 AM Bug #845 (New): Need patch for PR usb/140883
- Apparently a better version of this driver was posted to fix some bugs:
http://svn.freebsd.org/viewvc/base?view=re... -
05:10 AM Bug #1039 (Resolved): Error on Syncronisation slave - DIOCADDRULE: Device busy
- thanks
-
05:10 AM Bug #1039: Error on Syncronisation slave - DIOCADDRULE: Device busy
- On the Dec 7 snapshot
the problem seems to be fixed.
Thank You
12/07/2010
-
11:59 PM Revision 2a834dcd: Adjust even advbase while synching. This should be params though.
-
11:51 PM Revision 6f247d1f: Expose advbase option of carp(4) to alleviate advanced configs.
-
08:30 PM Revision a00fc1e2: Do not atempt to start a service during installation.
-
08:08 PM Revision afa966a5: Ticket #1081. Fix header() function to do correct redirection. Also remove bogus step9 in the wizards.
-
06:32 PM Revision c5901d28: Use full path to binary and silence errors if any on unlink.
-
06:25 PM Revision 422bc2a7: Move all dynamic dns update processes under the same even 'reload dyndns' since it makes sense to do so.
-
06:13 PM Revision 8c41a3e4: Do the filter reload before vpn and some other services which get impacted or impact filter reload. Let alone that they do not impact filter reload at all.
-
04:59 PM Bug #1083 (Resolved): aliases cause error when creating NAT 1:1 rules
- I can create 1:1 NAT rules using IP Addresses, for instance entering 192.168.1.3 as a source IP.
Creating an alias w... -
04:34 PM Revision 5a61331a: Move this validation down so we can still assume id=0 if it's not present, and then redirect if it's non-numeric.
-
03:42 PM Bug #1082 (Rejected): Proxy server: Cache management : Do not cache ne fonctionne pas
- Please use the forum for this issue. It's not a bug in the GUI, but something that needs fixed in your config.xml - T...
-
03:39 PM Bug #1082 (Rejected): Proxy server: Cache management : Do not cache ne fonctionne pas
- Bonjour,
Je dois mettre certain site dans le "Do not cache" afin que ceux si ne passe pas par le proxy, surtout pa... -
03:32 PM Feature #811 (Resolved): PPTP/GRE NAT multiple connections to single server
-
02:09 PM Feature #811: PPTP/GRE NAT multiple connections to single server
- working for me under
2.0-BETA4 (i386) built on Sat Dec 4 01:44:52 EST 2010 -
03:09 PM Bug #1039: Error on Syncronisation slave - DIOCADDRULE: Device busy
- Please update to newer snapshots.
This should be fixed now. -
03:08 PM Bug #833 (Resolved): route-to for firewall-initiated traffic stops functioning when default gateway unreachable
-
03:07 PM Bug #1081 (Feedback): traffic shaper wizard loops endless back to VOIP-settings
- Fixed in latest snaps.
-
11:00 AM Bug #1081 (Resolved): traffic shaper wizard loops endless back to VOIP-settings
- Every traffic shaper wizard loops endless back to VOIP-settings. Respective forum-entry:
http://forum.pfsense.org/... -
12:34 PM pfSense Packages Bug #1080: Snort Installation fails
- Workaround is
pkg_add -r http://files.pfsense.org/packages/8/All/mysql-client-5.1.53.tbz
from command line
than... -
10:32 AM pfSense Packages Bug #1080 (Feedback): Snort Installation fails
- Actually, this should be working either way, unless snort is pulling that from a non-standard URL. That file is prese...
-
08:01 AM pfSense Packages Bug #1080: Snort Installation fails
- We need more info. We especially need to know if you are using amd64 or i386.
-
04:16 AM pfSense Packages Bug #1080 (New): Snort Installation fails
- it's a legit issue that needs to be fixed, probably missing binaries since the package rebuilds.
-
04:14 AM pfSense Packages Bug #1080 (Closed): Snort Installation fails
- Please follow the forum for such things.
-
02:45 AM pfSense Packages Bug #1080: Snort Installation fails
- It's about Snort package :)
-
02:31 AM pfSense Packages Bug #1080 (Closed): Snort Installation fails
- Error
mysql-client-5.1.53 could not download.
of mysql-client-5.1.53 failed! -
12:30 PM Revision 7380bcdb: Prevent sync problems when upgrading carp clusters. Now we check that the other cluster is at least at our config file version.
-
11:32 AM Revision d064a115: Tighten checks a bit also when check_firmware_version is called return the config version too.
-
11:10 AM Revision 137f46d8: Whitespace fixes to make this readble.
-
10:56 AM Revision be888d7f: Add lem(4) to our drivers list.
-
04:36 AM Bug #636 (New): layer7 not work correctly
- this is broken again.
-
04:20 AM pfSense Packages Bug #901 (Closed): Squid "Don't filter for RFC1918" doesn't work for PPTP (patch included)
-
04:20 AM pfSense Packages Bug #901: Squid "Don't filter for RFC1918" doesn't work for PPTP (patch included)
- You can do this from theGUI on 2.0.
I will close this since it will not be fixed on 1.2.3 so near to 2.0 release. -
04:17 AM pfSense Packages Bug #844: Open VM Tools Won't install
- Please try new snapshots since all pacakges have been recompiled.
-
04:16 AM pfSense Packages Bug #979 (Feedback): Broken LightSquid installation on 2.0 amd64
- Please try the new snapshots.
-
04:15 AM pfSense Packages Bug #1024 (Closed): Snort GUI broken in latest snapshots
- Should be fixed.
It was a issue of newer security features. - 01:26 AM Revision dd62256f: Fix vip descriptions in openvpn and ipsec screens. Ticket #1042
12/06/2010
- 11:58 PM Revision 8d5b8c20: it's 2010, update (C)
- 11:43 PM Revision 2db9a6d6: Make menu drape across two columns saving around 10 lines of text making room for more interfaces at the top. Looks good: perry|dk & jim-p
-
08:42 PM Revision b0c6a4f1: Remove unused binary from list
-
08:39 PM Revision 27ca29e4: cleanup other bogus code.
-
08:38 PM Revision 265c88c6: Remove bogus code and use proper function here.
-
08:35 PM Revision 3e5d0d1d: Actually honor the mtu/mac spoofing option in the interfaces.php page even while the type is set to other than dhcp/static/none. For this inhance the interface_translate_type_to_real to return the real hardware interface for ppp* types.
-
08:30 PM Bug #1042 (Feedback): CARP VIP Descriptions incorrect on IPsec/OpenVPN
- Now VIP descriptions should look like in firewall/nat screens.
-
08:16 PM Revision ef130e9f: Ticket #829. Allow the user to change from ppp* type to static or dhcp type interface from interfaces.php.
-
06:53 PM Revision 7afd6325: Modify dhclient-script to call rc.newwanip after all the changes to system have been done so races and no stale information can be extracted from the later.
-
06:16 PM Revision 6706a83a: Do the setting earlier to not miss any code and make ipsec not work.
-
04:42 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- The kernel option is similar to how we do PPTP or FTP today.
Just you have to be very intimate with the internals of... -
03:27 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- Ermal,
I see in the source of pfctl that ioctl is the underlying mechanism being used to dynamically add rules to ... -
02:10 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- There are 2 other choices to do that.
1- kernel
2- state adding through ioctl -
11:16 AM Feature #1064: VoIP - Dynamic Pinholes for RTP
- Ermal, I want to implement this myself along with 2 of my colleagues. The purpose of this ticket is to discuss the d...
-
05:33 AM Feature #1064: VoIP - Dynamic Pinholes for RTP
- What i do not understand is if you want to implement this yourself or want pfSense help on it?
-
03:47 PM Revision dcadda55: Do not reload twice carp and vips in general during an interface reload.
-
03:35 PM Bug #829 (Feedback): WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
-
03:25 PM Revision ed62880b: Correct code to reconfigure an interface for groups/gre/gif tunnels to take into account that an interface might be part of many instances of this. Also reconfigure interface groups for every newwanip trigger on interfaces to make sure dynamic interfaces retain their membership on groups.
-
02:11 PM Bug #962 (Resolved): DHCP custom options must have type selection
- Thank you for testing.
-
10:49 AM Bug #962: DHCP custom options must have type selection
- This fix/feature worked just fine with the Sun Dec 5th 07:23:23 EST 2010 nanobsd snapshot.
I added one option of e... -
01:55 PM Bug #1074 (Closed): Monitor IP Gateway ignored
- Remove these two stale entries from your config ...
-
07:24 AM Bug #1074: Monitor IP Gateway ignored
- system log, full xml and apinger.conf posted
-
06:51 AM Bug #1074: Monitor IP Gateway ignored
- I cannot reproduce this on latest snapshots.
Please post even your system log and your full config.xml otherwise thi... -
06:13 AM Bug #1074: Monitor IP Gateway ignored
- Hereby I upload some screenshots.
-
05:53 AM Bug #1074: Monitor IP Gateway ignored
- Can you please paste some screenshots here of your gateways?
-
03:11 AM Bug #1074 (Closed): Monitor IP Gateway ignored
- If I set an alternative 'Monitor IP' for a gateway, this is ignored. Is +is+ stored in config.xml though!
config.x... -
12:58 PM Revision c9e13418: Ticket #491. Do not actually check for enable to exist but for host since enable might be unset explicitly by the user. This should re-enable configs to work.
-
12:29 PM Revision 81f4ab8a: Ticket #1073. Gray out the rules when they are disabled.
-
10:37 AM Revision 5e3a84e2: Use send_event since touch()'ing files does not work.
-
10:29 AM Revision e53e7a5d: Do not call filter_configure here the caller does. Also remove old code of the times when check_reload_status used files as trigers.
-
10:18 AM Revision baa16005: The caller of this function is responsible for this and usually all the callers do this from what i can tell. Remove redundant call.
-
10:12 AM Revision 757c1bcc: Make sure filter_configure() is not called during bootup since its harmful.
-
10:08 AM Revision 847cd48d: Do not spam filter reload at boot.
-
10:03 AM Revision 831a5ff7: No need to call filter_reload from here.
-
09:39 AM Revision af904a20: Silence this.
-
07:11 AM Bug #491 (Feedback): Dynamic DNS upgrade code not working
-
06:55 AM Bug #1030: Interface case change in apinger.conf needs reverted
- That is the gateway quality graph not the interfaces one :)
As far as i can tell the interface graphs all use the no... -
06:34 AM Bug #1073 (Feedback): Disabled 1:1 NAT entries need to be grayed out
-
05:47 AM Bug #1078 (Rejected): ipsec tunnel stalled if peer ip is updated
- again this needs to go to the forum or list first unless you can provide the appropriate level of detail to pinpoint ...
-
05:12 AM Bug #1078 (Rejected): ipsec tunnel stalled if peer ip is updated
- until restarting racoon
-
05:42 AM Bug #1077 (Rejected): Pfsense needs very long for booting
- Please post details to the forum and someone can help you determine the actual problem, this isn't nearly specific en...
-
04:46 AM Bug #1077 (Rejected): Pfsense needs very long for booting
- after booting the system needs more than 10 minutes for init files.
2.0-BETA4 (i386) built on Sun Dec 5 06:21:36 E... -
05:32 AM Bug #1079 (Resolved): Load balancer widget doesn't work on 2.0
- The load balancer dashboard widget on pfsense 2.0 doesn't work.
Further investigation suggests it's expecting data... -
04:40 AM Bug #1075 (Resolved): rrd graphs missing / duplicate
- On the rrd page the first graph
(11 hours / 1 min avg) is shown twice
instead of the daily graph.
See included scr...
12/05/2010
-
10:21 PM Bug #1073 (Resolved): Disabled 1:1 NAT entries need to be grayed out
- Disabled 1:1 NAT entries need to be grayed out like disabled firewall rules are.
-
06:50 PM Bug #1072 (Closed): Issues with increased CARP VHID limits
- The increase to 65535 VHIDs has made firewall_virtual_ip_edit.php very slow. Aside from that, having 65535 VHIDs woul...
-
06:41 PM Bug #1030: Interface case change in apinger.conf needs reverted
- The quality RRDs are still using the uppercase interface name, where they previously always used lowercase and still ...
-
06:07 PM Bug #491 (New): Dynamic DNS upgrade code not working
- This is reportedly not working, config is gone after upgrade.
-
05:48 PM Bug #812: RRD graph time axis not locked to latest times with higher average samples
- This change was by design as it shows the full period rather than up to now (where 1 day = midnight to midnight). It'...
-
03:10 PM Bug #636: layer7 not work correctly
- Not working for me either. I have tried every combination of firewall rules I can think of as per conversation noted ...
-
02:19 PM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
- Sorry. One more thing. After reboot and installing the Backup package I now get a "404 - Not Found" error when trying...
-
02:17 PM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
- Tried again with snap from 12/5 and my RRD Summary and shellcmd packages got reinstalled, not my avahi and Backup pac...
-
05:46 AM Revision cd1de64d: Restore locking to filter reload, using an exclusive filter lock around the function, but also leave the existing shared lock for config. Ticket #1071
-
02:29 AM Bug #543 (Resolved): IP alias input validation problem
-
02:27 AM Bug #568 (Resolved): firewall rules advanced clean up
-
02:26 AM Bug #477 (Resolved): Swap usage graphic on dashboard is incorrect
-
02:25 AM Bug #374 (Resolved): "Register DHCP leases in DNS forwarder" doesn't work
-
02:24 AM Bug #860 (Resolved): Multiple PARP entries do not function
-
02:21 AM Feature #952 (Resolved): When "Do not NAT" is checked on outbound rule, the translation section should be hidden.
-
12:28 AM Todo #1071 (Closed): Reevaluate locks
- Since the change to the lock function in util.inc to make shared locks the default instead of exclusive locks, most l...
12/04/2010
-
09:41 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- divert probably not a good solution for this scenario, that's good where you want to examine individual packets and p...
-
07:31 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- Using divert in pf lets you have a userspace daemon that gets only the traffic specified by a given rule sent through...
-
05:40 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- Documentation for Berkeley Packet Filter indicates that the requisite filtering exists.
"In addition, it supports ... -
05:04 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- Thanks Chris.
As I understand your suggestion, we would have a user space daemon running and passively listening (... -
04:05 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- This is definitely not something that should be in kernel, we wouldn't accept that. It should passively listen and ad...
-
03:36 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- We have concluded that this logic belongs in pf.
Here are a couple of the other options we evaluated and why we co... -
04:10 PM Bug #829 (New): WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
-
08:42 AM Bug #829: WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
- I have the same problem from pppoe to DHCP.
2.0-BETA4 (i386)
built on Fri Dec 3 15:21:00 EST 2010 -
11:16 AM pfSense Packages Feature #1070 (Rejected): OpenVPN Client Export Utility : names of files in configuration archive
- If you, for example, connect to two external routers and your certname is the same on both, using the hostname to dis...
-
11:10 AM pfSense Packages Feature #1070 (Rejected): OpenVPN Client Export Utility : names of files in configuration archive
- when exporting configuration archive for an openvpn client, having certname.* or clientname.* instead of pfsense-udp-...
-
11:13 AM Bug #1069 (Rejected): creating a 100 years valid CA makes this CA cert expires at year 1974
- Sounds like a y2k38 issue (32-bit timestamp rollover), though in this case it's a PHP or OpenSSL bug. We pass the lif...
-
10:45 AM Bug #1069 (Rejected): creating a 100 years valid CA makes this CA cert expires at year 1974
- a CA cert, created today, with 36500 days of validity, have the following valid period:
from 2010-12-04 to 1974-10-04 -
08:04 AM Bug #636: layer7 not work correctly
- not working for me either. december 2 snapshot i386
-
04:08 AM Todo #765: Patch: Add custom DHCP configuration
- My apologies; I'm not actually going to be able to test this for at least a few more weeks. I don't have physical ac...
-
01:29 AM Bug #749: Downstream queues should not be assigned to LAN interfaces
- I haven't had time to test it yet, but what I believe this is referring to is the queue for Internet traffic being at...
-
12:30 AM Revision 7ac98d0b: Switches must come after the user name when using pw lock/unlock.
12/03/2010
-
11:56 PM Revision cdab65cc: Remove authorized_keys file when there are no authorized keys for the user.
-
06:50 PM Revision 5e86efe0: Actually make the other code correct.
-
06:46 PM Revision 9ce96456: Ooops actually return after disabling flowtables.
-
06:44 PM Revision 6c4ccf39: Actually do something on flowtables. Seems later image kernels have this included.
-
06:01 PM Todo #734: Fix up appearance of SSH tunnel shell
- This is about the shell that a user sees when they have only the SSH tunnel privilege set and log in by SSH. Since i...
-
05:10 PM Todo #734: Fix up appearance of SSH tunnel shell
- Should this ticket be in feedback? It doesn't look like anything was actually done to resolve it, and the initial re...
-
05:32 PM Bug #749: Downstream queues should not be assigned to LAN interfaces
- Chris Buechler wrote:
> The wizard in 1.2.3 creates seriously bad, wrong queues with behavior that cannot be duplica... -
04:58 PM Bug #673: SSHD keys not created on restore
- As far as I know, there is already reference counting for the conf_mount_rw/ro functions, so that it isn't mounted re...
-
03:45 PM Bug #673: SSHD keys not created on restore
- I added a little bit of debugging code to the end of the config_mount_ro function in config.lib.inc, send off an aler...
-
12:38 PM Bug #673: SSHD keys not created on restore
- I think there might still be an issue here, for Nanobsd at least.
Tested this with "2.0-Beta4 (I386) Built on Thu ... -
04:56 PM Feature #520 (Resolved): ALIX reset button
- Yeah it should probably get documented in the wiki, and will surely be in the book.
-
04:36 PM Feature #520: ALIX reset button
- I can confirm that this is working.
Tested with snapshot "pfsense 2.0-beta4-nanobsd (i386) Dec 2 11:27:45 EST 2010... -
04:56 PM Bug #499 (Resolved): DHCP custom options on multiple interfaces not handled properly
-
04:53 PM Bug #499: DHCP custom options on multiple interfaces not handled properly
- I can confirm that this is resolved in snapshot " Nanobsd i386 Beta4 Dec 2 11:27:45 EST 2010"
Entering the same th... -
02:51 PM Bug #1067 (Closed): GUI bug in displaying Status -> Wireless
-
11:22 AM Bug #1067: GUI bug in displaying Status -> Wireless
- New variable fixes bug if no wireless is in system (see attached screenshot).
-
09:25 AM Bug #1067 (Feedback): GUI bug in displaying Status -> Wireless
- Applied in changeset commit:"273e9bf7dda8b7eb614bbb99d54389ba9c5f2238".
-
02:22 AM Bug #1067 (Closed): GUI bug in displaying Status -> Wireless
- Current version: 2.0-BETA4 (i386)
Built On: Tue Nov 30 13:09:03 EST 2010
When on the page "Traffic Graph",... -
02:23 PM Revision 273e9bf7: Rename this variable to avoid collisions. Fixes #1067
-
02:15 PM Revision 5479df47: Fix this code a bit, my first attempt yesterday didn't work properly (this should).
-
12:41 PM Bug #1031 (Resolved): Firewall Log - Dynamic Update update only first row
-
11:46 AM Bug #1031: Firewall Log - Dynamic Update update only first row
- Verified updates properly on:
2.0-BETA4 (i386)built on Wed Dec 1 17:21:34 EST 2010 -
10:23 AM Bug #1056 (Resolved): DHCP logs are empty since isc-dhcp-server upgrade
- Thanks for the feedback!
-
10:14 AM Bug #1056: DHCP logs are empty since isc-dhcp-server upgrade
- Confirming, I now have logs showing DHCP requests and replies (as well as when the leases are saved to a file), in th...
-
10:08 AM Bug #636: layer7 not work correctly
- This issue has not been resolved, including for me personally (no Layer 7 rules applied), per discussion at http://fo...
-
09:29 AM Bug #706 (Closed): OpenVPN client export needs to include remote-cert-tls server
- We discovered that it was not compatible with the way we built the server certificates. See https://rcs.pfsense.org/p...
-
02:14 AM Bug #706: OpenVPN client export needs to include remote-cert-tls server
- The export does not include the option "remote-cert-tls server"
Exported config file:
dev tun
persist-tun
persi... -
09:15 AM pfSense Packages Bug #1068: RRD Graphs not working on 64Bit Beta 4
- Thanks. Although, it wasn't terribly intuitive when the firewall said there was an available update... I would think...
-
08:55 AM pfSense Packages Bug #1068 (Rejected): RRD Graphs not working on 64Bit Beta 4
- You aren't running a 64-bit snapshot. You probably accidentally applied a 32-bit (i386) update after installing the a...
-
08:38 AM pfSense Packages Bug #1068 (Rejected): RRD Graphs not working on 64Bit Beta 4
- Installed build:
2.0-BETA4 (i386)
built on Thu Dec 2 09:23:11 EST 2010
Since install, RRD Graphs error:There... -
04:26 AM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
- Tried again via console update this time and snap http://snapshots.pfsense.com/FreeBSD_RELENG_8_1/i386/pfSense_HEAD/u...
-
04:04 AM Bug #1066: Remove old dynamic caches
- Error gone and cache file left behind in /conf/
12/02/2010
-
11:16 PM Revision 864bf774: Restore spoofed MAC after running hostapd to keep behavior consistent with other interfaces. Ticket #841
-
10:40 PM Revision acb0bce0: Restore the original MAC address before running hostapd to work around a hostapd bug. Ticket #841
-
09:31 PM Revision 650cb13b: Try to handle when cert subject entries are arrays.
-
08:29 PM Revision 0a0774b5: Allow a . in hostnames. Also, don't allow a space in hostname, it was adding a bunch of trailing spaces to the end of the field. Fixes #1063
- 07:53 PM Revision ca98b042: Merge remote branch 'mainline/master'
- Conflicts:
usr/local/www/fbegin.inc - 07:46 PM Revision 386447ea: BP: Implement gettext() calls on fbegin.inc #multilang
- 07:44 PM Revision 8c06f62f: Fix gettext in priv.defs.inc
-
07:34 PM Bug #1056: DHCP logs are empty since isc-dhcp-server upgrade
2.0-BETA4 (i386)
built on Thu Dec 2 09:23:11 EST 2010
This is what I got with this version on my test box...
...-
07:08 PM Revision b098343a: Correct binaries needed.
- 06:46 PM Revision 94044c40: BP: Implement gettext() calls on fbegin.inc #multilang
-
06:09 PM Revision 8e428017: Do not try to be smart on the package name and also use a better resulting condition testing.
-
05:47 PM Bug #841 (Feedback): hostapd doesn't work with spoofed MAC (but should be able to)
- The workaround I've committed should be sufficient to handle the hostapd issue until the bug gets fixed (if ever).
-
05:29 PM Bug #841: hostapd doesn't work with spoofed MAC (but should be able to)
- When using this patch it causes issues when hostapd is run at startup, preventing clients from associating. When hos...
-
12:39 AM Bug #841: hostapd doesn't work with spoofed MAC (but should be able to)
- The test utility I had made before for reading the BSSID was actually crashing in an unrelated section and I must not...
- 05:21 PM Revision 41fafd53: Make use of the new tab menu and use _GET instead of _POST for pkg name passed in URL.
- 05:01 PM Revision d589cccf: If a pkg has logging enabled in syslog, then correctly ensure that it does not get logged to one of the other logs but only to its specified log file.
-
04:28 PM Bug #943: 2.0-BETA4 Dynamic DNS updates not working
- Trust me - I tried.
Yesterday, the server kept giving me "Internal error" whenever I updated this bug ... other bugs... -
03:56 PM Bug #943: 2.0-BETA4 Dynamic DNS updates not working
- Can you show me the new logs please?
-
03:08 AM Bug #943: 2.0-BETA4 Dynamic DNS updates not working
- Sorry, but it doesn't seem to be working.
I tested with a clean install of pfSense-2.0-BETA4-20101201-1616.iso fol... -
04:04 PM Bug #651: Multiple gateways on WAN interface
- Please test new snapshots.
This should be fixed from that time. -
03:53 PM Bug #713 (Resolved): Shaper Wizard: When backlogged, high priority queues get zero bandwidth
-
01:10 PM Bug #713: Shaper Wizard: When backlogged, high priority queues get zero bandwidth
- I can confirm this as resolved. The qACK and QOthersHigh get created without the Link Share M1 or D options set now....
-
03:52 PM Feature #702 (Resolved): Page with status for "Traffic Shaper: Limiter"
-
01:15 PM Feature #702: Page with status for "Traffic Shaper: Limiter"
- I think this is resolved also. Looking at the Dec 2nd snapshot, I see a new option under Diagnostics -> Limiter Info...
-
03:50 PM pfSense Packages Bug #1065 (Feedback): error after rules installation
- Should be fixed.
Reinstall. -
03:32 AM pfSense Packages Bug #1065 (Resolved): error after rules installation
- when i am tryng to gep the page
/snort/snort_rules.php?id=1
It says "Fatal error: Cannot redeclare csrf_startup()... -
03:48 PM Bug #875: Uninstalling packages can remove system libraries
- Well i did a lot of testing today on this.
The only plausible option is to hardlink /usr/local/lib files that ship w... -
03:30 PM Bug #1063 (Feedback): Load balancer status doesn't work if the virtual server name contains a '.'
- Applied in changeset commit:"0a0774b511c6833a2b87975c21fdb3b10897d6c9".
-
03:28 PM Bug #1063: Load balancer status doesn't work if the virtual server name contains a '.'
- Actually nevermind, I think I got it. Commit is pending.
-
03:15 PM Bug #1063: Load balancer status doesn't work if the virtual server name contains a '.'
- How about:...
-
09:38 AM Bug #1063: Load balancer status doesn't work if the virtual server name contains a '.'
- Bah, attached in a slightly more readable format
-
09:36 AM Bug #1063: Load balancer status doesn't work if the virtual server name contains a '.'
- @
: relayctl show summary
Id Type Name Avlblty Status
1 redirect test ... -
09:24 AM Bug #1063: Load balancer status doesn't work if the virtual server name contains a '.'
- Can you show the output of:...
- 02:56 PM Revision eeb52fea: Syslog.conf would end up with multiple pkg facility names on the same line. So multiple pkgs with logging enabled would end up with the previous pkg prepended to its syslog entry.
-
02:14 PM Revision a2ff08f8: Disable redirect gateway checkbox when using shared key (you can't push with shared key). Also re-run the code to hide the local network box if the gw redirect is checked when switching server modes, since there is no need to push a specific local network when pushing the default gateway.
-
01:22 PM Revision b8e2fd16: Use unlink here instead of an exec to rm. Remove escapeshellarg call as it isn't needed now. Fixes #1066
-
11:39 AM Bug #302: Shaper wizard remembers values on error, but are disabled
- I see this same error again when using the Dec 2nd nanobsd snapshot.
2.0-Beta4 (i386) built on Thu Dec 2 03:39:46 E... -
11:31 AM Bug #733: Shaper: Unexplained 30% bandwidth max restriction in p2p catch all
- I have few more questions about this issue.
Is the user just supposed to know that custom bandwidths = p2p catchal... -
09:12 AM Bug #1030: Interface case change in apinger.conf needs reverted
- Well seems ok now.
Chris why do you think this is not fixed? -
04:49 AM Bug #1030 (New): Interface case change in apinger.conf needs reverted
- That revert was correct but not for fixing this.
-
04:36 AM Bug #1030: Interface case change in apinger.conf needs reverted
- Not sure it works (pfSense-2.0-BETA4-20101201-1616.iso).
I restored my configuration just before midnight, and the R... -
08:25 AM Bug #1066 (Feedback): Remove old dynamic caches
- Applied in changeset commit:"b8e2fd16e45c21e9942da71020682a3b79f05a69".
-
05:25 AM Bug #1066: Remove old dynamic caches
- should have looked like this :)...
-
05:14 AM Bug #1066 (Resolved): Remove old dynamic caches
- php: /services_dyndns_edit.php: The command '/bin/rm /conf/dyndns_opt2opendns'Fullrate'.cache' returned exit code '1'...
-
05:29 AM Revision 310a9d7b: Confirm before deleting the interface.
-
02:23 AM Bug #1060 (Resolved): Firewall Aliases, no tooltip in Rules if apostrophe in detail description
- thanks
-
02:18 AM Bug #1060: Firewall Aliases, no tooltip in Rules if apostrophe in detail description
- Confirmed fixed on latest snapshot, using same aliases from same config as the bug was submitted, and tooltip now sho...
-
02:14 AM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
- I was able to get in remotely (through another firewall/VPN) and revert the VM to a (VM) snapshot from Nov. 3rd that ...
-
01:50 AM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
- I just upgraded from a snapshot from yesterday to the most recent snapshot, full ISO install on a VM, with Open VM To...
12/01/2010
-
10:47 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- If you need development assistance along the way and have a budget for it, contact me via email (cmb at pfsense dot o...
-
10:44 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- Great, we'll start reviewing code to determine if it should be a package or part of the base system. Once we have a ...
-
10:39 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- Ah that's the first RTP-only security issue I've noticed, that does indeed make it worthwhile. Re-inviting is apparen...
-
10:23 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- As far as RTP changing ports during a call, in asterisk language its called re-inviting, and if it is non-standard, a...
-
10:13 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- The application we intend to use this for is as follows:
Asterisk Cluster -- pfSense -- Public Internet -- VoIP Ph... -
10:00 PM Feature #1064: VoIP - Dynamic Pinholes for RTP
- RTP is easy to accommodate without that mess, tons of VoIP providers run as is with no difficulties. It's most common...
-
09:40 PM Feature #1064 (Closed): VoIP - Dynamic Pinholes for RTP
- The media stream for a SIP call uses dynamically assigned port numbers. These port numbers can change several times d...
-
09:48 PM Bug #749 (New): Downstream queues should not be assigned to LAN interfaces
- The wizard in 1.2.3 creates seriously bad, wrong queues with behavior that cannot be duplicated all over again. Where...
-
05:08 PM Bug #749: Downstream queues should not be assigned to LAN interfaces
- The wizard is the same as in 1.2.3 it just takes more values for multiple interfaces.
And for me this is not much di... -
12:28 PM Bug #749: Downstream queues should not be assigned to LAN interfaces
- What would be the best design to handle shaping and routing?
I just ran into a duh moment after a site with limite... -
08:30 PM Bug #841: hostapd doesn't work with spoofed MAC (but should be able to)
- Tried that hostapd configuration setting and got "bssid item not allowed for the default interface and this driver", ...
-
07:35 PM Revision 1b844e70: Raise this to new limit of 2^16.
-
06:55 PM Bug #1000: lagg not working set to failover.
- I think its an em(4) problem since it is not reporting that it lost its link state.
-
05:23 PM Revision 435a418f: Do not spam console with useless messages. Also remove killall not needed anymore.
-
05:04 PM Revision 6c9e8647: Enable LINK_DOWN event for interfaces. It will help cases similar to http://forum.pfsense.org/index.php/topic,29032.0.html
-
04:20 PM Revision 893f4784: If the protocol is not set in the config, it defaults to https, so assume port 443 since the port isn't set either.
-
02:58 PM Revision ddb09227: Use new style filterdns argument passing on cmd and remove hack for killall now that its not needed anymore.
-
01:45 PM Bug #682: WAN traffic graph is broken with MLPPP
- Same issue exists for me in November 20 snapshot, all the way up to 8 lines.
-
12:24 PM Bug #1063 (Resolved): Load balancer status doesn't work if the virtual server name contains a '.'
- Hi,
I've spent a while trying to work out why a test load balancer config I created seemed to be working fine, but... -
12:14 PM Bug #1061: Error after upgrade to latest version
- I had https, but i hadn't used 443 explicitly.
Nevertheless, pfSense-Full-Update-2.0-BETA4-20101130-0828.tgz was the... -
12:03 PM Bug #1061 (Feedback): Error after upgrade to latest version
- Should be fixed in the next new snapshot. In the meantime if you go to System > Advanced, on the admin tab, and expli...
-
11:37 AM Bug #1061: Error after upgrade to latest version
- I can confirm this too.
I'm currently downloading an older snapshot to test.
i'll report back if i'm successful
... -
09:46 AM Bug #1061 (Resolved): Error after upgrade to latest version
- /diag_tables.php show nothing in dropdown menu
AND
Filter Reload Status
"There were error(s) loading the rules: /t... -
11:52 AM Revision b6ab9bd2: Ticket #1060. Escape even the alias entry descritpions.
-
11:22 AM Revision 1dbc0c43: Use correct variable name. Also related to Ticket #847.
-
10:06 AM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
- I have avahi, rrd summary and shellcmd installed. But I guess it is not shellcmd because I just installed it yesterda...
-
09:39 AM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
- I just updated an ALIX with cron, OpenVPN client export, shellcmd, blinkled, and siproxd installed. It worked fine. I...
-
09:29 AM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
- Just want to let you know that the same problem is here too. ALIX Box with latest pfsense 2.0 snapshot.
This problem... -
09:25 AM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
- Sure it works without any packages installed. But the ticket is for when you have some packages installed...
-
09:22 AM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
- FYI I've upgrade (with no package) and it worked.
-
07:11 AM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
- Now tried with snaps from 11/30 and 12/1 and it even got worse. Installed the 12/1 and wanted to connect to the WebUI...
-
09:55 AM Feature #1062 (Resolved): Add per-rule delete ("X") button to Outbound NAT rules
- Firewall rules, port forwards, etc, each have per-entry delete ("X") buttons, but not outbound NAT rules. For consist...
-
09:03 AM Bug #1058 (Feedback): filterdns not honoring quit signal
- Fixed.
-
05:56 AM Bug #1060 (Feedback): Firewall Aliases, no tooltip in Rules if apostrophe in detail description
- Committed.
-
12:05 AM Bug #1060 (Resolved): Firewall Aliases, no tooltip in Rules if apostrophe in detail description
- When editing aliases under Firewall->Aliases, if I have an alias of type Host(s) and in the Description field to the ...
-
05:28 AM Bug #847 (Feedback): Deleting interface leaves remnant in interface groups
- Well this is indirectly resolved by the latest commit(referenced to this issue to).
link_interface_to_group() functio... -
03:02 AM Bug #847 (New): Deleting interface leaves remnant in interface groups
- It either:
1) shouldn't allow deleting an interface that's in an interface group
or
2) should automatically remov... -
02:43 AM Bug #847: Deleting interface leaves remnant in interface groups
- This bug still exists, I just tested it on the most recent snapshot from this afternoon. I created an interface (opt1...
- 04:29 AM Revision 7eb2ebbe: Make page more html friendly.
- 04:25 AM Revision 75e22cbc: Do not output blank pkg names
- 04:23 AM Revision 5a0ce1fb: Revert "Do not output pgtitle twice. Make page more html friendly."
- This reverts commit 38f16bf27c1ce12e22e8783bea62f6c12bece4b0.
- 04:22 AM Revision 38f16bf2: Do not output pgtitle twice. Make page more html friendly.
- 04:18 AM Revision 92472a59: Do not output blank pkg name
- 01:38 AM Revision d32698d3: Ensure inetd.conf exists
- 01:36 AM Revision a1054b46: Make pfTop uniform
- 01:10 AM Revision 50646b37: Temporarily killall -9 filterdns until the signal issue can be resolved. Will open a ticket
- 12:52 AM Revision 50c35266: Make sure a port is always set. Remove trailing newline
- 12:43 AM Revision 522b72c1: Set port
- 12:35 AM Revision 76ffdf90: Add successful user for sshlockout
-
12:29 AM Revision 56bff6a3: Make sure host private key permissions aren't too open so sshd won't complain.
Also available in: Atom