Project

General

Profile

Activity

From 12/22/2010 to 01/20/2011

01/20/2011

10:19 PM Revision 582c58ae: Add drop-down to select OpenVPN hardware crypto (finds usable devices from "openssl engine" list) for clients and servers.
Jim Pingle
06:47 PM pfSense Packages Bug #1218 (Resolved): Freeradius package does not start when i do reboot
first of all i am not debeloper , i am not sure if this place is the right way to post the bug
Every time i reboot ,...
Abdelmonem Abuelezz
05:52 PM Revision 1801c223: Add the empty check otherwise all static routes are skipped. Reported-by: Seth
Ermal LUÇI
05:33 PM Revision bca35cff: Add a checkbox for duplicate-cn on OpenVPN servers.
Jim Pingle
05:23 PM Feature #1217 (Needs Patch): Change OpenVPN local/remote networks to lists instead of single boxes
In 2.1 or beyond it would be nice to have the OpenVPN local and remote network boxes instead be lists of networks, so... Jim Pingle
04:33 PM Revision 09e11b69: Comment what this variable does
Scott Ullrich
04:30 PM Revision f0695975: Adding $builder_package_install variable. When set to true ignore library fixups and sync_package() directives.
Scott Ullrich
03:58 PM Bug #560: loader.conf is empty after a firmware update.
I'm seeing a slightly different behaviour which may be unique to having serial console enabled after a an update.
...
R M
02:57 PM Bug #1216: OpenVPN client interfaces should not be NATed out of when assigned
to clarify, that is the tun interfaces are included as "nat on ...", though possibly only where the tun interfaces ar... Chris Buechler
02:49 PM Bug #1216 (Resolved): OpenVPN client interfaces should not be NATed out of when assigned
outbound NAT is applied on OpenVPN client interfaces when they are assigned, and should not be. Routing is almost alw... Chris Buechler
01:24 PM Bug #1209 (Resolved): cannot restore encrypted configuration file
Jim Pingle
01:22 PM Bug #1209: cannot restore encrypted configuration file
confirmed, I can now restore my encrypted config backup. thank you! Jesse Norell
01:18 PM Feature #1215 (Resolved): DHCP Bootp Flags
Need support for DHCP Bootp flags on WAN interface. Specifically 0x8000 (Broadcast).
Some ISP's do not set dhcp s...
NOYB NOYB
01:11 PM Bug #1151: Outgoing pptp Traffic-Flow stops after a while
pptp also working here :) Christian Schwarz
12:40 PM Bug #1151: Outgoing pptp Traffic-Flow stops after a while
The lockup issue is likely separate. The forum thread for that is here: http://forum.pfsense.org/index.php/topic,3245... Jim Pingle
12:25 PM Bug #1151: Outgoing pptp Traffic-Flow stops after a while
I updated on 1/19 as well and my PPTP VPN stability issue seemed to be resolved. But, as Chris stated above, I am ha... Stefan Pinson
08:26 AM Bug #1151: Outgoing pptp Traffic-Flow stops after a while
Just updated to the latest versions the morning of 1/19 and in the afternoon, both versions introduced system lockups... Chris Baker
12:42 PM Feature #1214 (Closed): Firewall Schedule Time Should Be Allowed to Straddle Midnight
Jim Pingle
12:37 PM Feature #1214: Firewall Schedule Time Should Be Allowed to Straddle Midnight
Nevermind, I just realized that I can add multiple time ranges to the same schedule. See attached screenshot. My bad. Joe Kelly
12:31 PM Feature #1214 (Closed): Firewall Schedule Time Should Be Allowed to Straddle Midnight
I wanted to create a schedule for late night _plus_ wee hours of the morning. I entered a Start Time of 21 Hr 00 Min ... Joe Kelly
11:34 AM pfSense Packages Bug #1213 (Resolved): Mod_Security+Apache+Proxy
in general setting
"Bind to IP Address
This is the IP address the Proxy Server will listen on.
NOTE: Leave b...
Dienis Rastegaeff
10:52 AM Bug #1075 (Resolved): rrd graphs missing / duplicate
Chris Buechler
09:59 AM Bug #1075: rrd graphs missing / duplicate
The problem seems solved, i will continue
to test it at different times of day.
If i find further problems I will ...
Martin Klein
10:49 AM Revision 15705bc0: Enlarge subnet bits to 128
Seth Mos
09:37 AM Bug #1211 (Rejected): System Lockup after upgrading from December build to January 19th builds
This is not you hotline support.
Please use the forums for this issues.
Ermal Luçi
08:19 AM Bug #1211 (Rejected): System Lockup after upgrading from December build to January 19th builds
After upgrading to yesterday mornings's build pfense locked up after a few hours. I then upgraded to the latest buil... Chris Baker
08:03 AM Revision d2619fa0: Merge remote branch 'upstream/master'
Conflicts:
etc/inc/system.inc
Seth Mos
12:08 AM Bug #1177: Passive FTP
was running the SMP kernel
loaded the developer's kernel -> solid, cannot duplicate the crashes
Lee Thornhill

01/19/2011

11:35 PM Revision 86ae3621: Allow setting package interfaces to loopback (lo0)
Scott Ullrich
11:10 PM Bug #1177: Passive FTP
Same problems as I reported before using the i386 Wed Jan 19 11:47:04 build.
With testing tonight I was 3 for 3 on...
Lee Thornhill
02:36 AM Bug #1177: Passive FTP
Also only able to retrieve the directory listing on the second try.
Response: 200 Switching to Binary mode.
Comma...
Lee Thornhill
02:17 AM Bug #1177: Passive FTP
Testing with a client behind pfsense using Tue Jan 18 03:34:33. FTP helper takes down box when re-initializing a prev... Lee Thornhill
12:57 AM Bug #1177: Passive FTP
after some heavy tests I found out that there are a lot of connections droped by the default deny rule!
This finally...
Michael Heller
12:37 AM Bug #1177: Passive FTP
2.0-BETA5 (i386)
built on Tue Jan 18 03:34:33 EST 2011
confirmed.. FTP helper is working..
Branko Lukman
09:23 PM Revision daacb818: Ticket #1210. Also here unset any previous value if none posted.
Ermal LUÇI
09:20 PM Revision c2461a56: If no value is posted means we have no value to save in config and should unset any pervious set ones.
Ermal LUÇI
08:56 PM Revision f5bafe95: Resolves 1209. Correctly calculate the necessary data to return from an 'pfsense' format encrypted file.
Ermal LUÇI
06:57 PM Revision 38bdc48d: This logic was reversed fix it. Reported-by: Seth
Ermal LUÇI
06:53 PM Revision 33a2693c: don't show platform here (rebrands)
Chris Buechler
06:25 PM Revision bcfe4ae5: Ticket #259 trim the \n from the command output and return only the numeric part of it.
Ermal LUÇI
06:07 PM Revision 1c4edc3c: If an outbound nat rule has a protocol specified, show it in the summary view.
Jim Pingle
05:42 PM Bug #755 (Resolved): dnswatch not working
https://rcs.pfsense.org/projects/pfsense-tools/repos/mainline/commits/750951f9b2bd4cdb1bde4748cc51a0258b59f5b3
Fixes...
Ermal Luçi
04:18 PM Bug #1210 (Feedback): Erasing limiter advanced options does not save the change
Committed a fix https://rcs.pfsense.org/projects/pfsense/repos/mainline/commits/c2461a56d45b678213488ea1ced099a38ead267e Ermal Luçi
04:17 PM Bug #1210 (Resolved): Erasing limiter advanced options does not save the change
Create a limiter, add a delay, and save. Edit the limiter, erase the delay, and save. The value is still there, not b... Jim Pingle
03:55 PM Bug #1209: cannot restore encrypted configuration file
Applied in changeset commit:"f5bafe95a1fb4372288816debaa21b4f943a32e8". Ermal Luçi
03:54 PM Bug #1209 (Feedback): cannot restore encrypted configuration file
https://rcs.pfsense.org/projects/pfsense/repos/mainline/commits/f5bafe95a1fb4372288816debaa21b4f943a32e8
Fixes the i...
Ermal Luçi
02:08 PM Bug #1209 (Resolved): cannot restore encrypted configuration file
I'm unable to restore an encrypted configuration file in the latest 2.0 snapshot. It fails with a "real" config back... Jesse Norell
01:49 PM Bug #1208 (Closed): Limiters don't work on non-quick rules
Limiters should not be allowed to be specified on non-quick floating rules as they don't work in such a scenario. Chris Buechler
01:48 PM Bug #1207 (Resolved): Renaming a limiter creates new limiter
when a limiter is renamed it creates a new one rather than renaming it. Chris Buechler
01:38 PM Bug #1198 (Resolved): Incorrect tls-auth setting for Peer to Peer SSL/TLS OpenVPN Server with tls-auth enabled
thanks Chris Buechler
01:36 PM Bug #1198: Incorrect tls-auth setting for Peer to Peer SSL/TLS OpenVPN Server with tls-auth enabled
Hi, I upgraded to the Jan 17th firmware yesterday and I can confirm that this bug is fixed. Thanks! Joe Kelly
01:24 PM Bug #259 (Feedback): When disabling a dhcp interface, dhclient is not stopped
Ermal Luçi
09:41 AM Bug #259 (New): When disabling a dhcp interface, dhclient is not stopped
Jim Pingle
09:29 AM Bug #259 (Feedback): When disabling a dhcp interface, dhclient is not stopped
I just tested this with a clean 2.0 BETA5 i386 install and I still see dhclient messages in the system logs. Seth Mos
12:58 PM Bug #863: floating rules breaks passive mode ftp
There is some improvement, I can now use an ftp client on LAN in both passive or active mode, but still can't use pas... Jesse Norell
10:51 AM Bug #1206 (Rejected): OpenVPN client is not Multi-WAN capable
Out of the box, a single client instance will not fail from WAN1 to WAN2 when coming from pfSense itself. You can sel... Jim Pingle
10:43 AM Bug #1206 (Rejected): OpenVPN client is not Multi-WAN capable
After several day of trying every possible solution, I have to report that the built-in OpenVPN client is not multi-W... Stefan Seidel
10:50 AM Bug #463: PPTP VPN rediction does not work
This still does not work in Beta5, I still had to make the rules by hand. The the option "Redirect incoming PPTP conn... tarz an
07:30 AM Revision 911a262f: Prevent a IPv6 address from breaking system routing. This is a hack because we don't have the proper ip validation in 2.0 mainline
Seth Mos
06:19 AM Feature #1205 (Closed): VPN: User-based / Group-based firewall rules
Firewall rules on a per-user or per-group basis would be very helpfull.
This means we could limit acces to certain ...
Mark Laagland
02:36 AM Revision ff998f10: fix DNS rebinding descr
Chris Buechler
12:07 AM Bug #1130 (Resolved): NAT reflection broken...
Chris Buechler
12:05 AM Bug #1130: NAT reflection broken...
2.0-BETA5 (i386)built on Tue Jan 18 02:47:41 EST 2011 everything works fine!
Problem seems to have been solved.
...
Brian Jensen

01/18/2011

10:21 PM Revision 532cb894: Ticket #836 Ticket #1194 and http://forum.pfsense.org/index.php/topic,32175.msg166263.html#msg166263 suggest that now that CP actions are quite fast its better to send the logout data before actually disconnecting the client.
Ermal LUÇI
09:13 PM Revision 85e3f445: Do not put a config entry for dhcpd if we cannot determine the subnet address. Reported-by: http://forum.pfsense.org/index.php/topic,32303.0.html
Ermal LUÇI
08:46 PM Bug #1130 (Feedback): NAT reflection broken...
Chris Buechler
05:30 PM Bug #1130: NAT reflection broken...
I haven't been able to reproduce any of these issues at least on a snapshot that is more recent than the comments her... Erik Fonnesbeck
08:38 PM Revision ba4f6e1d: Better way to determine the username for config descrs
Jim Pingle
08:38 PM Revision fa09d1b8: Fix variable name reference
Jim Pingle
08:38 PM Revision b1224cdc: Fix references to what was apparently supposed to be $g['booting'] and not $bootup.
Jim Pingle
08:38 PM Revision f9c8e64c: Add a description to this write_config() so it's a little more obvious what it's doing in the logs.
Jim Pingle
08:22 PM Revision 3644e29c: The use of log_error() requires util.inc
Warren Baker
05:19 PM Bug #1194 (Feedback): Captive Portal Logout Issue
The fix for putting disconnect after logout window committed please test. Ermal Luçi
05:19 PM Bug #836: Captive portal logout popup windows doesn't disconnect the user
Patch committed please test. Ermal Luçi
05:00 PM Bug #1151 (Feedback): Outgoing pptp Traffic-Flow stops after a while
Committed a fix just now.
Grab a snapshot from tomorrow and test.
Ermal Luçi
04:00 PM Revision 1bbbd3dd: No need to set this here, we already set it in config.inc (and it takes precedence)
Jim Pingle
03:38 PM Revision 4b08378c: No need to set this here anymore. We set it higher by default.
Jim Pingle
02:58 PM Revision 7d9b3d5e: Add the cron job a different way. There have been a couple reports of losing CAs during the config upgrade and this was the only added function at the time.
Jim Pingle
02:36 PM Bug #1075: rrd graphs missing / duplicate
Have you tried this on a newer snapshot? The Current Period graph at 12:00am to 7:59am should be working properly no... Erik Fonnesbeck
01:44 PM Bug #755: dnswatch not working
Pushed a patch to check for null hostnames from the bt it seems null hostname was passed to the gethostbyname which m... Ermal Luçi
11:35 AM Bug #755: dnswatch not working
Just for issue tracking - I have, offlist, mailed gdb output from the core to Ermal. Warren Baker
08:52 AM Revision 2db19fec: Fix broken merge, change variable name to define inet family
Seth Mos
08:10 AM Revision 1f74cd2d: Merge remote branch 'upstream/master'
Conflicts:
etc/inc/interfaces.inc
etc/inc/system.inc
Seth Mos
07:49 AM Bug #1177: Passive FTP
the last snapshot
built on Jan 18 04:33:29 EST
is working for me.
Michael Heller
06:12 AM Bug #1177: Passive FTP
Clients from internal network to oudside ftp servers are working without problems.
CLient connecting from the intern...
Branko Lukman
05:26 AM Bug #1177: Passive FTP
Michael Heller wrote:
> my ftp server is located behind opt interface of pfsense (dmz)
> the clients from LAN side ...
Michael Heller
05:25 AM Bug #1177: Passive FTP
my ftp server is located behind opt interface of pfsense (dmz)
the clients from LAN side cannot connect with passive...
Michael Heller
05:11 AM Bug #1177: Passive FTP
Normal clients behind nat. The FTP server is behind a nat too (pfsense).
Clients can connect without any problem, ...
Blaise Hurtlin
05:07 AM Bug #1177: Passive FTP
Can you be more specific if the rdr to internal server of passive ftp does not work or normal client behind nat passi... Ermal Luçi
02:38 AM Bug #1177: Passive FTP
I can confirm this bug. The same appens here, passive FTP does not work (build of Jan 16 2011) Blaise Hurtlin
02:25 AM Bug #1177: Passive FTP
same here.
internal passive ftp with any rules doesen't work either.
Running 2.0-BETA5 (i386)
builtonMon Jan 17 ...
Michael Heller
02:08 AM Bug #1177: Passive FTP
Running 2.0-BETA5 (i386)
built on Mon Jan 17 19:56:49 EST 2011 with NAT and 2 external interfaces. Port 21 forwarde...
Branko Lukman
07:36 AM Bug #1188: lighttpd not starting after update 20110111
It should be better now, I make a commit to help out with this:
http://redmine.pfsense.org/projects/pfsense/reposito...
Jim Pingle
05:32 AM Bug #1188 (Closed): lighttpd not starting after update 20110111
Chris Buechler
05:31 AM Bug #1188: lighttpd not starting after update 20110111
I think we can close this bug. Later updates does not cause this issue. Mykolas Norvaišas
05:29 AM Bug #1196 (Rejected): Upgraded today (haven't for a week or slightly more) and my servers are now sending out multicast IGMP packets?!
this has nothing to do with IGMP proxy and likely nothing to do with your firewalls at all, at a minimum it's a confi... Chris Buechler

01/17/2011

10:11 PM Revision 96e889fc: Specify the -inet family so that accidental IPv6 addresses here don't break the system routing.
Seth Mos
09:29 PM Revision 2b7ca9b2: Add the default value for the new tunable debug.pfftpproxy to 0. It allows to disable the pfftpproxy. Also add it to the default config.xml though no upgrade code should be needed since people can create this from the gui and hopefully do not need to know about this anyway.
Ermal LUÇI
08:08 PM Revision 9d7d2388: Really do not deactivate netgraph if the underlying interface is needed by it!
Ermal LUÇI
03:33 PM Bug #863 (Feedback): floating rules breaks passive mode ftp
Try a newer snapshot than the date of this post it should fix the issue.
although this is not target for 2.0 the fix...
Ermal Luçi
03:32 PM Bug #1177 (Feedback): Passive FTP
Try a snapshot newer than this post which should fix the issues. Ermal Luçi
09:35 AM Feature #1204 (Needs Patch): Captive Portal Chart
Hi,
Is it possible to add a chart about Captive Portal users, some statistics on number of users, bandwidth usage ...
Heder Dorneles Soares

01/16/2011

07:01 PM Bug #1203 (Rejected): No WAN DHCP Discover Request
either not a bug or not one we can do anything about, will respond on forum. Chris Buechler
06:58 PM Bug #1203 (Rejected): No WAN DHCP Discover Request
No WAN DHCP Discover Request being generated.
ICMPv6 Neighbor Solicitaion is done, but no DHCP Discover is done.
...
NOYB NOYB
05:55 PM Bug #755 (New): dnswatch not working
Chris Buechler
01:13 PM Bug #755: dnswatch not working
Unfortunately this is still core dumping for me on latest snaps. Warren Baker
04:16 PM Bug #1202 (Resolved): Shell access permission required for IPsec Xauth clients
In order for a client to successfully authenticate against an IPsec mobile setup that has Xauth enabled, the user mus... Jim Pingle
04:08 PM pfSense Packages Bug #1201 (Rejected): OpenVPN
That is a configuration issue, start a thread on the forum and someone can probably help you. Jim Pingle
04:05 PM pfSense Packages Bug #1201 (Rejected): OpenVPN
VPN is connecting
router is injected into the client
by
All clients windows with Ip 10.10.199.6/24
wan 2...
Joaquim Soares Soares
07:53 AM Bug #816: USB Keyboard Detection - Boot Hangs
I cannot reproduce this error, and used pfsense on many machines mainly with usb kayboards. From Beta4 tested on Via ... Krzysztof Augustyn
06:40 AM Bug #836: Captive portal logout popup windows doesn't disconnect the user
http://redmine.pfsense.org/issues/1194 L J

01/15/2011

05:52 PM Bug #836: Captive portal logout popup windows doesn't disconnect the user
Status -> Captive portal
There the user who are currently logged in are shown and a user who loggs out via button ...
L J
03:03 PM Revision 756720e2: Ticket #1198. Fix code when checking client or server
Pierre POMES
11:30 AM pfSense Packages Bug #1200 (Closed): Navigational link in Shellcmd package broken
If you navigate to Services->Shellcmd and you want to get to the pfSense Dashboard by clicking the logo in the top le... James Lepthien
11:29 AM pfSense Packages Bug #1199 (Closed): Navigational link in Backup package broken
If you navigate to Diagnostics->Backup Files/Dir and you want to get to the pfSense Dashboard by clicking the logo in... James Lepthien
10:02 AM Bug #1198 (Feedback): Incorrect tls-auth setting for Peer to Peer SSL/TLS OpenVPN Server with tls-auth enabled
Hi !
Thanks for your detailed report. The problem should be fixed in the next snapshot.
Regards,
Pierre
Pierre POMES
03:36 AM Bug #1183: Alias change reloads filter twice
This is now working correctly. Tested with NanoBSD built on Thu Jan 13 20:30:46 EST 2011. James Lepthien
03:35 AM Bug #1187 (Resolved): Creating NAT rule with valid (but long) label causes error loading pf rules
thanks Chris Buechler
03:33 AM Bug #1187: Creating NAT rule with valid (but long) label causes error loading pf rules
That is now working correctly - tested on NanoBSD built on Thu Jan 13 20:30:46 EST 2011. James Lepthien

01/14/2011

07:58 PM Revision 5a05633a: Fix serial port note text.
Jim Pingle
07:32 PM Bug #1198 (Resolved): Incorrect tls-auth setting for Peer to Peer SSL/TLS OpenVPN Server with tls-auth enabled
I found the following bug in pfSense 2.0-BETA4 (i386) built on Tue Dec 21 15:02:48 EST 2010.
I setup an OpenVPN se...
Joe Kelly
07:14 PM Revision 75e9ed89: Remove extra brace
Jim Pingle
05:20 PM Revision 546f30ca: Better test for an empty CA to avoid writing out an empty CA file (some on the forum are seeing this.)
Jim Pingle
04:15 PM Bug #1197 (Closed): Cannot log into the web interface using Opera Internet Browser v11
Thanks for letting us know what it was. At least it will be on here for others to see (and find via Google) if they h... Jim Pingle
04:10 PM Bug #1197: Cannot log into the web interface using Opera Internet Browser v11
I got it working after a some additional trial and error. I updated the site preferences for the pfsense web interfa... N L
03:46 PM Bug #1197: Cannot log into the web interface using Opera Internet Browser v11
Post in the forum and see if anyone else has any ideas there, or if anyone else has the same experience.
Also, if ...
Jim Pingle
03:31 PM Bug #1197: Cannot log into the web interface using Opera Internet Browser v11
Works fine in Opera 11 on Windows for me too.
N L wrote:
>
> Any ideas?
Your Opera is broken? :)
Chris Buechler
03:28 PM Bug #1197: Cannot log into the web interface using Opera Internet Browser v11
Jim P wrote:
> It works fine in Opera 11 on Windows and FreeBSD for me. Has since Opera 11 released.
Any ideas?
N L
03:07 PM Bug #1197 (Feedback): Cannot log into the web interface using Opera Internet Browser v11
It works fine in Opera 11 on Windows and FreeBSD for me. Has since Opera 11 released. Jim Pingle
03:01 PM Bug #1197 (Closed): Cannot log into the web interface using Opera Internet Browser v11
This issue arises when attempting to log into the web interface using the Opera Internet Browser (version 11 tested).... N L
11:16 AM Bug #1196 (Rejected): Upgraded today (haven't for a week or slightly more) and my servers are now sending out multicast IGMP packets?!
I upgraded my pfsense 2.0 test boxes today for the first time in about a week.
All of a sudden my firewall logs ar...
Gary Richards
08:46 AM Bug #1195 (Rejected): FTP
Duplicate of #1177, other issue is related/known. Jim Pingle
08:16 AM Bug #1195 (Rejected): FTP
I updated my pfsense box to 2.0-BETA5 built on jan 13 2011.
During my test I found out that my ftp server which is...
Michael Heller
07:37 AM Bug #1194 (Closed): Captive Portal Logout Issue
There is a bug in the way the captive portal handles forced logout initiated by the user. Please see
http://forum....
Luis Soltero
06:36 AM Bug #1193 (Resolved): Traffic Shaper default queue Problem
As reported here a bug in traffic shaper:
When 2 or more queues are selected as default queue, you get a
_[filter...
igor igor
12:42 AM pfSense Packages Bug #1080: Snort Installation fails
Installation of snort FAILED!
2.0-BETA5 (i386)
built on Thu Jan 13 19:33:19 EST 2011
As on 14-01-2011
Koti SK

01/13/2011

04:38 PM Feature #1192 (Resolved): Certificate Manager - Ability to Encrypt Private Keys When Exporting
I'm currently running pfSense 2.0-BETA5 (i386) built on Tue Jan 11 15:17:51 EST 2011. I love the Certificate Manager... Joe Kelly
03:26 PM Bug #1179 (Resolved): After NanoBSD Firmware upgrade pfSense doesn't reboot automatically
Jim Pingle
03:00 PM Bug #1179: After NanoBSD Firmware upgrade pfSense doesn't reboot automatically
Worked for me now. Just did an update to latest snap and it rebooted automatically. James Lepthien
02:33 PM Revision 396cfe2e: Validate imported CA/Cert a bit more strongly. Should fix #1190
Jim Pingle
11:35 AM Feature #1191 (Closed): Enable dynamic VLAN assignment at Captive Portal
Idea:
The Captive Portal Interface assigns an IP via the internal DHCP Server whitch lease time is limited to 10-30 ...
L J
10:55 AM Bug #1168: Some description fields don't accept umlauts
Applied in changeset commit:"72b7aa4a8ebb397c21f923cc43a2fa6071a907e6". Jim Pingle
10:55 AM Bug #1187: Creating NAT rule with valid (but long) label causes error loading pf rules
Applied in changeset commit:"3b83b51ad2dd7d1ed3ecb0faab251813b3678a8e". Jim Pingle
10:55 AM Bug #1190 (Feedback): Incorrectly pasted SSL Cert breaks the webconfigurator
Applied in changeset commit:"396cfe2ee573696436e2c310f4d2610c1610965a". Jim Pingle
09:03 AM Bug #1190: Incorrectly pasted SSL Cert breaks the webconfigurator
We already validate the first line, but not the last. Extra safety belts may not hurt though.
The cert on the file...
Jim Pingle
08:58 AM Bug #1190: Incorrectly pasted SSL Cert breaks the webconfigurator
Actually, I lie. That hasn't fixed it. /var/etc/cert.pem is being replaced when the webConfigurator restarts?!
Help!
Gary Richards
08:55 AM Bug #1190 (Resolved): Incorrectly pasted SSL Cert breaks the webconfigurator
I just pasted an SSL cert into the cert manager to use as the cert for the web interface. I managed to paste the cert... Gary Richards
09:56 AM Bug #1188: lighttpd not starting after update 20110111
By default there is no CA with the stock HTTPS certificate, so a missing CA isn't really a problem. Jim Pingle
08:24 AM Bug #1188: lighttpd not starting after update 20110111
I see CA info is lost after update
*System: Certificate Authority Manager* shows no authorities (empty).
*System...
Mykolas Norvaišas
07:27 AM Bug #1188: lighttpd not starting after update 20110111
one more note
webgui fails to start with my custom SSL certificate. With "webConfigurator default" certicicate HTT...
Mykolas Norvaišas
06:46 AM Bug #1188: lighttpd not starting after update 20110111
This also happened to me on 2.0-BETA5 (i386) built on Thu Jan 13 02:45:05 EST 2011.
Editing config.xml to accept htt...
Floris van Lint
06:01 AM Bug #1188: lighttpd not starting after update 20110111
starts working after reverting to HTTP Mykolas Norvaišas
06:00 AM Bug #1188 (Closed): lighttpd not starting after update 20110111
Webgui stopped working in HTTPS after update pfSense 2.0 BETA5 amd64 20110111... Mykolas Norvaišas
09:47 AM Bug #749 (New): Downstream queues should not be assigned to LAN interfaces
this doesn't mean downstream queues shouldn't exist at all, they should. Chris Buechler
08:50 AM Bug #749 (Resolved): Downstream queues should not be assigned to LAN interfaces
Though discussions on reverting this behaviour is ongoing. Ermal Luçi
09:03 AM Feature #1189: Gateway: Multiple monitor ips
biatche biatche wrote:
>
> I don't think many here would care for it, since most of you are from the 1st world w...
Max Riedel
07:32 AM Feature #1189 (Duplicate): Gateway: Multiple monitor ips
Would be my first time making an entry here so if it's not within the rules bear with me thanks.
For gateways to s...
Irwin Leong
05:07 AM Bug #621 (Resolved): Certificate Manager won't accept a windows CA signed certificate
Ermal Luçi
01:09 AM Bug #621: Certificate Manager won't accept a windows CA signed certificate
I think you fixed the problem. With the snapshot [2.0-BETA5 (i386) built on Wed Jan 12 18:38:12 EST 2011] I am able ... Brian McAndrew

01/12/2011

09:39 PM Revision ad0d6389: Bail on reinstalling all packages if we can't contact the package repo.
Jim Pingle
07:26 PM Revision 7201ca27: We no longer use /var/run/config.lock - catch up to other progress. Also, use lockf to test if the config is locked now, with a 30 second timeout.
Jim Pingle
07:19 PM Revision 311f93cd: Ticket #621. Sort even csr subject to have the matching go ok during import of externally signed cers.
Ermal LUÇI
06:45 PM Bug #1154: Kernel panic after connecting to OpenVPN
Successfully grabbed the panic in developer:
Kernel page fault with the following non-sleepable locks held:
exclu...
Nick K
06:06 PM Revision 3b83b51a: Only copy 52 chars of a user descr to the pf rule. When added to the "USER_RULE: " prefix (11 chars) we hit the 63 char limit. Fixes #1187
Jim Pingle
05:23 PM Bug #1179 (Feedback): After NanoBSD Firmware upgrade pfSense doesn't reboot automatically
Should be OK after this commit:
https://rcs.pfsense.org/projects/pfsense/repos/mainline/commits/7201ca277ed66540baea...
Jim Pingle
02:23 PM Bug #621: Certificate Manager won't accept a windows CA signed certificate
Ok i fixed even the CSR. Can you please try the latest snapshot or the do the last patch listed here manually? Ermal Luçi
01:49 PM Bug #1187 (Feedback): Creating NAT rule with valid (but long) label causes error loading pf rules
Should be OK with the commit I made, commit:3b83b51ad2dd7d1ed3ecb0faab251813b3678a8e Jim Pingle
09:42 AM Bug #1187 (Resolved): Creating NAT rule with valid (but long) label causes error loading pf rules
I created a Firewall: NAT: Port Forward: rule with a description of: "Redirect tftp requests to tftp-proxy running lo... Gary Richards
03:32 AM Bug #1186 (Confirmed): When in pure routing mode the rrd graphs are blank
When the filtering is disabled the graphs have no data to graph since we switched to pf counters.
Probably should ha...
Ermal Luçi
02:37 AM Revision a8c35980: Revert "nuke content size."
This reverts commit 456962bde2b5b64f2feca58728d96c9c45463f1d. Scott Ullrich

01/11/2011

10:11 PM Bug #1154: Kernel panic after connecting to OpenVPN
We also reference the problem in http://forum.pfsense.org/index.php/topic,31721.0.html Nick K
09:27 PM Feature #1185 (Closed): PHP compression activation
Need to reactivate PHP compression:
- turn on zlib.output_compression in php.ini.
- make sure all generated downloa...
Pierre POMES
05:13 PM Bug #1013 (Resolved): Captive Portal Reauthentication broken
Ermal Luçi
01:57 PM Bug #1013: Captive Portal Reauthentication broken
Update to new version did not work, reinstall did. Ticket could be closed!
Thx.
L J
02:13 PM Feature #1184 (Resolved): Certificate Manager - Ability to add nsCertType=SERVER extension to certificates
Hi,
I'm running psSense 2.0-BETA4 (i386) built on Mon Dec 20 20:21:46 EST 2010. Loving it so far!
I am setting...
Joe Kelly
02:28 AM Revision 34bf3b3b: Ticket #1183. Skip call to filter_configure() here, this will be done when user will click on 'apply changes' button in firewall_aliases.php
Pierre POMES

01/10/2011

11:38 PM Bug #1154: Kernel panic after connecting to OpenVPN
Chris,
Here is my thread on this also from dec 13
Old snaps worked fine. (oct) this happens on a few different fir...
vito B
10:58 PM Revision 001cbed2: Sort installed packages in a case insensitive way on the widget and installed packages list.
Jim Pingle
10:57 PM Revision c1261315: Whitespace fixes
Jim Pingle
10:49 PM Revision b2254c7f: Sort services on the services status page and widget.
Jim Pingle
09:35 PM Bug #636: layer7 not work correctly
I currently get:
@ipfw-classifyd: unable to write to divert socket: No buffer space available@
If I have an l7 cl...
James Snyder
09:29 PM Bug #1183 (Feedback): Alias change reloads filter twice
Keep the same logic as for firewall rules, and remove call to filter_configure when user saves the changes in firewal... Pierre POMES
09:12 PM Bug #1183: Alias change reloads filter twice
The first cal to filter_configure() occurs when saving the changes in firewall_aliases_edit.php­.
The second one occ...
Pierre POMES
06:01 PM Bug #1183 (Resolved): Alias change reloads filter twice
After changing an alias, the filter reloads twice, which can lead to a race condition "device busy" like the attached... Chris Buechler
09:23 PM Revision 887b5af5: Be more restrictive with PPTP passwords, invalid characters can blow up the config.
Jim Pingle
09:11 PM Revision d0dc2fd1: Bump config version, add upgrade code to setup cron job for URL table update script.
Jim Pingle
09:11 PM Revision dc074b0f: Update config.xml to a more recent version, include a cron job for URL table aliases updates.
Jim Pingle
09:06 PM Revision b7ff3186: Ticket #875. While ldconfig should be called by pkg code itself do it explicitly to have the cache file rebuilt with correct list.
Ermal LUÇI
08:52 PM Revision 24e61cce: Ticket #317. Unconditionally synchronize users on bootup this might prevent some reports of ssh keys not being there.
Ermal LUÇI
08:10 PM Bug #621: Certificate Manager won't accept a windows CA signed certificate
The latest snapshot [2.0-BETA5 (i386) built on Mon Jan 10 13:14:45 EST 2011], it still shows the error. Attached are... Brian McAndrew
03:11 PM Bug #621: Certificate Manager won't accept a windows CA signed certificate
I do not think that patch is in a Jan 7 snapshot.
Please try a more recent one.
Ermal Luçi
05:21 PM Revision 0f70d563: Ticket #944. Do not use the interface_bring_down fucntion here since it is meant for assigned interfaces. Directly destroy previous vlan interface if parent changes.
Ermal LUÇI
05:00 PM Revision d0d70b03: Ticket #1013. Force NAS_PORT to be of type integer to avoid it being interpreted as char and generate wrong radius packet.
Ermal LUÇI
04:33 PM Todo #1139: Email notification test button
no target, some point in the future. Chris Buechler
04:32 PM Todo #1139: Email notification test button
Hi,
Targetted for 2.0 or 2.1 ?
Pierre
Pierre POMES
04:31 PM Bug #1090 (Resolved): clean up interfaces mess in setup wizard
Ermal Luçi
04:29 PM Todo #1071: Reevaluate locks
Most of what is necessary for 2.0 has been done.
I will leave this open for Future version for any other part that n...
Ermal Luçi
04:25 PM Bug #853 (Resolved): PPPoE Server radius config not applied
Ermal Luçi
04:07 PM Bug #875: Uninstalling packages can remove system libraries
I added a ldconfig call to rebuilt the lib caches 'just in case'. Ermal Luçi
12:38 AM Bug #875: Uninstalling packages can remove system libraries
for instance: ... Chris Buechler
12:36 AM Bug #875: Uninstalling packages can remove system libraries
there are still possibilities here to destroy the system by uninstalling packages. Chris Buechler
03:58 PM Revision c97297fd: Add EasyRule images to all other themes. Should work in all themes now.
Jim Pingle
03:50 PM Bug #317 (Feedback): SSH authorized keys lost on upgrade on embedded
Can yo please try a snapshot from tomorrow and see if it works? Ermal Luçi
02:35 PM Revision f4015bd7: Turn back off zlib compression
Scott Ullrich
11:38 AM Todo #1182 (Closed): Integrate minicron to check_reload_status
It would be desirable to have minicron go away and integrate it with check_reload_status.
1) minicron is not complic...
Ermal Luçi
11:26 AM Bug #944 (Feedback): Moving VLANs to lagg doesn't remove old VLANs
Committed the other fix because the previous relied on interface being assigned. Ermal Luçi
11:05 AM Bug #1013 (Feedback): Captive Portal Reauthentication broken
Ermal Luçi
11:02 AM Bug #1013: Captive Portal Reauthentication broken
I just committed a fix for the issue Chris reported.
L J -> if you ahve no output from that command means you will...
Ermal Luçi
10:09 AM Feature #1181 (Closed): Allow a way to add protocols (such as udp) to a load balancer
I've been trying to configure load balanced DNS with pfsense 2.0. It occurred to me fairly quickly that this might no... Gary Richards
07:43 AM pfSense Packages Feature #1180 (Rejected): I'd love to see a central management in pfsense
There is already something in the works, but it's a separate piece of software (still very early in development). It ... Jim Pingle
05:30 AM pfSense Packages Feature #1180 (Rejected): I'd love to see a central management in pfsense
Hello,
i'd love to see a central management solution for the multiple pfsense firewalls. If you have more than one...
Thomas Scholten
05:01 AM pfSense Packages Bug #1114: Snort Dashboard Widget has wrong link
Just a little update. Now i monitored several alerts so the depending files should exist. The link is still broken an... Thomas Scholten
03:45 AM Revision 17dd7ff3: allow 127.0.0.1 and localhost for HTTP_REFERER checks
Chris Buechler

01/09/2011

07:30 PM Bug #1178: Unable to select VLAN in PPPs interfaces
You've fallen prey to excess complexity. :) The UI is admittedly not intuitive.
Here are the steps to follow.
)...
Marcus Brown
06:29 PM Revision 10e4d55e: Fix HTML errors reported by Eclipse using PHP perspective
Pierre POMES
11:49 AM Bug #1177: Passive FTP
To your First Question using 8.01 snapshot the
problem still exists.
Attached are pcap files (passwords/usernames...
Martin Klein
03:50 AM Bug #1179 (Resolved): After NanoBSD Firmware upgrade pfSense doesn't reboot automatically
When the NanoBSD upgrade by webinterface is done the message 'NanoBSD Firmware upgrade is complete. Rebooting in 10 ... James Lepthien
03:11 AM Bug #1152 (Resolved): Client mode OpenVPN gateways sometimes not added to apinger
the main issue here is fixed. the remaining is just that it shows "Gathering data" on AJAX reloads only (status page ... Chris Buechler
03:03 AM Bug #733 (Resolved): Shaper: Unexplained 30% bandwidth max restriction in p2p catch all
Chris Buechler
02:57 AM Feature #753 (New): Add OpenVPN foreign_option support
OpenVPN interface assignments work fine set to type "none" as they should be, they have an automatically handled dyna... Chris Buechler
02:38 AM Bug #944 (New): Moving VLANs to lagg doesn't remove old VLANs
no change. When changing a VLAN from a physical interface to lagg or vice versa, it leaves the old VLAN interface as ... Chris Buechler
02:23 AM Bug #755 (Resolved): dnswatch not working
Chris Buechler
02:23 AM Bug #1087 (Resolved): vouchers need to save to CF periodically
Chris Buechler
02:22 AM Bug #1083 (Resolved): aliases cause error when creating NAT 1:1 rules
Chris Buechler
02:21 AM Feature #820 (Resolved): Expose interface for PF address pools on outbound NAT rules
looks like this is all good. Chris Buechler

01/08/2011

04:10 PM Revision 5186f104: Added Unbound to the package section for correct link to doc site.
Warren Baker
10:23 AM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
Keep an eye on it for your next firmware upgrade. Even though there weren't any more changes to that part, I'm curiou... Jim Pingle
07:47 AM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
I tested this now with snapshot 1/8 and the problem is kinda gone. Although not all packages got reinstalled automati... James Lepthien

01/07/2011

10:39 PM Revision 1c42331b: Stop spewing backup info on bootup
Scott Ullrich
10:28 PM Revision 52f4c092: Add back booting check that existed prior to refcount code. We will improve upon this next week.
Scott Ullrich
09:37 PM Revision b89c34aa: Ticket #621. sort the contents of array used for generating subject by keys so whenever we do subject comparison we will not have problem just because of the array keys ordering.
Ermal LUÇI
08:58 PM Bug #621: Certificate Manager won't accept a windows CA signed certificate
Using the latest snapshot [2.0-BETA5 (i386) built on Fri Jan 7 15:25:33 EST 2011], it still shows the error:
The cer...
Brian McAndrew
06:19 PM Bug #621: Certificate Manager won't accept a windows CA signed certificate
I will try it out sometime during the weekend, and get back to you.
Thanks! :D
Maxim Hansen
04:36 PM Bug #621 (Feedback): Certificate Manager won't accept a windows CA signed certificate
Patch is on latest snapshot please test with them. Ermal Luçi
02:34 PM Bug #621: Certificate Manager won't accept a windows CA signed certificate
After checking this more thoroughly this seems to be just about the diff in the created subject.
Another method sh...
Ermal Luçi
07:44 PM Bug #1013 (New): Captive Portal Reauthentication broken
There is still a regression here with reauthentication. It does re-authenticate, but at least MS IAS refuses the requ... Chris Buechler
05:44 PM Bug #1013: Captive Portal Reauthentication broken
The command above gives no result. I captured the traffic for 2 minutes after logging in.
Could you please post wh...
L J
02:04 PM Bug #1013: Captive Portal Reauthentication broken
I just tested this and it works fine.
19:02:26.807863 IP 192.168.30.1.30906 > pfSense.localdomain.radius: RADIUS, Ac...
Ermal Luçi
06:21 PM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
Should be OK on the next new snapshot dated after this post. (Note that the one building right now does not include t... Jim Pingle
04:07 PM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
This is easy to reproduce with siproxd as well, no firmware update required.
Just rm /usr/local/pkg/siproxd* and r...
Jim Pingle
10:28 AM Bug #1049: After reinstalling packages at bootup, WebUI not accessable (NanoBSD)
Just had the problem with the gui not showing when upgrading from 2.0beta4 to beta5. after a reboot it came back up Chris Baker
05:33 PM Bug #1178: Unable to select VLAN in PPPs interfaces
When I select WAN interface in PPP editor for pppoe0, I get a kernel panic. Xavier Romain
05:19 PM Bug #1178: Unable to select VLAN in PPPs interfaces
Some screenshots may help you to understand my problem... Xavier Romain
05:11 PM Bug #1178: Unable to select VLAN in PPPs interfaces
For 2.0 you have either to assign vlan and on interfaces->$assignedone choose pppoe.
Or assign the vlan and then on ...
Ermal Luçi
05:03 PM Bug #1178 (Closed): Unable to select VLAN in PPPs interfaces
VLAN interfaces does not appear in PPPs link interfaces.
I have two physical interfaces:
- le0 (used for LAN)
- ...
Xavier Romain
03:53 PM Revision b2b15543: Need to use Unlink in tar
Scott Ullrich
12:57 PM Bug #1177: Passive FTP
Please post packet traces on both sides of the connection.
And the 7 snapshot has another fix in that area so try wit...
Ermal Luçi
08:17 AM Bug #1177 (Resolved): Passive FTP
On a Thu Jan 6 02:48:15 EST 2011 Snapshot
I am no longer able to connect to an internal
ftp server using pasv mode....
Martin Klein
11:37 AM Bug #1151: Outgoing pptp Traffic-Flow stops after a while
2.0BETA5 Built on 1/7/11 still has this problem. My current work around is to do a constant ping to something on the... Chris Baker
08:59 AM Bug #1175 (Resolved): Captive Portal Status Fatal error:
Jim Pingle
08:56 AM Bug #1175: Captive Portal Status Fatal error:
OK Ok solved Joaquim Soares Soares
08:29 AM Bug #1175 (Feedback): Captive Portal Status Fatal error:
Are you sure this is still a problem on current snapshots? A fix was committed days ago:
https://rcs.pfsense.org/p...
Jim Pingle
07:50 AM Bug #1175 (Resolved): Captive Portal Status Fatal error:
Captive Portal Status not disconnect_client() in widget
Fatal error: Call to undefined function captiveportal_di...
Joaquim Soares Soares
07:23 AM Bug #636: layer7 not work correctly
Max Riedel wrote:
> I just tried it with ssh.
> I created a new Layer7 group, enabled it, gave it a name, selected ...
Max Riedel
07:19 AM Bug #636: layer7 not work correctly
I just tried it with ssh.
I created a new Layer7 group, enabled it, gave it a name, selected ssh as protocol action ...
Max Riedel
07:18 AM Feature #1174 (Closed): Allow a way to force a vip configured on the 'CARP master server' to use another host at the master for the vip
I have a pair of pfsense 2.0 beta servers. I'm syncing config between the servers so that I edit on my 'primary' serv... Gary Richards

01/06/2011

11:56 PM Revision 06e57df8: Shorten english
Scott Ullrich
11:30 PM Revision c2272d6d: Scroll the textarea to bottom on each update
Scott Ullrich
11:09 PM Revision 61f0a115: Take into account< 10 too
Scott Ullrich
11:06 PM Bug #1173 (Closed): RRD Graph for cellular - not working for huawei E1762
It was suggested that I open a bug report for this RRD issue:
I can report that my Huawei E1762 USB modem seems to...
Jai Lamerton
11:02 PM Revision a0e157e9: When installing packages on console (downloading) only show every 10% meaning 10% 20% 30% instead of 1% 2% 3% 4% 5%, etc
Scott Ullrich
10:48 PM Revision 86af45ec: Ensure $pkg is defined. Send pkg_delete errors to /tmp/pkg-delete_errors.txt
Scott Ullrich
10:37 PM Revision 64974db7: Fix package dependency check code now that we no longer nuke /var/db/pkg/ before operating on packages
Scott Ullrich
09:53 PM Revision 28ed552d: Strip off the space between @depend and the package name. Otherwise it will return a space in front of the pkgname
Scott Ullrich
09:39 PM Revision 550fea7a: Do not unlink file, it's handled by behind the scenes pkg-utils.inc code
Scott Ullrich
09:06 PM Revision 7aa9ab00: Fix typo
Scott Ullrich
08:58 PM Revision 608b154d: Shorten repo download message
Scott Ullrich
08:55 PM Revision ca99d6a6: Do not show already installed messages which fill up the textarea too many times
Scott Ullrich
08:49 PM Revision 0c78d2d0: Include pkg-utils.inc
Scott Ullrich
07:33 PM Bug #1171: Switching from HTTPS to HTTP does not mark certificate as unused
This is probably because even though HTTP is chosen, the certref is still kept in the config, so if they go back to H... Jim Pingle
06:29 PM Bug #1171 (Resolved): Switching from HTTPS to HTTP does not mark certificate as unused
If you switch from HTTPS to HTTP, the certificate used for HTTPS is still marked as used where it should not be. Chris Buechler
06:53 PM Revision 72b7aa4a: Also CDATA protect the detail field. Fixes #1168
Jim Pingle
06:52 PM Revision d865241e: Don't run mb_convert_encoding on descr field, it's cdata protected in the config now and this just causes some characters to be lost on input. Ticket #1168
Jim Pingle
06:40 PM Feature #1172 (Closed): CRL revoke button on certificates screen.
duplicate of #1170 Chris Buechler
06:36 PM Feature #1172 (Closed): CRL revoke button on certificates screen.
It would be nice to have a revoke button under the certificates screen.
This would make easy using CRLs and more int...
Ermal Luçi
06:30 PM Bug #161 (Resolved): HTTPS certificates invalid - duplicate serial
this is actually only possible if you manually screw with your certs in the config, it generates serials correctly un... Chris Buechler
10:30 AM Bug #161: HTTPS certificates invalid - duplicate serial
I don't have this issue on the snapshot of today 20110106-0206. Running firefox 3.6.13. Sander Naudts
06:28 PM Feature #1170 (Resolved): Certificates tab should have revoke option in addition to delete
To ease the process of revoking a cert, system_certmanager.php should have an option to revoke a certificate Chris Buechler
02:17 PM Bug #1168 (Feedback): Some description fields don't accept umlauts
Not sure why it didn't associate itself on the ticket, but this should be fixed by the following commit:
https://r...
Jim Pingle
08:51 AM Bug #1168: Some description fields don't accept umlauts
The per-entry description field, internally called "detail", is not CDATA escaped like the main description field so ... Jim Pingle
07:15 AM Bug #1168 (Resolved): Some description fields don't accept umlauts
Entering chars like umlauts in the description-fields of aliases, they are not shown later.
Entering umlauts in the ...
igor igor
12:31 PM Bug #317 (New): SSH authorized keys lost on upgrade on embedded
This has apparently started happening again:
http://forum.pfsense.org/index.php/topic,31906.0.html
Jim Pingle
10:27 AM pfSense Packages Bug #1166 (Closed): incorrect url for unbound-1.4.7
Alright, I'll close this out then. Jim Pingle
10:23 AM pfSense Packages Bug #1166: incorrect url for unbound-1.4.7
Works for me after a few hours of sleep :-) Case closed. Steve MacGregor
08:19 AM pfSense Packages Bug #1166 (Feedback): incorrect url for unbound-1.4.7
Can you try this again? http://files.pfsense.org/packages/8/All/unbound-1.4.7.tbz Is present on our server. When I f... Jim Pingle
05:52 AM pfSense Packages Bug #1166 (Closed): incorrect url for unbound-1.4.7
I noticed this issue after upgrading to the latest snapshot. I had all kinds of unspecified problems with the upgrade... Steve MacGregor
08:59 AM Feature #1169: Add load balancer status in SNMP
If there is, it won't be trivial to do. We use bsnmpd, and last I looked it did not support an exec call for custom O... Jim Pingle
08:54 AM Feature #1169 (Closed): Add load balancer status in SNMP
Hi,
Is it possible to add an OID entry to get the status of the wan load balancer in SNMP? Eg: WAN1 on/offline, OP...
Sander Naudts
08:14 AM pfSense Packages Bug #1165 (Rejected): Fatal error: Cannot redeclare alias_expand_urltable() (previously declared in /etc/inc/util.inc:490) in /etc/inc/util.inc on line 505
The ticket system is English only, please, and it's not a place to request support. Post on the French forum (http://... Jim Pingle
05:38 AM pfSense Packages Bug #1165 (Rejected): Fatal error: Cannot redeclare alias_expand_urltable() (previously declared in /etc/inc/util.inc:490) in /etc/inc/util.inc on line 505
bonjour tout le monde
j'ai une erreur avec pfsense
Fatal error: Cannot redeclare alias_expand_urltable() (previou...
dhia sgha
08:09 AM pfSense Packages Bug #1167 (Rejected): Fatal error: Cannot redeclare alias_expand_urltable() (previously declared in /etc/inc/util.inc:490) in /etc/inc/util.inc on line 505
Duplicate of #1165 Jim Pingle
07:44 AM pfSense Packages Bug #1167: Fatal error: Cannot redeclare alias_expand_urltable() (previously declared in /etc/inc/util.inc:490) in /etc/inc/util.inc on line 505
Salut,
en anglais svp :)
english please :)
Alexandre Paradis
06:15 AM pfSense Packages Bug #1167 (Rejected): Fatal error: Cannot redeclare alias_expand_urltable() (previously declared in /etc/inc/util.inc:490) in /etc/inc/util.inc on line 505
bonjour tout le monde
j'ai une erreur avec pfsense
Fatal error: Cannot redeclare alias_expand_urltable() (previou...
dhia sgha
04:52 AM pfSense Packages Bug #1164: Installing pfSense 2.0 on a Dell PowerEdge R210
Okay, thanks for the warning.
Lauro
Lauro Trajano
02:04 AM pfSense Packages Bug #1164 (Rejected): Installing pfSense 2.0 on a Dell PowerEdge R210
This is not the forum, please go to forum.pfsense.org and post there. This is only for specific, detailed bug reports... Chris Buechler
01:59 AM pfSense Packages Bug #1164 (Rejected): Installing pfSense 2.0 on a Dell PowerEdge R210
Hi all,
This is my first post in this forum
I hope to contribute with friends.
Well, I have the following prob...
Lauro Trajano

01/05/2011

11:30 PM Revision 19e76a0b: Do not center hard drive upgrade image
Scott Ullrich
11:20 PM Revision 4944d592: Increase textarea column size.
Scott Ullrich
11:18 PM Revision bdf790aa: Clarify a few lines of text
Scott Ullrich
11:14 PM Bug #636: layer7 not work correctly
2.0-BETA5 (i386) built on Wed Jan 5 12:00:59 EST 2011
Still doesn't appear to be working. Opened up the default LA...
Seth Scardefield
04:06 PM Bug #636: layer7 not work correctly
I committed changes in kernel yet again which should impact even layer7.
Feedback from new snapshot is welcomed.
Ermal Luçi
09:54 PM Revision 456962bd: nuke content size.
Scott Ullrich
09:50 PM Revision 9d308f58: Do not nuke /var/db/pkg now that 2.0 has better handling
Scott Ullrich
09:44 PM Revision 9b193619: Reinstall packages on bootup during console. Ticket #1156
Scott Ullrich
09:28 PM Revision fe868e1d: Revert "Swoop through and stop any packages prior to upgrade. Ticket #1156"
This reverts commit cf42de70c84632bcee5d6d545b1242f14a73c618. Scott Ullrich
09:22 PM Revision cf42de70: Swoop through and stop any packages prior to upgrade. Ticket #1156
Scott Ullrich
09:10 PM Revision 7d62c4c8: Ticket #491. Correct username/password name fields so upgrade works correctly.
Ermal LUÇI
08:43 PM Revision 6ae19856: Actually use sigkillbypid.
Ermal LUÇI
08:41 PM Revision e7af9a80: Send a HUP to racoon which is equivalent to the reload-config racoonctl command which seems to not work in 0.7.3 of ipsec-tools.
Ermal LUÇI
08:23 PM pfSense Packages Bug #1163 (Rejected): Squid not restart in widget
pfSense-2.0-BETA5-20110105-1707.iso.gz in widget Squid stop by not restart
Joaquim Soares Soares
07:27 PM Revision 2646434b: Set status field to upgrade in progtress during upgrade
Scott Ullrich
06:02 PM pfSense Packages Bug #1024 (New): Snort GUI broken in latest snapshots
Chris Buechler
05:27 PM pfSense Packages Bug #1024: Snort GUI broken in latest snapshots
New Bug #1162 Nelson LeBlanc
05:16 PM pfSense Packages Bug #1024: Snort GUI broken in latest snapshots
I'm having this exact issue after upgrading to the latest Beta5 snapshot and installing the snort package. Nelson LeBlanc
02:41 PM pfSense Packages Bug #1024: Snort GUI broken in latest snapshots
This problem is back after snapshot from the 3 jan, still present in the snapshot from the 5 jan.
Problem first no...
Flemming Dal Joergensen
05:33 PM pfSense Packages Bug #1162: Snort GUI broken in latest snapshot
Sorry, I thought this was appropriate since #1024 is closed. Nelson LeBlanc
05:29 PM pfSense Packages Bug #1162 (Rejected): Snort GUI broken in latest snapshot
duplicate of #1024 Chris Buechler
05:26 PM pfSense Packages Bug #1162: Snort GUI broken in latest snapshot
Clarification:
snort_interfaces.php was working fine BEFORE I added an interface.
Nelson LeBlanc
05:23 PM pfSense Packages Bug #1162 (Rejected): Snort GUI broken in latest snapshot
The GUI for /snort/snort_interfaces.php is broken.
This is same issue as in Bug #1024.
I am having the same iss...
Nelson LeBlanc
04:31 PM Bug #733: Shaper: Unexplained 30% bandwidth max restriction in p2p catch all
Its just a reload of the settings that take part in the les than 30% calculation. Ermal Luçi
04:29 PM Bug #1000 (Closed): lagg not working set to failover.
Closing since it relates to #1093. Ermal Luçi
04:26 PM Bug #1093: Problems with em(4)
This is with 8.2 driver in the builds. Ermal Luçi
04:14 PM Bug #863: floating rules breaks passive mode ftp
Well its a bug per se but i would not consider it critical for 2.0.
Its rather unusual to filter outgoing on a box t...
Ermal Luçi
04:09 PM Bug #491 (Feedback): Dynamic DNS upgrade code not working
Should be ok now. It was using not correct key values to assign. Ermal Luçi
03:10 PM Bug #1159 (Rejected): Traffic is not passed if GW is on same interface
this is a config issue of some sort, not a bug. I suspect related to the difference in automatic NATing where gateway... Chris Buechler
02:13 PM Bug #1159 (Rejected): Traffic is not passed if GW is on same interface
Hello,
Example:
WAN-Interface:10.0.0.2 GW1: 10.0.0.1
LAN-Interface:10.0.100.1 GW2: 10.0.100.2
OPT1-Interface: ...
L J
02:38 PM Bug #1161 (Rejected): FTP-proxy don't start at boot
FTP proxy is in the kernel on 2.0 and has no daemon. Jim Pingle
02:36 PM Bug #1161 (Rejected): FTP-proxy don't start at boot
Hello,
ftp Helper seems don't work on pfsense 2.0 beta5 build on 01/01/2011
I d'on't find any process listen on...
sebastien le guillerm
02:32 PM pfSense Packages Bug #1131 (Feedback): str_split function missing in squidGuard
Fixed per dvserg Jim Pingle
02:32 PM pfSense Packages Bug #1094 (Feedback): Clicking pfSense logo start deinstall/reinstall of HAVP package
Fixed per dvserg Jim Pingle
02:26 PM Bug #1013: Captive Portal Reauthentication broken
config file again (now it works ?!?) L J
02:24 PM Bug #1013: Captive Portal Reauthentication broken
There seems to be no feature for packet sniffing ;-). I used Wireshark at the RADIUS Server. The used user was test, ... L J
11:22 AM Bug #1075: rrd graphs missing / duplicate
Well the issue seems to change a bit depending
on the current time.
at 17:18 (gmt+1) i see :
1h , 1min avg
1d...
Martin Klein
09:31 AM Bug #1158 (Resolved): DNS servers from DHCP/PPPoE missing
Jim Pingle
09:31 AM Bug #1158: DNS servers from DHCP/PPPoE missing
I had this problem too.
Works for me now on version Wed Jan 5 03:16:13 EST 2011
Thanks!
Lori Paniak
06:19 AM Revision c22632db: fix text
Chris Buechler

01/04/2011

11:56 PM Revision 0b821acf: comment out unfinished OpenVPN Users alias option, can finish for a post-2.0 release
Chris Buechler
11:37 PM Bug #1141 (Resolved): smtp authentication not working
thanks Chris Buechler
11:32 PM Bug #1141: smtp authentication not working
Works for me.
Thanks!
Lori Paniak
09:39 PM Bug #475: L2TP is not functional in the way users will expect
L2TP is likely just going to be plain L2TP for 2.0 and we can work out the IPsec bits later. The underlying software ... Chris Buechler
10:43 AM Bug #475: L2TP is not functional in the way users will expect
Hello,
This is functionality that I could really use, and would be happy to assist in any way that I can. However...
Thomas Reagan
08:35 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
Hi David,
I am curious on the third subnet problem with your iPhone. In your pfSense IPSEC logs, do you have entri...
Pierre POMES
12:11 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
Excellent, the iPhone access is not my priority right now though it is odd I could only get to two of the three subne... David Szpunar
07:16 PM Revision 99fbc94a: Forgot to up the array count.
Warren Baker
07:15 PM Revision 64c86313: Add kern.ipc.maxsockbuf to upgrade config and remove extra whitespace.
Warren Baker
07:00 PM Bug #1151: Outgoing pptp Traffic-Flow stops after a while
Thank you for the link.
Workarround seems to work in my environment, cause I just have one client, needing the pptp ...
Christian Schwarz
06:32 PM Revision 807fd6cd: Unbreak dns server colletion. Pointyhat: myself
Ermal LUÇI
05:27 PM Revision abe7607f: Add sysctl for maximum socket buffer sizing. Set to 42621444. This is needed for some heavily loaded servers running unbound, squid, etc
Scott Ullrich
02:49 PM Bug #1075: rrd graphs missing / duplicate
I no longer see this issue.
mysnap
2.0-BETA5 (i386)
built on Mon Jan 3 13:22:20 EST 2011
JohnPoz _
02:24 PM Bug #1158: DNS servers from DHCP/PPPoE missing
I have 6 pfsense and one test.
Will test tomorrow.
Thank you.
Behzad Barzideh
02:14 PM Bug #1158: DNS servers from DHCP/PPPoE missing
It would not be in a new build yet. Do a gitsync (http://doc.pfsense.org/index.php/Updating_pfSense_code_between_snap... Jim Pingle
02:11 PM Bug #1158: DNS servers from DHCP/PPPoE missing
Sorry no go
2.0-BETA5 (i386) built on Tue Jan 4 07:15:40 EST 2011
Behzad Barzideh
01:44 PM Bug #1158 (Feedback): DNS servers from DHCP/PPPoE missing
https://rcs.pfsense.org/projects/pfsense/repos/mainline/commits/807fd6cd358c71dd48fb7766e49f05f86b93d3fb
Is the fix ...
Ermal Luçi
12:19 PM Bug #1158: DNS servers from DHCP/PPPoE missing
I am seeing this in a VM as well. With DHCP on WAN, no DNS servers are present on the firewall. Jim Pingle
10:09 AM Bug #1158: DNS servers from DHCP/PPPoE missing
the WAN interface is on DHCP. the ISP DNS is missing.
under System: General Setup enter DNS. everything is working n...
Behzad Barzideh
09:59 AM Bug #1158 (Resolved): DNS servers from DHCP/PPPoE missing
upgrade to 2.0-BETA5 (i386) built on Mon Jan 3 23:29:55 EST 2011.
could not access any web site.
performed DNS, re...
Behzad Barzideh
05:33 AM Bug #911: Need option to disable state killing on WAN failure
Please don't post questions on tickets, post to the forum or mailing list. Chris Buechler
05:29 AM Bug #911: Need option to disable state killing on WAN failure
Can someone please confirm that when apinger detects a monitor IP as being down, provided there aren't any load balan... Jonathan Tripathy
02:57 AM pfSense Packages Bug #1157: Open VMware Tools installed, enable VMXNET2 interface -> crash pfSense
I (re)-found this topic on pfSense forum:
http://forum.pfsense.org/index.php?topic=25439.0
-----------
I remember ...
test test
02:22 AM pfSense Packages Bug #1157 (Closed): Open VMware Tools installed, enable VMXNET2 interface -> crash pfSense
I tried to install Open VMware Tools, the tool successfully installed.
From the console I could see the system detec...
test test
02:56 AM Bug #161 (New): HTTPS certificates invalid - duplicate serial
This has regressed it appears, after generating an internal certificate and changing the web interface to HTTPS, I en... Chris Buechler
02:20 AM Revision 0238cc4a: don't use hard coded theme
Chris Buechler
02:07 AM Bug #1154: Kernel panic after connecting to OpenVPN
We've done multiple production 2.0 OpenVPN deployments within the past week even and haven't seen this. Please attach... Chris Buechler
01:50 AM Revision 68fef56f: fix CP dashboard widget
Chris Buechler

01/03/2011

10:52 PM Revision aa7c49b9: Ticket #943. Sleep 1 second to give dns time to reload.
Ermal LUÇI
10:47 PM Revision e7c9af97: Ticket #1141. Add missing sasl.inc
Pierre POMES
10:21 PM Bug #1151: Outgoing pptp Traffic-Flow stops after a while
Please see this thread for additional information - I have the exact same issue: http://forum.pfsense.org/index.php/t... Waldo Nell
09:53 PM Revision 33818198: Oops remove forgotten line and correct variable name error that seems to have existed from long time. Even though the file read is not used in pfSense this days!
Ermal LUÇI
09:50 PM Revision e44e5f3a: Simplify package version checking code and use the existing pfs_version_compare function that does much (and more) of what the old code was trying to do on its own.
Jim Pingle
09:49 PM Revision e1daff07: Use glob instead of forking cat with glob patterns. Also use file() instead of forking cat just for reading a file. This might help with the issue reported on Ticket #943 which seems like a timing issue even though the dns events happen before newip events.
Ermal LUÇI
09:29 PM Revision 55c51af7: Ticket #1152. Call rc.newwanip even on openvpn linkup event to do the correct reloading of gateways and services. Add a safe belt to avoid a recursion in openvpn itself from rc.newwanip.
Ermal LUÇI
07:45 PM Revision 3dfc2d1a: When the parent interface of a pppoe is assigned do not remove the interface from ng_ether since this will break ppp clients of netgraph with this interface as parent. This solves http://forum.pfsense.org/index.php/topic,31247.75.html
Ermal LUÇI
07:00 PM Revision e9a17661: Add $nocsrf = true;
Scott Ullrich
06:12 PM Revision 4682fb7d: Turn zlib compression back on. Tested by and reminded by Pierre Pomes. Ticket #198 ... Apparently lighttpd was not compressing the php pages so this should be turned back on according to Pierre Pomes (and tested by him).
Scott Ullrich
06:03 PM Bug #1150 (Closed): Captive Portal Accounting only works with one radius server
All is ok in 2.0 afaik. Ermal Luçi
05:52 PM Bug #1141 (Feedback): smtp authentication not working
Pfff.. I forgot to add the main file for authentification (sasl.inc). It should be ok now.
Sorry for the noise.
P...
Pierre POMES
03:10 PM Bug #1141 (New): smtp authentication not working
Chris Buechler
02:39 PM Bug #1141: smtp authentication not working
Lori Paniak wrote:
> Just upgraded and tested e-mail on the latest snapshot (Mon Jan 3 03:26 2011)
>
> I get an e...
Alexandre Paradis
01:52 PM Bug #1141: smtp authentication not working
Just upgraded and tested e-mail on the latest snapshot (Mon Jan 3 03:26 2011)
I get an error:
@Warning: require...
Lori Paniak
05:48 PM Bug #943: 2.0-BETA4 Dynamic DNS updates not working
Can you try again with new snapshots i added some changes to make dns reloading faster and have more time to reload b... Ermal Luçi
12:25 PM Bug #943: 2.0-BETA4 Dynamic DNS updates not working
Just re-installed a fresh image on a different CF card "Version 2.0-BETA5 (i386) built on Mon Jan 3 04:24:15 EST 2011... R B
04:27 PM Bug #1152 (Feedback): Client mode OpenVPN gateways sometimes not added to apinger
Ermal Luçi
02:24 PM Bug #1152: Client mode OpenVPN gateways sometimes not added to apinger
This also happens on my wimax interface periodically when it does not have carrier (unplugged). It will randomly say... Scott Ullrich
01:07 AM Bug #1152: Client mode OpenVPN gateways sometimes not added to apinger
updated to actual issue Chris Buechler
03:05 PM Bug #1107: mpd on AMD64 generates invalid checksums with NAT
Sorry for not answering sooner. The MTU for the PPTP is 1456 and the MTU for the openVPN is 1500. May this be a part ... Andreas Winge
01:30 PM Revision 0eaf7055: Attempt to make it more clear to users that "Dial on Demand" should not be enabled if the
link should be always up/on. Marcus Brown
01:21 PM Revision 5e1f9bb4: Remove uncessesary function call.
This function call is extraneous. mpd will automatically shut down existing mpd processes
gracefully because we call ...
Marcus Brown
01:18 PM Revision c8d23069: Reshuffle code a bit. Prevent potential race condition between one mpd instance
shutting down and the second one starting.
There's no need to kill mpd before restarting it since we always start it...
Marcus Brown
12:59 PM Todo #576: Make sure IPsec upgrade code properly handles mobile clients
Apparently there are issues here. Just saw a config from a customer that upgraded with mobile tunnels and the upgrade... Jim Pingle
11:04 AM Bug #1116: IPsec error, racoon won't start with more than one phase 2
Thanks for the feedback.
partial answer: for the error "The command '/usr/local/sbin/racoonctl -s /var/db/racoon/r...
Pierre POMES
01:56 AM Bug #1116: IPsec error, racoon won't start with more than one phase 2
OK I added a second subnet (phase 2) entry after upgrading my firewall VM to the most recent beta (Jan 1 i386) to my ... David Szpunar
10:34 AM Bug #1156 (Closed): Upgrade from 1.2.3 to 2.0 with VMware tools installed will panic
If you upgrade a VMware instance from 1.2.3 to 2.0 with the VMware tools installed, once booted into 2.0 (FreeBSD 8) ... Jim Pingle
09:27 AM Bug #1155 (Resolved): [patch] status_gateways.php doesn't show last check time
On status_gateways the last check time is now shown because the 'lastcheck' is in the status array, not the gateways ... Andrea Soster
03:21 AM Bug #1154 (Closed): Kernel panic after connecting to OpenVPN
I have 2.0-BETA5 (i386) built on Fri Dec 31 14:08:23 EST 2010.
After connecting from a client to the firewall via ...
. .

01/02/2011

11:00 PM Bug #1153 (Resolved): Re-assignment of bridge interfaces should be restricted
It is possible to create an invalid config by reassigning an interface that is bridged. For example you can have LAN ... Chris Buechler
08:34 PM Revision 1edfb2de: Ticket #1141. Typo error, use ->user to enable auth
Pierre POMES
08:30 PM Revision 2cd8d942: Ticket #1141. Add necessary stuff for smtp auth using sasl
Pierre POMES
03:39 PM Bug #1141 (Feedback): smtp authentication not working
Hi all,
Stuff added ! Auth with SMTP should work now.
Richard, may you try again ?
Thanks,
Pierre
Pierre POMES
12:58 PM Bug #1152: Client mode OpenVPN gateways sometimes not added to apinger
not rrdtool... apinger. Scott Ullrich
12:57 PM Bug #1152 (Resolved): Client mode OpenVPN gateways sometimes not added to apinger
At times, unknown how to replicate for sure, OpenVPN gateways disappear from the apinger.conf and hence apinger.statu... Scott Ullrich
11:29 AM pfSense Packages Bug #1131: str_split function missing in squidGuard
Bug Fixed. Serg Dvoriancev
09:29 AM Bug #1151 (Resolved): Outgoing pptp Traffic-Flow stops after a while
After bringing up a pptp-connection to a remote network, traffic seems to be blocked after a while, but the tunnelsta... Christian Schwarz
04:18 AM Bug #1150 (Closed): Captive Portal Accounting only works with one radius server
When multiple radius servers are configured for the the captive portal and the captive portal is configured to send a... Luis Soltero
03:30 AM Bug #1149 (Closed): nano build - upgrade size failure on USB flash drives
Fresh USB key I loaded 12/29 nano 1G or 2G image on it.
- on reboot, the dashboard prompted me to upgrade to 12/30...
Richard Illes

01/01/2011

06:07 PM Revision 76d11a57: Ticket #1083. Remove alias capabilities from external and src fields
Pierre POMES
05:27 PM Bug #1141: smtp authentication not working
Sounds fine Chris Buechler
03:51 PM Bug #1141: smtp authentication not working
I found the requested sasl class from here: http://www.phpclasses.org/package/1888-PHP-Single-API-for-standard-authen... Pierre POMES
01:08 PM Bug #1083 (Feedback): aliases cause error when creating NAT 1:1 rules
Alias capabilities is now removed from fields not working with aliases (autocompletion and validation).
Pierre POMES
07:30 AM Feature #385: Allow the use of Captive Portal to restrict services on the firewall itself.
Thats a feature I missed on pfsense too. I know very well the watchguard solution:
A small webserver (https) at the ...
H. H.

12/31/2010

07:21 PM Revision a7e431f8: Adding rc.restore_full_backup. Sync create backup with HEAD
Scott Ullrich
10:18 AM Revision 97acf646: Add new default option that makes RRD graphs with the old type of behavior for time periods, configurable on settings tab.
Erik Fonnesbeck
08:40 AM Revision 29640cee: Use correct variable for this condition.
Erik Fonnesbeck
08:29 AM Revision bf924b16: since packages aren't version-specific anymore, clarify to Available Packages
Chris Buechler
06:41 AM Revision e85604b8: remove <strong> to make consistent with all other text
Chris Buechler
04:39 AM Bug #1088: CARP sync broken
Hi guys, carp issue exist in following scenario, VMware pair with 4 interfaces: 1 outside, 1 inside, 1 sync and last ... Akis X

12/30/2010

09:20 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
Hi Michel,
Can you copy/paste me (with anonymous IP's and keys) your ipsec section from /cf/conf/config.xml ?
T...
Pierre POMES
01:49 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
but i can see in syslog
php: /status_services.php: The command '/usr/local/sbin/setkey -f /var/etc/spd.conf' retu...
Michel Samovojski
01:47 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
working for me :) Michel Samovojski
07:45 PM Revision 02e9880e: Improve parse_config to not be recursive for no reason. This fixes some strange cases of config lock being left held and blocking GUI.
Ermal LUÇI
06:47 PM Revision f9626e57: Only unlink /conf/needs_package_sync if no packages are installed, otherwise leave it to the package manager to take care of it.
Erik Fonnesbeck
01:05 PM Revision 9b1939e1: Move unlink back to the correct line.
Erik Fonnesbeck
10:17 AM Bug #1141: smtp authentication not working
Notes:
- /etc/inc/notices.inc at line 309 should set $smtp->user (and not $smtp->username which does not exist)
- A...
Pierre POMES
10:08 AM Todo #1139: Email notification test button
Also there is no smtp-auth types. there must be some auth methots in my opinion.
TLS, Plain etc.
Serdar Cihaner
09:49 AM Revision eebccaca: Fix PHP warning related to recent update of apc extension.
Erik Fonnesbeck
09:30 AM Todo #1144 (Rejected): notifications - E-mail test and smtp TLS or plain auth
Duplicate of #1139 and #1141 - please look at existing tickets before opening new ones. Jim Pingle
09:28 AM Todo #1144 (Rejected): notifications - E-mail test and smtp TLS or plain auth
Hello
there is no test button on Natification setup page
/system_advanced_notifications.php
when I set up a e-m...
Serdar Cihaner
06:03 AM Feature #1104: mwl driver patch to enable generation of new BSSIDs for additional VAPs
Uploaded an updated patch with a correction to code having to do with limiting the number of APs allowed (limit of 8 ... Erik Fonnesbeck
04:47 AM Bug #337: sticky connections do not work
Could this freebsd kernel issue be related?
http://www.freebsd.org/cgi/query-pr.cgi?pr=148290
Mark Huijgen
04:29 AM Bug #337: sticky connections do not work
For me sticky connections works for like a minute or 2, then suddenly no connections are possible at all to any host.... Mark Huijgen

12/29/2010

11:33 PM Revision e8f4a58f: make rebrand friendly
Chris Buechler
09:27 PM Revision 7385a6b4: Turn off csrf checks
Scott Ullrich
09:11 PM Revision f2141df0: Allow entering an arbitrary subnet for outbound NAT translations.
Jim Pingle
08:54 PM Revision d3bea818: Add 10 to row count on textarea
Scott Ullrich
08:52 PM Bug #491 (New): Dynamic DNS upgrade code not working
Closer, everything but the username and password is converted properly. It's completely missing the username and pass... Chris Buechler
08:48 PM Revision 2388a97d: Nuke newline
Scott Ullrich
08:48 PM Revision 5edb6fee: Unbreak installedinfo option
Scott Ullrich
07:04 PM Revision 09315582: Add address pool support to outbound NAT. Allow specifying a subnet for outbound NAT rules (via a subnet of proxy arp VIPs) or a host-type alias for outbound NAT rules, and give the user a choice of pool options for address selection from within the pool.
Jim Pingle
06:06 PM Feature #820 (Feedback): Expose interface for PF address pools on outbound NAT rules
You can now use address pools for outbound NAT in three different ways after commits I made today:
* By picking a ...
Jim Pingle
05:26 PM Bug #1030: Interface case change in apinger.conf needs reverted
I guess it should be mentioned in the release notes at some point then, as many people will have the problem.
Or p...
Jeppe Oland
05:17 PM Bug #1141: smtp authentication not working
http://forum.pfsense.org/index.php/topic,31580.msg163359.html#msg163359
Richard Illes
04:34 PM Bug #1141 (Resolved): smtp authentication not working
I tried to setup smtp notifications, but it keeps failing with authentication errors.
Another user also verified t...
Richard Illes
05:14 PM Bug #1143 (Rejected): smtp authentication not working
duplicate of #1141, please stop opening duplicates. Chris Buechler
05:11 PM Bug #1143 (Rejected): smtp authentication not working
smtp email notifications setup from the websense interface does not seem to work - fails authentication.
Another u...
Richard Illes
05:13 PM Bug #1142 (Rejected): smtp authentication not working
duplicate of #1141 Chris Buechler
05:11 PM Bug #1142 (Rejected): smtp authentication not working
smtp email notifications setup from the websense interface does not seem to work - fails authentication.
Another u...
Richard Illes
04:53 PM Revision a9a5b957: Fix multi_all wizard to properly verify VoIP bandwidth specified.
Ermal LUÇI
04:52 PM Revision ef6f09b3: Fix multi_all wizard to properly verify VoIP bandwidth specified.
Ermal LUÇI

12/28/2010

10:39 PM Revision 66bcba1b: Ticket #802. During a config restore detect if the vlan interfaces need reassignment too. This might be problematic for other type of interfaces on 2.0!
Ermal LUÇI
10:10 PM Revision c3583058: Add radius port and radius accounting port to config if supplied.
Ermal LUÇI
09:50 PM Bug #1116 (Feedback): IPsec error, racoon won't start with more than one phase 2
Pierre POMES
04:26 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
Hi !
Jim: I just commited what we concluded a few days ago. If we need more logic, I suppose we could open a new t...
Pierre POMES
09:23 PM Revision 8f5c3d8d: Ticket #1116: anonymous sainfo may be used only for single phase2 ipsec VPN's
Pierre POMES
08:04 PM Revision c23b4f0d: Fix case statements, may fix rrd graph generation for certain periods.
Jim Pingle
06:03 PM Feature #1140 (Needs Patch): Option to delete more than one "confguration history" at one time.
Diagnostics: Configuration History
add an option whitch can delete more than one snapshot.
Additional: option to...
L J
05:55 PM Bug #1134: Adding new Gateway in interface page does not work
I used IE. But actual snapshot is fine. L J
04:56 PM Bug #1134 (Closed): Adding new Gateway in interface page does not work
Ermal Luçi
01:55 PM Bug #1134: Adding new Gateway in interface page does not work
It was Firefox. But after update to the latest snapshot it works just fine. No more problems. Dario Jurkovic
05:51 PM Bug #1013: Captive Portal Reauthentication broken
An internal server error happens if I try to upload the config.xml.
http://depositfiles.com/files/3dwu89fko
L J
05:46 PM Bug #1013: Captive Portal Reauthentication broken
I reinstalled pfsense from CD. I created the complete configuration via webinterface.
Is there any option to creat...
L J
05:50 PM Bug #943: 2.0-BETA4 Dynamic DNS updates not working
Yes, the connection is Comcast Cable with DHCP.
I agree it seems strange, but it happens every time.
Thankfully, th...
Jeppe Oland
05:18 PM Bug #943: 2.0-BETA4 Dynamic DNS updates not working
It looks strange to me that your dns updates during dyndns running which is highly unlikely to happen!
Are you on dh...
Ermal Luçi
05:38 PM Bug #802 (Feedback): Interface reassignment with VLANs after config restore to diff hardware doesn't work
Committed patch. Ermal Luçi
05:15 PM Revision 8e9adb53: Run filter configure after doing a save on CP.
Ermal LUÇI
05:10 PM Bug #853 (Feedback): PPPoE Server radius config not applied
Added the radius port and accounting port to the config.
https://rcs.pfsense.org/projects/pfsense/repos/mainline/co...
Ermal Luçi
04:57 PM Bug #829 (Resolved): WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
Ermal Luçi
04:55 PM Revision 3e360ca7: clarify CSRF failure message
Chris Buechler
04:54 PM Todo #1139 (Resolved): Email notification test button
Having a test button to be clicked while configuring e-mail notifications is a must. Ermal Luçi
08:23 AM Bug #1121: wireless interface antenna settings not applied at boot
Is the diversity setting still not showing up in /var/tmp/ath0_wlan0_setup.sh? (do you have it configured for default... Erik Fonnesbeck
05:09 AM Revision a82e6d37: fix text
Chris Buechler
04:23 AM Revision 46a9f4e1: Undo last commit. Need to add an additional check for opackage count == 0
Scott Ullrich
01:20 AM Revision 0f288647: Don't include rfc1918 in bogons
Jim Pingle
12:38 AM Revision e240969e: Allow any port to go out for CP. This should unbreak traffic of CP rdr!
Ermal LUÇI

12/27/2010

07:22 PM Revision 23d69b98: Use convert_friendly_interface_to_friendly_descr in the wol widget, just like on the main page. Ticket #1103
Jim Pingle
07:22 PM Revision e18278d1: Use strtoupper here
Jim Pingle
06:40 PM Revision 6622e126: Unlink needs_package_sync after one pkg has installed OK which means that our internet connection is up.
Scott Ullrich
05:52 PM pfSense Packages Bug #770: imspector don't install on 2.0-BETA3-20100727
I can confirm that instalation is ok, but nothing is logged.
2.0-BETA5 (i386)
built on Mon Dec 27 09:05:00 EST 2010
Francisco Brasileiro
04:41 PM Revision 528992be: Fix OpenVPN NetBIOS settings not propagating from the wizard to the server instance.
Jim Pingle
03:15 PM Bug #1134: Adding new Gateway in interface page does not work
It works for me on the most current snapshot (2.0-BETA5 (i386) built on Mon Dec 27 09:05:00 EST 2010) with Firefox 3.... Jim Pingle
02:35 PM Bug #1134: Adding new Gateway in interface page does not work
What browser is this? Ermal Luçi
12:55 PM Bug #1134: Adding new Gateway in interface page does not work
I can confirm the same problem with 2.0-BETA4 (i386) built on Fri Dec 17 15:11:41 EST 2010. I had to go to Routing ->... Dario Jurkovic
05:18 AM Bug #1134 (Closed): Adding new Gateway in interface page does not work
Adding new Gateway in interface page does not work.
If you klick on "add a new one" and enter a gateway the page s...
L J
03:09 PM Revision 6b78bed7: Ticket #944. Wehn changing the parent interface make sure to destroy the old vlan before creating the new one. Since vlans use the name of the parent the old interface referencing the old parent vlan will remain intact.
Ermal LUÇI
01:42 PM Bug #1137 (Resolved): Global reply-to disable checkbox missing from 2.0
In 1.2.3 there is a checkbox to disable reply-to on WAN rules under System > Advanced. The same option and functional... Jim Pingle
01:38 PM Feature #1136: Add logic to automatically avoid route-to for static route networks
Yeah after looking it over some more and in light of it coming from 1.2-RELEASE I've changed the description a bit. I... Jim Pingle
01:28 PM Feature #1136: Add logic to automatically avoid route-to for static route networks
Oh, there is no handling of networks reachable via routers other than the gateway on that interface. Just have to dis... Chris Buechler
01:15 PM Feature #1136: Add logic to automatically avoid route-to for static route networks
Seth's router was hitting reply-to for a network reachable via static route, so there may still be a bug then. Jim Pingle
12:47 PM Feature #1136: Add logic to automatically avoid route-to for static route networks
We already automatically bypass reply-to for directly connected subnets via a kernel patch, have since 1.2.3 (at leas... Chris Buechler
12:32 PM Feature #1136: Add logic to automatically avoid route-to for static route networks
Note that this was hit when someone upgraded from a 1.2-RELEASE box. 1.2.2/1.2.3 had a global reply-to disable checkb... Jim Pingle
10:11 AM Feature #1136 (New): Add logic to automatically avoid route-to for static route networks
If pfSense is in use as an intermediate router (multiple networks on LAN and WAN directly connected or reachable by d... Jim Pingle
09:24 AM Bug #829: WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
Ermal Luçi wrote:
> It does not matter really if it was WAN/LAN/OPT# ... Just test if it works as you expect.
the...
Alexandre Paradis
08:34 AM Bug #829: WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
It does not matter really if it was WAN/LAN/OPT# ... Just test if it works as you expect. Ermal Luçi
09:17 AM Bug #1135 (Rejected): Empty DHCP client hostname and client identifier in GUI not respected
While replacing my telco router with pfSense I came across an issue where the telco DHCP server would not respond to ... Joshua Colp
09:15 AM Bug #944 (Feedback): Moving VLANs to lagg doesn't remove old VLANs
Committed the fix even on vlan config page.
Please test!
Ermal Luçi
08:31 AM Bug #1013: Captive Portal Reauthentication broken
Can you give me a packet trace and your config.xml about this? Ermal Luçi
05:31 AM Bug #1013: Captive Portal Reauthentication broken
Does still not work at
2.0-BETA5 (i386)
built on Sun Dec 26 01:03:42 EST 2010
Same behaviour.
L J
05:26 AM Bug #1075: rrd graphs missing / duplicate
Sorry for the delay.
The Problem is still there.
See attached screenshot of recent
snapshot.
Martin Klein

12/26/2010

02:04 AM Bug #755: dnswatch not working
Chris Buechler wrote:
> Warren: have you tested this?
Yeah - it was working 100%. I could not test for extended p...
Warren Baker
01:23 AM Bug #1121: wireless interface antenna settings not applied at boot
i tried the latest snap now what happens is as soon as the system boots the values r
dev.ath.0.txantenna: 0
dev.ath...
Bipin Chandra
12:02 AM Revision c9d174df: Properly ignore the local link addresses
Seth Mos

12/25/2010

11:40 PM Revision 196b6749: call interfaces_gif_configure() before proceeding with system routing configure so that the tunnel is up when adding routes.
Seth Mos
11:00 PM Revision e802607f: Fix the group for dhcpd
Seth Mos
09:32 PM Revision 2b656168: fix text
Chris Buechler
09:19 PM Revision 33802679: fix text
Chris Buechler
09:06 PM Revision 9422a50f: default to single host on 1:1 NAT as it always has and is the most common usage
Chris Buechler
08:56 PM Revision df0c55a3: switch back to Internal rather than Source, Source is just confusing
Chris Buechler
08:43 PM Revision 3ec4b9de: update bogons
Chris Buechler
06:51 PM Revision 7dbbaecd: More misc pkg install txt fixups
Scott Ullrich
06:50 PM Revision f169e274: More misc pkg install txt fixups
Scott Ullrich
06:45 PM Revision 73e52b99: Add newline after restoring libs
Scott Ullrich
06:40 PM Revision 4c6a49d7: backup and restore libs in correct location
Scott Ullrich
06:38 PM Revision 2b216e51: misc text formatting fixes (tabs)
Scott Ullrich
06:36 PM Bug #829: WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
Alexandre Paradis wrote:
> Right now it seems to work, but my pppoe was on a OPT1 interface, i will try again on ano...
Alexandre Paradis
06:35 PM Bug #829: WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
Right now it seems to work, but my pppoe was on a OPT1 interface, i will try again on another box with pppoe as prima... Alexandre Paradis
06:24 PM pfSense Packages Bug #770 (Resolved): imspector don't install on 2.0-BETA3-20100727
Chris Buechler
05:27 PM pfSense Packages Bug #770: imspector don't install on 2.0-BETA3-20100727
Seems to work now !
Beginning package installation for imspector...
Downloading package configuration file... d...
Alexandre Paradis
06:07 PM Revision 9b3ade76: Increase textarea col size now that there is a lot more pkg install/deinstall information being output
Scott Ullrich
06:04 PM Revision b2dd7ab4: Only backup libraries at the beginning of the deinstall cycle.
Scott Ullrich
06:03 PM Revision 7102210a: Add tab
Scott Ullrich
05:52 PM Revision d96623ef: Add newline after installation aborted
Scott Ullrich
05:51 PM Revision 76a6d6ae: s/Trying to download/Downloading
Scott Ullrich
05:34 PM Revision 62743ffa: Version bump to 2.0-BETA5. Merry christmas!
Scott Ullrich
05:20 PM Revision e9c7a334: Backup system libraries and restore during pkg deinstall.
Scott Ullrich
05:19 PM Bug #1075 (Feedback): rrd graphs missing / duplicate
Chris Buechler
05:13 PM Bug #555 (Resolved): Certificate Revocation List (CRL) missing from Certificate Manager
Chris Buechler
04:56 PM Bug #950 (Resolved): Package installation failures leaves package installed
Chris Buechler
04:54 PM Feature #935: User manager RADIUS authentication method
needs refinement in the future Chris Buechler
04:54 PM Feature #935 (New): User manager RADIUS authentication method
Chris Buechler
04:53 PM Bug #912 (Resolved): PPTP/PPPoE/L2TP VPN logs missing
Chris Buechler
04:53 PM Bug #987 (Resolved): PPPoE Server instances cannot be disabled
Chris Buechler
04:52 PM Bug #714 (Resolved): Cellular RRD Graph Shows w/o 3G Modem Installed
Chris Buechler
04:52 PM Bug #863 (New): floating rules breaks passive mode ftp
Chris Buechler
04:51 PM Bug #1123 (Resolved): FEC type lagg not shown as VLAN-capable
Chris Buechler
04:51 PM Bug #1101 (Resolved): Wake-on-Lan display issue
Chris Buechler
04:51 PM Bug #1025 (Resolved): OpenVPN in client mode requires local port set for multiple instances
Chris Buechler
04:50 PM Feature #934 (New): Add RADIUS support to Diag>Auth page
Chris Buechler
04:48 PM Bug #959 (Resolved): Config sync removes alias VIPs on the slave
Chris Buechler
04:47 PM Bug #841 (Resolved): hostapd doesn't work with spoofed MAC (but should be able to)
Chris Buechler
04:45 PM Todo #765 (Resolved): Patch: Add custom DHCP configuration
Chris Buechler
04:43 PM Bug #944 (New): Moving VLANs to lagg doesn't remove old VLANs
Still leaves behind the old VLAN. ... Chris Buechler
04:41 PM Bug #921 (Resolved): Gateway monitoring stops after interface goes down
Chris Buechler
04:41 PM Bug #786 (Resolved): UDP traffic blocked by a floating rule
can't replicate Chris Buechler
04:38 PM Todo #764 (Resolved): Patch: Add per-host netboot filename to DHCP static mappings
Chris Buechler
04:37 PM Feature #810 (Resolved): Allow multiple servers for DHCP relay
Chris Buechler
04:37 PM Bug #743 (Resolved): Installation: textual label: (Select task="Advanced Installation") <> (Are you sure="Custom Install")
Chris Buechler
04:36 PM Bug #725 (Resolved): DHCP Relay missing logic for dynamic routes
Chris Buechler
04:36 PM Bug #88 (Resolved): TXCSUM forced on at boot which breaks wireless bridging
Chris Buechler
04:34 PM Bug #821 (Resolved): Captive Portal URL redirect macro is not correct when using a forced redirect
Chris Buechler
04:33 PM Bug #774 (Resolved): $priv array defined in priv.defs.inc doesnt store all match values
Chris Buechler
04:33 PM Bug #657 (Resolved): Setting IBSS on a wireless interface doesn't take effect when applied
Chris Buechler
04:33 PM Bug #645 (Resolved): OpenVPN Settings do not sync to peers
Chris Buechler
04:32 PM Bug #646 (Resolved): DHCP Daemon settings do not sync to peers
Chris Buechler
04:32 PM Feature #635 (Resolved): Update ipfw-classifyd
Chris Buechler
04:32 PM Bug #388 (Resolved): Setup GEOM Mirror with BSD Installer errors out
Chris Buechler
04:28 PM Bug #755: dnswatch not working
Warren: have you tested this? Chris Buechler
04:27 PM Bug #682 (New): WAN traffic graph is broken with MLPPP
Chris Buechler
04:26 PM Bug #853 (New): PPPoE Server radius config not applied
Ports for RADIUS and accounting are still not used Chris Buechler
04:22 PM Bug #715 (Resolved): RRD Graph on Throughput Contains No Info
Chris Buechler
04:22 PM Bug #632 (Resolved): Change type of Virtual IP not work.
Chris Buechler
04:21 PM Feature #861 (Resolved): Clicking MAC Address in DHCP Leases Sends WOL Packet
Chris Buechler
04:21 PM Bug #835 (Resolved): Captive portal non redirecting correctly when logout popup is enabled
Chris Buechler
04:20 PM Feature #951 (Resolved): CARP doesn't sync Layer 7 rule groups
Chris Buechler
04:20 PM Bug #920 (Resolved): Routing groups don't change monitor IP address when PPPoE reconnects
Chris Buechler
04:20 PM Bug #892 (Resolved): loader.conf.local changes lost after nanobsd upgrade
Chris Buechler
04:19 PM Bug #947 (Resolved): existing lagg members should not be able to be added to lagg
Chris Buechler
04:18 PM Feature #1086 (Resolved): [patch] CARP IPs as outer source addressed for GRE and GIF tunnels
Chris Buechler
04:17 PM Bug #883 (Resolved): Renaming gateway doesn't update static routes
Chris Buechler
04:15 PM Bug #960 (Resolved): Problem with config sync + ipsec + special characters
Chris Buechler
04:15 PM Bug #985 (Resolved): L2TP server is not using renamed interfaces
Chris Buechler
04:15 PM Bug #1022 (Resolved): DNS rebind check blocks web gui access to configured host if changed during setup wizard
Chris Buechler
04:12 PM Bug #695 (Resolved): In firewall rules and NAT some wrong displaying.
Chris Buechler
04:12 PM Bug #907 (Resolved): Prefer older IPsec SAs doesn't change when checked/unchecked
Chris Buechler
04:11 PM Bug #954 (New): Switching to manual outbound NAT creates incorrect rule for PPTP server
Not fixed. It uses the server address rather than the client addresses. Chris Buechler
04:10 PM Bug #1006 (Resolved): XMLRPC sync from the CLI as well as the UI Fail on error conditions
Chris Buechler
04:09 PM Bug #1051 (Resolved): radius support in racoon
Chris Buechler
04:08 PM Bug #1015 (Resolved): Gateways IP subnet check needs to check IP aliases
Chris Buechler
04:07 PM Bug #1018 (Resolved): Dynamic DNS issue with multiple Dyndns-Entries
Chris Buechler
04:07 PM Bug #1066 (Resolved): Remove old dynamic caches
Chris Buechler
04:06 PM Bug #1041 (Resolved): IP Alias VIPs are not available for use by IPsec
Chris Buechler
04:06 PM Bug #1132: bogons table not kept after upgrade
Scott probably fixed it in Revision e584baa8903c7f83d8de6440563b200aacd1e53c
Will check in next snapshot.
Alexandre Paradis
03:42 PM Bug #1132 (Closed): bogons table not kept after upgrade
that's by design. copy included with releases has been updated. Chris Buechler
12:46 PM Bug #1132 (Closed): bogons table not kept after upgrade
The bogons table is kept updated after a reboot without upgrading, but its being overwriten when we update to a newer... Alexandre Paradis
04:05 PM Bug #1096 (Resolved): pf TSO patch fallout - squid (and potentially other) issues
Chris Buechler
04:05 PM Bug #1073 (Resolved): Disabled 1:1 NAT entries need to be grayed out
Chris Buechler
03:51 PM Bug #1093 (New): Problems with em(4)
This is obviously not entirely fixed, though the bulk of the issues are gone. Something bad in the RELENG_8 driver st... Chris Buechler
03:49 PM Bug #1106 (Resolved): Error in boot process
Chris Buechler
03:43 PM Bug #1133: Static DHCP lease showing offline
wouldn't scale, and would take way too long to load the page. It works, I just tried it. Chris Buechler
03:41 PM Bug #1133: Static DHCP lease showing offline
even if i ping from the lan interface, its still offline. maybe we could setup a way to ping certain specific lease s... Alexandre Paradis
03:39 PM Bug #1133 (Rejected): Static DHCP lease showing offline
works fine. the host has to be active in the firewall's ARP cache to show online, so it won't if it's not accessing t... Chris Buechler
02:57 PM Bug #1133 (Rejected): Static DHCP lease showing offline
Static dhcp lease is showing offline in the dhcp lease page, even if the computer is online. Alexandre Paradis

12/24/2010

04:47 PM Bug #1130: NAT reflection broken...
Seems related to the fact that if port 80 is used for access to the webgui, port 80 doesnt seem to be able nat reflec... Brian Jensen
06:01 AM Bug #1130 (Resolved): NAT reflection broken...
I cant get NAT reflection to work or stay working.
The recent build got it working again, until I changed it and c...
Brian Jensen
09:19 AM Bug #1093: Problems with em(4)
Then close it. I am not buying another NIC to test it. I can say that the PCI Express NIC I have never had any trou... Shannon McMahon
07:34 AM Bug #1093: Problems with em(4)
I'm on i386 full latest and never had any problems either. I got 2 dual GBit intel pci-x nics using em drivers.. Max Riedel
07:16 AM Bug #1093: Problems with em(4)
I am using 23rd Dec BETA4 amd64 on vmware with em driver.
I have been using this for some time and have never ha...
Jon Gerdes
09:11 AM Bug #757: PPPoE Disconnect button with multiple PPPoE interfaces
Hi there - I'm still following this issue. I will update to the latest snap when I'm back onsite later today and rep... Pho Bia
07:06 AM Bug #1106: Error in boot process
I have not seen this error on yesterday's BETA4.
I have rebooted twice just to be sure so I think it is safe to ...
Jon Gerdes
06:58 AM pfSense Packages Bug #1131 (Closed): str_split function missing in squidGuard
squidGuard gives errors under pfSense 1.2.3 because php4 does not provide the str_split function required by squidGua... Luis Soltero
06:52 AM pfSense Packages Bug #719: Squid doesn't use local DNS cache (and fails after WAN failover)
i agree that this is a good idea especially when running in a multi-wan environment where upstream proxies are used t... Luis Soltero
03:38 AM Bug #1081 (Resolved): traffic shaper wizard loops endless back to VOIP-settings
Chris Buechler
02:49 AM Bug #1081: traffic shaper wizard loops endless back to VOIP-settings
ok under 2.0-BETA4 (i386) built on Thu Dec 23 13:17:58 EST 2010 Michel Samovojski

12/23/2010

08:39 PM Bug #636: layer7 not work correctly
Just updated to 2.0-BETA4 (i386) built on Thu Dec 23 15:39:33 EST 2010. Created a new L7 group for HTTP. Applied the ... Seth Scardefield
08:11 PM Revision 1916d34a: Instead of replacing the whole array just add the new vlanif member to the config. Should fix issues reported in http://forum.pfsense.org/index.php/topic,28202.15.html
Ermal LUÇI
08:07 PM Revision 5af3a589: Add some more safe belts and remove code that is commented from long time now. Reported on http://forum.pfsense.org/index.php/topic,28202.15.html
Ermal LUÇI
08:06 PM Revision e503c44a: Add some more safe belts and remove code that is commented from long time now. Reported on http://forum.pfsense.org/index.php/topic,28202.15.html
Ermal LUÇI
07:19 PM Revision c6c26178: Add OSPF to firewall rule protocol choices
Jim Pingle
06:41 PM Revision 60b66b60: Ticket #1128. Ooops pass the right parameter to unlock.
Ermal LUÇI
04:21 PM Revision 057c83f5: Accept # for a DNS override domain DNS server, this makes dnsmasq ignore a previous less specific domain and use system default name servers instead. So you can override example.com to 10.10.10.2 but www.example.com will consult normal DNS.
Jim Pingle
02:43 PM Feature #1129 (Resolved): Add enable/disable toggle for VPN tunnels
It would be nice eventually to have an enable/disable toggle button (with a confirmation dialog) for VPN tunnels that... Jim Pingle
01:58 PM Revision 100b7219: Hanlde the case when advbase is not present especially on previous 2.0 setups.
Ermal LUÇI
01:48 PM Bug #1127 (Resolved): bug in apinger halts failover and load balancing
Committed thanks. Ermal Luçi
01:46 AM Bug #1127 (Resolved): bug in apinger halts failover and load balancing
on pfSense 1.2.3-RELEASE
Running in Failover mode between WAN and OPT1 I noticed that once in a while monitoring ...
Luis Soltero
01:40 PM Bug #1128 (Resolved): Captive Portal Error
Fixed thank you for reporting. Ermal Luçi
11:13 AM Bug #1128 (Resolved): Captive Portal Error
on Version 2.0-BETA4 (i386) built on Thu Dec 23 03:37:06 EST 2010
After Auth on Captive Portal the following error ...
Behzad Barzideh

12/22/2010

11:51 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
Well of course they should, but whether or not both Cisco and Shrew will work with the same config is the question. :... Jim Pingle
11:47 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
If you're asking if multiple P2 networks should be supported then YES! I was using this regularly from Shrew and my i... David Szpunar
05:46 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
I think that sounds right, it should do the right thing automatically then.
Not sure if we should prevent someone ...
Jim Pingle
05:41 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
Ok, so:
- for multi p2, use complete sainfo.
- for mobile single p2, for pure-psk or psk/xauth, generate anonymous ...
Pierre POMES
03:59 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
Sounds OK, though we also had reports that the Cisco VPN client would only connect with sainfo anonymous even without... Jim Pingle
03:09 PM Bug #1116: IPsec error, racoon won't start with more than one phase 2
I check the code a little, we can have "sainfo anonymous" when setting the phase2 to "transport". So for such mobiles... Pierre POMES
10:32 PM Revision c513c309: Prevent other types of interface for being added to ng_ether(4). It might be the cause of panics reported here http://forum.pfsense.org/index.php/topic,31404.0.html
Ermal LUÇI
08:51 PM Revision cd3346e2: Ticket #749. Do not create the queues at LAN side for traffic_shaper_wizard_dedicated. Since we cannot control bandwidth its useless to try to handle it(ALTQ was built with this concept in mind).
Ermal LUÇI
08:41 PM Revision 01184e21: misc comments
Scott Ullrich
08:40 PM Revision 44473583: Ticket #749. Do not create the queues at LAN side for traffic_shaper_wizard and traffic_shaper_wizard_multi_all. Since we cannot control bandwidth its useless to try to handle it(ALTQ was built with this concept in mind.
Ermal LUÇI
08:33 PM Revision 95b71980: Use correct lock.
Ermal LUÇI
08:05 PM Revision 60e70198: Add back easy install options for UFS and ZFS
Scott Ullrich
07:51 PM Revision a8d6ac1a: Ticket #757. Use correct pidfile.
Ermal LUÇI
05:23 PM Bug #1126 (Resolved): Duplicate "System Activity" in /etc/inc/priv.defs.inc
Fixes incorrect label that displays in system_groupmanager_addprivs.php Screen shot and git patch attached John Place
04:54 PM Revision a3ccdf6e: Add newline and comment header for each disk
Scott Ullrich
04:42 PM Revision 4e8d55dd: Include captiveportal.inc if captiveportal_syslog() is not defined.
Scott Ullrich
04:41 PM Revision 34507786: Use captiveportal_syslog()
Scott Ullrich
04:06 PM Revision ba482f41: Fix whitespace.
Scott Ullrich
04:06 PM Revision 9c7b9ba0: Rework how disk definitions are defined per Kris.
Scott Ullrich
03:57 PM Revision f6d4854b: Typecast second param for array_merge to silent a warning that is breaking build since we check output of test_php.php looking for a string 'FCGI-PASSED PASSED'
Renato Botelho
03:46 PM Bug #1075: rrd graphs missing / duplicate
There were some commits related to RRD can you please try a new snapshot. Ermal Luçi
03:45 PM Bug #1107: mpd on AMD64 generates invalid checksums with NAT
Does you vpn have lower mtu than openvpn?
That would explain it with that DF bit set on packets.
Ermal Luçi
03:43 PM Revision 1e312328: Add missing semicolon.
Erik Fonnesbeck
03:40 PM Bug #749 (Feedback): Downstream queues should not be assigned to LAN interfaces
Traffic_shaper_wizard, traffic_shaper_wizard_dedicated and Traffic_shaper_wizard_multi_all will not show this problem... Ermal Luçi
03:39 PM Revision 673e8095: nuke trailing carriage returns
Scott Ullrich
03:36 PM Revision 2d7bbd65: Nuke trailing carriage returns
Scott Ullrich
03:32 PM Revision 4d5bbdfb: White space fixes and (C) for both Ermal and myself
Scott Ullrich
03:29 PM Revision 4ac251b8: Log voucher errors. Fix whitespace. Remove trailing c/r
Scott Ullrich
03:18 PM Revision 6ac988f1: Display confirmation before sending Wake on LAN packet to clicked MAC address in list of DHCP leases. Ticket #861
Erik Fonnesbeck
02:58 PM Revision 3440de72: Change appearance of fields for saved "Additional BOOTP/DHCP Options" to be consistent with other fields on the page.
Erik Fonnesbeck
02:54 PM Bug #927 (Closed): 3G modem rendered un-usable by forced cycling of connection
I do not think there is any issue here so move along. Ermal Luçi
02:51 PM Bug #757: PPPoE Disconnect button with multiple PPPoE interfaces
Committed the last missing fix.
Please test again.
Ermal Luçi
02:32 PM Revision f39b73ad: Fix interface names for Wake on LAN entries. Fixes #1101
Erik Fonnesbeck
02:29 PM Bug #636: layer7 not work correctly
Committed another fix can you please try again with newer snapshots.
It will be worth to try even blocking http with...
Ermal Luçi
02:27 PM Revision 227f2be5: Fix routed starting. Reported-by: http://forum.pfsense.org/index.php/topic,29015.0.html
Ermal LUÇI
02:08 PM Revision 40eb0394: Fix incorrect variable name.
Erik Fonnesbeck
02:05 PM Revision 1930ccb6: Modify comparisons for antenna settings to be more restrictive. Might help with ticket #1121
Erik Fonnesbeck
02:02 PM Revision 0d86d650: Remove extra (. Reported-by: http://forum.pfsense.org/index.php/topic,31246.msg161929.html#msg161929
Ermal LUÇI
01:59 PM Revision 475c1932: Use the provided settings even for HFSC scheduler instead of hardcoding 32Kbit/s speed on VoIP. Also cleanup some whitespace.
Ermal LUÇI
01:59 PM Revision d526314b: Be consistent on having 1K == 1024
Ermal LUÇI
01:41 PM Bug #863: floating rules breaks passive mode ftp
Tested with latest snapshot (2.0-BETA 4 (i386) built on Tue Dec 21 12:44:54 EST 2010), and still not working. Activ... Jesse Norell
12:40 PM Revision ad65b15a: Fix incorrect merge in vslb.inc
Seth Mos
11:51 AM Bug #886: RRD graph generation time scaling not written correctly
hmm, the quality RRD doesn't seem to be working recently, although for entirely different reasons I'm sure. Adam Stylinski
11:17 AM Feature #1103: Wake-on-Lan Widget for Dashboard (with code)
I just found out about 'convert_friendly_interface_to_friendly_descr()' from another ticket.
Should I submit another...
Yehuda Katz
10:38 AM Bug #1125 (Resolved): RRD Graphs broken on built on Mon Dec 20 22:18:43 EST 2010
A fix was already checked in today for this:
https://rcs.pfsense.org/projects/pfsense/repos/mainline/commits/0d86d...
Jim Pingle
10:30 AM Bug #1125 (Resolved): RRD Graphs broken on built on Mon Dec 20 22:18:43 EST 2010
When trying to access the graphs the following error occurs:
Parse error: syntax error, unexpected '{' in /usr/loc...
James Lepthien
10:31 AM Feature #861 (Feedback): Clicking MAC Address in DHCP Leases Sends WOL Packet
There was already a bit of text that would pop up when you put the cursor over the link. With the addition of the co... Erik Fonnesbeck
09:35 AM Bug #1101 (Feedback): Wake-on-Lan display issue
Applied in changeset commit:"f39b73ad06be35f2da4b227e4894f56d412e4175". Erik Fonnesbeck
09:17 AM Bug #1121: wireless interface antenna settings not applied at boot
I've committed a fix for an issue that it may possibly display the wrong option as selected and may possibly save the... Erik Fonnesbeck
12:28 AM Bug #1121: wireless interface antenna settings not applied at boot
diversity setting command doesn't appear in that file, i pasted the exact contents of the file.
the order of the com...
Bipin Chandra
09:00 AM Bug #1081 (Feedback): traffic shaper wizard loops endless back to VOIP-settings
https://rcs.pfsense.org/projects/pfsense/repos/mainline/commits/475c1932c3158a4e9ca718ae3ba2a2eee739ef61
Please tr...
Ermal Luçi
02:02 AM Revision 9b4e0168: Do not break on header titles
Scott Ullrich
01:57 AM Revision a1d3953f: Turn off csrf for dashboard
Scott Ullrich
01:25 AM Revision f7bd0032: Remove note about encyrption password only used for encryped fs type. It's handled by enable/disable js code now.
Scott Ullrich
01:11 AM Revision d31bc32a: Make the CP locking more granular and make use correctly of exclusive/shared locks where appripriate. This speeds up CP login process.
Ermal LUÇI
01:09 AM Revision 3da60e0d: Correcly fire delete event
Scott Ullrich
12:56 AM Revision 68867598: Fire event for delete too
Scott Ullrich
12:52 AM Revision 3be68b60: Auto insert disk size
Scott Ullrich
12:52 AM Revision 2fa74698: Default to UFS+S
Scott Ullrich
12:28 AM Revision 72c0d2e3: Disable the available space field too
Scott Ullrich
12:27 AM Revision eb7aa263: * Use exclusive locking for parts of config involving CP db.
* Use more strict checking against empty/not set values for timeout and idletimeout
* Do not overwrite idletimeout va...
Ermal LUÇI
12:26 AM Revision bfff9331: nuke the leave one megabyte free on each disk business.
Scott Ullrich
12:15 AM Revision 5a04b6d8: Revise not about leaving 1 megabyte free on each disk
Scott Ullrich
12:10 AM Revision 3e4fbe67: Turn background of input box red if you over allocate
Scott Ullrich
12:07 AM Revision 96b25714: Add delete button. Move the add button to the right of total allocated.
Scott Ullrich
 

Also available in: Atom