Activity
From 05/06/2011 to 06/04/2011
06/03/2011
-
10:29 PM Revision 5cb0360b: Merge branch 'master' of github.com:bsdperimeter/pfsense
-
10:29 PM Revision 5b542ae5: Typoes
-
07:34 PM Revision 534375b6: Merge remote branch 'upstream/master'
- Conflicts:
etc/inc/openvpn.inc -
06:53 PM Revision bd4b0982: If a mode_cfg subnet is defined for IPsec, also add it to outbound NAT.
-
02:29 PM Revision c8ff68a4: Allow duplicating an IPsec phase 2. The code was already on vpn_ipsec_phase2.php but unlinked.
-
01:50 PM Revision 5cd9e96a: Add a GUI selection for racoon's generate_policy directive since it may be useful in certain configurations, especially for mobile clients.
-
01:29 PM Revision 039cb920: Add a button here to clear the package lock.
-
01:20 PM Revision 5dc6c910: When making a P2P SSL/TLS OpenVPN server, if the given CIDR for the tunnel network is a /30, don't use the OpenVPN server directive. See ticket #1417
-
01:03 PM Revision 19cdeb3e: Instead of showing an emtpy drop-down for CA/Cert/CRL, show an error that there are none defined, and link to the page to create one.
-
01:03 PM Revision 1591ea6f: Remove the warning message that a user doesn't have any CA/Certs when viewing OpenVPN connections. This is just confusing people, and isn't relevant to people using only shared key tunnels.
-
01:03 PM Revision 2f51259b: Redirect back to the CA/Cert management page after delete so a person can't refresh and accidentally delete other CA/Certs. (CRLs are deleted differently and don't need this fix)
-
07:25 AM Revision 327d958a: fixed for use pfsense API
-
07:15 AM Revision 8c0199ea: Better management for reload lighttpd
06/02/2011
-
10:03 PM Revision 67dde8b0: Merge remote branch 'origin/master'
-
04:47 PM Revision f451ea09: Show how much data has passed on an SAD entry.
-
03:43 PM Revision e96bbf82: Patch from EvgenyY to allow editing an existing p2 without it being flagged a duplicate.
-
03:23 PM Revision b717f1bc: Bug #1560.IPsec GUI needs to reject duplicate subnets in phase 2s for a given phase 1 (fixing p2 edit)
-
01:07 PM Revision 0640a65b: Add "Default" choice that will unset the media/mediaopt, otherwise whatever is first in the list is saved in the config.
-
08:14 AM Revision 3781d809: Correct input object name from wrong copy/pasto. Reported-by: http://forum.pfsense.org/index.php/topic,37369.0.html
06/01/2011
-
10:29 PM Revision fc3dcc8b: Merge remote branch 'origin/master'
-
10:28 PM Revision 3da5c50d: Bug #1560.IPsec GUI needs to reject duplicate subnets in phase 2s for a given phase 1 (improvement of previous patch)
-
09:39 PM Revision 2e88102d: Disable this until it can be properly fixed.
-
08:56 PM Revision ee0cf21f: Merge remote branch 'upstream/master'
-
08:54 PM Revision a01ce4c7: Make the ICMP echo request type less ambiguous, and since it's likely the main one to get used, move it to the top.
-
03:25 PM Revision 7af360ce: Add tunable, by default disabled, to enable the default gateway switching feature when the default one 'disappears'.
-
03:25 PM Revision f8f3732a: Fixes #1412. Properly pass the page to match so users are not always presented with the change password screen. Proper fix.
-
02:42 PM Revision b5ef447f: Fix merge blip.
-
02:03 PM Revision f4645d7f: Add tunable, by default disabled, to enable the default gateway switching feature when the default one 'disappears'.
-
01:00 PM Revision 58005e52: Merge remote branch 'upstream/master'
- Conflicts:
conf.default/config.xml
etc/inc/filter.inc
etc/inc/globals.inc
etc/inc/pfs... -
12:23 PM Revision 9584d162: Fixes #1412. Properly pass the page to match so users are not always presented with the change password screen. Proper fix.
-
11:14 AM Revision 97c1f268: Fixes #1412. Properly pass the page to match so users are not always presented with the change password screen.
-
10:49 AM Revision 695a35ae: Ticket #944. Also destory the previous interface if the user changing the vlan tag of an existing vlan entry.
-
10:49 AM Revision 6b421a0f: Fixes #944. Use the correct interface name to destroy the previous vlan if the parent is changed.
-
03:41 AM Revision 538b6eb3: Bug #1560. IPsec GUI needs to reject duplicate subnets in phase 2s for a given phase 1(site-to-site).
05/31/2011
-
08:32 PM Revision 0ca52cff: fix typoes
- 06:42 PM Revision f9d7c5b3: Use array_overlay()
- 06:28 PM Revision 0b581a8a: Use array_extend
- 05:50 PM Revision 456026b5: Use pfsense.restore_config_section
- 05:47 PM Revision 485b1ca5: Remove debugging code
- 05:45 PM Revision db748384: Add merge handler code
- 04:35 PM Revision 10d74dff: Remove bogus protection. We have better handling of this now.
- 03:58 PM Revision 85055175: Remove old vidcontrol cruft lingering from long long ago
-
09:05 AM Revision 9d545c88: Merge remote branch 'origin/master'
-
09:03 AM Revision 061f28bf: Bug #1560. IPsec GUI needs to reject duplicate subnets in phase 2s for a given phase 1(mobile clients).
-
02:10 AM Revision edb2a3da: Bug#1528. Automatically create outbound NAT rules on WAN for localhost when switching to manual.
05/30/2011
- 07:27 PM Revision a3d58a12: Use aon plugin
- 07:25 PM Revision 2ba7d6f8: Add plugin features to aon edit
- 04:28 PM Revision 2ea00c3e: Add missing plugin code. Move the pre_write section up a bit.
- 04:02 PM Revision 3dbceb92: Include .inc files for plugin system
-
01:11 PM Revision d97ff036: Prevent races on resovlconf generation as well by adding a lock.
05/28/2011
-
04:19 PM Revision ce91583b: Merge pull request #1 from EvgenyY/6e2a15e677fa0558ba0c9b1700be38f4065a76f6
- Speed/duplex select for interfaces
05/27/2011
-
09:55 PM Revision b45babae: Bug #1403. Filter Rules description do not get saved when "(quote) present as character
- 05:27 PM Revision 55260532: Add note about voucher sync (only enable on slave nodes).
- 05:06 PM Revision 58f963d0: Clarify auth option to include Vouchers
-
04:02 PM Revision f40a03a4: Only add pppoe to the interfaces list if it both has an entry and is in server mode (i.e. not disabled.)
-
04:02 PM Revision 685c9776: Some extra protection against putting empty values into the ruleset.
-
03:32 PM Revision a1b86994: Ticket #1534. Try to stop packages during reboot of system.
-
03:21 PM Revision 6e2a15e6: Hiding mediaopt under Advanced button
-
10:46 AM Revision 93b8df2a: Increase timeout to 2 minutes. Ticket #1545.
-
10:45 AM Revision 71070cc5: Ticket #1545. Lock each dnsHost to be updated to prevent running two instances in parallell.
-
08:24 AM Revision 224ddbad: Silence the route changing since it fills the logs with not needed info.
-
07:56 AM Revision dfb30a89: Trigger reloading of packages through check_reload_status so it can serialize the calls to not DoS the OS with processes triggered from this. Ticket #1534
-
03:52 AM Revision e5770bc2: DHCP only knows about IPv4
- don't allow admins to shoot themselves with v6 addresses in the config
-
03:28 AM Revision 13f0762d: Fix #1277
- Wasn't able to remove the multicast RIPv2 discovery at startup, but
all ripv1 response's are gone now.
05/26/2011
-
08:51 PM Revision b75d32e5: Free ipfw rule number after mac pass-through deletion.
-
08:16 PM Revision ab731f54: Bring more consistent style to CP edit mac and ip passthrough pages.
-
07:39 PM Revision adcf909a: Just use the long reference here instead of creating potential dangerous reference.
- 11:41 AM Revision 1a6cb6e7: Remove decimals from cumulative users graph.
-
08:25 AM Revision 3c5e10fc: Add debugging notes so that we can easily fix this when IPv6 support is added to the pfSense module.
- Remove the Accept router advertisement from all interfaces unless we enable them
-
08:14 AM Revision 668ce1f9: Increase the minimum time between generating images from 5 to 15 seconds to prevent DoS the firewall.
-
08:13 AM Revision d67d99a1: Fix packet graph label alignment
-
08:10 AM Revision a63f2b7d: Fix the graph label alignment
-
07:59 AM Revision a555cc58: Fix my traffic graphs
05/25/2011
- 11:51 PM Revision e4a8ed97: Add function header
- 11:43 PM Revision d65962a7: Adding a new hook system for firewall nat edit and firewall rules edit page.
- Basically if the directory exists it will suck in the files to extend these pags.
/usr/local/pkg/firewall_nat/input_... - 10:43 PM Revision 838e4eb8: Rather make use of $global variable for RRD path.
- 10:02 PM Revision 474f36d1: * Add is_ipaddr_configured() so that people do not need to reinvent the wheel for this task
- * Check to make sure the administrator is not entering the IP address of the same host preventing a issue where the f...
- 10:00 PM Revision 5c723d9f: Remove out-dated RRD file as it will cause broken images to appear on RRD graphs page.
-
08:36 PM Revision c206a2ab: Disable csrf checks when posting from scripts.
-
08:28 PM Revision 05771a24: Provide a voucher_expire function so that voucher can be expired through a POST.
- 05:35 PM Revision 669113f9: Merge remote-tracking branch 'mainline/master' into inc
- 05:33 PM Revision 19bd7032: Remove gettext from negotiation mode
- It is causing errors on raccon because config file were generated with
translated words -
05:08 PM Revision dceff62e: Put some debug info during dyndns update under debug conditionals.
-
04:51 PM Revision 193ee786: Actually add more error checking and do not schedule a scan if it is not possible to retreive the wan ip address.
-
04:41 PM Revision dd575ea4: Improve some code and check return value from _checkIP.
-
04:29 PM Revision 7788c76a: Don't overwrite the $target variable. Fixes #1415
-
03:38 PM Revision c749ef62: Check that the returned ip is an ip_address and not blindly trust the returned information.
-
01:35 PM Revision f0e80b72: Correct dhcpd statement for unknown-clients. Fixes #1555
-
11:02 AM Revision f6f1c847: Update some code to be more readble and more compliant to php5
-
05:35 AM Revision b2d00d91: Unset the correct variables
05/24/2011
-
08:44 PM Revision 92bb7a41: Make it so that we use the correct fields in the right order
-
08:13 PM Revision b7475a81: Correct the interface alias generation. Wrong copy-pasto before.
-
08:11 PM Revision 77bd744e: Correct the interface alias generation.
-
08:05 PM Revision d1a44a5f: Correct the interface alias generation.
-
08:01 PM Revision 7e107d2e: Use remoteips here.
-
07:35 PM Revision ee6d2b52: Resolves #1243. Properly handle pppoe new format of config so correct rulesets are generated.
-
05:39 PM Revision 4e12754d: Fix automatic and manual outbound NAT for PPTP. Fixes #954
-
04:49 PM Revision bdb6bd30: Fix syntax error/typo. Fixes #1372
-
04:34 PM Revision 5aa28c86: Apply fix from wallabybob on the forum http://forum.pfsense.org/index.php/topic,37079.0.html
-
04:22 PM Revision a90896fd: Move the code to touch needs_package_sync into the shell script portion of the post upgrade command. The PHP portion will fail spectacularly during the 1.2.3-to-2.0 upgrade trying to run the new binaries on the old OS. The shell script part still works. Fixes #1251 enough for what we need. The PHP code can never run properly there, but at least we can trigger the package reinstall and the rest can sort itself out when 2.0 boots the first time.
05/23/2011
-
09:04 PM Revision e2b6e604: Also process v4 gateways on v4 gif tunnels
-
08:59 PM Revision 7c0571ce: When editing a gif interface with a gateway we need to call system_routing_configure() for that gif interface.
-
08:36 PM Revision ed5c640d: Test the right variable otherwise we have no hope of getting a v6 gateway
- 06:57 PM Revision 45d4b71e: Merge remote-tracking branch 'mainline/master' into inc
- 06:41 PM Revision d21d6e20: Merge remote-tracking branch 'mainline/master' into inc
- Conflicts:
etc/inc/interfaces.inc
etc/inc/upgrade_config.inc
etc/inc/vpn.inc -
02:56 PM Revision 7a18dfa4: Fixes #1444. Implements the same fix that issue ermal made in #1522 to the console menu
05/21/2011
-
09:16 PM Revision 839ee78f: Further fine tune the gif tunnel default route commands.
-
09:14 PM Revision 69bd3cc0: Comment out the interface_gif_configure(). It is causing more issues then it is solving.
-
08:41 PM Revision 3be49c5f: Run system_routing_configure() for all the gif interfaces when the parent interfaces renews.
-
03:35 PM Revision 509ca889: Adding gui to choose media options for interfaces.
05/20/2011
-
08:47 PM Revision 100c7be0: Do not use global router advertisements, instead configure per interface.
-
04:54 PM Revision abcdca83: Fixes #1386. Correct unlooping nested port aliases.
-
04:10 PM Revision aa3c4866: Correct code to use correct refernces for proxy settings set in Advanced->misc. Reported-by: http://forum.pfsense.org/index.php/topic,36939.0.html
-
04:05 PM Revision f69d8346: Merge remote branch 'upstream/master'
-
03:45 PM Revision 2a57a4d1: Correct curl setting for setting a proxy username and password. Reported-by: http://forum.pfsense.org/index.php/topic,36939.0.html
-
02:27 PM Revision aa6699fb: Fix config sync issue. Resolves #1547 Fixed-by: Ermal
05/19/2011
-
09:03 PM Revision b7d56b64: Fixes #1508. When an interface is configured as static and an up event comes manually trigger rc.newwanip so gateway and other services get restarted properly.
-
06:51 PM Revision e4aa1eae: Merge remote branch 'upstream/master'
-
06:47 PM Revision 43a68abc: Fix clearing of PPTP/PPPoE/L2TP server raw logs. Fixes #1340
-
06:26 PM Revision 51f8a7f8: Correct password variable name for input validation test on PPTP users. Fixes #1239
-
05:34 PM Revision bac9941b: Reject alias names that are too long. Fixes #1510
-
04:54 PM Revision 12ac39e8: Merge remote branch 'upstream/master'
- Conflicts:
conf.default/config.xml -
04:51 PM Revision dfa6deda: Fix array parsing of rc files. Resolves #1541
-
03:08 PM Revision c1f4af16: Show the DUID instead of the MAC. Fix online test.
-
02:44 PM Revision bcb24b81: Misc DHCPv6 lease view improvements (at least shows the IP...)
-
12:56 PM Revision 153fa447: Fix conf.default version
-
12:56 PM Revision a83d01d8: Fix conf.default version
-
12:50 PM Revision 27d0722d: Merge remote branch 'upstream/master'
05/18/2011
-
11:09 PM Revision 2f6532d5: Fixes #1514. Differentiate in the carp settings between layer7, limiter and queues so layer7 and limiters do not rely on queues being active.
-
10:49 PM Revision 941baf1e: When uninstalling packages try to remove even any rc files created by packages.
-
10:40 PM Revision 6c19757e: Restore running custom scripts under /usr/local/etc/rc.d directory since it causes regressions and its a feature used by many users.
-
09:56 PM Revision c415a55b: Micro optimization.
-
09:54 PM Revision bb4fcffd: Fixes #1522. Call interface reconfigure so we bring down the interface and than re-configure it.
-
09:31 PM Revision f51d4f98: Ticket #1534, #1433. Remove custom sync code for vip, since it array_merge() replaces same keys data when merging. But make the code for reloading only changed vips after merge better and some more checks.
-
09:11 PM Revision 51611440: Ticket #1534, #1433. Properly merge carp interfaces and do not reload carp interfaces that have not change any configuration parameter. Also make merge_config_section_xmlrpc() an alias for restore_config_section_xmlrpc() since that what it is.
-
08:56 PM Revision ce107ca5: When converting 1.2.3 LB pools to 2.0 gateway groups, strip invalid characters from the group names and update any rules referencing the old name. Fixes #1515
-
08:35 PM Revision ee7f1647: Correct default code disabling! Ponty-hat: myself
-
07:43 PM Revision 77b70d6b: Disable the default route switching code since its causing more issues than solving. It needs more work to get re-enabled.
-
04:53 PM Revision 7171b7b6: Fix PPTP server radius settings upgrade from 1.2.3. Fixes #1292
- 01:59 AM Revision 0d5c21f7: fix missing images for CRLs
05/17/2011
-
10:23 PM Revision 7eea4407: When uninstalling a service actually stop it first.
-
10:20 PM Revision b5058001: Do not call stop_service since its already called from start_service itself.
-
10:19 PM Revision b27ade8e: Test for null names passed to these functions as a safety precaution.
-
10:18 PM Revision f1dbcf47: Actually sync_package before starting it again. Also include restart in the log message since it might be like that.
-
10:14 PM Revision aed6fc72: Ticket #1534. Change rc.start_packages and rc.stop_packages to php scripts so they do a proper job at start/stop packages, rather than assume every package has a .sh script which is not true. It mostly reuses code from rc.packages which is not used anywhere as of now!
-
10:08 PM Revision 8bf2e9e5: Test for null names passed to these functions as a safety precaution.
-
09:47 PM Revision 098820e2: Ticket #1534. Check if a rc file exists before trying to run it. Also return if we execute a stop command through rc file to be consistent with the start_service function.
-
09:18 PM Revision 67d78c87: Ticket #1534. Serialize all the xmlrpc requests coming to the firewall. Seems such request can stomp into each other and create either corruption of xmlrpc request or other issues.
-
06:24 PM Revision f5adee3f: Make sure all CP form elements are disabled/enabled with the master checkbox.
-
06:04 PM Revision a7af5ddc: Don't put an empty PSK into the file, and try to avoid extra whitespace to be safe.
05/16/2011
-
08:57 PM Revision aab2a3f6: Update default gitsync url to be the github URL. If anyone had done a gitsync before to the standard URL, they'll need to either rm /root/pfsense/ or cd /root/pfsense/pfSenseGITREPO/pfSenseGITREPO; git remote set-url origin git://github.com/bsdperimeter/pfsense.git; and then gitsync again.
-
08:47 PM Revision 1a137650: Fixup MAC display on this other path too
-
07:40 PM Revision 701989fb: Print the MAC mfg on another line in a smaller font if it's found. Less obtrusive than completely replacing the MAC.
- 02:26 PM Revision 73bf4a46: Use base 1000 on user graphs and display cumulative of Total users logged in over the 'x' period.
- 02:25 PM Revision 9cd72856: Ensure that $timestamp is only ever written out if it contains a value and let file be retained through reboots.
- 02:24 PM Revision 24fa000b: Remove Total users graph this has become redundant and replaced with a cumulative result.
-
06:20 AM Revision 62a29fe3: Resolves #1529. Check if the file exists before opening it.
05/15/2011
05/14/2011
-
10:44 PM Revision 325e3163: Merge branch 'master' into smos-ipv6
- Conflicts:
etc/inc/pfsense-utils.inc -
08:31 PM Revision 3f9492a7: Remove a space, this prevents the dhcp server from starting
-
04:23 PM Revision 4450527f: Fix small typo
-
04:23 PM Revision 57f2840e: MAC prefix to vendor resolution at Status->Interfaces, Status->DHCP leases, Diagnostics->ARP table
-
04:16 PM Revision 92ca10c1: Merge branch 'axscode-pfs'
-
04:08 PM Revision 23b774e0: Merge branch 'master' into yakatz-ssl
-
03:48 PM Revision 2ad2758f: Merge branch 'drcookie-he.net'
-
03:08 PM Revision fed025ea: Teach row_helper about ipv6, should fix issue found here:
- http://forum.pfsense.org/index.php/topic,36709.0.html
- 02:39 PM Revision 8ea77433: Added HE.net (dns.he.net) to the list of available dyndns services.
-
01:59 PM Revision 4e4de1d1: Resolves #1529. Check if the file exists before opening it.
05/13/2011
-
07:24 PM Revision 5e80046a: Resolves #1524. USe the correct field from netstat parsed output.
-
05:27 PM Revision e7237dd0: Fix interface recognition for diag > arp. It was't seeing wireless interfaces properly.
-
05:09 PM Revision b45630bf: Fix whitespace.
-
05:07 PM Revision f1273b82: Sync with dhcp leases reading code.
-
01:45 PM Revision 60c5d29b: Test for array before using variable as one.
-
11:43 AM Revision 69be9601: Merge remote branch 'upstream/master'
- Conflicts:
etc/inc/vslb.inc
etc/version
05/12/2011
-
06:04 PM Revision 042578fd: Fix comment
-
05:59 PM Revision dc073abd: Also skip the rewind binding state or leases show expired. Reported at http://forum.pfsense.org/index.php/topic,36657.0.html
-
05:26 PM Revision 2b094d21: This function takes two parameters, fix PHP error. Reported at http://forum.pfsense.org/index.php/topic,36648.0.html
- 05:03 PM Revision eb06ca8e: Revert this change. reload_all() already sends a reload message. Unfortunately there is still something else lurking that causes a delay when loading the wizard step
- 03:41 PM Revision 9545fe7a: Use send_event()
- 03:38 PM Revision 602e9806: Use send_message and issue the reload all operation in the background
-
02:45 PM Revision 1031c9ea: Make autocomplete on the login form optional.
05/11/2011
-
09:03 PM Revision a1bad141: Fix IPsec descr trimming for rule labels. Ticket #1426
- 08:40 PM Revision b148ab81: Skip step #9 for non pfSense branded installations
-
08:12 PM Revision 4bc2c676: Test for array/size before foreach
-
08:10 PM Revision 728003c8: Various CRL fixes, handle empty internal CRLs better.
- 07:26 PM Revision 51b9e41d: Reload the wizard and then redirect to a wizard completed step. Prompt the user to donate to the project.
-
07:02 PM Revision 00c36201: version bump to rc2
-
01:18 PM Revision cd9fa56b: Fix the input validation, typo in the field name. Mark the prefix delegation range as not required.
-
12:20 PM Revision 4edbcf6d: fix accidental linebreak to cause the pid to always return 0
05/10/2011
-
12:51 PM Revision 9eafb7e2: Properly kill the dhcp6 client
-
12:46 PM Revision 9d158467: Save the IPv6 DNS server and search domain to /var/etc/ so that system resolv conf picks it up.
-
08:46 AM Revision c65d3051: Correct the dhcp6c function name, accept router advertisements
-
08:42 AM Revision 1a0b04df: Add the new rc.newwanipv6 script. Needs more work. Dhcp6c client does not pass a argument. Always assuming WAN for no
-
08:40 AM Revision 0d6dedb9: Prevent incorrect rtadvd.conf generation if the prefix is not yet set on the LAN interface
05/09/2011
05/08/2011
05/07/2011
-
08:07 PM Revision c7ac47fd: Misc fixes to make the openvpn wizard stop re-creating a CA previously made via the wizard if you re-ran the wizard and chose a CA instead. Fixes #1512
- 04:14 AM Revision 2635f1f5: this should be checking for synchronizetoip not pfsyncpeerip
- 02:51 AM Revision 9c04a8c0: passive should always be on for mobile clients per racoon man page
05/06/2011
-
09:27 PM Revision 5b06d9cc: Reorder instructions and do not reload dns if its not allowed from the dns allow override setting.
-
09:02 PM Revision 978cf4fd: Actaully put the route adding under the conditional logic checking. Ticket #1408.
-
08:55 PM Revision 114a9292: If we are disabling the radius inputs, also disable the secondary radius inputs.
-
08:55 PM Revision c07b2675: This field should be server2
-
08:36 PM Revision ac655e1b: Use the availble constant on php for this and also the right value that comes with it since PHP never supported u_int. There is a bug open still on PHP about bcmod but some more info is needed.
-
07:36 PM Revision 6f5ed6f0: Reorder where inetd gets started to after where the package rules are generated, so that a package can add a line to inetd.conf using that process.
-
02:19 PM Revision de06b5b7: Enable debugging for the dhcp6c client so we can better track if it's working right
-
01:08 PM Revision 000d9e71: Add the ipv6 allow tag to the default config.
- Add a default allow rule for the LAN with IPv6
Add a dhcp-pd sla-id of 0 for the WAN.
Add a dhcp-pd length of 0 for t... -
12:09 PM Revision ed395640: Add DHCP-PD support if the WAN interface is set to DHCP.
- Select a DHCP-PD prefix length in correspondence with your ISP. If set to "none" it will not be requested and normal ...
Also available in: Atom