Project

General

Profile

Activity

From 08/30/2011 to 09/28/2011

09/28/2011

10:40 PM Bug #1910 (Feedback): Duplex description inconsistency
Applied in changeset commit:433e98427c6f66e3170b125c2541896cc073ff0e. Jim Pingle
02:04 PM Bug #1912 (New): DHCP server domain search list needs input validation
updated with actual problem. other part a feature in #1917 Chris Buechler
06:02 AM Bug #1912: DHCP server domain search list needs input validation
If I put "services lan.stdenis lan.auber" in the field, I get a config.xml that contains:
<domain>intranet</dom...
Emmanuel Seyman
02:03 PM Feature #1917 (Resolved): DHCP server support for multiple domains in search list
The DHCP server's search list only supports a single domain, should be extended to support multiple domains such as: ... Chris Buechler
11:40 AM Feature #1913: Add relayd to Status > Services
Applied in changeset commit:d353423564517a5038f57996769cb488ec802d7a. Jim Pingle
11:40 AM Feature #1913 (Feedback): Add relayd to Status > Services
Applied in changeset commit:240ffd2e7e748f0074d572756cd40bb272b29451. Jim Pingle
12:18 AM Bug #1916 (Resolved): LDAP Authentication ignores user naming attribute
Using a User Naming Attribute other than CN does not appear to work. Additionally, LDAP authentication (both Diags--... c c

09/27/2011

11:36 PM Bug #1914: LDAP Authentication test wont use credentials
After a little more testing, it looks like it still WILL use the credentials after the bind test. I did not give anon... c c
10:18 PM Bug #1914 (Closed): LDAP Authentication test wont use credentials
Im running pfSense 2.0, with an LDAP server running on CentOS6 (iRedmail). Both are in virtual machines, on a connec... c c
10:50 PM Bug #1915 (Resolved): LDAP "authentication containers" select button is inoperative.
Steps to reproduce:
1) Create a new auth server of type LDAP.
2) Set all paremeters correctly, and save.
3) Edit ...
c c
07:06 PM Feature #1913 (Resolved): Add relayd to Status > Services
Currently relayd does not show up under Status > Services. This makes it difficult to kill/restart relayd if a certai... Jim Pingle
03:00 PM Bug #1912 (Feedback): DHCP server domain search list needs input validation
that fills in what you have in that field, and works correctly. Need to see what your <dhcpd> config.xml contains. Chris Buechler
11:09 AM Bug #1912 (Resolved): DHCP server domain search list needs input validation
The domain search list box needs input validation to ensure a valid domain is entered there. Emmanuel Seyman
10:54 AM Bug #636: layer7 not work correctly
We find it generally works, however adding just a few rules sends our CPU usage to 100%. We're still on one of the RC... Jonathan Puddle
10:53 AM Feature #1911 (Closed): Interface Groups
Interface groups are only usefull now to add firewall rules to multiple interfaces. Problem is that when you want to ... Peter O
10:18 AM Bug #1910: Duplex description inconsistency
With "ifconfig -m" My Broadcom, Intel and Realtek chipsets call it "Autoselect" so I think the text can be changed to... Peter O
10:13 AM Bug #1910: Duplex description inconsistency
The default is to not set a value, so the OS handles it automatically.
Autonegotiate forces the NIC to autonegotia...
Jim Pingle
10:06 AM Bug #1910 (Resolved): Duplex description inconsistency
In interface configuration when choosing Duplex settings, the help text states:
"Here you can explicitly set speed a...
Peter O
08:51 AM pfSense Packages Bug #1880: snort package 2.9 v2
here is another snort example of what i found earlier with active x missing i guess it's something with the config? i... not availible
08:47 AM Feature #1904: DHCP server doesn't allow arbitrary config blocks
Thank you for updating the ticket -- any comments on whether this feature is under consideration? Maybe even a sim... → luckman212

09/26/2011

05:47 PM Bug #1909: dhcp dies after reboot

Hmm, okay.
After reboot, the SSH admin reports wrong IP address for INSIDE (bridge0) but web interface
reports ...
Rob Lister
05:35 PM Bug #1909: dhcp dies after reboot

[2.0-RELEASE][admin@pfcafe.cafe.local]/var/run(9): cat dhcpd.pid
[2.0-RELEASE][admin@pfcafe.cafe.local]/var/run(10...
Rob Lister
05:29 PM Bug #1909: dhcp dies after reboot
Look in /var/run/*.pid - see if there are any stale (old) pid files. It's possible something else is getting a killby... Jim Pingle
05:27 PM Bug #1909: dhcp dies after reboot

Attached.
Thanks
Rob Lister
05:23 PM Bug #1909: dhcp dies after reboot
can you attach your config? Chris Buechler
05:20 PM Bug #1909 (Resolved): dhcp dies after reboot
Just upgraded to to NanoBSD release from a previous 2.x RC version.
When it reboots, it comes up okay, but clients...
Rob Lister
04:29 PM Bug #636: layer7 not work correctly
Strangely, I am updated to the latest 2.0 RELEASE (nanobsd) and have defined a firewall rule with Layer7 to block
ss...
Rob Lister
03:21 PM pfSense Packages Bug #1908 (Closed): Vnstat
Bonjour,
j'ai un petit problème d'installation avec vnstat.
Merci de votre aide.
Beginning package installat...
kevin guery
02:28 PM Bug #1906: Dashboard: Incorrect evaluation of needed upgrade
Sorry. I did not want you troubleshoot my install. I guess what I was trying to say is that you should validate input... Alex Vergilis
02:02 PM Bug #1906: Dashboard: Incorrect evaluation of needed upgrade
The expected file is plain text, not html, so it's not parsed on purpose. If it was allowed through your browser woul... Jim Pingle
02:00 PM Bug #1906: Dashboard: Incorrect evaluation of needed upgrade
There's no proxy. Either way the upgrade message is not valid and should be corrected. The html parsing failed also. ... Alex Vergilis
01:57 PM Bug #1906 (Rejected): Dashboard: Incorrect evaluation of needed upgrade
You have a proxy or portal in front of that WAN. It's printing what it got back from the remote server, in this case,... Jim Pingle
01:55 PM Bug #1906 (Rejected): Dashboard: Incorrect evaluation of needed upgrade
One of my firewalls, has 2 WANs conifgure. WAN port appears to have ICMP accees to the internet but not http. On the ... Alex Vergilis
02:11 PM pfSense Packages Bug #1907 (Closed): snort
emerging active x seems to be missing not availible
09:37 AM Bug #1905 (Resolved): Upgrade code does not rename PPPoE restart script, creates second cron job.
From http://forum.pfsense.org/index.php/topic,41066.0.html
Before upgrade, this job exists if PPPoE restart is ena...
Jim Pingle
02:28 AM Feature #1904 (Needs Patch): DHCP server doesn't allow arbitrary config blocks
This relates to a few issues already posted:
http://redmine.pfsense.org/issues/764
http://redmine.pfsense.org/iss...
→ luckman212
02:21 AM Bug #834: DHCP server options for TFTP server doesn't allow arbitrary strings
It's nice that 2.0 has the ability to add custom strings but what we also really need is the ability to create custom... → luckman212
01:53 AM pfSense Packages Bug #1114 (Resolved): Snort Dashboard Widget has wrong link
Scott Ullrich
12:56 AM Bug #1903 (Closed): 1.x->2.0 Config upgrade problem with multiple bridged interfaces
If you have OPT1 bridged to LAN, and OPT2 bridged to LAN, in 1.2.3 you have a single if_bridge interface with OPT1, O... Chris Buechler

09/25/2011

08:02 PM Feature #1901: Maintain IP range tables for popular Internet sites
Lists like that can be added as URL table aliases in 2.0 (though the code may need adjusting so it only grabs the fir... Jim Pingle
07:42 PM Feature #1901: Maintain IP range tables for popular Internet sites
"We could dump the ASN numbers to plain txt files to be picked up off a pfsense server or mirror"
Right, that woul...
Dim Hatz
03:43 AM Feature #1901: Maintain IP range tables for popular Internet sites
For this to be useful or "complete" it would need a hybrid approach. You can't be sure that the spf record will also ... Seth Mos
03:35 AM Feature #1901: Maintain IP range tables for popular Internet sites
A somewhat related recent discussion http://forum.pfsense.org/index.php/topic,38741.0.html Dim Hatz
03:17 AM Feature #1901 (Needs Patch): Maintain IP range tables for popular Internet sites
Current version of pfsense includes the filterdns daemon which periodically resolves any fqdn in aliases into IP(s). ... Dim Hatz
07:22 PM Bug #1902 (Rejected): intel_ipw license ack prevents boot from LiveCD
It boots fine and just doesn't load those drivers. We can't acknowledge the license automatically per its terms, we'r... Chris Buechler
12:55 PM Bug #1902 (Rejected): intel_ipw license ack prevents boot from LiveCD
Actual results:
When booting from LiveCD, boot fails. Messages indicate
legal.intel_wpi.license_ack=1
legal....
Bill McGonigle
07:14 PM Feature #1016: dyndns support for eurodns.com
updated patch Chris Buechler
01:39 PM Feature #1571: Interfaces completely reset when hardware is changed
Hmm, I would tend to agree with the OP on this matter. Seems like the firewall should be more fault-tolerant than go... → luckman212
04:26 AM Bug #1890: No gettext support in console scripts
As long as the executed script is a PHP script then using gettext() is no problem. Seth Mos
01:33 AM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
Me Too
Test environment
H/W: P4 2.8/DDR 512M
OS: pfsense 2.0 release
PPTP client disconnect kills all I...
Shadow Hwang

09/24/2011

04:11 PM Bug #1900 (Closed): pfSense can't tell the difference between AF31 and EF markings
I created a floating rule to queue packets marked as AF31 into a queue called "qVoice". Packets marked with EF do not... Tate Thatcher
12:47 AM Bug #1896: Port forwarding with Lagg
after reinstalling (forcing update) this corrected the problem.... It was PfSense, and it wasn't.... 30 hours later :P Matt Crook

09/23/2011

07:37 PM Feature #1899 (Resolved): Discard Changes Button
The GUI should have a 'Discard Changes' next to the 'Apply Changes' button.
People often delete/edit the wrong ru...
Cam Cook

09/22/2011

03:05 PM Bug #1898 (Feedback): Client Export on 2.0 Release creates corrupted Windows installers
Applied in changeset commit:6be59d2855f40efaae5b2823df8f79a9a5d8a1df. Jim Pingle
02:59 PM Bug #1898 (Resolved): Client Export on 2.0 Release creates corrupted Windows installers
The first few bytes of the corrupted executable are
_.Warning: Missing argument 8 for openvpn_client_export_instal...
Dim Hatz
01:35 PM Bug #1895 (Rejected): Login Error
not a general problem. Looks like that's from running out of memory possibly, post to the forum or mailing list with ... Chris Buechler
04:24 AM Bug #1895 (Rejected): Login Error
This morning i opened Chrome and i get this error (see screenshot attach).
Mario Nee
08:01 AM Bug #1896 (Rejected): Port forwarding with Lagg
Jim Pingle
08:01 AM Bug #1896: Port forwarding with Lagg
Do you have a link to a forum thread where any possible configuration issue was eliminated with help from others?
...
Jim Pingle
07:47 AM Bug #1896 (Rejected): Port forwarding with Lagg
As the name says it, I fear that since I have a Lagg setup, I am unable to get any ports to forward to any of my LAN ... Matt Crook
07:30 AM Bug #1894 (Rejected): Port forwarding with Lagg
Please use the forum, mailing list, IRC, etc for support. This is not a support system. If a bug is confirmed after t... Jim Pingle
04:35 AM Bug #1894: Port forwarding with Lagg
I just wanted to update that its 1:30 AM PST and I am done with this for the night. I have tried everything, I also s... Matt Crook
03:01 AM Bug #1894 (Rejected): Port forwarding with Lagg
As the name says it, I fear that since I have a Lagg setup, I am unable to get any ports to forward to any of my LAN ... Matt Crook
05:00 AM Bug #1892: Cannot static add static IPv6 route.
Hello,
You've made a typo line 182 :...
Alexis Olivier

09/21/2011

10:55 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
I have a test system running pfSense 2.0 amd64 here which I am able to duplicate the issue on that I can give access ... David Rees
02:59 PM Feature #1835: uPNP IPv6 support
The newer miniupnpd is going forward with more then just the ipv6 firewall control bits. It also fixes and enhances q... Seth Mos
02:55 PM Feature #1836 (Feedback): RFC 5006 support for DNS from RAs
Client support not added yet, pfPort for it doesn't build because of uid missing that the client uses. Seth Mos
02:52 PM Bug #1892 (Feedback): Cannot static add static IPv6 route.
Hi,
I've committed your fix, please verify.
Seth Mos
11:14 AM Bug #1892 (Resolved): Cannot static add static IPv6 route.
Commit bb5a2d0e727dee7d200d0f84dc76ef0c790e0c00 adds a bug in static route adding.
The dropdown box don't list sub...
Alexis Olivier
02:38 PM Bug #1893 (Closed): Status - Queue does not show all the queues
I have a nanoBSD system with 6 queues, I only see 5 queues and their details in the Status - Queue screen. Michael Gaudette
10:52 AM Bug #1342: kernel crash with RC1 on vmware
for the record : the problem was solved by disabling cdrom emulation in the guest. Thomas NOEL
07:49 AM Feature #1831: Captive portal IPv6 support
this is, like everything with IPv6, targeted for 2.1. This is likely the single most complex and time consuming piece... Chris Buechler
03:26 AM Feature #1831: Captive portal IPv6 support
Hello,
I'm very interrested by this topic (IPv6 for CP). Do you have any plan or any schedule for this development...
Thomas NOEL

09/20/2011

03:53 PM pfSense Packages Bug #1842 (Closed): problem with FreeRADIUS?
Jim Pingle
03:52 PM pfSense Packages Bug #1842: problem with FreeRADIUS?
Just updated to 2-Release and problems have been fixed, so this can be closed.
Thanks.
Rob Heat
11:35 AM Bug #1629: invalid state table entries after WAN IP change
Hi- I've just experienced the exact same issue. pfSense 2.0(REL) running nanobsd-2g on a Netgate Hamakua. My WAN DH... → luckman212
09:48 AM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
Hi Chris,
we here at KRLS received your email this morning regarding this issue.
I would be more than happy to pr...
Ross Berryman
06:11 AM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
Thanks Alan!
Anyone who can replicate this, if you can get us access to your system (Hafiz, last we tried we couldn'...
Chris Buechler
07:58 AM Bug #1891: i18n of checks related to the [apply] buttons'
please make merge requests on github. https://github.com/bsdperimeter/pfsense Chris Buechler
07:19 AM Bug #1891 (Resolved): i18n of checks related to the [apply] buttons'
We have been working on translating pfsense to Turkish and we noticed that controls related to the [Apply] buttons (m... Necmettin Begiter
07:05 AM Bug #1890 (New): No gettext support in console scripts
We have been working on translating pfsense to Turkish and when we wanted to translate console scripts, we noticed th... Necmettin Begiter
04:07 AM Bug #1344: Replace prototype javascript code with jQuery
Another notification menu for jQuery
http://www.codebasehero.com/2011/07/jquery-notification-menu/
Warren Baker

09/19/2011

04:29 PM pfSense Packages Bug #1887: axfrdns from tinydns is not working
Rebooting fixed the binding error and with the attached patch, axfrdns is now responding to zone transfer requests.
...
Michael Durian
04:10 PM pfSense Packages Bug #1887: axfrdns from tinydns is not working
I updated to 2.0-release yesterday and that introduced a new problem. Now I get "tcpserver: fatal: unable to bind: a... Michael Durian
02:02 PM Bug #1889 (Rejected): "route change" doesn't work (after commit:fb85533d)
Please don't file tickets on pfSense when you are also modifying it. Seth Mos
01:59 PM Bug #1889: "route change" doesn't work (after commit:fb85533d)
Ermal Luçi wrote:
> I am not sure what is your 'pfSense' referring to but you
> need to upgrade fully your installa...
Thomas NOEL
01:55 PM Bug #1889: "route change" doesn't work (after commit:fb85533d)
To clarify further, the newer route binary we use in pfSense somewhere around RC3 also adds routes when specifying th... Seth Mos
01:17 PM Bug #1889 (Feedback): "route change" doesn't work (after commit:fb85533d)
I am not sure what is your 'pfSense' referring to but you need to upgrade fully your installation to latest 2.0-RELEA... Ermal Luçi
12:05 PM Bug #1889: "route change" doesn't work (after commit:fb85533d)
Oups, the correct URL of the problematic commit is :
https://github.com/bsdperimeter/pfsense/commit/fb85533d54d4ad2...
Thomas NOEL
12:03 PM Bug #1889: "route change" doesn't work (after commit:fb85533d)
Also, revert commit:fb85533d54d4ad2dfcbda5a7b0b8007b5e4eac43 fix the bug.
Thomas NOEL
11:08 AM Bug #1889 (Rejected): "route change" doesn't work (after commit:fb85533d)
It seems that commit:fb85533d (or related ones) breaks my pfSense. When I add a static route (even the default route)... Thomas NOEL
01:51 PM Bug #1888: Upgrade ISC dhcpd to v4.2.2
I found the issue, we did update a ISC bind port, but not the one we were actually building with.
Correcting mistake.
Seth Mos
09:14 AM Bug #1888 (Resolved): Upgrade ISC dhcpd to v4.2.2
ISC dhcpd v4.2.1-p1 shipped with pfsense 2.0 suffers from recently published denial-of-service vulnerability CVE-2011... Dim Hatz

09/18/2011

06:18 PM pfSense Packages Bug #1887 (Resolved): axfrdns from tinydns is not working
I am experiencing the same problem reported in bug #119. #119 was closed a year ago, but I'm seeing the same problem... Michael Durian

09/17/2011

11:26 AM Bug #1886 (Resolved): Config upgrade needs to move MTU values to MSS
Config upgrade for 1.x to 2.x versions needs to move MTU values on interfaces to MSS. The MTU field in 2.0 does what ... Chris Buechler
09:52 AM Bug #1885 (Closed): [Bug?] Switching from RC3 Snapshot to Release downloads wrong arch
Already fixed (just now). Go to firmware settings and make sure you pick the amd64 url from the drop-down, then try a... Jim Pingle
09:51 AM Bug #1885 (Closed): [Bug?] Switching from RC3 Snapshot to Release downloads wrong arch
Hi,
just did an update on the latest 2.0RC3 amd64 and changed the firmware download link to the one provided by th...
Oliver Loch
04:38 AM Bug #1884 (Resolved): Lacking update validation on console upgrade
I nicely blew up a 2.0 RC box by accidentally pasting in the download URL for the iso instead of the update file in t... Chris Buechler
12:17 AM Feature #1883 (New): Diag > Limiter Info presentation enhancement
The Limiter Info page currently shows the real time output of 'ipfw pipe show', which is less than ideally displayed.... Chris Buechler

09/16/2011

09:03 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
I paid to get this some attention. Ticket ID: QDS-175569
Hopefully you can reproduce yourself or use the above p...
Alan Bryan
04:31 AM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
chris ,i gave to Ermal connection info to my pf 2.0 rc3 box.You can easily replicate this bug on my pf box because i ... Hafiz Rafiyev
01:12 PM Bug #1882 (Resolved): Invalid pf rule generated from a port forward with dest=any on an interface with ip=none
If you have an interface with an IP type of "none", and then create a port forward on that interface with a destinati... Jim Pingle
02:17 AM Bug #1881 (Closed): PPPoE server does not allow the Internet
Have:
Pfsense 2.0-RC3 (i386) built on Sun Sep 11 21:36:53 EDT 2011
WAN - Static IP 93.152.19.7
LAN - 192.168.2.0...
Nikolay Emashew
12:08 AM pfSense Packages Bug #1609: unable to install Avahi
I am not sure who would want to / or need to fix this, I am reverting to i386 because it installs the package and wor... ed bond

09/15/2011

06:52 PM pfSense Packages Bug #1880: snort package 2.9 v2
oh another thing when set to update every 12 hours (suggested)
it tends to override settings that was previously set.
not availible
01:08 AM pfSense Packages Bug #1880 (Resolved): snort package 2.9 v2
I don't know how important it is but, there seems to be a missing gid entry
snort_netbios.rules. it's not important...
not availible
05:24 PM Bug #1861: false log filterdns: host_dns: failed looking up "88.192.1250.131"
FQDNs in as network with a /32 are equivalent to hosts, that works fine, it's how all ours are setup. Chris Buechler
04:40 PM Bug #1861: false log filterdns: host_dns: failed looking up "88.192.1250.131"
Found your bug !
<alias>
<name>files2_zimbra_com</name>
<type>network</type>
<address>files2.zimbra.co...
Franck Bourdonnec
03:53 PM Bug #1861: false log filterdns: host_dns: failed looking up "88.192.1250.131"
Sep 15 21:48:05 filterdns: host_dns: failed looking up "a184": hostname nor servname provided, or not known
Sep 15 ...
Franck Bourdonnec
04:36 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
Chris, I have to admit, I have not checked it in the past few weeks but replication was simple. Build a pfSense, c... Derrick Conner
09:42 AM Bug #1874: Captive Portal Login dies on empty input
The Probleme why it wont work for voucher codes is really simple.
On line 143 in /usr/local/captiveportal/index.ph...
Andreas Böhm
08:39 AM Bug #1874: Captive Portal Login dies on empty input
Just reviewd it on github, the problem is not fixed for usage with voucher codes! Andreas Böhm
08:32 AM Bug #1874: Captive Portal Login dies on empty input
Is it only for user or pass fixed or also for vouchers?
I ask because im unable to view the changeset :(
Andreas Böhm

09/14/2011

03:27 PM Bug #1879 (Rejected): At end of install to hard drive pfSense directs user to eject CD but doesn't unlock CD ROM drive.
Scott Ullrich
03:27 PM Bug #1879: At end of install to hard drive pfSense directs user to eject CD but doesn't unlock CD ROM drive.
I have installed pfSense in ESX hundreds if not thousands of times and recently 5-10 in 5. I have never seen this is... Scott Ullrich
03:24 PM Bug #1879 (Rejected): At end of install to hard drive pfSense directs user to eject CD but doesn't unlock CD ROM drive.
Issue:
While testing pfSense 2 RC3 on ESXi 5.0.0 I received an error that the install CD was still locked by the ope...
William Deans
08:07 AM pfSense Packages Bug #1870 (Closed): phpSysInfo on 2.0 RC3
Jim Pingle
07:52 AM pfSense Packages Bug #1870: phpSysInfo on 2.0 RC3
Perry,
Your reasoning is logical. I also tried the newest version of phpsysinfo and It destroyed my 2.0 install whe...
thomas schaefer
01:51 AM Feature #1878 (Closed): Option to add permanent ARP entries for WOL
Hi,
NOYB helped me with this problem http://forum.pfsense.org/index.php/topic,40451.0.html
It would be nice featu...
Johnny Good

09/13/2011

07:01 PM Bug #781: Entering sim code problem on a Huawei E1752
Yoann Simon wrote:
> Hello,
> I have got same problem with my 3g modem ...
> On france in business connexion ...
...
Yoann Simon
06:56 PM Bug #781: Entering sim code problem on a Huawei E1752
Hello,
I have got same problem with my 3g modem ...
On france in business connexion ...
Crdt
Poustiquet
Yoann Simon
05:35 PM pfSense Packages Bug #1870: phpSysInfo on 2.0 RC3
I was the package developer. As most of the info phpsysinfo provides is in pfSense 2.0 and I don't use pfSense on har... Perry Mason
03:48 PM pfSense Packages Bug #1873: Layer 7 RDP
HTTP and SSH works... RDP not. This means that the L7 rule is in use Anonymous
03:46 PM pfSense Packages Bug #1873: Layer 7 RDP
We had a new pfsense installation with no other rules then the L7 rule. We just configured it as documented in you (s... Anonymous
03:30 PM pfSense Packages Bug #1873: Layer 7 RDP
You have to show more how you have configured this.
Usually its better to go through the forum first for such things...
Ermal Luçi
07:10 AM pfSense Packages Bug #1873 (Closed): Layer 7 RDP
If you create a Layer7 filter with RDP blocked and assign it to a LAN (I didn't test WAN) it won't block RDP sessions... Anonymous
03:30 PM Bug #1874: Captive Portal Login dies on empty input
Applied in changeset commit:00eda3a2eb5fb7e43ba9504c90ad494f41504888. Ermal Luçi
03:30 PM Bug #1874 (Feedback): Captive Portal Login dies on empty input
Applied in changeset commit:90477318aad050eb1f1b5282fac790f2a985fce3. Ermal Luçi
09:35 AM Bug #1874 (Closed): Captive Portal Login dies on empty input
If you go to the captive portal login page and click submit without filling in any in the vouchercode-field you´ll ge... Andreas Böhm
03:14 PM Bug #1877 (Resolved): (cosmetic) aliases-edit markup to wide for background
@2.0-RC3 (amd64) built on Mon Sep 12 10:27:40 EDT 2011@
hi,
when editing a list of aliases the right side of som...
Alexander Swen
09:37 AM Bug #1875 (Resolved): Captive Portal Voucher Error Messages won´t accept Umlauts
If you enter an umlaut into "Invalid Voucher Message" or "Expired Voucher Message" you get an acknowledgement, that y... Andreas Böhm

09/12/2011

10:59 PM pfSense Packages Bug #1870: phpSysInfo on 2.0 RC3
It having authentication for everything, and working in general, is adequate as far as I'm concerned. Chris Buechler
09:48 PM pfSense Packages Bug #1870: phpSysInfo on 2.0 RC3
I've got it so that it requires authentication now by including the header and footer. Chris, does this satisfy your ... thomas schaefer
08:37 PM Bug #1696 (Resolved): Panic when finishing setup wizard with PPPoE WAN
fixed Chris Buechler
05:05 PM Bug #1696: Panic when finishing setup wizard with PPPoE WAN
Applied in changeset commit:8678130da6c30f82272a1b27b190da3e90211bf1. Jim Pingle
05:05 PM Bug #1696 (Feedback): Panic when finishing setup wizard with PPPoE WAN
Applied in changeset commit:75bb4bc3849cda6af49ee51cc495353dcb5ad489. Jim Pingle
12:24 PM Bug #1696 (New): Panic when finishing setup wizard with PPPoE WAN
Panic still happens even after a gitsync picking up these changes. First run through the wizard (going from DHCP to P... Jim Pingle
08:05 AM Bug #1696: Panic when finishing setup wizard with PPPoE WAN
Applied in changeset commit:851083bd2f9c382dc513d4a10608f5dc840efc01. Ermal Luçi
08:05 AM Bug #1696 (Feedback): Panic when finishing setup wizard with PPPoE WAN
Applied in changeset commit:43d8f1cc9cd5190858ed7220339c0a147cc68dd2. Ermal Luçi
04:49 PM Bug #1872 (Closed): ipsec-tools strict DPD cookie check
Problem as described here, with patch here.
http://sourceforge.net/mailarchive/forum.php?thread_name=4DA4F48F.10608...
Chris Buechler
04:15 PM Todo #1871: simplify or explain
you need to post to the forum or mailing list for further help. Things are the way they are for good reason, you just... Chris Buechler
04:12 PM Todo #1871: simplify or explain
and you will tell me that there is no need for a Disable this Rule in Outbound rule editor ?
Think a moment a non ...
Franck Bourdonnec
03:36 PM Todo #1871 (Rejected): simplify or explain
There is a vast difference there. One disables the rule (as it says) the other makes an exception where no nat is per... Jim Pingle
03:34 PM Todo #1871 (Rejected): simplify or explain
Hello,
Firewall: NAT: Port Forward: Edit
=================================
Disabled Disable this rule
Set this...
Franck Bourdonnec

09/11/2011

07:27 PM pfSense Packages Bug #1870: phpSysInfo on 2.0 RC3
I would love to work on it and re-release it. How can we find out if the package maintainer is still around? thomas schaefer
05:28 PM pfSense Packages Bug #1870: phpSysInfo on 2.0 RC3
probably because it didn't work. I'm not sure the package creator is around anymore. It also has no authentication su... Chris Buechler
04:02 PM pfSense Packages Bug #1870 (Closed): phpSysInfo on 2.0 RC3
pkg_config.8.xml - phpSysInfo has a maximum_version attribute of 1.2.3 on pkg_config.8.xml.
phpSysInfo does not s...
thomas schaefer
05:24 PM pfSense Packages Bug #1852: Snort and IP-Block Installation/Deintsallation issue
This is a general issue with packages that have conflicting dependencies. We expect to switch packages to PBIs in the... Chris Buechler
04:06 PM pfSense Packages Bug #1852: Snort and IP-Block Installation/Deintsallation issue
Not really avoidable if multiple packages use a particular dependency and cleanup during install. Perhaps a solution ... thomas schaefer

09/10/2011

10:25 PM Bug #1869 (Rejected): Broadcom 4306 Won't work
I think that's a config issue of some sort, search on that or post to the forum or mailing list for help. regardless ... Chris Buechler
10:20 PM Bug #1869 (Rejected): Broadcom 4306 Won't work
I'm not entirely sure which logs to attach, or what you need, but just ask, and I'll reply.
When I us "ifconfig bw...
Rogan Helms
11:19 AM Bug #1865: Fatal error by saving System: Advanced: Miscellaneous
I've updated to 2.0-RC3 (i386) built on Fri Sep 9 12:46:04 EDT 2011 and it works fine again.
Thanks Jim.
Anonymous

09/09/2011

03:55 PM Feature #1868 (Needs Patch): RFE: DHCP Server option pull-down menus, pre-populated data types
It would be great to be able to pull down a menu when setting the advanced DHCP server options. The link given in th... Bill McGonigle
03:43 PM Feature #1867 (Closed): RFE: DHCP Server option to set interface-MTU option to lowest WAN interface value
I have a setup with a Multi-WAN configuration, with one cable modem with MTU 1500 and one DSL modem, MTU 1492. After... Bill McGonigle
02:49 PM Todo #1863: consistence in alias usage
happy to learn it (red background)
for me it is ok, I won't loose time anymore in creating 10 rules with varying t...
Franck Bourdonnec
02:27 PM Todo #1863: consistence in alias usage
Red background on a form field means an alias can be used. That is consistent throughout the entire GUI. Jim Pingle
02:26 PM Todo #1863: consistence in alias usage
"other" includes aliases. Just for you (-:
Can you for 1 minute impersonate someone discovering pfsense.
He sees ...
Franck Bourdonnec
11:15 AM Bug #1865: Fatal error by saving System: Advanced: Miscellaneous
Applied in changeset commit:98a4cdc2a27cb5723ba3c01e64cee980691be2a4. Jim Pingle
11:15 AM Bug #1865 (Feedback): Fatal error by saving System: Advanced: Miscellaneous
Applied in changeset commit:ae0023beeaa0da21cf2080e81cec9631bee63c8e. Jim Pingle
09:40 AM Bug #1865 (Resolved): Fatal error by saving System: Advanced: Miscellaneous
pfSense 2.0-RC3 (i386) built on Thu Sep 8 15:15:55 EDT 2011
When I click on the save button appears this error m...
Anonymous
10:09 AM Bug #1866 (Rejected): Dashboard: System Information: CPU Type no longer shows powersave details
The CPU frequency for power saving is only printed if the current frequency does match the highest frequency. If you ... Jim Pingle
09:50 AM Bug #1866 (Rejected): Dashboard: System Information: CPU Type no longer shows powersave details
pfSsense 2.0-RC3 (i386) built on Thu Sep 8 15:15:55 EDT 2011
Since this or previous snapshot the power saving de...
Anonymous
08:13 AM Feature #1864 (Resolved): "Start" button for IPsec should be available for IP alias networks
If the local subnet of an IPsec network is an IP alias, the "start" button under Status>IPsec doesn't show up. That's... Chris Buechler
02:35 AM Bug #1419: Incorrect Intel License information in dmesg
Found a copy:
http://cygnus.redirectme.net/FreeBSD_4.9_Docs/legal/intel_ipw/LICENSE
We should be careful of thi...
Bill McGonigle

09/08/2011

06:08 PM Todo #1863 (Rejected): consistence in alias usage
"other" includes aliases. Chris Buechler
06:01 PM Todo #1863 (Rejected): consistence in alias usage
Hello,
please make the 'Destination Port from' field display something like
'single port or alias' to be consistent...
Franck Bourdonnec
05:34 PM Bug #1851: ECC-Cert breaks the webconfigurator
maybe we want to "block" uploading the following curves until working ... Michal Fresel
05:22 PM Bug #1851: ECC-Cert breaks the webconfigurator
gen... Michal Fresel
04:53 PM Bug #1851: ECC-Cert breaks the webconfigurator
I think lighty need it enable in config and presently we do not enable sslv3. Ermal Luçi
04:50 PM Bug #1851: ECC-Cert breaks the webconfigurator
from /var/log/lighttpd.error.log ... Michal Fresel
04:41 PM Feature #1860: Allow NTP server to be overriden by WAN DHCP
will try to make it more readable in the future - hopefully ;) Michal Fresel
04:03 PM Feature #1860 (New): Allow NTP server to be overriden by WAN DHCP
ok I misunderstood what you were talking about there. I fixed the description to be more clear. Jim Pingle
03:36 PM Feature #1860: Allow NTP server to be overriden by WAN DHCP
pushing the official NTP-servers (counting 3) for my country by DHCP - so it is a reputable source declared by law.
...
Michal Fresel
03:18 PM Feature #1860 (Rejected): Allow NTP server to be overriden by WAN DHCP
The server entered for pfSense is used by the NTP daemon as its upstream source - you can't have pfSense use only its... Jim Pingle
03:16 PM Feature #1860 (Needs Patch): Allow NTP server to be overriden by WAN DHCP
As with DNS, (optionally) allow the upstream DHCP server to provide NTP servers to the firewall. Michal Fresel
03:22 PM Bug #1861: false log filterdns: host_dns: failed looking up "88.192.1250.131"
(fyi, searching '1250' in a fresh backup gives nothing of course) Franck Bourdonnec
03:17 PM Bug #1861 (Closed): false log filterdns: host_dns: failed looking up "88.192.1250.131"
Hello,
I made a typo while entering an IP in a alias object.
1250 instead of 250
I validated the alias (5 IP l...
Franck Bourdonnec
02:52 PM Feature #1859: default SSH-key should at least use 2048 bit RSA-keys
plz also read "further reading" from bug #1858 Michal Fresel
02:50 PM Feature #1859 (Resolved): default SSH-key should at least use 2048 bit RSA-keys
after installing a new box the system-SSH-key should default to 2048 or even 4096 bit RSA-keys... Michal Fresel
02:31 PM Feature #1858: default SSL-cert should at least use 2048 bit RSA-keys
key-sizes above 8192 will not work on Safari (Mac OS X) Michal Fresel
02:08 PM Feature #1858 (Resolved): default SSL-cert should at least use 2048 bit RSA-keys
after installing a new box the system-SSL-cert should default to 2048 or even 4096 bit RSA-keys
current: RSA - 102...
Michal Fresel
01:47 PM Bug #1849: Traffic shaper - By Queue view needs to show/use friendly inerface names
The friendly interfaces are shown now.
Remaining is showning the root interface so they can be cloned
Ermal Luçi
01:46 PM Bug #1857: LAN-if does not check if there is already another host using that address
so expecting a "feature" for the console would not be implemented either:
> ##external management-host##...
Michal Fresel
01:34 PM Bug #1857: LAN-if does not check if there is already another host using that address
We can't stop everyone from shooting themselves in the feet.
Changing the default LAN behavior to anything but st...
Jim Pingle
01:32 PM Bug #1857: LAN-if does not check if there is already another host using that address
I agree with Jim. This is not going in but thanks for the suggestion.
Scott Ullrich
01:28 PM Bug #1857: LAN-if does not check if there is already another host using that address
hi Jim,
somehow i still do not understand WHAT can get wrong?
I know it is not simple and some coding is needed
...
Michal Fresel
01:01 PM Bug #1857: LAN-if does not check if there is already another host using that address
Still too many things to go wrong. It is not that simple.
And the real fix is even simpler: Just don't plug a new ...
Jim Pingle
12:56 PM Bug #1857: LAN-if does not check if there is already another host using that address
hi Jim,
x) send just 1 (one) ICMP package for ping
x) single pings to the whole subnet concurrently and wait for ...
Michal Fresel
12:23 PM Bug #1857 (Rejected): LAN-if does not check if there is already another host using that address
It's a lot of work and a lot to go wrong for very little benefit there. If someone is concerned about it taking over ... Jim Pingle
12:19 PM Bug #1857: LAN-if does not check if there is already another host using that address
maybe we set the LAN-if to DHCP to test if there is already a server and that way we obtain an IP (this way we know t... Michal Fresel
11:55 AM Bug #1857 (Rejected): LAN-if does not check if there is already another host using that address
when a new installation is booting it should check if there is already another host using the default ip of 192.168.1.1 Michal Fresel
08:07 AM Bug #1610: v6 IPsec tunnels can trap 12 the kernel
On the 2.1 IPv6 snaps dating September 1st I can not replicate this anymore, this may have been fixed somewhere by an... Seth Mos
06:28 AM Feature #1854 (Feedback): filter field on diag_logs_filter.php should be at top of page
Applied in commit:21c160361dff36941812424390c10a235762b411 Warren Baker
05:49 AM Feature #1855: NAT before IPsec VPN
Just to synchronize the answer
http://forum.pfsense.org/index.php/topic,38559.msg210340.html#msg210340
Ermal Luçi
02:52 AM Feature #1855: NAT before IPsec VPN
The linked info is still OpenBSD-only I believe. Chris Buechler
01:23 AM Feature #1855: NAT before IPsec VPN
Thanks to FreeBSD 9 it should be now possible to NAT before the VPN in order to solve network overlapping.
Here htt...
Michele Di Maria
01:14 AM Feature #1855 (Closed): NAT before IPsec VPN
I thought we already had a feature ticket open for IPsec+NAT in general but doesn't appear so. Michele Di Maria
05:18 AM Bug #1856 (Closed): Removing a Phase 2 does not remove the SPD policy
Removing a IPv6 phase 2 entry leaves the IPsec SPD policy in place.
Deleting it manually from the IPsec status SPD...
Seth Mos
02:34 AM Todo #595 (Closed): Test IPsec with NAT
what's mentioned in this ticket works, there are other caveats with IPsec and NAT Chris Buechler

09/07/2011

10:10 PM Bug #1690: PPPoE Server not passing IP from RADIUS server
Alright, please give me a few weeks, as I am really far behind in my projects, thank you again for this quick fix. I ... Matt Crook
07:08 PM Bug #1437 (Resolved): More validation needed on CSR generation
thank you Chris Buechler
06:42 PM Feature #1854 (Resolved): filter field on diag_logs_filter.php should be at top of page
The filter field on diag_logs_filter.php should be at the top of the page, like the states display, as if you have a ... Chris Buechler
04:07 PM Bug #1850: WAN interface missing on traffic shaper queue interface
Ermal Luçi wrote:
> I cannot see this driver in FreeBSD 8.1 did you compile from some patch of sorts?
The driver ...
Oliver Loch
03:42 PM Bug #1850 (Closed): WAN interface missing on traffic shaper queue interface
driver doesn't exist in stock releases Chris Buechler
09:50 AM Bug #1850: WAN interface missing on traffic shaper queue interface
I cannot see this driver in FreeBSD 8.1 did you compile from some patch of sorts? Ermal Luçi
09:49 AM Bug #1850: WAN interface missing on traffic shaper queue interface
Hi,
after checking that altq is implemented into the driver, I added it to the is_altq_capable() function in the "...
Oliver Loch
06:44 AM Bug #1850 (Closed): WAN interface missing on traffic shaper queue interface
Hi,
running the latest 2.0RC3:
2.0-RC3 (amd64)
built on Tue Sep 6 22:44:22 EDT 2011
the WAN interface is m...
Oliver Loch
03:53 PM Feature #1846: strict nat 1-to-1
Having a /32 IP on an interface and a gateway on another subnet is not a valid pfSense configuration, and thus not su... Jim Pingle
03:43 PM Feature #1846: strict nat 1-to-1
then we have a problem.....!
If i read well, nat-1-to-1 is in both direction, when an interface is 'wan'.
You a...
Franck Bourdonnec
01:54 PM pfSense Packages Bug #1853 (Resolved): Barnyard2 binary not installed
After installing snort (2.8.6.1 pkg v 2.0) on pfsense 2.0-RC3 (amd64) (built on Tue Sep 6 22:44:22 EDT 2011) barnyard... david campbell
10:55 AM Bug #1851 (Feedback): ECC-Cert breaks the webconfigurator
Applied in changeset commit:f65b6851ea3d473128e48419450f0edb5d8830d9. Jim Pingle
10:25 AM Bug #1851: ECC-Cert breaks the webconfigurator
some ecc-test-certificates are available at "SECG's ECC/TLS test server":http://tls.secg.org/index1.php?action=server... Michal Fresel
07:16 AM Bug #1851: ECC-Cert breaks the webconfigurator
known bugs in lighttpd - fixed in 1.4.29
see http://www.lighttpd.net/2011/7/3/1-4-29
Michal Fresel
06:57 AM Bug #1851 (Closed): ECC-Cert breaks the webconfigurator
Uploading a certificate which is using Elliptic curve cryptography (ECC) - afterwards webconfigurator stops respondi... Michal Fresel
09:09 AM pfSense Packages Bug #1852 (Closed): Snort and IP-Block Installation/Deintsallation issue
If you install snort, it replaces system Perl with Perl-multi-threaded. Once you remove snort it removes Perl-multi-t... Darko Arandjelovic
03:37 AM Bug #1849 (New): Traffic shaper - By Queue view needs to show/use friendly inerface names
Traffic shaper - By Queue view needs to use friendly inerface names to allow easy configuration and presentation.
Al...
Ermal Luçi
02:57 AM Bug #1848 (Confirmed): Limiters after policy routing has taken place do not behave correctly
If there are 2 WANs and the primary one fails and there are limiters configured in floating rules(after policy routin... Ermal Luçi

09/06/2011

10:06 PM Bug #1437: More validation needed on CSR generation
I have so much going on, I thought I replied to this, but I guess I did not.
Everything that I did to cause an err...
Yehuda Katz
09:56 PM Bug #1437: More validation needed on CSR generation
should be fixed, awaiting Yehuda's confirmation Chris Buechler
09:57 PM Bug #1690: PPPoE Server not passing IP from RADIUS server
should be fixed, will leave for confirmation Chris Buechler
09:53 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
if someone wants to see this get fixed in short order, purchase a 5 hour support subscription at portal.pfsense.org a... Chris Buechler
09:49 PM Bug #1318 (Resolved): Certificate error: certificate subject does not match signing request subject
Chris Buechler
09:47 PM Bug #1646 (Resolved): 'pfctl -b' does not function as intended
Chris Buechler
09:45 PM Bug #1552 (Resolved): DNS Reject Rule Crashes Router
Chris Buechler
09:44 PM Bug #1696 (New): Panic when finishing setup wizard with PPPoE WAN
no change
Chris Buechler
09:30 PM Bug #1517 (Closed): Captive Portal sends RADIUS output accounting packets with zero value
this has been confirmed working. Chris Buechler
07:07 PM Feature #972: Allow adding gateways outside of interface subnet
well, OVH big big french provider is also using this king of setup
A well english detailled big page explain all h...
Franck Bourdonnec
06:50 PM Bug #1845: diag_system_pftop 404 not found = cardiac crisis
yes, I have added the 'dashboard' as small fixe, because all other unauthorized pages goes to 404.
In future release...
Franck Bourdonnec
06:36 PM Bug #1845: diag_system_pftop 404 not found = cardiac crisis
The privilege system will redirect the user to whichever page is listed first in their permissions (which they are al... Jim Pingle
06:35 PM Bug #1845: diag_system_pftop 404 not found = cardiac crisis
Applied in changeset commit:fce938b3a32ed071edf9aba6b1f07ec08a82a743. Jim Pingle
06:35 PM Bug #1845: diag_system_pftop 404 not found = cardiac crisis
Applied in changeset commit:7179d00e0b0134615e442829792960f343b8a378. Jim Pingle
06:06 PM Bug #1845: diag_system_pftop 404 not found = cardiac crisis
menu system/user/manager
add a group
fix a few status/logs page among all proposed priviledges
create a user
ad...
Franck Bourdonnec
05:49 PM Bug #1845 (Feedback): diag_system_pftop 404 not found = cardiac crisis
not sure what you're referring to Chris Buechler
05:47 PM Bug #1845 (Resolved): diag_system_pftop 404 not found = cardiac crisis
Hello,
after day and day of tuning/discovering, I had tried the user/group settings to build a person able to consul...
Franck Bourdonnec
06:46 PM Feature #1847 (Rejected): Relax gateway checking
Duplicate of #972 Jim Pingle
06:44 PM Feature #1847 (Rejected): Relax gateway checking
Hello,
During network lessons at school you learn that the gateway must be reachable with an IP in the same subnet...
Franck Bourdonnec
06:21 PM Feature #1846: strict nat 1-to-1
it is both directions, where traffic is set to leave the interface where that 1:1 is assigned. Read http://pfsense.or... Chris Buechler
06:19 PM Feature #1846: strict nat 1-to-1
oh, I see no reason why you call nat-1to-1 when traffic is internet toward natted machine (B) and routing when it is ... Franck Bourdonnec
06:04 PM Feature #1846 (Rejected): strict nat 1-to-1
rules including policy routing and NAT are separate entities that must be configured as you desire. Chris Buechler
06:01 PM Feature #1846 (Rejected): strict nat 1-to-1
Hello,
Add a check box in NAT One to One that make it more strict.
Explanation
my system have
Two WAN inter...
Franck Bourdonnec
05:48 PM pfSense Packages Bug #1844: diag_system_pftop 404 not found = cardiac crisis
please close this one, I recreated it in 'pfsense' . Franck Bourdonnec
05:48 PM pfSense Packages Bug #1844 (Rejected): diag_system_pftop 404 not found = cardiac crisis
duplicate of #1845 Chris Buechler
05:39 PM pfSense Packages Bug #1844 (Rejected): diag_system_pftop 404 not found = cardiac crisis
Hello,
after day and day of tuning/discovering, I had tried the user/group settings to build a person able to consul...
Franck Bourdonnec
05:33 PM Bug #337: sticky connections do not work
Ermal, can you please check your last commit. I can confirm that sticky sessions work for me on snapshot 2.0-RC3 (i3... I K
08:12 AM Feature #1843 (Resolved): Diag > Limiter Info does not show queues under pipes
Under Diagnostics > Limiters, it only shows the limiter pipes and does not display any information about the child qu... Jim Pingle
04:23 AM pfSense Packages Bug #1842: problem with FreeRADIUS?
This is a package issue and not a Captive portal issue from what you have posted here. Ermal Luçi
03:45 AM pfSense Packages Bug #1842 (Closed): problem with FreeRADIUS?
With CP & vouchers, say a 1 hour voucher never kicks off/logs out the end user after an hour.
After searching there ...
Rob Heat
03:03 AM Bug #1841 (Duplicate): TCP state issue when traffic passing through a GRE tunnel within IPSEC
When running a GRE tunnel between two Pfsense 2.0 RC3 TCP traffic is shown as having its SYN/ACK packets dropped on t... Nigel Wright

09/05/2011

08:29 AM Bug #1052: Certificate validation of the LDAPS servers is not enforced
Ermal Luçi wrote:
> HAve you tested with latest snapshots?
Hi Ermal,
No, I haven't; just came back from holida...
Florent Daigniere

09/04/2011

04:29 PM Bug #1758: Upgrade fails to upgrade RRD data for traffic and packets
That's good to know, we'll investigate. We're still not quite sure what's happening, some ipv6 builds seem to hit it ... Seth Mos
04:26 PM Bug #1758: Upgrade fails to upgrade RRD data for traffic and packets
These errors showed up on the upgrade, and are associated with the upgrade process, not trying to display the graphs.... Eddie Atherton

09/03/2011

08:18 PM pfSense Packages Bug #1753: Spoink integration
Thanks to pfsense developers for the new version of snorte with the block offenders working, i've enabled it on my pf... Walter Gomes
04:29 PM Feature #1829: CARP with IPv6 support
ah, you mean the rtadvd settings? That would make sense, I tied them into the dhcp6 config as that seems the most str... Seth Mos
04:01 PM Feature #1829: CARP with IPv6 support
My thought was actually keeping it in the DHCPv6 screen even though it has nothing to do with it, since we already ha... Chris Buechler
02:59 PM Feature #1829: CARP with IPv6 support
Ah, yes, well, the gateway field needs to go from the dhcpv6 config in the UI since it doesn't exist.
Complain to th...
Seth Mos
02:22 PM Bug #1839: No Quality RRD Graph w/ Non-Default Frequency Probe

RRD Graphs: Quality

Works with Probe Frequency (System - Routing) set at default (empty), 1, 2, 3, and 9 (prob...
NOYB NOYB
12:43 AM Bug #1839 (Closed): No Quality RRD Graph w/ Non-Default Frequency Probe

Setting Gateway Frequency Probe (System - Routing) to a non-default value, say 10 seconds, causes the RRD Quality ...
NOYB NOYB
02:19 PM Feature #1836: RFC 5006 support for DNS from RAs
rtadvd service support committed. should fix both dns server and rtadvd clients to get the same information.
radns...
Seth Mos
01:36 PM pfSense Packages Bug #1840 (Resolved): Snort rules update and filename
The package has the snort rules file hardcoded in the code.
This makes it a step to be followed when upgrading snort...
Ermal Luçi
06:07 AM Bug #1662: DNS server gateway selection missing input validation
Still not fixed.
http://forum.pfsense.org/index.php/topic,40498.0.html
Seth Mos

09/02/2011

08:56 PM Bug #1690: PPPoE Server not passing IP from RADIUS server
I am just upgrading now, has there been some work since I last posted on the PPPoE server? If so, thank you. Matt Crook
11:09 AM Bug #1838: Dynamic DNS disabled checkbox doesn't work
Post you dyndns section from your config. Ermal Luçi
05:58 AM Bug #1838 (Resolved): Dynamic DNS disabled checkbox doesn't work
As disabling a dynamic dns client with the checkbox, nothing is done except still updating dyndns host. Checkbox does... Nicolas Liaudat
07:13 AM pfSense Packages Bug #692 (Feedback): snort pidfile issue
Latest package of snort should not have this issue. Ermal Luçi
07:13 AM pfSense Packages Bug #1746 (Feedback): Preprocessor do not work
Should be working now Ermal Luçi
07:12 AM pfSense Packages Bug #1747 (Feedback): Barnyard2
Should be working now Ermal Luçi
07:11 AM pfSense Packages Bug #1748 (Feedback): Rules GUI
Should work as intended now. Ermal Luçi
03:26 AM Bug #337: sticky connections do not work
Updated to version 2.0-RC3 (i386) built on Thu Sep 1 18:11:23 EDT 2011
Unfortunately the behavior is still the sam...
Mark Huijgen

09/01/2011

11:42 AM Bug #1837 (Resolved): Problem with PPP and default gateway switching
Description of how to replicate: ... Chris Buechler
11:25 AM Feature #1829: CARP with IPv6 support
need some additional consideration on how this should work from the GUI perspective. Maybe just make the underlying b... Chris Buechler
11:11 AM Feature #1829: CARP with IPv6 support
The specific issue is that you can not select a Carp IPv6 vip interface for router advertisements. Ideally we need to... Seth Mos
10:17 AM Feature #1829 (Resolved): CARP with IPv6 support
need to be able to bind router advertisements to CARP IPs. Chris Buechler
11:07 AM Feature #1836: RFC 5006 support for DNS from RAs
Found this client which is even listed in the FreeBSD ports, dump the info into our filesystem and the rest is picked... Seth Mos
10:28 AM Feature #1836 (Resolved): RFC 5006 support for DNS from RAs
Need RFC 5006 support for DNS from RAs Chris Buechler
11:05 AM Feature #1835: uPNP IPv6 support
probably will have to add a new port for miniupnpd-v6 or similar, as we're going to keep RELENG_2_0 snapshot builders... Chris Buechler
11:04 AM Feature #1835: uPNP IPv6 support
Thread in the miniupnp forum here.
http://miniupnp.tuxfamily.org/forum/viewtopic.php?t=728
This will take a while...
Seth Mos
10:25 AM Feature #1835 (Resolved): uPNP IPv6 support
uPNP needs IPv6 support. Chris Buechler
10:25 AM Feature #177: IPv6 support
I can't envision any scenario where you'd need proxy NDP, though maybe something will come up in the future. On the r... Chris Buechler
10:24 AM Feature #1834 (Resolved): Stateless autoconfig WAN type for IPv6
Need a WAN type for stateless autoconfiguration for IPv6, that's not going to be common in typical Internet firewall ... Chris Buechler
10:21 AM Feature #1833 (New): PPTP type WAN IPv6 support
PPTP type WANs need IPv6 support. Not sure how that works or if it's even feasible, needs research. Chris Buechler
10:20 AM Feature #1832 (Resolved): Traffic shaper needs review for IPv6
Layer 3 protocol isn't relevant for much of what it does, but needs review and at least some changes for IPv6. Chris Buechler
10:20 AM Feature #1831 (New): Captive portal IPv6 support
Captive portal needs IPv6 support. ipfw fwd doesn't function with IPv6 last I heard, amongst other things that need w... Chris Buechler
10:16 AM Feature #1828 (Resolved): Server load balancer IPv6 support
server load balancer needs IPv6 support. Chris Buechler
10:15 AM Bug #1827 (Resolved): rc.newwanipv6 needs work
rc.newwanipv6 needs work. Might need to converge with rc.newwanip to avoid race and stepping on each other causing re... Chris Buechler
10:15 AM Feature #1826 (New): PPPoE server IPv6 support
PPPoE server needs IPv6 support. Sends IPv6-CP packets, not confirmed if DHCPv6 server works. Chris Buechler
10:13 AM Feature #1825 (Resolved): Dynamic DNS client IPv6 support
DynDNS client needs IPv6 support for registering AAAAs. Chris Buechler
09:50 AM pfSense Packages Bug #1753 (Feedback): Spoink integration
Spoink is now integrated to snort and snort uses 2.9.0.5 port.
Possibly should ping the spoink author about this?
Ermal Luçi
04:17 AM Bug #1824 (Resolved): DHCPv6 and unknown-clients.
fixed Chris Buechler
03:38 AM Bug #1824 (Resolved): DHCPv6 and unknown-clients.
Hello,
There is a bug in the configuration of DHCPv6 : using the deny unknown-clients option makes the DHCPv6 fail...
Alexis Olivier

08/31/2011

05:12 PM Bug #1666 (Resolved): OpenVPN interface doesn't get added to bridge after reboot
thanks Chris Buechler
01:40 PM Bug #1666: OpenVPN interface doesn't get added to bridge after reboot
Seems to be fixed with latest snapshot, thanks. Joost van den Broek
02:47 PM pfSense Packages Bug #1822: Snort won't start
This is for snort-dev from what i can see!? Ermal Luçi
11:57 AM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
Also looking for a progress/status report here. Thanks. Alan Bryan

08/30/2011

11:08 PM Bug #1823 (Resolved): policy routing for firewall-initiated traffic only works for interface IPs
The rules such as: ... Chris Buechler
12:38 PM Bug #1052: Certificate validation of the LDAPS servers is not enforced
HAve you tested with latest snapshots? Ermal Luçi
11:50 AM Bug #1690 (Feedback): PPPoE Server not passing IP from RADIUS server
Can you please try latest snapshots?
Also if still seeing issues can you get packet traces and any logs from pfSense...
Ermal Luçi
11:20 AM Bug #1696 (Feedback): Panic when finishing setup wizard with PPPoE WAN
Applied in changeset commit:db74464bf6f980c5c5845d53624d4c6f1b139fa7. Ermal Luçi
10:48 AM Bug #1696: Panic when finishing setup wizard with PPPoE WAN
I was finally able to reproduce this in a VM, even when the WAN was initially set for DHCP. Same panic message/backtr... Jim Pingle
10:47 AM Bug #337: sticky connections do not work
Can you please test with tomorrows snapshot? Ermal Luçi
06:21 AM Bug #337: sticky connections do not work

I'm having the exact same behaviour as described by Mark Huijgen earlier. The only difference is that my two WAN in...
Siddharth Patil
07:44 AM Bug #1344: Replace prototype javascript code with jQuery
Bootstrap, a nice framework from Twitter which has a number of some quite nice features http://twitter.github.com/boo... Warren Baker
07:22 AM pfSense Packages Bug #1822 (Closed): Snort won't start
So many issues with this package.
1) Local rules get wiped every time the auto updater runs. Then we have to go t...
Stephen Lombard
07:16 AM Bug #1806: OpenVPN Tunnel Network label configuration creates a wrong configuration file when using TAP device mode
Did it with success, but with a little modification about the netmask. In fact to make it work I had to use the $mask... Rino Santilli
04:51 AM pfSense Packages Bug #1821 (Rejected): spanning tree options
STP options work fine, not enough here to do anything with. Please post to the forum or mailing list with information. Chris Buechler
04:12 AM pfSense Packages Bug #1821 (Rejected): spanning tree options
Spanning Tree options are not considered Enrico Pesce
 

Also available in: Atom