Activity
From 10/26/2011 to 11/24/2011
11/24/2011
-
04:30 AM Feature #2026 (Resolved): [Patch] Multiple SMTP notice recipients
- When trying to use multiple smtp notification recipients in 2.0, I ran into the fact that it isn't possible to enter ...
-
04:26 AM Feature #2025 (New): Captive Portal: Easy accessible Logout page instead of Logout pop-up window
- I suggest a functionality that allows using a logout page instead of a pop-up. The reason why I am suggesting this is...
-
03:39 AM Feature #2024 (New): RRD Graphs for packages
- It would be nice to have some sort of feature, in the current RRD graphing, to provide the ability for packages to pl...
11/23/2011
-
07:15 PM Bug #1275: Web management GUI; "Help" menu wraps around, and blocks access to "System" menu.
- Use the default pfsense_ng theme or one of the others that doesn't have that issue, some of the non-default themes we...
-
07:12 PM Bug #1275: Web management GUI; "Help" menu wraps around, and blocks access to "System" menu.
- I just loaded pfSense 2.0 and while 1.2.3 was perfectly formatted 2.0 has this issue for me. I am not using any zoom ...
-
03:56 PM Revision 34d0f40c: Clear the PHP errors when 'no' is pressed also.
-
03:23 PM Revision dc43ff1e: Show the PHP errors reported on the index page in the crash report so users are not confused by an empty report screen. Include them in the report and also clear them after sending.
11/22/2011
-
07:59 PM Revision 96f9e3fa: Unbreak the tree, pointy hat to me.
- Fix for ticket #2022
-
07:14 PM Revision af6f42c1: Ecnlose the host-name in quotes so that numerical values work.
- Fixes ticket #2020
-
07:10 PM Revision 2f590513: Enclose the hostname in quotes so that numerical values work too.
- Fixes Ticket #2020
-
07:06 PM Revision 361bb4a9: Correct logic mismatch, skip on RA mode disabled and dhcp is not enabled.
- Fix ticket #2022
-
07:01 PM Revision 7d504365: Comment out TFTP and NTP UI fields and block the code in services.inc.
- ISC dhcpd does not support these yet. See redmine ticket #2016
-
05:51 PM Revision 45e4510b: Fix exec bit; Add short message about maybe needing to reboot/restart services.
-
04:55 PM Revision 7d7ce752: Add first revision of a script to restore backups from the config history at the console.
-
04:55 PM Revision 8059f9cb: Add version to backup.cache in one more place
-
04:55 PM Revision 92420c0a: Also show the config version in the backup history.
-
04:05 PM Revision 5e555f9e: Merge pull request #21 from Podilarius/master
- Declare $rtadvdifs as an array before it is used to prevent error on dhcpdv6 start up.
-
04:02 PM Bug #2022: rtadvd not configured properly
- Heh, you're missing a close bracket on line 98
-
03:21 PM Bug #2022 (Resolved): rtadvd not configured properly
-
03:21 PM Bug #2022: rtadvd not configured properly
- Thank you for your report, it's fixed. I meant to do something else there.
-
03:08 PM Bug #2022 (Resolved): rtadvd not configured properly
- (Hopefully I got it right this time)
It appears that the conditional in line 95 in services_rtadvd_configure() in ... -
04:02 PM Revision ffcc7357: Declare rtadvdifs as an array before it is used. This prevents an error on dhcpd for ipv6 start.
-
03:29 PM Bug #2020 (Resolved): dhcpd fails to start when a static lease's hostname is numerical.
- Fixes checked in, thank you for your report.
-
09:24 AM Bug #2020 (Resolved): dhcpd fails to start when a static lease's hostname is numerical.
- For instance, I had a static dhcp lease with the hostname set to 6013. However, when I enabled this interface's dhcpd...
-
03:07 PM Feature #2016: DHCPv6 Server doesn't load if NTP server specified
- Hurrah, it appears there is a draft, but no support.
http://tools.ietf.org/html/draft-ietf-ntp-dhcpv6-ntp-opt-06
... -
01:29 PM Revision a8db7391: Resolves #2018. Add an id to the html object to make javascript work
-
01:29 PM Revision f64532e5: Resolves #2018. Add an id to the html object to make javascript work
-
01:28 PM Bug #2019 (Closed): Web UI says dhcpd started successfully even if it didn't.
- general issue covered elsewhere.
-
08:47 AM Bug #2019 (Closed): Web UI says dhcpd started successfully even if it didn't.
- My system log says dhcpd failed to start, which it did, but after changing the config in Services->DHCP Server, or st...
-
01:01 PM Bug #2017: DHCPv6 Server not registering client names in DNS
- Ok, but how about doing it for hosts with reservations? The hostname is available in the reservation. (Yes, I know if...
-
12:54 PM Bug #2017 (Closed): DHCPv6 Server not registering client names in DNS
- I don't see how this can be made, ipv6 clients do not send a hostname. Neither do I see a possibility to match the DU...
-
02:56 AM Bug #2017 (Closed): DHCPv6 Server not registering client names in DNS
- Setup both DHCP and DHCPv6 servers, using dsnmasq, client's IPv4 addresses are showing up in DNS, but IPv6 addresses ...
-
12:50 PM pfSense Packages Bug #2021: OpenVPN Client Export Utility not installing
- On 2.1 it does (and will for a while) because the package backend was changed to PBIs and there are bound to be issue...
-
12:48 PM pfSense Packages Bug #2021: OpenVPN Client Export Utility not installing
- Righto, didn't know the base code affected that. Gitsynched and it installs fine now. Thanks!
-
12:43 PM pfSense Packages Bug #2021 (Rejected): OpenVPN Client Export Utility not installing
- I just installed this in an AMD64 VM about 5 minutes ago and it works fine. Be sure you are gitsynced to current mast...
-
12:41 PM pfSense Packages Bug #2021 (Rejected): OpenVPN Client Export Utility not installing
- It appears the latest client export utility's xml's screwy:
<depends_on_package_pbi>p7zip-9.20.1-amd64.pbi zip-3.0... -
08:30 AM Bug #2018: LDAP browser does not work in edit authentication servers page
- Applied in changeset commit:a8db73919ca72947678142249138ba6c55841c5b.
-
08:25 AM Bug #2018 (Feedback): LDAP browser does not work in edit authentication servers page
- Applied in changeset commit:f64532e5cb1a0f39c2ab84252754f5dd5967db3d.
-
07:59 AM Bug #2018 (Resolved): LDAP browser does not work in edit authentication servers page
- There is a Javascript error in the edit authentication servers page /system_authservers.php?act=edit&id=0
Here the S...
11/21/2011
- 11:36 PM Revision 67e5f6bb: Merge pull request #20 from Podilarius/master
- Add Missing ; back
-
11:19 PM Revision 88d3861f: Update etc/inc/services.inc
-
11:02 PM Revision 22201e1a: converting browser JS code from scriptaculous to jQuery
-
09:46 PM Revision 030e4b31: Removing scriptaculous effects, now we use jQuery UI for visual effects
-
09:43 PM Revision 5d0d5eb0: Fix errors caused by javascript code processed by jquery .html() method.
-
09:35 PM Feature #2016 (Resolved): DHCPv6 Server doesn't load if NTP server specified
- Error message in log:
php: /services_dhcp.php: The command '/usr/local/sbin/dhcpd -6 -user dhcpd -group _dhcp -chroo... -
07:15 PM Revision c377a909: Add a comment in the code and a log message to notify the shutdown of rtadvd
-
07:12 PM Revision 1e7e2e43: Remove the double colon, typo.
-
07:03 PM Revision 82769dfe: Add strategic sleep commands into the configure and renewal process so that prefix delegation gets a chance to work.
-
05:31 PM Revision 39cad6ae: Use low router lifetimes of 60, 120 and 180 seconds, make sure that rtadvd stops gracefully as it then will send a RA with a lifetime of 0 so that host pick up network renumbering.
-
04:40 PM Revision 1dd8c3b6: Select the newest of processes to make the command better
-
04:40 PM Revision 29b97efa: Select the newest of processes to make the command better
-
04:13 PM Revision 673966e4: Setup the serial port in the factory reset as well, in case the default config in a rebrand has the serial console active.
-
02:19 PM Revision 927ea6e1: Fix display of widgets with configuration controls in IE. From Gertjan on the forum. See http://forum.pfsense.org/index.php/topic,42977.0.html
11/19/2011
-
05:22 PM Bug #2015 (Closed): Firewall: Shaper, By Queues View. Needs a couple of little fixes
- Hi,
in the "Firewall: Shaper, By Queues View" page of the webConfigurator, there are a couple of small things to fix... -
12:56 PM Bug #2014 (Rejected): snort
- nothing here to make this an acceptable bug report, post to the list or forum. Please don't open tickets unless they ...
-
09:57 AM Bug #2014: snort
- /rules/snort_voip.rules(89) Undefined variable in the string: $SIP_SERVERS
-
09:53 AM Bug #2014 (Rejected): snort
- /rules/snort_file-identify.rules(26) ***PortVar Lookup failed on '$FILE_DATA_PORTS'.
-
11:14 AM Revision 7492f21d: Only create config for enabled DHCPv6 server entries, prevent duplicate network configuration.
-
11:06 AM Revision 5747a735: Also include services so that we can restart the LAN rtadvd process if needed.
11/18/2011
-
05:33 PM Feature #2013 (Closed): Package log file size
- Currently if a package has logging via syslog enabled, a 10K clog log file is created. Possibly this size should be i...
-
04:51 PM Bug #2012 (Resolved): 4th+ CARP member will not work with default automatic skew
- I created a pfSense cluster with 4 members. I'm using CARP IPs and XMLRPC for configuration sync. As designed, the sk...
-
08:23 AM Bug #1572: DHCP + MAC spoofing leads to link cycling
- Justin Mitchell wrote:
> I'm having a similar issue to this so I wonder if it's linked. I'm running my WAN interface... -
08:18 AM Bug #1572: DHCP + MAC spoofing leads to link cycling
- I'm having a similar issue to this so I wonder if it's linked. I'm running my WAN interface in DHCP. If I try and cha...
11/17/2011
-
01:52 PM Feature #2006: CP ipfw fwd all non-authenticated clients' TCP connections to 127.0.0.1,8000
- Using TCP RST and ICMP Destination Unreachable, trying to be kind to un-authenticated CP clients...
11/16/2011
-
09:44 PM Revision 55aaceb3: Add a ddb.conf that will trigger textdumps for all panics and similar crashes, not leave some crashes at a db> prompt.
-
09:44 PM Revision 36a4cc17: Add a ddb.conf that will trigger textdumps for all panics and similar crashes, not leave some crashes at a db> prompt.
-
09:38 PM Revision 002cacab: Fix this ifconfig-push to also account for tap.
-
08:46 PM Revision 459e9333: If there is a tunnel network in tap mode, the second parameter is a subnet mask, not the other IP.
-
07:21 PM Bug #2011: Two NICs running CARP on the same network segment generate log flood
- maybe it's the case to put a line here about that:
http://doc.pfsense.org/index.php/CARP_Configuration_Troubleshoo... -
02:18 PM Bug #2011 (Rejected): Two NICs running CARP on the same network segment generate log flood
- not a bug.
-
02:17 PM Bug #2011 (Rejected): Two NICs running CARP on the same network segment generate log flood
- Hello,
I am running pfSense with two NICs running CARP on the same VLAN of the same switch. It happens that in t... -
05:04 PM Revision bf7b597a: Actually save the value typed in the bandwidth limit box for the openvpn client instead of ignoring it.
-
05:02 PM Revision b422360c: Actually save the value typed in the bandwidth limit box for the openvpn client instead of ignoring it.
-
04:49 PM Bug #2009 (Rejected): Reject rules for egress traffic in floating fail to log
- reject is logged by pf as block, there is no reject in the logs.
-
10:25 AM Bug #2009: Reject rules for egress traffic in floating fail to log
- Hi Jim,
With the NSA 3110 we were testing with ICMP. In my testing here with my personal box I have changed the ru... -
08:02 AM Bug #2009: Reject rules for egress traffic in floating fail to log
- The "reject" action only works for TCP and UDP. Other traffic is just blocked/dropped since it has no concept of reje...
-
08:00 AM Bug #2009 (Rejected): Reject rules for egress traffic in floating fail to log
- Hi All,
A colleague and I spent a few hours tonight with a NSA 3110 and later with my home firewall trying to diag... -
03:47 PM Revision 4ec48253: Check uppercase strings
-
03:46 PM Revision 90b3c01c: Check uppercase strings
-
03:42 PM Revision 9870b4a2: Ensure style is set to a valid item
-
03:41 PM Revision 5d7791a2: Ensure style is set to a valid item
-
02:01 PM Bug #2010: VLAN parent interface / altq interface wrong assumptions about int_family name format
- Please Ignore int_family.patch
-
01:57 PM Bug #2010: VLAN parent interface / altq interface wrong assumptions about int_family name format
- There is another part to this in inc/globals.inc
-
12:49 PM Bug #2010 (Resolved): VLAN parent interface / altq interface wrong assumptions about int_family name format
- Hi
I ran into an issue with vmxnet3 NICs on current pfsene-2.1 developement release.
VMware stupidly choose vmx... -
02:00 PM Bug #598: Need to block carp traffic to hosts self to avoid loops
- Hi,
this change is causing a lot of logs in the case there are two nics on the same network segment. See http://foru... -
02:12 AM Revision c69c58e2: Converting from scriptaculous to jQuery
- Adding jQuery UI, so now we can use effects and widgets provided by this library and remove scriptaculous code. Build...
11/15/2011
-
09:30 PM Revision 45736415: Add a gui field to set the source tracking timeout for sticky connections.
-
08:49 PM pfSense Packages Feature #2008 (Rejected): Packet display in snort alerts
- Here's a quick hack to allow optional display of snort alerts packets.
Default is to not display. A checkbox is prov... -
06:09 PM Revision a02ecc94: Converting javascript code from scriptaculous to jQuery
-
05:12 PM Revision 6134cc8f: now we use the Chosen javascript plugin for jQuery
-
04:55 PM Revision bef629ac: Converting from scriptaculous to jQuery
-
09:34 AM Bug #1629: invalid state table entries after WAN IP change
- This is what my states look like for my effected device from Diagnostics --> States when my VoIP adapter shows offlin...
-
09:06 AM Bug #1629: invalid state table entries after WAN IP change
- I also experience this with my SIP device (PAP2T). I thought my provider was to blame as changing the remote server ...
-
09:07 AM Bug #1052: Certificate validation of the LDAPS servers is not enforced
In the following scenario:
LDAP server 1 has a certificate signed by CA1 and is used on openvpn1
LDAP server 2 ...-
08:31 AM Bug #1052: Certificate validation of the LDAPS servers is not enforced
- For me it is ok as is I do not see any loosing on having what i committed.
11/14/2011
-
08:18 PM Revision 22aaee7d: Merge over the end period fix for the custom rrd graphs section.
-
05:42 PM Revision 643c9f9f: Fix the Off by One so that delegated prefix id 0 is shown on the LAN interface settings page.
-
01:42 PM Revision 906daddc: Ticket #1052. Merge patch referenced in ticket.
-
01:42 PM Revision 6daf497b: Ticket #1052. Merge patch referenced in ticket.
-
09:09 AM Bug #1052: Certificate validation of the LDAPS servers is not enforced
- Hi Ermal,
You have commited v1 of the patch, can you please use v2 instead?
Thanks
Florent -
08:38 AM Bug #1052: Certificate validation of the LDAPS servers is not enforced
- Committed.
11/13/2011
-
09:15 AM Bug #1052: Certificate validation of the LDAPS servers is not enforced
In fact TLS_CACERTDIR shouldn't be set at all in this case. Here is v2 of the same patch.
I know it's late ... b...-
08:32 AM Bug #1052: Certificate validation of the LDAPS servers is not enforced
- What is in master is still not working; There's two problems:
1) the environment variables need to be set before y...
11/12/2011
-
02:00 PM Feature #2007 (Needs Patch): RRD Data -- Saving and Restoring
- Under "Diagnostics: Backup/restore", there is no Option on the pull-down menu to backup/restore ONLY the RRD data sep...
11/11/2011
-
08:08 PM Revision 9eced774: username-as-common-name is not compatible with server-bridge, so don't put it in the config if server-bridge is active. Testing is needed to determine if there is any other negative impact, but with both present, openvpn will not start.
-
02:01 PM Bug #1992: OpenVPN in tap mode, allow transparant interface
- Checked in a fix for that, should be up now.
-
01:24 PM Bug #1992: OpenVPN in tap mode, allow transparant interface
- Hmm, when trying to define the bridges' DHCP scope after selecting the to-be bridged interface (This is the second VP...
-
12:14 PM Bug #1992: OpenVPN in tap mode, allow transparant interface
- Installed it, testing.
-
11:05 AM Bug #1992: OpenVPN in tap mode, allow transparant interface
- Some notes on using that:
First, read all of the text descriptions on the new fields that show up when you switch ... -
11:03 AM Bug #1992: OpenVPN in tap mode, allow transparant interface
- I committed the initial revision to the repo just now:
https://github.com/bsdperimeter/pfsense-packages/commit/dafa2... -
07:00 AM Bug #1992: OpenVPN in tap mode, allow transparant interface
- Sounds like a good solution. Looking forward to it, as installing a (even beta) package instead of manually editing f...
-
06:21 AM Bug #1992: OpenVPN in tap mode, allow transparant interface
- Jim is making it into a package for 2.0.x users, so it can be fully vetted in all possible scenarios during the 2.1 r...
-
04:50 AM Bug #1992: OpenVPN in tap mode, allow transparant interface
- Would be really great if these changes would hit 2.0.1. Doesn't look like it would break existing installations to me...
-
12:34 PM Feature #2006 (Resolved): CP ipfw fwd all non-authenticated clients' TCP connections to 127.0.0.1,8000
- I noticed that in 2.0REL captiveportal.inc adds an ipfw rule to forward all un-authenticated clients' TCP connections...
-
09:58 AM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
- Yes but the 2.0 tries to be smarter in regards to the whole system about events.
This makes a lot of things better b... -
09:53 AM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
- As Derrick says,it's running on 1.2.3 with wan ip very well,my opinion it's userful to control pptp Server address bo...
-
07:25 AM Bug #2005: URL aliases need validation of fetched data
- I filed a related report in http://redmine.pfsense.org/issues/1991
11/10/2011
-
10:30 PM Bug #2005 (Resolved): URL aliases need validation of fetched data
- If a user puts in a URL for an alias that contains invalid data, filter reloads fail. Need to validate what's returne...
-
09:48 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
- Chris Buechler wrote:
> It works (aside from now having this consequence), but yes it is technically not correct, an... -
09:23 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
- It works (aside from now having this consequence), but yes it is technically not correct, and has never been shown th...
-
08:42 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
So, does this mean I've been setting up 1.2.3 wrong all this time and it still works? Let me make sure I understa...-
06:54 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
- David: you can still do just that without using the WAN IP there, any unused private IP is fine.
-
06:30 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
- Yes, I can confirm that setting that IP to an IP other than the WAN IP does avoid the problem.
I believe we origin... -
05:11 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
- Looks like Ermal figured out what triggers this - if you have the "PPTP Server IP" configured as your WAN IP, which i...
-
09:37 PM Revision 1379d66f: Add an indication in the certificate list to show if a certificate is internally capable of being a CA (basicConstraints has CA:TRUE) or if the nsCertType is set to server.
-
05:02 PM Revision 035c5573: Fix order of client/server IPs and add a note, and clarify variable names. Fixes #2004.
-
05:01 PM Revision 298fe5ae: Fix order of client/server IPs and add a note, and clarify variable names. Fixes #2004.
-
03:58 PM pfSense Packages Bug #1982 (Feedback): Snort exits on rules update and does not restart
- Update pushed on package.
-
03:58 PM pfSense Packages Bug #1982: Snort exits on rules update and does not restart
- It is build like that by default on pfsense.
-
03:08 PM pfSense Packages Bug #1982: Snort exits on rules update and does not restart
- It seems that compiling snort with --enable-reload will allow snort to reload on receiving a SIGHUP without requiring...
-
03:35 PM Revision 21762198: Trim filename before use to clear away any unnecessary whitespace. Fixes client export package install (and probably others)
-
12:48 PM Feature #1120 (Closed): Add checkbox on OpenVPN server/client to use cryptodev
- This was implemented quite a while ago as a drop-down menu to select crypto accelerators (if present).
-
12:48 PM Feature #1184 (Feedback): Certificate Manager - Ability to add nsCertType=SERVER extension to certificates
- This was implemented yesterday in 2.1 and merged into 2.0.1.
https://github.com/bsdperimeter/pfsense/commit/7aaabd... -
12:41 PM Feature #1217: Change OpenVPN local/remote networks to lists instead of single boxes
- Tried to work this out last week and found that our rowhelper code only works for once instance per page, so having i...
-
12:40 PM Feature #1222 (Closed): Support for tun or tap mode in openvpn server
- The tun/tap switch was added before 2.0 shipped, but had some issues that have since been fixed on mainline.
-
12:37 PM Feature #1326 (Feedback): OpenVPN Server in tap mode
- There were issues in the code, but they should be OK now. Fixed in mainline, not sure if it'll get backported to 2.0....
-
12:20 PM Bug #2004 (Feedback): Client Specific Override ->Tunnel Network
-
11:53 AM Bug #2004: Client Specific Override ->Tunnel Network
- Ah, yeah you're right, the parameters to ifconfig-push in the csc file are backwards. It should be the other way to c...
-
12:20 PM Bug #1992 (Feedback): OpenVPN in tap mode, allow transparant interface
-
12:20 PM Bug #1992: OpenVPN in tap mode, allow transparant interface
- There were issues in the code, but they should be OK now. Fixed in mainline, not sure if it'll get backported to 2.0....
11/09/2011
-
09:30 PM Bug #1697: Interface group doesn't apply to all interfaces in all cases
- Ok, so our initial tests showed this issue was resolved. But when applying live traffic on the box, about 70% of the ...
-
09:26 PM Feature #1997: Add date picker to the Custom RRD graph page to translate to unix time.
- That is an EXCELLENT converter, probably the BEST and ONLY one which allows for free-form (eg. 11/9/2011 12:15:59) in...
-
03:34 AM Feature #1997: Add date picker to the Custom RRD graph page to translate to unix time.
- Possible candidate.
http://morecavalier.com/index.php?whom=Apps%2FUnix+timestamp+converter -
08:45 PM Revision 77a88814: When creating an internal certificate, offer the user a choice of what constraints to place upon the certificate (CA, Server, or User).
-
08:43 PM Revision 7aaabd69: When creating an internal certificate, offer the user a choice of what constraints to place upon the certificate (CA, Server, or User).
-
07:13 PM Bug #2004: Client Specific Override ->Tunnel Network
- .8 shows same result
Tunnel network = 10.10.10.8/30
assigns 10.10.10.9 to the client
client log:
openvpn[2664... -
06:56 PM Bug #2004 (Rejected): Client Specific Override ->Tunnel Network
- .9/30 is not a valid subnet definition, which may be influencing the output. Use .8/30
http://doc.pfsense.org/inde... -
06:51 PM Bug #2004 (Resolved): Client Specific Override ->Tunnel Network
- Tunnel Network description says:
This is the virtual network used for private communications between this client an... -
06:14 PM Feature #2003 (Closed): Allow Aliases in routing
- Accept Aliases in System: Static Routes: Edit route -> Destination network
-
05:48 PM Revision 74a556a3: Rework this a little since using tap+tunnel network is valid, but using tap+tunnel network+bridging is not (will not do what the user expects/wants)
-
02:52 PM pfSense Packages Bug #2002 (Closed): snort
- does not list ipv6 address in alert or block
it shows up as n/a.. there is a fix by using clear alert
however the i... -
01:51 PM Bug #2000 (Rejected): intel x520 network card
- That card should be covered by the ixgbe driver which is in both amd64 and i386 already. If the existing driver doesn...
-
01:25 PM Bug #2000 (Rejected): intel x520 network card
- Hi!
I wanna know if there is the module for this card intel x520 10gb for amd64 cuz i've seen it for i386,
i have... -
01:48 PM Bug #2001 (Rejected): snort status
- That is nowhere near a usable bug report. Please post in the forum until an actual bug has been confirmed.
-
01:46 PM Bug #2001 (Rejected): snort status
- Snort is now unreliable
-
08:54 AM Bug #1999 (Resolved): Existing voucher settings upset new CP Zones/Vouchers code
- If you have existing voucher settings, and update a system to master/2.1, the voucher settings will cause some issues...
-
12:58 AM Bug #1998 (Rejected): Unable to check for updates for pfSense 2.0-RELEASE
- leaving the base URL blank doesn't remove it, you'll have to remove it from globals.inc. there are no bugs here. YOu ...
11/08/2011
-
11:56 PM Bug #1998: Unable to check for updates for pfSense 2.0-RELEASE
- Even if someone wants to check for updates, pfSense should do it ALOT less frequently.
-
11:51 PM Bug #1998 (Rejected): Unable to check for updates for pfSense 2.0-RELEASE
- When I UN-CHECK "Use a URL server for firmware upgrades other than www.pfsense.org" under "Updater Settings", and "Ba...
-
09:57 PM Revision 1ab6bdb5: Fix up OpenVPN server tap modes, support various options for providing or passing through DHCP. (Work in progress)
-
05:57 PM Revision 0389f034: Prevent link cycling when spoofing mac + DHCP. Fixes #1572
-
05:56 PM Revision 49db607f: Prevent link cycling when spoofing mac + DHCP. Fixes #1572
-
12:55 PM Bug #1572: DHCP + MAC spoofing leads to link cycling
- Applied in changeset commit:49db607f186c37ad48b25640184051a6ae205ff4.
-
12:55 PM Bug #1572 (Feedback): DHCP + MAC spoofing leads to link cycling
- Applied in changeset commit:0389f03498994dbdaf47543a325b58d14b1cdbab.
-
12:36 PM Feature #1997 (Resolved): Add date picker to the Custom RRD graph page to translate to unix time.
- The current custom rrd graph page needs a startdate and enddate in unix time. This really needs a date picker that se...
-
12:34 PM Bug #1990 (Resolved): Custom RRD Graphs Does NOT Properly Graph "End" Value
-
12:25 PM Bug #1990: Custom RRD Graphs Does NOT Properly Graph "End" Value
- It was on the todo list but forgotten, I am not sufficiently at home in javascript to do the calendar thing.
-
11:59 AM Bug #1990: Custom RRD Graphs Does NOT Properly Graph "End" Value
- Thank you Seth for fixing this issue!!
If only I can input dates & times on the "Custom RRD Graphs" page in human ... -
10:23 AM Bug #1996 (Resolved): status_graph.php is not displaying real-time bw stats
- The new jquery code that was added to the file isn't displaying the real-time bw stats from the rate program. The ori...
-
09:07 AM pfSense Packages Bug #1985: inspecting gzipped http flows
- My testing has confirmed that it is fix
11/07/2011
-
09:05 PM Bug #1995 (Closed): Cannot edit default queue
- When attempting to edit the default queue, you get "Only one default queue per interface is allowed." and cannot save...
-
09:04 PM Bug #1994 (Rejected): Remove priority on HFSC
- Since there is no concept of priority in HFSC it should be removed from the GUI.
-
09:03 PM Bug #749 (Resolved): Downstream queues should not be assigned to LAN interfaces
-
09:02 PM Bug #1910 (Resolved): Duplex description inconsistency
-
08:58 PM Bug #636 (Resolved): layer7 not work correctly
- the problems in general with layer7 were fixed before 2.0 release. The fact that pushing a ton of traffic through it ...
-
08:55 PM Bug #1697 (Feedback): Interface group doesn't apply to all interfaces in all cases
-
08:54 PM Bug #1888 (Feedback): Upgrade ISC dhcpd to v4.2.2
- updated to 4.2.3
-
08:53 PM Bug #1950 (Resolved): "Bypass firewall rules for traffic on the same interface" doesn't work as intended
-
07:48 PM Bug #1993 (Resolved): Unmonitored gateways cause wrong route-to
- Gateways that aren't monitored end up being the only ones put into gateway groups reportedly.
http://forum.pfsense.... -
06:41 PM Revision 0d5f874d: Actually reflect the end time instead of always $now.
- Fix Ticket #1990
-
05:32 PM Revision 64d84825: Fix display of CARP widget to properly show Disabled status, bring code more in line with the carp status page, and clean it up a bit.
-
05:31 PM Revision 9b1a73f3: Fix display of CARP widget to properly show Disabled status, bring code more in line with the carp status page, and clean it up a bit.
-
04:07 PM Bug #1992: OpenVPN in tap mode, allow transparant interface
- Chris, it is not how it's supposed to be.. When using tap, the "Tunnel Network" should have the option of not being f...
-
04:05 PM Bug #1992 (Rejected): OpenVPN in tap mode, allow transparant interface
- bug reports have to have a specific bug, this is a support request, please post to the forum or list.
-
09:25 AM Bug #1992 (Resolved): OpenVPN in tap mode, allow transparant interface
- I am trying to create a Road-warrior situation where the client is supposed to get an IP from the DHCP server in the ...
-
02:55 PM Bug #1990 (Feedback): Custom RRD Graphs Does NOT Properly Graph "End" Value
- Found the cause, we were using $now instead of $end, this should resolve it.
Do take note that there is a 5 second h... -
01:50 PM Bug #1572: DHCP + MAC spoofing leads to link cycling
- I have one installs where this happens too, I've stopped the flapping by putting by putting a switch in between the c...
11/06/2011
-
11:58 AM Revision abf421ce: Issue proper start and error messages during voucher loading
-
11:25 AM Revision 6cf64278: Check that we have an array to avoid php warnings++
-
11:23 AM Revision c535b28c: Check that we have an array to avoid php warnings
11/05/2011
-
06:52 PM Revision 4246293e: Merge pull request #17 from marcelloc/patch-4
- Reduce fetch connection timeout from one minute to 5 seconds
-
11:12 AM Revision 83773d85: reduce fetch connection timeout from one minute to 5 seconds
- this value changes only initial connection timeout, not download timeout.
11/04/2011
-
10:51 PM Revision 783321d0: If sticky is enabled, show a tab under Diag > States to view the source tracking table and clear it if needed.
-
03:05 PM Bug #1991 (Resolved): URL Table aliases issue after config restore
- In a freshly installed 2.0 system, when restoring a previous config.xml, there seems to be an issue with error-handli...
-
01:16 PM Bug #1990 (Resolved): Custom RRD Graphs Does NOT Properly Graph "End" Value
- When I try to Set a "Start" value in Unix time AND an "End" value in Unix time, the "End" value turns into current Un...
- 06:07 AM Revision 7b7f9007: description is optional
- 06:06 AM Revision 8c4f1f7d: description is optional
- 06:05 AM Revision 9e57fc6e: description is optional
- 06:04 AM Revision e9e99042: description is optional
11/03/2011
-
08:13 PM Bug #1989 (Rejected): snort engine
- no idea what you're referring to but this is nowhere near a legit bug report, post to the forum or list.
-
06:59 PM Bug #1989 (Rejected): snort engine
- snort has difficulty parsing data
-
07:24 PM Bug #1697: Interface group doesn't apply to all interfaces in all cases
- This appears fixed. Pings flow through both interfaces in a group, matching on the correct rule.
Tested on 2.0-RE... -
05:35 PM Bug #1988 (Resolved): Static ARP entries attempted to be applied on disabled interfaces
- Static ARP entries on disabled interfaces are tried to be applied and fail since that network doesn't exist. Need a c...
-
05:30 PM Revision f4c2d976: If sticky is enabled, show a tab under Diag > States to view the source tracking table and clear it if needed.
-
04:43 PM Revision 19f576fd: Allow carriage returns to separate filenames as well as spaces
11/02/2011
-
09:03 PM Revision 10e5f4f3: Bump to 2.0.1-R
-
08:41 PM Feature #1682 (Closed): second MAC address for one IP address
- that's already possible, just have to use a different hostname
-
07:23 PM Revision 2bd6b12b: Adding missing file
-
06:51 PM Revision 44d55df6: Only symlink files once
-
06:50 PM Revision 764bd0ac: Download correct filenames
-
03:19 PM pfSense Packages Bug #1982: Snort exits on rules update and does not restart
- As reported above, this affects both i386 and x86 architectures according to reports in the link I gave:
http://foru... -
03:05 PM Revision e3db5627: Fixes #1976. Correct passthrough mac entries to not overwrite each other this is different from allowed ips that used tables.
-
02:59 PM Revision a135349d: Fixes #1976. Correct passthrough mac entries to not overwrite each other this is different from allowed ips that used tables.
-
11:05 AM Bug #1976: problems with CP MAC pass-through
- Applied in changeset commit:e3db5627224a0293f74e0d032a9b230f98f85952.
-
10:55 AM Bug #1976 (Feedback): problems with CP MAC pass-through
- Applied in changeset commit:a135349d62a1932cb1ab9c29436efcd8e8a383d5.
11/01/2011
-
08:31 PM Revision 1cad6f6c: Convert MTU from 1.2.3 to MSS on 2.0, fixes #1886
-
08:30 PM Revision f6ee561e: Convert MTU from 1.2.3 to MSS on 2.0, fixes #1886
-
07:19 PM Revision 520d4137: Fix SMTP monitor check in upgrade code, too.
-
07:18 PM Revision 8081f316: Fix SMTP monitor check in upgrade code, too.
-
07:18 PM Bug #1987 (Resolved): GRE tunnel - Route search type
- When configuring GRE tunnels, you have the option "Route search type", which should activate the LINK1 flag to the GR...
-
07:14 PM Revision 3c19d44a: Fix default SMTP monitor parameters so they will properly check to see if an SMTP banner is received.
-
07:12 PM Revision 146a1717: Relayd expects send/expect arguments to be quoted strings. (And expect must be a pattern, not just a partial string)
-
07:10 PM Revision 07c49a36: Fix default SMTP monitor parameters so they will properly check to see if an SMTP banner is received.
-
07:09 PM Revision 54d1a165: Relayd expects send/expect arguments to be quoted strings. (And expect must be a pattern, not just a partial string)
-
06:15 PM Bug #1951: Auto generated reply-to rules not working
- For the record, this must have been "upgrade rot". After doing a clean 2.0-Release install and restoring the exact sa...
-
05:02 PM Bug #1970: IPsec stops routing after a while
- Proposed patch
http://sourceforge.net/mailarchive/message.php?msg_id=28279523 -
04:30 PM Bug #1886: Config upgrade needs to move MTU values to MSS
- Applied in changeset commit:f6ee561edb89615910f316912ec033ab32e2960f.
-
04:30 PM Bug #1886 (Feedback): Config upgrade needs to move MTU values to MSS
- Applied in changeset commit:1cad6f6c891f7c70b36cfbdbaf4126084ab729ee.
-
03:50 PM Feature #1986 (Resolved): Find a way to list logged in IPsec xauth users
- At the moment there is no way to get a list of logged in users from racoonctl, setkey, or any other utility we're awa...
-
12:35 PM pfSense Packages Bug #1765: Unable able to clear Snort Alerts
- Applied in changeset commit:b4542701c3f275b74a309f0db7682086b6d7b461.
-
12:04 PM pfSense Packages Bug #1765: Unable able to clear Snort Alerts
- I've confirmed that option 1 works on my box also.. Thanks Leon Topliss
-
11:07 AM pfSense Packages Bug #1765: Unable able to clear Snort Alerts
- Hello, my first post here so hope its helpful. Not seeing the fix when i uninstall and reinstall. The Clear button se...
-
12:15 PM pfSense Packages Bug #1982: Snort exits on rules update and does not restart
- what platform btw? I'm running i386 and don't have this issue. Mine is set to update every 12 hours. Once in a while,...
-
03:55 AM pfSense Packages Bug #1985 (Feedback): inspecting gzipped http flows
- Applied in changeset commit:4bd57d115d2fee37a0d9e8e999d6bfd3b986f3e1.
10/31/2011
-
11:20 PM pfSense Packages Bug #1985 (Resolved): inspecting gzipped http flows
- brings back to fatal error in .conf
Enable 'extended_response_inspection' inspection before setting 'inspect_gzip' -
08:25 PM Revision 196d0085: Setup serial bits after upgrade on NanoBSD, too.
-
07:02 PM Revision 9d99eb95: Allow the serial speed adjustment to work for nanobsd as well.
-
03:35 PM Revision c1becc31: Add field to the GUI to select the serial console speed (May work as-is, needs more testing/feedback)
10/30/2011
-
10:29 AM Feature #1548 (Closed): IPSEC Secondary Gateway
- Closing, using #1965 instead.
-
03:35 AM Feature #1965: Support Multiple IPsec Peers
- It looks a duplicate of this:
http://redmine.pfsense.org/issues/1548
Actually this is explained better :D
10/29/2011
-
05:35 AM pfSense Packages Bug #1961: Spoink and IP banning
- yes, it would be great!
As you understand, I personally don't want to focus on the solution itself, for me any solu... -
02:22 AM Feature #1984 (Resolved): Allow CP Voucher submission via URL so they can be distributed as QR code
- In addition to the web form, allow the submission of voucher via URL e.g....
10/28/2011
-
07:39 PM Bug #1983 (Resolved): Cancel Button generates a Confirm Form Resubmission message
- Add or edit a rule (such as a firewall rule) and apply it, leaving the "The settings have been applied." message open...
-
03:34 PM Revision 5cf74791: Reformat the DNS Forwarder page a bit so it conforms with the other pages. Add some headers to make it more clear what each section does. Cosmetic changes only.
-
03:32 PM Revision 6661dbcf: Reformat the DNS Forwarder page a bit so it conforms with the other pages. Add some headers to make it more clear what each section does. Cosmetic changes only.
-
02:44 PM pfSense Packages Bug #1982 (Resolved): Snort exits on rules update and does not restart
- Using Snort 2.9.0.5 pkg v. 2.0 on pfSense 2.0... using either autoupdate of rules or manual update of rules, if Snort...
-
01:50 PM pfSense Packages Bug #1942: snort_blocked.php loads blank
- I've noticed that the snort_blocked.php page uses a lot of CPU in the php process. It takes a long time to render for...
-
01:36 AM pfSense Packages Bug #1942: snort_blocked.php loads blank
- Blank Page happens also on pfsense 2.0 final at these URL
#blocked pages
/snort/snort_blocked.php
#alerts
/snor... -
01:45 PM pfSense Packages Bug #1961: Spoink and IP banning
- Another solution is to remove Spoink and use SnortSam in it's place in the Snort package. I think this is in the dev ...
10/27/2011
-
09:10 PM Revision 26ba572a: Merge pull request #15 from marcelloc/patch-2
- Fix missing description in rowhelper.
-
09:09 PM Revision b65ce59a: Fix missing description in rowhelper.
-
08:28 PM Feature #290: Add Multi-WAN awareness to UPnP
- I just tested pfSense 2.0-RELEASE and with multiple WAN w/ multiple public IP addresses, selecting the LAN interface ...
-
02:29 PM Revision ea9a4cc8: Assume a default value of 1 for cert_depth to disallow chaining.
-
02:29 PM Revision 77ed2f4c: Add GUI option to limit the certificate depth allowed when OpenVPN clients are connecting.
-
02:29 PM Revision 3f9c1775: Specify full path to openssl.cnf, and select the relevant section to use when generating certificates.
-
02:28 PM Revision 41936acc: Assume a default value of 1 for cert_depth to disallow chaining.
-
02:28 PM Revision 98963f27: Add GUI option to limit the certificate depth allowed when OpenVPN clients are connecting.
-
02:28 PM Revision 87b4deb2: Specify full path to openssl.cnf, and select the relevant section to use when generating certificates.
-
11:10 AM Bug #1918: update status
- Just tried in three different browsers (2 of which I never access this device with) and an incognito window in Chromi...
10/26/2011
-
10:40 PM Bug #1918: update status
- In almost all cases, such errors are resolved by clearing your browser's cache or closing and opening the browser ses...
-
09:22 PM Bug #1918: update status
- Just noticed the same problem. This is a stock release that was upgraded from RC1 to RELEASE. I haven't altered any...
-
10:38 PM Bug #1981 (Closed): lighttpd errorlog using text rather than clog format
- Please note that the format of /var/log/lighttpd.error is text rather than clog, which could potentially eat up disks...
-
09:14 PM Revision 4659f856: Fix up syslog settings a bit, add some missing options, fix formatting of syslog.conf, correct behavior of 'everything', code cleanup.
-
09:14 PM Revision 236524c2: Fix up syslog settings a bit, add some missing options, fix formatting of syslog.conf, correct behavior of 'everything', code cleanup.
-
05:48 PM Feature #1938: Filter messages broken into multiple syslog messages
- Wow, that's troubling. I escaped it because it looked like PHP was swallowing the backslash. But I'm looking now and ...
-
05:14 PM Feature #1938: Filter messages broken into multiple syslog messages
- A warning to those trying the proposed change, it doesn't quite work as written. It works if you run it from the comm...
-
01:17 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
- Chris Buechler wrote:
> we're working on it. a partial fix will be in 2.0.1 though not sure we can get it entirely f... -
01:15 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
- we're working on it. a partial fix will be in 2.0.1 though not sure we can get it entirely fixed for then (it's comin...
-
01:12 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
- Hafiz Rafiyev wrote:
> anybody working on this urgent bug?
Not that I am aware of. I also have an embedded test... -
12:09 PM Bug #1421: Disconnecting PPTP VPNs drops IPsec when using wrong PPTP server IP
- anybody working on this urgent bug?
-
10:14 AM Bug #1928: Can't sync voucher database when carp peer is also active
- I deleted the CARP sync so that the voucher database keeps syncing fine but when the master goes down I still can't g...
-
09:29 AM Revision 12a2f395: Fix the 2nd grow command, add space
- Ticket #1758
-
08:13 AM Revision 16cc1c10: Increase the GROW for the 60 minute RRA so that we have atleast 2160 entries for 3 months worth of data.
-
06:45 AM Revision 4fe54cdf: Add back the accidentally removed xml rrd restore line, otherwise we still don't have the new RRD file
- Ticket #1758
Also available in: Atom