Activity
From 04/05/2012 to 05/04/2012
05/04/2012
-
10:37 PM Bug #2411 (Closed): OpenVPN Automatic Rule Generation does not update TCP/UDP
- The only place that makes a firewall rule for OpenVPN is in the wizard, and that's a one-time deal. There isn't an au...
-
10:06 PM Bug #2411 (Closed): OpenVPN Automatic Rule Generation does not update TCP/UDP
- When changing the protocol type of an OpenVPN connection, the automatic firewall rule generation does not update the ...
-
12:18 PM Revision 3eebc3eb: Minimal non-intrusive change for SSHDCond package extra parameters
-
10:27 AM Bug #2398: tftpd and tftp-proxy (inetd?) dies after WAN periodic reset
- Anyone can confirm this issue ?
-
08:02 AM Feature #2410: Support name based aliasing via CNAMEs or some other mechanism.
- Hosts file would work great I suspect, interface mock looks good too. Thanks!
-
05:42 AM Feature #2410: Support name based aliasing via CNAMEs or some other mechanism.
- Hi. I probably could put together something for pfSense 2.0. Instead of implementing "real" CNAME support I'd like to...
05/03/2012
-
04:48 PM Revision a52706d5: missed a spot for #2407
-
04:34 PM Revision 470d24a3: implement #2407: create config option for captive portal listening port
-
02:54 PM Revision 6b2d4b5a: fix for #2356 'track interface'
- convert pulldown for ipv6 prefix id to a textbox. validation is
implemented. -
02:53 PM Revision 331103ae: Fix syntax error in bogons update
-
12:55 PM Feature #2410 (New): Support name based aliasing via CNAMEs or some other mechanism.
- Resubmission of feature request 129 from 1.2.2
I would like to request that this feature reconsidered. Regardless ... -
12:42 PM Feature #129: CNAME support for dnsmasq
- Cancel that, entering new ticket for this in 2.x.
-
11:50 AM Feature #129: CNAME support for dnsmasq
- I would like to request that this ticket be reopened and the feature reconsidered. Regardless of what DJB may think,...
-
12:39 PM Bug #2409 (Resolved): ipfw - entryzerostats
- I apologize for my english...
pfSense 2.0.1
When logging in CaptivePortal (auth Radius, Accounting Updates - Start/... -
10:49 AM Feature #2356: Fill the "Track Interface" prefix drop down list asynchronously
- aggh, stupid dumb idiot darren forgot to commit changes.
they're there now in commit:6b2d4b5a . -
07:01 AM Bug #2408 (Rejected): Wireless run driver crashes kernel
- we don't create or control drivers, report the problems upstream to FreeBSD, after testing with a newer base stock Fr...
-
06:52 AM Bug #2408 (Rejected): Wireless run driver crashes kernel
- The run driver for a common 11n Ralink chipset casues severe system instability and kernel crashes. I have tested tha...
05/02/2012
-
12:30 PM Revision 8d70eb8d: When the "OpenVPN" users type was commented out of the drop-down, this function wasn't adjusted so it was off by one in its counts, making the URL table update frequency box disabled.
-
12:29 PM Revision aa11af07: When the "OpenVPN" users type was commented out of the drop-down, this function wasn't adjusted so it was off by one in its counts, making the URL table update frequency box disabled.
05/01/2012
-
08:00 PM Revision e0c45357: Move routing (radvd, routed, ospf, bgp) to its own log since these daemons can be really spammy at times.
-
06:25 PM Revision 3a1e12cf: Add some safety belt checks to status_queues.php to prevent exec blocking or infinite redirection loops. Better error display when things go wrong.
- 05:32 AM Revision eedd093a: correct hostname variable, and use FQDN
- 04:41 AM Revision a1a0cd46: fix saving of hard timeout
- 04:29 AM Revision 402ffa96: fix text
-
01:20 AM Bug #2330 (Resolved): vouchers disappear when saving
- fixed
-
12:25 AM Bug #2406 (Resolved): No IP alias within the subnet of a CARP IP can be deleted
- The input validation that triggers: ...
04/30/2012
-
07:32 PM Revision 60dd7649: Move the stop_packages code to a function, and call the function from the shell script, and call the function directly for a reboot. Fixes #2402 and ticket #1564
-
04:29 PM Revision 6478e71e: Fix display of widgets with configuration controls in IE. From Gertjan on the forum. See http://forum.pfsense.org/index.php/topic,42977.0.html
-
03:30 PM Bug #2402 (Feedback): rc.stop_packages synxtax error when executed
- Applied in changeset commit:60dd7649d02e4a82f9d57953359bf312038f174a.
-
03:07 PM Bug #2402: rc.stop_packages synxtax error when executed
- Looks like that syntax:...
-
02:09 PM Revision cb8c684e: Better error handling for crypt_data and also better password argument handling
-
02:08 PM Revision 15855fbc: Better error handling for crypt_data and also better password argument handling
-
01:03 PM Bug #2405 (Rejected): Lack of traffic shaping queue parent can take firewall down (pass no traffic)
- Simple: create a Traffic Shaper queue but forget to choose a queue parent.
from: http://tech.akom.net/archives/59...
04/28/2012
-
02:54 PM Bug #2402 (Resolved): rc.stop_packages synxtax error when executed
- PHP appears to be choking on the new changed syntax in /etc/rc.stop_packages. It's giving a syntax error when execute...
-
08:30 AM Revision 3f76f90e: Add note to NAT Reflection helper indicating where it works.
-
08:12 AM Revision 8c06bd69: Change description of 1:1 NAT Reflection setting to be more accurate.
-
07:38 AM Revision f9053c0c: Restore protection for the "destination any" case for port forward NAT Reflection, which was forgotten when shuffling around code before committing. Also add a couple other missing checks.
-
04:06 AM Revision de6348e6: Fix preservation of the selection of interfaces on input errors for floating rules.
-
03:59 AM Revision 43fd29df: Fix preservation of the selection of interfaces on input errors for floating rules.
04/27/2012
-
11:02 PM Bug #2373: There were error(s) loading the rules... (Floating rules bug)
- I've done some testing and I think the patch to add the "match" action must be missing.
-
02:52 PM Bug #2373: There were error(s) loading the rules... (Floating rules bug)
- Found this issue and have following observation:
It is always the first match rule that gives the syntax error, no m... -
02:44 PM Bug #2401 (Resolved): Mounting read-only after mounting read-write can be very slow on NanoBSD
- Mounting read-only after mounting read-write can be very slow on recent NanoBSD images on 2.1, based on FreeBSD 8.3
... -
08:30 AM Revision eb2d95f9: Use !empty instead of isset to prevent accidental deletion of the last used repository URL when firmware update gitsync settings have been saved without a repository URL.
-
08:08 AM Feature #2400 (Closed): GUI options for WPA Enterprise with identity/password
- WebCfg WiFi Interfaces allows one to connect to just about anything, but connecting to a AD network with identity/pas...
-
08:04 AM Feature #1825: Dynamic DNS client IPv6 support
- Just noticed that https://dns.he.net/ supports IPv6 for DynDNS now. Update format is identical to IPv4, just send the...
-
04:07 AM Bug #2399: Typo from IGMP proxy service in system log
- I confirm, "ERRO" is in igmpproxy daemon.
-
01:47 AM Revision c5d8b1f4: Use !empty instead of isset to prevent accidental deletion of the last used repository URL when firmware update gitsync settings have been saved without a repository URL.
-
01:37 AM Revision f122c1a3: Add a space between Note: and the message. Also move the period into the gettext string, since punctuation is not language-independent.
04/26/2012
- 10:36 PM Revision d372a32d: fix text. ticket #2399
- 10:34 PM Revision f2ff5c8b: fix text. Ticket #2399
-
10:04 PM Revision 0637b0a9: fix for Bug #2253 Quality Graphs not generated after 'Reset RRD Data'
- Seth Mos wrote:
> This needs to call setup_gateways_monitor() in after
> enable_rrd_graphing() to fix.
Also note: $r... -
06:33 PM Bug #2399: Typo from IGMP proxy service in system log
- with the exception of "ERRO" which isn't in our code.
-
06:30 PM Bug #2399 (Resolved): Typo from IGMP proxy service in system log
- fixed, thanks
-
03:02 PM Bug #2399 (Resolved): Typo from IGMP proxy service in system log
- 1) igmpproxy: *+ERRO+*: There must be at least 2 Vif's where one is upstream. (vifcount 16, upStreamVif -1)
2) php: ... -
06:08 PM Bug #2330: vouchers disappear when saving
- Has this issue been resolved? You can answer by marking it as such. Thanks. :-)
-
06:06 PM Bug #2253: Quality Graphs not generated after 'Reset RRD Data'
- > Cool, the one-minute graph is refreshing
by which I don't mean scintillating or interesting. :-) -
06:05 PM Bug #2253 (Resolved): Quality Graphs not generated after 'Reset RRD Data'
- Cool, the one-minute graph is refreshing. Marking as resolved.
-
06:00 PM Bug #2253 (Assigned): Quality Graphs not generated after 'Reset RRD Data'
- I've implemented the fix in commit:0637b0a9. Let's see if graphs get populated again...
-
02:42 PM Bug #2398: tftpd and tftp-proxy (inetd?) dies after WAN periodic reset
- TFTP package info from config.xml :...
-
02:33 PM Bug #2398 (Closed): tftpd and tftp-proxy (inetd?) dies after WAN periodic reset
- When the WAN (PPPoE in my case) connection is restarted by custom periodic reset or when connection resetted by ISP, ...
-
10:37 AM Feature #2356: Fill the "Track Interface" prefix drop down list asynchronously
- P.S. The "array" would literally be every single value from 0 to (2 ^ _n_) - 1 for some value of _n_ (at least that's...
-
10:34 AM Feature #2356: Fill the "Track Interface" prefix drop down list asynchronously
- The code displays and validates for the range already.
!http://i.imgur.com/L0yoJ.png! - 03:26 AM Revision 10c1352e: Merge pull request #97 from alowther/master
- Additional RIP options
04/25/2012
- 09:51 PM Revision b30e3be4: options for auto-summary/supernet
-
06:55 PM Feature #2386: Bridge member that is not an assigned interface
- I'm adding screenshots of a configuration I use that would benefit from this. For firewall rules, the only interface...
-
06:27 PM Revision 655e4d41: The descr field might not exist, use a uppercase friendly name
-
03:17 PM Bug #2314: Members to bridge not added
- This is probably due to the changes made in
commit:2064fa2eb4e2bca59f7c675969ee13752283d4c1
And in pfSense-tools... - 06:39 AM Revision 0cfaf2c8: Revert "Use 'Packet Loss or High Latency' as the default option when creating a new gateway group"
- This reverts commit 6ee04b69c8ace44e798e29e665039455aad1c439.
- 06:39 AM Revision 8de4a8bc: Revert "Use 'Packet Loss or High Latency' - use a fullstop, fixes #2397"
- This reverts commit 1cc71979e44d7955084a0cdb50d7698239fac770.
- 05:03 AM Revision f81398b0: Merge pull request #96 from irvingpop/master
- Simple OpenVPN bridge wording fix
-
05:00 AM Revision 850ae59e: Correct wording "Server Bridge DHCP Start" is shown instead of "Server Bridge DHCP End"
-
02:59 AM pfSense Packages Bug #2396 (Closed): apache_mod_security_package missing mod_proxy.so (and perhaps others)
-
02:40 AM Todo #2397 (Rejected): Gateway Groups
- Currently when defining a new Gateway group, the default trigger level is set to 'Member Down'.
It ideally should be... -
02:40 AM Todo #2397: Gateway Groups
- Applied in changeset commit:8de4a8bc4d52755dce1fbf2fe80d45687397a429.
-
01:22 AM Todo #2397: Gateway Groups
- Hrmm. I think http://doc.pfsense.org/index.php/Multi-WAN_2.0#Trigger_Level needs to be changed then to indicate this ...
-
01:03 AM Todo #2397: Gateway Groups
- "member down" doesn't mean link down, or it never has historically up to and including recent 2.1, it means it's comp...
04/24/2012
- 07:19 PM Revision 1cc71979: Use 'Packet Loss or High Latency' - use a fullstop, fixes #2397
- 07:18 PM Revision 6ee04b69: Use 'Packet Loss or High Latency' as the default option when creating a new gateway group
-
03:20 PM Todo #2397 (Feedback): Gateway Groups
- Applied in changeset commit:1cc71979e44d7955084a0cdb50d7698239fac770.
-
03:12 PM Todo #2397: Gateway Groups
- Make sure to touch gwlb.inc return_gateways_array(); it defaults to memberdown for any dynamic gateway. That needs to...
-
02:51 PM Todo #2397 (Rejected): Gateway Groups
- Currently when defining a new Gateway group, the default trigger level is set to 'Member Down'.
It ideally should be... -
02:37 PM pfSense Packages Bug #2396: apache_mod_security_package missing mod_proxy.so (and perhaps others)
- Sorry for the duplicate, I hadn't seen issue #2318.
-
02:35 PM pfSense Packages Bug #2396 (Closed): apache_mod_security_package missing mod_proxy.so (and perhaps others)
- Related to issue #1244
This was supposed to have been fixed but I'm still getting the following error on a fresh i... -
10:03 AM Bug #2395 (Closed): Port forwards with destination "any" on OpenVPN interface creates invalid rules
- Seems to be a duplicate of #1882 which should be fixed in RELENG_2_0 and master.
-
07:52 AM Bug #2395 (Closed): Port forwards with destination "any" on OpenVPN interface creates invalid rules
- These two lines: ...
-
06:50 AM Revision f7cd5647: Make sure to stop the dhcpleases6 process
- 02:14 AM Revision cb062635: routes should not be skipped when IPsec is on WAN, as WAN may not be the default gateway.
- 02:14 AM Revision 58070e1c: routes should not be skipped when IPsec is on WAN, as WAN may not be the default gateway.
04/23/2012
-
07:40 PM Bug #2394 (Resolved): IPsec keepalive doesn't work with 0.0.0.0/0 local subnet
- When you have a keepalive IP defined in a phase 2 that uses 0.0.0.0/0 (everything) as the local network, the logic th...
-
06:49 PM Bug #2314: Members to bridge not added
- I can also confirm this behaviour on:
2.1-DEVELOPMENT (amd64)
built on Sun Apr 22 05:15:07 EDT 2012
FreeBSD 8.3-... -
11:50 AM Bug #2278: IPv6 Carp vip both master on FreeBSD 8.3
- Hy,
It's works for me ! Thank you very much !
Have you a idea of the date of integration in official image ?
Regards -
09:27 AM Revision 2fc4190f: Merge pull request #95 from phil-davis/master
- Remove existing RRD files before restoring from XML
- 09:09 AM Revision 6a7b35ea: Delete any existing /var/db/rrd/*.rrd files before restoring from the XML
- 09:01 AM Revision 905ea336: Minor corrections to function names in error messages
- 04:35 AM Revision 7c382a88: go back to scrub rather than "scrub in", the latter breaks MSS clamping for egress traffic the way we use it
- 04:33 AM Revision 912d1887: go back to scrub rather than "scrub in", the latter breaks MSS clamping for egress traffic the way we use it.
-
12:59 AM Bug #2384: "Network interface mismatch" displayed for some valid configurations
- Reverted the get_interface_list() part. I had forgotten that the interfaces named in $vfaces don't show for interfac...
-
12:35 AM Bug #2210 (Resolved): "scrub in" usage needs evaluated
- reverted back to original behavior without "in" after further evaluation and discussion with Ermal.
04/22/2012
-
10:39 PM Revision d887d7f9: Revert change to get_interface_list()'s $vfaces list for now. Interfaces in this list that are supposed to be listed on Interfaces: Assign need special logic on that page, which has not been added yet.
-
05:08 PM pfSense Packages Bug #1737 (Closed): ospfd - Route deleted after reboot and reload of the ospfd process
- closing since openospfd is being ditched in favor of quagga
-
04:41 PM Bug #2393 (Closed): PF not "forgetting" older IP addresses after a change on the WAN interface
- duplicate
-
11:02 AM Bug #2393 (Closed): PF not "forgetting" older IP addresses after a change on the WAN interface
- Hi,
when starting pfsense and the cable modem from my provider together at the same time, the cable modem comes up... -
12:11 PM Bug #2392: Adding outgoing, floating rule for DNS on the WAN interface breaks DNS lookups.
- DNS damn autocorrect.
-
12:10 PM Bug #2392: Adding outgoing, floating rule for DNS on the WAN interface breaks DNS lookups.
- When I do what I wrote in the first post, the DNA lookup via dnsmasq stops working -> bug.
Oliver -
11:45 AM Bug #2392: Adding outgoing, floating rule for DNS on the WAN interface breaks DNS lookups.
- Well not meaning to be pedantic about it, but the bug/pebkac question should be solved on the forum before opening a ...
-
11:34 AM Bug #2392: Adding outgoing, floating rule for DNS on the WAN interface breaks DNS lookups.
- Yeah, you're right, but when i try to differ between a bug and pebcak, one should be able to ask the question.
I'm... -
11:11 AM Bug #2392: Adding outgoing, floating rule for DNS on the WAN interface breaks DNS lookups.
- That's really a question for the forum, not the ticket system. Such discussion doesn't belong on here.
-
11:08 AM Bug #2392: Adding outgoing, floating rule for DNS on the WAN interface breaks DNS lookups.
- Hi,
yes it's also breaking if I don't assign the traffic to a queue.
The default queue is used anyway, which is... -
10:57 AM Bug #2392: Adding outgoing, floating rule for DNS on the WAN interface breaks DNS lookups.
- Does it break without the QoS parts on the rule?
QoS on floating rules should be using the "match" action, not "pa... -
10:54 AM Bug #2392 (Closed): Adding outgoing, floating rule for DNS on the WAN interface breaks DNS lookups.
- Hi,
when adding a floating rule that allows outgoing traffic on the wan interface from the wan address to any tcp/... -
03:21 AM Todo #1940: Integrate rSyslogd
- Another vote for rsyslog here too . We too would like to monitor remote deployments.
04/21/2012
-
07:12 PM Bug #2391 (Rejected): Change of Descriptions of Firewall:Rules by XMLRPC Sync
- this is by design for complex reasons. it has another ticket already
-
06:52 PM Bug #2391 (Rejected): Change of Descriptions of Firewall:Rules by XMLRPC Sync
- I created a pfSense cluster with 2 members, using CARP IPs and XMLRPC for configuration sync.
I noticed that XMLRP... -
07:11 PM Bug #2390 (Closed): Change of Descriptions of Firewall:Rules by XMLRPC Sync
-
06:53 PM Bug #2390: Change of Descriptions of Firewall:Rules by XMLRPC Sync
- posting error, please remove (replaced by #2391)
-
06:51 PM Bug #2390 (Closed): Change of Descriptions of Firewall:Rules by XMLRPC Sync
- QoS - Catch TOS 0x30 traffic Squid cache HIT
-
03:08 PM Bug #2389: CP asks for a voucher code from MACs in the passthrough list
- I just tried changing "set 0" to "set 1" for the MAC entries (rules 2-7) and it didn't fix things. Those MACs are sti...
04/20/2012
-
08:08 PM Revision d008a24e: Unbreak the system general DNS settings, it would not work anymore when set to none.
-
04:42 PM Revision 58106afc: Enable a second pty
-
03:23 PM Revision b4a89a68: Generate the correct corresponding link local from the carp mac.
-
08:38 AM Revision 40fa6dde: Allow optionally using the type of NAT reflection implementation used for 1:1 mappings with port forwards as well, in addition to allowing the old type, which is still useful in its own way.
-
07:18 AM Revision 0c963226: Add message stating which interfaces are missing.
- Suggestion from http://forum.pfsense.org/index.php/topic,48366.0.html
-
07:11 AM Revision fd863e5c: Add some missing interface types in is_interface_mismatch() and get_interface_list()'s $vfaces. Fixes #2384
-
06:20 AM Revision a6aedcd1: Clean up filter_generate_reflection_nat, remove obsolete checks, and add new checks that are now needed. Ticket #2240
-
06:20 AM Revision 112f5602: Use filter_get_direct_networks_list instead of dumping a copy of the routing table. Ticket #2240
-
06:20 AM Revision 868cd12c: Modify filter_get_direct_networks_list to optionally return an array instead, which includes subnet, friendly interface, and gateway (if applicable), for ticket #2240
-
03:40 AM Bug #2384 (Feedback): "Network interface mismatch" displayed for some valid configurations
- Applied in changeset commit:fd863e5cebe67258ed48387d6471c4411701cf6b.
-
02:47 AM Feature #2240 (Feedback): Find interface subnets and static routes without the routing table in outbound NAT rule generation for reflection
- I can't change the status of "todo" type tickets for some reason, so I'm changing this one to "feature"
With these... -
01:35 AM Bug #2253: Quality Graphs not generated after 'Reset RRD Data'
- This needs to call setup_gateways_monitor() in after enable_rrd_graphing() to fix.
-
01:33 AM Feature #2356: Fill the "Track Interface" prefix drop down list asynchronously
- I'm fine with a text box, make sure the input validation is correct.
The math function the filled the drop down is p...
04/19/2012
-
10:23 PM Feature #1965: Support Multiple IPsec Peers
- The biggest challenge is getting both ends to switch over correctly, as the remote would have to change its IP too. F...
-
01:05 PM Feature #1965: Support Multiple IPsec Peers
- More importantly would be a feature to at least have a "secondary wan" (Or a Gateway Group?) to use if the primary go...
-
10:03 PM Feature #2356: Fill the "Track Interface" prefix drop down list asynchronously
- as we discussed, I think it's fine as a text box, having a drop down with tens of thousands of values is nuts. will l...
-
09:08 PM Feature #2356 (Feedback): Fill the "Track Interface" prefix drop down list asynchronously
- Converting to a text field because I've determined that, no matter how implemented, a dropdown with 65,536 possible v...
-
06:43 PM Feature #2356 (Assigned): Fill the "Track Interface" prefix drop down list asynchronously
- Something other than that simple print loop is causing the page loads to take so long.
65,536 print statements doesn... -
06:27 PM Revision 3a83296f: fix for Bug #2334 quality rrd graphs do not automatically refresh
- id attributes can't have a period, someone didn't read w3c specs on id attributes ;-)
-
05:44 PM Revision 4b340c90: Update the default URL here for our new FreeBSD release.
-
05:30 PM Bug #2389: CP asks for a voucher code from MACs in the passthrough list
- Looking further into this issue, the output of "ipfw -deS show" under pfsense 2.0.1 is exactly the same as above and ...
-
05:04 PM Bug #2389 (Resolved): CP asks for a voucher code from MACs in the passthrough list
- Installed 2.1-DEVEL 17-Apr-2012 and simply moved my conf*.xml from 2.0.1
For testing I used a CP configuration with ... -
03:12 PM Bug #2383 (Resolved): Firmware AutoUpdate preset url dropdown not showing on IPv6 only connection
- Manifest should be OK now. The v6 server was missing a ServerAlias entry for updates.pfsense.com - confirmed they sho...
-
02:55 PM Bug #2383: Firmware AutoUpdate preset url dropdown not showing on IPv6 only connection
- v4 host contains
pfSense i386 stable updates http://updates.pfsense.org/_updaters
pfSense amd64 stable updates http... -
02:42 PM Bug #2278 (Feedback): IPv6 Carp vip both master on FreeBSD 8.3
- The latest snapshot I ran off by hand seems to do the trick with the updated CARP patches.
http://iserv.nl/files/p... -
08:15 AM Bug #2278: IPv6 Carp vip both master on FreeBSD 8.3
- Jim found a very descriptive similar issue on Open that appears to hit the exact same thing.
http://old.nabble.com/c... -
02:40 PM Bug #2384: "Network interface mismatch" displayed for some valid configurations
- The code recommended in the forum post seems appropriate. I think we only use stf for IPv6 specifically.
Commit that. -
01:19 AM Bug #2384 (Resolved): "Network interface mismatch" displayed for some valid configurations
- http://forum.pfsense.org/index.php/topic,48366.0.html
Should tap and the various IPv6 interfaces be added to the l... -
02:23 PM Bug #2334 (Resolved): quality rrd graphs do not automatically refresh
- Fixed in commit:3a83296f.
And the refresh time is actually 6 minutes, not 5.
- 11:53 AM Revision 76e91d3f: Add SUBMISSION port, fixes #2387
-
11:29 AM Bug #830 (Closed): Service provider information should be saved
- that other issue is fixed, and this original one, it's way more trouble than it's worth.
-
11:28 AM Bug #830: Service provider information should be saved
- In latest pfSense snapshot, I'm not seeing this error that Chris reported:
> also I noted if you pick United State... -
07:55 AM Feature #2387: Add (SMTP email) submission (port 587) to Firewall Rules GUI
- Wow, that was fast! 15 mins! :D
-
07:50 AM Feature #2387: Add (SMTP email) submission (port 587) to Firewall Rules GUI
- Applied in changeset commit:76e91d3ffee70fc047c64b6c9360df1e8eeffb9a.
-
07:49 AM Feature #2387 (Feedback): Add (SMTP email) submission (port 587) to Firewall Rules GUI
- SUBMISSION port added in commit:76e91d3ffee70fc047c64b6c9360df1e8eeffb9a - it will be available in the next 2.1 snaps...
-
07:33 AM Feature #2387 (Resolved): Add (SMTP email) submission (port 587) to Firewall Rules GUI
- People using e-mail clients to connect to e-mail servers should be using port 587 (not 25). Sometimes this will be th...
-
05:51 AM Feature #2386 (Pull Request Review): Bridge member that is not an assigned interface
- As suggested on #2385, a solution for bridge members showing up in unwanted places in the web GUI and the rule set wo...
-
05:25 AM Feature #2385 (Closed): Option to hide bridges or bridge members from pf-related pages based on bridge sysctls
- This should not be done in this way.
It should be possible to create bridges without assigned interfaces that is the... -
01:42 AM Feature #2385 (Closed): Option to hide bridges or bridge members from pf-related pages based on bridge sysctls
- For configurations with bridges, it might be nice to have an option to hide bridges or bridge members from pf-related...
04/18/2012
-
08:57 PM Revision 25ed9cf8: Add cheap hack to make syslogd forwarding to IPv6 work at bootup. Fixes #2370
-
06:23 PM Revision daac437f: Make sure VPN interface gateways are handled separately
-
05:00 PM Bug #2370 (Feedback): syslog.conf requires IPv6 literal
- Applied in changeset commit:25ed9cf8a4c1bd4155ee4e1881821b9e10501916.
-
04:54 PM Bug #2370: syslog.conf requires IPv6 literal
- I added a cheap fix, if we have an ipv6 forwarding IP for syslog, it restarts syslog at the end of the boot cycle, wh...
-
04:43 PM Bug #2372 (Resolved): Add static routes for gif,6rd and 6to4 endpoints
-
04:37 PM Bug #2372: Add static routes for gif,6rd and 6to4 endpoints
- It Works For Me(TM)
-
05:59 AM Bug #2372: Add static routes for gif,6rd and 6to4 endpoints
- Needs Jim to verify if it adds the right static routes, he has multi wan and multi tunnel.
-
04:10 PM Bug #2305 (Feedback): PBI db stored on var does not survive reboot
-
08:27 AM Bug #2305: PBI db stored on var does not survive reboot
- Merged, thanks!
FYI- If you put something like "Fixes #2305" or "Ticket #2305" in the commit message, redmine will... -
02:33 AM Bug #2305: PBI db stored on var does not survive reboot
- Pull request submitted 18 Apr 2012 to do as JimP suggests. Now the PBI db survives reboot. This should resolve this b...
-
04:06 PM Revision 318a0812: Use curlies to be very sure, yes
-
04:04 PM Revision da12a8a4: Make sure to push elements we don't recognize on the stack too.
-
03:40 PM Revision eaa477d2: Add the subnet bits to the config
-
03:33 PM Revision c3ce2ece: Add upgrade code that updates the dynamic gateway names to their new format new $if_$type.
- Redmine Ticket #2332. I've tested a simple upgrade with 3 dynamic Wans with varying names and that appears to have su...
-
03:30 PM Revision bf4b2596: Update pf.os a bit
-
02:17 PM Revision c91e242e: Some updates/optimizations to smart widget
-
01:11 PM Revision 67102344: Add the correct fix to pick up the IPv6 gateway for slaac interfaces
-
12:47 PM Bug #2332 (Feedback): gateways always renamed to "dynamic". Implement proper IPv6 support
- Upgrade code checked in that I tested by upgrading a 2.0 vm with 3 dynamic wans, it upgraded accordingly but might ne...
-
12:31 PM Revision ef82d62b: Merge pull request #93 from phil-davis/patch-1
- Store PBIs in /root/var/db/pbi so they persist across reboots.
-
09:41 AM Revision c0b1bc81: Make sure that SLAAC gateways show up in return_gateways_array();
- redmine ticket #1834
-
09:28 AM Bug #2278: IPv6 Carp vip both master on FreeBSD 8.3
- I have found the difference, it's the uptime of client. If I restart them all, IPv6 will not work on them.
-
07:15 AM Bug #2278: IPv6 Carp vip both master on FreeBSD 8.3
- on the one where it works :
ip -6 neigh show
2001:xxx:yyy::1 dev eth0 lladdr 00:00:5e:xx:xx:xx router DELAY
on th... -
07:05 AM Bug #2278: IPv6 Carp vip both master on FreeBSD 8.3
- Can you check if the CARP vip address is in the NDP table of any of the other machines?
On linux http://tldp.org/HOW... -
06:07 AM Bug #2278: IPv6 Carp vip both master on FreeBSD 8.3
- I have this problem, but only on one of my carp ipv6 addresses and only a few machines (not all).
I thought it was f... -
09:26 AM Revision feb88a14: Add support for SLAAC on the WAN interface, this is required for Stateless autoconf addressing.
- Normally this should only apply to Appliances that do not need to route. We automatically hook in the dhcp6 client to...
-
08:43 AM Revision 1a5f87d1: Handle multiple IPv6 DNS servers in rc.newwanipv6, remove chunk of broken code in the DHCPv6 server that added duplicate lines. Redmine ticket #2380
-
07:21 AM Bug #2383 (Feedback): Firmware AutoUpdate preset url dropdown not showing on IPv6 only connection
- fetch returns a 404...
-
07:14 AM Bug #2383 (Resolved): Firmware AutoUpdate preset url dropdown not showing on IPv6 only connection
- On a IPv6 only connection the Preset URL drop down on system_firmware_settings.php is not showing.
It is possible ... -
06:46 AM Feature #1834 (Feedback): Stateless autoconfig WAN type for IPv6
- I've added the option SLAAC to the list, this hooks into the dhcp6 client to request information only.
But it does... - 06:29 AM Revision 152c18f0: Store PBIs in /root/var/db/pbi so they persist across reboots.
- Keep the existing code for old-style PKG packages in case users on 2.1 are doing anything with PKG packages by hand. ...
-
05:57 AM Bug #2380 (Resolved): 2 IPv6 nameserver advertisements fail to configure resolv.conf
- Fix checked in, confirmed working, populates /var/etc/nameservers_v6{$if} with multiple nameservers
Ran into broken ... -
12:37 AM pfSense Packages Bug #2285 (Resolved): swapstate_check.php is being run when the Squid cache is null
- thanks for all your follow ups
-
12:31 AM pfSense Packages Bug #2285: swapstate_check.php is being run when the Squid cache is null
- This was resolved by pull request 224 on 14 March 2012.
-
12:36 AM Bug #2301 (Resolved): Adding symlinks for conf files when PBI packages have names that are substrings of each other
-
12:33 AM Bug #2301: Adding symlinks for conf files when PBI packages have names that are substrings of each other
- This was resolved by pull requests 65, 66 and 67 in March 2012.
-
12:34 AM pfSense Packages Bug #2280 (Resolved): pfblocker date() and mktime() warnings from cron job
-
12:24 AM pfSense Packages Bug #2280: pfblocker date() and mktime() warnings from cron job
- This was resolved by pull request 225 on 15 March 2012.
-
12:34 AM pfSense Packages Bug #2283 (Resolved): pfblocker array handling when alias table is empty
-
12:27 AM pfSense Packages Bug #2283: pfblocker array handling when alias table is empty
- This was resolved by pull request 225 on 15 Mar 2012
04/17/2012
-
11:16 PM Feature #1965: Support Multiple IPsec Peers
- Another possible method...
https://trac.ipsec-tools.net/wiki/FailOver -
10:32 PM Bug #1874: Captive Portal Login dies on empty input
- The patch for this broke the ability to use empty passwords. I opened issue 2377 before I realized the changes were r...
-
10:19 PM Bug #2382 (Resolved): RADIUS attribute Service-Type should not be sent with accounting packets
- According to RFC 2865, Service-Type "MAY be used in both Access-Request and Access-Accept packets". No mention is mad...
-
05:06 PM pfSense Packages Bug #2381 (Resolved): nrpe2 not restarting on save or service restart
- When changing the config of nrpe2 and you click Save or restarting nrpe from the Services menu, nrpe is not restarted...
-
04:17 PM Bug #1827 (Resolved): rc.newwanipv6 needs work
- Added seperate ticket for the double DNS server issue. Doesn't currently cause recursive configure. Marking resolved ...
-
04:12 PM Bug #1827: rc.newwanipv6 needs work
- Seems to be working ok, as-is. We'll open seperate tickets when we encounter other issues.
It fires ok for the DHC... -
04:16 PM Bug #2284 (Resolved): rc.newwanip handle case when gifs config is null
- doesn't throw a error for me anymore.
-
04:13 PM Feature #2320 (Resolved): Javascript helper to toggle subnet mask length for IPv4/IPv6 during input
- yeah seems fine to me
-
03:58 PM Feature #2320: Javascript helper to toggle subnet mask length for IPv4/IPv6 during input
- I like it so far, it appears to work as intended for me. Consider resolved?
-
04:13 PM Feature #1663 (New): DHCPv6 relay
-
04:10 PM Bug #2065 (Resolved): PHP Warning on Interface Creation (master/IPv6 branch)
- Ran into this issue as well, added a is_array() check for the DHCPdv6 array.
-
03:56 PM Bug #2332: gateways always renamed to "dynamic". Implement proper IPv6 support
- Ok, so I now name the dynamic gateways by their config type, Jim uncovered a few corner cases and I'll look into what...
-
03:39 PM Revision 2f0a49e9: Add contributed SMART Status widget - http://forum.pfsense.org/index.php/topic,48447.0.html
-
02:48 PM Bug #2278: IPv6 Carp vip both master on FreeBSD 8.3
- The last good snapshot is from http://files.pfsense.org/jimp/ipv6/
I'm still running the snapshots from Nov 25th o... -
12:15 PM Bug #2278: IPv6 Carp vip both master on FreeBSD 8.3
- I have a similar problem on 2.1-DEVELOPMENT (i386) built on Tue Apr 10 21:11:54 EDT 2012.
13 IPv4 carp OK
3 IPv6... -
01:33 PM Revision 4f8adcb6: Include the ntp facility also, should fix ntp logging
-
11:39 AM Bug #2305: PBI db stored on var does not survive reboot
- We do this for NanoBSD in /etc/rc:...
-
10:27 AM Bug #2380 (Resolved): 2 IPv6 nameserver advertisements fail to configure resolv.conf
- When we get 2 IPv6 DNS servers through rc.newwanipv6 we need to explode(" ", $ENV['new_domain_name_servers']) before ...
-
10:22 AM Bug #2370: syslog.conf requires IPv6 literal
- The binary is correct now but for whatever reason at bootup it does not send logs over IPv6. If you save the syslog s...
-
09:58 AM Feature #1834: Stateless autoconfig WAN type for IPv6
- Further investigation:
We need to extend the DHCP6 settings on the interfaces.php with the following information m... - 09:04 AM Revision 3e7016fd: Merge pull request #92 from phil-davis/patch-1
- Fix typos so that Status:Traffic Graph top bandwidth users is visible
- 08:54 AM Revision 7f8f5d01: Fix typos where css('dislay') is missing a 'p' - now the top ten bandwidth users by host IP is visible on the Status:Traffic Graph
-
06:32 AM Bug #2379 (Closed): When using squid as a proxy server Traphic graph does not show the LAN specific Ip addresses
- When using squid as a proxy server Traffic graph does not show the LAN specific Ip addresses that
are passing throu... -
06:26 AM Bug #1738: Restore fails when username in backup is not matching
- Besides It affects to version 2.0.1 also.
-
06:24 AM Bug #1738: Restore fails when username in backup is not matching
- I do not know why this big issue has such a low priority?
Some bugs prevent us from reliably doing things and trus... -
04:38 AM Bug #2378 (Resolved): Captive portal selects additional interfaces where it shouldn't
- Hello all,
There's still an annoying bug in the captive portal of pfsense 2.1 Devel. It was already present in t...
04/16/2012
-
08:07 PM Bug #2377: Captive portal fails on empty RADIUS password
- Sorry, should be under category "Captive Portal" but I can't make that change now.
-
08:07 PM Bug #2377 (Closed): Captive portal fails on empty RADIUS password
- An empty password is not sent to the RADIUS server for verification, it just produces an error. PHP code is checking ...
-
05:00 PM Revision 2e03f3e2: Strip the ::1 from the 6to4 gateway address
-
04:45 PM Revision b5191708: Re-order the system routing configure after the tunneled interfaces are configured.
-
03:40 PM Bug #2370: syslog.conf requires IPv6 literal
- Copied one of the resulting binaries to a VM and that does seem to have done the trick, I'm getting messages to my se...
-
03:29 PM Bug #2370: syslog.conf requires IPv6 literal
- I added a patch to the pfPort and rebuilt it on the snapshot servers, we'll see how it goes.
-
02:01 PM Bug #2370: syslog.conf requires IPv6 literal
- That may be the difference, as I don't remember it being pfPorts before. Somewhere along the way we may have switched...
-
01:45 PM Bug #2370: syslog.conf requires IPv6 literal
- It's not the configured IPv6 IP as one binary is working and the other one is not. But I noticed that I may have used...
-
11:09 AM Bug #2370: syslog.conf requires IPv6 literal
- Yours is larger because the binary is not stripped. I inspected the source and found that the patch was applied even ...
-
10:03 AM Feature #2117: 6RD support for ISPs like Swisscom
- Add a Enable 6rd checkbox on the 6rd or DHCP4 settings to automatically configure 6rd from DHCP option 212.
http:/... -
08:12 AM Revision 4b2bf4fc: Prevent a invalid argument on a empty array
-
08:03 AM Revision c08a5659: Only add the IPv4 gateway in the DHCPv4 config if we have a IPv4 gateway defined on the system at all.
- This makes clients trying the IPv4 transport fail a lot faster, and thus more graceful.
-
05:48 AM Bug #2363 (Resolved): IPv6 default interface missing from firewall rule
-
05:48 AM Bug #2372 (Feedback): Add static routes for gif,6rd and 6to4 endpoints
- Added code in interfaces.inc that succesfully adds static routes for 6rd, 6to4 and gif endpoints. This should fix tun...
04/14/2012
-
07:20 PM Revision eb25c881: Merge pull request #91 from bcyrill/patch-5
- Use appropriate syslog priorities.
-
07:19 PM Revision 239a2977: Use appropriate syslog priorities.
-
07:16 PM pfSense Packages Bug #1244: apache_mod_security_package missing mod_proxy.so (and perhaps others)
- Hello, any solution to this ?
thanks
-
06:53 PM Revision 64a8dbf2: Fix missing - on route parameter
-
06:53 PM Revision 711a20eb: Some IPv6 fixes for gateway groups
-
06:19 PM Revision 01a58d89: Add static routes for gif tunnel endpoints
-
06:08 PM Revision c8ed8142: Add a static route for the IPv4 relay so that 6to4 or 6rd on a OPT interface works as expected.
-
02:17 PM Bug #2370: syslog.conf requires IPv6 literal
- No success with the current snapshot (Fri Apr 13 22:04:24 EDT 2012 / i386). Just tested it and it seems the syslogd b...
-
12:15 PM Bug #2370: syslog.conf requires IPv6 literal
- Using a full install on the latest snapshot.
I thought perhaps the formatting was throwing it off, so I tried it w... -
11:27 AM Bug #830: Service provider information should be saved
- 05:28:23 < databeestje_> cmb: eri-- : dsevil : the core dump with xml2array() in combination with php 5.3 was caused ...
04/13/2012
-
08:27 PM Revision d86ef65f: Merge pull request #89 from bcyrill/patch-3
- Fixed HTML tag.
-
08:27 PM Revision 95837597: Merge pull request #90 from vizvayu/master
- Mode selection options for PowerD
-
07:13 PM Revision d46c3acd: Enable verbosity to actually put something in the logs
-
07:13 PM Revision ab9526e6: Resolves #2330. Check if there is a previous voucher config before wiping
-
07:02 PM Bug #2370: syslog.conf requires IPv6 literal
- No error here, it's working for me. I couldn't test it with an actual IPv6 capable syslog server but I captured the p...
-
07:00 PM Revision f6bda83c: Show delegated prefixes on the DHCPv6 Leases display.
-
06:58 PM Revision 9c57f387: Enable verbosity to actually put something in the logs
-
06:10 PM Revision 86c707f3: quiet change: fix indentation of xml2array function
- i.e., tabs instead of 4 spaces
-
04:50 PM Revision 59231855: Feature #1864 "Start" button for IPsec should be available for IP alias networks
- might need more testing.
http://redmine.pfsense.org/issues/1864 -
03:10 PM Bug #2330: vouchers disappear when saving
- Applied in changeset commit:ab9526e619a948da1b4ab5f5c094e7204ecb4e94.
-
02:21 PM Bug #830: Service provider information should be saved
- the statement...
-
01:55 PM Bug #830: Service provider information should be saved
- failing somewhere in this call:...
-
01:52 PM Bug #830: Service provider information should be saved
- I don't even get the countries filled in. /getserviceproviders.php yields a 500. Apparently this core dump. I'll s...
-
12:49 PM Feature #1864: "Start" button for IPsec should be available for IP alias networks
- Just pushed commit:59231855 which is about all I can do at this point.
I don't have a way of testing whether the s... -
12:24 PM Feature #1864: "Start" button for IPsec should be available for IP alias networks
- In any of those cases it doesn't matter as long as there is a VIP somewhere inside of the IPsec subnet it will work.
... -
12:21 PM Feature #1864: "Start" button for IPsec should be available for IP alias networks
- what if an ipsec had 192.168.2.0/28 and the virtual ip's had 192.168.2.1/24?
what if an ipsec had 192.168.2.0/24 and... -
11:43 AM Feature #1864: "Start" button for IPsec should be available for IP alias networks
- Would this be the proper link URL?
/diag_ipsec.php?act=connect&remoteid=192.168.44.0&source=192.168.2.1
And wha... -
12:34 PM Revision 79909926: Increase Prefix delegation size choices
-
12:33 PM Revision e1cc1f6d: Clarify text
-
11:58 AM Revision e617e9b1: Do not throw a address family error when there is just 1 gateway.
- Fix the input logic for ticket #1662
-
10:41 AM Bug #2374: When entering values in firewall rules leading and trailing spaces are not deleted
- Same thing happens for IPs also. Shouldn't be too hard to trim() before checking though.
-
10:40 AM Bug #2374 (Resolved): When entering values in firewall rules leading and trailing spaces are not deleted
- Hi,
as the topic says. If you enter a port number in the firewall rules page and you add a leading or trailing spa... -
10:30 AM Bug #1662 (Feedback): DNS server gateway selection missing input validation
- Last commit should nail it.
This only happened when the system has just 1 gateway.
04/12/2012
-
11:11 PM Revision 8bdb6879: Feature #2123 Backup RRD files using the xml dump and restore from RRD tools
- http://redmine.pfsense.org/issues/2123
-
10:06 PM Revision 0d0cb047: Fix constant. LOG_ERROR should be LOG_ERR
-
09:20 PM Revision 39121390: Fixed HTML tag.
-
07:08 PM Feature #2123 (Assigned): Backup RRD files using the xml dump and restore from RRD tools
- implemented in commit:8bdb6879
I did a backup/restore config with RRD data and it seems to work just fine.
But ... -
06:51 PM Revision d1edd7e5: Merge pull request #88 from bcyrill/patch-2
- Fix tag order.
-
06:50 PM Revision 098686af: Fix tag order.
-
06:21 PM Bug #2370: syslog.conf requires IPv6 literal
- Included the patch from the PR in snapshots to test it, and it doesn't seem to work. Like the other guy who posted on...
-
11:05 AM Bug #2370: syslog.conf requires IPv6 literal
- IPv6 IP fixed up in commit:bd29bb7baa068cb92828461207ea35f74b6c2383
Looking at the patch in the FreeBSD PR to see ... -
10:54 AM Bug #2370: syslog.conf requires IPv6 literal
- Unfortunately it appears that syslogd can only send to IPv6 when using a hostname that resolves to a quad A. I have t...
-
04:47 PM Revision 2fbd5513: Merge pull request #87 from bcyrill/patch-8
- Fixed IPv4 regression. Handles addresses with and without port.
-
04:29 PM Revision 5a27a095: Fixed IPv4 regression. Handles addresses with and without port.
-
03:07 PM Revision bd29bb7b: Add brackets to a syslog server if it's an IPv6 IP. (Though FreeBSD's syslogd still won't send to it ... http://www.freebsd.org/cgi/query-pr.cgi?pr=150530&cat=misc )
-
12:39 PM Bug #1943: PPPoE won't reconnect after link loss when using vr(4) NICs on certain ISPs only
- I commented out the line:
/usr/sbin/ngctl shutdown $1
from the file
/usr/local/sbin/ppp-linkdown
as recom... -
10:54 AM Bug #2373 (Resolved): There were error(s) loading the rules... (Floating rules bug)
- The problem is fully described here -
http://forum.pfsense.org/index.php/topic,48022.0.html
In short - traffic sh... -
08:39 AM Revision a9d156bc: Merge pull request #84 from whjvenyl/patch-1
- Update etc/inc/util.inc
- 08:21 AM Revision e371f8b9: Update etc/inc/util.inc
- 07:24 AM Revision f9519c0e: fix typo. Ticket #2371
- 07:23 AM Revision f989a6ef: fix typo. Ticket #2371
-
05:45 AM Bug #2367: display negate rules in firewall_rules.php and evaluate when added
- Normally the NEGATE rules will only trigger when the destination is set to "any".
If we change the foreach($config... -
05:38 AM Bug #2372 (Resolved): Add static routes for gif,6rd and 6to4 endpoints
- We need to add static routes for 6rd,6to4 and IPv6 GIF endpoints that do 6in4 traffic. Otherwise these tunnels will n...
-
05:28 AM Revision 3f5f7ad3: Add modified version of user https://github.com/bcyrill patch that requires a IPv6 literal when used with a port.
-
05:28 AM Revision 4b51cc2e: Revert "Also validate IPv6 literals."
- This reverts commit 21b586aa12ca35ccf54d4ddf66b0305e12e62a4d.
-
05:07 AM Revision a119ecf8: Modify get_configured_ip_aliases_list to optionally return the full vip entry and use this information to get the subnet and not just the IP in filter_get_direct_networks_list.
-
03:58 AM Revision e9eae060: For consistency, generate a masked out subnet IP from the IP alias instead of using the IP directly.
- 03:31 AM Revision e1fdb47b: Revert "RADIUS accounting updates are needed for PPPoE and L2TP too"
- This reverts commit b6393be173ffd67eef1acaadf9624ce06b386d82.
- 03:29 AM Revision 9caa10bc: this is only valid in mpd5 (really?...) Revert "RADIUS accounting updates are needed for PPPoE and L2TP too"
- This reverts commit 02b14dcb49da8dc278e87785bb3f811336bf1fd0.
-
03:19 AM Bug #2371 (Resolved): Typo in shaper.inc
- fixed, thanks!
- 03:02 AM Revision b6393be1: RADIUS accounting updates are needed for PPPoE and L2TP too
- 03:02 AM Revision 02b14dcb: RADIUS accounting updates are needed for PPPoE and L2TP too
-
12:43 AM Revision 6791c2ab: Also return IP alias VIP networks in filter_get_direct_networks_list.
04/11/2012
-
08:41 PM Revision 0d4bedeb: Merge pull request #82 from bcyrill/patch-7
- Remove [] of literal IPv6 addresses
-
08:12 PM Revision 72cd706b: Remove [] of literal IPv6 addresses
-
07:21 PM Revision 21b586aa: Also validate IPv6 literals.
-
05:26 PM Bug #2371 (Resolved): Typo in shaper.inc
- When I was fiddling with my traffic shaping, I found that my limits stopped loading. When I rebooted the firewall, I ...
-
05:09 PM Bug #2370 (Resolved): syslog.conf requires IPv6 literal
- If I remember correctly syslogd uses literal IPv6 addresses (e.g. in square brackets) in its configuration file (also...
-
04:37 PM Revision bf7f1e5f: Merge pull request #80 from bcyrill/patch-4
- Removed flawed HTML.
-
04:34 PM Revision 2afb2c37: Removed flawed HTML.
-
04:02 PM Revision e6138bf2: Remove duplicated function
-
03:58 PM Revision f898c1a9: Add alias support to static routes (needs some testing) Ticket #2239
- Conflicts:
etc/inc/filter.inc
etc/inc/util.inc
usr/local/www/system_routes_edit.php -
02:47 PM Revision bb837468: When renaming a user, make sure to remove the previous user or it gets left in /etc/passwd.
-
02:46 PM Revision fdcf104c: When renaming a user, make sure to remove the previous user or it gets left in /etc/passwd.
-
12:51 PM Bug #2204: DHCP reports client lease, but DNS doesn't know about
- This may be an error known for version 2.55 as used by pfSense. This bug has been fixed later and shall be resolved w...
-
12:03 PM Feature #2239: Use Firewall Alias in Static Routing setup
- Mostly done in RELENG_2_0 in commit:c9e04cd59054cf839af96cdf71cfc4cf58ccabaf and in master in commit:f898c1a98213ec6b...
- 01:12 AM Revision 53c210dd: Added mode selection options for PowerD.
-
12:02 AM Bug #2132 (Closed): Multi-wan inbound connections might cease to function when rules with forced-gateway exist on the same interface
- replaced by #2367 which better specifies actual issues here.
-
12:02 AM Bug #2367 (New): display negate rules in firewall_rules.php and evaluate when added
- the fact the negate policy routing rule isn't shown is bad as it has lead to unintended consequences (ends up passing...
04/10/2012
-
11:05 PM Bug #2366: Error in User Manager - Privileges are not being enforced
- An example of what happens. User is sgroat. Granted admin access. Auth is through LDAP. When user logs on, logon is s...
-
09:32 PM Bug #2366 (Rejected): Error in User Manager - Privileges are not being enforced
- not a legit bug report. the CLI behavior is expected, and assigning privileges as described works. no idea what a "20...
-
09:29 PM Bug #2366 (Rejected): Error in User Manager - Privileges are not being enforced
- After adding a user and granting that user all privileges (both by adding to admin group and manually selecting all p...
-
08:42 PM Revision c9e04cd5: Add alias support to static routes (needs some testing) Ticket #2239
-
08:56 AM Feature #2365 (Rejected): add color to rules
- Duplicate of #130
-
08:51 AM Feature #2365 (Rejected): add color to rules
- It would be nice to assign a color on each firewall rule.
This make more easy to indentify rule on the liste -
07:59 AM Feature #1829 (New): CARP with IPv6 support
- Running radvd in debug mode...
-
03:44 AM Bug #1676 (Resolved): dead IPv6 gateway causes kernel panics
- Considering this resolved, seen no hangs in a month
04/09/2012
-
10:12 PM Bug #2364 (Resolved): PPPoE Server doesn't restart correctly
- After editing, saving, and applying changes on a PPPoE server, mpd is left not running. It logs the following
<pre... -
08:07 PM Bug #2324 (Closed): AES 256 doesn't work with glxsb
- This has been opened as a FreeBSD PR. glxsb only supports AES128, anything higher breaks which it technically shouldn...
-
02:45 PM Revision 2fe06a32: Remove this faulty piece of gateway code, it overwrites the existing entries that return_gateways_array() returns.
- It doesn't take any address families into account either.
-
12:14 PM Revision 6e5d84ba: Restore this piece of logic, otherwise the firewall rules break.
-
11:42 AM Bug #2363: IPv6 default interface missing from firewall rule
- Thanks. just applied your patch manually to filter.inc, and it fixed the problem.
-
09:28 AM Bug #2363 (Feedback): IPv6 default interface missing from firewall rule
- Apologies for the breakage, I removed a piece of logic and didn't have the oversight to see what it would do.
It's... -
07:44 AM Bug #2363 (Resolved): IPv6 default interface missing from firewall rule
- This is a bug introduced by last yesterday's update. Worked fine before that. (2.1-DEVELOPMENT (amd64)
built on Sun...
04/08/2012
-
06:55 PM Revision c616b3c7: Correct the variable names for the duplicate stf check
-
06:47 PM Bug #2362 (Resolved): Deleting last/only port forward doesn't remove from secondary
- if you delete the last/only port forward from the primary, it doesn't get removed from the secondary on config sync.
-
06:41 PM Revision 4e83a8f2: Remove this piece of code, it loads even on interfaces not configured for track. Really needs asynchronous javascript.
-
06:37 PM Revision 319c2bfd: Also use the prefix calculation function here.
-
06:36 PM Revision 8b198c64: Prevent duplicate 6rd or 6to4 interfaces, these conflict and both use the stf0 adapter. Only 1 can be active.
- Move piece of code into function, we need it more places, tighten rules for proto 41 traffic.
Attempt to micro optimi... -
06:13 PM Revision e7a9f730: Merge pull request #79 from bcyrill/patch-3
- Merge array and keep unchanged values.
-
06:07 PM Revision adc3353e: Merge array and keep unchanged values.
-
05:12 PM Feature #2361 (Resolved): router adv. daemon only allows for one subnet / limited options
- The router adv. daemon configuration probably deserves its own page, instead of tugging it under dhcpv6.
For examp... -
05:10 PM Bug #2360 (Resolved): OpenVPN "tap" mode not working
- OpenVPN establishes the connection fine, but the bridge is not setup correctly. ARP replies are not answered via the ...
-
05:08 PM Bug #2314: Members to bridge not added
- confirming this issue on 2.1-DEVELOPMENT (amd64)
built on Sat Apr 7 22:44:34 EDT 2012
FreeBSD 8.3-RC2
(install... -
05:06 PM Bug #2359 (Resolved): Typo: OpenVPN Configuration Page has two items "Server DHCP Bridge Start"
- Line 1146 /usr/local/www/vpn_openvpn_server.php should say "Server DHCP Bridge End" (not "Start" as it currently say...
-
04:48 PM Feature #2358 (Resolved): NAT64 support
- example http://ecdysis.viagenie.ca/
-
04:47 PM Feature #2357 (New): Support Dual Stack Lite
- Tunnel IPv4 over Native IPv6.
-
04:17 PM Feature #2356 (Resolved): Fill the "Track Interface" prefix drop down list asynchronously
- When a interface is selected as a IPv6 "Track interface" type it will calculate all possible prefix posibilities in a...
-
04:10 PM Bug #2352 (Resolved): Only allow 1 6rd or 6to4 interface
- Code checked in that triggers for me. It succesfully blocks a 2nd 6to4 or 6rd.
-
11:56 AM pfSense Packages Bug #2355 (Resolved): Tinydns logs won't parse records containing ":0" in the time stamp
- Log record from tinydns containing :0 in the time stamp aren't showing up in the log
for example 2012-04-08 12:36:08... -
04:52 AM Bug #1107: mpd on AMD64 generates invalid checksums with NAT
- PPPoE server also impacted.
-
02:33 AM Feature #1826: PPPoE server IPv6 support
- After talking with Jim about it we both agree that this is a huge undertaking.
You would need either static addres...
04/07/2012
-
10:20 PM Revision 26b89905: Move some constants in gitsync closer to the top of the source code and add some new ones of potential interest to those reconfiguring gitsync. Also modify messages to indicate that Git URLs are also allowed.
-
09:55 PM Revision 0b4ae4b5: Check for this function before calling it to avoid an error when hitting that line for pages that don't include the js file for it.
-
06:25 PM Revision 93cd15be: Correct typo in the filter rule
-
05:20 PM Revision 5411c084: Add automatic firewall rules that allow traffic destined for a downstream delegated prefix.
- The downstream router is the one to decide what to do with it. This can still be overridden by user rules, just like ...
-
03:37 PM Revision d48ed103: Change the command to reflect the new, just added dhcpleases6 binary for triggering route injection.
-
02:47 PM Feature #2347: Add routes into the routing table for delegated IPv6 prefixes.
- ok, the dhcpleases6 triggers adding of routes and that works, I can still access the ipv6 internet from behind 3 rout...
-
04:22 AM Feature #2347 (Feedback): Add routes into the routing table for delegated IPv6 prefixes.
- * Code checked in, Ermal added a command option to dhcpleases to trigger the external php script that adds routes for...
-
01:18 PM Revision 8d923616: it needs to point to a existing file otherwise it will not launch.
-
11:13 AM Revision acbb62fd: Add the -h parameter which is required for dhcpleases, might need to be removed later.
-
09:43 AM pfSense Packages Bug #2350: Freeradius2 does not start up
- pfSense 2.1 needs .pbi packages for installation. At the moment there are no pbis for freeradius2.
-
06:03 AM pfSense Packages Bug #2353: squid-reverse installation failure
2.1-DEVELOPMENT (amd64)
built on Thu Apr 5 12:15:36 EDT 2012
FreeBSD 8.3-RC2-
06:02 AM pfSense Packages Bug #2353 (Resolved): squid-reverse installation failure
- Beginning package installation for squid-reverse .
Downloading package configuration file... done.
Saving updated p... -
04:21 AM Bug #2352 (Resolved): Only allow 1 6rd or 6to4 interface
- Currently it is possible to configure more then 1 interface for 6to4/6rd, however, both use the same stf0 adapter so ...
04/06/2012
-
11:45 PM Revision ee965a5c: fix for Bug #2231 --- Dashboard: Traffic Graph: Unable to save settings
-
09:43 PM Revision 556e760d: fix indentation.
-
08:56 PM Revision 1ed88e06: fix a syntax error
-
07:57 PM pfSense Packages Bug #2351 (Resolved): Bandwidthd does not start up
- 2.1-DEVELOPMENT (amd64)
built on Thu Apr 5 12:15:36 EDT 2012
FreeBSD 8.3-RC2
Bandwidthd package 2.0.1.3
Band... -
07:50 PM pfSense Packages Bug #2350 (Resolved): Freeradius2 does not start up
- On
2.1-DEVELOPMENT (amd64)
built on Thu Apr 5 12:15:36 EDT 2012
FreeBSD 8.3-RC2
Installing Freeradius2 seems ... -
07:41 PM Bug #2231 (Resolved): Dashboard: Traffic Graph: Unable to save settings
- fixed in commit:ee965a5c
I feel kinda sorta like this patch took longer and involved much more changed lines of co... -
12:49 PM Bug #2231: Dashboard: Traffic Graph: Unable to save settings
- the issue still exists in
2.1-DEVELOPMENT (i386) built on Thu Apr 5 11:32:38 EDT 2012 FreeBSD 8.3-RC2
with Firef... -
06:15 PM Revision 0416d9a0: fix for #2289: Logic error in firewall rule interface selection for drop-down menu case
-
06:10 PM Bug #2349 (Resolved): vlan(4) needs altq adaption on FreeBSD 8.3++
- The vlan(4) code has been put to use if_transmit interface on 8.3 and up of FreeBSD and a solution needs to be found ...
-
06:08 PM Revision 092462dc: Add a dhcpleases monitor to the DHCPv6 server which will trigger automatic creation of routes into the routing table so that prefix delegation will just work.
- Redmine ticket #2347
-
05:16 PM Revision 48cb641a: Merge pull request #78 from Whizkidzz/master
- Added "interface_selection" to enable interface selection in tinydns
-
05:14 PM Revision 9d14f808: Merge pull request #77 from Whizkidzz/RELENG_2_0
- Releng 2 0
-
05:09 PM Revision d33e772f: Merge pull request #76 from bcyrill/patch-2
- Fixed Bug #2348
-
05:00 PM Revision adb29e55: Fixed Bug #2348
-
04:31 PM Revision 05d908db: Added "interface_selection" type to enable interface selection in tinydns server
- This is usefull in multiwan setup and to check if a server behind pfsense is still running.
So that tinydns can chang... -
03:04 PM Revision f3d91215: Bug #2329: checkbox js problem on diag_logs_settings.php
-
02:58 PM Revision c8610dc9: aggh javascript lines terminated by \n instead of semicolon
-
02:45 PM Revision 3df59bab: don't delete port aliases used by load balancer
-
02:41 PM Revision 3f3ab846: Merge pull request #75 from bcyrill/patch-1
- Replace is_function with function_exists
-
02:21 PM Revision 85a46fbd: Added interface_selection to choose a interface in tinydns failover selection
- Changed the $text so that no "option value" is preselected when adding a newrow with addrowto function.
-
02:17 PM Revision 44c70591: Added rowsize[] for use in row_helper_dynamic.js
-
02:14 PM Revision 91b2f623: Replace is_function with function_exists
-
02:13 PM Revision 177a823e: Added empty option line so not to write to config.xml if not filled in
-
02:10 PM Bug #2289 (Resolved): Logic error in firewall rule interface selection for drop-down menu case
-
02:10 PM Bug #2289: Logic error in firewall rule interface selection for drop-down menu case
- fixed in commit:0416d9a0
-
02:01 PM Revision de69fab3: Added interface_selection for use in tinydns
- Corrected the use of objectsize so that if its "undefined" the correct "rowsize[]" is used
which if used outside the ... -
12:37 PM Bug #2063: PHP Memory Usage too high for 128MB RAM Systems (like ALIX)
- I'm not sure where it is in the code offhand, but it's configured under System>Advanced and should be easy to track b...
-
12:15 PM Bug #2330 (Feedback): vouchers disappear when saving
- I've troubleshooted and confirmed that in this scenario, lines 229-244 here are being executed when you click "Save";...
-
11:04 AM Bug #2329 (Resolved): checkbox js problem on diag_logs_settings.php
-
11:00 AM Bug #2329: checkbox js problem on diag_logs_settings.php
- fixed in commit:f3d91215
-
10:40 AM Bug #2348 (Resolved): rc.filter_synchronize is broken
- The recent "Move CARP settings from pkg XML to a real PHP page" (commit:f97a5b0419d0350cc85b91d180238975c308ac07) bro...
-
09:56 AM Feature #2347: Add routes into the routing table for delegated IPv6 prefixes.
- ...
-
08:30 AM Feature #2347 (Resolved): Add routes into the routing table for delegated IPv6 prefixes.
- Currently we support Prefix Delegation in the DCHPv6 server (ISC dhcpd 4.2.3). However, the dhcpd server does not add...
-
09:28 AM Revision eab2db68: Make sure that we use the right interface for 6rd
-
09:27 AM Revision df52abf1: Unbreak rc.filter_synchronize, add )
-
07:38 AM Bug #2333 (Resolved): CARP filter_synchronize PHP error, can not break
-
07:01 AM Feature #2117 (Feedback): 6RD support for ISPs like Swisscom
- More debugging revealed the following, SwissCom and ATT do not filter inbound IPv6 traffic for IPv4 space they do not...
04/05/2012
-
11:10 PM Revision c2feff64: restore default dropdown values of 24/64 bits
- now that feature #2320 behavor is a bit different regarding change of
existing set value when switching between ipv4 ... -
11:09 PM Revision b771e469: change behavior a bit on #bits dropdown
- this is prepwork for restoring 24/64 bit defaults in vpn_ipsec_phase2
-
10:17 PM Revision 6255beda: add feature #2320 to vpn_ipsec_phase2.php.
- note: had to disable existing behavior that modified the value of the
behavior.
existing behavior that disables/enab... -
10:17 PM Revision 0f907a68: bug fix for #2320: on firewall_virtual_ip_edit.php it jumps to a length of 1 on a valid ipv4
-
10:17 PM Revision f57a578d: work around a redeclaration error.
- i'm going to start a discussion about making sure all require() calls
become require_once() calls but until then i ha... -
09:11 PM Revision f99aa333: Unbreak interface.inc after manual merge
-
09:08 PM Revision 87744d53: missed a spot for feature #2320 toggle subnet mask
-
09:07 PM Revision 4459f03d: Remove slipped line
-
08:48 PM Revision d7afd900: use existing filter_expand_alias (well, via a wrapper) instead of
- reinventing it
-
08:30 PM Revision 67898061: Unbreak openvpn
-
08:30 PM Revision d34b186c: Unbreak openvpn
-
08:24 PM Revision ccf346dd: Bump config version to take care of new vips
-
08:23 PM Revision 00b97dee: Reread config after doing footshooting
-
08:22 PM Revision 7b47bd4c: Make vips vhid be unique per parent interface!
-
08:13 PM Revision 4d0c032c: Make vips vhid be unique per parent interface!
-
07:06 PM Feature #2320: Javascript helper to toggle subnet mask length for IPv4/IPv6 during input
- I've restored default 24/64 bits.
I had to modify the normal behavior on dropdown value changes between ipv6 and i... -
06:47 PM Feature #2320: Javascript helper to toggle subnet mask length for IPv4/IPv6 during input
- Okay, all my changesets are committed now. Gotta think hard about this one then.
-
06:07 PM Feature #2320: Javascript helper to toggle subnet mask length for IPv4/IPv6 during input
- it should still default that way on IPsec. For v4 addresses, show 1-32 and default to 24, and for v6, show 1-128 and ...
-
06:03 PM Feature #2320: Javascript helper to toggle subnet mask length for IPv4/IPv6 during input
- In vpn_ipsec_phase2.php there is some existing client-side JavaScript logic that changes the selected value for the #...
-
05:33 PM Feature #2320: Javascript helper to toggle subnet mask length for IPv4/IPv6 during input
- fixed firewall_virtual_ip_edit.php (will commit soonish)
-
05:04 PM Feature #2320: Javascript helper to toggle subnet mask length for IPv4/IPv6 during input
- added on system_routes_edit.php
-
03:38 PM Feature #2320: Javascript helper to toggle subnet mask length for IPv4/IPv6 during input
- Add on system_routes_edit.php too (needs gateways defined to save)
on firewall_virtual_ip_edit.php it jumps to a len... -
06:36 PM Revision 01ed452e: Load Balancer: allow port aliases in Pools and Virtual Servers. (PEV-394754)
-
06:31 PM Todo #2346 (Closed): do we need to change our require() calls to require_once()?
- Not sure if this is the right venue to start a discussion, but...
My change to vlsb.inc as part of this changeset:... -
06:15 PM Revision 99f6b2a9: Merge pull request #74 from irvingpop/master
- Modify low-RAM threshold for disabling PHP APC
-
06:04 PM Revision 430b921b: Update etc/rc.php_ini_setup
-
05:47 PM Revision c1a104c7: Correct the fieldname we need to look into so we actually configure the tunneled interfaces.
-
05:47 PM Revision cb515a86: Add a fix so that proper rules for 6to4 and 6rd are created which would otherwise generate rule errors.
- Aren't tunneled interfaces fun!
-
05:10 PM Revision 0917cb21: load balancer: allow IPv4 subnets up to 64 addresses in Pools and Virtual Servers (PEV-394754)
-
05:10 PM Revision 9859b2b5: minor changes
- - aggh hard tab in a string
- aggh brackets in case clauses -
05:10 PM Revision 939b2d75: normalize indentation.
-
04:28 PM pfSense Packages Bug #2345 (Resolved): Varnish3 Install Fails on pfsense 2.1 Head
- I've found a little bug in /etc/inc/pkg-utils.inc on pFsense 2.1 HEAD Releases with pbi support.
It's because of t... - 03:33 PM Revision 6fb4a0b1: Add post config and correct variable names
- 03:14 PM Revision 7839ec18: Remove custom options from basic settings page
- 03:10 PM Revision ac2cfab2: Ensure interfaces are saved correctly
- 02:45 PM Revision a7caf4d6: fix typo
- 02:41 PM Revision 49f81faa: Add unbound user
- 02:19 PM Revision 27bb6557: Setup chroot environment for unbound
-
02:04 PM Bug #2063: PHP Memory Usage too high for 128MB RAM Systems (like ALIX)
Pull request for solution #1 here: https://github.com/bsdperimeter/pfsense/pull/74
Regarding #2 (auto-set the ...- 01:17 PM Revision 3f2e3bcf: Remove Extra brace
- 01:09 PM Revision 9e7cc68f: Use global variable
- 01:08 PM Revision 89fd3ed3: Use isset() for DNSSEC status
- 01:07 PM Revision 4b7ea181: Specify path to unbound config file
- 12:18 PM Revision 830a82e7: Merge pull request #73 from phil-davis/master
- Minor text typo fixes to recent unbound file commits
- 12:16 PM Revision 8314e2a3: Handle enable/disable options
- 12:01 PM Revision 72049148: A minor typo fixed
- 11:54 AM Revision fc6e0fbf: Was looking at what is coming in new builds and noticed a couple of typos and small point of English grammar, so thought it worth 5 minutes to update it.
- 11:31 AM Revision 4ed3cc97: Add input checks
- 11:21 AM Revision f196aba3: Add select box for outgoing queries
- 11:13 AM Revision 467748e3: Better descriptions and cosmetics
- 11:08 AM Revision 43a987e4: Add ACL id functions
- 11:04 AM Revision eac1d3f9: Correct wording
- 11:03 AM Revision bd82f06b: Correct links
- 10:59 AM Revision 2bb29c16: A whole bunch of changes to the general settings page and advanced settings
- 10:59 AM Revision 27d98335: Add Access Lists page for Unbound ACLs
- 09:19 AM Revision 431f6526: Merge branch 'master' of github.com:bsdperimeter/pfsense
- 09:18 AM Revision 14b1279d: Add Unbound GUI bits
-
07:38 AM Bug #2333: CARP filter_synchronize PHP error, can not break
- This was a setup with 2 carp members that only shared a single ipv6 vip.
Config sync was on the LAN interface over... -
07:27 AM Bug #2338: outbound NAT rules rewrite themselves if active interface is deleted
- the issue is it removes the interface from the outbound NAT rule and then assumes WAN when there is no interface. del...
Also available in: Atom