Activity
From 05/22/2012 to 06/20/2012
06/20/2012
-
04:32 PM pfSense Packages Bug #2350: Freeradius2 does not start up
- .PBIs for amd64 and i386 are now up.
freeradius.inc was modified to fit pfsense2.1 environment.
Basic authenticatio... -
03:27 PM pfSense Packages Bug #2509 (Resolved): Snort pfsense_rules should go away
- Snort's pfsense_rules no longer exists and should be removed from the package.
-
05:45 AM Bug #1841: TCP state issue when traffic passing through a GRE tunnel within IPSEC
- Sorry, should have mentioned, both pairs of firewalls are running 2.0.1
-
05:44 AM Bug #1841: TCP state issue when traffic passing through a GRE tunnel within IPSEC
- I have the same problem as well, over gif tunnels as well as gre.
I use IPSEC transport mode between the CARP WAN ...
06/19/2012
-
04:15 PM Bug #2038: Some 3G WANs on 2.0.x do not come up on cold boot
- Found a generic 3G modem device wader that caters to a lot of existing kit. Biggest drawback is that it's python. Not...
-
02:43 PM Bug #2507 (Rejected): nanobsd is incredibly slow to save
- Duplicate of #2401
-
02:42 PM Bug #2507 (Rejected): nanobsd is incredibly slow to save
- Since upgrading to 2.1 snapshots the web interface is incredibly slow to save any settings. The pages load quickly en...
-
01:59 PM Bug #2458 (Resolved): Pfsense not registering DNS servers found by PPP
-
01:35 PM Bug #2458: Pfsense not registering DNS servers found by PPP
- Works for me too now, thanks a lot.
-
11:56 AM pfSense Packages Bug #2345 (Resolved): Varnish3 Install Fails on pfsense 2.1 Head
-
10:11 AM pfSense Packages Bug #2345: Varnish3 Install Fails on pfsense 2.1 Head
- I can now confirm that the latest snapshot [2.1-BETA0 (amd64) built on Mon Jun 18 20:06:29 EDT 2012] fixes the proble...
-
03:22 AM Bug #2506: filterdns needs help for IPv6
- Aliases can have both IPv4 and IPv6 addresses. Ermal did add some IPv6 support bits, but I'm not sure if he added qua...
-
02:17 AM Feature #1668: OpenVPN Client Export support Tunnelblick
- Creating a Tunnelblick configuration (not a installer bundle) seems pretty straightforward as the uncompressed config...
06/18/2012
-
11:45 PM Bug #2506 (Resolved): filterdns needs help for IPv6
- filterdns appears to solely use IPv4 IPs in aliases. Need to determine how to handle that, especially whether PF tabl...
-
10:55 PM Feature #2505 (Resolved): Toggle button to disable/enable multiple firewall rules
- I'd like to be able to disable and enable multiple firewall rules at once. It would make it easier for troubleshootin...
-
04:14 PM Bug #2414: IPv6 DHCP WAN, issue routing firewall-generated traffic
- Just tested a upgrade from a 2.0.2 VM to 2.1, configured WAN for DHCP6 and LAN as track, prefix id. 0
Does not bring... -
03:45 PM Bug #2503: Changing monitor IP results in "The IPv6 monitor address <IPv4 IP> can not be used with a IPv4 gateway'."
- I saw room for improvement regardless, we now have a ipprotocol tag so we don't have to guess the address family. Jus...
-
02:58 PM Bug #2503: Changing monitor IP results in "The IPv6 monitor address <IPv4 IP> can not be used with a IPv4 gateway'."
- edit a static IPv4 gateway, blank out the monitor IP, save. Edit it again, try to put in a monitor IP, and it does this.
-
02:51 PM Bug #2503 (Feedback): Changing monitor IP results in "The IPv6 monitor address <IPv4 IP> can not be used with a IPv4 gateway'."
- Can you give me what specific case this applies too? I can't replicate it with a static IPv4 gateway.
-
02:47 PM Bug #2503: Changing monitor IP results in "The IPv6 monitor address <IPv4 IP> can not be used with a IPv4 gateway'."
- Not able to replicate just yet.
I have a static gateway on my LAN for the Cisco 1811 and I can add a monitor IP just... -
03:24 PM Bug #2458 (Feedback): Pfsense not registering DNS servers found by PPP
- Ok, replaced cut with awk and now it does what I intended, fixed on PPPoE test and PPP 3G test. (v4 only)
-
11:06 AM Bug #2458 (New): Pfsense not registering DNS servers found by PPP
-
02:53 PM Feature #2462 (Resolved): New 3G (PPP) provider
- Yeah, *99# is the default dial string for these types of devices, similar to bluetooth. Pretty much the defined dial ...
-
02:51 PM Feature #2471 (Resolved): null routing of unused address space
- Appears to be resolved?
-
02:43 PM Bug #2483: IPv6 Interface Aliases not functioning
- Ok, so I added code to add the IP alias for IPv6, but removing does not work.
Ermal, can you add support for IPv6 ... -
12:31 PM pfSense Packages Bug #2345: Varnish3 Install Fails on pfsense 2.1 Head
- I will wait a couple of days, try the new snapshot and report back the status.
In the mean time, thanks! -
11:38 AM pfSense Packages Bug #2345 (Feedback): Varnish3 Install Fails on pfsense 2.1 Head
- This is because the package is set to download from a non-pfSense site, something we're trying to clean up. The PBI i...
-
11:17 AM pfSense Packages Bug #2345: Varnish3 Install Fails on pfsense 2.1 Head
- I can confirm this workaround to work on 2.1 [2.1-BETA0 (amd64) built on Mon Jun 11 18:14:31 EDT 2012].
-
03:06 AM Bug #2349: vlan(4) needs altq adaption on FreeBSD 8.3++
- Working great for me now, thanks Ermal for your hard work!
06/17/2012
-
09:43 PM Feature #2504 (New): lagg enhancements
- The FreeBSD man page for lagg gives an example of configuring a lagg with a WiFi interface as a member.
The pfSens... -
06:28 PM Bug #2503 (Resolved): Changing monitor IP results in "The IPv6 monitor address <IPv4 IP> can not be used with a IPv4 gateway'."
- adding a monitor IP to a static IPv4 gateway results in "The IPv6 monitor address <IPv4 IP> can not be used with a IP...
-
04:48 PM Bug #2502 (Resolved): PHP Fatal error, encrypted_configxml() redeclared.
- Should be fixed now, caused by external config loader.
-
04:10 PM Bug #2502 (Resolved): PHP Fatal error, encrypted_configxml() redeclared.
- PHP Errors:
[01-Jan-2000 01:11:16 UTC] PHP Fatal error: Cannot redeclare encrypted_configxml() (previously declared...
06/16/2012
-
04:48 AM Feature #2501 (Resolved): Add no-sync option for firewall rules
- Add an option to firewall_rules_edit.php for no-sync to keep states from being synced via pfsync.
06/15/2012
-
06:56 PM Feature #2462 (Feedback): New 3G (PPP) provider
-
06:26 PM Feature #2462: New 3G (PPP) provider
- Okay, it's *actually* in github now. Forgot to 'git push' again. ;-)
-
06:22 PM Feature #2462: New 3G (PPP) provider
- Seth, serviceproviders.xml is in our repos but there's an upstream.
I'm not sure how to specify the "phone number" o... -
04:50 PM Feature #2462: New 3G (PPP) provider
- Seems like low hanging fruit.
Add a PPP device under interfaces assign, there, create a new PPP and there is a dro... -
05:53 PM Bug #2483: IPv6 Interface Aliases not functioning
- Seth, this one's way over my head. (at least for now.)
-
04:45 PM Bug #2483: IPv6 Interface Aliases not functioning
- This needs both frontend and backend code. Darren can you have a look.
-
04:42 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- Johannes, am I correct in understanding that you want to announce multiple prefixes with multiple settings? e.g. diff...
-
03:26 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- Regarding the "common list" you mentioned, there seem to be quite a few minor variations of it but yeah I find that t...
-
03:24 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- Sorry, forgot about the bit that actually modifies /var/etc/radvd.conf. The bit that modifies /cf/conf/config.xml is...
-
02:49 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- user interface to add subnets looks great. But settings are not reflected in /var/etc/radvd.conf . Should the be? wi...
-
03:47 PM Bug #2496: The use of php exec() and php system() with pipe '|' will fail if the first output of a os command is long enough.
- Maybe xdebug issue or something else.
-
02:41 PM Bug #2496: The use of php exec() and php system() with pipe '|' will fail if the first output of a os command is long enough.
- Hi Chris
I don't know why you guys can't reproduce this.
The code is being watched live through Xdebug v2.1.3 a... -
04:47 AM Bug #2496 (Feedback): The use of php exec() and php system() with pipe '|' will fail if the first output of a os command is long enough.
- Not sure what you're seeing, but none of us can replicate that with the exact same thing you're doing substituting di...
-
12:25 AM Bug #2496 (Closed): The use of php exec() and php system() with pipe '|' will fail if the first output of a os command is long enough.
- System:
uname -a
FreeBSD pfSense.localdomain 8.3-RELEASE-p2 FreeBSD 8.3-RELEASE-p2 #0: Mon Jun 11 02:55:34 EDT ... -
02:33 PM Bug #2497 (Rejected): Captive Portal authentication is bypassed
- No and please discuss this on the forum.
-
09:35 AM Bug #2497 (Rejected): Captive Portal authentication is bypassed
- As suggested in http://forum.pfsense.org/index.php/topic,50311.0.html the "CP multiinstance patch" might have broken ...
-
10:37 AM Todo #2485: Add Status > Services entry for radvd if RA is enabled
- Jim P wrote:
> Don't forget about the widget, too :-)
done.
-
09:47 AM Todo #2485: Add Status > Services entry for radvd if RA is enabled
- Seth or Darren will need to look over the enable test probably, I'm not sure what all is needed there.
Don't forget ... -
09:37 AM Todo #2485: Add Status > Services entry for radvd if RA is enabled
- Added in commit:0ed8d746e2.
Needs Feedback / Closing.
06/14/2012
-
07:32 PM Feature #1361 (Feedback): DNSMasq, source interface and IPSec VPNs
-
12:25 PM Feature #1361 (Resolved): DNSMasq, source interface and IPSec VPNs
- Hugh, your patch is in github now.
-
05:30 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- Applied in changeset commit:8c4ee06242721655f29d98064516d0c26f723b68.
-
05:22 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- and forgot to commit that work until just now
-
04:12 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- just added subnets and support for aliases.
-
01:00 PM Bug #2494 (Feedback): diag_packet_capture.php needs input validation
- Applied in changeset commit:622caf8fee84e0744da2b4cd9ea5d1fc4c499388.
-
12:43 PM Bug #2494 (Assigned): diag_packet_capture.php needs input validation
-
12:07 PM Bug #2494 (Resolved): diag_packet_capture.php needs input validation
- fixed in github.
not quite sure that dropdowns need additional validation because you can't select an option that ... -
12:24 PM Bug #2398: tftpd and tftp-proxy (inetd?) dies after WAN periodic reset
- I've not spotted the trigger condition, but I can confirm I'm seeing the same condition
with '2.1-DEVELOPMENT (amd64... -
08:53 AM Bug #2495 (Closed): pfsense doesn't seem to know what its WAN IP is
- Having upgraded from stable to 2.1-BETA0 (i386) (built on Mon Jun 11 03:04:03 EDT 2012), a strange issue has occurred...
06/13/2012
-
12:14 AM Bug #2494: diag_packet_capture.php needs input validation
- Some of this is already done but doesn't actually report an error to the user, it simply leaves the invalid parameter...
06/12/2012
-
11:06 PM Bug #2494 (Resolved): diag_packet_capture.php needs input validation
- diag_packet_capture.php does minimal if any input validation. Every field on that page needs to be verified.
Interf... -
03:53 PM Bug #2437: PHP missing bcmath (that was solved for pfSense 2.0 two years ago, re-discovered in the latest pfSense 2.1)
- The fix provided by Seth Mos fixes the issue with bcmod() when running it from php command line, but it still doesn't...
-
11:03 AM Bug #2493: WAN loadbalancing rule fails on second/third safe
- Jim P wrote:
> Does it work if you disable "sticky" in System > Advanced on the Misc tab?
Yes - disabling stick... -
10:59 AM Bug #2493: WAN loadbalancing rule fails on second/third safe
- $title =~ s/safe/save/
-
10:57 AM Bug #2493: WAN loadbalancing rule fails on second/third safe
- Does it work if you disable "sticky" in System > Advanced on the Misc tab?
-
10:54 AM Bug #2493 (Closed): WAN loadbalancing rule fails on second/third safe
- Source routing rule is fine during the first time round. And appears in the pfctl output as:...
-
10:41 AM Bug #2489 (Resolved): More than one secure dynamic dns update entry fails - due to malformed keyfile - and patch
- See commit:8ec0a8bc and #2068.
-
10:39 AM Bug #2489: More than one secure dynamic dns update entry fails - due to malformed keyfile - and patch
- Ermal Luçi wrote:
> Seems the fix has been committed!
Ermail - what is the commit reference - I cannot find it ... -
10:38 AM Bug #2490: Reassigning interfaces on console during restore causes them to be disabled, lose descriptions
- I don't see a reason to ever unset enable there, why is that there? Is that only if you re-assign interfaces and don'...
-
03:56 AM Bug #2490: Reassigning interfaces on console during restore causes them to be disabled, lose descriptions
- The reason I asked is that interfaces.php lets you store a blank descr in the config to get the default name.
-
02:24 AM Bug #2490: Reassigning interfaces on console during restore causes them to be disabled, lose descriptions
- If descr is set the enable will not be removed.
For historic reason i left it there!
Please move on. -
08:30 AM Feature #1829: CARP with IPv6 support
- I don't think the dhcpv6 settings are synced up to the backup yet.
You'll need to configure that manually, and sel... -
08:11 AM Feature #1829: CARP with IPv6 support
- Finally got a snapshot that has working carp+radvd....
-
04:24 AM Feature #2492 (Needs Patch): identify changes lines before "apply"
- when a record in aliases or rules is changed one has to press "apply". in the meantime I would like to be able to see...
06/11/2012
-
11:03 PM Bug #2490: Reassigning interfaces on console during restore causes them to be disabled, lose descriptions
- Is there any reason to ever unset the "enable" setting there? Is not the "enable" setting only set for opt interface...
-
04:40 PM Bug #2490 (Feedback): Reassigning interfaces on console during restore causes them to be disabled, lose descriptions
- Applied in changeset commit:62784b050ad874bd8544531954b4b158036f9a23.
-
03:19 PM Bug #2490 (Resolved): Reassigning interfaces on console during restore causes them to be disabled, lose descriptions
- When restoring a config, and reassigning interfaces at the console, somehow this happens:
* LAN/WAN are OK
* OPT in... -
09:59 PM pfSense Packages Feature #2487: DNS Servers Query Seqentially / Parallel
-
Attached patch file adds a DNS forwarder strict order option to System: General page.
The strict order option ... -
05:00 AM pfSense Packages Feature #2487: DNS Servers Query Seqentially / Parallel
-
Looks like just adding the dnsmasq 'strict-order' option takes care of this.
Services: DNS Forwarder - Advance... -
01:00 AM pfSense Packages Feature #2487 (Needs Patch): DNS Servers Query Seqentially / Parallel
-
12:18 AM pfSense Packages Feature #2487 (Needs Patch): DNS Servers Query Seqentially / Parallel
-
System: General Setup
DNS Servers
Option for querying each server sequentially with a specified delay, rathe... -
07:27 PM Bug #2491 (Resolved): disabling pfsync doesn't actually disable pfsync
- After disabling pfsync (in 2.0.1/2.0.2 at least), it isn't really disabled until you reboot.
-
05:04 PM Bug #2489 (Feedback): More than one secure dynamic dns update entry fails - due to malformed keyfile - and patch
- Seems the fix has been committed!
-
10:57 AM Bug #2489 (Resolved): More than one secure dynamic dns update entry fails - due to malformed keyfile - and patch
- When configuring more than one DDNS service to inform (e.g. if you have multiple WAN uplinks) - the first one will wo...
-
04:17 PM pfSense Packages Bug #2486 (Resolved): Snort Stable 2.9.2.3 pkg v. 2.1.1 platform: 2.0
- The files are there now. If there are other errors after load them, start new forum threads/tickets as needed.
-
09:23 AM pfSense Packages Bug #2486: Snort Stable 2.9.2.3 pkg v. 2.1.1 platform: 2.0
- The problem is the rfile in the repository is snort-2.9.2.tbz not snort-2.9.2.3.tbz so it causes a 404. Same is true ...
-
01:20 PM Feature #336: Option to create lagg under assign interfaces
- This should also, ideally, be able to setup bridges.
Something such as:
* Add new bridge
* Tell it which inter... -
10:19 AM Bug #2488 (Closed): WAN address changes to IP Alias ones randomly
- This is normal, cosmetic only, and harmless.
On FreeBSD, all IPs on an interface (aliases, and the actual "first" ... -
07:53 AM Bug #2488: WAN address changes to IP Alias ones randomly
- To be more precise, i've cuted this scenario in three screenshots,
1.png: Initial view of WAN address
2.png : Confi... -
07:25 AM Bug #2488 (Feedback): WAN address changes to IP Alias ones randomly
- what do you mean "switches randomly"? There isn't any concept of primary vs. alias IPs, things like "WAN address" are...
-
05:58 AM Bug #2488 (Closed): WAN address changes to IP Alias ones randomly
- Hi everyone,
Recently updated my pfSense 2.0.1 to 2.1.
When configuring WAN address with IPv6 address, everything... -
10:05 AM Bug #2349: vlan(4) needs altq adaption on FreeBSD 8.3++
- I'll test this out sometime in the next 2 weeks and report back
-
09:17 AM pfSense Packages Bug #1080: Snort Installation fails
- I am currently having this issue too and can confirm the problem is an error with both http://files.pfsense.org/packa...
06/10/2012
-
04:51 PM pfSense Packages Bug #2486 (Resolved): Snort Stable 2.9.2.3 pkg v. 2.1.1 platform: 2.0
- In my pfSense when i want to install snort:
I can't downlaod snort-2.9.2.3.tbz !
The older version was good...
B...
06/09/2012
-
09:40 PM Todo #2485 (Resolved): Add Status > Services entry for radvd if RA is enabled
- We should have an entry under Status > Services for radvd if it's enabled for any interface, to follow the custom of ...
-
07:59 PM Bug #2477: router advertisement daemon (radvd) no longer starts
- That's fine Johannes, not sure of the context for that in this case, generally comments like that would be reserved f...
-
08:34 AM Bug #2477: router advertisement daemon (radvd) no longer starts
- Resolved! Thanks
> Although I understand you file the ticket as high, we are not all full time paid developers or ... -
07:34 PM Bug #1279: Filesystem on NanoBSD is left read/write at first bootup after package reinstallation
- Seems we need to revisit this again... If a NanoBSD upgrade reinstalls packages, once again it tends to completely ho...
-
06:49 PM Bug #2484 (Resolved): Serial console speed has no effect on NanoBSD
- Changing the serial console speed doesn't do anything on NanoBSD images - the console stays at 9600bps, even though t...
-
06:43 PM Bug #2483 (Closed): IPv6 Interface Aliases not functioning
- GUI supports adding an IPv6 alias - however it never actually updates the interface config.
-
01:05 PM Bug #2482: error trying to delete limiter
- crash report
Crash report begins. Anonymous machine information:
amd64
8.3-RELEASE-p2
FreeBSD 8.3-RELEASE-... -
01:04 PM Bug #2482 (Resolved): error trying to delete limiter
- Fatal error: Call to undefined method dnpipe_class::GetName() in /usr/local/www/firewall_shaper_vinterface.php on lin...
-
08:38 AM Feature #2361: router adv. daemon only allows for one subnet / limited options
- looking good so far. Only thing missing is the ability to set subnets for the RA. Right now, it does only advertise t...
06/08/2012
-
06:02 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- here are the new fields:...
-
06:00 PM Feature #2361 (Feedback): router adv. daemon only allows for one subnet / limited options
- Applied in changeset commit:163e4b91b10fd54374d69b02cb6caad5db262842.
-
03:49 PM Feature #2361 (Assigned): router adv. daemon only allows for one subnet / limited options
- oh wait, i forgot to add fields for dns, searchdomain, use same settings to the RA tab.
-
03:46 PM Feature #2361 (Feedback): router adv. daemon only allows for one subnet / limited options
- implemented, please do further testing.
commit:f347547 split dhcpv6 server and ra #2361
commit:1c8dbfb remove the... -
04:37 PM Bug #2477: router advertisement daemon (radvd) no longer starts
- I think I may have fixed the snapshot. Otherwise please reopen.
Although I understand you file the ticket as high,... -
10:25 AM Bug #2477 (Feedback): router advertisement daemon (radvd) no longer starts
- I believe Seth had said this was because the snapshot was missing something that should be in the next new snapshot. ...
-
10:19 AM Bug #2477: router advertisement daemon (radvd) no longer starts
- just found additional logs in routing.log confirming the issue with the configuration file:
Jun 8 14:11:50 pfsens... -
10:14 AM Bug #2477 (Resolved): router advertisement daemon (radvd) no longer starts
- as of today's update, radvd no longer starts. No obvious error message I can see so far, but the config file looks ba...
-
04:14 PM Todo #2480 (Closed): Add checkbox to OpenVPN client/server to exlcude VPN server from (pushed) routes
- If you try to push a route, or route directly, for the subnet containing the VPN server, OpenVPN would accept the rou...
-
04:13 PM Feature #2479 (New): Allow reordering of the traffic graphs on the dashboard
- Since the meaning of opt1-optN is variable, listing interfaces in sequence is not very meaningful in many cases. e.g....
-
11:52 AM Bug #2478 (Closed): NTPd turns off after restoring a config file
- NTP was completely reworked for 2.0.2 and 2.1 - this wouldn't be valid there because of the new design.
-
11:50 AM Bug #2478 (Closed): NTPd turns off after restoring a config file
- I don't know if this is designed this way on purpose or not but when restoring an XML config file from a system where...
-
04:52 AM Feature #1965 (Feedback): Support Multiple IPsec Peers
- This has been complete on check_reload/pfSctl side.
-
03:38 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- This is the last time I'm going to say it - it's impossible to do in a way that isn't trivially reversible. There's a...
-
01:36 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
As I’ve been pointing out and you don’t seem to be grasping, just because there is "seemingly" (by your claims any... -
12:46 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- Insecurely storing your config can certainly be a security issue with every firewall and router. Literally every rout...
-
12:20 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
Please stop misclassifying it as not a security issue.
Sorry you feel your responses here are a waste of your t... -
12:11 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- It truly is impossible to securely resolve. You won't find anything that has a secure solution for encrypting such pa...
-
12:05 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
The point is that you should not be saying it is not a security issue. Rather that it is by design due to lack of... -
12:00 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- you can call it anything you want, the reality is it's impossible to store such passwords in a hashed or encrypted ma...
-
03:03 AM Feature #2471: null routing of unused address space
- I can probably add that flag if a Null route is involved. Let me check
Try now. -
02:53 AM Feature #2471: null routing of unused address space
- this one works, but it's a bit ugly. the -reject or -blackhole might be nicer.
traceroute and ping loop at the pfs...
06/07/2012
-
11:57 PM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
You have stated that it is not a security issue. It clearly is. Not doing anything about it does not change that... -
11:53 PM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- we have the ability to encrypt backups, that's what you should do. It's impossible to securely encrypt such passwords...
-
11:49 PM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
I did read the link. And it is still a security issues. Lack of interest in resolving it does not change the fac... -
11:44 PM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- read the link. There are no alternatives for such passwords.
-
11:43 PM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
Just because it is by design does not mean it is not a security issue. Saving account passwords in plain text is ... -
11:34 PM Bug #2476 (Rejected): SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- by design, not a security issue.
http://doc.pfsense.org/index.php/Why_are_some_passwords_stored_in_plaintext_in_con... -
11:33 PM Bug #2476 (Rejected): SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
Dynamic DNS account password is saved as plain text in XML config and backup files.
-
08:34 PM Feature #2413: Allow IPv6 interface configuration from the menu
- Okay, you can set gateway IP addresses from the command line now. See config:c63e3594 and config:d23b53eb.
Puntin... -
03:13 PM Feature #2413: Allow IPv6 interface configuration from the menu
- This is what you will now see:...
-
02:05 PM Feature #2413: Allow IPv6 interface configuration from the menu
- > Note that http://dhcp and http://dhcp6 are not valid, it appears to be almost right.
> http://192.168.2.254:/
>... -
01:41 PM Feature #2413: Allow IPv6 interface configuration from the menu
- Another new feature for the console menu to clarify console configuration. With the last as it is now, it is hard to ...
-
01:31 PM Feature #2413: Allow IPv6 interface configuration from the menu
- > Tried to set to dhcp6 again, still set to Static IPv6. I think it's not setting the tag.
I'm actually going to j... -
01:27 PM Feature #2413: Allow IPv6 interface configuration from the menu
- > When configuring interface WAN for dhcp6 it does not set $config['interfaces']['wan']['ipaddrv6'] to dhcp6. Are you...
-
01:23 PM Feature #2413: Allow IPv6 interface configuration from the menu
- > When configuring interface WAN, as dhcp and dhcp6 I get the url http://dhcp/ displayed
Now should be showing IPv6 ... -
06:20 PM Bug #2475 (Resolved): Connection rate limiting does not work for Captive Portal
- Using pfSense 2.0.1. Installation of pfSense as a CP at a big exhibition fair failed because the connection rate limi...
-
05:32 PM Bug #2012: 4th+ CARP member will not work with default automatic skew
- Proposed a fix:
https://github.com/bsdperimeter/pfsense/pull/127
This will make the 4th member work, at the very ... -
03:30 PM Bug #2474 (Feedback): Recent changes to pkg_edit code broke select_source
- Should be fixed in
commit:1624b5f1e2f6fa8015f24eaa640269c22829fcdb -
11:27 AM Bug #2474 (Resolved): Recent changes to pkg_edit code broke select_source
- Something in one of the recent changes to pkg_edit.php has broken select_source.
For example, the interface select... -
01:49 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- We probably want to split them off and keep them tied together.
What Jim and I agreed upon was tabs per interface,... -
01:04 PM Bug #2379 (Feedback): When using squid as a proxy server Traphic graph does not show the LAN specific Ip addresses
- Which traffic graph? Status > Traffic Graphs?
If so, that's generated by the 'rate' program, and it's somewhat limit... -
12:48 PM Bug #2310: Possible typo - "Optional 11" interface ?
- Dim: as I previously stated I believe I fixed this issue, but just to be on the safe side, I'm reassigning to you so ...
-
11:46 AM Bug #2310 (Assigned): Possible typo - "Optional 11" interface ?
-
11:45 AM Bug #2310: Possible typo - "Optional 11" interface ?
- I strongly believe this is the same issue as #2469, fixed in commit:db0d446f.
-
12:45 PM Feature #2467 (Resolved): AJAX enhancement: only show gateways from same address families upon creation
- implemented in commit:140e4bc6
-
11:42 AM Bug #2469 (Resolved): Assign interfaces prompt is going WAN -> LAN -> OPT10
- fixed in commit:db0d446f
-
07:04 AM Feature #1829: CARP with IPv6 support
- Confirmed that the latest available snapshot 07-06-2012 17:00 does not have the carp patch. Probably just sheer bad l...
-
03:48 AM Feature #1829: CARP with IPv6 support
- You need a snapshot with a kernel of June 7th or later
-
03:45 AM Feature #1829: CARP with IPv6 support
- if I choose carp int as RA interface, the radvd does not start....
-
05:20 AM Todo #2237 (Feedback): Move OLSRD back to a package
- This has been moved to pacakges
06/06/2012
-
06:51 PM Bug #2473 (Rejected): OpenVPN fails to initialize on for either p2p_tls or p2p_shared_key.
- Already fixed in git.
-
06:47 PM Bug #2473 (Rejected): OpenVPN fails to initialize on for either p2p_tls or p2p_shared_key.
- When a P2P mode is selected, OpenVPN fails to start. The logs indicate that the client-connect and client-disconnect...
-
12:26 PM Feature #1965: Support Multiple IPsec Peers
- Needs hooks in gateway monitoring.
If a gateway is down we call pfCtl.... -
09:22 AM Feature #1829: CARP with IPv6 support
- Testing proved that CARP router advertisments work. Excellent.
-
04:04 AM Feature #1829 (Feedback): CARP with IPv6 support
- I've activated the CARP link local patch from Andrew on the 8.3 builds. It appears to work as it should.
I've comm...
06/05/2012
-
04:59 PM Bug #2405: Lack of traffic shaping queue parent can take firewall down (pass no traffic)
- Can you detail how to reproduce this?
The parent is inherited automagically and you do not select it yourself!!!! -
04:52 PM Feature #1986 (Resolved): Find a way to list logged in IPsec xauth users
- We can close this, it's working fine as-is since your last fix and there's no reason not to just code around the othe...
-
04:48 PM Feature #1986 (Feedback): Find a way to list logged in IPsec xauth users
- For me this is resolved.
Agreed that its easy to skip the non-user tunnels.
If needed be the change to not show the... -
03:19 PM Todo #2100 (Feedback): Import OpenVPN RADIUS ACL support
- Its in 2.1
-
02:10 PM Bug #2349 (Feedback): vlan(4) needs altq adaption on FreeBSD 8.3++
- For 2.1 this is solved in newer snapshots.
During transition to 9 this will be solved in more generic way. -
06:57 AM Bug #2446: pfSense fails to queue UDP packets
- Sorry for the delay, here is the file you asked for. The rule question, I guess, is the first one below the comment
... -
02:59 AM Feature #2471: null routing of unused address space
- applied that change to the other gateway lookup functions as well.
-
02:49 AM Feature #2471: null routing of unused address space
- This fixes the "different address family" problem...
06/04/2012
-
07:20 PM Bug #2469: Assign interfaces prompt is going WAN -> LAN -> OPT10
- Probably the same with http://redmine.pfsense.org/issues/2310 which I submitted a couple of months ago (you may want ...
-
06:49 PM Bug #2470 (Resolved): unable to create single address /128 ipv6 route
-
06:41 AM Bug #2470: unable to create single address /128 ipv6 route
- Seems to work now. Thank you!
-
05:01 AM Bug #2470 (Feedback): unable to create single address /128 ipv6 route
- Fix applied
-
04:24 AM Bug #2470 (Resolved): unable to create single address /128 ipv6 route
- the system_routes_edit.php does not allow /128 for a ipv6 route. the largest mask selectable is 127 bits.
running ... -
06:40 PM Feature #2472 (Closed): Option to tie OpenVPN client instance to CARP status
- ah I forgot you had already added that Jim.
-
07:55 AM Feature #2472: Option to tie OpenVPN client instance to CARP status
- To clarify a little: We already do this on 2.0.2 and 2.1, if you bind the client instance to a CARP VIP, it will not ...
-
06:32 AM Feature #2472: Option to tie OpenVPN client instance to CARP status
- updated with proper description
-
05:35 AM Feature #2472 (Closed): Option to tie OpenVPN client instance to CARP status
- Currently OpenVPN clients on backup CARP status hosts will still send out packets on that CARP IP, breaking that Open...
-
04:31 PM Bug #2440: Wireless client nic set for DHCP does not start dhclient
- Managed to track it down on a 2.0.2 RC. Turns out that the re-configure of a existing link brings the interface down ...
-
06:37 AM Feature #2471: null routing of unused address space
- there is a typo on line 324 gwlb.inc, but I fixed it by hand (locahost instead of localhost).
function return_gate... -
05:36 AM Feature #2471 (Feedback): null routing of unused address space
- Try now
-
04:57 AM Feature #2471: null routing of unused address space
- We'll add a option for that.
-
04:54 AM Feature #2471 (Resolved): null routing of unused address space
- we have quite a lot of unused ipv4 and ipv6 addresses. we have used to nullroute the large address blocks with our ol...
-
05:37 AM Feature #2466 (Feedback): Allow single firewall rules to apply to both IPv4 and IPv6 simultaneously
- Seems to work so far, filter.inc code needs to duplicate rules by address families to work for addresses, reply-to an...
06/03/2012
-
09:53 AM Bug #2469: Assign interfaces prompt is going WAN -> LAN -> OPT10
- Could be related to the changes from Darren who is working on the console menu.
I'll assign to Darren since he is ...
06/02/2012
-
10:12 PM Bug #2469 (Resolved): Assign interfaces prompt is going WAN -> LAN -> OPT10
- After prompting for WAN, then LAN, a current snapshot then asks the user about "Optional 10 interface", instead of "O...
-
10:10 PM Bug #2468 (Resolved): Interface does not exist warning during a network interface mismatch
- Instead of reporting that a network interface mismatch happened, then proceeding to the assign interfaces prompt, cur...
-
01:18 PM Feature #2467 (Resolved): AJAX enhancement: only show gateways from same address families upon creation
- When creating a new gateway group all gateways are showm, both ipv4 and ipv6. Add some ajax glue that will hide the o...
-
11:38 AM Bug #2038: Some 3G WANs on 2.0.x do not come up on cold boot
- Checked in support for the ZTE modem stats.
Should be easier to add new ones now too.
Do note that the ZTE modem will... -
11:18 AM Bug #2038: Some 3G WANs on 2.0.x do not come up on cold boot
- With includes changes ZTE 3G dongle now comes up correctly.
Rewrote the stats utility to poke at the application p... -
08:38 AM Feature #2413 (New): Allow IPv6 interface configuration from the menu
- OPtion 2 Set interface IP address.
When configuring interface WAN, as dhcp and dhcp6 I get the url http://dhcp/ disp...
06/01/2012
-
05:10 PM Bug #2278 (Feedback): IPv6 Carp vip both master on FreeBSD 8.3
- Andrew working on this
-
03:50 PM Bug #2428 (Feedback): Removing a limiter breaks any references to limiters after it
- Applied in changeset commit:85a236e9dd5db87197ed6855995da609bf310bff.
-
02:50 PM Bug #2349: vlan(4) needs altq adaption on FreeBSD 8.3++
- Any update on this issue? I haven't tried since it was reported broken.. Its a show stopper for me to update freebsd ...
-
10:23 AM Bug #1974: Captive Portal RADIUS accounting bytes wrong
- Thanks, however the captive portal in the latest snapshots doesn't work, I believe there is a bug open about that: 24...
-
02:59 AM Bug #2463: system_gateways_edit.php rejects correct configurations with dynamic or vpn interfaces
- I just checked in more code, and the fix that allows you to actually save the ipprotocol value.
So edit and save t...
05/31/2012
-
06:09 PM Bug #2458: Pfsense not registering DNS servers found by PPP
- ThorstenK code, posted in forum, works flawlessly for me (I use IPv4 only)
-
02:24 AM Bug #2458: Pfsense not registering DNS servers found by PPP
- 2.1-BETA0 (i386)
built on Wed May 30 19:35:31 EDT 2012
FreeBSD 8.3-RELEASE-p2
The script IS NOT working for me... -
05:41 PM Bug #2373 (Resolved): There were error(s) loading the rules... (Floating rules bug)
-
05:37 PM Feature #2436: Enhance the restore section of the Backup/Restore section
- If you want to make a new ticket for the memory issue I guess you can do that. :-)
-
05:36 PM Feature #2436: Enhance the restore section of the Backup/Restore section
- Should I still look into the memory issue? My understanding is some of that XML parsing code we've been using has bi...
-
03:32 PM Feature #2436 (Resolved): Enhance the restore section of the Backup/Restore section
-
03:28 PM Feature #2436: Enhance the restore section of the Backup/Restore section
- I can confirm that restoring an entire RRD file from a i386 onto a amd64 works as expected. Great work!
I must have ... -
03:25 PM Feature #2436 (Assigned): Enhance the restore section of the Backup/Restore section
- When trying to restore just the RRD section on a current 31-5-2012 snapshots I get the following error....
-
05:02 PM Bug #2465 (Closed): Values reported by 'ipfw table 1 entrystats' reports a much higher value of transfered bytes, 6-7 times more
- Duplicate of #1974
-
11:03 AM Bug #2465 (Closed): Values reported by 'ipfw table 1 entrystats' reports a much higher value of transfered bytes, 6-7 times more
- Thus the radius reported bytes-in / bytes-out values are incorrect which leads to incorrect traffic stats recorded fo...
-
05:01 PM Bug #1974: Captive Portal RADIUS accounting bytes wrong
- This has been fixed on latest snapshots.
Please try those. -
03:20 PM Feature #2466 (Resolved): Allow single firewall rules to apply to both IPv4 and IPv6 simultaneously
- I've added code that allows for setting a firewall rule to IPv4+IPv6
Limitations:
- only allows tcp/udp and icmp
... -
01:42 PM Bug #2463 (Feedback): system_gateways_edit.php rejects correct configurations with dynamic or vpn interfaces
- Code checked in, I finally gave in and added a drop down for the internet protocol. There is just too much that could...
-
05:04 AM Bug #2463: system_gateways_edit.php rejects correct configurations with dynamic or vpn interfaces
- Confirmed
05/30/2012
-
04:59 PM Bug #2437 (Resolved): PHP missing bcmath (that was solved for pfSense 2.0 two years ago, re-discovered in the latest pfSense 2.1)
-
03:14 PM Bug #2437: PHP missing bcmath (that was solved for pfSense 2.0 two years ago, re-discovered in the latest pfSense 2.1)
- Running bcmod() works now.
Thanks. -
04:50 PM Bug #2326 (Feedback): Erroneous successful webGUI authentication with blank password and AD authentication backend
- Applied in changeset commit:88165371efbc79fdc0194de26814eacca68d2a5c.
-
04:36 PM Bug #2446: pfSense fails to queue UDP packets
- Please put the file on /tmp/rules.debug after anonymizing addresses here to verify what you say.
-
04:29 PM Bug #1931 (Closed): Status: Captive portal: Test Vouchers tab summary issue
- Its by design that you will not be granted access to the portal if you submitted multiple vouchers and one of them is...
-
04:10 PM Bug #2378 (Feedback): Captive portal selects additional interfaces where it shouldn't
- Applied in changeset commit:1710305617db80cde51a961077c3d18959c238d3.
-
04:00 PM Bug #2270 (Feedback): CP - default value of "Maximum concurrent connections per client IP address"
- Applied in changeset commit:4dc04853f4588043bd39a6e304cbb33388937744.
-
03:03 PM Bug #1974: Captive Portal RADIUS accounting bytes wrong
- Does not seem like the fix is working.
I am running pfSense 2.1 built on April 24 and the reported bytes-in and by... -
12:56 PM Bug #2464: The traffic graph permission does not allow a user to load the graph.
- Please use the forum to discuss such issues. If you need to start a new ticket for a new issue, that's fine, but this...
-
12:48 PM Bug #2464: The traffic graph permission does not allow a user to load the graph.
- Actually this is becoming more complicated than I hoped. I gave the user the permission you mentioned, and now graph....
-
12:13 PM Bug #2464: The traffic graph permission does not allow a user to load the graph.
- I would like to reopen this as a feature request, then, that Status: Traffic Graph implies Diagnostics: Interface Tra...
-
11:10 AM Bug #2464 (Closed): The traffic graph permission does not allow a user to load the graph.
- You also need to assign the permission for graph.php (the actual graph), which is "Diagnostics: Interface Traffic pag...
-
11:06 AM Bug #2464 (Closed): The traffic graph permission does not allow a user to load the graph.
- I wanted a user to be allowed to view the traffic graph, so I created a user for her, and assigned her only the permi...
-
10:08 AM Feature #1361: DNSMasq, source interface and IPSec VPNs
- Sorry a beginner at this. The patch file was the wrong way around.
-
10:03 AM Feature #1361: DNSMasq, source interface and IPSec VPNs
- Sorry this update has taken so long. I have checked the file still applies and added the capability to handle the _m...
-
09:20 AM Bug #2459 (Feedback): Adding autocomplete=off in the webGUI forms
- Applied in changeset commit:fec04267ea5303333839a45149e3cc2edc8250ff.
-
07:50 AM Feature #1986: Find a way to list logged in IPsec xauth users
- After the last commit, racoon no longer crashes, but now it's listing all tunnels in the 'show-users' output, but non...
-
05:19 AM Bug #2373: There were error(s) loading the rules... (Floating rules bug)
- For my current configuration and settings issue is fixed.
05/29/2012
-
08:02 PM Bug #2459: Adding autocomplete=off in the webGUI forms
- Apparently you can do this in jQuery by sticking one line in the file somewhere:...
-
09:39 AM Bug #2459 (Resolved): Adding autocomplete=off in the webGUI forms
- Doing a diff between config.xml versions, I noticed that my pfsense's password was stored in plaintext format in
<pr... -
07:57 PM Feature #1241 (Resolved): Custom Dynamic DNS
- thanks
-
07:53 PM Feature #1241: Custom Dynamic DNS
- This was merged, and can be closed.
-
07:56 PM Feature #336: Option to create lagg under assign interfaces
- *+1* This is important to me. Although, right now I am about to try and figure out how to do it manually since I need...
-
07:52 PM Bug #2463 (Resolved): system_gateways_edit.php rejects correct configurations with dynamic or vpn interfaces
- eg. Gateway of dynamic makes the "Monitor IP" setting reject everything as having a "different Address Family"
Addit... -
03:11 PM Feature #2462 (Resolved): New 3G (PPP) provider
- pfSense currently doesn't include the 3G provider I'm using. Here's the provider's data:
Country: Slovenia
Provid...
05/28/2012
-
08:34 PM Bug #2458: Pfsense not registering DNS servers found by PPP
- Using snap built on Mon May 28 10:16:21 EDT 2012 I cannot reproduce the log from using the ppp-linkup (Revision 70317...
-
04:14 PM Bug #2458: Pfsense not registering DNS servers found by PPP
- My comment may be invalid as I have a different response from snap 2.1-DEVELOPMENT (i386)
built on Mon May 28 10:16... -
03:32 PM Bug #2458: Pfsense not registering DNS servers found by PPP
- My modem is a Huawei LTE e398
The modified ppp-linkup script fails for me and results in the modem being unrespon... -
10:09 AM Bug #2458 (Feedback): Pfsense not registering DNS servers found by PPP
- I committed a fixed ppp-linkup script. It looks like what used to be 2 different variables is now a single variable.
... -
09:33 AM Bug #2458 (Resolved): Pfsense not registering DNS servers found by PPP
- 2.1-DEVELOPMENT (i386) - built May 27 05:31:49 EDT 2012 on i386
If system general DNS settings are left empty no d... -
03:35 PM Bug #2038 (New): Some 3G WANs on 2.0.x do not come up on cold boot
- The ZTE MF190 I have here doesn't like pfSense at all. Although the /dev/cuaU0.2 responds to AT and is willing to wor...
-
03:02 PM Bug #2455 (Resolved): IPSec Phase 2 settings GUI doesn't take into account AH vs ESP selection properly
-
10:18 AM Bug #2455: IPSec Phase 2 settings GUI doesn't take into account AH vs ESP selection properly
- Yep, the GUI bug seems to be fixed.
I can even get an AH tunnel up (but so far no traffic goes through it, but if it... -
10:14 AM Bug #2415: Fallout from CARP vip interface names changes
- It's supposed to be selectable there for IP Alias type VIPs, so they can ride on top of the carp interface. (As a mea...
-
10:12 AM Bug #2415 (Feedback): Fallout from CARP vip interface names changes
- Changes have been committed but I still see Carp vips showing up in different places.
E.g. Add a carp vip on the v... -
08:48 AM Bug #2377: Captive portal fails on empty RADIUS password
- Why do you need an empty pass?
-
08:30 AM Bug #2440: Wireless client nic set for DHCP does not start dhclient
- Cold boot on the alix with 2.0.2 RC1 works. However, the moment the link goes down it enters the up down cycle simila...
-
08:28 AM Bug #2450 (Resolved): Unable to use a ports alias on a firewall rule.
- Through some miracle the alias type was not set in the config.
[2] => Array
(
...
05/26/2012
-
04:59 PM Feature #1986: Find a way to list logged in IPsec xauth users
- A bit better info now, the i386/amd64 bit was a red herring, it can crash on both. They key factor is that you have t...
-
12:50 PM Feature #1986 (New): Find a way to list logged in IPsec xauth users
- Ermal - running the show-users command with no users connected seems to crash racoon with no logged error, just a cor...
-
01:10 PM Bug #2455: IPSec Phase 2 settings GUI doesn't take into account AH vs ESP selection properly
- I'll check it out as soon as a snapshot is live that incorporates the change...
-
08:41 AM Bug #2455 (Feedback): IPSec Phase 2 settings GUI doesn't take into account AH vs ESP selection properly
- Should be ok now, could you test again ?
Thanks.
Pierre -
08:19 AM Bug #2455 (Assigned): IPSec Phase 2 settings GUI doesn't take into account AH vs ESP selection properly
-
10:44 AM Bug #1629: invalid state table entries after WAN IP change
- Same deal, 2.0.1-RELEASE and this happens every so often, but not on every IP change. I can delete the 2 state entri...
-
03:20 AM pfSense Packages Bug #2457 (Resolved): Lightsquid 1.8.2 pkg v.2.32 logpath is wrong in lightsquid.cfg
- In my pfSense router:
2.1-DEVELOPMENT (amd64)
built on Mon May 14 10:01:41 EDT 2012
FreeBSD 8.3-RELEASE-p1
...
05/25/2012
-
10:32 PM Feature #2456 (Resolved): Option to choose default tab in IPsec status Dashboard widget
- There are two things that would massively increase the usefulness of that widget:
a) remember or allow to be confi... -
07:59 PM Bug #2373: There were error(s) loading the rules... (Floating rules bug)
- Thanks Jim, sorry I was a bit frustrated - not with you guys, with myself for not testing the build before running it...
-
11:15 AM Bug #2373: There were error(s) loading the rules... (Floating rules bug)
- OK, iff there are PPTP issues, that would be a new/separate ticket. Try to confirm with others on the forum first. Th...
-
10:52 AM Bug #2373: There were error(s) loading the rules... (Floating rules bug)
- At least I have no annoying error messages anymore and looks like shaping is working, but i need more time to test it...
-
05:38 AM Bug #2373: There were error(s) loading the rules... (Floating rules bug)
- This bug appears fixed Ermal, BUT the changes seem to have broken the PPTP server *and* traffic shaping still doesn't...
-
05:12 PM Bug #2440 (New): Wireless client nic set for DHCP does not start dhclient
- Ok, this is definitely not fixed, I can't make sense of it. Deferring.
-
04:40 PM Feature #1986: Find a way to list logged in IPsec xauth users
- Applied in changeset commit:6e0b68bfdea29b2943b6f104373f43cc56537bd8.
-
04:33 PM Bug #2455 (Resolved): IPSec Phase 2 settings GUI doesn't take into account AH vs ESP selection properly
- On the VPN:IPsec:Edit Phase 2 page there is the section Phase 2 proposal (SA/Key Exchange)
If under Protocol ESP i... -
02:39 PM Bug #2349: vlan(4) needs altq adaption on FreeBSD 8.3++
- Now that the traffic shaper itself is fixed, this is the bug I run up against, LOL. Thanks for your hard work Ermal! ...
-
06:10 AM Bug #2454 (Feedback): Captive portal return wrong authentication URL
- Applied in changeset commit:ac10faad42081ccfe48a37aa9814bc4684ffb701.
-
05:45 AM Bug #2454 (Resolved): Captive portal return wrong authentication URL
- Since the last update "Built On: Sun May 13 02:42:10 EDT 2012" our captive portal doesn't work anymore.
The redir... -
12:07 AM Bug #2452 (Rejected): Reject type rules only allowed for TCP
- not a bug, and this isn't a place to ask questions, please post to the forum or mailing list.
05/24/2012
-
01:47 PM Feature #2453 (Resolved): [ER] allow renaming of network interfaces without enabling them
- In Interfaces>(assign) you can create a new interface. The first one is WAN, the second is LAN, and then it starts wi...
-
11:15 AM Bug #2012: 4th+ CARP member will not work with default automatic skew
- Additional information:
http://forum.pfsense.org/index.php/topic,49745.0.html
-
11:11 AM Bug #2451: IPv6 rule: 'add network' becomes 'add single host'
- block return in quick on $WIRED inet6 from any to 2a00:1450:: label "USER_RULE: TmpReject YouTube"
-
07:39 AM Bug #2451: IPv6 rule: 'add network' becomes 'add single host'
- can you include what ends up in the /tmp/rules.debug?
-
07:13 AM Bug #2451 (Resolved): IPv6 rule: 'add network' becomes 'add single host'
- I tried to add a reject rule for a range of IPv6 addresses:
"Reject TCP IPv6 to type network 2a00:1450:: CIDR ... -
09:50 AM Bug #2446: pfSense fails to queue UDP packets
- Also note, as I wrote in the original post, that ICMP echo request packets are correctly assigned to the queue for sp...
-
09:46 AM Bug #2446: pfSense fails to queue UDP packets
- PBX is an alias consisting of two public IP addresses belonging to a public IP subnet defined on the interface opt1 a...
-
07:20 AM Feature #1477: IGMPPROXY spamming the main systemlog
- It's igmpproxy doing it. I get it too. As a workaround for myself I have just added igmpproxy to syslog and yes I agr...
-
07:17 AM Bug #2452 (Rejected): Reject type rules only allowed for TCP
- I am sorry if I report intended behaviour. But I don't understand why rules of type reject only are allowed with TCP....
-
02:25 AM Bug #2450: Unable to use a ports alias on a firewall rule.
- Note that a existing rule on a different interface with the same alias actually works and is successfully expanded.
... -
02:24 AM Bug #2450 (Resolved): Unable to use a ports alias on a firewall rule.
- The following input errors were detected:
mngtports is not a valid start destination port. It must be a port a... -
02:23 AM Bug #2440: Wireless client nic set for DHCP does not start dhclient
- I performed more devd.conf changes, the media type is not recognized so I made it act on the _wlan subsystem now.
I ...
05/23/2012
-
05:16 PM Feature #1986 (Feedback): Find a way to list logged in IPsec xauth users
- This mostly works.
Just destination which is the system itself needs some more fixes, though its useable. -
05:01 PM Feature #1965: Support Multiple IPsec Peers
- we currently already have rc.newipsecdns which does purging and reloading of tunnels. You can pass the function the o...
-
04:30 PM Bug #2447 (Feedback): Duplicated destination IPs in easy rule.
- Applied in changeset commit:d01de40fa6d6a05e03351f0ccd83c64f82a4a2e5.
-
03:31 PM Bug #1874: Captive Portal Login dies on empty input
- I am sorry but you can use no authentication for empty passwords.
It works as its expected. -
03:30 PM Bug #2364 (Feedback): PPPoE Server doesn't restart correctly
- Applied in changeset commit:062676f880878f788315991de861a71ccb86a478.
-
03:12 PM Bug #2446: pfSense fails to queue UDP packets
- I wonder if you are not being bitten by the order of events happening.
If PBX has internal LAN addresses than this r... -
03:24 AM Bug #2446: pfSense fails to queue UDP packets
- Sorry about that, her it is, properly unformatted:...
-
03:24 AM Bug #2446: pfSense fails to queue UDP packets
- yes, the config for the rule in question is:
<rule>
<id/>
- <type>pass</type>
- <interface>opt1</inte... -
03:08 PM Bug #2423 (Closed): OpenNTPD seems to fail over time and can cause unintended clock skew.
- We switched to ntp.org's ntpd so this is no longer of concern.
-
02:19 PM pfSense Packages Bug #2449 (Closed): Console "Filesystem is full" on NanoBSD version
- I just updated a NanoBSD install and it's fine, /tmp is at 0% used. GUI login is OK.
I'd have to guess that squid ... -
12:56 PM pfSense Packages Bug #2449: Console "Filesystem is full" on NanoBSD version
- Apologies for not giving more information Jim. Let me tell you what ive done:
1. I am currently running a build fr... -
12:13 PM pfSense Packages Bug #2449 (Feedback): Console "Filesystem is full" on NanoBSD version
- Not nearly enough information here - specifically we need to know at least what size nanobsd image you're running and...
-
12:04 PM pfSense Packages Bug #2449 (Closed): Console "Filesystem is full" on NanoBSD version
- Tried to upgrade the NanoBSD embedded version and now getting an error on console saying /tmp write failed: Filesyste...
-
02:15 PM Bug #2373 (Feedback): There were error(s) loading the rules... (Floating rules bug)
- With new snapshots this should be resolved.
Issue was patch missing on 8.3 snaps -
01:30 PM Bug #2209 (Feedback): PPPoE MTU is not correctly set from values on interfaces.php
- Applied in changeset commit:6805d2d25f75ccb6d9b1da3814ba2244b3e3107e.
-
12:30 PM Bug #2012: 4th+ CARP member will not work with default automatic skew
- I am using it for HAProxy in a virtualized environment where we have two sites which are part of the same vCenter (we...
-
11:45 AM Bug #2012: 4th+ CARP member will not work with default automatic skew
- I am unsure why you'd want more than 3 members!
-
11:10 AM Bug #2445 (Feedback): Carp vip renaming broken IPsec VPN tunnels that reference carp interfaces.
- Applied in changeset commit:35b714597c8947376b350681c361b38e2569747a.
-
11:04 AM Bug #2445: Carp vip renaming broken IPsec VPN tunnels that reference carp interfaces.
- This is the upgrade code existing there.
Normally the section with s///g should have taken care of that.
Probably y... -
08:00 AM Bug #2038: Some 3G WANs on 2.0.x do not come up on cold boot
- Chapter 7.5 of the "HUAWEI UMTS Datacard Modem AT Command Interface Specification" lists the ^MODE messages to determ...
05/22/2012
-
09:39 PM pfSense Packages Bug #2448 (Rejected): Snort pfPort is breaking a full package builder run
- may just be bad timing/false alarm... will open if I can reproduce it again.
-
09:36 PM pfSense Packages Bug #2448 (Rejected): Snort pfPort is breaking a full package builder run
- Packages are not being built on the nightly run properly because snort is causing the build to fail.
Observe:
<pr... -
06:19 PM Bug #2446: pfSense fails to queue UDP packets
- Can you detail the rule you say assigns the traffic to your desired queue?
-
10:13 AM Bug #2446: pfSense fails to queue UDP packets
- Some extra details:
The floating rule assigning traffic A to the special queue should be set to "apply the action ... -
10:06 AM Bug #2446 (Closed): pfSense fails to queue UDP packets
- Replication instructions:
Create CBQ or PRIQ shaper on WAN interface and create a default queue and another queue ... -
06:19 PM Bug #2447 (Resolved): Duplicated destination IPs in easy rule.
- On snapshot released Tue May 22 08:05:51 EDT 2012
Easy rule adds duplicated "destination" IPs instead of "source"... -
05:10 AM Bug #2409: ipfw - entryzerostats
- in version 2.1.0 (bild 18May2012) an error is confirmed.
-
04:18 AM Bug #2038 (Resolved): Some 3G WANs on 2.0.x do not come up on cold boot
- This turned out to be a specific issue with ZTE modems and pin lock.
I've switched to a huawei modem and found a g... -
03:54 AM Bug #2278: IPv6 Carp vip both master on FreeBSD 8.3
- Ermal - you can put the time to Coltex
-
03:51 AM Bug #2278 (New): IPv6 Carp vip both master on FreeBSD 8.3
-
03:50 AM Bug #2278: IPv6 Carp vip both master on FreeBSD 8.3
- Still hitting the double master issue in the Xs4all DC carp
-
02:39 AM Bug #2445: Carp vip renaming broken IPsec VPN tunnels that reference carp interfaces.
- $i = 0;
foreach($config['ipsec']['phase1'] as $phase1) {
if($phase1['interface'] == "vip131")
$config['ipsec'][... -
02:34 AM Bug #2445 (Resolved): Carp vip renaming broken IPsec VPN tunnels that reference carp interfaces.
- Because of the vip renaming per interface any IPsec VPN tunnels, or endpoints referencing a CARP vip are now broken a...
Also available in: Atom