Activity
From 06/06/2012 to 07/05/2012
07/05/2012
-
11:30 PM Revision 20789ec9: Fix Captive Portal SSL
-
11:03 PM Revision 5ef762e1: Fix Captive Portal SSL
-
10:49 PM Revision b7fb885c: Merge pull request #168 from bcyrill/cp_status
- Fix Captive Portal status
-
10:45 PM Revision dff2ea2c: Fix Captive Portal status
-
06:38 PM Bug #2494 (Resolved): diag_packet_capture.php needs input validation
-
06:37 PM Bug #2477 (Resolved): router advertisement daemon (radvd) no longer starts
-
06:37 PM Bug #2447 (Resolved): Duplicated destination IPs in easy rule.
-
06:37 PM Bug #2445 (Resolved): Carp vip renaming broken IPsec VPN tunnels that reference carp interfaces.
-
06:36 PM Bug #2427 (Resolved): /etc/rc.firmware_notify
-
06:36 PM Bug #2415 (Resolved): Fallout from CARP vip interface names changes
-
06:36 PM Bug #2419 (Resolved): Possible Clickjacking Vunerability
-
06:35 PM Feature #2410 (Resolved): Support name based aliasing via CNAMEs or some other mechanism.
-
06:35 PM Feature #2387 (Resolved): Add (SMTP email) submission (port 587) to Firewall Rules GUI
-
06:34 PM Bug #2379 (Closed): When using squid as a proxy server Traphic graph does not show the LAN specific Ip addresses
-
06:34 PM Bug #2378 (Resolved): Captive portal selects additional interfaces where it shouldn't
-
06:31 PM Bug #2278 (Resolved): IPv6 Carp vip both master on FreeBSD 8.3
- This has been OK for a while now, several production carp clusters running and no dual master any more.
-
06:30 PM Bug #2277 (Resolved): miniupnp will does not listen on vip's
-
06:30 PM Bug #2270 (Resolved): CP - default value of "Maximum concurrent connections per client IP address"
-
06:29 PM Bug #2212 (Resolved): dhclient not stopped after changing interface from DHCP to other type
-
06:28 PM Bug #2206 (Resolved): RRD Report Email HTML has incorrect file paths for attachments
-
06:28 PM Bug #2201 (Resolved): Picking interface subnet in IPsec for an interface with no IP generates invalid racoon.conf
-
06:27 PM Bug #2163 (Resolved): 1:1 NAT Reflection helper rules do not cover static route subnets
-
06:27 PM Feature #2147 (Resolved): Cert Manager - additional download button for .p12
-
06:26 PM Bug #2082 (Resolved): Captive Portal error when client IPs are reused
-
06:26 PM Bug #2051 (Closed): Scheduled Firewall rules do not work properly
-
06:25 PM Feature #2040 (Resolved): Displaying nearby access points by power level
-
06:24 PM Bug #2018 (Resolved): LDAP browser does not work in edit authentication servers page
-
06:23 PM Bug #2037 (Resolved): Upon changing theme two "States" submenu appear in Diagnostics menu.
-
06:23 PM pfSense Packages Bug #2033 (Resolved): Snort needs a couple of variables for SIP rules
-
06:22 PM Feature #2032 (Resolved): add functionality to encrypt the private key in a Viscosity bundle (OpenVPN Client Export)
-
06:22 PM Bug #2031 (Resolved): add help text for Certificate Manager serial number
-
06:22 PM Bug #2030 (Resolved): Timezones need to update for Russia
-
06:21 PM Bug #1992 (Resolved): OpenVPN in tap mode, allow transparant interface
-
06:20 PM pfSense Packages Bug #1985 (Resolved): inspecting gzipped http flows
-
06:19 PM pfSense Packages Bug #1982 (Resolved): Snort exits on rules update and does not restart
-
06:19 PM Bug #1978 (Resolved): Multi-WAN+Multi-LAN shaper wizard VoIP bandwidth check is wrong
-
06:19 PM Bug #1970 (Resolved): IPsec stops routing after a while
-
06:18 PM Feature #1917 (Resolved): DHCP server support for multiple domains in search list
-
06:17 PM Bug #1845 (Resolved): diag_system_pftop 404 not found = cardiac crisis
-
06:15 PM Feature #1817 (Resolved): Expand easyrule functions
-
06:15 PM Bug #1806 (Resolved): OpenVPN Tunnel Network label configuration creates a wrong configuration file when using TAP device mode
- Tap support was cleaned up in 2.1, this is all working there.
-
06:14 PM pfSense Packages Bug #1766 (Resolved): Minor bug - siproxd prints out error message when siproxd_generate_rules called with "pfearly"
-
06:14 PM pfSense Packages Bug #1754 (Resolved): Status->services integration is not usable with snort
-
06:14 PM pfSense Packages Bug #1748 (Resolved): Rules GUI
-
06:13 PM pfSense Packages Bug #1747 (Resolved): Barnyard2
-
06:13 PM pfSense Packages Bug #1746 (Resolved): Preprocessor do not work
-
06:12 PM Bug #1741 (Resolved): Default page when not authorised
-
06:12 PM Bug #1731 (Resolved): Hostnames are not allowed access when using an Alias in an Alias
-
06:11 PM Bug #1729 (Resolved): IMSpector-wip is missing some files for install
-
06:10 PM Todo #1720 (Resolved): Relax input validation for PPTP Passwords
-
06:09 PM Bug #1654 (Resolved): miniupnpd.pid located in wrong folder
-
06:08 PM Bug #1545 (Resolved): Dynamic DNS updates fail on 3G connections
-
06:07 PM Feature #1536 (Resolved): Openvpn Client Exporter
-
06:07 PM Bug #1493 (Resolved): pf blocks all traffic following filter reload.
-
06:06 PM Feature #1451 (Resolved): Certificate errors after CARP election
-
06:05 PM Bug #1446 (Resolved): Export of internal generated cerificate (crt) ist empty when made from encrypted CA key
-
06:04 PM Feature #1326 (Resolved): OpenVPN Server in tap mode
-
06:03 PM Todo #1237 (Resolved): Restore patch for adding gif(4) to bridge(4)
-
06:03 PM Bug #1202 (Resolved): Shell access permission required for IPsec Xauth clients
-
06:03 PM Bug #1190 (Resolved): Incorrectly pasted SSL Cert breaks the webconfigurator
-
06:02 PM Bug #1171 (Resolved): Switching from HTTPS to HTTP does not mark certificate as unused
-
06:02 PM Bug #1168 (Resolved): Some description fields don't accept umlauts
-
05:59 PM Bug #342 (Resolved): OpenNTPD can only listen on interface IP
-
05:59 PM Feature #466 (Resolved): Make interface names clickable in "Interface assignments
-
05:58 PM Feature #804 (New): Ability to enable/disable static routes
- While it shows disabled in the GUI, a disabled route does not actually get removed from the OS if it's already been a...
-
05:53 PM Bug #1155 (Resolved): [patch] status_gateways.php doesn't show last check time
-
05:52 PM Feature #148 (Resolved): Allow alias usage on Outbound NAT
-
04:55 PM pfSense Packages Bug #1626 (Closed): Snort snort_rules.php drop down only works in Firefox
-
04:55 PM pfSense Packages Bug #1443 (Closed): Squid errors on updating version
-
04:54 PM pfSense Packages Bug #1218 (Resolved): Freeradius package does not start when i do reboot
-
04:54 PM pfSense Packages Bug #1131 (Closed): str_split function missing in squidGuard
-
04:54 PM pfSense Packages Feature #1100 (Resolved): Add additional ports to squid (includes patch)
-
04:54 PM pfSense Packages Bug #868 (Closed): transparent Squid breaks captive portal
-
04:53 PM pfSense Packages Bug #692 (Closed): snort pidfile issue
-
04:53 PM pfSense Packages Bug #524 (Resolved): nvnstat not saving records on embedded
-
04:53 PM pfSense Packages Bug #509 (Resolved): siproxd uses wrong interface w/PPPoE on 2.0
-
04:52 PM pfSense Packages Bug #436 (Resolved): [PATCH] rewrite of tinydns_add_active_leases
-
04:50 PM pfSense Packages Bug #1609 (Resolved): unable to install Avahi
- This should be OK now, the install process for Avahi was changed quite a bit over the last few months.
-
04:46 PM pfSense Packages Bug #2274 (Resolved): PBI package builds do not appear to honor build_options from pkg config
- this one is definitely fixed.
-
04:46 PM pfSense Packages Bug #2279 (Resolved): zoneinfo.tgz has old timezone names and data
- We updated zoneinfo in the main builds (not packages) a few months back, should be OK now.
-
04:46 PM pfSense Packages Bug #2381 (Resolved): nrpe2 not restarting on save or service restart
- this should be OK after my last round of updates, try again.
-
04:45 PM pfSense Packages Bug #2457 (Resolved): Lightsquid 1.8.2 pkg v.2.32 logpath is wrong in lightsquid.cfg
- this was fixed a while back, no problems now.
-
04:42 PM pfSense Packages Bug #2535: Avahi package installs, but fails to start
- Thank you ;)
-
04:41 PM pfSense Packages Bug #2535 (Resolved): Avahi package installs, but fails to start
-
04:40 PM pfSense Packages Bug #2535: Avahi package installs, but fails to start
- Ok.
So I believe this may be considered as solved :)
-
04:35 PM pfSense Packages Bug #2535: Avahi package installs, but fails to start
- Yes that's normal. Probably a side effect of how the PBI system adds the PBI users, that's a fairly new feature of th...
-
04:33 PM pfSense Packages Bug #2535: Avahi package installs, but fails to start
- Jim,
I install new VM with last snap
*FreeBSD pfSense.localdomain 8.3-RELEASE-p3 FreeBSD 8.3-RELEASE-p3 #0: Thu... -
03:16 PM pfSense Packages Bug #2535: Avahi package installs, but fails to start
- Update to the latest snap and try again, it is working from a bare install on a new snap here. I really don't want to...
-
03:14 PM pfSense Packages Bug #2535: Avahi package installs, but fails to start
- I try again, removing the avahi and messagebus users.
And install again the avahi package... -
03:03 PM pfSense Packages Bug #2535: Avahi package installs, but fails to start
- Carlos Cesario wrote:
> I usage this to solve temporary the problem.
>
> In shell console:
>
> [...]
This a... -
02:51 PM pfSense Packages Bug #2535: Avahi package installs, but fails to start
- Are you on a current snap and getting the PBI from our repo? I delete the messagebus and avahi users and then re-add ...
-
02:33 PM pfSense Packages Bug #2535: Avahi package installs, but fails to start
/usr/pbi/avahi-amd64/etc/rc.d/dbus onestart...-
01:46 PM pfSense Packages Bug #2535: Avahi package installs, but fails to start
- Try to run /usr/pbi/avahi-amd64/etc/rc.d/dbus onestart
See what happens there - I wiped away all traces of avahi a... -
01:22 PM pfSense Packages Bug #2535: Avahi package installs, but fails to start
- Avahi process now start, but dbus service no.
Jul 5 14:27:35 pfdev check_reload_status: Syncing firewall
Jul ... -
12:00 PM pfSense Packages Bug #2535 (Feedback): Avahi package installs, but fails to start
- Applied in changeset commit:b012ea0f60785020b8f697300fe8e78da2e5e45d.
-
11:51 AM pfSense Packages Bug #2535: Avahi package installs, but fails to start
- Real fix is pending - just needs pushed - should be up shortly.
-
11:50 AM pfSense Packages Bug #2535: Avahi package installs, but fails to start
- I usage this to solve temporary the problem.
In shell console:... -
03:58 PM Bug #2537: Packet loss thresholds set in System->Routing-><WAN interface> do not effect apinger
- Fixed to me.
-
07:00 AM Bug #2537 (Resolved): Packet loss thresholds set in System->Routing-><WAN interface> do not effect apinger
- I was noticing that the packet loss thresholds I set for my WANs were not being paid attention to by apinger and were...
-
02:46 PM Bug #1974: Captive Portal RADIUS accounting bytes wrong
- It should be fixed on snapshots of 2.0.x and 2.1
-
02:42 PM pfSense Packages Bug #2541 (Resolved): Remove man pages from Pbi Packages
- Not sure, but when I do that I typically update the sticky 2.1 package testing thread in the forum. I may do it this ...
-
02:40 PM pfSense Packages Bug #2541: Remove man pages from Pbi Packages
- Nice!
Have you idea when next full rebuild run!? I can reinstall all packages to test. -
02:17 PM pfSense Packages Bug #2541: Remove man pages from Pbi Packages
- https://github.com/bsdperimeter/pfsense-tools/commit/d3b32de0d2b2ec38e58a5aead1cd4235ddb70230
I rebuilt and upload... -
12:19 PM pfSense Packages Bug #2541: Remove man pages from Pbi Packages
- That would be great :)
-
12:02 PM pfSense Packages Bug #2541: Remove man pages from Pbi Packages
- Man pages should be safe to remove, I'll add them to the exclude list. Though the way perl puts those under lib/ migh...
-
12:00 PM pfSense Packages Bug #2541 (Resolved): Remove man pages from Pbi Packages
- Does possible remove the man pages/directory from PBI packs? Or is really necessary to keep these directories.
That ... -
02:06 PM Revision 7f2bd97c: Merge pull request #167 from ccesario/master
- Change field name from lowloss to losslow fixes ticket #2537
-
02:03 PM Revision 02a8dab0: Change field name from lowloss to losslow
- related in http://redmine.pfsense.org/issues/2537
-
10:57 AM Bug #2459 (Resolved): Adding autocomplete=off in the webGUI forms
-
10:56 AM Bug #2459: Adding autocomplete=off in the webGUI forms
- Is working as expected.
-
10:47 AM pfSense Packages Bug #2429 (Resolved): Hostname issues in OpenVPN Client Export
-
10:42 AM pfSense Packages Bug #2429: Hostname issues in OpenVPN Client Export
- Solved to me too :)
-
10:14 AM Bug #2539 (Closed): Table entries added by filterdns can clobber overlapping hardcoded entries during DNS changes
- Whoops accidentally made a duplicate. See #2540
-
10:09 AM Bug #2539 (Closed): Table entries added by filterdns can clobber overlapping hardcoded entries during DNS changes
- If filterdns resolves a record to an IP that exists in a table, and then later switches away, the hardcoded IP will b...
-
10:09 AM Bug #2540 (Resolved): Table entries added by filterdns can clobber overlapping hardcoded entries during DNS changes
- If filterdns resolves a record to an IP that exists in a table, and then later switches away, the hardcoded IP will b...
-
09:39 AM Bug #2474 (Resolved): Recent changes to pkg_edit code broke select_source
-
09:28 AM Revision dd760cfc: Fix hardcodded alias type so alias suggestion works as expected while creating nested aliases.
-
07:12 AM Feature #2538 (Needs Patch): Dynamic DNS updates do not update properly when behind an improperly configured proxy server
- I'm not sure if this should be considered a bug report, feature request, or both. I've done most of the legwork alre...
-
06:34 AM Revision b2b9892d: Merge pull request #165 from r-duran/master
- Fix get_staticroutes() function to handle IPv6 subnets properly
-
06:07 AM Revision 6d26ccdb: Fix get_staticroutes() function to handle IPv6 subnets properly
-
05:35 AM pfSense Packages Bug #2536 (Resolved): arpwatch issues
- Didn't know about this issue-tracker so I posted about the issues in the forum
and I'm to lazy to rewrite it here so...
07/04/2012
-
04:27 PM pfSense Packages Bug #2535 (Resolved): Avahi package installs, but fails to start
- I'm having an issue with the Avahi package under pfSense 2.1. The package installs, but fails to start, as it seems l...
-
02:00 PM Revision 45c19791: Make sure one_pass i selected when CP is active
-
01:59 PM Revision d5419517: Make sure one_pass i selected when CP is active
-
11:39 AM Revision 88f14ed9: Merge pull request #164 from bcyrill/cp_cert3
- Remove ca reference, its stored already in the certificate.
-
05:39 AM Feature #1009: Active Directory group membership checking
- Greetings!
I was able to use Eric's patch on 2.0.1 (amd64) but Andy's patch was not reading the groups.
Rather ...
07/03/2012
-
07:09 PM Revision 222e3527: Remove ca reference
-
06:01 PM Revision b1dada0d: Merge pull request #163 from bcyrill/cp_cert2
- Implement certificate chain in Captive Portal
-
05:05 PM Revision 562ed531: Merge remote-tracking branch 'upstream/master' into cp_cert2
-
05:03 PM Revision adca02c4: Implement certificate chain in Captive Portal
-
04:59 PM Revision a22b41d0: Sync with upstream pbi tools
-
03:48 AM Bug #1841: TCP state issue when traffic passing through a GRE tunnel within IPSEC
- Martin Saini wrote:
> Hi! Have setuped the same config - same issue here :( soo is there any "manual" workaround to...
07/02/2012
-
09:17 PM Bug #2526: Limiter appears to break IPv6 connectivity
- On review of the screenshot it appears that the limiter is not assigning a bucket for IPv6 traffic denoted by "BKT 0"...
-
08:45 PM Revision 95361ccd: Merge pull request #162 from bcyrill/cp_cert
- Use Certificate Manager in Captive Portal settings
-
08:20 PM Revision 36f6ed35: Use Certificate Manager in Captive Portal settings
-
05:45 PM Revision 7852ce9b: Display different message and do not display message about interfaces that do not exist if this is the default configuration.
-
03:27 PM Feature #2533: Use Certificate Manager in Captive portal settings
- Made patch & pull request.
-
10:14 AM Feature #2533 (Resolved): Use Certificate Manager in Captive portal settings
- Instead of directly importing certificates in the Captive portal settings the Certificate Manager could be used simil...
-
02:13 PM pfSense Packages Bug #2534 (Feedback): OpenVPN authentication fails when using 'domain\username' format.
- Doing a quick scan I didn't see anything in our code that would be doing that, OpenVPN could be doing it internally, ...
-
01:48 PM pfSense Packages Bug #2534 (Closed): OpenVPN authentication fails when using 'domain\username' format.
- OpenVPN turns backslashes in the username to underscores. A username input as 'domain\user' is fed to RADIUS as 'doma...
-
10:47 AM pfSense Packages Bug #2435 (Resolved): SquidGuard: Deprecated function 'eregi' warnings
-
10:19 AM pfSense Packages Bug #2528 (Resolved): Remove share/doc from Pbi Packages
-
10:12 AM Todo #2532 (Closed): updates.pfsense.org does not serve directory listings over IPv4 as it does over IPv6
- Those are not meant to be human-readable, they're only used as the update site for the firewall. For humans downloadi...
-
10:10 AM Todo #2532 (Closed): updates.pfsense.org does not serve directory listings over IPv4 as it does over IPv6
- For example the URL http://updates.pfsense.org/_updaters/ displays a directory listing over IPv6, and over IPv4 you g...
-
10:00 AM Revision e0a45ce0: Do not directly print out a message when checking the interfaces, instead saving the list to use later. Display this list before the interface mismatch message. Fixes #2468 and fixes #2531
-
05:57 AM Bug #2468: Interface does not exist warning during a network interface mismatch
- The commit I just pushed removes the duplicate messages and the message causing a problem with the redirect after a g...
-
05:50 AM Bug #2468 (Feedback): Interface does not exist warning during a network interface mismatch
- Applied in changeset commit:e0a45ce03c033d40afbcd9a64b16dc686a000465.
-
01:30 AM Revision 58d609d4: Merge pull request #159 from ccesario/a38976951590aa988ee205d4b4bdfc71ea1b6a27
- More changes ereg_replace to preg_replace() and ereg() to preg_match() functions
07/01/2012
-
10:49 PM Revision a3897695: Change ereg() to preg_match() function
-
10:47 PM Revision cf1d5947: Fix typo
-
10:45 PM Revision 4dc8f32e: Change ereg_replace() to preg_replace() function
-
10:38 PM Revision 4afb7d66: Change ereg() to preg_match() function
-
06:15 PM pfSense Packages Bug #2318 (Resolved): Mod_Proxy
- This was fixed a while ago on 2.0.x also, didn't realize there was a ticket for it.
-
05:57 PM pfSense Packages Bug #2318: Mod_Proxy
- This is fixed in 2.1
-
05:51 PM pfSense Packages Bug #2435: SquidGuard: Deprecated function 'eregi' warnings
- @Carlos It looks like you found them all. I don't see any more errors anyway.
-
05:20 PM pfSense Packages Bug #2435: SquidGuard: Deprecated function 'eregi' warnings
- Already fixed. Right?
https://github.com/bsdperimeter/pfsense-packages/commit/50ed7eddd7e02e1c8b97f4ec219c8e5e9ce6... -
03:46 PM Bug #2527 (Resolved): Miniupnpd starts but isn't working
-
03:37 PM Bug #2527: Miniupnpd starts but isn't working
- this has been resolved with the latest snapshot. You can close this ticket.
http://forum.pfsense.org/index.php/top... -
03:09 PM Revision b501f04d: Merge pull request #158 from ccesario/master
- Change ereg_replace to preg_replace() and ereg() to preg_match() functions
-
01:00 PM pfSense Packages Bug #2528: Remove share/doc from Pbi Packages
- After reinstall all packages, the doc directory isn't present, and the size decrease :)...
06/30/2012
-
10:11 PM Revision 83e0d4c8: Fix LDAP over IPv6 (works fine, just needed slight adjustment to URI)
-
05:40 PM Revision 9deb5107: Reconfigure OpenVPN on gateway change
-
05:40 PM Revision 2b73d3a0: Add openvpn openvpn reload script
-
02:31 PM Bug #2529: Captive Portal does not function after update snap or restart system
- Running "ipfw_context -l" after a reboot shows that no contexts are defined.
-
01:13 PM Revision aff670f6: Change ereg_replace to preg_replace() function
-
01:11 PM Revision 41fe9ef0: Change ereg_replace() to preg_replace() function
-
01:03 PM Revision 3213b096: Change ereg() to preg_match() function
-
12:59 PM Revision 72c59dd8: Change ereg() to preg_match() function
-
12:55 PM Revision 52108aca: Change ereg() to preg_match() function
-
12:54 PM Revision f1bdc4e3: Change ereg() to preg_match() function
-
11:58 AM Bug #2531 (Closed): Restoring backup from machine with different network cards works only partially
- Duplicate of #2468, but a new symptom of the same problem. I added a note to that ticket.
-
06:34 AM Bug #2531 (Closed): Restoring backup from machine with different network cards works only partially
- Trying to restore settings backup made on a different computer results in the following error:
_Warning: Interface... -
11:57 AM Bug #2468: Interface does not exist warning during a network interface mismatch
- This is apparently also causing problems with a gui restore, see #2531.
-
02:17 AM pfSense Packages Bug #2528 (Feedback): Remove share/doc from Pbi Packages
- There was a bug in the pbi_makeport code that was causing the exclude list to not be respected. I found and fixed the...
06/29/2012
-
08:39 PM Bug #2529: Captive Portal does not function after update snap or restart system
- The start up bug still exists. After a snap upgrade or a system reboot I still have to save the main CP page before i...
-
08:37 PM Bug #2529: Captive Portal does not function after update snap or restart system
- Seems to be fine now I can disconnect a user with out errors and CP remains running
-
12:19 PM Bug #2529 (Feedback): Captive Portal does not function after update snap or restart system
- Fixed the bcmod error with commit:003436b and commit:c199393 - see if that helps.
-
09:31 AM Bug #2529: Captive Portal does not function after update snap or restart system
- I've also noticed If I kick a user they can still get full access through the portal.
When disconnecting a client I... -
09:21 AM Bug #2529 (Resolved): Captive Portal does not function after update snap or restart system
- Each time the system is rebooted either manually or because of a new snapshot upgrade Captive portal using freeradius...
-
07:02 PM Bug #2530 (Closed): Having LDAP enabled in User Manager prevents IPSec from working
- We are transitioning that to script-based auth rather than relying on racoon's built-in LDAP functions. The work is j...
-
06:51 PM Bug #2530 (Closed): Having LDAP enabled in User Manager prevents IPSec from working
- I had a LDAP (Active Directory) server defined in User Manager, which prevented racoon from working:...
-
06:18 PM Revision 36e77fa9: Fix devd match - it's prefixed by the friendly name, not by the physical interface name
-
06:13 PM Revision e42b6dd7: OpenVPN _servers_ can start on carp vips, just not _clients_.
-
06:12 PM Revision 260f267e: OpenVPN _servers_ can start on carp vips, just not _clients_.
-
04:23 PM Revision 003436be: CP Radius accounting wants bcmod() so we need to activate bcmath.
-
04:21 PM Revision c1993935: CP Radius accounting wants bcmod() so we need to activate bcmath.
-
12:29 PM pfSense Packages Bug #2351 (Resolved): Bandwidthd does not start up
-
12:27 PM pfSense Packages Bug #2350 (Resolved): Freeradius2 does not start up
-
08:40 AM pfSense Packages Bug #2528: Remove share/doc from Pbi Packages
- We try to leave these out already (using the path example from http://wiki.pcbsd.org/index.php/PBI_Module_Builder_Gui...
-
08:34 AM pfSense Packages Bug #2528 (Resolved): Remove share/doc from Pbi Packages
- I saw pbi packages that are consuming a considerable space in hard disk in comparison with tbz packages.
Does possib... -
07:51 AM Bug #2527 (Resolved): Miniupnpd starts but isn't working
- 2.1-BETA0 (i386)
built on Thu Jun 28 04:17:24 EDT 2012
FreeBSD 8.3-RELEASE-p3
Code:
Jun 28 11:20:43 miniupnp... -
05:59 AM Bug #1974: Captive Portal RADIUS accounting bytes wrong
- I have been testing this bug all week.
Below are files sizes downloaded and what CP sent too freeradius2.
5MB down...
06/28/2012
-
11:58 PM Revision 2c51f293: If a package has donotsave, still process its input validation. Properly handle preoutput in the case of input errors also.
-
01:57 PM Bug #2526: Limiter appears to break IPv6 connectivity
- This bug applies to 2.1 dev from June 28th as far back as June 20th. Prior to that dates build I was not using 2.1 an...
-
01:38 PM Bug #2526 (Resolved): Limiter appears to break IPv6 connectivity
- IPv6 connectivity through pfSense appears to be blocked when directed through a limiter (accessed under Firewall -> T...
-
11:32 AM Revision ea87cde2: Merge pull request #157 from phil-davis/patch-1
- OpenVPN Server and Client config pages - some minor text fixes
- 11:24 AM Revision e8d65d0f: OpenVPN Client config page - minor test fix
- 11:12 AM Revision 8e932fb5: OpenVPN Server config page - a couple of minor text tidy ups
-
10:08 AM Revision a3eb01e7: Comment out adding static routes for gateway monitor IPs because we now bind to the correct Interface with apinger.
-
10:00 AM Revision 174ba22b: Allow for selecting the gateway group as a interface for the OpenVPN clients
-
09:59 AM Revision c1449c94: If we only have a IPv6 interface we'll use that, otherwise a IPv4 address always has preference. Revisit this for OpenVPN 2.3
-
07:39 AM Revision 24ffada4: Merge pull request #156 from phil-davis/master
- Fix preg_match warning
- 05:38 AM Revision b98f601e: Fix: Warning: preg_match(): No ending delimiter '/' found in /etc/inc/gwlb.inc on line 696
06/27/2012
-
08:55 PM Revision 198ac406: LAN is not special here anymore. Do not remove the interface again (it was alraedy removed before this block), do not remove NAT and such (OPTs may still need it!) and no need to remove shaper. Improve DHCP check and generalize it to work on any interface, not just LAN.
-
08:53 PM Revision 00d7fd51: Bump 2.0.2 to RC3
-
08:53 PM Revision 766bbe9d: LAN is not special here anymore. Do not remove the interface again (it was alraedy removed before this block), do not remove NAT and such (OPTs may still need it!) and no need to remove shaper. Improve DHCP check and generalize it to work on any interface, not just LAN.
-
05:40 PM Revision 9a202d62: Acting on Wifi Down events can cause more issues then it solves, this can also happen during configuration or temporary signal loss, we should not act on it.
-
04:06 PM pfSense Packages Bug #2525: Reboot (Kernel Panic) during torrent download
- Thank you!
-
04:05 PM pfSense Packages Bug #2525: Reboot (Kernel Panic) during torrent download
- Always use loader.conf.local for user changes. loader.conf can (and often will) be overwritten by the system at times.
-
03:56 PM pfSense Packages Bug #2525: Reboot (Kernel Panic) during torrent download
- Got it!
Implemented changes mentioned in http://doc.pfsense.org/index.php/Tuning_and_Troubleshooting_Network_Cards
... -
03:09 PM pfSense Packages Bug #2525 (Rejected): Reboot (Kernel Panic) during torrent download
- Not a general problem. Please start a thread on the forum or mailing list for troubleshooting.
It could be hardwar... -
02:48 PM pfSense Packages Bug #2525 (Rejected): Reboot (Kernel Panic) during torrent download
- This is the first time it happened.
Added 11 torrents (about 200MB each) and after about 10 minutes of downloading m... -
11:47 AM Revision 604cb3b1: Merge pull request #155 from phil-davis/master
- Only display "No OpenVPN instance defined" if there really are none.
- 06:00 AM Revision 0db6b9eb: Only display "No OpenVPN instance defined" if there really are none.
- 05:58 AM Revision 48b490ca: Only display "No OpenVPN instance defined" if there really are none.
06/26/2012
-
06:07 PM Revision 53842a6c: Add a small function to notify via remote methods only (smtp/growl). Notify when a dyndns IP changes.
-
02:10 PM Bug #1629: invalid state table entries after WAN IP change
- I don't know if it will help, but I noticed it happens much more frequently when my internet connection is flaky. It...
-
01:44 PM Bug #1841: TCP state issue when traffic passing through a GRE tunnel within IPSEC
- Hi! Have setuped the same config - same issue here :( soo is there any "manual" workaround to that?
-
11:59 AM Bug #2524 (Resolved): SNMP only shows one processor on a dual core system
- The output of "dmesg | grep -i cpu" is:
CPU: Intel(R) Pentium(R) Dual CPU E2200 @ 2.20GHz (2199.97-MHz K8-cla... -
12:05 AM Feature #2523 (Closed): Prompt for confirmation before upgrading to different architecture
- The upgrade process should prompt the user before it upgrades from 32 to 64 bit or vice versa to prevent accidentally...
06/25/2012
-
11:20 PM Bug #1974: Captive Portal RADIUS accounting bytes wrong
- I just tested this in the latest snapshot (built Mon Jun 25 16:02:04 EDT 2012) and the problem still doesn't seem to ...
-
11:07 PM Revision cf5f7d7e: Merge pull request #154 from marcelloc/master
- firewall_alises.php - include all tab to preserve the old behavior
-
11:03 PM Revision d0df92dc: firewall_alises.php - include all tab to preserve the old behavior
-
10:18 PM Revision a83f821c: Merge pull request #153 from marcelloc/master
- firewall_aliases.php - include tabs(ip,port,url) , list aliases sorted and dom_title funcion to show titles.
-
10:08 PM Revision 0f89c125: firewall_aliases.php include tabs(ip,port,url) , list aliases sorted, use dom_title funcion to show titles.
-
05:22 PM pfSense Packages Bug #2521 (Resolved): nmap package "liblua-5.1.so.1" not found
- Fixed in commit:82049d4
-
04:51 PM pfSense Packages Bug #2521: nmap package "liblua-5.1.so.1" not found
- Yap! That fixed it!
+ now I know where to get packages from :)
Thank you! -
04:46 PM pfSense Packages Bug #2521: nmap package "liblua-5.1.so.1" not found
- If you run:
# pkg_add -r http://files.chi.pfsense.org/packages/8/All/lua-5.1.5_4.tbz
Then:
# rehash
Does it work? -
04:38 PM pfSense Packages Bug #2521 (Resolved): nmap package "liblua-5.1.so.1" not found
- Version 2.0.1-RELEASE (i386)
built on Mon Dec 12 17:53:52 EST 2011
FreeBSD 8.1-RELEASE-p6
--------------------... -
04:44 PM Revision 47c48e28: Check in code that allows for using a gateway group as the interface on the OpenVPN server page. Only allow IPv4 gateway groups for now. We'll need to add IPv6 suppport here later when we import OpenVPN 2.3.
- Unbreak the gateway group function on broken configurations like a missing 3G stick.
Unbreak the interface IP/IPv6 co... -
01:07 PM Bug #2511: DHCPv6 Shows Wrong DUID
- It does. Also had a look around and nothing appears broken as a result. To clarify, line 152ish of status_dhcpv6_leas...
-
11:12 AM Bug #2511: DHCPv6 Shows Wrong DUID
- Did you make and test that change? Did that make it show the proper DUID for you?
06/24/2012
-
08:59 PM Bug #1629 (New): invalid state table entries after WAN IP change
-
04:35 PM Bug #1629: invalid state table entries after WAN IP change
- Same issue with WAN DHCP, 2.0.1-RELEASE (i386) (nanobsd)
-
07:59 PM Revision a2beee75: Catch libraries from subdirectories of PBI lib dirs too
-
06:59 PM Revision 58816510: Fix hiding services in the widget that contain a space in the service name.
06/23/2012
-
11:54 PM Revision d94280cd: make sure this grep parameter is quoted
-
07:51 PM Bug #2518: Gateway in DHCP Server Doesn't Use Default Setting
- As an extra data point, I also still have a default gateway in DHCP on a snap from today.
-
02:41 PM Bug #2518: Gateway in DHCP Server Doesn't Use Default Setting
- OK, I still have my default gateway on June 22nd. I think I know what feature you are triggering.
Just to verify, do... -
02:20 PM Bug #2518: Gateway in DHCP Server Doesn't Use Default Setting
- June 16th works for my mac here, both v6 and v4 has gateways.
Upgrading router to a june 22nd now, gateway field i... -
05:25 PM Revision 45930696: Setup library paths to include /usr/pbi/*/lib as a last resort to make sure things can find libraries. We may eventually replace this with a better method as this can lead to conflicts, but for now it will allow packages to find their proper libraries.
-
10:30 AM pfSense Packages Feature #2519 (Needs Patch): Unlimited speed from cache
-
06:36 AM pfSense Packages Feature #2519 (Needs Patch): Unlimited speed from cache
- done some tests, while there's a bandwidth allocation for some captive portal users, they are not able to get full st...
-
09:19 AM Bug #1629: invalid state table entries after WAN IP change
- I'm seeing the exact same behavior using a PPPOE internet connection, 2.0.1-RELEASE i386, and asterisk.
When my co...
06/22/2012
-
11:23 PM Revision ea89b8df: Merge pull request #152 from bcyrill/patch-8
- IGMPproxy, service_status widget
-
11:19 PM Revision ba1fabef: IGMPproxy, service_status widget
-
11:09 PM Revision 43a92efd: Merge pull request #151 from bcyrill/patch-7
- Make sure it's an array as an empty string has a count > 0
-
11:09 PM Revision 65493c3d: Merge pull request #150 from bcyrill/patch-6
- Do not try to start igmpproxy when there's no igmpentries configured.
-
11:09 PM Revision 50c74f0f: Make sure it's an array as an empty string has a count > 0
-
11:03 PM Revision f86f6fb2: Do not try to start igmpproxy when there's no igmpentries configured.
-
10:16 PM Revision 7b883165: Merge pull request #149 from bcyrill/patch-5
- fix typo
-
10:15 PM Revision b8da4d00: fix typo
-
06:27 PM Revision f5df5e84: re-indentation.
-
05:36 PM Bug #2518 (Resolved): Gateway in DHCP Server Doesn't Use Default Setting
- In the DHCP server settings the gateway option reads:
"The default is to use the IP on this interface of the firew... - 12:00 PM Revision d4059316: Add missing global
- 11:59 AM Revision 2ec063f9: Add missing global
-
11:14 AM Bug #2511: DHCPv6 Shows Wrong DUID
- Having thought about it a little more, it's probably to strip the ; from the end of the lines. Suggested fix is to ad...
-
09:34 AM Bug #2511: DHCPv6 Shows Wrong DUID
- Got bored at work... don't tell the boss. Found the issue.
The awk clean pattern in status_dhcpv6_leases.php remov... -
08:52 AM Bug #2511: DHCPv6 Shows Wrong DUID
- Sorry, that's the wrong file. Right one attached.
Phil -
03:47 AM Bug #2511: DHCPv6 Shows Wrong DUID
- Here's the file, if it helps. As above, DUID Windows reports is:
00-01-00-01-13-3E-DF-3B-A4-BA-DB-03-7F-BA
DUID...
06/21/2012
-
10:29 PM Feature #2513 (Closed): Associate applicable static route to Gateway Monitor rule
- didn't notice this when I opened mine, closing in favor of #2514
-
10:22 PM Feature #2513 (Closed): Associate applicable static route to Gateway Monitor rule
- This is based on a "message":http://lists.pfsense.org/pipermail/list/2012-June/002408.html to the pfSense email list:...
-
10:27 PM Bug #2514 (Resolved): static routes for monitor IPs should be removed
- Since apinger in 2.0 and newer binds to specific IPs, and the policy routing for firewall-sourced traffic bound to a ...
-
08:34 PM Bug #2511: DHCPv6 Shows Wrong DUID
- It's in /var/dhcp/var/db/dhcpd6.leases - but it's encoded.
It's possible there is a buglet in the parsing code, DH... -
05:45 PM Bug #2511: DHCPv6 Shows Wrong DUID
- Where is this file? I'll check the DUIDs in it.
-
02:07 PM Bug #2511: DHCPv6 Shows Wrong DUID
- ok, wow, I think those DUID values we show are straight from the dhcp leases file. Could be a bug in dhcpd.
Needs mo... -
01:29 PM Bug #2511 (Resolved): DHCPv6 Shows Wrong DUID
- The DHCPv6 server is issuing leases. It has issued 2a02:b90:7004:4000::8710 to a Windows 7 PC and displays the DUID a...
-
06:23 PM Bug #2495: pfsense doesn't seem to know what its WAN IP is
- I can confirm this; OpenVPN is binding to a random IP that's IP Aliased.
-
05:15 PM Revision a448b35f: Restore this code that was accidentally reverted
-
02:00 PM Bug #2512 (Closed): DHCPv6 Server/RA Link is wrong
-
01:59 PM Bug #2512: DHCPv6 Server/RA Link is wrong
- Sorry, my bad - my snapshot is a few days old and I didn't see a fixed bug in the tracker.
-
01:57 PM Bug #2512: DHCPv6 Server/RA Link is wrong
- Which page exactly? The main DHCP6 page should have been fixed a couple days ago by commit:bfb005344d122b6cc304f0e686...
-
01:54 PM Bug #2512 (Closed): DHCPv6 Server/RA Link is wrong
- This page says "The DHCP lease table can be viewed on the Status: DHCP leases page.". This links to the standard DHCP...
-
01:34 PM Revision 0d5eff9f: Add "idle" to clarify that legitimate active connections would not be dropped by the pf optimization mode.
-
11:23 AM Feature #2123: Backup RRD files using the xml dump and restore from RRD tools
- Jim P wrote:
> We're open to that but it requires a lot of changes in RRD tool syntax, fonts, and so on that also re... -
11:11 AM Feature #2123: Backup RRD files using the xml dump and restore from RRD tools
- We're open to that but it requires a lot of changes in RRD tool syntax, fonts, and so on that also require pulling in...
-
11:10 AM Feature #2123: Backup RRD files using the xml dump and restore from RRD tools
- You should try to upgrade the rrdtool as the memory consumption required during restore has been reduced drastically....
-
10:54 AM Revision cbf4dec9: Merge pull request #148 from phil-davis/master
- Fix time display on dashboard and other places
- 10:17 AM Revision 06c4bb10: Use config array to get the timezone. syscfg is no longer defined here.
- 10:15 AM Revision c8083ee2: Use config array to get the timezone. syscfg is no longer defined here.
- 10:14 AM Revision 119f89c8: Use config array to get the timezone. syscfg is no longer defined here.
-
03:48 AM Bug #2349 (New): vlan(4) needs altq adaption on FreeBSD 8.3++
- This patch broke ARP on a VLAN for directly connected devices. E.g. the switch IP address.
You can communicate wit... -
03:30 AM Feature #2471: null routing of unused address space
- I found that the ordering of -blackhole is required to be on the end of the command, or was that the opposite? I chan...
-
03:22 AM Feature #2471: null routing of unused address space
- Sorry for the late reply!
the -blackhole seems not to do anything. still loops at the pfbox with ipv6. tested a bi...
06/20/2012
-
04:45 PM Revision e4610069: Make sure to skip "unexpected" RA messages from other interfaces, we don't want those.
-
04:32 PM pfSense Packages Bug #2350: Freeradius2 does not start up
- .PBIs for amd64 and i386 are now up.
freeradius.inc was modified to fit pfsense2.1 environment.
Basic authenticatio... -
03:27 PM pfSense Packages Bug #2509 (Resolved): Snort pfsense_rules should go away
- Snort's pfsense_rules no longer exists and should be removed from the package.
-
01:35 PM Revision 27746f77: Make sure that the limits are included in the normal ruleset, otherwise pf will use the defaults.
-
05:45 AM Bug #1841: TCP state issue when traffic passing through a GRE tunnel within IPSEC
- Sorry, should have mentioned, both pairs of firewalls are running 2.0.1
-
05:44 AM Bug #1841: TCP state issue when traffic passing through a GRE tunnel within IPSEC
- I have the same problem as well, over gif tunnels as well as gre.
I use IPSEC transport mode between the CARP WAN ...
06/19/2012
-
07:05 PM Revision 9bdb6a13: Remove null character at end of file
-
04:15 PM Bug #2038: Some 3G WANs on 2.0.x do not come up on cold boot
- Found a generic 3G modem device wader that caters to a lot of existing kit. Biggest drawback is that it's python. Not...
-
02:43 PM Bug #2507 (Rejected): nanobsd is incredibly slow to save
- Duplicate of #2401
-
02:42 PM Bug #2507 (Rejected): nanobsd is incredibly slow to save
- Since upgrading to 2.1 snapshots the web interface is incredibly slow to save any settings. The pages load quickly en...
-
01:59 PM Bug #2458 (Resolved): Pfsense not registering DNS servers found by PPP
-
01:35 PM Bug #2458: Pfsense not registering DNS servers found by PPP
- Works for me too now, thanks a lot.
-
01:45 PM Revision f2d5c538: Fix trailing whitespace
-
12:30 PM Revision cc43c4f8: Remove testing/debugging entry
-
11:56 AM pfSense Packages Bug #2345 (Resolved): Varnish3 Install Fails on pfsense 2.1 Head
-
10:11 AM pfSense Packages Bug #2345: Varnish3 Install Fails on pfsense 2.1 Head
- I can now confirm that the latest snapshot [2.1-BETA0 (amd64) built on Mon Jun 18 20:06:29 EDT 2012] fixes the proble...
-
03:22 AM Bug #2506: filterdns needs help for IPv6
- Aliases can have both IPv4 and IPv6 addresses. Ermal did add some IPv6 support bits, but I'm not sure if he added qua...
-
02:17 AM Feature #1668: OpenVPN Client Export support Tunnelblick
- Creating a Tunnelblick configuration (not a installer bundle) seems pretty straightforward as the uncompressed config...
- 01:51 AM Revision 3fccb440: fix text
- 01:48 AM Revision eb004d5d: fix text
06/18/2012
-
11:45 PM Bug #2506 (Resolved): filterdns needs help for IPv6
- filterdns appears to solely use IPv4 IPs in aliases. Need to determine how to handle that, especially whether PF tabl...
-
10:55 PM Feature #2505 (Resolved): Toggle button to disable/enable multiple firewall rules
- I'd like to be able to disable and enable multiple firewall rules at once. It would make it easier for troubleshootin...
-
08:59 PM Revision d51927d2: Update pbi_create to current code from pc-bsd
-
05:51 PM Revision 68b624ec: Correct typo
-
05:43 PM Revision 61c4383d: A few launch improvements so that configuring the DHCP6 client on the WAN it immediately kicks in.
- With the fixed rc.newwanipv6 it should immediately spring to life.
Redmine ticket #2414 -
05:39 PM Revision 63127eee: Make sure that we configure the track interface from the DHCP6 wan, correct typo.
- Redmine ticket #2414
-
04:37 PM Revision 2972b3e7: Now that we actually have a IP protocol tag in the config.xml we can make this check a lot simpler and do less guessing.
- Redmine ticket #2503
-
04:14 PM Bug #2414: IPv6 DHCP WAN, issue routing firewall-generated traffic
- Just tested a upgrade from a 2.0.2 VM to 2.1, configured WAN for DHCP6 and LAN as track, prefix id. 0
Does not bring... -
04:12 PM Revision 6be02801: Use awk instead of grep, this works on a v4 PPPoE connection for me. Need to verify that it works for 3G too.
- Redmine ticket #2458
-
03:45 PM Bug #2503: Changing monitor IP results in "The IPv6 monitor address <IPv4 IP> can not be used with a IPv4 gateway'."
- I saw room for improvement regardless, we now have a ipprotocol tag so we don't have to guess the address family. Jus...
-
02:58 PM Bug #2503: Changing monitor IP results in "The IPv6 monitor address <IPv4 IP> can not be used with a IPv4 gateway'."
- edit a static IPv4 gateway, blank out the monitor IP, save. Edit it again, try to put in a monitor IP, and it does this.
-
02:51 PM Bug #2503 (Feedback): Changing monitor IP results in "The IPv6 monitor address <IPv4 IP> can not be used with a IPv4 gateway'."
- Can you give me what specific case this applies too? I can't replicate it with a static IPv4 gateway.
-
02:47 PM Bug #2503: Changing monitor IP results in "The IPv6 monitor address <IPv4 IP> can not be used with a IPv4 gateway'."
- Not able to replicate just yet.
I have a static gateway on my LAN for the Cisco 1811 and I can add a monitor IP just... -
03:43 PM Revision ce35c606: Don't fall back to fetching PBIs from FreeBSD, they have none.
-
03:37 PM Revision ce73b2c5: Support IPv6 aliases, the frontend already does. Removing does not work yet.
- See ticket #2483
-
03:24 PM Bug #2458 (Feedback): Pfsense not registering DNS servers found by PPP
- Ok, replaced cut with awk and now it does what I intended, fixed on PPPoE test and PPP 3G test. (v4 only)
-
11:06 AM Bug #2458 (New): Pfsense not registering DNS servers found by PPP
-
02:53 PM Feature #2462 (Resolved): New 3G (PPP) provider
- Yeah, *99# is the default dial string for these types of devices, similar to bluetooth. Pretty much the defined dial ...
-
02:51 PM Feature #2471 (Resolved): null routing of unused address space
- Appears to be resolved?
-
02:43 PM Bug #2483: IPv6 Interface Aliases not functioning
- Ok, so I added code to add the IP alias for IPv6, but removing does not work.
Ermal, can you add support for IPv6 ... -
02:15 PM Revision bfb00534: Fix link
-
02:12 PM Revision 20e7e444: Correct variable name. Fixes packet capture interface validation.
-
12:31 PM pfSense Packages Bug #2345: Varnish3 Install Fails on pfsense 2.1 Head
- I will wait a couple of days, try the new snapshot and report back the status.
In the mean time, thanks! -
11:38 AM pfSense Packages Bug #2345 (Feedback): Varnish3 Install Fails on pfsense 2.1 Head
- This is because the package is set to download from a non-pfSense site, something we're trying to clean up. The PBI i...
-
11:17 AM pfSense Packages Bug #2345: Varnish3 Install Fails on pfsense 2.1 Head
- I can confirm this workaround to work on 2.1 [2.1-BETA0 (amd64) built on Mon Jun 11 18:14:31 EDT 2012].
-
03:06 AM Bug #2349: vlan(4) needs altq adaption on FreeBSD 8.3++
- Working great for me now, thanks Ermal for your hard work!
-
12:20 AM Revision 2e2eb012: Brazilian Portuguese (pt_BR) translations added
06/17/2012
-
09:43 PM Feature #2504 (New): lagg enhancements
- The FreeBSD man page for lagg gives an example of configuring a lagg with a WiFi interface as a member.
The pfSens... -
07:35 PM Revision f7eb043c: Use require_once() prevent declaration errors.
- Fixes redmine ticket #2502
-
06:28 PM Bug #2503 (Resolved): Changing monitor IP results in "The IPv6 monitor address <IPv4 IP> can not be used with a IPv4 gateway'."
- adding a monitor IP to a static IPv4 gateway results in "The IPv6 monitor address <IPv4 IP> can not be used with a IP...
-
04:48 PM Bug #2502 (Resolved): PHP Fatal error, encrypted_configxml() redeclared.
- Should be fixed now, caused by external config loader.
-
04:10 PM Bug #2502 (Resolved): PHP Fatal error, encrypted_configxml() redeclared.
- PHP Errors:
[01-Jan-2000 01:11:16 UTC] PHP Fatal error: Cannot redeclare encrypted_configxml() (previously declared...
06/16/2012
-
06:14 PM Revision 15d18321: Merge pull request #147 from marcelloc/master
- improve alias popup in firewall_rules
- 05:58 PM Revision 4e8854c6: improve alias popup in firewall_rules
- include url_table list up to 10000 items
read alias only on mouseover
use table to list columns
show edit shortcut
sh... -
04:48 AM Feature #2501 (Resolved): Add no-sync option for firewall rules
- Add an option to firewall_rules_edit.php for no-sync to keep states from being synced via pfsync.
-
02:07 AM Revision 3acbad17: This apparently is breaking reinstalls. Revert "Actually make reinstallpkg remove the bionaries and really reinstall them"
- This reverts commit 3ddb92a6a52e2345684c11da72ef6853b82d2915.
-
02:07 AM Revision 5a61e863: Revert "Remove missed line"
- This reverts commit 2b52fee241484b1d52b2435e1716461ba2e36486.
-
02:06 AM Revision 2229d94e: This is apparently breaking reinstalls. Revert "Actually make reinstallpkg remove the bionaries and really reinstall them"
- This reverts commit 12b0fa564dc9b9ffe1773855e6ab528f4a5c7a5e.
06/15/2012
-
10:32 PM Revision 72f99ce1: add Tusmobil provider info.
- feature #2462
-
08:54 PM Revision 72a22ae2: Merge pull request #146 from bcyrill/patch-2
- Added radvd / Updated Captive Portal service widget
-
06:56 PM Feature #2462 (Feedback): New 3G (PPP) provider
-
06:26 PM Feature #2462: New 3G (PPP) provider
- Okay, it's *actually* in github now. Forgot to 'git push' again. ;-)
-
06:22 PM Feature #2462: New 3G (PPP) provider
- Seth, serviceproviders.xml is in our repos but there's an upstream.
I'm not sure how to specify the "phone number" o... -
04:50 PM Feature #2462: New 3G (PPP) provider
- Seems like low hanging fruit.
Add a PPP device under interfaces assign, there, create a new PPP and there is a dro... -
05:53 PM Bug #2483: IPv6 Interface Aliases not functioning
- Seth, this one's way over my head. (at least for now.)
-
04:45 PM Bug #2483: IPv6 Interface Aliases not functioning
- This needs both frontend and backend code. Darren can you have a look.
-
04:42 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- Johannes, am I correct in understanding that you want to announce multiple prefixes with multiple settings? e.g. diff...
-
03:26 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- Regarding the "common list" you mentioned, there seem to be quite a few minor variations of it but yeah I find that t...
-
03:24 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- Sorry, forgot about the bit that actually modifies /var/etc/radvd.conf. The bit that modifies /cf/conf/config.xml is...
-
02:49 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- user interface to add subnets looks great. But settings are not reflected in /var/etc/radvd.conf . Should the be? wi...
-
03:47 PM Bug #2496: The use of php exec() and php system() with pipe '|' will fail if the first output of a os command is long enough.
- Maybe xdebug issue or something else.
-
02:41 PM Bug #2496: The use of php exec() and php system() with pipe '|' will fail if the first output of a os command is long enough.
- Hi Chris
I don't know why you guys can't reproduce this.
The code is being watched live through Xdebug v2.1.3 a... -
04:47 AM Bug #2496 (Feedback): The use of php exec() and php system() with pipe '|' will fail if the first output of a os command is long enough.
- Not sure what you're seeing, but none of us can replicate that with the exact same thing you're doing substituting di...
-
12:25 AM Bug #2496 (Closed): The use of php exec() and php system() with pipe '|' will fail if the first output of a os command is long enough.
- System:
uname -a
FreeBSD pfSense.localdomain 8.3-RELEASE-p2 FreeBSD 8.3-RELEASE-p2 #0: Mon Jun 11 02:55:34 EDT ... -
02:38 PM Revision 61d302e0: Added radvd / Updated Captive Portal service widget
-
02:33 PM Bug #2497 (Rejected): Captive Portal authentication is bypassed
- No and please discuss this on the forum.
-
09:35 AM Bug #2497 (Rejected): Captive Portal authentication is bypassed
- As suggested in http://forum.pfsense.org/index.php/topic,50311.0.html the "CP multiinstance patch" might have broken ...
-
01:27 PM Revision b1ed647c: Merge pull request #145 from bcyrill/patch-1
- Add radvd to Status:Services #2485
-
01:13 PM Revision 0ed8d746: Add radvd to Status:Services #2485
-
10:37 AM Todo #2485: Add Status > Services entry for radvd if RA is enabled
- Jim P wrote:
> Don't forget about the widget, too :-)
done.
-
09:47 AM Todo #2485: Add Status > Services entry for radvd if RA is enabled
- Seth or Darren will need to look over the enable test probably, I'm not sure what all is needed there.
Don't forget ... -
09:37 AM Todo #2485: Add Status > Services entry for radvd if RA is enabled
- Added in commit:0ed8d746e2.
Needs Feedback / Closing. -
10:02 AM Revision 2b52fee2: Remove missed line
-
10:02 AM Revision 12b0fa56: Actually make reinstallpkg remove the bionaries and really reinstall them
-
10:00 AM Revision 3ddb92a6: Actually make reinstallpkg remove the bionaries and really reinstall them
-
01:51 AM Revision e88ea344: Simplify the input validation condition for protocol
06/14/2012
-
08:18 PM Revision 8c4ee062: add subnets to RA; add support for aliases
- hopefully finishes #2361
-
07:32 PM Feature #1361 (Feedback): DNSMasq, source interface and IPSec VPNs
-
12:25 PM Feature #1361 (Resolved): DNSMasq, source interface and IPSec VPNs
- Hugh, your patch is in github now.
-
05:30 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- Applied in changeset commit:8c4ee06242721655f29d98064516d0c26f723b68.
-
05:22 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- and forgot to commit that work until just now
-
04:12 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- just added subnets and support for aliases.
-
05:04 PM Revision 622caf8f: validate dropdowns for security reasons
- *really* fixes #2494 :-)
-
04:51 PM Revision f7b6c87a: minor code rearranging
- move code that populates $interfaces nearer the top
-
04:30 PM Revision a0b379c8: hugh blanford patch: dnsmasq, source interface and ipsec vpns
- fixes #1361
-
04:10 PM Revision 391cd070: add validation to fields on diag_packet_capture
- fixes #2494
-
04:00 PM Revision ccb55b27: fix a couple booboos
- - fbegin.inc needs to be included after <body>
- s/require/require_once/ fixes 'cannot redeclare function' error -
01:00 PM Bug #2494 (Feedback): diag_packet_capture.php needs input validation
- Applied in changeset commit:622caf8fee84e0744da2b4cd9ea5d1fc4c499388.
-
12:43 PM Bug #2494 (Assigned): diag_packet_capture.php needs input validation
-
12:07 PM Bug #2494 (Resolved): diag_packet_capture.php needs input validation
- fixed in github.
not quite sure that dropdowns need additional validation because you can't select an option that ... -
12:24 PM Bug #2398: tftpd and tftp-proxy (inetd?) dies after WAN periodic reset
- I've not spotted the trigger condition, but I can confirm I'm seeing the same condition
with '2.1-DEVELOPMENT (amd64... -
08:53 AM Bug #2495 (Closed): pfsense doesn't seem to know what its WAN IP is
- Having upgraded from stable to 2.1-BETA0 (i386) (built on Mon Jun 11 03:04:03 EDT 2012), a strange issue has occurred...
06/13/2012
-
08:20 PM Revision 29e566a1: Rework the banner display a bit to preserve space (could still use some shortening, but better than it was)
-
07:01 PM Revision bd0c2295: Put v6 IP on a new line to save horizontal space
-
06:49 PM Revision b835b1fa: Add a note to the GIF page suggesting that if they are adding a he.net tunnelbroker they may want a dyndns entry to keep it updated.
-
06:49 PM Revision 19a4caea: Adjust this size a bit for a more comfortable fit.
-
04:18 PM Revision 731b7a8c: Merge pull request #144 from ccesario/master
- Add scrollbar in dropdown menu based in window height
-
04:01 PM Revision 6c9ce30d: Define the menu size dynamically
-
03:59 PM Revision 6f50fcb8: Add scrollbar in dropdown menu
-
02:21 PM Revision cceb3e6f: Make sure this check is reversed, that way we only pick up the legacy field if the new one isn't set.
-
01:24 PM Revision f6e70bfc: Add scrollbar in dropdown menu
-
12:10 PM Revision 9213ee05: Merge pull request #140 from marcelloc/master
- fix missing match array on help pages permission
-
02:32 AM Revision 3d03a966: Merge pull request #142 from phil-davis/master
- Fix a couple of Crypto Acceleration text typos
- 02:29 AM Revision 43669934: Fix some Crypto Acceleration text typos
-
01:01 AM Revision d53dc7d0: fix missing match on help pages permission
-
12:14 AM Bug #2494: diag_packet_capture.php needs input validation
- Some of this is already done but doesn't actually report an error to the user, it simply leaves the invalid parameter...
06/12/2012
-
11:06 PM Bug #2494 (Resolved): diag_packet_capture.php needs input validation
- diag_packet_capture.php does minimal if any input validation. Every field on that page needs to be verified.
Interf... -
07:10 PM Revision 7530177c: Generalize the Crypto hardware option and add GUI support for AES-NI.
-
05:55 PM Revision 7c9a30c8: Allow autocomplete on packet capture and exec, since it's convenient to have a history there and there are no password fields.
-
05:54 PM Revision 5c7abe2e: Provide a way to disable the autocomplete shutoff.
-
04:52 PM Revision 435b4eec: This should have been 2.1 only, and it's just causing some odd package behavior on 2.0.2 (blank lines in squid's interface selection, for one). 2.1 has different code here anyhow. Revert "Added "interface_selection" type to enable interface selection in tinydns server"
- This reverts commit 05d908db3ad62e46eb22bb73e397ba8bf61cb36c.
-
03:53 PM Bug #2437: PHP missing bcmath (that was solved for pfSense 2.0 two years ago, re-discovered in the latest pfSense 2.1)
- The fix provided by Seth Mos fixes the issue with bcmod() when running it from php command line, but it still doesn't...
-
02:24 PM Revision 2e23c199: Merge pull request #139 from marcelloc/master
- fix permissions check to xml package files and show only menus user has access to
-
02:08 PM Revision 14f5f705: fix permissions check to xml package files and show only menus user has access to
-
11:03 AM Bug #2493: WAN loadbalancing rule fails on second/third safe
- Jim P wrote:
> Does it work if you disable "sticky" in System > Advanced on the Misc tab?
Yes - disabling stick... -
10:59 AM Bug #2493: WAN loadbalancing rule fails on second/third safe
- $title =~ s/safe/save/
-
10:57 AM Bug #2493: WAN loadbalancing rule fails on second/third safe
- Does it work if you disable "sticky" in System > Advanced on the Misc tab?
-
10:54 AM Bug #2493 (Closed): WAN loadbalancing rule fails on second/third safe
- Source routing rule is fine during the first time round. And appears in the pfctl output as:...
-
10:41 AM Bug #2489 (Resolved): More than one secure dynamic dns update entry fails - due to malformed keyfile - and patch
- See commit:8ec0a8bc and #2068.
-
10:39 AM Bug #2489: More than one secure dynamic dns update entry fails - due to malformed keyfile - and patch
- Ermal Luçi wrote:
> Seems the fix has been committed!
Ermail - what is the commit reference - I cannot find it ... -
10:38 AM Bug #2490: Reassigning interfaces on console during restore causes them to be disabled, lose descriptions
- I don't see a reason to ever unset enable there, why is that there? Is that only if you re-assign interfaces and don'...
-
03:56 AM Bug #2490: Reassigning interfaces on console during restore causes them to be disabled, lose descriptions
- The reason I asked is that interfaces.php lets you store a blank descr in the config to get the default name.
-
02:24 AM Bug #2490: Reassigning interfaces on console during restore causes them to be disabled, lose descriptions
- If descr is set the enable will not be removed.
For historic reason i left it there!
Please move on. - 09:15 AM Revision ef62f989: Remove extra spaces and add closing <tr> tag
- 09:14 AM Revision c449c5f6: Remove extra spaces and add closing <tr> tag
-
08:30 AM Feature #1829: CARP with IPv6 support
- I don't think the dhcpv6 settings are synced up to the backup yet.
You'll need to configure that manually, and sel... -
08:11 AM Feature #1829: CARP with IPv6 support
- Finally got a snapshot that has working carp+radvd....
-
04:24 AM Feature #2492 (Needs Patch): identify changes lines before "apply"
- when a record in aliases or rules is changed one has to press "apply". in the meantime I would like to be able to see...
06/11/2012
-
11:03 PM Bug #2490: Reassigning interfaces on console during restore causes them to be disabled, lose descriptions
- Is there any reason to ever unset the "enable" setting there? Is not the "enable" setting only set for opt interface...
-
04:40 PM Bug #2490 (Feedback): Reassigning interfaces on console during restore causes them to be disabled, lose descriptions
- Applied in changeset commit:62784b050ad874bd8544531954b4b158036f9a23.
-
03:19 PM Bug #2490 (Resolved): Reassigning interfaces on console during restore causes them to be disabled, lose descriptions
- When restoring a config, and reassigning interfaces at the console, somehow this happens:
* LAN/WAN are OK
* OPT in... -
10:09 PM Revision 3d1d6f71: Put configured limits on rules.limits file and load them before loading the ruleset. To avoid any issues with large rulests and options being loaded not first
-
09:59 PM pfSense Packages Feature #2487: DNS Servers Query Seqentially / Parallel
-
Attached patch file adds a DNS forwarder strict order option to System: General page.
The strict order option ... -
05:00 AM pfSense Packages Feature #2487: DNS Servers Query Seqentially / Parallel
-
Looks like just adding the dnsmasq 'strict-order' option takes care of this.
Services: DNS Forwarder - Advance... -
01:00 AM pfSense Packages Feature #2487 (Needs Patch): DNS Servers Query Seqentially / Parallel
-
12:18 AM pfSense Packages Feature #2487 (Needs Patch): DNS Servers Query Seqentially / Parallel
-
System: General Setup
DNS Servers
Option for querying each server sequentially with a specified delay, rathe... -
09:53 PM Revision 5c855809: Put configured limits on rules.limits file and load them before loading the ruleset. To avoid any issues with large rulests and options being loaded not first
-
08:42 PM Revision 62784b05: Fixes #2490. If there is a descr set on the interface keep it and do not disable the iface
-
07:27 PM Bug #2491 (Resolved): disabling pfsync doesn't actually disable pfsync
- After disabling pfsync (in 2.0.1/2.0.2 at least), it isn't really disabled until you reboot.
-
06:20 PM Revision cb1d821b: Make the carp vip interface column in the widget just a smidge wider since the names are longer now.
-
05:04 PM Bug #2489 (Feedback): More than one secure dynamic dns update entry fails - due to malformed keyfile - and patch
- Seems the fix has been committed!
-
10:57 AM Bug #2489 (Resolved): More than one secure dynamic dns update entry fails - due to malformed keyfile - and patch
- When configuring more than one DDNS service to inform (e.g. if you have multiple WAN uplinks) - the first one will wo...
-
04:17 PM pfSense Packages Bug #2486 (Resolved): Snort Stable 2.9.2.3 pkg v. 2.1.1 platform: 2.0
- The files are there now. If there are other errors after load them, start new forum threads/tickets as needed.
-
09:23 AM pfSense Packages Bug #2486: Snort Stable 2.9.2.3 pkg v. 2.1.1 platform: 2.0
- The problem is the rfile in the repository is snort-2.9.2.tbz not snort-2.9.2.3.tbz so it causes a 404. Same is true ...
-
02:17 PM Revision 79f286ab: Switch this back to attr, some older browsers have problems with prop, and attr still works for this.
-
01:20 PM Feature #336: Option to create lagg under assign interfaces
- This should also, ideally, be able to setup bridges.
Something such as:
* Add new bridge
* Tell it which inter... -
10:19 AM Bug #2488 (Closed): WAN address changes to IP Alias ones randomly
- This is normal, cosmetic only, and harmless.
On FreeBSD, all IPs on an interface (aliases, and the actual "first" ... -
07:53 AM Bug #2488: WAN address changes to IP Alias ones randomly
- To be more precise, i've cuted this scenario in three screenshots,
1.png: Initial view of WAN address
2.png : Confi... -
07:25 AM Bug #2488 (Feedback): WAN address changes to IP Alias ones randomly
- what do you mean "switches randomly"? There isn't any concept of primary vs. alias IPs, things like "WAN address" are...
-
05:58 AM Bug #2488 (Closed): WAN address changes to IP Alias ones randomly
- Hi everyone,
Recently updated my pfSense 2.0.1 to 2.1.
When configuring WAN address with IPv6 address, everything... -
10:05 AM Bug #2349: vlan(4) needs altq adaption on FreeBSD 8.3++
- I'll test this out sometime in the next 2 weeks and report back
-
09:17 AM pfSense Packages Bug #1080: Snort Installation fails
- I am currently having this issue too and can confirm the problem is an error with both http://files.pfsense.org/packa...
-
07:03 AM Revision 8b2e2f12: Make mac_format aware of cpzone but also friendly to previous code!
-
07:00 AM Revision 805b9ab6: Revert "Make mac_format aware of multiple Captiveportal instances"
- This reverts commit 54df925b9ea447bdd10f88a886e2ef11d44c3059.
-
07:00 AM Revision e0ad13cd: Revert "Make sure mac_format is always defined"
- This reverts commit 56f9032170d3130c2066e5eebbe18b96398073ca.
06/10/2012
-
05:21 PM Revision b552173f: Merge pull request #138 from bcyrill/patch-5
- Make sure mac_format is always defined
-
05:20 PM Revision 56f90321: Make sure mac_format is always defined
-
04:51 PM pfSense Packages Bug #2486 (Resolved): Snort Stable 2.9.2.3 pkg v. 2.1.1 platform: 2.0
- In my pfSense when i want to install snort:
I can't downlaod snort-2.9.2.3.tbz !
The older version was good...
B... -
04:15 PM Revision 7b4b4158: Merge pull request #137 from bcyrill/patch-4
- Fix Captiveportal zone
-
04:14 PM Revision 91308b61: Merge pull request #135 from bcyrill/patch-2
- Added Captiveportal to service status
06/09/2012
-
09:40 PM Todo #2485 (Resolved): Add Status > Services entry for radvd if RA is enabled
- We should have an entry under Status > Services for radvd if it's enabled for any interface, to follow the custom of ...
-
08:33 PM Revision 54df925b: Make mac_format aware of multiple Captiveportal instances
-
08:17 PM Revision 52a43b2f: Update Captiveportal
-
08:02 PM Revision e3cf528e: Added Captiveportal to service status
-
07:59 PM Bug #2477: router advertisement daemon (radvd) no longer starts
- That's fine Johannes, not sure of the context for that in this case, generally comments like that would be reserved f...
-
08:34 AM Bug #2477: router advertisement daemon (radvd) no longer starts
- Resolved! Thanks
> Although I understand you file the ticket as high, we are not all full time paid developers or ... -
07:34 PM Bug #1279: Filesystem on NanoBSD is left read/write at first bootup after package reinstallation
- Seems we need to revisit this again... If a NanoBSD upgrade reinstalls packages, once again it tends to completely ho...
-
06:49 PM Bug #2484 (Resolved): Serial console speed has no effect on NanoBSD
- Changing the serial console speed doesn't do anything on NanoBSD images - the console stays at 9600bps, even though t...
-
06:43 PM Bug #2483 (Closed): IPv6 Interface Aliases not functioning
- GUI supports adding an IPv6 alias - however it never actually updates the interface config.
-
04:40 PM Revision 63c654a4: Merge pull request #134 from bcyrill/patch-1
- Removed unused maxproc parameter
-
04:32 PM Revision f53ff9ff: Removed unused maxproc parameter
-
03:54 PM Revision 632e7733: Merge pull request #133 from bcyrill/patch-8
- Added zone
-
03:52 PM Revision 6844896c: maxprocperip is defined per zone
-
03:46 PM Revision 85317bfd: Merge pull request #132 from bcyrill/patch-4
- Update Captiveportal
-
03:46 PM Revision 99897bf5: Merge pull request #131 from marcelloc/master
- fix jquery+domtt notices css on all themes
-
03:08 PM Revision fa3e5c05: Needs a default case so IPv6 interfaces are resolved to a real interface
-
02:59 PM Revision a636682d: Update master
-
01:05 PM Bug #2482: error trying to delete limiter
- crash report
Crash report begins. Anonymous machine information:
amd64
8.3-RELEASE-p2
FreeBSD 8.3-RELEASE-... -
01:04 PM Bug #2482 (Resolved): error trying to delete limiter
- Fatal error: Call to undefined method dnpipe_class::GetName() in /usr/local/www/firewall_shaper_vinterface.php on lin...
-
08:38 AM Feature #2361: router adv. daemon only allows for one subnet / limited options
- looking good so far. Only thing missing is the ability to set subnets for the RA. Right now, it does only advertise t...
-
03:56 AM Revision 43b1760c: fix jquery+domtt notices css on all themes
06/08/2012
-
10:05 PM Revision ce0631b5: add <radnsservers> to the list of things that are arrays
- for ticket #2361
-
10:05 PM Revision 163e4b91: actually update RA DNS settings now
- finishes #2361
-
10:05 PM Revision 4e0fc44f: more work on feature #2361
- - fields are there now but don't do anything
- checkbox for 'use same settings' that disables fields -
09:47 PM Revision 8921bf89: Merge pull request #130 from marcelloc/master
- move css style from last pull request to themes.
-
09:37 PM Revision 97f30a08: fix css style to themes.
-
08:00 PM Revision ef3e9f16: Merge pull request #129 from marcelloc/master
- convert menu alerts/notices to jquery + domtt
-
07:50 PM Revision 005ac3ca: convert menu alerts/notices to jquery + domtt
-
07:37 PM Revision f3475477: split dhcpv6 server and ra #2361
-
07:24 PM Revision 25d1c6b2: Shorter version of the fix to always set the radvd interface.
- Redmine ticket #2477
-
07:20 PM Revision 48a5985c: Make sure to fall through if this tag is not set.
- Should fix redmine ticket #2477
-
06:02 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- here are the new fields:...
-
06:00 PM Feature #2361 (Feedback): router adv. daemon only allows for one subnet / limited options
- Applied in changeset commit:163e4b91b10fd54374d69b02cb6caad5db262842.
-
03:49 PM Feature #2361 (Assigned): router adv. daemon only allows for one subnet / limited options
- oh wait, i forgot to add fields for dns, searchdomain, use same settings to the RA tab.
-
03:46 PM Feature #2361 (Feedback): router adv. daemon only allows for one subnet / limited options
- implemented, please do further testing.
commit:f347547 split dhcpv6 server and ra #2361
commit:1c8dbfb remove the... -
05:53 PM Revision 1c8dbfbb: remove the RA stuff from services_dhcpv6 for #2361
-
05:47 PM Revision 93458cb1: rename menu item for #2361
-
05:27 PM Revision 5ef4a9e1: prep work for splitting dhcpv6 and RA for #2361.
-
04:37 PM Bug #2477: router advertisement daemon (radvd) no longer starts
- I think I may have fixed the snapshot. Otherwise please reopen.
Although I understand you file the ticket as high,... -
10:25 AM Bug #2477 (Feedback): router advertisement daemon (radvd) no longer starts
- I believe Seth had said this was because the snapshot was missing something that should be in the next new snapshot. ...
-
10:19 AM Bug #2477: router advertisement daemon (radvd) no longer starts
- just found additional logs in routing.log confirming the issue with the configuration file:
Jun 8 14:11:50 pfsens... -
10:14 AM Bug #2477 (Resolved): router advertisement daemon (radvd) no longer starts
- as of today's update, radvd no longer starts. No obvious error message I can see so far, but the config file looks ba...
-
04:14 PM Todo #2480 (Closed): Add checkbox to OpenVPN client/server to exlcude VPN server from (pushed) routes
- If you try to push a route, or route directly, for the subnet containing the VPN server, OpenVPN would accept the rou...
-
04:13 PM Feature #2479 (New): Allow reordering of the traffic graphs on the dashboard
- Since the meaning of opt1-optN is variable, listing interfaces in sequence is not very meaningful in many cases. e.g....
-
12:41 PM Revision ff6677cf: Make sure we tag all 2.0 gateways as being IPv4, in 2.1 we require this tag to be present for the gateways.
- This should prevent duplicate gateway entries for people coming from 2.0 that have dynamic interfaces
-
11:52 AM Bug #2478 (Closed): NTPd turns off after restoring a config file
- NTP was completely reworked for 2.0.2 and 2.1 - this wouldn't be valid there because of the new design.
-
11:50 AM Bug #2478 (Closed): NTPd turns off after restoring a config file
- I don't know if this is designed this way on purpose or not but when restoring an XML config file from a system where...
-
06:34 AM Revision 1e5f47bb: Add blackhole to Null routes
- Redmine ticket #2471
-
04:52 AM Feature #1965 (Feedback): Support Multiple IPsec Peers
- This has been complete on check_reload/pfSctl side.
-
03:38 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- This is the last time I'm going to say it - it's impossible to do in a way that isn't trivially reversible. There's a...
-
01:36 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
As I’ve been pointing out and you don’t seem to be grasping, just because there is "seemingly" (by your claims any... -
12:46 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- Insecurely storing your config can certainly be a security issue with every firewall and router. Literally every rout...
-
12:20 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
Please stop misclassifying it as not a security issue.
Sorry you feel your responses here are a waste of your t... -
12:11 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- It truly is impossible to securely resolve. You won't find anything that has a secure solution for encrypting such pa...
-
12:05 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
The point is that you should not be saying it is not a security issue. Rather that it is by design due to lack of... -
12:00 AM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- you can call it anything you want, the reality is it's impossible to store such passwords in a hashed or encrypted ma...
-
03:03 AM Feature #2471: null routing of unused address space
- I can probably add that flag if a Null route is involved. Let me check
Try now. -
02:53 AM Feature #2471: null routing of unused address space
- this one works, but it's a bit ugly. the -reject or -blackhole might be nicer.
traceroute and ping loop at the pfs... -
12:39 AM Revision d23b53eb: add gateways to config from cmdline
-
12:39 AM Revision 3176c043: fix: Call to undefined function error
- fix: Call to undefined function ipsec_get_phase1_dst() in /etc/inc/filter.inc on line 3216
-
12:39 AM Revision 1b8bf24d: again, string interpolation kinda defeats the purpose of gettext. ;-)
-
12:39 AM Revision 005a7049: variable interpolation defeats the purpose of gettext.
-
12:39 AM Revision c63e3594: work in progress: set gateway IPs from console
- - add --dry-run mode
- prompts for gateway IP address as needed
does not yet do:
- add gateway to config
06/07/2012
-
11:57 PM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
You have stated that it is not a security issue. It clearly is. Not doing anything about it does not change that... -
11:53 PM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- we have the ability to encrypt backups, that's what you should do. It's impossible to securely encrypt such passwords...
-
11:49 PM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
I did read the link. And it is still a security issues. Lack of interest in resolving it does not change the fac... -
11:44 PM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- read the link. There are no alternatives for such passwords.
-
11:43 PM Bug #2476: SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
Just because it is by design does not mean it is not a security issue. Saving account passwords in plain text is ... -
11:34 PM Bug #2476 (Rejected): SECURITY ISSUE - Plain Text Dynamic DNS Account Password
- by design, not a security issue.
http://doc.pfsense.org/index.php/Why_are_some_passwords_stored_in_plaintext_in_con... -
11:33 PM Bug #2476 (Rejected): SECURITY ISSUE - Plain Text Dynamic DNS Account Password
-
Dynamic DNS account password is saved as plain text in XML config and backup files.
-
09:39 PM Revision 63a202a8: Merge pull request #127 from briantist/patch-1
- 255 is not a valid skew value. Fixed bug #2012
-
09:37 PM Revision 648a3ed8: 255 is not a valid skew value. Fixed bug #2012 (http://redmine.pfsense.org/issues/2012)
-
08:34 PM Feature #2413: Allow IPv6 interface configuration from the menu
- Okay, you can set gateway IP addresses from the command line now. See config:c63e3594 and config:d23b53eb.
Puntin... -
03:13 PM Feature #2413: Allow IPv6 interface configuration from the menu
- This is what you will now see:...
-
02:05 PM Feature #2413: Allow IPv6 interface configuration from the menu
- > Note that http://dhcp and http://dhcp6 are not valid, it appears to be almost right.
> http://192.168.2.254:/
>... -
01:41 PM Feature #2413: Allow IPv6 interface configuration from the menu
- Another new feature for the console menu to clarify console configuration. With the last as it is now, it is hard to ...
-
01:31 PM Feature #2413: Allow IPv6 interface configuration from the menu
- > Tried to set to dhcp6 again, still set to Static IPv6. I think it's not setting the tag.
I'm actually going to j... -
01:27 PM Feature #2413: Allow IPv6 interface configuration from the menu
- > When configuring interface WAN for dhcp6 it does not set $config['interfaces']['wan']['ipaddrv6'] to dhcp6. Are you...
-
01:23 PM Feature #2413: Allow IPv6 interface configuration from the menu
- > When configuring interface WAN, as dhcp and dhcp6 I get the url http://dhcp/ displayed
Now should be showing IPv6 ... -
07:16 PM Revision 0098aa73: show dhcp/dhcp6/static/staticv6 along with descriptions in console
-
07:16 PM Revision 6499a7d5: show real interface names
-
07:16 PM Revision 3f63e8e2: minor variable name change.
-
07:00 PM Revision ee2b3c1f: Merge pull request #126 from marcelloc/patch-21
- fix select_source option
-
06:59 PM Revision 1624b5f1: fix select_source option
-
06:20 PM Bug #2475 (Resolved): Connection rate limiting does not work for Captive Portal
- Using pfSense 2.0.1. Installation of pfSense as a CP at a big exhibition fair failed because the connection rate limi...
-
06:03 PM Revision d71371bc: actually display webconfigurator port numbers on console
-
05:33 PM Revision bfaafe28: setting $config['interfaces']['wan']['ipaddrv6'] to 'dhcp6' *should* work now.
-
05:32 PM Bug #2012: 4th+ CARP member will not work with default automatic skew
- Proposed a fix:
https://github.com/bsdperimeter/pfsense/pull/127
This will make the 4th member work, at the very ... -
05:28 PM Revision b3cb233f: now shows ipv6 webConfigurator URLs (#2413)
-
04:51 PM Revision 140e4bc6: do #2467 only show GWs from same addr fam oncreate
-
04:51 PM Revision a75b0b3b: minor indentation fix
-
04:20 PM Revision 9a19c316: While I'm here, don't test these with isset, just test directly, since they will be set to true/false in globals.inc
-
04:14 PM Revision 364e4f74: Provide a way to disable the pkg info link
-
04:13 PM Revision 93888ad9: Provide a way to disable the pkg info link
-
04:12 PM Revision 6afeb202: If radvd is already running, reload, otherwise start one.
- Shut down when there are no prefixes to announce
-
03:48 PM Revision db0d446f: fix for bug #2469 ("WAN -> LAN -> OPT10")
-
03:30 PM Bug #2474 (Feedback): Recent changes to pkg_edit code broke select_source
- Should be fixed in
commit:1624b5f1e2f6fa8015f24eaa640269c22829fcdb -
11:27 AM Bug #2474 (Resolved): Recent changes to pkg_edit code broke select_source
- Something in one of the recent changes to pkg_edit.php has broken select_source.
For example, the interface select... -
01:49 PM Feature #2361: router adv. daemon only allows for one subnet / limited options
- We probably want to split them off and keep them tied together.
What Jim and I agreed upon was tabs per interface,... -
01:04 PM Bug #2379 (Feedback): When using squid as a proxy server Traphic graph does not show the LAN specific Ip addresses
- Which traffic graph? Status > Traffic Graphs?
If so, that's generated by the 'rate' program, and it's somewhat limit... -
12:48 PM Bug #2310: Possible typo - "Optional 11" interface ?
- Dim: as I previously stated I believe I fixed this issue, but just to be on the safe side, I'm reassigning to you so ...
-
11:46 AM Bug #2310 (Assigned): Possible typo - "Optional 11" interface ?
-
11:45 AM Bug #2310: Possible typo - "Optional 11" interface ?
- I strongly believe this is the same issue as #2469, fixed in commit:db0d446f.
-
12:45 PM Feature #2467 (Resolved): AJAX enhancement: only show gateways from same address families upon creation
- implemented in commit:140e4bc6
-
12:06 PM Revision 838a1ecb: Add better protection for unknown rapriority
-
12:05 PM Revision 8ca73e85: Make sure we still start on older configs where the setting is still called mode, and not ramode.
- Add a failsafe for the rapriority
-
12:01 PM Revision dc131dfe: We need to define the default route here, not the advertised prefix.
-
11:46 AM Revision 8859c0a6: Correct the syntax, the RemoveRoute needs to end up in route statement
-
11:42 AM Bug #2469 (Resolved): Assign interfaces prompt is going WAN -> LAN -> OPT10
- fixed in commit:db0d446f
-
11:27 AM Revision 738dfac4: Remove duplicate prefix line
-
11:18 AM Revision a99b2b08: Prevent radvd from telling the clients to remove the route to itself.
-
11:12 AM Revision 83973bfb: Do not send DeprecatePrefix messages for CARP announcements, it causes clients to purge the CARP default route.
-
10:05 AM Revision b5264f22: Sync missing code from interface.inc to newwanip script
-
10:00 AM Revision 0d9c5026: Actually do not try to reload everything during bootup since it will be done by bootup code
-
09:59 AM Revision ae17d2e9: Actually do not try to reload everything during bootup since it will be done by bootup code
-
09:25 AM Revision 76231e63: Bye, bye olsrd back to packages.
-
08:51 AM Revision 3e662cb0: Get rid of carpdev, it will never be
-
08:36 AM Revision 98aea4c3: Detour through check_reload_status and only when the settings get applied not when the gateway has been changed.
-
08:32 AM Revision 7fe30c74: Do not blindly startup check_reload_status check first
-
08:27 AM Revision 915089b7: Catch up with multiple events sending. Also do not blindly startup check_reload_status check first
-
07:45 AM Revision 30fb0527: Surely this cannot work a fit
- Revert "This script update the Dynamic DNS registration when called by apinger if a gateway from a group is down."
T... -
07:35 AM Revision 514123f8: Someone needs to ask before breaking stuff like this!
- Revert "Eject duplicate script, we already have a script specifically for this."
This reverts commit 56a0c7373ae4cc7... -
07:04 AM Feature #1829: CARP with IPv6 support
- Confirmed that the latest available snapshot 07-06-2012 17:00 does not have the carp patch. Probably just sheer bad l...
-
03:48 AM Feature #1829: CARP with IPv6 support
- You need a snapshot with a kernel of June 7th or later
-
03:45 AM Feature #1829: CARP with IPv6 support
- if I choose carp int as RA interface, the radvd does not start....
-
05:20 AM Todo #2237 (Feedback): Move OLSRD back to a package
- This has been moved to pacakges
06/06/2012
-
08:59 PM Revision 2d6f800a: Fix exec bit for usr/local/sbin/openvpn.attributes.sh
-
08:58 PM Revision a1b9105b: Only add openvpn acl script lines if it's a server mode that does user auth
-
06:51 PM Bug #2473 (Rejected): OpenVPN fails to initialize on for either p2p_tls or p2p_shared_key.
- Already fixed in git.
-
06:47 PM Bug #2473 (Rejected): OpenVPN fails to initialize on for either p2p_tls or p2p_shared_key.
- When a P2P mode is selected, OpenVPN fails to start. The logs indicate that the client-connect and client-disconnect...
-
06:20 PM Revision 846c7b77: Changeover to the new multiple command pfSctl
-
05:21 PM Revision 8275ea28: Reverse the arguments, i got them wrong.
- Redmine ticket #1965
-
04:11 PM Revision 83d807cb: Trigger dyndns and ipsecdns updates through check_reload_status. IpsecDNS already performs a filter_configure() too.
- Redmine ticket #1965
-
04:09 PM Revision 56a0c737: Eject duplicate script, we already have a script specifically for this.
- Redmine ticket #1965
-
03:55 PM Revision b013b81e: This script update the Dynamic DNS registration when called by apinger if a gateway from a group is down.
- redmine ticket #1965
-
12:26 PM Feature #1965: Support Multiple IPsec Peers
- Needs hooks in gateway monitoring.
If a gateway is down we call pfCtl.... -
09:22 AM Feature #1829: CARP with IPv6 support
- Testing proved that CARP router advertisments work. Excellent.
-
04:04 AM Feature #1829 (Feedback): CARP with IPv6 support
- I've activated the CARP link local patch from Andrew on the 8.3 builds. It appears to work as it should.
I've comm... -
08:34 AM Revision 9a933304: When advertising on a CARP vip, pick the CARP ipv6 address as the RDNSS address
- Redmine ticket #1829
-
08:25 AM Revision e1f6761d: Make sure that both the Carp vip interface and the parent interface are in the list.
- Redmine ticket #1829
-
08:25 AM Revision 5078cd76: Extra safetynet to prevent duplicate static entries with broken config.xml
- Make sure to fil the array that we fill for configured interfaces with the real interface, not just the carp if.
Redm... -
08:19 AM Revision 6bee76d5: Make lock files availble to all users for usage from php process
-
08:17 AM Revision f26f4fa5: Make lock files availble to all users for usage from php process
-
07:22 AM Revision 628306af: Correct upgrade code from report of http://forum.pfsense.org/index.php/topic,50182.0.html
-
06:50 AM Revision fe838158: Change the DHCPv6 services page into a RA and DHCPv6 section, move some of the variables.
- Add drop down to select carp vip for that interface for CARP advertisements
Allow setting the RA priority.
Redmine ti...
Also available in: Atom