Project

General

Profile

Activity

From 02/11/2013 to 03/12/2013

03/12/2013

08:50 PM Feature #2858: Do not route rules to default gateway when its own gateway is down
Ah my apologies... Its working as you have written..
Silly me.
I'm assuming that I should now be placing a DEN...
Shawn Bruce
08:03 PM Feature #2858: Do not route rules to default gateway when its own gateway is down
It appears the rules related to gateway OVPNC1 drop when the VPN is stopped/failed. Shawn Bruce
07:36 PM Feature #2858: Do not route rules to default gateway when its own gateway is down
Could you show me /tmp/rules.debug in 2 different moments, when OVPN is up and when it's down? Renato Botelho
07:00 PM Feature #2858: Do not route rules to default gateway when its own gateway is down
Wow thanks for working to add this!
I've applied the patch to pfSense-2.1-BETA1-amd64-20130312-0847 and it does no...
Shawn Bruce
09:40 AM Feature #2858 (Feedback): Do not route rules to default gateway when its own gateway is down
Applied in changeset commit:a1f735b31c8f7f0cca0ebc5a7153cd06cdf4482e. Renato Botelho
09:37 AM Feature #2858: Do not route rules to default gateway when its own gateway is down
It's the expected behaviour today, so change it to a Feature and adjust Subject as well Renato Botelho
07:04 PM Bug #2871 (Rejected): Non returning call : pfSense_get_modem_devices() called by interfaces_ppps_edit.php?id=1
Duplicate of #2433 Jim Pingle
05:55 PM Bug #2871 (Rejected): Non returning call : pfSense_get_modem_devices() called by interfaces_ppps_edit.php?id=1
When setting up a PPPoE WAN on @interfaces.php?if=wan@, there is an option (which also existed in 2.0.1) to set up ad... Stilez y
05:59 PM Revision efc0e29a: Move tmp/var init to just after mount of /cf so that the sizing works properly on NanoBSD. Fix input validation for sizes. Add note about needing a reboot to apply the settings.
Jim Pingle
03:02 PM Feature #2859: Allow to configure different mac addresses for multiple VLANs on same physical interface
Just 4 vlans, 2 wan and 2 lan Bipin Chandra
12:37 PM Feature #2859: Allow to configure different mac addresses for multiple VLANs on same physical interface
Are just VLANs assigned to interfaces (WAN, LAN, OPTx) or the parent nic is also assigned to any interface? Renato Botelho
02:37 PM Revision a1f735b3: Do not route do default gw when rule gw is down
- Add a new advanced misc option to change the behaviour
- When it is set and rule has its own gateway, that is down,...
Renato Botelho
02:04 PM Revision 4f537e93: Fix indent and whitespaces
Renato Botelho
12:45 PM Feature #1550 (Resolved): used + active + ready should match # of tickets
Renato Botelho
12:44 PM Bug #2756 (Closed): SNMPD problems when binding pppoe interface
Renato Botelho
06:48 AM Revision ac135e42: use logging on the block all v6 rules if default is log
Chris Buechler
04:35 AM pfSense Packages Bug #2870 (Rejected): External DNS server always takes precedence over internal servers
description isn't true, and it's not a bug, rather need to fix your config. Please post to the forum or mailing list ... Chris Buechler
04:23 AM pfSense Packages Bug #2870 (Rejected): External DNS server always takes precedence over internal servers
I have a set-up where pfSense runs between a DSL router (WAN interface) and an internal domain with multiple DNS serv... Jan Christoph Ebersbach
03:12 AM Feature #2869 (Resolved): LDAP user authentication backend doesn't support membership lookups by querying the group
As far as I understood the LDAP authentication backend, the group membership needs to be stored in an attribute of th... Jan Christoph Ebersbach
02:16 AM Revision e92e83d4: Add the ability for full installs to optionally use RAM disks for /tmp and /var, and to allow selecting a size for /tmp and /var RAM disks on both Full installs and NanoBSD.
I think I caught most of the edge cases for transitioning into and out of RAM disk mode, and preserving data across r... Jim Pingle

03/11/2013

02:44 PM Revision 94ca4e0d: Be more careful when performing a ping to use the correct ping type if an IP address is entered.
Jim Pingle
12:23 PM Bug #2867: Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HD + sizeable RAM
That's possible, but could you reconsider your rejection?
It *is* a problem with the installer. A user who follows...
Stilez y
12:09 PM Bug #2867 (Rejected): Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HD + sizeable RAM
Easy install always defaults to 2x RAM size for swap. A custom installation is needed for anything that doesn't fit t... Jim Pingle
11:59 AM Bug #2867 (Rejected): Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HD + sizeable RAM
Clean 2.1 install, but existed in 2.01 as well, and I'm guessing all.
Per sizing requirements, I used a 2 GB SSD m...
Stilez y
12:10 PM Bug #2866 (Rejected): Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HDlarge RAM installations
Duplicate of #2867 Jim Pingle
11:55 AM Bug #2866: Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HDlarge RAM installations
Sorry, lcicked OK part way, please delete this, I'll re-enter it Stilez y
11:54 AM Bug #2866 (Rejected): Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HDlarge RAM installations
Stilez y
12:03 PM Bug #2868 (Closed): Inescapable loop in installer
See http://forum.pfsense.org/index.php/topic,59909.msg322186.html#msg322186
Appears in 2.1, I'm guessing all versi...
Stilez y
10:14 AM Feature #2849: IKEv2 support for IPsec
I read about it. I am still worried, about MOBIKE (isnt it important for roaming roadwarriors) and the absense (?) of... Georgios Tsalikis
07:30 AM Bug #2495 (New): pfsense doesn't seem to know what its WAN IP is
Renato Botelho
06:25 AM Revision 6db58224: move the "block all v6" rules back to where they should be, fix comment
Chris Buechler
01:46 AM Revision a876f1ed: point to new github repo
Chris Buechler
01:44 AM Revision d5280de6: update github repo location
Chris Buechler

03/10/2013

07:20 PM Feature #2849: IKEv2 support for IPsec
Another option for IKEv2 would be the portable version of OpenBSD's OpenIKED
https://github.com/reyk/openiked
-...
Dim Hatz

03/09/2013

08:53 PM Revision 8436f2e3: Fix spelling.
Jim Pingle
05:01 PM Bug #2647 (Closed): rc.newwanip discovers wrong WAN IP when using DHCP
duplicate of #2495 Chris Buechler
11:50 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
It was fixed on Jan 31, See #2495 - if it's still broken on 2.1 using a current snapshot, reply there, since that's a... Jim Pingle
11:32 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
Yeah, I tried this on 2.1 from March 7th and January 27th.
Please tell me if you need more information.
Christoph Filnkößl
11:28 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
Have you tried this on 2.1, as recommended? Quite a lot of work went into fixing these kinds of bugs there. Specifica... Jim Pingle
08:57 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
ok, I tried to find the bug myself.
As we need to use DHCP on WAN (Cable Source-Verify) the address is being renewed...
Christoph Filnkößl
12:33 PM Revision 6062f0f3: Merge pull request #480 from phil-davis/master
Services Status Widget remove leftover > Ermal Luçi
11:59 AM Bug #2495: pfsense doesn't seem to know what its WAN IP is
Jim guided me here - I have got a similar problem on the recent 2.1-snapshot (March 7th).
Details are already descri...
Christoph Filnkößl
11:57 AM pfSense Packages Bug #2865 (Rejected): openvpn ping-restart option for TAP interface
That disconnect is the management GUI view of the connected clients. It is not disconnecting your actual client.
...
Jim Pingle
11:50 AM pfSense Packages Bug #2865 (Rejected): openvpn ping-restart option for TAP interface
If tap interface used other side of the tunnel never will be pinged.
But openvpn server instance by default sends
...
Stepan Karandin
10:20 AM Revision bb9aaf95: Services Status Widget remove leftover >
Phil Davis
03:00 AM pfSense Packages Todo #2864 (Rejected): Port binding for openvpn
duplicate Chris Buechler
02:37 AM pfSense Packages Todo #2864 (Rejected): Port binding for openvpn
2.0.2-RELEASE (i386)
built on Fri Dec 7 16:30:29 EST 2012
FreeBSD 8.1-RELEASE-p13
When trying to bind second ope...
Stepan Karandin
12:44 AM Revision 70fee79c: fix text. Fixes #2863
Chris Buechler

03/08/2013

07:35 PM Revision 99dcc489: Use the process name rather to avoid the infamous file not found error
Warren Baker
07:13 PM Revision 6e0fc523: Merge pull request #479 from ExolonDX/master
Use HTMLENTITIES to deprecate the ampersand in page title URI Jim Pingle
06:50 PM Revision a1560c1b: Use HTMLENTITIES to deprecate the ampersand
Colin Fleming
06:50 PM Bug #2863: Wrong heading for system_gateway_groups_edit.php
Applied in changeset commit:70fee79c520702571be842f16708f3bcdaf11601. Chris Buechler
06:43 PM Bug #2863 (Feedback): Wrong heading for system_gateway_groups_edit.php
should be fixed, thanks Chris Buechler
06:29 PM Bug #2863: Wrong heading for system_gateway_groups_edit.php
It also says "Edit gateway entry" instead of "Edit gateway group entry". Patrick Linstruth
06:24 PM Bug #2863 (Resolved): Wrong heading for system_gateway_groups_edit.php
When editing a gateway group, the header is displayed as "System: Gateways: Edit gateway".
It should probably be "...
Patrick Linstruth
05:41 PM Revision 60cd1864: Ignore vim swap files
Renato Botelho
01:54 PM Revision 76254caa: Be consistent on vlan checks
Renato Botelho
01:48 PM Revision f5c2bf1e: Fix logic inversion from 126ff5b264
Renato Botelho
01:48 PM Revision 43c6c9af: Check if MTU is already with correct value before change it
Renato Botelho
01:48 PM Revision be2c39b6: When parent is not assigned, reset it and all vlans without mtu set to default
Renato Botelho
01:48 PM Revision 3f3252f6: When reset parent to default mtu, deal with all VLANs too
Renato Botelho
01:48 PM Revision a976c633: Set vlanifs early and use it on more places to simplify logic
Renato Botelho
01:48 PM Revision 20eb8203: Consider parent mtu when it's set instead of default one
Renato Botelho
01:47 PM Revision 5ee6ce25: Simplify a bit the logic
Renato Botelho
01:47 PM Revision 1f9ecbcd: Pass parent interface to link_interface_to_vlans
Renato Botelho
01:47 PM Revision 8306b774: Fix typo on var name
Renato Botelho
01:47 PM Revision a1d36777: Fix typo s/assgined/assigned/
Renato Botelho
01:31 PM Revision 7965c38f: Be consistent on the check
Ermal LUÇI
01:30 PM Revision a58a9ece: Be consistent on the check
Ermal LUÇI
01:20 PM Revision b783eaf2: Prevent mtu bigger than 9000
Ermal LUÇI
08:45 AM Revision a362a23a: Solve the issue when changing vlan parent mtu and leaving its childs with older mtu.
Ermal LUÇI
05:02 AM Feature #2859: Allow to configure different mac addresses for multiple VLANs on same physical interface
how to do that coz i have just one nic and 4 VLANS configured on it, 2 WAN and 2 LAN Bipin Chandra
04:54 AM Feature #2859 (Feedback): Allow to configure different mac addresses for multiple VLANs on same physical interface
VLANs follow the same mac address of parent interface. If it's possible, spoof the mac on parent interface to check i... Renato Botelho
02:11 AM Bug #2861 (Resolved): IPSec Status Broken
Chris Buechler
02:09 AM Bug #2861: IPSec Status Broken
Thank you, works fine now. Sebastian Chrostek
01:33 AM Revision ca3301b4: Merge pull request #470 from ExolonDX/branch_01
Tidy up System:General Setup XHTML Jim Pingle
01:32 AM Revision 6ffa67cf: Merge pull request #471 from ExolonDX/branch_02
Tidy up System:Advanced:Admin XHTML Jim Pingle
01:32 AM Revision 8dd57961: Merge pull request #472 from ExolonDX/branch_03
Tidy up System:Advanced:FirewallNat XHTML Jim Pingle
01:31 AM Revision 05f74604: Merge pull request #473 from ExolonDX/branch_04
Tidy up System:Advanced:Network XHTML Jim Pingle
01:30 AM Revision 0202cdda: Merge pull request #474 from ExolonDX/branch_06
Tidy up System:Advanced:Tunables XHTML Jim Pingle
01:30 AM Revision 6a03a312: Merge pull request #475 from ExolonDX/branch_07
Tidy up System:Advanced:Notifications XHTML Jim Pingle
01:29 AM Revision f7830817: Merge pull request #476 from ExolonDX/branch_08
Tidy up System:Advanced:Misc XHTML Jim Pingle

03/07/2013

09:23 PM Revision 481e09b3: Tidy up System:Advanced:Misc XHTML
Close BR tags
Close INPUT tags
Update CDATA secions in script tags
Update HTML boolean operators
Colin Fleming
09:14 PM Revision 846ac60f: Tidy up System:Advanced:Notifications XHTML
Close INPUT tags Colin Fleming
09:08 PM Revision a5a61609: Tidy up System:Advanced:Tunables XHTML
Deprecate ampersand
Close INPUT tags
Colin Fleming
08:56 PM Revision 3410a6c5: Tidy up System:Advanced:Network XHTML
Close BR tags
Update CDATA sections in script tags
Update HTML boolean operators
Colin Fleming
08:51 PM Revision 8712fab6: Tidy up System:Advanced:FirewallNat XHTML
Close BR tags
Updated HTML boolean operators
Colin Fleming
08:41 PM Revision 3c119b78: Tidy up System:Advanced:Admin XHTML
Added proper CDATA sections to scripts
Updated HTML boolean operators
Close BR tagas
Close INPUT tags
Colin Fleming
08:32 PM Revision 925020e7: Tidy up System:General Setup XHTML
Close INPUT tags
Tidy up HTML boolean operators
Colin Fleming
06:53 PM Revision af8d854c: Fix variable name reference, fixes port display after lan IP reset.
Jim Pingle
06:43 PM Revision c988ed09: Merge pull request #469 from phil-davis/master
Fix stale bandwidth-by-IP table entries Jim Pingle
06:25 PM Revision 5356362c: Fix stale bandwidth-by-IP table entries
When the number of valid rows in the table reduced by more than 1 between updates, stale entries were left displayed ... Phil Davis
03:36 PM Bug #2712: Openvpn and Quagga cause route collision and race condition
I'm also experiencing this issue and applied the patch.
However, there is still a related issue. (I did not file thi...
Johan Braeken
02:21 PM Revision 1dedfdd1: More fixes
Ermal LUÇI
02:18 PM Revision 2c07529a: Remove debug code
Ermal LUÇI
02:17 PM Revision 6d1594eb: Correct code to apply the mtu correctly
Ermal LUÇI
01:59 PM Revision 4ffa46bf: Correctly handle mtu changing between vlans
Ermal LUÇI
01:28 PM Revision 0d0d4a27: Validate MTU changes for VLANs and let user change it again
Renato Botelho
01:18 PM Revision 6696d2cd: Change parent only if its mtu is smaller
Ermal LUÇI
01:17 PM Revision c9e33dd3: Merge pull request #468 from phil-davis/master
Bandwidth by IP - allow filter by local and remote Jim Pingle
01:08 PM Revision da11e022: Bandwidth by IP - allow filter by local and remote
Phil Davis
01:05 PM Revision a02ce260: Bandwidth by IP - allow filter by local and remote
Phil Davis
12:04 PM Revision e17e1b8a: Skip vlan checks for being configured vlan as well
Ermal LUÇI
12:02 PM Revision 694f2b72: Only treat interesting interfaces
Ermal LUÇI
12:00 PM Revision 2fff3ba2: Make this work better and not always go over things for setting mtu
Ermal LUÇI
11:46 AM Revision 1e08ce64: Hopefully is correct now
Ermal LUÇI
11:45 AM Revision b1939343: Set mtu to the correct interface
Ermal LUÇI
11:43 AM Revision 672137f4: Correct which mtu value is used to be correct
Ermal LUÇI
11:42 AM Revision 59297ade: Sprinkle some XXX just for being consistent
Ermal LUÇI
11:40 AM Revision d35233da: Correct this behaviour of properly honoring the configured mtu
Ermal LUÇI
10:18 AM Revision f42193a4: Try to fix the issue reported on http://forum.pfsense.org/index.php/topic,59746.0.html
Ermal LUÇI
10:03 AM Revision 1befdbf8: Tune up a bit dhclient-script and call the kill state command only once its enough
Ermal LUÇI
09:48 AM Revision eff8ea7d: Merge pull request #467 from phil-davis/master
Bandwidth by IP - display static map names also when FQDN selected rbgarga
09:18 AM Revision 2dbd8924: Bandwidth by IP - display static map names also when FQDN selected
If display FQDN was selected, and an IP had no reverse lookup FQDN, but did have a DHCP static mapping, the static ma... Phil Davis
05:20 AM Revision 379ec2f7: Merge pull request #464 from phil-davis/master
Add display by host name option to Traffic Graph Chris Buechler
03:21 AM Revision 8389a461: Traffic Graph add option to display FQDN
Phil Davis
03:19 AM Revision 232d38ab: Traffic Graph add option to display FQDN
It was easy to give the user the choice of displaying IP Address, just the Host Name or the FQDN. And the display wra... Phil Davis
01:57 AM Bug #1629: invalid state table entries after WAN IP change
Same Problem here with 2.1 Beta (built on Fri Mar 1 21:17:31 EST 2013)
It seems that also states without the old I...
Sebastian Chrostek
12:34 AM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Testing was performed on:
2.1-BETA1 (amd64)
built on Wed Mar 6 15:11:09 EST 2013
FreeBSD 8.3-RELEASE-p6
Freshly...
Anonymous
12:11 AM Revision 2158b1ce: Fix gettext/link
Jim Pingle
12:09 AM Revision 386963d5: Merge pull request #462 from N0YB/Diagnostics_Packet_Capture_Promiscuous_Mode_Option
Add Promiscuous Mode Option to Diagnostics Packet Capture Interface Jim Pingle

03/06/2013

09:50 PM Bug #2822: Direction wrong in traffic graph (lan)
Forum thread http://forum.pfsense.org/index.php/topic,59714.0.html
Now the bandwidth by IP display shows separate en...
Phillip Davis
07:05 PM Revision f8c8d65c: Fix issue in version_compare that can cause versions to be wrongly marked incompatible
Stilez y
06:37 PM Revision 30406b49: Merge pull request #465 from stilez/master
Typo in variable name rbgarga
06:29 PM Revision 2379c48e: IPsec status corrections, should fix #2861
Jim Pingle
06:27 PM Revision 1a8c81e7: version_compare_dates(): typo $$a
Stilez y
05:58 PM Revision ba6a4606: Fix doubled $
Jim Pingle
04:29 PM Bug #1629: invalid state table entries after WAN IP change
I’ve upgraded to the latest beta, but the problem still persists. Even when the modem is restartet and i don’t get a ... Matthias Dilbert
03:02 PM Revision c16f7c5c: Add display by host name to Traffic Graph
Phil Davis
01:41 PM Revision 4006a437: Add display by host name to Traffic Graph
Phil Davis
01:37 PM Revision 3697adb2: Print the error message from LDAP in the log for a bind failure.
Jim Pingle
01:06 PM Revision b710a078: Merge pull request #463 from phil-davis/master
Add DNS Forwarder option to not forward private reverse lookups Jim Pingle
12:30 PM Bug #2861 (Feedback): IPSec Status Broken
Applied in changeset commit:2379c48e139eeebabd098a5d17062d8c463afe70. Jim Pingle
12:18 PM Bug #2861: IPSec Status Broken
on debugging this i saw another strange behaviour with this function:
function ipsec_fixup_ip($ipaddr) {
...
Sebastian Chrostek
11:53 AM Bug #2861: IPSec Status Broken
the following two lines are also affected:
elseif (is_ipaddrv6($sp_*src*id))
$sp_dstid .= '/128';
should look ...
Sebastian Chrostek
11:48 AM Bug #2861 (Resolved): IPSec Status Broken
Hi,
there is a bug in
/etc/inc/ipsec.inc
on line 409
the lines
if (!strstr($sp_dstid,"/")) {
if (is_ipad...
Sebastian Chrostek
12:14 PM Revision 0a7985ba: Add DNS Forwarder option to not forward private reverse lookups
Phil Davis
12:11 PM Revision 7bdd28fb: Add DNS Forwarder option to not forward private reverse lookups
Currently, reverse lookups of private IP addresses that are not resolved on the pfSense box itself (e.g. like 192.168... Phil Davis
12:10 PM Revision dcddb2fa: You can have multiple 6rd tunnels now days
Ermal LUÇI
09:35 AM Bug #2860 (Closed): packages don't get restored
I have a box with pfSense 2.0.2 with several packages installed:
arping
Cron
mtr-nox11
OpenVPN Client Export Util...
Alex Kolesnik
09:34 AM Revision 8d64d6b5: Add Promiscuous Mode Option to Diagnostics Packet Capture Interface
Also fix couple mismatched table cell tags
Some NIC's do not work well if placed into promiscuous mode
N0YB
08:54 AM Feature #2847: Add a checkbox to flag a gateway as "down"
+1 same here sometimes i would like to disable my UMTS gateway a few days because of the bandwidth limit. Claudius Badmind
08:37 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
Could you help us here?
pfSense is loosing connectivity completely now and then.
Please tell me if there's anythi...
Christoph Filnkößl
07:32 AM Bug #1053: CBQ per se, in kernel
hes back again so any clue on the cost Bipin Chandra
06:04 AM Feature #1855: NAT before IPsec VPN
Hi, sorry for this later testing.
I have figured out how to test it without upgrading to 2.1 in my production envir...
Michele Di Maria
04:10 AM Revision 2459be50: clean up text a bit, make link more apparent
Chris Buechler
04:06 AM Revision 0f7668fb: DNS servers are optional
Chris Buechler
04:06 AM Revision 9cd89a2d: descr is optional
Chris Buechler
03:27 AM Bug #2832: Gateway status fails when 2 WANs have the same gateway.
Ermal Luçi wrote:
> Why do you have static gateways for your pppoe?
> Please take this to the forums since its a co...
Mathieu Déom
03:15 AM Feature #2117 (New): 6RD support for ISPs like Swisscom
this wasn't for 6rd in general as I thought, rather a diff type.
Chris Buechler

03/05/2013

11:02 PM Feature #2859 (Duplicate): Allow to configure different mac addresses for multiple VLANs on same physical interface
i have a pppoe connection and my isp requires to spoof a fixed mac but it doesnt seem to work when using vlans, witho... Bipin Chandra
10:11 PM Bug #319 (Closed): system_usermanager privilege not working as expected
Chris Buechler
10:09 PM Bug #2067 (Resolved): pppoe-binding deleted
been fixed at some point since then Chris Buechler
10:08 PM Bug #2786 (Resolved): Setting MTU on VLAN does not set MTU on parent interface in 2.2
Chris Buechler
10:04 PM Bug #2364 (Resolved): PPPoE Server doesn't restart correctly
Chris Buechler
09:58 PM Bug #1284 (Resolved): Syslog does not work with CLOG disabled
works Chris Buechler
09:36 PM Bug #1153 (Resolved): Re-assignment of bridge interfaces should be restricted
Chris Buechler
09:28 PM Feature #2117 (Resolved): 6RD support for ISPs like Swisscom
Chris Buechler
09:28 PM Feature #1855 (Closed): NAT before IPsec VPN
works Chris Buechler
09:27 PM Bug #2414 (Resolved): IPv6 DHCP WAN, issue routing firewall-generated traffic
Chris Buechler
09:27 PM Feature #2413 (Resolved): Allow IPv6 interface configuration from the menu
Chris Buechler
09:26 PM Bug #2797 (Resolved): IPsec "connect" button does not work for IPv6
works Chris Buechler
09:20 PM Bug #2362 (Resolved): Deleting last/only port forward doesn't remove from secondary
Chris Buechler
09:06 PM Feature #2858 (Closed): Do not route rules to default gateway when its own gateway is down
Current Behavior:
When an OVPN client connection goes down, any policy based routing rules pointing to the ovpnc gat...
Shawn Bruce
09:06 PM Bug #2555: check_reload_status consumes 100% CPU usage
Unfortunately I have moved on from pfsense so I can't recheck to see if this has been resolved in later versions stil... Snowy Maslov
09:03 PM Bug #2555 (Resolved): check_reload_status consumes 100% CPU usage
There are a wide range of issues unrelated to check_reload_status that can cause this. At the time of the original re... Chris Buechler
08:56 PM Bug #2746 (Resolved): IPv6 IPSEC shows down but is actually not...
look to all work Chris Buechler
08:55 PM Bug #2805 (Resolved): Firewall Rules Interface select causes javascript error
Chris Buechler
08:54 PM Bug #2574 (Closed): Failure of secondary radius server causes PPTP authentication to hang even if primary is working!
problem as described doesn't actually exist. Guessing a GRE NAT issue from the description. Chris Buechler
08:52 PM Bug #2682 (Closed): User Manager server settings appear/disappear randomly, although they still appear to work in 2.1
Chris Buechler
08:52 PM Bug #2816 (Resolved): "none" is not a valid local P2 setting
Chris Buechler
08:49 PM Bug #2842 (Resolved): IPsec status broken
Chris Buechler
08:48 PM Feature #814 (Resolved): GUI should allow to bind openvpn on different ip same port
Chris Buechler
08:47 PM Bug #2518 (Resolved): Gateway in DHCP Server Doesn't Use Default Setting
Chris Buechler
08:43 PM Bug #2677 (Resolved): Dyndns debug file written with ascii string \n instead of line-feed
Chris Buechler
08:42 PM Bug #2804 (Resolved): firewall_rules.php
Chris Buechler
08:42 PM Feature #2768 (Resolved): Don't allow adding IP Alias or CARP VIP on network or broadcast addresses
Chris Buechler
08:41 PM Bug #2836 (Resolved): encrypted backups with RRD data are unrestorable
Chris Buechler
08:40 PM Bug #2837 (Resolved): Interface group rules are incorrectly ordered in the ruleset
Chris Buechler
07:57 PM Revision 1fadb9d1: Remove old ip information even from the tracking interface as well so that track6 config code does not get confused. Fixes #2627
Ermal LUÇI
07:53 PM Revision afe4f2da: Remove old ip information so that track6 config does not get confused. Fixes #2627
Ermal LUÇI
07:30 PM Revision efd60dc4: Merge pull request #461 from ExolonDX/branch_32
Tidy up "wol" widget XHTML Jim Pingle
07:29 PM Revision d4a5f36b: Merge pull request #460 from ExolonDX/branch_31
Tidy up "smart" widget XHTML Jim Pingle
07:29 PM Revision 2686516d: Merge pull request #459 from ExolonDX/branch_30
Tidy up "services" widget XHTML Jim Pingle
07:26 PM Revision e0977d20: Merge pull request #458 from ExolonDX/branch_28
Tidy up "picture" and "rss" widget XHTML Jim Pingle
07:24 PM Revision 23b531c6: Merge pull request #457 from ExolonDX/branch_27
Tidy up "log" widget XHTML Jim Pingle
07:24 PM Revision 8bca8c46: Merge pull request #456 from ExolonDX/branch_26
Tidy up "ipsec" and "load balancer" widgets XHTML Jim Pingle
07:23 PM Revision 800a628e: Merge pull request #455 from ExolonDX/branch_25
Tidy up "gmirror" and "installed packages" widgets XHTML Jim Pingle
07:22 PM Revision 456bae65: Merge pull request #454 from ExolonDX/branch_23
Tidy up "gateways" widgets XHTML Jim Pingle
07:22 PM Revision 6af76e87: Merge pull request #453 from ExolonDX/branch_22
Tidy up "carp_status" widget XHTML Jim Pingle
07:17 PM Revision a038e6b4: Merge pull request #452 from ExolonDX/branch_21
Tidy up "captive portal" widget XHTML Jim Pingle
07:12 PM Revision ebaf7d05: Tidy up "wol" widget XHTML
Added summary to table tag
Added ALT to img tag
Closed IMG tag
Moved nowrap to class definition
Deprecated the ampers...
Colin Fleming
07:07 PM Revision 7aff41fe: Give the rules their own number and swap table numbers to correct statistics gathering.
Ermal LUÇI
07:03 PM Revision 623ee867: Tidy up "smart" widget XHTML
Added a new include file.
Added summart to table tag
Colin Fleming
06:56 PM Revision bb877f44: Tidy up "services" widget XHTML
Added ALT to img tags
Closed off IMG tags
Deprecated the ampersand in HREF tag
Added summary to table tags
Moved nowr...
Colin Fleming
06:38 PM Revision eabce399: Tidy up widget XHTML
Close input tags
Change target _NEW to _BLANK
Add ALT to img tags
Add CDATA sections to scipts.
Changed name in FORM ...
Colin Fleming
06:25 PM Revision 59261d32: Tidy up "log" widget XHTML
Add CDATA section to scripts
Close INPUT tag
Deprecate HTML boolean operators SELECTED and CHECKED
Removed duplicate ...
Colin Fleming
06:15 PM Revision ab28bba4: Tidy up widgets XHTML
Add summary to TABLE tags
Moved nowrap to class definition
Colin Fleming
06:12 PM Revision 8c5a9058: Tidy up widgets XHTML
Added summary to TABLE tags
Closed BR tags
Added alt to IMG tags
Tidied up CDATA section in scritps.
Colin Fleming
05:42 PM Revision 8e4bb27f: Tidy up "gateways" widgets XHTML
Added summary to table tags
Created new INC file to jump from the dashboard to the gateway status
page
Colin Fleming
05:32 PM Revision 7a1f4f1f: Tidy up "carp_status" widget XHTML
Add ALT to img tags
Close img tags
Colin Fleming
05:28 PM Revision 0b1d867b: Tidy up "captive portal" widget XHTML
Depracated the ampersand in HREF
Move nowrap to the class definition.
Colin Fleming
05:18 PM Revision 09644517: Merge pull request #451 from ExolonDX/branch_05
Tidy up "interface status" widget XHTML Jim Pingle
05:16 PM Revision 08fe64a1: Merge pull request #450 from ExolonDX/branch_04
Tidy up "interface_statistics" widgets XHTML Jim Pingle
05:09 PM Revision 44076525: Merge pull request #449 from ExolonDX/branch_03
Tidy up "shortcuts.inc" XHTML Jim Pingle
05:08 PM Revision 319f65ec: Tidy up widget XHTML
Close BR tag
Close INPUT tag
Depcrated ampersand in HREF
Added ALT to img tag
Added close body tag
Added close htm tag
Colin Fleming
05:04 PM Revision 3f716aa6: Merge pull request #448 from ExolonDX/branch_01
Tidy up "system_information" widgets XHTML Jim Pingle
04:58 PM Revision bb1a8946: Tidy up widget XHTML
Removed duplicte TR tag
Move norwap to the class definition.
Colin Fleming
04:52 PM Revision 94fbacae: Tidy up XHTML
Added ALT to img tag Colin Fleming
04:32 PM Revision 9c07440e: Tidy up widgets XHTML
Close BR tag
Add CDATA sections to scripts
HTML width paramter must be a whole number, not a decimal.
Colin Fleming
03:25 PM pfSense Packages Bug #2857: webConfigurator openvpn form multiplication
It's easy to reinstall this package at System: Package Manager. I guess additional warning will be fine.
Is it enou...
Stepan Karandin
02:28 PM pfSense Packages Bug #2857 (Rejected): webConfigurator openvpn form multiplication
You have somehow installed the tap fix package multiple times. Not a GUI bug. Jim Pingle
02:19 PM pfSense Packages Bug #2857: webConfigurator openvpn form multiplication
... Stepan Karandin
02:08 PM pfSense Packages Bug #2857 (Rejected): webConfigurator openvpn form multiplication
2.0.2-RELEASE (i386)
built on Fri Dec 7 16:30:29 EST 2012
FreeBSD 8.1-RELEASE-p13
https://*/vpn_openvpn_server.p...
Stepan Karandin
03:17 PM Bug #2412: inbound 6to4 traffic does not work in pf
Can you be more specific on qwhat does not work? Ermal Luçi
02:00 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Applied in changeset commit:1fadb9d1129b68572e04c3fd7b12fe4bd0098519. Ermal Luçi
02:00 PM Bug #2627 (Feedback): Old delegated prefixes are not removed from the LAN interface
Applied in changeset commit:afe4f2da5079fc68cd0fcdb8d5ba65b173dd5726. Ermal Luçi
01:06 PM Bug #2780 (Feedback): CP: passthough has no effect
Ermal Luçi
01:00 PM Bug #2822: Direction wrong in traffic graph (lan)
Applied in changeset pfsense-tools:commit:d09e8fddd50e95f731f7cef8d1db92ba1b4f2398. Ermal Luçi
12:49 PM Bug #2822 (Feedback): Direction wrong in traffic graph (lan)
Patch pushed test with new snapshots. Ermal Luçi
12:10 PM Bug #2832 (Closed): Gateway status fails when 2 WANs have the same gateway.
Why do you have static gateways for your pppoe?
Please take this to the forums since its a configuration issue rathe...
Ermal Luçi
11:49 AM Revision bcab1b07: Make get_static routes behave correctly with aliases
Ermal LUÇI
11:03 AM Revision 46209e0b: Make sure some value is present here during boot
Ermal LUÇI
10:38 AM Revision 695aa325: Merge pull request #447 from phil-davis/master
DNS Forwarder allow blank forwarding IP address Ermal Luçi
09:46 AM Revision 5f5bd76b: DNS Forwarder example text
It was a bit silly putting the examples inside gettext() calls - they should not be translated to other languages in ... Phil Davis
09:17 AM Revision 4560c2d1: DNS Forwarder allow null forwarding address
dnsmasq allows a blank forwarding IP address to be specified in --server parameters. In that case, dnsmasq will attem... Phil Davis
09:02 AM Revision 6f8679af: DNS Forwarder allow null forwarding address
dnsmasq allows a blank forwarding IP address to be specified in --server parameters. In that case, dnsmasq will attem... Phil Davis
07:57 AM Bug #2641: mac spoof on wan (pppoe) doesnt spoof
this ticket needs to be opened again as mac spoofing when working with vlans stopped working, ill try without vlans t... Bipin Chandra

03/04/2013

09:20 PM Revision e82e8700: Merge pull request #446 from un0x/master
Added IE Mobile for WP8 to list of mobile browsers Jim Pingle
07:56 PM Revision 9b64b52d: Use the correct interface number (old code broke for >= 10)
Jim Pingle
07:55 PM Revision 7f078046: Use the correct interface number (old code broke for >= 10)
Jim Pingle
12:57 PM Revision e12ad49f: Save ppp info and realif on interfaces.apply to be able to cleanup old configuration when changing interface type. Fixes #2758
Renato Botelho
12:50 PM Revision 4a735210: Make parent interface and all VLANs use the same MTU. Fixes #2786
Renato Botelho
12:37 PM Revision 74889b22: When adding a new static route, check if network address conflicts with interfaces. It will complement ticket #2852
Renato Botelho
12:08 PM Revision e480d64b: Fix validation of conflict between interface ip address and static routes. Fixes #2852
Renato Botelho
11:50 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
Sorry for the noise, you are right. Thanks for the superfast support. Daniel Migowski
11:48 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
System > Cert Manager, Certificates tab.
Read the notes carefully when it prompts you to delete the user certifica...
Jim Pingle
11:47 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
Please reopen, I am willing to provide further info if you need some. Daniel Migowski
11:45 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
For the preceeding comment... Daniel Migowski
11:45 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
This is not a browser issue. There was never more than one not deleted cert active, and this is what I get (See attac... Daniel Migowski
11:39 AM pfSense Packages Bug #2855 (Rejected): OpenVPN Client Export Utility shows deleted user certificates
Unable to reproduce the problem. Please post in the forum for more help.
Deleted certificates are no longer in the...
Jim Pingle
11:35 AM pfSense Packages Bug #2855 (Rejected): OpenVPN Client Export Utility shows deleted user certificates
I am using the OpenVPN Client Export Utility v1.0.4, and created a few certs for users, but these deleted certificate... Daniel Migowski
11:38 AM pfSense Packages Bug #2856 (Resolved): OpenVPN Client Export Utility does not handle Spaces in Common Name (CN) of user certificate
I am using the OpenVPN Client Export Utility v1.0.4, and tried to create an "archive" export (the one with the .ovpn-... Daniel Migowski
11:30 AM Revision b241b144: Merge pull request #445 from phil-davis/master
Services status widget display 1st sentence of description rbgarga
10:09 AM Revision 41af581e: Services status widget display 1st sentence of description
Some packages (e.g. bandwidthd, dansguardian, HAVP, nmap, squid3...) have a very verbose package description. This is... Phil Davis
09:25 AM Revision 397bff13: Merge pull request #436 from phil-davis/master
Add DynDNS No-IP Free account support Chris Buechler
07:21 AM Bug #2854 (Duplicate): squid with multi wan doesnt work as intended, will route out of default wan1 inspite of configuring it to router out of wan2
squid always routes out of default wan1 in spite of it configured in transparent mode and local ip set to loopback an... Bipin Chandra
07:00 AM Bug #2758 (Feedback): Old configuration remains when changing interface type
Applied in changeset commit:e12ad49f4621ec9e99ca829c2d7188ad456638f8. Renato Botelho
06:50 AM Bug #2786 (Feedback): Setting MTU on VLAN does not set MTU on parent interface in 2.2
Applied in changeset commit:4a7352101fbd6901b46a3b6a9a3c00d23b75f0e1. Renato Botelho
06:40 AM Bug #2852 (Feedback): interfaces.php static route check too strict
Applied in changeset commit:e480d64bc5eb7a9accaad93b8845df1bf8bbb2f3. Renato Botelho
06:31 AM Feature #2853 (Rejected): OpenVPN RADIUS accounting
Duplicate of #1434 Jim Pingle
03:49 AM Feature #2853: OpenVPN RADIUS accounting
it's not designed to, hence a feature request. Chris Buechler
03:42 AM Feature #2853 (Rejected): OpenVPN RADIUS accounting
OpenVPN Server dose not send accounting packet for radius. Nima Mohammadi
02:49 AM pfSense Packages Bug #2624: Varnish3 Package + GUI seems broken
Pull request #396 solves this Torben Hørup
01:22 AM Revision 672d7e7b: Config file formating:
FIX - Add new line after comment so first option statement is on uncommented line.
Prefix send host-name with tab.
N0YB
01:02 AM Revision 96a7ddb7: Fix GPS lat/lon code to properly convert to the format Google wants for the link.
Jim Pingle

03/03/2013

05:26 PM Revision 8588508a: Merge pull request #444 from mdima/master
Just make the page validate as XHTML Jim Pingle
02:50 PM Revision 84903059: Just make the page validate as XHTML
The only XHTML errors remaining are the ones of the general includes.  Michele Di Maria
01:20 PM pfSense Packages Feature #2220: Varnish 3 does not have the ability to change vcl_deliver function
Nice one, but you will get more success on getting it into main branch if you create a pull request with the changes. Torben Hørup
12:52 PM pfSense Packages Bug #2624: Varnish3 Package + GUI seems broken
the LB director page is broken by this commit https://github.com/bsdperimeter/pfsense-packages/commit/9b20c9278aaf542... Torben Hørup
09:53 AM pfSense Packages Bug #2851: Varnish3 config: add option to disable probing
Pull request added: https://github.com/bsdperimeter/pfsense-packages/pull/393 Torben Hørup
05:47 AM Bug #2852 (Resolved): interfaces.php static route check too strict
interfaces.php checks for "This IPv4/IPv6 address conflicts with a Static Route" are too strict. Rather than only che... Chris Buechler

03/02/2013

10:39 PM Revision 2cf899d3: Added IE mobile for WP8
un0x
06:46 PM pfSense Packages Bug #2851: Varnish3 config: add option to disable probing
please make a pull request with your changes.
https://help.github.com/articles/using-pull-requests
Chris Buechler
02:27 PM pfSense Packages Bug #2851: Varnish3 config: add option to disable probing
Hmm got the patches reversed. Please ignore/delete the previous and use these instead... Torben Hørup
02:23 PM pfSense Packages Bug #2851: Varnish3 config: add option to disable probing
Second patch: respect the probe_disable option in code generator:... Torben Hørup
02:22 PM pfSense Packages Bug #2851: Varnish3 config: add option to disable probing
First patch: add a disable option to gui:... Torben Hørup
02:20 PM pfSense Packages Bug #2851 (Resolved): Varnish3 config: add option to disable probing
Probing is not relevant for all backend targets. Eg: i currently use a varnish setup where a single backend target is... Torben Hørup
05:25 AM Feature #2850 (Resolved): add units in ntp status page
Hi, I am trying to set up a stratum 1 ntp server with a serial gps (if that is what it is called)
and when I am chec...
Kristoffer Øyjord
04:42 AM Feature #2847: Add a checkbox to flag a gateway as "down"
+1 - quite often I have ISPs with links that lose 10-20% packets for a few days. Call the ISP, they know they have a ... Phillip Davis
01:43 AM Feature #2849 (Resolved): IKEv2 support for IPsec
Hi dear pfSense devs!
One handicap i find in pfSense is the lack ok IKEv2 which guarantees smooth operation for ro...
Georgios Tsalikis

03/01/2013

06:03 PM Revision 244dee81: Reconfigure routing when a new gateway is added
Renato Botelho
03:23 PM Revision d09e69da: Send ipprotocol parameter when adding new gateways from interfaces.php
Renato Botelho
02:42 PM Revision f7344c52: Fix extra curly that is breaking firewall rules
Jim Pingle
02:16 PM Revision 75f4d868: Remove *_defaultgwv6 also
Renato Botelho
01:44 PM Revision 6b23c19a: Don't allow adding IP Alias or CARP VIP on network or broadcast addresses. Fixes #2768
Renato Botelho
01:02 PM Revision 17ff2c46: Add check for ipv6 subnet when adding aliases with CARP parents
Renato Botelho
12:51 PM Revision 0692dea8: Simplify code
Renato Botelho
12:48 PM Revision 02421eca: Silent php -l removing pass-by-reference
Renato Botelho
08:39 AM Bug #1053: CBQ per se, in kernel
I don't know for sure. Ermal is away this week he may be able to give you an idea when he's back. Jim Pingle
08:10 AM Bug #1053: CBQ per se, in kernel
how much funding would be required to fix it? Bipin Chandra
06:45 AM Bug #1053: CBQ per se, in kernel
It may be possible to fix eventually, but it's likely not a simple answer. If the fix came from upstream it would be ... Jim Pingle
06:39 AM Bug #1053: CBQ per se, in kernel
so im assuming its not possible to fix this until some1 from FreeBSD does? Bipin Chandra
06:30 AM Bug #1053: CBQ per se, in kernel
Doesn't appear to be specific to us, and has been around a while...
http://lists.freebsd.org/pipermail/freebsd-pf/20...
Jim Pingle
06:10 AM Bug #1053: CBQ per se, in kernel
we r in 2.1 and no sign of fixing this Bipin Chandra
07:56 AM Feature #2847 (Resolved): Add a checkbox to flag a gateway as "down"
Occasionally, the Multi-WAN gateway detection mechanisms are not very helpful in disabling a WAN that has become unus... Jim Pingle
07:50 AM Feature #2768 (Feedback): Don't allow adding IP Alias or CARP VIP on network or broadcast addresses
Applied in changeset commit:6b23c19a15eb621208fa6d6fc5a8b97c3dd6ff97. Renato Botelho
06:49 AM Bug #2756: SNMPD problems when binding pppoe interface
Okay after finding 2 bugs u send me to a forum ... okay noted
btw i use 2 wan interfaces
Claudius Badmind
05:04 AM Bug #2756 (Feedback): SNMPD problems when binding pppoe interface
I did a lot of testing here, with snmp configured to bind a pppoe interface, every time pppoe disconnects and reconne... Renato Botelho
04:35 AM Bug #2756 (New): SNMPD problems when binding pppoe interface
Renato Botelho
05:41 AM Bug #2780: CP: passthough has no effect
Just updated to snapshot Wed Feb 27 and I confirme that the problem is fixed now, both MAC passthrough and Allowed IP... Daniel Berteaud
05:28 AM Bug #2483 (Closed): IPv6 Interface Aliases not functioning
It works fine these days Renato Botelho
05:22 AM Bug #2633: Captive Portal timeouts cause users to be stuck in limbo
Changes were made on Captive Portal since last month, could you please try a recent snapshot? Renato Botelho
03:03 AM Feature #2781 (Resolved): Hierarchical view of "Status-Queues" page
thanks Chris Buechler
03:02 AM Feature #2781: Hierarchical view of "Status-Queues" page
well, it seems all the issues about this task has been solved... if no one has nothing to say, I think we can close i... Michele Di Maria
02:18 AM Revision 336d4f04: Add section tag to v6 documentation links.
Put v4 send, request, require & modifies in lease requirements and requests section.
No functional changes.
N0YB

02/28/2013

10:51 PM Revision 56dda8e0: Fix indent and whitespaces
Renato Botelho
06:41 PM Revision eb171d8f: Update translatio files
Renato Botelho
04:19 PM Feature #1594 (Closed): numbers in "Interface Group" names
Renato Botelho
08:06 AM Revision 34121b0c: Unbreak the html table, this was missing a table cell close tag, also add trim() on the output.
Seth Mos
07:10 AM Bug #2798: Captive Portal does not capture anyone
You mentioned it happens when you enable/disable alias for pfblocker. Have you tried to disable pfblocker and check i... Renato Botelho

02/27/2013

11:38 PM Bug #2844 (Resolved): hide "full backup" option on nano
Chris Buechler
10:01 PM Bug #2844: hide "full backup" option on nano
All above stuff hidden on build:
2.1-BETA1 (i386)
built on Wed Feb 27 15:57:21 EST 2013
FreeBSD 8.3-RELEASE-p6
No...
Phillip Davis
05:10 AM Bug #2844 (Feedback): hide "full backup" option on nano
Applied in changeset commit:9beebb5e54428ada74c902a091a6992f4583f370. Renato Botelho
03:55 AM Bug #2844: hide "full backup" option on nano
And the System->Firmware, Restore Full Backup tab is also not relevant on nano installs IMHO. Phillip Davis
08:50 PM Revision f2bd7b99: Fix typo
Jim Pingle
08:38 PM Revision a11fb612: Fix wording for VoIP address option in the shaper. Add rule going the other direction to catch connections initiated both ways.
Jim Pingle
08:37 PM Revision da14f0cf: Fix wording for VoIP address option in the shaper. Add rule going the other direction to catch connections initiated both ways.
Jim Pingle
07:24 PM Revision 5b13c47c: Do not count active vouchers as used. Fixes #1550
Renato Botelho
07:20 PM Revision d8fba822: Fix indent and whitespace
Renato Botelho
04:14 PM pfSense Packages Bug #2845 (Closed): bandwidthd keeps saying "Please start bandwidthd to populate this directory." even after its started.
Installed bandwidthd on pfSense-2.0.2-RELEASE, it always says "Please start bandwidthd to populate this directory." w... M K
03:47 PM Revision 08c3810c: Just set defaultgw after all gateways are processed, it fixes return_gateways_array()
Renato Botelho
02:26 PM Revision 5b0e0182: Consider CP allowed IPs for both directions. It will help ticket #2780
Renato Botelho
01:30 PM Feature #1550 (Feedback): used + active + ready should match # of tickets
Applied in changeset commit:5b13c47cb2391da39472aeed5f6269a913ae831a. Renato Botelho
12:18 PM Feature #2439: XEN Para-virtualized Drivers Support
Has anyone looked into this yet? I would imagine it wouldn't be too much trouble to include the xenhvm drivers to at ... Jupiter Vuorikoski
11:06 AM Revision 9beebb5e: Hide 'Perform full backup prior to upgrade' option on nano, also hide restore full backup. Fixes #2844
Renato Botelho
10:55 AM Revision 4b805dbc: Fix whitespaces, indent and unclosed html tags
Renato Botelho
09:36 AM Bug #2841 (Feedback): input validation on IPv6 static routes needs to take link-local into consideration
this doesn't actually appear to be an issue, awaiting feedback on http://forum.pfsense.org/index.php/topic,59374.0.html Chris Buechler
08:29 AM Bug #2780: CP: passthough has no effect
Since when to/from/both direction options were removed on commit:aea564088a it started to consider Allowed IPs just a... Renato Botelho
01:11 AM Revision 6e704f19: Fix response read for 'add new gateway' applet at interface configuration
Renato Botelho

02/26/2013

10:38 PM Bug #2844 (Resolved): hide "full backup" option on nano
The "Perform full backup prior to upgrade" option should only be available on full installs since nano has an alterna... Chris Buechler
09:43 PM Revision 375136d9: Add a pfSsh.php script to remove the shaper settings from the console if needed.
Jim Pingle
08:35 PM Revision a3da3e42: Merge pull request #442 from mdima/master
Status Queue page: Adds the IF name not shown for FAIRQ or PRIQ Jim Pingle
08:25 PM Revision 1679b68c: Status Queue page: Adds the IF name not shown for FAIRQ or PRIQ
Michele Di Maria
08:19 PM Revision b4ac7250: Merge pull request #429 from ExolonDX/master
Tidy up HTML errors in INDEX.PHP Jim Pingle
03:46 PM Revision ff13c4e5: Merge pull request #441 from neo14/master
Set correct netmask for IPv6 addresses when creating an easy rule: pass Jim Pingle
03:34 PM Revision aea83400: no IPv6 check when an easy rule: pass is created
The easyrule_pass_rule_add() now checks for an IPv6 address and sets the
netmask accordingly.
This is the fix for bug...
Thomas Rieschl
03:17 PM Revision 5e8eded5: Merge pull request #440 from neo14/master
trim ping host Jim Pingle
03:14 PM Revision e700d2ee: trim whitespace from ping host
Added trim() function to the $host variable. If whitespace is in front
of the host or IP address the ping command wil...
Thomas Rieschl
01:38 PM Revision 91cf9401: Merge pull request #439 from phildd/master
Avoid DynDNS timeout delay when gateway is down Jim Pingle
01:15 PM Revision 0b844b73: Fix indent, whitespaces and unbalanced <tr> and <td> tags
Renato Botelho
12:07 PM Revision 873e4b28: Avoid DynDNS timeout delay when gateway is down
When a dynamic DNS entry is set on an interface that has a private IP, the code has to find the ultimate public IP of... phildd
11:41 AM Revision ed5f7e9e: When auth algorithm is hmac-sha512, it produces long lines and wrap them, what breaks the parser. Ignore lines that starts with a space to fix it. Fixes #2842
Renato Botelho
09:59 AM Bug #2843 (Feedback): Easy Rule: Pass failed for IPv6
Should be fixed by commit:aea834001cdfc129d1dc64209c4871a8c06bc1a9 Jim Pingle
08:28 AM Bug #2843 (Resolved): Easy Rule: Pass failed for IPv6
When trying to create an "Easy Rule: Pass" within the Firewall logs the pass rule is created but the subnet is wrong.... Thomas Rieschl
05:40 AM Bug #2842: IPsec status broken
Applied in changeset commit:ed5f7e9ebd5b00018dc99dc00ea36ce752a90b5b. Renato Botelho
05:11 AM Bug #2842: IPsec status broken
emailed it to you Chris Buechler
04:57 AM Bug #2842 (Feedback): IPsec status broken
Do you have the output of 'setkey -D' at the time error happened? Renato Botelho

02/25/2013

11:57 PM Bug #2406 (Resolved): No IP alias within the subnet of a CARP IP can be deleted
This is fixed. You can't remove the last IP alias on the subnet of a CARP IP because it'll break CARP, you have to de... Chris Buechler
11:52 PM Bug #2406: No IP alias within the subnet of a CARP IP can be deleted
It is the last one. pfSense should be able to determine if the alias type is CARP or IP Alias and let you remove any ... Richard Adams
10:55 PM Revision 29d33eaa: Merge pull request #438 from mdima/master
Status Queue page: Fixes the Drops issue and adds the Queue length information to the page.  Jim Pingle
10:47 PM Revision 8e006931: Update usr/local/www/status_queues.php
Fixes the Drops issue and adds the Queue length information to the page.  Michele Di Maria
09:36 PM Bug #2842: IPsec status broken
someone please follow up on VCZ-534999 when this is resolved Chris Buechler
09:33 PM Bug #2842 (Resolved): IPsec status broken
IPsec status on v4 connections is broken in recent snapshots (not sure how recent, but it's a regression from the las... Chris Buechler
09:24 PM Bug #2841 (Closed): input validation on IPv6 static routes needs to take link-local into consideration
The input validation on IPv6 static routes requires the gateway IP to be on the interface's configured subnet. It's a... Chris Buechler
08:25 PM Revision 822a8575: Better check for the right bits being set.
Jim Pingle
08:24 PM Revision 6d0b9fe9: Better check for the right bits being set.
Jim Pingle
08:21 PM Revision 9bfa57b3: Always clear the OpenVPN route when using shared key, no matter what the tunnel network "CIDR" is set to, it still needs it.
Jim Pingle
08:19 PM Revision 6ca938cf: Always clear the OpenVPN route when using shared key, no matter what the tunnel network "CIDR" is set to, it still needs it.
Jim Pingle
07:58 PM Revision 2b333210: Show cert start/end dates in list.
Jim Pingle
07:38 PM Revision 8e479c61: Add VPNs and PPPoE rules before regular ones. Fixes #2837
Renato Botelho
03:52 PM Bug #2074 (Resolved): Changing interface IP changes interface assignment as well
Renato Botelho
03:49 PM Bug #1118 (Resolved): Adding NAT rule based on a NAT rule moves it to bottom of list
Renato Botelho
03:48 PM Bug #2829 (Resolved): CARP settings overwrite prefixlen of IPv6 address with prefixlen of IPv4 address on edit
Renato Botelho
03:47 PM Bug #2491 (Resolved): disabling pfsync doesn't actually disable pfsync
Renato Botelho
03:46 PM Bug #2827 (Resolved): changing "IPv6 Configuration Type" dropdown results in error if you have an old config.xml with unmigrated <dhcpd6> block
Renato Botelho
03:46 PM Bug #2824 (Resolved): IP alias VIP stacked on CARP VIP interface has a blank "Interface" column on VIP list
Renato Botelho
03:45 PM Todo #1723 (Resolved): PPTPd and all mpd based services need more checks
Renato Botelho
03:44 PM Bug #2789 (Closed): Bug with DHCPD, with the last upgrade from 2.1
It's not reproducible, seems to be a local issue instead of a bug on pfSense. Please try to find help in forums and/o... Renato Botelho
03:40 PM Revision 06182467: Create rules for grouped interfaces before regular ones. Fixes #2837
Renato Botelho
03:05 PM Revision 133d754e: Fix indent and whitespaces
Renato Botelho
01:40 PM Bug #2837 (Feedback): Interface group rules are incorrectly ordered in the ruleset
Applied in changeset commit:8e479c61bc77a6cb2ea284325520cf7a31315c81. Renato Botelho
09:55 AM Bug #2837 (New): Interface group rules are incorrectly ordered in the ruleset
Close but a little more needs fixed. My manual groups are getting sorted properly, but the VPN rules are also technic... Jim Pingle
09:40 AM Bug #2837 (Feedback): Interface group rules are incorrectly ordered in the ruleset
Applied in changeset commit:06182467540b978ef7dccdf311c7677014c04beb. Renato Botelho
01:38 PM Revision 774aedf0: Ignore swap partitions when looking for external config file
Renato Botelho
12:32 PM Revision 52034432: Make sure captiveportal section of config is an array, reported on ticket #2838
Renato Botelho
12:27 PM Bug #2838: nanobsd on alix wont boot if usb flash drive attached at boot, stuck on external config loader
i get this when i run the first command
[2.1-BETA1][root@firewall.xbipin]/root(8): dd if=/dev/zero of=/dev/da0 bs=...
Bipin Chandra
12:22 PM Bug #2838: nanobsd on alix wont boot if usb flash drive attached at boot, stuck on external config loader
Yes, I put all of the commands I used in my ticket update when I closed it. And please, move this to a forum thread, ... Jim Pingle
12:21 PM Bug #2838: nanobsd on alix wont boot if usb flash drive attached at boot, stuck on external config loader
can u tell me how did u format the drive?
is this command fine?
newfs -U /dev/da0s1
Bipin Chandra
11:39 AM Bug #2838 (Closed): nanobsd on alix wont boot if usb flash drive attached at boot, stuck on external config loader
This really belongs on a forum thread, not the ticket system, until a bug is actually confirmed.
I can't reproduce ...
Jim Pingle
11:01 AM Bug #2838: nanobsd on alix wont boot if usb flash drive attached at boot, stuck on external config loader
do u want access to mine right now? Bipin Chandra
10:56 AM Bug #2838 (New): nanobsd on alix wont boot if usb flash drive attached at boot, stuck on external config loader
Couldn't reproduce it on VMs and I don't have an alix board available for testing at this moment Renato Botelho
08:10 AM Bug #2838: nanobsd on alix wont boot if usb flash drive attached at boot, stuck on external config loader
after boot is finished, i plugged in the usb and went into shell and typed the command and this is what i get
[2.1...
Bipin Chandra
08:00 AM Bug #2838: nanobsd on alix wont boot if usb flash drive attached at boot, stuck on external config loader
What happens if, after boot is finished, you plug the flash drive and run:... Renato Botelho
06:11 AM Bug #2838: nanobsd on alix wont boot if usb flash drive attached at boot, stuck on external config loader
while ur at this i noticed one more bug not related to this which prevents a system reboot
Warning: Invalid argume...
Bipin Chandra
06:10 AM Bug #2838: nanobsd on alix wont boot if usb flash drive attached at boot, stuck on external config loader
i get this when debug is true
External config loader 1.0 is now starting... da0s1
/sbin/mount -t msdosfs /dev/da0...
Bipin Chandra
05:46 AM Bug #2838 (Feedback): nanobsd on alix wont boot if usb flash drive attached at boot, stuck on external config loader
Renato Botelho
05:45 AM Bug #2838: nanobsd on alix wont boot if usb flash drive attached at boot, stuck on external config loader
Could you please edit /etc/ecl.php, change the line 37 from:... Renato Botelho
01:39 AM Bug #2838 (Closed): nanobsd on alix wont boot if usb flash drive attached at boot, stuck on external config loader
i have a lexar 8GB USB flash drive, i created one partition and formatted with "newfs -U /dev/da0s1". now when i rebo... Bipin Chandra
10:20 AM Bug #2780: CP: passthough has no effect
Also replicated here. Happy to provide debug info if it's required.
Phil
Phil Lavin
10:17 AM Bug #2840 (Rejected): Captive Portal "Allowed" broken
Duplicate of #2780 Jim Pingle
10:12 AM Bug #2840 (Rejected): Captive Portal "Allowed" broken
On a recent upgrade, this stopped working. It was originally working with an IP passthrough to 8.8.8.8 (DNS) and host... Phil Lavin
09:20 AM Bug #2598 (Resolved): reply-to on IPv4+6 rules breaks v6
It creates two rules because it has to. On WAN without the default gateway it needs to add reply-to on the rules sepa... Jim Pingle
08:48 AM Bug #2598: reply-to on IPv4+6 rules breaks v6
This works now for dualstack rules on WAN. But it also creates 2 separate rules on other (OPT) interfaces for dual-st... Bernhard Lichtinger
06:55 AM Feature #2839 (Closed): MultiWAN channel up/down notification
After channel gets down, the notification is sent, while when it's back up, no notifications sent. Small fixing patch... Alex Kolesnik

02/24/2013

11:58 PM Bug #1838 (Resolved): Dynamic DNS disabled checkbox doesn't work
Chris Buechler
10:30 PM Bug #1838: Dynamic DNS disabled checkbox doesn't work
Disabled 1 of my DynDNS entries. The regular update checks for that entry do not happen any more (as required), and o... Phillip Davis
11:56 PM Bug #2835 (Resolved): fadvise memory leak in FreeBSD 8.3-RELEASE
Chris Buechler
10:11 PM Bug #2835: fadvise memory leak in FreeBSD 8.3-RELEASE
From a system before upgrade:
[2.1-BETA1]/root(1): uptime
9:02AM up 2 days, 16:19, 2 users, load averages: 1.56, ...
Phillip Davis
09:00 AM Bug #2835 (Feedback): fadvise memory leak in FreeBSD 8.3-RELEASE
Applied in changeset pfsense-tools:commit:548949d8726b5660d288336e8679e48f3b8cd2ff. Renato Botelho
05:28 PM Revision 0333f968: Add DynDNS No-IP Free account support
The free No-IP account requires the IP address to be changed within every 30 days. If there is no change, the "last u... Phil Davis
05:22 PM Revision 528d5f17: Add DynDNS No-IP Free account support
Phil Davis
01:52 PM Revision 343266cc: Encrypt backup after rrd data is added, it fixes #2836
Renato Botelho
01:50 PM Revision 4cfd2390: Encrypt backup after rrd data is added, it fixes #2836
Renato Botelho
01:39 PM Revision 73ed069b: Fix indent and whitespaces
Renato Botelho
10:16 AM Revision 1970b50e: Merge pull request #435 from phil-davis/master
Put common DynDNS code and constants into services.inc Chris Buechler
08:00 AM Bug #2836: encrypted backups with RRD data are unrestorable
Applied in changeset commit:343266ccf71605dbde9aff845f3075f3c090a829. Renato Botelho
07:50 AM Bug #2836 (Feedback): encrypted backups with RRD data are unrestorable
Applied in changeset commit:4cfd23901d1da439a8373e90142ec175c03d7dab. Renato Botelho
07:56 AM Bug #2406 (Feedback): No IP alias within the subnet of a CARP IP can be deleted
As proposed on bug description, the error still shows up when you try to remove the last IP alias, but do not complai... Renato Botelho
07:12 AM Revision 94c872f7: Remove leading spaces from DYNDNS_PROVIDER_DESCRIPTIONS
Remove leading spaces to make the string consistent. Phil Davis
07:03 AM Revision 1ddae7c3: Use common code and constants from services.inc
to reduce code duplication Phil Davis
07:01 AM Revision 7a5fe50d: Use common code and constants from services.inc
to reduce code duplication Phil Davis
06:59 AM Revision 14aee2f4: Use common code and constants from services.inc
Reduce code duplication Phil Davis
06:57 AM Revision 0e3aeb6b: Add common DynDNS constants and code
to system.inc to remove code duplication Phil Davis
06:18 AM Revision cfa845a9: Add onchange tag to checkbox too
Luiz Gustavo Costa (gugabsd)
04:14 AM Revision ecbf63f0: Merge pull request #433 from phil-davis/master
Cleanup code handling 25 day dyndns update Chris Buechler
03:34 AM Revision f4dd8b4c: Advanced DHCP Client Options & Config File Override
DHCP v4:
Protocol Timing
Send Options
Request Options
Require Options
Option Modifiers
DHCP v6:
Interface Statement
...
N0YB
03:24 AM Revision f5e293e6: Cleanup code handling 25 day dyndns update
The code that checks if an IP has not changed for 25 days has out-of-date comments and uses "25" in multiple places a... Phil Davis

02/23/2013

08:10 PM Bug #2837 (Resolved): Interface group rules are incorrectly ordered in the ruleset
The rules are supposed to be ordered like so:
Floating rules, interface group rules, user rules
But currently t...
Jim Pingle
07:09 PM Revision a6b14d7e: Merge pull request #432 from phil-davis/master
Whitespace and text typos dyndns.class Jim Pingle
06:42 PM Feature #2466 (Resolved): Allow single firewall rules to apply to both IPv4 and IPv6 simultaneously
Thanks. You can mix v4 and v6 within aliases, we do extensively on our production networks. If there's a scenario whe... Chris Buechler
05:06 PM Revision 0c7bb880: Whitespace and text typos dyndns.class
Standardise tabbing and fix a few text typos, before making any real functional changes. Phil Davis
07:35 AM Revision dcb63afe: Merge pull request #431 from phildd/master
Fix is_altq_capable Chris Buechler
06:09 AM Revision 2163ace9: Fix is_altq_capable
Fixes traffic shaper determine which interfaces should be displayed and used. phildd
01:38 AM Bug #2836 (Resolved): encrypted backups with RRD data are unrestorable
an encrypted backup config.xml including RRD data is unrestorable. As discussed here:
http://lists.pfsense.org/pipe...
Chris Buechler

02/22/2013

06:10 PM Revision d348160e: Unset enable parameter instead of set its value to false. Fixes #1838
Renato Botelho
05:22 PM Revision c4bd43cc: Copy full dhcpd conf from master to slave. Fixes #2600
Renato Botelho
04:29 PM Todo #2485 (Resolved): Add Status > Services entry for radvd if RA is enabled
Jim Pingle
04:26 PM Todo #2485: Add Status > Services entry for radvd if RA is enabled
On this snapshot:
2.1-BETA1 (i386) built on Wed Feb 20 19:15:36 EST 2013
I see radvd in the Status: Services s...
Bruce Mah
04:15 PM Bug #2820 (Resolved): Unable to generate CSR in 2.1BETA1
Jim Pingle
04:14 PM Bug #2820: Unable to generate CSR in 2.1BETA1
This is now working for me as of this snapshot: 2.1-BETA1 (i386) built on Wed Feb 20 19:15:36 EST 2013.
Bruce Mah
03:40 PM Feature #2466: Allow single firewall rules to apply to both IPv4 and IPv6 simultaneously
I can confirm this is working. Now if only you could mix IPv4 and IPv6 within aliases. Richard Adams
02:56 PM Revision d026178f: Make sure we create / delete SPDs and SADs on secondary node when it changes on primary. Fixes #2303
Renato Botelho
01:33 PM Bug #2039 (Resolved): Adding a local interface conflicting with a static route in the routing table fails to add the link route
thanks Renato Botelho
01:17 PM Bug #2039: Adding a local interface conflicting with a static route in the routing table fails to add the link route
Tested by adding a static route and then creating an opt interface and trying to assign an address within a static ro... Richard Adams
01:15 PM Bug #2412 (New): inbound 6to4 traffic does not work in pf
Jim Pingle
11:50 AM Bug #2412: inbound 6to4 traffic does not work in pf
I have tested with:
2.1-BETA1 (i386)
built on Thu Feb 21 18:19:58 EST 2013
FreeBSD 8.3-RELEASE-p6
The problem...
Richard Adams
01:14 PM Bug #2406 (New): No IP alias within the subnet of a CARP IP can be deleted
Jim Pingle
01:03 PM Bug #2406: No IP alias within the subnet of a CARP IP can be deleted
Using:
2.1-BETA1 (amd64)
built on Thu Feb 21 23:02:24 EST 2013
FreeBSD 8.3-RELEASE-p6
with the latest gitsync.
...
Richard Adams
12:59 PM Feature #804 (Resolved): Ability to enable/disable static routes
thanks Chris Buechler
12:53 PM Feature #804: Ability to enable/disable static routes
I have tested and this is working as expected. I added an IPV6 route and then removed it. Routing table had it when i... Richard Adams
12:43 PM Revision dc2e5552: simplify logic a bit
Renato Botelho
12:40 PM Revision fb6a3e7a: Set pfsync0 as down when it's not being used
Renato Botelho
12:34 PM Revision b32ea59d: Fixes on HA setup:
- Configure pfsync when configuration is changed
- Disable pfsync when it's disabled on GUI
- Remove syncpeer and bac...
Renato Botelho
12:10 PM Bug #1838 (Feedback): Dynamic DNS disabled checkbox doesn't work
Applied in changeset commit:d348160eb4d400a03aa7cbdc8e8f5d4c400b341f. Renato Botelho
11:30 AM Bug #2600 (Feedback): DHCP Server different parameter order in config.xml interrupts peer groups
Applied in changeset commit:c4bd43ccba1be01cf3ef05fea89c9730dc633096. Renato Botelho
10:48 AM Bug #2835 (Resolved): fadvise memory leak in FreeBSD 8.3-RELEASE
From pfSense forum http://forum.pfsense.org/index.php/topic,59249.0.html :
Apparently there is a memory leak in the ...
Phillip Davis
09:00 AM Bug #2303 (Feedback): SPD on secondary not cleared after config sync
Applied in changeset commit:d026178fa695f607f3b490978a9f4113fa7b111d. Renato Botelho
08:27 AM Feature #2834 (Needs Patch): carp+pfsync: add ability to prefer one node as master
This request is done because we have the situation of a lot (3x /27) ip-addresses with most of them guarded by carp. ... Alexander Swen
06:40 AM Bug #2491 (Feedback): disabling pfsync doesn't actually disable pfsync
Applied in changeset commit:b32ea59d5a45b86beee73d416462c01d1ac915ec. Renato Botelho
05:54 AM Bug #2012 (Resolved): 4th+ CARP member will not work with default automatic skew
Renato Botelho
01:18 AM Revision 2ead5ea7: Don't forget zones here too
Jim Pingle
01:03 AM Revision 506bca12: Include zones on voucher expire page tabs.
Jim Pingle

02/21/2013

07:35 PM Bug #2555: check_reload_status consumes 100% CPU usage
Tracked down the issue to dhcp6c calling rc.newwanipv6 which called "filter reload" on check_reload_status.
The de...
Ben Harris
07:30 PM Revision 5d764d64: Insert new NAT rules on the top of the list when top plus icon is used. Fixes #1118
Renato Botelho
07:28 PM Revision b779511e: Tidy up HTML errors in INDEX.PHP
Without any "widgets" selected, INDEX.PHP (i.e. the "dashboard")
produces 230+ HTML errors, so:
Remove the "closehea...
Colin Fleming
07:15 PM Revision 3202763c: Add NAT rule based on NAT rule below it instead of at the bottom of the list. Fixes #1118
Renato Botelho
06:18 PM Revision 95540233: Do not allow bridge members to be assigned to itself. Fixes #1153
Renato Botelho
05:21 PM Revision ef88e1e1: Fix indent and whitespaces
Renato Botelho
04:11 PM Bug #2756: SNMPD problems when binding pppoe interface
hmm after update still the same .... any idea Claudius Badmind
03:28 PM Revision b030e035: Allow deleting all aliases but the last one within the same subnet of a CARP IP. Fixes #2406
Renato Botelho
03:21 PM Feature #2241: DHCP - prevent dhcpd from handing out leases to certain MAC addresses
Unrelated to this ticket. Open a new feature request ticket for each of those separately. Jim Pingle
03:19 PM Feature #2241: DHCP - prevent dhcpd from handing out leases to certain MAC addresses
Thank you for this patch, however I would still like to see 2 checkboxes added to the GUI to control the following fl... → luckman212
02:16 PM Revision 873e49ec: Set if interface is enable before try to configure static arp. Fixes #1988
Renato Botelho
02:05 PM Revision 42fa2c01: Avoid conflicting interface IP address with static routes. Fixes #2039
Renato Botelho
01:51 PM Revision 51204df1: Fix reference to SNMP interface binding.
Jim Pingle
01:30 PM Bug #1118: Adding NAT rule based on a NAT rule moves it to bottom of list
Applied in changeset commit:5d764d64b999cd2f1c9b00c62771a18e05b52025. Renato Botelho
01:20 PM Bug #1118 (Feedback): Adding NAT rule based on a NAT rule moves it to bottom of list
Applied in changeset commit:3202763c8bdd2cd6821be7bc21829085548cc504. Renato Botelho
01:17 PM Bug #1118: Adding NAT rule based on a NAT rule moves it to bottom of list
Slightly related: using the + at the top of the NAT rules list adds the rule to the bottom, not the top. (could make ... Jim Pingle
12:20 PM Bug #1153 (Feedback): Re-assignment of bridge interfaces should be restricted
Applied in changeset commit:95540233e3b9d8c4be5616065edcc6e1f2e2f972. Renato Botelho
11:43 AM Revision acc68ffa: find_interface_ipv6 should return the first configured address, not the last one
Renato Botelho
11:30 AM Revision 8de7e180: Improve error message since we can have ipv6 set here
Renato Botelho
11:23 AM Revision 6e828f98: Add missing check for IPv6 overlap on interfaces, it complements the change made for ticket #1723
Renato Botelho
11:19 AM Revision 2c98a935: Teach is_ipaddr_configured to check ipv6 for single IPs. While I'm here, reduce code duplication
Renato Botelho
10:41 AM Revision 8d8b1af7: Remove unused function remove_numbers()
Renato Botelho
10:41 AM Revision 2ccac125: A nic family name can contain numbers on it, remove only the index in the end. Fixes #2010
Renato Botelho
09:44 AM Bug #2833 (Resolved): Add a knob to prefer IPv4 over IPv6 for rare situations that require it
We should have a knob somewhere to let users prefer IPv4 over IPv6 in case they have broken IPv6 routing and need to ... Jim Pingle
09:30 AM Bug #2406 (Feedback): No IP alias within the subnet of a CARP IP can be deleted
Applied in changeset commit:b030e03510656584d1d29f3a1d355e4a6d947f04. Renato Botelho
08:21 AM Bug #1988 (Feedback): Static ARP entries attempted to be applied on disabled interfaces
Renato Botelho
08:21 AM Bug #1988 (New): Static ARP entries attempted to be applied on disabled interfaces
Renato Botelho
08:20 AM Bug #1988 (Feedback): Static ARP entries attempted to be applied on disabled interfaces
Applied in changeset commit:873e49ec1cf3a291c9267a5efca70d74481a126b. Renato Botelho
08:10 AM Bug #2039 (Feedback): Adding a local interface conflicting with a static route in the routing table fails to add the link route
Applied in changeset commit:42fa2c01422e57fddea07352029530ace34363c4. Renato Botelho
08:04 AM Bug #2010 (Feedback): VLAN parent interface / altq interface wrong assumptions about int_family name format
Renato Botelho
04:56 AM Bug #2010 (New): VLAN parent interface / altq interface wrong assumptions about int_family name format
Renato Botelho
04:50 AM Bug #2010 (Feedback): VLAN parent interface / altq interface wrong assumptions about int_family name format
Applied in changeset commit:2ccac12588f59039c88d06126762f41be2f65ce2. Renato Botelho
06:24 AM Bug #2832 (Closed): Gateway status fails when 2 WANs have the same gateway.
I have 2 VDSL WANs using PPPoE connections but they have the same gateway and because of that pfsense gateway monitor... Mathieu Déom

02/20/2013

10:51 PM Bug #2831 (Rejected): Issue while connecting the openvpn
not a bug, post to the forum or mailing list Chris Buechler
10:48 PM Bug #2831 (Rejected): Issue while connecting the openvpn
Hi Team
I have set the Openvpn server in Pfsense.I have successfully connected through it from another network.Bu...
zam kp
10:15 PM Bug #2819: Unconstrained memory growth of tcpdump
can attach it here if it's under 5 MB gzipped/bzipped which it might be at that. otherwise can email it to me and I c... Chris Buechler
04:10 PM Bug #2819: Unconstrained memory growth of tcpdump
Jim, I was able to reproduce the situation. 3 days after reboot, tcpdump process grew to 25 MB from 2.5 MB. I ... Irving Popovetsky
10:12 PM Bug #2830 (Rejected): a Bug for 100Mb interface?
configuration problem, post to the forum or mailing list Chris Buechler
09:50 PM Bug #2830: a Bug for 100Mb interface?
--[adsl router] ------192.168.2.152 (100Mb)[win7]
|
|
---192.168....
scott gao
09:47 PM Bug #2830 (Rejected): a Bug for 100Mb interface?
test env:win7+vmware7+pfsense2.0.2+winxp
--[adsl router] ------192.168.2.152 (100Mb)[win7]
...
scott gao
09:40 PM Revision eed22197: Remove unimplemented option
Ermal LUÇI
07:50 PM Revision 9a15b8d2: Fix issues on "Set interface(s) IP address" option
- Avoid duplicate gateway entries
- Fix checking if a default gw already exists
- Set IPv6 to none when user choose i...
Renato Botelho
06:11 PM Revision c6a69aed: fix typo
Renato Botelho
05:55 PM Revision b82e4696: fix typo
Renato Botelho
03:54 PM Bug #2828: CARP does not work on dual-homed VMware ESXi hosts without a workaround on the ESX host
Oops, I was dead wrong, other machines see the same behaviour as soon as Promiscous Mode is enabled on the VMware por... Bernhard Schmidt
07:54 AM Bug #2828: CARP does not work on dual-homed VMware ESXi hosts without a workaround on the ESX host
Weird thing is, it only seems to affect pfSense boxes. We have tons of Linux and Windows machines, even in the same p... Bernhard Schmidt
07:28 AM Bug #2828: CARP does not work on dual-homed VMware ESXi hosts without a workaround on the ESX host
The workaround for altering the ESX host is correct and works for most people, since it's a problem with ESX.
If w...
Jim Pingle
06:00 AM Bug #2828 (Closed): CARP does not work on dual-homed VMware ESXi hosts without a workaround on the ESX host
Certain active/active VMware ESXi configurations loop back CARP multicast frames sent by the machine. This breaks CAR... Bernhard Schmidt
03:15 PM Revision ebbfc4b7: Revert "Preselect interface subnet mask for carp interfaces"
This was not a good change, it just consider ipv4, and it doesn't
respect the previous selected value. Revert it now ...
Renato Botelho
12:41 PM Revision 1f56ce58: Fix dhcp v6 config section name for console setup and check on interfaces.php, the correct is dhcpdv6 instead of dhcpd6. Fixes #2827
Renato Botelho
12:13 PM Bug #1877 (Resolved): (cosmetic) aliases-edit markup to wide for background
It was already fixed in 2.1. Renato Botelho
11:51 AM Revision 2675f511: Fix sort param to call bandwidth_by_ip
Renato Botelho
09:20 AM Bug #2829 (Feedback): CARP settings overwrite prefixlen of IPv6 address with prefixlen of IPv4 address on edit
Applied in changeset commit:ebbfc4b771a16b1aed5e97c2aaa2bee3db6b2e4d. Renato Botelho
07:18 AM Bug #2829 (Resolved): CARP settings overwrite prefixlen of IPv6 address with prefixlen of IPv4 address on edit
* Add IPv4 CARP address to WAN, i.e. 10.10.10.1, prefixlen /29
* Add IPv6 CARP address to WAN, i.e. 2001:db8:0:e901:...
Bernhard Schmidt
08:00 AM Revision a3861260: Merge pull request #428 from mdima/master
Status Queue: Uniform units in the interface. Ermal Luçi
07:54 AM Bug #2826 (Resolved): Status > Traffic Graphs gives javascript alert when changing interfaces.
Renato Botelho
07:33 AM Revision 31e41cf4: Status Queue: Uniform units in the interface.
Uniform units in the interface. Michele Di Maria
06:40 AM Bug #2827 (Feedback): changing "IPv6 Configuration Type" dropdown results in error if you have an old config.xml with unmigrated <dhcpd6> block
Applied in changeset commit:1f56ce58668708485f9d95c9b01e72519dde87b4. Renato Botelho
04:25 AM Feature #2781: Hierarchical view of "Status-Queues" page
Well, the new status queues page still doesn't show Borrows, Suspends or Drops:... Petri Oksanen
01:34 AM Feature #2781: Hierarchical view of "Status-Queues" page
Well, I think we can close this, or if you have any suggestions/problems please write me! Michele Di Maria

02/19/2013

09:46 PM Revision ae88de13: Some more code cleanup
Ermal LUÇI
09:42 PM Revision 1cf47c49: Put the alerts behind comments for someone wanting to debug this. The errors are from CSRF though ticket #2826 should not happen and functionality is not impacted by this.
Ermal LUÇI
07:14 PM Revision 647df2d4: Remove single quotes committed wrongly
Ermal LUÇI
06:13 PM Revision ffac939e: Use jQuery() as all other code
Ermal LUÇI
06:03 PM Revision b1b930dd: Use jQuery fully on traffic graph. Also remove some unused code from bandwidth_by_ip
Ermal LUÇI
05:20 PM Revision b406c78a: Be explicit on the testing
Ermal LUÇI
03:55 PM Bug #2827 (Resolved): changing "IPv6 Configuration Type" dropdown results in error if you have an old config.xml with unmigrated <dhcpd6> block
I have upgraded my 2.1 from snapshot to snapshot for quite a long time and I now have accumulated 2 IPv6 dhcpd blocks... Dwayne Voelker
03:48 PM Revision c3ebb2f8: Try to use our git PBI instead of the tbz version.
Jim Pingle
03:36 PM Revision 5823264a: Add some PHP shell scripts for managing packages from the CLI.
pfSsh.php playback installpkg git
pfSsh.php playback uninstallpkg git
pfSsh.php playback listpkg
Jim Pingle
02:08 PM Revision 28a20fdb: Default to using sha256 for a ca/cert digest algorithm, since sha1 is no longer recommended.
Jim Pingle
02:06 PM Revision 741d748d: Correct some inconsistencies in keylen/csr_keylen. Should fix csr generation errors mentioned on ticket #2820
Jim Pingle
12:38 PM Bug #2786 (New): Setting MTU on VLAN does not set MTU on parent interface in 2.2
Renato Botelho
12:35 PM Bug #2758: Old configuration remains when changing interface type
This new version of the patch is working fine for all tests I've made here. Renato Botelho
12:14 PM Bug #2826 (Feedback): Status > Traffic Graphs gives javascript alert when changing interfaces.
Ermal Luçi
12:14 PM Bug #2826: Status > Traffic Graphs gives javascript alert when changing interfaces.
Should be fixed by latest commits.
Missed the ticket creation.
Ermal Luçi
11:18 AM Bug #2826 (Resolved): Status > Traffic Graphs gives javascript alert when changing interfaces.
Status > Traffic Graphs gives javascript alert when changing interfaces. Just says "Error 0 -- error".
See http://...
Jim Pingle
11:41 AM Revision 1fea5ad9: Get the correct interface subnet
Renato Botelho
10:17 AM Revision 30a90672: Merge pull request #426 from N0YB/Interfaces_Types_Config_Sections_Spacer_Row
Interfaces Types Config Sections Spacer Row rbgarga
06:56 AM Revision 1c4846e9: Interfaces Types Config Sections Spacer Row
Fix spacer (last) row display inconsistency
Missed one
N0YB
06:21 AM Bug #2822: Direction wrong in traffic graph (lan)
After investigation, i figured out the root cause of this issue. For LAN interface:
- pfSense_get_interface_stats(...
Renato Botelho
05:21 AM pfSense Packages Feature #2825 (Resolved): OpenBGPd: Add options prepend-neighbor and prepend-self
To be able to more properly control traffic flow, adding "prepend-neighbor" and "prepend-self" to the list of options... Andreas Bjorshammar

02/18/2013

11:14 PM Revision 79ea2726: Display right interface name on alias list when alias interface os CARP. Fixes #2824
Renato Botelho
10:51 PM Revision 9e696e9a: Merge pull request #425 from N0YB/Interfaces_Types_Config_Sections_Spacer_Row
Interfaces Types Config Sections Spacer Row rbgarga
10:50 PM Revision 672717cf: Merge pull request #423 from N0YB/Interfaces_Static_IP_Gateway_Add_New
Interfaces Static IP v4 & v6 Gateway Add New rbgarga
10:39 PM Bug #2820: Unable to generate CSR in 2.1BETA1
The change in comment #2 appears to get rid of "Please select a valid Digest Algorithm", but the error "Please select... Bruce Mah
07:50 AM Bug #2820 (Feedback): Unable to generate CSR in 2.1BETA1
Applied in changeset commit:24c0145c2cdb7eb8006020579c7c8b82f0108412. Jim Pingle
09:40 PM Revision a236affe: Interfaces Types Config Sections Spacer Row
Fix spacer (last) row display inconsistency N0YB
09:10 PM Revision 4021ec36: CARP IPs were being checked twice in some cases. Fixes #2823
Renato Botelho
07:23 PM Revision bd10508a: Interfaces Static IP v4 & v6 Gateway Add New
Fix mismatched table row tags N0YB
05:20 PM Bug #2824 (Feedback): IP alias VIP stacked on CARP VIP interface has a blank "Interface" column on VIP list
Applied in changeset commit:79ea2726b5c1c2a723e915a2d4d9cc983d216062. Renato Botelho
03:18 PM Bug #2824 (Resolved): IP alias VIP stacked on CARP VIP interface has a blank "Interface" column on VIP list
When you create an IP alias VIP and select a CARP VIP as its interface, it shows up properly on the VIP edit page, bu... Jim Pingle
03:19 PM Bug #2823 (Resolved): Unable to save changes on a CARP VIP
Works now, thanks! Jim Pingle
03:10 PM Bug #2823 (Feedback): Unable to save changes on a CARP VIP
Applied in changeset commit:4021ec36a9ce460b1501f42da8237d51bbedc611. Renato Botelho
01:46 PM Revision 24c0145c: Add Digest Algorithm option to the CSR screen, should fix #2820
Jim Pingle
11:47 AM Bug #2821: mobile ipsec problem since upgrade from pfsense 2.0.1 to 2.0.2
Same problem, on 2.0.2 no IPSec tunnel route added!
Oscar
Oscar Francia
06:46 AM Bug #2806: General setup: Error when changing system DNS Server
Just for the record - a typo in the function name was fixed by https://github.com/bsdperimeter/pfsense/commit/df40755... Phillip Davis
02:51 AM Revision 3e9c81b2: Merge pull request #422 from jean-m-cyr/master
Avoid Warning: Invalid argument supplied for foreach() in /etc/inc/system.inc Chris Buechler
02:21 AM Revision 34cb8645: Avoid Warning: Invalid argument supplied for foreach() in /etc/inc/system.inc
Warning: Invalid argument supplied for foreach() in /etc/inc/system.inc
Don't use captiveportal configuration option...
Jean Cyr

02/17/2013

11:27 PM Bug #2823 (Resolved): Unable to save changes on a CARP VIP
If I try to edit and save a CARP VIP, changing nothing, the GUI rejects the change.... Jim Pingle
02:34 PM Revision 5705c60a: Revert "Merge pull request #417 from miken32/cp-database-fix"
It breaks customizations, it's not a good time for such big change.
This reverts commit 40c7b1a98bfdc61261154adaac5f...
Renato Botelho
02:03 PM Revision 290296cd: Fix test for enabling upnp anchor. Unbreaks upnp for many.
Jim Pingle
11:43 AM Revision 2d7e9111: Merge pull request #419 from bcyrill/patch-6
Remove #2760 workaround rbgarga
11:42 AM Revision cae9d2ca: Merge pull request #418 from bcyrill/bogons_mem
Update bogons update routine rbgarga
11:25 AM Bug #2065: PHP Warning on Interface Creation (master/IPv6 branch)
I have found at least a workaround for my issue, patch is included.
In /usr/local/www/interfaces.php the code that...
Dwayne Voelker
09:41 AM Bug #2555: check_reload_status consumes 100% CPU usage
Amy Alvarez wrote:
> FYI this is still happening to me on 2.0.2 release.
I do have captive portal enabled, but I ...
Amy Alvarez
09:38 AM Bug #2555: check_reload_status consumes 100% CPU usage
FYI this is still happening to me on 2.0.2 release. Amy Alvarez
07:59 AM Bug #2451 (Resolved): IPv6 rule: 'add network' becomes 'add single host'
Renato Botelho
12:19 AM Bug #2451: IPv6 rule: 'add network' becomes 'add single host'
The latest change fixed my problem, thank you! Anonymous
07:58 AM Bug #2818 (Resolved): IPSec phase2 "Automatically ping host" function broken. Bug confirmed.
Renato Botelho
07:58 AM Bug #2806 (Closed): General setup: Error when changing system DNS Server
There is no call to is_validip() on entire system.inc Renato Botelho
07:52 AM Bug #2791 (Resolved): Validation glitch with gateways added from Interfaces > [Name]
Renato Botelho
07:52 AM Bug #2780 (New): CP: passthough has no effect
Renato Botelho
07:50 AM Bug #2719 (Resolved): Deleting IPsec tunnel does not remove SPDs
Renato Botelho
07:38 AM Bug #1823 (Resolved): policy routing for firewall-initiated traffic only works for interface IPs
Renato Botelho
07:37 AM Bug #1629 (New): invalid state table entries after WAN IP change
Renato Botelho
07:33 AM Feature #1010 (Closed): Privilege setting for allowing login access through captive portal
Renato Botelho
06:30 AM Bug #2822 (Resolved): Direction wrong in traffic graph (lan)
On my LAN graph I see outgoing traffic (downloads) +graphed+ ok (out), but +listed+ under Bandwidth +IN+
2.0.2-REL...
Danny Bogaards
12:34 AM Revision 9ffce6c1: Remove #2760 workaround
Since pfctl has been patched there is no need for the #2760 issue workaround anymore. Cyrill B

02/16/2013

08:01 PM Revision 507aa90a: Set (src|dst)mask to 128 for single IPv6 addresses. Fixes #2451
Renato Botelho
06:29 PM Revision eed8df6f: Only apply this test for radius servers.
Jim Pingle
03:55 PM Revision 923e440b: Fix #2818. Last change didn't work, it needs to be one more step out of the loop.
Renato Botelho
02:00 PM Bug #2451 (Feedback): IPv6 rule: 'add network' becomes 'add single host'
Applied in changeset commit:507aa90af48b14ffaab6664c708a3b03d723164c. Renato Botelho
12:45 AM Bug #2451 (New): IPv6 rule: 'add network' becomes 'add single host'
Jim Pingle
12:19 AM Bug #2451: IPv6 rule: 'add network' becomes 'add single host'
Maybe this change broke something, because I have created exactly the same rule on earlier snapshots without any prob... Anonymous
11:08 AM Bug #2818: IPSec phase2 "Automatically ping host" function broken. Bug confirmed.
Thanks for that Renato. :-)
//Dan
Dan Lundqvist
10:00 AM Bug #2818: IPSec phase2 "Automatically ping host" function broken. Bug confirmed.
Applied in changeset commit:923e440b75eda660a5cdbd102912fe53d61d1237. Renato Botelho
11:03 AM Bug #2821: mobile ipsec problem since upgrade from pfsense 2.0.1 to 2.0.2
Jim P wrote:
> Discuss/troubleshoot on the forum. It comes up often and is always a settings issue.
Hi Jim.
I ...
Dennis Neuhaeuser
11:00 AM Bug #2821 (Rejected): mobile ipsec problem since upgrade from pfsense 2.0.1 to 2.0.2
Discuss/troubleshoot on the forum. It comes up often and is always a settings issue. Jim Pingle
10:58 AM Bug #2821 (Rejected): mobile ipsec problem since upgrade from pfsense 2.0.1 to 2.0.2
since upgrade from 2.0.1 to 2.0.2 there is a problem with mobile ipsec connections:
the first client always connec...
Dennis Neuhaeuser
12:45 AM Bug #2627 (New): Old delegated prefixes are not removed from the LAN interface
Jim Pingle

02/15/2013

11:58 PM Bug #1943: PPPoE won't reconnect after link loss when using vr(4) NICs on certain ISPs only
here is the thread at mpd forum, doesnt seem like a mpd issue but some network drivers
http://sourceforge.net/proj...
Bipin Chandra
01:25 PM Bug #1943 (New): PPPoE won't reconnect after link loss when using vr(4) NICs on certain ISPs only
Renato Botelho
10:08 PM Revision 45bc16b9: Update bogons update routine
Cyrill B
08:57 PM Revision 83e18db5: Use our own git package and not the really old one from FreeBSD's ftp archive for 8.1
Jim Pingle
05:40 PM Revision 77901966: Restart snmpd on rc.newwanip. It should fix #2756
Renato Botelho
05:12 PM Bug #2818: IPSec phase2 "Automatically ping host" function broken. Bug confirmed.
I think I found the problem.
It needed to be even one more step out of the loop at the end of the foreach phase1 l...
Dan Lundqvist
05:00 PM Bug #2818: IPSec phase2 "Automatically ping host" function broken. Bug confirmed.
Or there is something wrong so it doesn't create an array even if it suppose to do it (the $ipsecpinghosts*[]* )
Or...
Dan Lundqvist
04:30 PM Bug #2818: IPSec phase2 "Automatically ping host" function broken. Bug confirmed.
*The correction does not work.*
The problem is that the $ipsecpinghosts is NOT treated as a table but rather as a si...
Dan Lundqvist
04:20 AM Bug #2818 (Feedback): IPSec phase2 "Automatically ping host" function broken. Bug confirmed.
Applied in changeset commit:fa77faffbf284ce5e89b9bd36963a747adbf1fed. Renato Botelho
01:06 AM Bug #2818: IPSec phase2 "Automatically ping host" function broken. Bug confirmed.
Updated to "2.1-BETA1 (i386) built on Thu Feb 14 16:27:05 EST 2013" and
tried to tried to clear / apply / reconfigu...
Dan Lundqvist
03:48 PM Bug #2065: PHP Warning on Interface Creation (master/IPv6 branch)
I have run into something very much like this (see http://forum.pfsense.org/index.php/topic,58966.0.html )
Trying ...
Dwayne Voelker
03:37 PM Bug #2820 (Resolved): Unable to generate CSR in 2.1BETA1
Please see this thread for info.
http://forum.pfsense.org/index.php?topic=58971
Brandon Jenkins
03:17 PM Revision c6e83f5e: Add php shell scripts to (en|dis)able carp.
Jim Pingle
01:37 PM Bug #1629: invalid state table entries after WAN IP change
To followup my previous post, I have verified that the WAN (em0) states are indeed flushed, however their correspondi... Dim Hatz
12:53 PM Bug #2756 (Feedback): SNMPD problems when binding pppoe interface
Renato Botelho
11:43 AM Bug #2756 (New): SNMPD problems when binding pppoe interface
This last change should fix the issue, please gitsync it or update to the next released snapshot, back snmp Bind Inte... Renato Botelho
11:40 AM Bug #2756 (Feedback): SNMPD problems when binding pppoe interface
Applied in changeset commit:7790196644a3cc38cc2ec7d0df01f164479b43be. Renato Botelho
11:33 AM Bug #2756 (New): SNMPD problems when binding pppoe interface
The problem is when snmpd starts the interface doesn't have the IP address set yet. And when it reconnect it crashes ... Renato Botelho
11:26 AM Bug #2756: SNMPD problems when binding pppoe interface
very nice! i tested it right now
after a reconnect the snmp stoped working
then i bind it to all interfaces an...
Claudius Badmind
11:11 AM Bug #2756: SNMPD problems when binding pppoe interface
Could you please change "Bind Interface" to All to see if the error persists? Renato Botelho
12:40 PM Bug #2819: Unconstrained memory growth of tcpdump
Hi Jim, I agree there must be something else happening. I'm happy to Guinea pig my home pfSense router, which exh... Irving Popovetsky
12:10 PM Bug #2819: Unconstrained memory growth of tcpdump
I thought there was already an open ticket for this here on redmine but I don't see it now.
That is for the filter...
Jim Pingle
12:06 PM Bug #2819 (Resolved): Unconstrained memory growth of tcpdump
The following process seems to grow in an unconstrained fashion:... Irving Popovetsky
11:12 AM Bug #2655 (Resolved): RRD Graphs for Captive Portal not working
Confirmed on forum it's now working. Renato Botelho
10:51 AM Revision 508799c3: Remove invallid option 'none' for IPSec Phase 2. Fixes #2816
Renato Botelho
10:38 AM Todo #2817 (New): Back Unbound changes out of 2.1, revert to a package for now.
Looks like the code needs adjusted to account for PBI changes on 2.1.
http://forum.pfsense.org/index.php?topic=588...
Jim Pingle
01:20 AM Todo #2817: Back Unbound changes out of 2.1, revert to a package for now.
The unbound package installs fine, but no binaries are installed:... Anonymous
10:20 AM Revision fa77faff: Fix #2818. Save information about all phase1 on ipsecpinghosts instead of only the last one
Renato Botelho
10:12 AM Revision 71034b51: Treat openvpn tunnel IPs as local IPs and prevent warning on login page when acessing it using tun IP address. Fixes #1681
Renato Botelho
09:35 AM Revision 40c7b1a9: Merge pull request #417 from miken32/cp-database-fix
Use associative array for captive portal database rbgarga
07:54 AM Bug #2794 (Resolved): PHP Error on NTP
Jim Pingle
07:49 AM Bug #2794: PHP Error on NTP
This is resolved - tested in last night's snapshot. Phil Lavin
07:45 AM Bug #2349 (Resolved): vlan(4) needs altq adaption on FreeBSD 8.3++
Renato Botelho
07:21 AM Bug #2349: vlan(4) needs altq adaption on FreeBSD 8.3++
Upgraded last night - the wizard completed correctly without errors. Nice work :) Phil Lavin
07:43 AM Bug #2786 (Feedback): Setting MTU on VLAN does not set MTU on parent interface in 2.2
I did an attempt to implement a fix, please review and let me know if it's ok. Renato Botelho
07:16 AM Revision d896f867: Merge pull request #236 from miken32/nas_accounting
NAS accounting Warren Baker
06:06 AM Revision f1ab195e: self-explanatory now, no comments needed
Michael Newton
06:01 AM Revision 00109fef: while we're here, send named termination causes
Michael Newton
05:14 AM Revision 91ca7e9f: use associative array for captive portal to prevent confusion, messiness, and abuse
Michael Newton
04:50 AM Bug #2816 (Feedback): "none" is not a valid local P2 setting
Applied in changeset commit:508799c3794a9febb9e4abf7167171aa195e77d0. Renato Botelho
04:20 AM Bug #1681 (Feedback): OpenVPN tun IPs fail HTTP REFERER checks
Applied in changeset commit:71034b51ff8831b43cf70c6f26955e6e6bdee5ca. Renato Botelho
12:30 AM pfSense Packages Bug #2698: freeradius2 counter not working
Guys, sorry, yes the patch fix the issue, thanks!!!
http://forum.pfsense.org/index.php/topic,57303.0/all.html
Peter Moreno
12:11 AM Revision e35ab948: only send Accounting-On at boot; can't tell if CP's being newly enabled or not
Michael Newton

02/14/2013

11:26 PM Revision cf2859f3: whitespace fixes
Michael Newton
11:19 PM Revision 62f20eab: add support for RADIUS NAS accounting, fixes redmine feature request 2143
Michael Newton
06:20 PM Bug #2818 (Resolved): IPSec phase2 "Automatically ping host" function broken. Bug confirmed.
Tested on: 2.1-BETA1 (i386) built on Sun Feb 10 22:04:57 EST 2013
plus small manual correction from gitsync regard...
Dan Lundqvist
06:09 PM Revision 2ccc41c1: Add privileges to CP 'Allowed hostnames' and fix a typo on edit IPs
Warren Baker
05:59 PM Revision 120404e0: Keep Unbound here for syslog messages
Warren Baker
05:50 PM Revision 950c9a18: Backout Unbound for now bring back in 2.2. Fixes #2817
Warren Baker
03:49 PM Bug #355: syslog should not bind on *
Mh, I was googling for the wrong keywords (focusing on binding syslogd to a specific interface/address)...
Thanks f...
Michele Di Maria
02:19 PM Bug #355: syslog should not bind on *
That has been documented for quite some time on the doc wiki:
http://doc.pfsense.org/index.php/Why_can%27t_I_query_S...
Jim Pingle
02:15 PM Bug #355: syslog should not bind on *
Wow, yes. I just created a fake gateway using the local interface IP address (which is a bridge interface), and a sta... Michele Di Maria
01:59 PM Bug #355: syslog should not bind on *
It depends on the type of VPN. With OpenVPN it works fine, it just sources the syslog traffic from the tunnel interfa... Jim Pingle
01:56 PM Bug #355: syslog should not bind on *
Another issue related to this task is logging to a remote syslog server, where remote I mean to the other side of a P... Michele Di Maria
03:07 PM Bug #2349: vlan(4) needs altq adaption on FreeBSD 8.3++
Its for all vlans not specific to any driver. Ermal Luçi
07:50 AM Bug #2349: vlan(4) needs altq adaption on FreeBSD 8.3++
Can anyone speculate on if this will fix the same error with sk1_vlan1 or if the fix was only applicable to em* inter... Phil Lavin
12:18 PM Revision 03e96afb: Set $interfacegw properly and avoid losing default route in some circumstances
Renato Botelho
11:50 AM Todo #2817 (Feedback): Back Unbound changes out of 2.1, revert to a package for now.
Applied in changeset commit:950c9a182eaacfbb6c48a6371affe7852ffb13ba. Warren Baker
11:41 AM Todo #2817 (Resolved): Back Unbound changes out of 2.1, revert to a package for now.
Unbound needs to be backed out of 2.1 and changed back into a package for now.
We can try integration again for 2.2.
Jim Pingle
11:42 AM Revision 8878f4bb: Fix rrd display when captive portal is enabled
Renato Botelho
10:56 AM Bug #2627: Old delegated prefixes are not removed from the LAN interface
I am using the build below:... Anonymous
10:25 AM Revision 80feb8e5: Set global $g to use right theme
Renato Botelho
08:41 AM Bug #2812: Adding a one way phase 2 IPSec tunnel causes a config error
Ok, from my understanding of IPSec, I thought that was the case... but then I finally had a scenario where I thought ... William Hilsum
08:37 AM Bug #2812 (Rejected): Adding a one way phase 2 IPSec tunnel causes a config error
there is no such thing as a "one way" P2, the fact that "none" exists there is the actual problem. Your config isn't ... Chris Buechler
07:05 AM Bug #2812: Adding a one way phase 2 IPSec tunnel causes a config error
Please find it attached - first section is working phase 1, second is working phase 2, third is the faulty one way ph... William Hilsum
08:36 AM Bug #2816 (Resolved): "none" is not a valid local P2 setting
"none" recently started showing up in the "local network" field for IPsec P2s, which is invalid and needs to be remov... Chris Buechler
07:46 AM Revision 1e5da31d: Also do checks for ipv6 on is_ipaddr_configured
Ermal LUÇI
07:39 AM Revision d97741c2: Check for the right function name since the previous was present in util.inc not interfaces.inc
Ermal LUÇI
04:15 AM Bug #2362: Deleting last/only port forward doesn't remove from secondary
I don't believe option should be removed since it is still valid for rules from Master you don't want to sync.
- R...
Renato Botelho
02:02 AM Bug #2362: Deleting last/only port forward doesn't remove from secondary
If those seciton need to be synched no matter what than its better to remove the options completely from the filter s... Ermal Luçi
02:00 AM Feature #1979: Allow user-defined rules to utilize built-in system aliases
IIrc you already can use the names of a port in /etc/services wherever a port is asked.
So instead of typing 80 you...
Ermal Luçi

02/13/2013

11:50 PM Revision 965c3e23: Deal correct with bitmask for ipv6 on destination, same we did for src. If fixes #2451
Renato Botelho
11:00 PM Revision f1a831b8: Restore require_once(interfaces.inc) on get_configured_ip_addresses(), it's required by get_interface_ip()
Renato Botelho
10:54 PM Feature #1668 (Closed): OpenVPN Client Export support Tunnelblick
Just tested this and the current beta (didn't test the release) imported an "Other" type Inline config without any fu... Jim Pingle
10:40 PM Revision a1e4e2a7: Two interfaces, carp, ip aliases might be on the same subnet as their parent. What needs to be checked is the ip itself
Ermal LUÇI
10:08 PM Revision 72f25519: Refine the test for Ticket #2451 to check for aliases as well
Ermal LUÇI
09:58 PM Revision c7ada974: Remove dead code
Ermal LUÇI
09:58 PM Revision 1b584e3f: During bootup do not try to resolve hostnames filterdns will handle those
Ermal LUÇI
08:55 PM Revision bddd2be8: Add a knob in the GUI to set the RADIUS authentication timeout. Previous default was 3s, new is 5s. When using two-factor auth via external (e.g. phone), this needs to be set much higher, 60-120.
Jim Pingle
08:31 PM Revision bcb165e6: Merge pull request #416 from bcyrill/dyndns_p1
Update dyndns service and widget Jim Pingle
08:17 PM Revision ab4ce295: Update dyndns service and widget
Cyrill B
07:49 PM Revision 11b26a27: unset var so the test works correctly
Ermal LUÇI
07:30 PM Revision 30b32e73: Merge pull request #415 from bcyrill/patch-3
Add additional dyndns hosts to widget Jim Pingle
07:21 PM Revision f1c6cac8: Add additional dyndns hosts to widget
In 2.1 support for HE.net Tunnelbroker, SelfHost, Route 53 and Custom entries has been added. Cyrill B
07:19 PM Revision 72711980: Warn users that nosync option won't prevent it to be overwritten on carp slave members
Renato Botelho
07:19 PM Revision a1fb7d61: Fully sync filter and nat sections. Fixes #2362
Renato Botelho
06:56 PM Revision 837a3536: Properly configure allowed hostnames
Ermal LUÇI
06:49 PM Revision 13e64b47: Remove interfaces that have been unselected from CP config properly
Ermal LUÇI
06:30 PM Revision e6d5af4b: Call rc.firmware for propper platform during manual upgrade
Ermal LUÇI
06:19 PM Revision 22ef0a3d: mwexec_bg() already uses nohup
Ermal LUÇI
06:19 PM Revision 77daff18: Use full path to nohup
Ermal LUÇI
06:19 PM Revision fba1804f: Assign the output of exec to a var to avoid any issues
Ermal LUÇI
05:50 PM Bug #2451 (Feedback): IPv6 rule: 'add network' becomes 'add single host'
Applied in changeset commit:965c3e23a60f25d263389bf02b685bb7f20f3915. Renato Botelho
05:31 PM Bug #2451: IPv6 rule: 'add network' becomes 'add single host'
OK it works correctly in the source box, but not the destination box. Jim Pingle
05:00 PM Bug #2451: IPv6 rule: 'add network' becomes 'add single host'
I couldn't reproduce it here. When I back to edit rule it's set as network and bitmask 32. Renato Botelho
03:31 PM Bug #2451 (New): IPv6 rule: 'add network' becomes 'add single host'
It's partially fixed but not 100%
If I enter 2a00:1450:: in a firewall rule as a network with a mask of /32 (which...
Jim Pingle
07:10 AM Bug #2451 (Feedback): IPv6 rule: 'add network' becomes 'add single host'
Applied in changeset commit:cb2b59b89b4d7fb6449c0f45d142302dd2029373. Renato Botelho
05:34 PM Revision 87613be4: Merge pull request #414 from phil-davis/master
Correct filename for dyndns widget cached ip Jim Pingle
05:32 PM Bug #1629: invalid state table entries after WAN IP change
Ermal, testing this feature on a pfsense box with a WAN interface that gets via DHCP an IP in a /24 subnet (i.e. it's... Dim Hatz
09:58 AM Bug #1629: invalid state table entries after WAN IP change
Thanks, it works with my VoIP device now. The states get killed correctly. Anonymous
05:26 PM Revision 3d72df58: Correct filename for dyndns widget cached ip
Phil Davis
03:26 PM pfSense Packages Feature #2736 (Resolved): Additional configuration options for SMTP, POP3 and IMAP Pre-Processors in snort.conf
Jim Pingle
03:19 PM pfSense Packages Feature #2736: Additional configuration options for SMTP, POP3 and IMAP Pre-Processors in snort.conf
This can be closed. These were incorporated in the other changes included in subsequent Pull Requests via Github. Bill Meeks
03:26 PM pfSense Packages Feature #2735 (Resolved): Improvement to Snort Rules Update Process
ok, thanks again! Jim Pingle
03:20 PM pfSense Packages Feature #2735: Improvement to Snort Rules Update Process
Yep. These, too, were part of the larger set of PulL Requests done in late Janaury and early February. This reqest ... Bill Meeks
02:49 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
I will wait for the updated snapshot. In the meantime I went on to disable the DHCPv6 client on the WAN interface (IP... Anonymous
02:19 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Can you gitsync and try again, or wait for the next new snap? It may be that the last snap doesn't have the changes i... Jim Pingle
02:17 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Running this build:
2.1-BETA1 (amd64)
built on Tue Feb 12 10:20:45 EST 2013
FreeBSD 8.3-RELEASE-p5
Whenever the WAN ...
Anonymous
01:20 PM Bug #2362 (Feedback): Deleting last/only port forward doesn't remove from secondary
Applied in changeset commit:a1fb7d61c4be90e6b6fcbc44fd644677cb0761e4. Renato Botelho
09:43 AM Bug #2362: Deleting last/only port forward doesn't remove from secondary
Same happens for last/only filter rule. I'm working on a solution. Renato Botelho
01:06 PM Revision cb2b59b8: Deal correct with /32 subnet mask for ipv6 addresses. If fixes #2451
Renato Botelho
12:31 PM Revision 96ccd009: Fix indent and whitespaces
Renato Botelho
08:36 AM Feature #1979: Allow user-defined rules to utilize built-in system aliases
Not sure we'd need much in the way of port aliases. We already have a ton of ports in the drop-down list on firewall ... Jim Pingle
08:26 AM Feature #1979: Allow user-defined rules to utilize built-in system aliases
as with anything else - when someone's willing to pay for it, or someone does it and submits a merge request. Chris Buechler
08:21 AM Feature #1979: Allow user-defined rules to utilize built-in system aliases
I'd like to push things a bit since this would really help a lot.
Jim P wrote:
> Some ideas:
> * Local Networks
...
JD -
08:23 AM Bug #2756: SNMPD problems when binding pppoe interface
I figured out that every time my ISP reconnect me snmpd stop working that's why it wont start from the beginning also... Claudius Badmind
07:44 AM Revision 2e267635: Merge pull request #413 from stan-qaz/master
Dynamic DNS status widget for use on the Status Dashboard Ermal Luçi
07:14 AM Revision 81fe3f5e: Make a Dynamic DNS status widget available for use on the Status Dashboard page. See forum toipic: http://forum.pfsense.org/index.php/topic,58278.msg312146.html#msg312146 for the discussion on this.
Stanley P. Miller
06:34 AM Feature #2815: Anonymizing the config during export on the backup page
We already do that for the copy included on /status.php, though the function needs updated since it needs to also cle... Jim Pingle
01:48 AM Feature #2815 (Resolved): Anonymizing the config during export on the backup page
It would be nice to be able to scramble sensitive data of the config of a box to easy the process for reporting issue... Ermal Luçi
03:27 AM Feature #1883: Diag > Limiter Info presentation enhancement
probably not Chris Buechler
02:24 AM Revision 16634530: Merge pull request #412 from phil-davis/master
Say goodbye to routed at bootup Chris Buechler
02:19 AM Revision 78514535: Say goodbye to routed at bootup
Now that routed/RIP has been removed from the base system, it generates errors trying to start it in the base system ... Phil Davis
01:32 AM Bug #2675 (Feedback): /tmp/.rc.prunecaptiveportal.running can be present on boot
Patch has been pushed that corrects this by ignoring alock if it has been created for more than 2 minutes(2 runs of p... Ermal Luçi

02/12/2013

11:47 PM Bug #2636: state mismatch issue on enc0 with amd64
on the one system of ours that was having this issue, it's better than it used to be (it used to be impossible to com... Chris Buechler
10:38 AM Bug #2636: state mismatch issue on enc0 with amd64
By any chance you have net.inet.ipsec.filtertunnel set to something grater than 0? Ermal Luçi
09:56 PM Revision 1d2add88: Fix page name. Fixes #2813
Jim Pingle
09:49 PM Revision d5a2c099: Merge pull request #411 from bcyrill/patch-2
Remove duplicate $ipsecpinghosts variable Jim Pingle
09:22 PM Revision d6d775a6: Fix page name. Fixes #2640
Jim Pingle
09:03 PM Revision a0ad97f2: Remove redundant variable
Cyrill B
08:35 PM Revision f5b89c39: Merge pull request #410 from bcyrill/patch-1
Update etc/inc/services.inc Jim Pingle
08:28 PM Revision f8edf05d: Fix these tests, they will never succeed the way we set these variables using the old test. Fixes #1987
Jim Pingle
08:24 PM Revision 60214e06: Update etc/inc/services.inc
Fix path to chmod Cyrill B
08:18 PM Revision 100f3e71: Resolves #1284. Merge patch submitted a bit differentely
Ermal LUÇI
07:52 PM Revision 60754bef: Merge pull request #409 from miken32/nas-identifier
add input validation for NAS-Identifier Ermal Luçi
07:17 PM Revision 89b1c40c: add input validation for NAS-Identifier
Michael Newton
07:15 PM Bug #2362: Deleting last/only port forward doesn't remove from secondary
Yeah it does as of Friday's snapshot at least. Chris Buechler
02:57 PM Bug #2362: Deleting last/only port forward doesn't remove from secondary
Does this still happen on 2.1? I thought I fixed all of these not too long ago. Jim Pingle
07:01 PM Revision bde982dd: Declare $config as global before interactive PHP shell command evaluation. Fixes #808
Jim Pingle
06:27 PM Todo #2814 (Closed): OpenVPN push route hint on configuration page is misleading
we can't document everything in the web interface, that's just an example of one of hundreds of potential options the... Chris Buechler
06:14 PM Todo #2814 (Closed): OpenVPN push route hint on configuration page is misleading
On the OpenVPN server configuration page it says:... Nei Ka
05:27 PM Revision eac52376: Do the syslogd restart unconditionally. It happens on IPv4 as well as IPv6. See http://forum.pfsense.org/index.php/topic,58345.0.html
Jim Pingle
05:18 PM Bug #1823: policy routing for firewall-initiated traffic only works for interface IPs
I already know the answer after thinking about it. Only if the hidden rule used match would the route-to stack onto ... Adam Gibson
03:31 PM Bug #1823: policy routing for firewall-initiated traffic only works for interface IPs
As an update. The out rule in floating that I listed does disable the hidden route to.route-to.
I found the mista...
Adam Gibson
03:26 PM Bug #1823: policy routing for firewall-initiated traffic only works for interface IPs
Strange. I am seeing inconsistency with this or I am going crazy and making a bunch of mistakes testing this (I am s... Adam Gibson
03:22 PM Bug #1823: policy routing for firewall-initiated traffic only works for interface IPs

!!!! Hold up... !!!!
The above rule did cancel the route-to it seems. Sorry about that, I messed up the test. ...
Adam Gibson
03:14 PM Bug #1823: policy routing for firewall-initiated traffic only works for interface IPs
I didn't think it was possible to override it. I just tested it and could not override it.
You can not create an ...
Adam Gibson
04:38 PM Revision ad885a63: Remove RIP from menu
Renato Botelho
04:00 PM Bug #2813: Diagnostics: S.M.A.R.T. Monitor Tools
Applied in changeset commit:1d2add88f4222b04708a1a1af38567ab197a460a. Jim Pingle
03:46 PM Bug #2813 (Feedback): Diagnostics: S.M.A.R.T. Monitor Tools
Fixed by commit:d6d775a6b51fedc4044497ca9af526a31df6d687 Jim Pingle
02:49 PM Bug #2813 (Resolved): Diagnostics: S.M.A.R.T. Monitor Tools
diag_smart.php
Perform Self Tests
Click abort
directs to smartmon.php
which is 404 - Not Found
W FM
03:45 PM Feature #2640: Add a way to find where an alias is used
That commit ID was for another ticket (sorry) Jim Pingle
03:30 PM Feature #2640: Add a way to find where an alias is used
I agree there is a workaround, but it would be very nice to have it in the GUI. This saves a lot of time when I'm on... Ugo Bellavance
03:30 PM Feature #2640 (Feedback): Add a way to find where an alias is used
Applied in changeset commit:d6d775a6b51fedc4044497ca9af526a31df6d687. Jim Pingle
03:18 PM Feature #2640: Add a way to find where an alias is used
Easier way: download a config backup and grep/search it.
Not sure how feasible this would be in the GUI, given the...
Jim Pingle
03:44 PM Bug #2752 (Feedback): Captive Portal Last Activity isn't update anymore --> idle timeout just after login
Please try a 2.0.3 image, this appears to be one of the bugs addressed there:
http://forum.pfsense.org/index.php/top...
Jim Pingle
03:43 PM Feature #2757 (New): CDP/ISDP/LLDP support.
Whoops, added that note to the wrong ticket. Jim Pingle
03:37 PM Feature #2757 (Closed): CDP/ISDP/LLDP support.
Please try a 2.0.3 image, this appears to be one of the bugs addressed there:
http://forum.pfsense.org/index.php/top...
Jim Pingle
03:42 PM Bug #2812: Adding a one way phase 2 IPSec tunnel causes a config error
Attach your /var/etc/racoon.conf (or /var/etc/ipsec/racoon.conf on 2.1 ) and the ipsec section of your config.xml wit... Jim Pingle
09:14 AM Bug #2812 (Rejected): Adding a one way phase 2 IPSec tunnel causes a config error
Hi
I have a current IPSec tunnel that is working great.
I tried to add a second and third that is one way (loca...
William Hilsum
03:40 PM Feature #2801 (Rejected): Display (all) PHP logs in the Web UI
On 2.1 (where development is typically done) these do show on the dashboard as a crash report, so they can be viewed ... Jim Pingle
03:36 PM Bug #2754: PPP and 3G: Setting PIN in advanced options not working, stick works after removing SIM PIN
Might be the same issue as #781 Jim Pingle
03:35 PM Bug #2748 (Feedback): Route53 DynDNS Updater does not work
Will need a lot more detail. Any log messages from the system log for starters.
The route53 code was contributed, ...
Jim Pingle
03:33 PM pfSense Packages Feature #2736 (Feedback): Additional configuration options for SMTP, POP3 and IMAP Pre-Processors in snort.conf
Have these changes already been merged in by pull requests? Jim Pingle
03:33 PM pfSense Packages Feature #2735 (Feedback): Improvement to Snort Rules Update Process
Have these changes already been merged in by pull requests? They look familiar. Jim Pingle
03:27 PM pfSense Packages Bug #2698 (Feedback): freeradius2 counter not working
Jim Pingle
03:26 PM pfSense Packages Bug #2681 (Closed): Squid 3 in pfsense 2.1 Beta
Jim Pingle
03:24 PM Bug #2680 (Rejected): PHP Fatal error in /tmp/PHP_errors.log
Without more detail and no other reports, this is not likely legitimate. Jim Pingle
03:16 PM Bug #2627 (Feedback): Old delegated prefixes are not removed from the LAN interface
Can you try this again on a recent 2.1 snapshot? Several changes to prefix delegation have happened recently. Jim Pingle
03:14 PM Feature #2609: Support for ActiveDNS
Can you submit those changes as a github pull request please?
https://help.github.com/articles/using-pull-requests
...
Jim Pingle
03:09 PM Bug #2578: Upgrade 1.2.3 to 2.0 CARP
Do you happen to have a copy of your config from before and after this upgrade to compare? You can e-mail it in if yo... Jim Pingle
03:07 PM Bug #2570 (Closed): Status: Interfaces - Fatal error: Call to undefined function filter_configure()
Jim Pingle
03:07 PM Bug #2550 (Rejected): Cannot delete limiters...
Duplicate of 2482 Jim Pingle
03:06 PM Feature #2523: Prompt for confirmation before upgrading to different architecture
Not that it's specifically addressing the need for a prompt, but I recently made the manifest drop-down bold the choi... Jim Pingle
03:05 PM Bug #2451: IPv6 rule: 'add network' becomes 'add single host'
This is probably due to an old check for the CIDR being /32 meaning single IP, but that test should not be applied on... Jim Pingle
03:03 PM Bug #2432 (Closed): OpenVPN Client Specific Override ifconfig-push
Jim Pingle
02:56 PM Bug #2374 (Feedback): When entering values in firewall rules leading and trailing spaces are not deleted
Fixed by commit on this ticket but not marked as fixed. Jim Pingle
02:53 PM Bug #2307 (Closed): OpenNTP fails to update time at bootup
We have switched to the ntp.org daemon now, this is no longer relevant. Jim Pingle
02:52 PM Bug #2297 (Closed): Inbound NAT on secondary WAN Interface when Primary Interface has no carrier
Probably this is due to the lack of a default gateway. Enable gateway switching under System > Advanced on the Misc t... Jim Pingle
02:45 PM Bug #2288 (Closed): Traffic Graph slows network processing
That's just a side effect of using the GUI. The more things that are open and checking in the GUI, the more resources... Jim Pingle
02:43 PM Feature #1933: Support for interface groups in NAT screens
You would have to split the user rule(s) with respective reply-to. Ermal Luçi
02:05 PM Feature #1933: Support for interface groups in NAT screens
Outbound NAT might be feasible but for port forwards this could be problematic as the group rules wouldn't get reply-... Jim Pingle
02:43 PM pfSense Packages Bug #2256 (Feedback): FreeRadius not starting
Many changes to the package since then, is this still a problem? Jim Pingle
02:36 PM Bug #2166 (Feedback): Dynamic DNS not updating
Can this still be reproduced on 2.1? Jim Pingle
02:34 PM Feature #2083 (Closed): Auth : LDAP users and group object.
Should be fixed by the "Extended Query" box in 2.1 Jim Pingle
02:31 PM Bug #2056 (Feedback): Display error in captive portal admin screen
Does this still happen on 2.1? I see a few possibly related commits that may have fixed this. Jim Pingle
02:30 PM Bug #1987 (Feedback): GRE tunnel - Route search type
Applied in changeset pfsense:commit:f8edf05d872f8887b891f15b48aa694a94ed2f9e. Jim Pingle
02:27 PM Feature #2003 (Closed): Allow Aliases in routing
Added a while ago. In at least 2.1. Jim Pingle
02:26 PM pfSense Packages Bug #2002 (Closed): snort
Jim Pingle
02:20 PM Bug #1284 (Feedback): Syslog does not work with CLOG disabled
Applied in changeset commit:100f3e7191a0c720857316c4ba0cac0890fe8177. Ermal Luçi
02:17 PM Bug #1981 (Closed): lighttpd errorlog using text rather than clog format
Lighty logs to syslog now, so this isn't relevant any longer. Jim Pingle
02:15 PM Bug #1969 (Feedback): IPsec refuses connection after first Cisco Client connection
Worth trying again on a recent 2.1, and keep the recent edits to the recommending settings for mobile IPsec in mind f... Jim Pingle
02:13 PM Bug #1959 (Feedback): openssl does not accept ECC-certificates
On 2.1 we use OpenSSL 1.0.1e (or later) so it's worth trying again there. Jim Pingle
02:05 PM Bug #1915: LDAP "authentication containers" select button is inoperative.
This works, at least on 2.1 and recent 2.0.x's. It displays for me, and I've used it with customers recently as well. Jim Pingle
02:03 PM Bug #1909 (Feedback): dhcp dies after reboot
There was some work to solve a similar issue with ordering and aliases on 2.1 recently, worth trying there, it's like... Jim Pingle
02:02 PM pfSense Packages Bug #1908 (Closed): Vnstat
Jim Pingle
02:01 PM pfSense Packages Bug #1907 (Closed): snort
Jim Pingle
01:58 PM Feature #1878 (Closed): Option to add permanent ARP entries for WOL
There is a per-mapping static ARP option for DHCP entries now, which should fill this need. Jim Pingle
01:57 PM Bug #1861 (Closed): false log filterdns: host_dns: failed looking up "88.192.1250.131"
This has been cleaned up a bit since then but some is expected behavior. Anything that's supposed to be an IP but isn... Jim Pingle
01:54 PM Feature #1855 (Feedback): NAT before IPsec VPN
This has been done on 2.1 for a couple months now and confirmed to be working there. Jim Pingle
01:53 PM pfSense Packages Bug #1852 (Closed): Snort and IP-Block Installation/Deintsallation issue
As Chris said, it will be OK on 2.1. No easy fix until then. Jim Pingle
01:51 PM pfSense Packages Bug #1822 (Closed): Snort won't start
Jim Pingle
01:49 PM Bug #1739 (Closed): Interface problem
Fixed at some point, the key length is retained now even when input validation gives errors. Jim Pingle
01:47 PM Bug #1722 (Closed): Associated filter rule retains original Interface option after copying a NAT rule
This was fixed a while back, I've done this recently and it works. Jim Pingle
01:45 PM Revision d94eb904: Preselect interface subnet mask for carp interfaces
Renato Botelho
01:45 PM Bug #1691 (Closed): Virtio driver not working
virtio was fixed up a while ago, check the forum/wiki for info. Jim Pingle
01:43 PM Bug #1686 (Closed): guiconfig.inc GetText logical bug
Appears to have been fixed. Jim Pingle
01:43 PM Bug #1681: OpenVPN tun IPs fail HTTP REFERER checks
This gets annoying when trying to help customers fix up broken OpenVPN routing, we should fix this sooner rather than... Jim Pingle
01:40 PM pfSense Packages Bug #1651 (Closed): Removing Squidgard removes squid
Should be better on 2.1 Jim Pingle
01:36 PM Bug #1375 (Closed): Captive portal logs: mixed with logs from other sources (squid, php)
Logs changed a lot since then, it's likely been fixed. Can reopen if a new report on 2.1 surfaces. Jim Pingle
01:36 PM Bug #1414 (Closed): dhclient fail on wifi
Replaced by #2440 (better info there) Jim Pingle
01:33 PM pfSense Packages Todo #1551: OLSR Version update
Moving back to packages since this is no longer built in. Jim Pingle
01:29 PM Bug #1332 (Closed): Autoupdate erases line in /etc/sysctl.conf which was created by LiveCD
Important tunables like that are in the GUI now, not sysctl.conf Jim Pingle
01:25 PM pfSense Packages Bug #1315 (Closed): ERROR 404 on packages area upper-left logo of psense.
Fixed long ago Jim Pingle
01:24 PM pfSense Packages Bug #1301 (Closed): Squid package become unusable through time if we use large disk cache
Package was changed long ago to not do chown on the cache any longer. Jim Pingle
01:23 PM Bug #1290 (Closed): IPsec roadwarrior use case: Traffic from LAN does not hit established tunnel
Sounds like one of the other IPsec mobile bugs that was fixed long ago (check other tickets). Jim Pingle
01:22 PM Feature #1286 (Closed): Captive Portal sends WAN IP instead of Mac or custom string in "called-station-id" RADIUS attribute
Captive Portal gained this feature some time ago. Jim Pingle
01:17 PM pfSense Packages Bug #1272 (Closed): AXFR Zone transfers not working in v2 Beta5
Jim Pingle
01:16 PM pfSense Packages Bug #1245 (Closed): barnyard2 won't start
Jim Pingle
01:16 PM Bug #1226 (Closed): Possible DOS in CARP synchronization
This has, in all likelihood, been fixed since then. The behavior would at least have changed on 2.1 after the recent ... Jim Pingle
01:13 PM pfSense Packages Bug #1200 (Closed): Navigational link in Shellcmd package broken
Fixed long ago Jim Pingle
01:13 PM pfSense Packages Bug #1199 (Closed): Navigational link in Backup package broken
Fixed long ago. Jim Pingle
01:09 PM pfSense Packages Bug #1163 (Rejected): Squid not restart in widget
Jim Pingle
01:02 PM Feature #983: Improve/Enhance IP Alias VIP handling in GUI
They are included in automatic outbound NAT now, but not the interface macro. Jim Pingle
01:00 PM Bug #808 (Feedback): PHP Shell - $config doesn't work but $GLOBALS["config"] does.
Applied in changeset commit:bde982dd5aad41254273300676d1d5c2ecf367c3. Jim Pingle
12:53 PM pfSense Packages Bug #679 (Closed): HAVP error message shows up behind top menu.
Jim Pingle
12:50 PM Revision e9389ae8: Remove RIP since it's a package again. See ticket #648
Renato Botelho
12:49 PM Bug #415 (Closed): DNS forwarder domain override add doesn't restart dnsmasq
Fixed long ago on 2.x Jim Pingle
12:47 PM pfSense Packages Bug #310 (Closed): Nut needs changes for latest version
This was fixed up a while ago. Jim Pingle
12:46 PM Feature #264 (Closed): More flexible DHCP - Static ARP
On 2.1, DHCP static mappings now have a checkbox to setup a static arp entry for that IP. Should be close enough to t... Jim Pingle
12:45 PM Feature #2319: include SSD TRIM option in installer
This can now be set manually after the install on 2.1.
touch /root/TRIM_set; /etc/rc.reboot
to remove
touch ...
Jim Pingle
12:44 PM Bug #23 (Closed): Links broken on sub-folders due to relative paths
We have been prefixing the paths with / for a while now on 2.1 (and earlier?) Jim Pingle
12:43 PM Feature #197 (Closed): [PATCH] dns service: alias option for DNS forwarder
An alias feature was implemented a while back on 2.1 Jim Pingle
12:36 PM Feature #1883: Diag > Limiter Info presentation enhancement
Should we give this a target for 2.1? Jim Pingle
12:11 PM Bug #2756: SNMPD problems when binding pppoe interface
hmm its hard to test it on another machine i will do a complete new install of the system next week and i try to inst... Claudius Badmind
12:04 PM Bug #2756: SNMPD problems when binding pppoe interface
It seems to be a local issue instead of a bug on pfSense since there are no other users reporting the same issue and ... Renato Botelho
12:06 PM Bug #2790 (Resolved): Gateways widget broken for IPv6
Renato Botelho
12:01 PM Revision 096f2962: Ticket #1629 Another round of fixes related to state clearing
Ermal LUÇI
11:47 AM Todo #648 (Closed): Move "base" packages such as RIP, OLSR, etc, back into packages
Renato Botelho
06:53 AM Todo #648 (Feedback): Move "base" packages such as RIP, OLSR, etc, back into packages
Renato Botelho
11:47 AM Bug #2810 (Resolved): Move RIP back to a package
Renato Botelho
06:50 AM Bug #2810 (Feedback): Move RIP back to a package
Applied in changeset pfsense-packages:commit:849ae9e3bd2877bfb784b88b10d41dc772127f2a. Renato Botelho
06:45 AM Bug #2810 (Resolved): Move RIP back to a package
RIP needs to be moved back to a package Renato Botelho
11:26 AM Revision 443c2822: Fix indent and whitespaces
Renato Botelho
11:07 AM Revision 8184a8dd: Check if file exists before try to read it. Fixes #2764
Renato Botelho
11:02 AM Revision c2173267: Fix indent and whitespaces
Renato Botelho
09:20 AM pfSense Packages Bug #2807 (Closed): filter_rules_needed tag (in package xml) not used when generating rules
That is a remenant of another implementation for packages.
The only way for now is to use the directly callable func...
Ermal Luçi
08:59 AM Revision cef32994: Correct value extaction
Ermal LUÇI
08:56 AM Revision ec0ed17a: Merge pull request #406 from miken32/nas-identifier
Support for custom NAS-Identifier Ermal Luçi
08:54 AM Revision 044c5682: Merge pull request #408 from mdima/master
Status Queue page: Fixes the bytes/bits unit in the page. Ermal Luçi
07:55 AM pfSense Packages Bug #2811 (Closed): squidGuard-1.4_4 starting large number of child processes
You will have better luck opening a forum thread on the packages board to diagnose this. certainly needs a lot more d... Jim Pingle
07:51 AM pfSense Packages Bug #2811 (Closed): squidGuard-1.4_4 starting large number of child processes
when i installed squidguard from the pkg, this time it reinstalled squid. i enabled the squid guard, in few minutes i... Koti SK
06:55 AM Revision b06abfe3: Status Queue page: Fixes the bytes/bits unit in the page.
Michele Di Maria
05:26 AM Bug #1629: invalid state table entries after WAN IP change
I just pushed another change to reset states with certain gateways set.
It should behave even better than previously,...
Ermal Luçi
05:10 AM Bug #2764 (Feedback): Captive Portal Voucher Sync issue
Applied in changeset commit:8184a8ddbb5c92cf3b01806c7a4f6172c95c7ed3. Renato Botelho
04:39 AM Revision 39866b68: Merge pull request #407 from jean-m-cyr/master
Make sure ntpd creates a pid file at bootup Chris Buechler
03:01 AM Revision a82de14d: Make sure ntpd creates ntpd.pid file at bootup
Jean Cyr
02:57 AM Feature #1482: Captive Portal support for a configurable RADIUS NAS ID
Merged thank you for the pull request. Ermal Luçi

02/11/2013

10:35 PM Revision f9dc100c: fix typo
Michael Newton
10:15 PM Revision d7fe2e7a: properly separate accounting options from general RADIUS options
cleanup whitespace Michael Newton
08:35 PM Revision e6c60013: Check interfaces and VIP IP address overlap
- Check if interface IP overlaps other interfaces or localip from mpd
based services
- Check if VIPs IP overlaps in...
Renato Botelho
07:03 PM Revision ef844583: Use the actual openvpn restart routine when starting/stopping from services rather than killing/restarting manually.
Jim Pingle
07:00 PM Revision 4cc94535: allow entry of custom NAS ID
Michael Newton
07:00 PM Revision 07c132f9: check for configured NAS ID otherwise use default hostname
Michael Newton
06:59 PM Revision eb162790: remove unsed getNasID function
Michael Newton
06:50 PM Revision 699125b1: Use the actual openvpn restart routine when starting/stopping from services rather than killing/restarting manually.
Jim Pingle
05:51 PM Bug #1823: policy routing for firewall-initiated traffic only works for interface IPs
it's always been optional, users can override with floating rules. It's an appropriate default for the vast majority. Chris Buechler
11:27 AM Bug #1823: policy routing for firewall-initiated traffic only works for interface IPs
Can this be an option? I actually consider it a feature. I don't want policy routing at all. I change routing on t... Adam Gibson
04:38 PM Feature #1482: Captive Portal support for a configurable RADIUS NAS ID
Submitted: https://github.com/bsdperimeter/pfsense/pull/406 Michael Newton
05:32 AM Feature #1482: Captive Portal support for a configurable RADIUS NAS ID
Please send a pull request on github as everyone else since its easier to merge/review/... Ermal Luçi
02:48 PM Revision ee3576dd: Commit missed global
Ermal LUÇI
02:40 PM Todo #1723 (Feedback): PPTPd and all mpd based services need more checks
Applied in changeset commit:e6c60013283ea203853e0bc34158e185016f4df6. Renato Botelho
02:05 PM Revision 9a03bc19: Bump latest_config to 9.4 to match recent version bump in the default config.
Jim Pingle
02:02 PM Revision 33a33c3e: Use the same tcpdump command here that we use from the GUI, to avoid potential mismatch of info/errors.
Jim Pingle
11:16 AM Revision 1a1967d6: Test that timeout value is bigger than 0
Ermal LUÇI
11:05 AM Revision 8135f01f: If more than 2 minutes have passed from the prunning process ignore the lock
Ermal LUÇI
11:03 AM Revision b9f66770: If more than 2 minutes have passed from the prunning process ignore the lock
Ermal LUÇI
10:56 AM Revision b16d70eb: Test that timeout value is bigger than 0
Ermal LUÇI
10:35 AM Revision 21d1560f: Make this code readble
Ermal LUÇI
10:19 AM Revision 8ac9dd5e: Optimize get_real_itnerface to avoid a loop of doing a convertion from real back to friendly when the inforamtion is there already
Ermal LUÇI
09:44 AM Revision 25f27029: Enter missed text needed
Ermal LUÇI
09:42 AM Revision ec8b4d8d: Try to use standard interface to find the source for connecting a tunnel. Also if a ping host is defined for the configuration used that for remoteid since its known to be reachble
Ermal LUÇI
09:29 AM Revision d83045b5: Properly generate all address data based on configuration selected
Ermal LUÇI
09:20 AM Bug #2349: vlan(4) needs altq adaption on FreeBSD 8.3++
I can confirm that this patch did not break vlan support as it did 8 months ago.
I had to completely rebuild my p...
Chris Ogden
09:18 AM Bug #2349: vlan(4) needs altq adaption on FreeBSD 8.3++
So can you confirm it works correctly now? Ermal Luçi
09:15 AM Bug #2349: vlan(4) needs altq adaption on FreeBSD 8.3++
Please ignore my reported troubles, see http://forum.pfsense.org/index.php/topic,58717.0.html for an explanation.
...
Chris Ogden
09:13 AM Revision 2ffafea3: Make function return correct address info for respective family
Ermal LUÇI
08:21 AM Revision d6c82882: Use full path to commands
Ermal LUÇI
08:20 AM Revision bb58ed63: Cleanup some code
Ermal LUÇI
05:21 AM pfSense Packages Bug #2809 (Closed): Reverse Proxy for ActiveSync / Real-Time Monitor
Real-Time Monitor and the access.log for the Reverse Proxy package do not show the full request URI (it is cut off af... Matthias S
03:11 AM Bug #1629: invalid state table entries after WAN IP change
Today the problem occurred again. So it was not fixed yet. Matthias Dilbert
02:14 AM Revision c4680ae2: Whoops remove copypasta
Jim Pingle
02:10 AM Revision 84197cec: Apparently some systems don't like pulling this in globally, but it should work if defined locally like the other similar lists.
Jim Pingle
02:08 AM Revision 3289b42b: The actual variable isn't an array, so this test will never succeed. Remove it. Unbreaks ntp.
Jim Pingle
01:53 AM Feature #2757: CDP/ISDP/LLDP support.
Any chance to see this feature implemented in 2.1? Zeev Zalessky
 

Also available in: Atom