Project

General

Profile

Activity

From 03/03/2013 to 04/01/2013

04/01/2013

09:08 PM Bug #1351: Mobile IPsec no traffic pass trough after 2nd connect after 5 minutes
Running pfSense 2.0.2 stable with same IPsec tunnel issue (no tunnel data on reconnect, racoon restart needed)
I f...
Roy Blüthgen
08:45 PM Revision 3c98b3f7: Whitespace/HTML fixes
Jim Pingle
08:41 PM Revision 4f3bb062: Allow using virtual IPs (or "any") for ping source. Fixup ipv4/ipv6 selection.
Jim Pingle
08:18 PM Bug #2919 (Resolved): IPv6 - WAN and LAN (DHCP-PD) does not renew address
The WAN DHCP IPv6 address and LAN DHCP-PD lease time from the provider is 4 days. When the lease expires, pfSense go... David Williams
04:57 PM Revision 2eaa97b9: Clarify notes when there is an error reaching the openvpn management daemon for service status. Also, add service controls to the openvpn status page.
Jim Pingle
03:40 PM Revision 9d7204aa: Consider packages that set enable to 'false' or 'off'
Renato Botelho
03:35 PM Revision 17c56f4a: Merge pull request #501 from phildd/master
Support for disabled services on services status displays rbgarga
03:20 PM pfSense Packages Bug #2918 (Rejected): ntpd doesn't sync if not bound to any interface
When no interfaces are selected under Services=>NTP, in attempt to use NTP only for timekeeping on the server itself,... Øyvind Hvidsten
02:56 PM Revision 0ad707c6: Do not allow to rename a gateway group, as it is for gateways. Fixes #2914
Renato Botelho
02:01 PM Feature #2765 (Resolved): Allow generation an x509 certificates with an SHA256 signature hash
Jim Pingle
11:12 AM Bug #2914: Gateway Group Name change causes all rules and OpenVPN interfaces using that group to be invalid
I actually have code that does the rename through the config. I couldn't submit a pull request because it touches the... Phillip Davis
10:03 AM Bug #2914: Gateway Group Name change causes all rules and OpenVPN interfaces using that group to be invalid
For 2.1 it's better to avoid such a big change, and since a gateway cannot be renamed, apply the same rule for gatewa... Renato Botelho
10:00 AM Bug #2914 (Feedback): Gateway Group Name change causes all rules and OpenVPN interfaces using that group to be invalid
Applied in changeset commit:0ad707c6b93d41bf731c547b49252af4a15a5649. Renato Botelho
02:30 AM Revision fc7f02c6: Do not display disabled services on services status widget
phildd
02:26 AM Revision ccfc0269: Check for disabled services when displaying service lists
phildd

03/31/2013

12:11 PM Bug #2412: inbound 6to4 traffic does not work in pf
Update:
Upgraded to today's (March 30) snapshot. Now inbound connections work OK.
A little bit scary, however...
Irving Popovetsky

03/30/2013

07:20 PM Bug #2917 (Rejected): High CPU Usage
not enough here to make this a legit bug report, feel free to start a discussion on the forum or mailing list and if ... Chris Buechler
07:11 PM Bug #2917: High CPU Usage
It appears to be caused by Firefox. As the number of Firefox browsers that are open with pfSense increases, the high... John Higham
06:31 PM Bug #2917 (Rejected): High CPU Usage
2.0.2 running on D525 Atom with virtually zero CPU usage. Atom hardware replaced with Xeon CPU E5504 @ 2.00GHz with ... John Higham

03/29/2013

07:29 PM Revision a6637a31: Merge pull request #500 from ExolonDX/master
Tidy up HTML boolean operators Jim Pingle
07:25 PM Revision ce0117f7: Update HTML boolean operators
Updated CHECKED, SELECTED and DISABLED boolean operator Colin Fleming
03:58 PM Revision 3d74b803: Use is_module_loaded() to test these to avoid code duplication.
Jim Pingle
08:44 AM Revision 30ca7b7e: Resync OpenVPN instances that use any changed gateway groups
Phil Davis
08:42 AM Revision 8bca0805: Remember whcih gateway groups have been edited
Phil Davis
08:40 AM Revision 99cc103b: Provide openvpn_resync_gwgroup function
Allows all OpenVPN servers and clients that use a particular gateway group to be resynced in one easy call. Phil Davis
01:17 AM Bug #2915: OpenVPN server/client not started after WAN physical hotplug event
/etc/rc.openvpn does not get passed the interface, so it has no idea what is going on. I can't see an easy way to get... Phillip Davis

03/28/2013

11:53 PM Bug #2915: OpenVPN server/client not started after WAN physical hotplug event
as long as it only impacts OpenVPN instances on the interface where the event occurred, it should be fine to call res... Chris Buechler
11:52 PM Bug #2915 (Resolved): OpenVPN server/client not started after WAN physical hotplug event
Easy to reproduce - setup OpenVPN client on interface WAN. Have it running connected to a server somewhere. Physicall... Phillip Davis
11:40 PM Bug #2914 (Resolved): Gateway Group Name change causes all rules and OpenVPN interfaces using that group to be invalid
The Group Name is stored directly in the config of firewall rules, OpenVPN interface selection (and elsewhere...?). W... Phillip Davis
11:32 PM Bug #2913 (Resolved): OpenVPN servers and clients not reevaluated when gateway groups settings are saved and applied
I have a gateway group VPNgways with WAN=Tier1, OPT1=Tier2. The OpenVPN servers and clients use interface VPNgways. T... Phillip Davis
07:25 PM Revision a8f5790a: Fix whitespaces and indent
Renato Botelho
04:44 PM Bug #2753: RRD Graphs failes after pfSense upgrade (2.0.1 -> 2.0.2)
Have been watching status on this issue for a couple months, since a similar scenario has applied to my setup as well... Warm Noise
12:00 PM Revision 7a47e299: Avoid send user to top of the page when you open add new gateway box
Renato Botelho
07:20 AM pfSense Packages Bug #2892 (Feedback): "pfblocker_Range2CIDR" function yields erroneous results (pfBlocker v1.0.2)
Applied in changeset commit:e2ec86f40c9573292a46d4ab89ae70e353a99f8f. Phillip Davis
07:05 AM pfSense Packages Bug #2892: "pfblocker_Range2CIDR" function yields erroneous results (pfBlocker v1.0.2)
This pull request should fix it: https://github.com/pfsense/pfsense-packages/pull/415 Phillip Davis

03/27/2013

09:21 PM pfSense Packages Bug #2902: Snort does not update snort.org (basic?) rules. Possibly clock blocking by snort.org for basic subscribers.
Issue is that the 2941 rules are not yet available to registered users, only subscribers. Modify the $snort_rules_fil... Daniel Davis
08:23 PM pfSense Packages Bug #2902: Snort does not update snort.org (basic?) rules. Possibly clock blocking by snort.org for basic subscribers.
Same issue here, have tried the manual update but still no result. Daniel Davis
07:37 PM Feature #2912: Updater handles unsigned updates poorly when used on beta/snapshot releases
indeed it's not possible to do as described, but I've been irked on more than one occasion by it just bailing out wit... Chris Buechler
07:29 PM Feature #2912: Updater handles unsigned updates poorly when used on beta/snapshot releases
There is no way to know or detect the fact that the update is signed or unsigned until it has been fully downloaded. ... Jim Pingle
06:34 PM Feature #2912 (Resolved): Updater handles unsigned updates poorly when used on beta/snapshot releases
Running 2.1 beta, and notified of an available snapshot update, the updater attempts to download the update but only ... Stilez y
07:32 PM pfSense Packages Bug #2892: "pfblocker_Range2CIDR" function yields erroneous results (pfBlocker v1.0.2)
When doing some addtional work, I noticed that I mistyped the CIDR generated by the "pfblocker_Range2CIDR" function -... B. Derman
02:11 PM Revision 3ffdcd4e: Add a new class called addgatewaybox to make it easier to respect custom themes. Fixes #2900
Conflicts:
usr/local/www/interfaces.php
usr/local/www/themes/_corporate/all.css
usr/local/www...
Renato Botelho
11:38 AM Revision d6307bd3: Fixes #1477. Use the new parameter to reduce igmpproxy logging level
Ermal LUÇI
06:40 AM Feature #1477 (Feedback): IGMPPROXY spamming the main systemlog
Applied in changeset commit:d6307bd38ef0d50caf1d0224a845a206f00da1aa. Ermal Luçi
02:28 AM Bug #2911 (Rejected): pfsense boot error on usb image w/o usb keyboard plugged in
general FreeBSD issue I suspect is likely already fixed in newer versions. If not, it'll have to be reported upstream... Chris Buechler

03/26/2013

08:33 PM Revision 4d8a1ec2: Move status file to a ram disk to avoid possible latency issues
Ermal LUÇI
07:54 PM Bug #1351: Mobile IPsec no traffic pass trough after 2nd connect after 5 minutes
I was using 2.1 BETA also and experienced the same issue as David Duchscher. I had to revert back to 2.0.2 stable so ... Luli Dushaj
01:36 PM Bug #2911 (Rejected): pfsense boot error on usb image w/o usb keyboard plugged in
I deployed pfSense-2.0.2-RELEASE-4g-amd64-nanobsd_vga.img.gz on a 4gb usb thumbdrive on a Dell XPS 400 with no hard d... Joe Woss
12:43 PM Revision 4ad1e4ea: Add a new class called addgatewaybox to make it easier to respect custom themes. Fixes #2900
Renato Botelho
11:47 AM Revision 1500614c: Correct code and initialize properly variables escpecially arrays. Also do fixes and simplificate to make it more readble
Ermal LUÇI
11:08 AM Revision 2ba95a31: Correct check from previous code path simplification
Ermal LUÇI
11:07 AM Revision dea0921d: Initialize some arrays to avoid php issues and also use list() here to avoid double array dereference
Ermal LUÇI
10:53 AM Revision fd34d6a9: Simplify a bit code branching no change on functionality
Ermal LUÇI
08:14 AM Bug #2900 (Resolved): "Add new gateway" box is not respecting theme color
Renato Botelho
07:50 AM Bug #2900 (Feedback): "Add new gateway" box is not respecting theme color
Applied in changeset commit:4ad1e4ea74f621c01f9997f46ee7dff412dcc817. Renato Botelho
08:11 AM Bug #2890 (Resolved): radvd segmentation fault
Renato Botelho
07:41 AM Revision 58c40f9c: Merge pull request #498 from ExolonDX/master
Tidy up "shaper.inc" XHTML Ermal Luçi
06:40 AM Bug #2910 (Feedback): monitoring-disabled gateway causes wrong tiered gateway in route-to
Could not reproduce it here using latest snapshot, tier1 was used as expected on rules when it's up. Renato Botelho

03/25/2013

10:49 PM Bug #2905 (Resolved): radvd.conf does not include all configured RDNSS entries
thanks Chris Buechler
09:13 PM Bug #2905: radvd.conf does not include all configured RDNSS entries
Looks like this issue is resolved. Tested with snapshot:
2.1-BETA1 (i386)
built on Mon Mar 25 15:43:19 EDT 2013
...
David Horn
07:40 AM Bug #2905 (Feedback): radvd.conf does not include all configured RDNSS entries
Applied in changeset commit:3d73a44d84accdb2f70abf705aed9b3858292317. Renato Botelho
10:25 PM Bug #2910 (Resolved): monitoring-disabled gateway causes wrong tiered gateway in route-to
When there is a tier 1 gateway that's being monitored, and a tier 2 gateway with monitoring disabled, the system skip... Chris Buechler
09:46 PM Revision 6f1bcc36: Tidy up "shaper.inc" XHTML
Close INPUT tags
Close IMG tags and add "alt" parameter
Change ONCLICK and ONCHANGE to lowercase
Colin Fleming
06:46 PM Revision 7fed35c8: Give the process time to exit before running a new one
Ermal LUÇI
03:02 PM Revision 2269e286: Merge pull request #497 from phildd/master
Do not bother with bogonsv6 if IPv6 allow is off Ermal Luçi
01:05 PM Revision 939cc57a: Fix file name reference
Warren Baker
12:33 PM Revision 3d73a44d: Use configured dns servers on radvd.conf, fixes #2905
Renato Botelho
11:26 AM Revision aa95e7da: Merge pull request #495 from phil-davis/master
Dynamic DNS add option for verbose logging rbgarga
11:01 AM pfSense Packages Feature #2908 (Needs Patch): Add nginx package to available for install
It would be really great feature, cause nginx reaaly great web serser with great proxy possibilities.
and now it i...
Y N
10:38 AM Revision 8550a21c: Improve bogonsv6 checks during update
Improvements to using pfctl to check the existence of the bogonsv6 table. phildd
07:54 AM Revision 594eef24: Merge pull request #496 from ExolonDX/master
Tidy up "shaper.inc" and "firewall_shapper.php" XHTML Ermal Luçi

03/24/2013

08:32 PM Bug #2905: radvd.conf does not include all configured RDNSS entries
Version Data: (from snapshots)
2.1-BETA1 (i386)
built on Sat Mar 23 22:03:50 EDT 2013
David Horn
08:26 PM Bug #2905 (Resolved): radvd.conf does not include all configured RDNSS entries
The ipv6 RA does not include all configured dns entries from services_router_advertisements.php configuration page.
...
David Horn
06:33 PM Feature #2904 (Resolved): Add checkbox or default option for "verify_identifier on;" on IPsec RSA VPNs
The ASN1DN field on the "peers_identifier" option within racoon.conf can be used to specify which certificate or set ... Jorge Albarenque
03:41 PM pfSense Packages Bug #2903 (Not a Bug): Lightsquid realtime stat 403 error
With a fresh lightquid install (and with several reinstall attempts) I get the following error when attempting to acc... David Gessel
12:45 PM Revision c858c609: Do not bother with bogonsv6 if IPv6 allow is off
Only implement the bogonsv6 table if IPv6 allow is on. Otherwise, if it looks like there would be room for the table ... phildd
12:43 PM Revision e714e996: Do not bother with bogonsv6 if IPv6 allow is off
The rules already block all IPv6 when IPv6 allow is off, so it is a waste of 70,000+ table entries of V6 bogons. On s... phildd

03/23/2013

09:12 PM Revision 7da5315d: Tidy up "shaper" and "firewall shaper" XHTML
Update VALIGN
Deprecated the ampersand in ANCHOR tags
Update TYPE in script
Colin Fleming
11:37 AM pfSense Packages Bug #2902: Snort does not update snort.org (basic?) rules. Possibly clock blocking by snort.org for basic subscribers.
*update*
The tar file contains the ...
David Gessel
10:13 AM pfSense Packages Bug #2902 (Resolved): Snort does not update snort.org (basic?) rules. Possibly clock blocking by snort.org for basic subscribers.
Snort 2.9.4.1 pkg v. 2.5.4 on 2.1-BETA1 (i386) built on Fri Mar 22 22:56:09 EDT 2013
I've tested and found this pr...
David Gessel
09:16 AM pfSense Packages Bug #2581: Snort unexpectedly terminates / signal 11 error
I get sig 11 (segmentation fault) failures as well. ... David Gessel
07:22 AM Bug #2901 (Closed): Traffic shaper error results in blocked traffic
I set up the traffic shaper using the wizard, it worked fine for a few hours (4) then at some point started throwing:... David Gessel

03/22/2013

07:22 PM Revision e680b2f9: Add checks to make sure CP hard timeout is less or equal DHCP server default lease time. It fixes #2899
Renato Botelho
06:05 PM Revision ab1cf455: Add PHP shell playback script to control services from the command line (works like Status > Services)
Jim Pingle
05:28 PM Revision 8b88ac79: Simplify this code
Jim Pingle
04:44 PM Revision ee6e6011: Move these service control functions into service-utils.inc so they may be re-used.
Jim Pingle
04:41 PM Revision 1e503870: Dynamic DNS add option for verbose logging
The verbose log option is "set or not set" in the config and needs to be passed to subroutines as a boolean true or f... Phil Davis
04:28 PM Revision 87b91672: Dynamic DNS add option for verbose logging
Put most log messages inside "if verbose logging". Things that are always logged are actual errors and success messag... Phil Davis
04:25 PM Revision c8c90b81: Dynamic DNS add option for verbose logging
This will allow the user to decide if they want all the noise in syslog. It defaults to off, so the log messages will... Phil Davis
03:52 PM Revision a868fc48: Merge pull request #494 from ExolonDX/branch_06
Tidy up "shaper.inc" XHTML Jim Pingle
03:47 PM Revision 0fa05f45: Tidy up "shaper.inc" XHTML
Add CDATA sections to javascript
Close off the BR tags
Colin Fleming
03:10 PM Revision 327e6f2d: Merge pull request #493 from ExolonDX/branch_05
Tidy up "traffic shaper wizard" XHTML Jim Pingle
03:10 PM Revision 9d5c0544: Merge pull request #492 from ExolonDX/branch_04
Tidy up "traffic shaper layer7" XHTML Jim Pingle
03:09 PM Revision 2ef6bfbb: Merge pull request #491 from ExolonDX/branch_03
Tidy up "traffic shaper limiter" XHTML Jim Pingle
03:08 PM Revision 86632dbc: Merge pull request #490 from ExolonDX/branch_02
Tidy up "traffic shaper queue" XHTML Jim Pingle
03:08 PM Revision 4a8dba5e: Merge pull request #489 from ExolonDX/branch_01
Tidy up "traffic shaper" XHTML Jim Pingle
03:00 PM Bug #2900 (Resolved): "Add new gateway" box is not respecting theme color
On Interfaces configuration, when you click "add a new one" to add a new gateway, it's using a hardcoded bg color #99... Renato Botelho
02:58 PM Revision 4271dfb8: Tidy up "traffic shaper wizard" XHTML
Move "tree.css" to the HEAD statement and manually close the HEAD
statement
Close BR and P tags
Colin Fleming
02:54 PM Revision e750c0af: Tidy up "traffic shaper layer7" XHTML
Close INPUT, BR, P and IMG tags
Add "alt" to IMG tags
Add CDATA section to scripts
Move "tree.css" and "tree.js" to t...
Colin Fleming
02:42 PM Revision 2174be22: Tidy up "traffic shaper limiter" XHTML
Close INPUT, BR, IMG and P tags
Add "alt" to IMG tags
Deprecate ampersand in ANCHOR tags
Add CDATA section to scripts...
Colin Fleming
02:35 PM Revision f6b81501: Tidy up "traffic shaper queue" XHTML
Deprecate the ampersand in the ANCHOR tag
Close BR and P tags
Move "tree.css" and "tree.js" to the HEAD statement and...
Colin Fleming
02:29 PM Revision df5c0bc0: Tidy up "traffic shaper" XHTML
Close INPUT, BR and P tags
Update PHP Shorthand tag
Spelling mistake
Move "tree.css" and "tree.js" to the HEAD statem...
Colin Fleming

03/21/2013

05:26 PM Bug #2890: radvd segmentation fault
2.1-BETA1 (i386)
built on Thu Mar 21 04:30:58 EDT 2013
FreeBSD 8.3-RELEASE-p6
Updated to the above version and r...
Mike Cherry
04:20 PM Revision b2f73235: Fix wording/formatting of promisc option
Jim Pingle
03:50 PM Bug #2891 (Rejected): Limiter does not work with high speed
Renato Botelho
03:04 PM Bug #2891: Limiter does not work with high speed
Forgot to tell that I did a total rekonfiguration but have tried to rekosntruct the limiter issue. I think you are ri... Anders Tillebeck
03:04 PM Bug #2891: Limiter does not work with high speed
You have only 50 slots meaning 50 packets.
Can you configure the 'Queue Size' under advanced options of limiters to ...
Ermal Luçi
02:53 PM Bug #2891: Limiter does not work with high speed
Sure. I think you are just right. Command in shell is the same as "limiter info" in the GUI I guess.
Limiters:
00...
Anders Tillebeck
03:01 PM Revision f06ce79d: Bump this a bit to allow for faster speed
Ermal LUÇI
03:00 PM Revision b2b002cd: Reduce a bit the entropy collection sources to not hurt performance. There are plenty of other sources on today systems
Ermal LUÇI
02:53 PM Revision 87dfd826: Escape the argument to avoid potential issues
Ermal LUÇI
02:48 PM Revision 6d76984a: No need for nocsrf here too
Ermal LUÇI
02:47 PM Revision 0e0f9b9b: Merge pull request #486 from 01101001c/master
Thermal Sensors Widget (for pfSense v2.1-BETA1 and up). Ermal Luçi
02:45 PM Revision cfa0c336: No need to set it for the system information widget
Ermal LUÇI
02:43 PM Revision 8760cbbc: No need to set nocsrf from my testing
Ermal LUÇI
02:08 PM Bug #2896 (Resolved): IPsec failover may not fully attach to new interface address
In some cases, IPsec failover using a gateway group will not move from one WAN to another properly. Unfortunately thi... Jim Pingle
01:26 PM Revision e52cb3a4: Respect the product name here.
Jim Pingle
01:09 PM Revision dadf8ebb: use a custom sysDescr for snmp similar to m0n0wall's format. Fixes #2893
Jim Pingle
08:21 AM Revision 4c15d006: Merge pull request #488 from phil-davis/master
DynDNS status widget async update Ermal Luçi
08:20 AM Bug #2893: Add extTable to SNMPd or change sysDescr.
Nice, thank you! Mike Stupalov
08:10 AM Bug #2893 (Feedback): Add extTable to SNMPd or change sysDescr.
Applied in changeset commit:dadf8ebb488c6dbefc84cf1a104e1d34e41966bb. Jim Pingle
02:51 AM Revision b23e1a70: DynDNS status widget add 5 minute refresh
It was easy to add the code to refresh the status every 5 minutes. I think 5 minutes is a reasonable refresh time for... Phil Davis

03/20/2013

10:14 PM Revision 8f38fd8d: Merge pull request #487 from rdlugosz/change_apinger_status_path
Track apinger status in /var/run instead of /tmp Ermal Luçi
09:58 PM Revision 07615045: No need for the ::(separators) they will be there
Ermal LUÇI
09:53 PM Revision d9377608: Check lower bound as well
Ermal LUÇI
08:41 PM Revision 733c6f89: The default gateway for 6rd type is $prefix|$wanv4::$wanv4gw. Also add support for variable length v4 prefix for 6rd
Ermal LUÇI
08:07 PM Revision a1776dcf: Rearrange this manual outbound NAT rule generation loop -- fixes unnecessary duplication of Localhost and VPN rules.
Jim Pingle
07:58 PM Revision 33cc1e86: Add the user/time tracking to Port forwards and outbound NAT also.
Jim Pingle
05:26 PM Revision daffbc34: While I'm here, fix an IPv6 ICMP easy rule issue.
Jim Pingle
05:26 PM Revision ba1d9714: Track user/time a firewall rule was created and last updated, and show this information at the bottom of the page when viewing the firewall rule. Have various places in the system that create rules add a proper entry to indicate their origin.
Jim Pingle
05:24 PM Bug #2890: radvd segmentation fault
I updated to the following:
2.1-BETA1 (i386)
built on Tue Mar 19 16:35:08 EDT 2013
FreeBSD 8.3-RELEASE-p6
O...
Mike Cherry
04:46 PM Bug #2890 (Feedback): radvd segmentation fault
I have put a fix for radvd.
Can you test with a newer snapshot?
Ermal Luçi
04:05 PM Revision 919ff1f0: To actually use the linklocal of :1 delete the auto assigned linklocal
Ermal LUÇI
03:34 PM Bug #2893: Add extTable to SNMPd or change sysDescr.
I found old mails in mailing list, which discussed the issue:
http://www.mail-archive.com/support@pfsense.com/msg086...
Mike Stupalov
02:33 PM Bug #2893: Add extTable to SNMPd or change sysDescr.
The commands would only work if the user has the UCD module loaded, which is possible on 2.1. I would hesitate to add... Jim Pingle
02:08 PM Bug #2893 (Resolved): Add extTable to SNMPd or change sysDescr.
Please add extTable lines in bSNMPd config (/var/etc/snmpd.config) like:... Mike Stupalov
02:19 PM Revision c1dcb7ab: DynDNS status widget async update
The Dynamic DNS status widget performs remote operations to the www to check the cached dynamic DNS IP against the ac... Phil Davis
09:01 AM Revision 3e3ff931: Track apinger status in /var/run instead of /tmp
This is a one line status file updated every few seconds. It would be
better to store this in /var/run since that is ...
Ryan Dlugosz
08:33 AM Bug #1974: Captive Portal RADIUS accounting bytes wrong
Not it is not fixed it was much better some time ago but recent tests have the same results 700 MB through the portal... Allan Stanley
06:12 AM Bug #1988 (Resolved): Static ARP entries attempted to be applied on disabled interfaces
Renato Botelho
06:11 AM Bug #2010 (Resolved): VLAN parent interface / altq interface wrong assumptions about int_family name format
Renato Botelho
06:09 AM Bug #2338 (Resolved): outbound NAT rules rewrite themselves if active interface is deleted
Renato Botelho
06:06 AM Bug #2703 (Resolved): IPv6 IPs are not removed when interface is re-assigned
Renato Botelho
06:05 AM Bug #2780 (Resolved): CP: passthough has no effect
Renato Botelho
06:03 AM Bug #2883 (New): pf rules contain erroneous "!/" artifact leading to "syntax error" in log
Renato Botelho
02:57 AM Bug #2891: Limiter does not work with high speed
Probably you have to increase the queue of the limiter to hold that traffic.
Can you show an ipfw pipe show of your ...
Ermal Luçi
02:30 AM pfSense Packages Bug #2892 (Resolved): "pfblocker_Range2CIDR" function yields erroneous results (pfBlocker v1.0.2)
E.G. the file
http://list.iblocklist.com/?list=bt_ads&fileformat=p2p&archiveformat=gz
on 2013-Mar-18 has/had an ent...
B. Derman

03/19/2013

08:27 PM Revision ccc5f959: Remove even this seems dhclient is smart enough to avoid this by itself
Ermal LUÇI
08:19 PM Revision a9518178: Remove functions that are not used now with once mode of rtsold
Ermal LUÇI
08:06 PM Revision 4e6667b2: Simplify a bit logic
Renato Botelho
08:01 PM Revision e5a27e16: Fix typo
Renato Botelho
07:57 PM Revision b8ded125: Use full patch
Ermal LUÇI
07:56 PM Revision 9b6010ff: Run rtsold only for one reply since it will spam with dhcp6c processes otherwise. Also remove ambiguity by using curlies in functions
Ermal LUÇI
07:29 PM Bug #2891 (Rejected): Limiter does not work with high speed
On 2.0.2 limiters only work up til aprox. 15Mbitps. Limiters set to speeds higher than 15Mbit will act if they are ju... Anders Tillebeck
07:03 PM Revision 10e000f7: Fix missed ;
Jim Pingle
06:52 PM Revision def432e6: Make sure file has content before call route delete
Renato Botelho
06:36 PM Revision 46e27ea7: Respect 'States' option from Advanced/Misc
- Respect this option and do not clean states when it's configured
- Create /etc/rc.kill_states to be easier to check...
Renato Botelho
06:36 PM Revision 9cc119c2: Remove redundant call
Renato Botelho
06:36 PM Revision 2c27096c: Improve ppp-linkdown:
- Improve readability giving name to parameter variables
- Add path for all command calls
Renato Botelho
06:36 PM Revision 6d5460e6: Fix default route deletion
Renato Botelho
06:36 PM Revision 94b49d82: Fix indent
Renato Botelho
04:28 PM Revision 6d0473b4: Bring down even rtsold process
Ermal LUÇI
04:28 PM Revision 1af4f4e0: Bring down even rtsold process
Ermal LUÇI
04:23 PM Revision 673c2f8b: Actually enforce for not dhcp6 interfaces
Ermal LUÇI
04:21 PM Revision fa5bf66f: Relax after bootup enforcement since its not needed anymore
Ermal LUÇI
04:21 PM Revision 29f2f07a: The workflow is rtsold calls dhcp6c which calls rc.newwanipv6 to make the configuration more consistent
Ermal LUÇI
04:10 PM Bug #2890 (Resolved): radvd segmentation fault
2.1-BETA1 (i386)
built on Tue Mar 19 05:51:13 EDT 2013
FreeBSD 8.3-RELEASE-p6
radvd segfaults on my router with ...
Mike Cherry
02:48 PM Bug #2889 (Closed): ACK Traffic Put in Normal Queues. Normal Traffic Put in ACK Queues
We are running 2.0.2 i386. We've noticed any rules that came from 2.0.1 are fine, however if we create new rules on o... Jonathan Black
01:55 PM Bug #2887: ppp-linkdown state killing not right
It's now respecting <kill_states/> Renato Botelho
12:35 AM Bug #2887 (Resolved): ppp-linkdown state killing not right
The state killing in ppp-linkdown only kills the NAT states on the affected WAN. It leaves the firewall states there,... Chris Buechler
01:52 PM Revision 7fd67662: Do not run this during startup since it will be called anyhow
Ermal LUÇI
01:16 PM Revision 961a0fa5: Use propper variable for is_ipaddrv6 test
Ermal LUÇI
01:14 PM Revision 64f89bfa: Correct typo that prevents dhcpv6 to generate proper subnet info. Also use already caluclated variable
Ermal LUÇI
12:47 PM Revision 145cc518: Fix the Cellular strength indicator, rssi was always reporting 8 because we didn't use the variable.
The dBm values array was reversed, corrected Seth Mos
12:23 PM Revision 7488a9e0: Fix whitespace and indent
Renato Botelho
11:56 AM Revision a56d8b08: Initialize array
Ermal LUÇI
11:55 AM Revision f7f27780: Remove not used call
Ermal LUÇI
11:55 AM Revision c55a0f0c: Do not do useless work before needed
Ermal LUÇI
11:15 AM Revision deb39cf2: When reconfiguring interfaces with dhcp types set try to kill any previous dhcp process of the interface already running
Ermal LUÇI
11:10 AM Revision bd66cf32: Do not cleanup states on this call
Ermal LUÇI
09:59 AM Revision 03bfe2ad: Define bogon tables where they should be
Ermal LUÇI
09:53 AM Revision 24cdea2f: Use proper interface for reply-to in case of 6rd/6to4
Ermal LUÇI
12:08 AM Revision 4fc54000: Thermal Sensors Widget (for pfSense v2.1-BETA1 and up).
Original post: http://forum.pfsense.org/index.php/topic,59193.0.html 01101001c

03/18/2013

04:11 PM Revision ff5674dc: Remove useless function calls
Ermal LUÇI
04:01 PM Revision da9dd1b4: Unset the ip from the cache to retrieve the right ip
Ermal LUÇI
03:54 PM Revision 6fb66736: Correct get_interface_subnetv6 and use get_interface_ipv6 during dhcp config generation. Also initialize some arrays to avoid warnings
Ermal LUÇI
03:28 PM Revision e9d156fd: If gatway is dynamic the type cannot be determined, trim the code trying to do something impossible. While here optimize a bit
Ermal LUÇI
02:55 PM Revision 909de400: Try to remove as much as possible _stf special case through the code
Ermal LUÇI
02:40 PM Revision 6e46ff86: Do a check of interface existing
Ermal LUÇI
02:38 PM Revision 1b2f460a: Use the new functionality on get_real_interface to get the _stf interface when needed
Ermal LUÇI
02:36 PM Revision b6c1f22f: Use get_interface_ipv6 on rc.newwanipv6 to and teach it to flush the cache on optional parameter. Also teach get_real_interface about the tedios ipv6 tunnel interfaces and return them when ipv6 family is specified
Ermal LUÇI
01:48 PM Bug #2883: pf rules contain erroneous "!/" artifact leading to "syntax error" in log
I have tested this fix already with no luck
Provided more information here http://forum.pfsense.org/index.php/topic,...
Vladimir Suhhanov
08:32 AM Bug #2883 (Feedback): pf rules contain erroneous "!/" artifact leading to "syntax error" in log
I already have pushed a fix for this.
Test with newer snapshots.
Ermal Luçi
01:32 PM Revision f6461410: Avoid trying to remove an invalid IP
Renato Botelho
11:18 AM Revision 67864df7: Properly tune rc.linkup for dual stack
Ermal LUÇI
10:41 AM Revision 1d66a364: Handle _stf interface in convertion from real to friendly. Also do no cal lpfSense_module function if not used
Ermal LUÇI
08:30 AM Bug #2878 (Feedback): radvd does not restart properly
Applied in changeset pfsense-tools:commit:f7608973a69f99c0e0a8fca652579991a9b1607b. Ermal Luçi

03/17/2013

03:11 PM Revision 9072d260: Merge pull request #485 from N0YB/Diag_DNS_Lookup_Dialog_Output
Diag DNS Lookup Dialog Output Ermal Luçi
12:19 AM Revision fe74228f: Diag DNS Lookup Dialog Output
Display DNS lookup results in a dialog box rather than browsing away from the current page (Dashboard Firewall Widget... N0YB

03/16/2013

09:09 PM Revision ba6b2811: Merge pull request #484 from N0YB/System_Firewall_Logs_Filtering
Just a Couple Minor Tweaks Jim Pingle
09:07 PM Revision c3b8ad61: Just a Couple Minor Tweaks
N0YB
04:09 PM Revision e074fb75: Use killbypid instead of a killall that never works
Renato Botelho
02:47 PM Revision 6a69bc65: Use realif on dhcp6 pid filename since find_dhcp6c_process() looks for it and cannot kill it
Renato Botelho
01:32 PM Revision 6d529efd: Fix indent and whitespaces
Renato Botelho
11:56 AM Revision 2abfec49: Initialize array to silence warnings on foreach
Renato Botelho
11:34 AM Revision fba196c3: Avoid deleting the RA Subnet when IP is invalid, also simplify it a bit
Renato Botelho
11:26 AM Revision e1968b0d: Fix indent and whitespaces
Renato Botelho

03/15/2013

01:40 PM Revision 628a5dc9: Merge pull request #483 from N0YB/System_Firewall_Logs_Filtering
System Firewall Log Filtering by Fields Jim Pingle
01:16 PM Feature #2691 (Closed): Truncate description on service status widget
It was changed to just put the first sentence of description in changeset commit:41af581edd49bb920a783bf5b78f9bbfe2a7... Renato Botelho
10:15 AM Feature #2886: multiple ips per carp vhid group
> You can add IP alias VIPs on top of a single CARP VIP to have as many IPs as you want on a single VHID in pfSense 2... Alexander Swen
09:23 AM Feature #2886 (Rejected): multiple ips per carp vhid group
This isn't relevant to how we use CARP.
You can add IP alias VIPs on top of a single CARP VIP to have as many IPs as...
Jim Pingle
09:21 AM Feature #2886 (Rejected): multiple ips per carp vhid group
since I can't find very detailed information on how carp works (under the hood i mean) i've read some documentation o... Alexander Swen
09:18 AM Feature #2885 (Closed): loadbalancing should be more tweakable
Our future pfsense boxes will be to distributing traffic over our appservers. Currently we use two old debian Lenny b... Alexander Swen
09:17 AM Revision 74c6d36f: System Firewall Log Filtering by Fields
Previous filter form retained for raw logs view. N0YB
09:16 AM Revision e46adb09: Merge pull request #482 from mdima/master
Fixes IPSec Status for natted tunnels Chris Buechler
09:13 AM Revision 1bad1025: Fixes IPSec Status for natted tunnels
See http://redmine.pfsense.org/issues/2884 for details.
Thanks, Michele
Michele Di Maria
04:13 AM Bug #2884 (Feedback): Tunnel status in case of NAT before IPSec
thanks! Chris Buechler
04:13 AM Bug #2884: Tunnel status in case of NAT before IPSec
Done! ;) Michele Di Maria
03:52 AM Bug #2884: Tunnel status in case of NAT before IPSec
That sounds sane. I haven't dug into this part of the code though. If it works and you think that's reasonable, go ah... Chris Buechler
02:21 AM Bug #2884: Tunnel status in case of NAT before IPSec
Since the SPD entries are not specular, in stead of searching for the "in" entry, we could look for the "out" entry, ... Michele Di Maria
01:59 AM Bug #2884: Tunnel status in case of NAT before IPSec
I've noticed this on every install I've worked on with NAT lately too, it works just fine but the status always shows... Chris Buechler
01:53 AM Bug #2884 (Resolved): Tunnel status in case of NAT before IPSec
Hi,
the status of the Phase2 is reported as down in case of NAT before IPSec, while the tunnel is up and working ...
Michele Di Maria
02:02 AM Bug #2883: pf rules contain erroneous "!/" artifact leading to "syntax error" in log
most parts of rule generation ensure a legit IP and subnet, need to fix that for this circumstance. Where these retur... Chris Buechler

03/14/2013

11:55 PM Bug #2883 (Resolved): pf rules contain erroneous "!/" artifact leading to "syntax error" in log
I found this one in 2.0.x, but not yet in 2.1. However it looks like someone else had it happen identically:
http://...
Stilez y
09:13 PM Bug #2882 (Resolved): 6RD not working in latest snapshots
Hi guys,
I use Charter's 6RD service to get ipv6 connectivity. I'm currently running the Jan 18th snapshot and my ...
Will Wainwright
05:08 PM Revision d632dd5a: Check if IP is already configured on console setup
Renato Botelho
03:20 PM Revision 08e9c732: Use empty which is more strict
Ermal LUÇI
10:01 AM pfSense Packages Bug #2870: External DNS server always takes precedence over internal servers
My solution to the problem was to create a DNS domain override for the internal domain. It also wasn't necessary to s... Jan Christoph Ebersbach
06:50 AM Feature #2881 (Closed): LDAP Support for xauth for IPsec mobile clients
It's already in 2.1, and working. Jim Pingle
06:42 AM Feature #2881 (Closed): LDAP Support for xauth for IPsec mobile clients
Hi,
please add the option to use the LDAP backend for xauth in IPsec.
As I found a topic on that, there is alread...
Michael Schietzsch

03/13/2013

11:48 PM pfSense Packages Bug #2747: Snort ignores memcap settings
This can be closed. Issue resolved by BMeeks with Snort version 2.5.4 Angel Torres
07:52 PM pfSense Packages Bug #2879 (Closed): uninstalling Postfix Forwarder leaves widget
The uninstall script for "Postfix Forwarder" doesn't delete any postfix related widgets from the homepage. This resul... Isaac McDonald
07:00 PM Revision 016f2459: Merge pull request #481 from phil-davis/master
Enhance tmp and var size checks Jim Pingle
06:56 PM Revision 8ad8b044: Enhance tmp and var size checks
Gets rid of the following console "unexpected operator" messages during boot:
Mounting filesystems...
[: -gt: unexpec...
Phil Davis
06:54 PM Revision 7d88b426: Re-enable admin user if it's disabled when 'Reset webConfigurator password' option is used. Fixes #2877
Renato Botelho
03:47 PM Bug #2878 (Resolved): radvd does not restart properly
On the latest 2.1-BETA1 (i386) - built on Thu Mar 7 01:55:06 EST 2013 build, the radvd daemon does not automatically ... Tom M
02:00 PM Bug #2877 (Feedback): Reset webconfigurator password does not unlock admin account
Applied in changeset commit:7d88b4269f01f2282a05df3e671da3f71704d17b. Renato Botelho
01:04 PM Bug #2877 (Resolved): Reset webconfigurator password does not unlock admin account
When the Reset webconfigurator password option is used it states that all permissions have been reset. How ever if th... B Smith
01:28 PM Revision 672e373e: Clarify what "Allow IPv6" does and does not control. Ticket #2874
Jim Pingle
09:55 AM Revision 5077b1e4: fixup text
Chris Buechler
09:44 AM Bug #2636 (New): state mismatch issue on enc0 with amd64
Renato Botelho
09:43 AM Bug #2650 (New): FTP helper breaks TCP sequence numbers on 2nd WAN
Renato Botelho
09:43 AM Bug #2758 (Resolved): Old configuration remains when changing interface type
Renato Botelho
09:41 AM Feature #1836 (New): RFC 5006 support for DNS from RAs
radns was updated and now builds fine Renato Botelho
09:01 AM Feature #2858 (Closed): Do not route rules to default gateway when its own gateway is down
thanks for feedback Renato Botelho
08:53 AM Feature #2858: Do not route rules to default gateway when its own gateway is down
It's working perfectly then :)
Sorry about the previous confusion.
Shawn Bruce
06:43 AM Feature #2858: Do not route rules to default gateway when its own gateway is down
Exactly, or you can negate the 192.168.99.151 as src on rule that allow all traffic from 192.168.99.0/24. Renato Botelho
08:47 AM Bug #2874: IPv6 permissive rules being auto-created when IPv6 disabled in config
Unfortunately we can't write a novella to explain the subtle nuances of every option in the GUI. The revised descript... Jim Pingle
08:42 AM Bug #2874: IPv6 permissive rules being auto-created when IPv6 disabled in config
(Sorry, Chris - overlapped yours and didn't see your comment) Stilez y
08:42 AM Bug #2874: IPv6 permissive rules being auto-created when IPv6 disabled in config
Thanks, that explanation makes sense. (It may be that some apparent "issues" actually relate to improving narrative a... Stilez y
08:40 AM Bug #2874: IPv6 permissive rules being auto-created when IPv6 disabled in config
the block rules override every user-defined and auto-added rule, which is the intent of the feature. It's not enable/... Chris Buechler
08:27 AM Bug #2874: IPv6 permissive rules being auto-created when IPv6 disabled in config
I'll try to reword it, but "allow" and "blocked" imply firewall actions, "disabled" would imply features being shut o... Jim Pingle
08:07 AM Bug #2874: IPv6 permissive rules being auto-created when IPv6 disabled in config
The narrative reads "All IPv6 will be blocked unless this box is checked". That's not the same as "merely blocks by d... Stilez y
07:49 AM Bug #2874 (Rejected): IPv6 permissive rules being auto-created when IPv6 disabled in config
"Allow IPv6" is not a master switch to disable IPv6 functions. It merely adds a block rule to prevent IPv6 from passi... Jim Pingle
07:44 AM Bug #2874 (Rejected): IPv6 permissive rules being auto-created when IPv6 disabled in config
Some automatic IPv6 rules still get created if IPv6 is disabled (not clear if this is intentional). Two examples: the... Stilez y
08:45 AM Bug #2332 (New): gateways always renamed to "dynamic". Implement proper IPv6 support
Renato Botelho
08:44 AM Bug #2377 (Closed): Captive portal fails on empty RADIUS password
Renato Botelho
08:42 AM Bug #2627 (New): Old delegated prefixes are not removed from the LAN interface
Renato Botelho
08:40 AM Bug #2843 (Resolved): Easy Rule: Pass failed for IPv6
I checked and it's fixed. Renato Botelho
08:32 AM Feature #2859 (New): Allow to configure different mac addresses for multiple VLANs on same physical interface
Renato Botelho
08:14 AM Revision d06be1a7: Do more strick checks for avoiding http://forum.pfsense.org/index.php/topic,59847.0.html
Ermal LUÇI
07:46 AM Bug #2873 (Rejected): IPv6 rules, filter by protocol
IPv6 rules can certainly have 'any' as the protocol, that can and has worked since IPv6 was added.
IPv4+IPv6 rules...
Jim Pingle
07:41 AM Bug #2873 (Rejected): IPv6 rules, filter by protocol
IPv6 rules doesn't allow "any" or "ignore" as valid for protocol in a rule - but there isn't a full TCP/UDP/ICMP filt... Stilez y

03/12/2013

08:50 PM Feature #2858: Do not route rules to default gateway when its own gateway is down
Ah my apologies... Its working as you have written..
Silly me.
I'm assuming that I should now be placing a DEN...
Shawn Bruce
08:03 PM Feature #2858: Do not route rules to default gateway when its own gateway is down
It appears the rules related to gateway OVPNC1 drop when the VPN is stopped/failed. Shawn Bruce
07:36 PM Feature #2858: Do not route rules to default gateway when its own gateway is down
Could you show me /tmp/rules.debug in 2 different moments, when OVPN is up and when it's down? Renato Botelho
07:00 PM Feature #2858: Do not route rules to default gateway when its own gateway is down
Wow thanks for working to add this!
I've applied the patch to pfSense-2.1-BETA1-amd64-20130312-0847 and it does no...
Shawn Bruce
09:40 AM Feature #2858 (Feedback): Do not route rules to default gateway when its own gateway is down
Applied in changeset commit:a1f735b31c8f7f0cca0ebc5a7153cd06cdf4482e. Renato Botelho
09:37 AM Feature #2858: Do not route rules to default gateway when its own gateway is down
It's the expected behaviour today, so change it to a Feature and adjust Subject as well Renato Botelho
07:04 PM Bug #2871 (Rejected): Non returning call : pfSense_get_modem_devices() called by interfaces_ppps_edit.php?id=1
Duplicate of #2433 Jim Pingle
05:55 PM Bug #2871 (Rejected): Non returning call : pfSense_get_modem_devices() called by interfaces_ppps_edit.php?id=1
When setting up a PPPoE WAN on @interfaces.php?if=wan@, there is an option (which also existed in 2.0.1) to set up ad... Stilez y
05:59 PM Revision efc0e29a: Move tmp/var init to just after mount of /cf so that the sizing works properly on NanoBSD. Fix input validation for sizes. Add note about needing a reboot to apply the settings.
Jim Pingle
03:02 PM Feature #2859: Allow to configure different mac addresses for multiple VLANs on same physical interface
Just 4 vlans, 2 wan and 2 lan Bipin Chandra
12:37 PM Feature #2859: Allow to configure different mac addresses for multiple VLANs on same physical interface
Are just VLANs assigned to interfaces (WAN, LAN, OPTx) or the parent nic is also assigned to any interface? Renato Botelho
02:37 PM Revision a1f735b3: Do not route do default gw when rule gw is down
- Add a new advanced misc option to change the behaviour
- When it is set and rule has its own gateway, that is down,...
Renato Botelho
02:04 PM Revision 4f537e93: Fix indent and whitespaces
Renato Botelho
12:45 PM Feature #1550 (Resolved): used + active + ready should match # of tickets
Renato Botelho
12:44 PM Bug #2756 (Closed): SNMPD problems when binding pppoe interface
Renato Botelho
06:48 AM Revision ac135e42: use logging on the block all v6 rules if default is log
Chris Buechler
04:35 AM pfSense Packages Bug #2870 (Rejected): External DNS server always takes precedence over internal servers
description isn't true, and it's not a bug, rather need to fix your config. Please post to the forum or mailing list ... Chris Buechler
04:23 AM pfSense Packages Bug #2870 (Rejected): External DNS server always takes precedence over internal servers
I have a set-up where pfSense runs between a DSL router (WAN interface) and an internal domain with multiple DNS serv... Jan Christoph Ebersbach
03:12 AM Feature #2869 (Resolved): LDAP user authentication backend doesn't support membership lookups by querying the group
As far as I understood the LDAP authentication backend, the group membership needs to be stored in an attribute of th... Jan Christoph Ebersbach
02:16 AM Revision e92e83d4: Add the ability for full installs to optionally use RAM disks for /tmp and /var, and to allow selecting a size for /tmp and /var RAM disks on both Full installs and NanoBSD.
I think I caught most of the edge cases for transitioning into and out of RAM disk mode, and preserving data across r... Jim Pingle

03/11/2013

02:44 PM Revision 94ca4e0d: Be more careful when performing a ping to use the correct ping type if an IP address is entered.
Jim Pingle
12:23 PM Bug #2867: Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HD + sizeable RAM
That's possible, but could you reconsider your rejection?
It *is* a problem with the installer. A user who follows...
Stilez y
12:09 PM Bug #2867 (Rejected): Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HD + sizeable RAM
Easy install always defaults to 2x RAM size for swap. A custom installation is needed for anything that doesn't fit t... Jim Pingle
11:59 AM Bug #2867 (Rejected): Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HD + sizeable RAM
Clean 2.1 install, but existed in 2.01 as well, and I'm guessing all.
Per sizing requirements, I used a 2 GB SSD m...
Stilez y
12:10 PM Bug #2866 (Rejected): Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HDlarge RAM installations
Duplicate of #2867 Jim Pingle
11:55 AM Bug #2866: Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HDlarge RAM installations
Sorry, lcicked OK part way, please delete this, I'll re-enter it Stilez y
11:54 AM Bug #2866 (Rejected): Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HDlarge RAM installations
Stilez y
12:03 PM Bug #2868 (Closed): Inescapable loop in installer
See http://forum.pfsense.org/index.php/topic,59909.msg322186.html#msg322186
Appears in 2.1, I'm guessing all versi...
Stilez y
10:14 AM Feature #2849: IKEv2 support for IPsec
I read about it. I am still worried, about MOBIKE (isnt it important for roaming roadwarriors) and the absense (?) of... Georgios Tsalikis
07:30 AM Bug #2495 (New): pfsense doesn't seem to know what its WAN IP is
Renato Botelho
06:25 AM Revision 6db58224: move the "block all v6" rules back to where they should be, fix comment
Chris Buechler
01:46 AM Revision a876f1ed: point to new github repo
Chris Buechler
01:44 AM Revision d5280de6: update github repo location
Chris Buechler

03/10/2013

07:20 PM Feature #2849: IKEv2 support for IPsec
Another option for IKEv2 would be the portable version of OpenBSD's OpenIKED
https://github.com/reyk/openiked
-...
Dim Hatz

03/09/2013

08:53 PM Revision 8436f2e3: Fix spelling.
Jim Pingle
05:01 PM Bug #2647 (Closed): rc.newwanip discovers wrong WAN IP when using DHCP
duplicate of #2495 Chris Buechler
11:50 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
It was fixed on Jan 31, See #2495 - if it's still broken on 2.1 using a current snapshot, reply there, since that's a... Jim Pingle
11:32 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
Yeah, I tried this on 2.1 from March 7th and January 27th.
Please tell me if you need more information.
Christoph Filnkößl
11:28 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
Have you tried this on 2.1, as recommended? Quite a lot of work went into fixing these kinds of bugs there. Specifica... Jim Pingle
08:57 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
ok, I tried to find the bug myself.
As we need to use DHCP on WAN (Cable Source-Verify) the address is being renewed...
Christoph Filnkößl
12:33 PM Revision 6062f0f3: Merge pull request #480 from phil-davis/master
Services Status Widget remove leftover > Ermal Luçi
11:59 AM Bug #2495: pfsense doesn't seem to know what its WAN IP is
Jim guided me here - I have got a similar problem on the recent 2.1-snapshot (March 7th).
Details are already descri...
Christoph Filnkößl
11:57 AM pfSense Packages Bug #2865 (Rejected): openvpn ping-restart option for TAP interface
That disconnect is the management GUI view of the connected clients. It is not disconnecting your actual client.
...
Jim Pingle
11:50 AM pfSense Packages Bug #2865 (Rejected): openvpn ping-restart option for TAP interface
If tap interface used other side of the tunnel never will be pinged.
But openvpn server instance by default sends
...
Stepan Karandin
10:20 AM Revision bb9aaf95: Services Status Widget remove leftover >
Phil Davis
03:00 AM pfSense Packages Todo #2864 (Rejected): Port binding for openvpn
duplicate Chris Buechler
02:37 AM pfSense Packages Todo #2864 (Rejected): Port binding for openvpn
2.0.2-RELEASE (i386)
built on Fri Dec 7 16:30:29 EST 2012
FreeBSD 8.1-RELEASE-p13
When trying to bind second ope...
Stepan Karandin
12:44 AM Revision 70fee79c: fix text. Fixes #2863
Chris Buechler

03/08/2013

07:35 PM Revision 99dcc489: Use the process name rather to avoid the infamous file not found error
Warren Baker
07:13 PM Revision 6e0fc523: Merge pull request #479 from ExolonDX/master
Use HTMLENTITIES to deprecate the ampersand in page title URI Jim Pingle
06:50 PM Revision a1560c1b: Use HTMLENTITIES to deprecate the ampersand
Colin Fleming
06:50 PM Bug #2863: Wrong heading for system_gateway_groups_edit.php
Applied in changeset commit:70fee79c520702571be842f16708f3bcdaf11601. Chris Buechler
06:43 PM Bug #2863 (Feedback): Wrong heading for system_gateway_groups_edit.php
should be fixed, thanks Chris Buechler
06:29 PM Bug #2863: Wrong heading for system_gateway_groups_edit.php
It also says "Edit gateway entry" instead of "Edit gateway group entry". Patrick Linstruth
06:24 PM Bug #2863 (Resolved): Wrong heading for system_gateway_groups_edit.php
When editing a gateway group, the header is displayed as "System: Gateways: Edit gateway".
It should probably be "...
Patrick Linstruth
05:41 PM Revision 60cd1864: Ignore vim swap files
Renato Botelho
01:54 PM Revision 76254caa: Be consistent on vlan checks
Renato Botelho
01:48 PM Revision f5c2bf1e: Fix logic inversion from 126ff5b264
Renato Botelho
01:48 PM Revision 43c6c9af: Check if MTU is already with correct value before change it
Renato Botelho
01:48 PM Revision be2c39b6: When parent is not assigned, reset it and all vlans without mtu set to default
Renato Botelho
01:48 PM Revision 3f3252f6: When reset parent to default mtu, deal with all VLANs too
Renato Botelho
01:48 PM Revision a976c633: Set vlanifs early and use it on more places to simplify logic
Renato Botelho
01:48 PM Revision 20eb8203: Consider parent mtu when it's set instead of default one
Renato Botelho
01:47 PM Revision 5ee6ce25: Simplify a bit the logic
Renato Botelho
01:47 PM Revision 1f9ecbcd: Pass parent interface to link_interface_to_vlans
Renato Botelho
01:47 PM Revision 8306b774: Fix typo on var name
Renato Botelho
01:47 PM Revision a1d36777: Fix typo s/assgined/assigned/
Renato Botelho
01:31 PM Revision 7965c38f: Be consistent on the check
Ermal LUÇI
01:30 PM Revision a58a9ece: Be consistent on the check
Ermal LUÇI
01:20 PM Revision b783eaf2: Prevent mtu bigger than 9000
Ermal LUÇI
08:45 AM Revision a362a23a: Solve the issue when changing vlan parent mtu and leaving its childs with older mtu.
Ermal LUÇI
05:02 AM Feature #2859: Allow to configure different mac addresses for multiple VLANs on same physical interface
how to do that coz i have just one nic and 4 VLANS configured on it, 2 WAN and 2 LAN Bipin Chandra
04:54 AM Feature #2859 (Feedback): Allow to configure different mac addresses for multiple VLANs on same physical interface
VLANs follow the same mac address of parent interface. If it's possible, spoof the mac on parent interface to check i... Renato Botelho
02:11 AM Bug #2861 (Resolved): IPSec Status Broken
Chris Buechler
02:09 AM Bug #2861: IPSec Status Broken
Thank you, works fine now. Sebastian Chrostek
01:33 AM Revision ca3301b4: Merge pull request #470 from ExolonDX/branch_01
Tidy up System:General Setup XHTML Jim Pingle
01:32 AM Revision 6ffa67cf: Merge pull request #471 from ExolonDX/branch_02
Tidy up System:Advanced:Admin XHTML Jim Pingle
01:32 AM Revision 8dd57961: Merge pull request #472 from ExolonDX/branch_03
Tidy up System:Advanced:FirewallNat XHTML Jim Pingle
01:31 AM Revision 05f74604: Merge pull request #473 from ExolonDX/branch_04
Tidy up System:Advanced:Network XHTML Jim Pingle
01:30 AM Revision 0202cdda: Merge pull request #474 from ExolonDX/branch_06
Tidy up System:Advanced:Tunables XHTML Jim Pingle
01:30 AM Revision 6a03a312: Merge pull request #475 from ExolonDX/branch_07
Tidy up System:Advanced:Notifications XHTML Jim Pingle
01:29 AM Revision f7830817: Merge pull request #476 from ExolonDX/branch_08
Tidy up System:Advanced:Misc XHTML Jim Pingle

03/07/2013

09:23 PM Revision 481e09b3: Tidy up System:Advanced:Misc XHTML
Close BR tags
Close INPUT tags
Update CDATA secions in script tags
Update HTML boolean operators
Colin Fleming
09:14 PM Revision 846ac60f: Tidy up System:Advanced:Notifications XHTML
Close INPUT tags Colin Fleming
09:08 PM Revision a5a61609: Tidy up System:Advanced:Tunables XHTML
Deprecate ampersand
Close INPUT tags
Colin Fleming
08:56 PM Revision 3410a6c5: Tidy up System:Advanced:Network XHTML
Close BR tags
Update CDATA sections in script tags
Update HTML boolean operators
Colin Fleming
08:51 PM Revision 8712fab6: Tidy up System:Advanced:FirewallNat XHTML
Close BR tags
Updated HTML boolean operators
Colin Fleming
08:41 PM Revision 3c119b78: Tidy up System:Advanced:Admin XHTML
Added proper CDATA sections to scripts
Updated HTML boolean operators
Close BR tagas
Close INPUT tags
Colin Fleming
08:32 PM Revision 925020e7: Tidy up System:General Setup XHTML
Close INPUT tags
Tidy up HTML boolean operators
Colin Fleming
06:53 PM Revision af8d854c: Fix variable name reference, fixes port display after lan IP reset.
Jim Pingle
06:43 PM Revision c988ed09: Merge pull request #469 from phil-davis/master
Fix stale bandwidth-by-IP table entries Jim Pingle
06:25 PM Revision 5356362c: Fix stale bandwidth-by-IP table entries
When the number of valid rows in the table reduced by more than 1 between updates, stale entries were left displayed ... Phil Davis
03:36 PM Bug #2712: Openvpn and Quagga cause route collision and race condition
I'm also experiencing this issue and applied the patch.
However, there is still a related issue. (I did not file thi...
Johan Braeken
02:21 PM Revision 1dedfdd1: More fixes
Ermal LUÇI
02:18 PM Revision 2c07529a: Remove debug code
Ermal LUÇI
02:17 PM Revision 6d1594eb: Correct code to apply the mtu correctly
Ermal LUÇI
01:59 PM Revision 4ffa46bf: Correctly handle mtu changing between vlans
Ermal LUÇI
01:28 PM Revision 0d0d4a27: Validate MTU changes for VLANs and let user change it again
Renato Botelho
01:18 PM Revision 6696d2cd: Change parent only if its mtu is smaller
Ermal LUÇI
01:17 PM Revision c9e33dd3: Merge pull request #468 from phil-davis/master
Bandwidth by IP - allow filter by local and remote Jim Pingle
01:08 PM Revision da11e022: Bandwidth by IP - allow filter by local and remote
Phil Davis
01:05 PM Revision a02ce260: Bandwidth by IP - allow filter by local and remote
Phil Davis
12:04 PM Revision e17e1b8a: Skip vlan checks for being configured vlan as well
Ermal LUÇI
12:02 PM Revision 694f2b72: Only treat interesting interfaces
Ermal LUÇI
12:00 PM Revision 2fff3ba2: Make this work better and not always go over things for setting mtu
Ermal LUÇI
11:46 AM Revision 1e08ce64: Hopefully is correct now
Ermal LUÇI
11:45 AM Revision b1939343: Set mtu to the correct interface
Ermal LUÇI
11:43 AM Revision 672137f4: Correct which mtu value is used to be correct
Ermal LUÇI
11:42 AM Revision 59297ade: Sprinkle some XXX just for being consistent
Ermal LUÇI
11:40 AM Revision d35233da: Correct this behaviour of properly honoring the configured mtu
Ermal LUÇI
10:18 AM Revision f42193a4: Try to fix the issue reported on http://forum.pfsense.org/index.php/topic,59746.0.html
Ermal LUÇI
10:03 AM Revision 1befdbf8: Tune up a bit dhclient-script and call the kill state command only once its enough
Ermal LUÇI
09:48 AM Revision eff8ea7d: Merge pull request #467 from phil-davis/master
Bandwidth by IP - display static map names also when FQDN selected rbgarga
09:18 AM Revision 2dbd8924: Bandwidth by IP - display static map names also when FQDN selected
If display FQDN was selected, and an IP had no reverse lookup FQDN, but did have a DHCP static mapping, the static ma... Phil Davis
05:20 AM Revision 379ec2f7: Merge pull request #464 from phil-davis/master
Add display by host name option to Traffic Graph Chris Buechler
03:21 AM Revision 8389a461: Traffic Graph add option to display FQDN
Phil Davis
03:19 AM Revision 232d38ab: Traffic Graph add option to display FQDN
It was easy to give the user the choice of displaying IP Address, just the Host Name or the FQDN. And the display wra... Phil Davis
01:57 AM Bug #1629: invalid state table entries after WAN IP change
Same Problem here with 2.1 Beta (built on Fri Mar 1 21:17:31 EST 2013)
It seems that also states without the old I...
Sebastian Chrostek
12:34 AM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Testing was performed on:
2.1-BETA1 (amd64)
built on Wed Mar 6 15:11:09 EST 2013
FreeBSD 8.3-RELEASE-p6
Freshly...
Anonymous
12:11 AM Revision 2158b1ce: Fix gettext/link
Jim Pingle
12:09 AM Revision 386963d5: Merge pull request #462 from N0YB/Diagnostics_Packet_Capture_Promiscuous_Mode_Option
Add Promiscuous Mode Option to Diagnostics Packet Capture Interface Jim Pingle

03/06/2013

09:50 PM Bug #2822: Direction wrong in traffic graph (lan)
Forum thread http://forum.pfsense.org/index.php/topic,59714.0.html
Now the bandwidth by IP display shows separate en...
Phillip Davis
07:05 PM Revision f8c8d65c: Fix issue in version_compare that can cause versions to be wrongly marked incompatible
Stilez y
06:37 PM Revision 30406b49: Merge pull request #465 from stilez/master
Typo in variable name rbgarga
06:29 PM Revision 2379c48e: IPsec status corrections, should fix #2861
Jim Pingle
06:27 PM Revision 1a8c81e7: version_compare_dates(): typo $$a
Stilez y
05:58 PM Revision ba6a4606: Fix doubled $
Jim Pingle
04:29 PM Bug #1629: invalid state table entries after WAN IP change
I’ve upgraded to the latest beta, but the problem still persists. Even when the modem is restartet and i don’t get a ... Matthias Dilbert
03:02 PM Revision c16f7c5c: Add display by host name to Traffic Graph
Phil Davis
01:41 PM Revision 4006a437: Add display by host name to Traffic Graph
Phil Davis
01:37 PM Revision 3697adb2: Print the error message from LDAP in the log for a bind failure.
Jim Pingle
01:06 PM Revision b710a078: Merge pull request #463 from phil-davis/master
Add DNS Forwarder option to not forward private reverse lookups Jim Pingle
12:30 PM Bug #2861 (Feedback): IPSec Status Broken
Applied in changeset commit:2379c48e139eeebabd098a5d17062d8c463afe70. Jim Pingle
12:18 PM Bug #2861: IPSec Status Broken
on debugging this i saw another strange behaviour with this function:
function ipsec_fixup_ip($ipaddr) {
...
Sebastian Chrostek
11:53 AM Bug #2861: IPSec Status Broken
the following two lines are also affected:
elseif (is_ipaddrv6($sp_*src*id))
$sp_dstid .= '/128';
should look ...
Sebastian Chrostek
11:48 AM Bug #2861 (Resolved): IPSec Status Broken
Hi,
there is a bug in
/etc/inc/ipsec.inc
on line 409
the lines
if (!strstr($sp_dstid,"/")) {
if (is_ipad...
Sebastian Chrostek
12:14 PM Revision 0a7985ba: Add DNS Forwarder option to not forward private reverse lookups
Phil Davis
12:11 PM Revision 7bdd28fb: Add DNS Forwarder option to not forward private reverse lookups
Currently, reverse lookups of private IP addresses that are not resolved on the pfSense box itself (e.g. like 192.168... Phil Davis
12:10 PM Revision dcddb2fa: You can have multiple 6rd tunnels now days
Ermal LUÇI
09:35 AM Bug #2860 (Closed): packages don't get restored
I have a box with pfSense 2.0.2 with several packages installed:
arping
Cron
mtr-nox11
OpenVPN Client Export Util...
Alex Kolesnik
09:34 AM Revision 8d64d6b5: Add Promiscuous Mode Option to Diagnostics Packet Capture Interface
Also fix couple mismatched table cell tags
Some NIC's do not work well if placed into promiscuous mode
N0YB
08:54 AM Feature #2847: Add a checkbox to flag a gateway as "down"
+1 same here sometimes i would like to disable my UMTS gateway a few days because of the bandwidth limit. Claudius Badmind
08:37 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
Could you help us here?
pfSense is loosing connectivity completely now and then.
Please tell me if there's anythi...
Christoph Filnkößl
07:32 AM Bug #1053: CBQ per se, in kernel
hes back again so any clue on the cost Bipin Chandra
06:04 AM Feature #1855: NAT before IPsec VPN
Hi, sorry for this later testing.
I have figured out how to test it without upgrading to 2.1 in my production envir...
Michele Di Maria
04:10 AM Revision 2459be50: clean up text a bit, make link more apparent
Chris Buechler
04:06 AM Revision 0f7668fb: DNS servers are optional
Chris Buechler
04:06 AM Revision 9cd89a2d: descr is optional
Chris Buechler
03:27 AM Bug #2832: Gateway status fails when 2 WANs have the same gateway.
Ermal Luçi wrote:
> Why do you have static gateways for your pppoe?
> Please take this to the forums since its a co...
Mathieu Déom
03:15 AM Feature #2117 (New): 6RD support for ISPs like Swisscom
this wasn't for 6rd in general as I thought, rather a diff type.
Chris Buechler

03/05/2013

11:02 PM Feature #2859 (Duplicate): Allow to configure different mac addresses for multiple VLANs on same physical interface
i have a pppoe connection and my isp requires to spoof a fixed mac but it doesnt seem to work when using vlans, witho... Bipin Chandra
10:11 PM Bug #319 (Closed): system_usermanager privilege not working as expected
Chris Buechler
10:09 PM Bug #2067 (Resolved): pppoe-binding deleted
been fixed at some point since then Chris Buechler
10:08 PM Bug #2786 (Resolved): Setting MTU on VLAN does not set MTU on parent interface in 2.2
Chris Buechler
10:04 PM Bug #2364 (Resolved): PPPoE Server doesn't restart correctly
Chris Buechler
09:58 PM Bug #1284 (Resolved): Syslog does not work with CLOG disabled
works Chris Buechler
09:36 PM Bug #1153 (Resolved): Re-assignment of bridge interfaces should be restricted
Chris Buechler
09:28 PM Feature #2117 (Resolved): 6RD support for ISPs like Swisscom
Chris Buechler
09:28 PM Feature #1855 (Closed): NAT before IPsec VPN
works Chris Buechler
09:27 PM Bug #2414 (Resolved): IPv6 DHCP WAN, issue routing firewall-generated traffic
Chris Buechler
09:27 PM Feature #2413 (Resolved): Allow IPv6 interface configuration from the menu
Chris Buechler
09:26 PM Bug #2797 (Resolved): IPsec "connect" button does not work for IPv6
works Chris Buechler
09:20 PM Bug #2362 (Resolved): Deleting last/only port forward doesn't remove from secondary
Chris Buechler
09:06 PM Feature #2858 (Closed): Do not route rules to default gateway when its own gateway is down
Current Behavior:
When an OVPN client connection goes down, any policy based routing rules pointing to the ovpnc gat...
Shawn Bruce
09:06 PM Bug #2555: check_reload_status consumes 100% CPU usage
Unfortunately I have moved on from pfsense so I can't recheck to see if this has been resolved in later versions stil... Snowy Maslov
09:03 PM Bug #2555 (Resolved): check_reload_status consumes 100% CPU usage
There are a wide range of issues unrelated to check_reload_status that can cause this. At the time of the original re... Chris Buechler
08:56 PM Bug #2746 (Resolved): IPv6 IPSEC shows down but is actually not...
look to all work Chris Buechler
08:55 PM Bug #2805 (Resolved): Firewall Rules Interface select causes javascript error
Chris Buechler
08:54 PM Bug #2574 (Closed): Failure of secondary radius server causes PPTP authentication to hang even if primary is working!
problem as described doesn't actually exist. Guessing a GRE NAT issue from the description. Chris Buechler
08:52 PM Bug #2682 (Closed): User Manager server settings appear/disappear randomly, although they still appear to work in 2.1
Chris Buechler
08:52 PM Bug #2816 (Resolved): "none" is not a valid local P2 setting
Chris Buechler
08:49 PM Bug #2842 (Resolved): IPsec status broken
Chris Buechler
08:48 PM Feature #814 (Resolved): GUI should allow to bind openvpn on different ip same port
Chris Buechler
08:47 PM Bug #2518 (Resolved): Gateway in DHCP Server Doesn't Use Default Setting
Chris Buechler
08:43 PM Bug #2677 (Resolved): Dyndns debug file written with ascii string \n instead of line-feed
Chris Buechler
08:42 PM Bug #2804 (Resolved): firewall_rules.php
Chris Buechler
08:42 PM Feature #2768 (Resolved): Don't allow adding IP Alias or CARP VIP on network or broadcast addresses
Chris Buechler
08:41 PM Bug #2836 (Resolved): encrypted backups with RRD data are unrestorable
Chris Buechler
08:40 PM Bug #2837 (Resolved): Interface group rules are incorrectly ordered in the ruleset
Chris Buechler
07:57 PM Revision 1fadb9d1: Remove old ip information even from the tracking interface as well so that track6 config code does not get confused. Fixes #2627
Ermal LUÇI
07:53 PM Revision afe4f2da: Remove old ip information so that track6 config does not get confused. Fixes #2627
Ermal LUÇI
07:30 PM Revision efd60dc4: Merge pull request #461 from ExolonDX/branch_32
Tidy up "wol" widget XHTML Jim Pingle
07:29 PM Revision d4a5f36b: Merge pull request #460 from ExolonDX/branch_31
Tidy up "smart" widget XHTML Jim Pingle
07:29 PM Revision 2686516d: Merge pull request #459 from ExolonDX/branch_30
Tidy up "services" widget XHTML Jim Pingle
07:26 PM Revision e0977d20: Merge pull request #458 from ExolonDX/branch_28
Tidy up "picture" and "rss" widget XHTML Jim Pingle
07:24 PM Revision 23b531c6: Merge pull request #457 from ExolonDX/branch_27
Tidy up "log" widget XHTML Jim Pingle
07:24 PM Revision 8bca8c46: Merge pull request #456 from ExolonDX/branch_26
Tidy up "ipsec" and "load balancer" widgets XHTML Jim Pingle
07:23 PM Revision 800a628e: Merge pull request #455 from ExolonDX/branch_25
Tidy up "gmirror" and "installed packages" widgets XHTML Jim Pingle
07:22 PM Revision 456bae65: Merge pull request #454 from ExolonDX/branch_23
Tidy up "gateways" widgets XHTML Jim Pingle
07:22 PM Revision 6af76e87: Merge pull request #453 from ExolonDX/branch_22
Tidy up "carp_status" widget XHTML Jim Pingle
07:17 PM Revision a038e6b4: Merge pull request #452 from ExolonDX/branch_21
Tidy up "captive portal" widget XHTML Jim Pingle
07:12 PM Revision ebaf7d05: Tidy up "wol" widget XHTML
Added summary to table tag
Added ALT to img tag
Closed IMG tag
Moved nowrap to class definition
Deprecated the ampers...
Colin Fleming
07:07 PM Revision 7aff41fe: Give the rules their own number and swap table numbers to correct statistics gathering.
Ermal LUÇI
07:03 PM Revision 623ee867: Tidy up "smart" widget XHTML
Added a new include file.
Added summart to table tag
Colin Fleming
06:56 PM Revision bb877f44: Tidy up "services" widget XHTML
Added ALT to img tags
Closed off IMG tags
Deprecated the ampersand in HREF tag
Added summary to table tags
Moved nowr...
Colin Fleming
06:38 PM Revision eabce399: Tidy up widget XHTML
Close input tags
Change target _NEW to _BLANK
Add ALT to img tags
Add CDATA sections to scipts.
Changed name in FORM ...
Colin Fleming
06:25 PM Revision 59261d32: Tidy up "log" widget XHTML
Add CDATA section to scripts
Close INPUT tag
Deprecate HTML boolean operators SELECTED and CHECKED
Removed duplicate ...
Colin Fleming
06:15 PM Revision ab28bba4: Tidy up widgets XHTML
Add summary to TABLE tags
Moved nowrap to class definition
Colin Fleming
06:12 PM Revision 8c5a9058: Tidy up widgets XHTML
Added summary to TABLE tags
Closed BR tags
Added alt to IMG tags
Tidied up CDATA section in scritps.
Colin Fleming
05:42 PM Revision 8e4bb27f: Tidy up "gateways" widgets XHTML
Added summary to table tags
Created new INC file to jump from the dashboard to the gateway status
page
Colin Fleming
05:32 PM Revision 7a1f4f1f: Tidy up "carp_status" widget XHTML
Add ALT to img tags
Close img tags
Colin Fleming
05:28 PM Revision 0b1d867b: Tidy up "captive portal" widget XHTML
Depracated the ampersand in HREF
Move nowrap to the class definition.
Colin Fleming
05:18 PM Revision 09644517: Merge pull request #451 from ExolonDX/branch_05
Tidy up "interface status" widget XHTML Jim Pingle
05:16 PM Revision 08fe64a1: Merge pull request #450 from ExolonDX/branch_04
Tidy up "interface_statistics" widgets XHTML Jim Pingle
05:09 PM Revision 44076525: Merge pull request #449 from ExolonDX/branch_03
Tidy up "shortcuts.inc" XHTML Jim Pingle
05:08 PM Revision 319f65ec: Tidy up widget XHTML
Close BR tag
Close INPUT tag
Depcrated ampersand in HREF
Added ALT to img tag
Added close body tag
Added close htm tag
Colin Fleming
05:04 PM Revision 3f716aa6: Merge pull request #448 from ExolonDX/branch_01
Tidy up "system_information" widgets XHTML Jim Pingle
04:58 PM Revision bb1a8946: Tidy up widget XHTML
Removed duplicte TR tag
Move norwap to the class definition.
Colin Fleming
04:52 PM Revision 94fbacae: Tidy up XHTML
Added ALT to img tag Colin Fleming
04:32 PM Revision 9c07440e: Tidy up widgets XHTML
Close BR tag
Add CDATA sections to scripts
HTML width paramter must be a whole number, not a decimal.
Colin Fleming
03:25 PM pfSense Packages Bug #2857: webConfigurator openvpn form multiplication
It's easy to reinstall this package at System: Package Manager. I guess additional warning will be fine.
Is it enou...
Stepan Karandin
02:28 PM pfSense Packages Bug #2857 (Rejected): webConfigurator openvpn form multiplication
You have somehow installed the tap fix package multiple times. Not a GUI bug. Jim Pingle
02:19 PM pfSense Packages Bug #2857: webConfigurator openvpn form multiplication
... Stepan Karandin
02:08 PM pfSense Packages Bug #2857 (Rejected): webConfigurator openvpn form multiplication
2.0.2-RELEASE (i386)
built on Fri Dec 7 16:30:29 EST 2012
FreeBSD 8.1-RELEASE-p13
https://*/vpn_openvpn_server.p...
Stepan Karandin
03:17 PM Bug #2412: inbound 6to4 traffic does not work in pf
Can you be more specific on qwhat does not work? Ermal Luçi
02:00 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Applied in changeset commit:1fadb9d1129b68572e04c3fd7b12fe4bd0098519. Ermal Luçi
02:00 PM Bug #2627 (Feedback): Old delegated prefixes are not removed from the LAN interface
Applied in changeset commit:afe4f2da5079fc68cd0fcdb8d5ba65b173dd5726. Ermal Luçi
01:06 PM Bug #2780 (Feedback): CP: passthough has no effect
Ermal Luçi
01:00 PM Bug #2822: Direction wrong in traffic graph (lan)
Applied in changeset pfsense-tools:commit:d09e8fddd50e95f731f7cef8d1db92ba1b4f2398. Ermal Luçi
12:49 PM Bug #2822 (Feedback): Direction wrong in traffic graph (lan)
Patch pushed test with new snapshots. Ermal Luçi
12:10 PM Bug #2832 (Closed): Gateway status fails when 2 WANs have the same gateway.
Why do you have static gateways for your pppoe?
Please take this to the forums since its a configuration issue rathe...
Ermal Luçi
11:49 AM Revision bcab1b07: Make get_static routes behave correctly with aliases
Ermal LUÇI
11:03 AM Revision 46209e0b: Make sure some value is present here during boot
Ermal LUÇI
10:38 AM Revision 695aa325: Merge pull request #447 from phil-davis/master
DNS Forwarder allow blank forwarding IP address Ermal Luçi
09:46 AM Revision 5f5bd76b: DNS Forwarder example text
It was a bit silly putting the examples inside gettext() calls - they should not be translated to other languages in ... Phil Davis
09:17 AM Revision 4560c2d1: DNS Forwarder allow null forwarding address
dnsmasq allows a blank forwarding IP address to be specified in --server parameters. In that case, dnsmasq will attem... Phil Davis
09:02 AM Revision 6f8679af: DNS Forwarder allow null forwarding address
dnsmasq allows a blank forwarding IP address to be specified in --server parameters. In that case, dnsmasq will attem... Phil Davis
07:57 AM Bug #2641: mac spoof on wan (pppoe) doesnt spoof
this ticket needs to be opened again as mac spoofing when working with vlans stopped working, ill try without vlans t... Bipin Chandra

03/04/2013

09:20 PM Revision e82e8700: Merge pull request #446 from un0x/master
Added IE Mobile for WP8 to list of mobile browsers Jim Pingle
07:56 PM Revision 9b64b52d: Use the correct interface number (old code broke for >= 10)
Jim Pingle
07:55 PM Revision 7f078046: Use the correct interface number (old code broke for >= 10)
Jim Pingle
12:57 PM Revision e12ad49f: Save ppp info and realif on interfaces.apply to be able to cleanup old configuration when changing interface type. Fixes #2758
Renato Botelho
12:50 PM Revision 4a735210: Make parent interface and all VLANs use the same MTU. Fixes #2786
Renato Botelho
12:37 PM Revision 74889b22: When adding a new static route, check if network address conflicts with interfaces. It will complement ticket #2852
Renato Botelho
12:08 PM Revision e480d64b: Fix validation of conflict between interface ip address and static routes. Fixes #2852
Renato Botelho
11:50 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
Sorry for the noise, you are right. Thanks for the superfast support. Daniel Migowski
11:48 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
System > Cert Manager, Certificates tab.
Read the notes carefully when it prompts you to delete the user certifica...
Jim Pingle
11:47 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
Please reopen, I am willing to provide further info if you need some. Daniel Migowski
11:45 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
For the preceeding comment... Daniel Migowski
11:45 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
This is not a browser issue. There was never more than one not deleted cert active, and this is what I get (See attac... Daniel Migowski
11:39 AM pfSense Packages Bug #2855 (Rejected): OpenVPN Client Export Utility shows deleted user certificates
Unable to reproduce the problem. Please post in the forum for more help.
Deleted certificates are no longer in the...
Jim Pingle
11:35 AM pfSense Packages Bug #2855 (Rejected): OpenVPN Client Export Utility shows deleted user certificates
I am using the OpenVPN Client Export Utility v1.0.4, and created a few certs for users, but these deleted certificate... Daniel Migowski
11:38 AM pfSense Packages Bug #2856 (Resolved): OpenVPN Client Export Utility does not handle Spaces in Common Name (CN) of user certificate
I am using the OpenVPN Client Export Utility v1.0.4, and tried to create an "archive" export (the one with the .ovpn-... Daniel Migowski
11:30 AM Revision b241b144: Merge pull request #445 from phil-davis/master
Services status widget display 1st sentence of description rbgarga
10:09 AM Revision 41af581e: Services status widget display 1st sentence of description
Some packages (e.g. bandwidthd, dansguardian, HAVP, nmap, squid3...) have a very verbose package description. This is... Phil Davis
09:25 AM Revision 397bff13: Merge pull request #436 from phil-davis/master
Add DynDNS No-IP Free account support Chris Buechler
07:21 AM Bug #2854 (Duplicate): squid with multi wan doesnt work as intended, will route out of default wan1 inspite of configuring it to router out of wan2
squid always routes out of default wan1 in spite of it configured in transparent mode and local ip set to loopback an... Bipin Chandra
07:00 AM Bug #2758 (Feedback): Old configuration remains when changing interface type
Applied in changeset commit:e12ad49f4621ec9e99ca829c2d7188ad456638f8. Renato Botelho
06:50 AM Bug #2786 (Feedback): Setting MTU on VLAN does not set MTU on parent interface in 2.2
Applied in changeset commit:4a7352101fbd6901b46a3b6a9a3c00d23b75f0e1. Renato Botelho
06:40 AM Bug #2852 (Feedback): interfaces.php static route check too strict
Applied in changeset commit:e480d64bc5eb7a9accaad93b8845df1bf8bbb2f3. Renato Botelho
06:31 AM Feature #2853 (Rejected): OpenVPN RADIUS accounting
Duplicate of #1434 Jim Pingle
03:49 AM Feature #2853: OpenVPN RADIUS accounting
it's not designed to, hence a feature request. Chris Buechler
03:42 AM Feature #2853 (Rejected): OpenVPN RADIUS accounting
OpenVPN Server dose not send accounting packet for radius. Nima Mohammadi
02:49 AM pfSense Packages Bug #2624: Varnish3 Package + GUI seems broken
Pull request #396 solves this Torben Hørup
01:22 AM Revision 672d7e7b: Config file formating:
FIX - Add new line after comment so first option statement is on uncommented line.
Prefix send host-name with tab.
N0YB
01:02 AM Revision 96a7ddb7: Fix GPS lat/lon code to properly convert to the format Google wants for the link.
Jim Pingle

03/03/2013

05:26 PM Revision 8588508a: Merge pull request #444 from mdima/master
Just make the page validate as XHTML Jim Pingle
02:50 PM Revision 84903059: Just make the page validate as XHTML
The only XHTML errors remaining are the ones of the general includes.  Michele Di Maria
01:20 PM pfSense Packages Feature #2220: Varnish 3 does not have the ability to change vcl_deliver function
Nice one, but you will get more success on getting it into main branch if you create a pull request with the changes. Torben Hørup
12:52 PM pfSense Packages Bug #2624: Varnish3 Package + GUI seems broken
the LB director page is broken by this commit https://github.com/bsdperimeter/pfsense-packages/commit/9b20c9278aaf542... Torben Hørup
09:53 AM pfSense Packages Bug #2851: Varnish3 config: add option to disable probing
Pull request added: https://github.com/bsdperimeter/pfsense-packages/pull/393 Torben Hørup
05:47 AM Bug #2852 (Resolved): interfaces.php static route check too strict
interfaces.php checks for "This IPv4/IPv6 address conflicts with a Static Route" are too strict. Rather than only che... Chris Buechler
 

Also available in: Atom