Project

General

Profile

Activity

From 03/03/2013 to 04/01/2013

04/01/2013

09:08 PM Bug #1351: Mobile IPsec no traffic pass trough after 2nd connect after 5 minutes
Running pfSense 2.0.2 stable with same IPsec tunnel issue (no tunnel data on reconnect, racoon restart needed)
I f...
Roy Blüthgen
08:18 PM Bug #2919 (Resolved): IPv6 - WAN and LAN (DHCP-PD) does not renew address
The WAN DHCP IPv6 address and LAN DHCP-PD lease time from the provider is 4 days. When the lease expires, pfSense go... David Williams
03:20 PM pfSense Packages Bug #2918 (Rejected): ntpd doesn't sync if not bound to any interface
When no interfaces are selected under Services=>NTP, in attempt to use NTP only for timekeeping on the server itself,... Øyvind Hvidsten
02:01 PM Feature #2765 (Resolved): Allow generation an x509 certificates with an SHA256 signature hash
Jim Pingle
11:12 AM Bug #2914: Gateway Group Name change causes all rules and OpenVPN interfaces using that group to be invalid
I actually have code that does the rename through the config. I couldn't submit a pull request because it touches the... Phillip Davis
10:03 AM Bug #2914: Gateway Group Name change causes all rules and OpenVPN interfaces using that group to be invalid
For 2.1 it's better to avoid such a big change, and since a gateway cannot be renamed, apply the same rule for gatewa... Renato Botelho
10:00 AM Bug #2914 (Feedback): Gateway Group Name change causes all rules and OpenVPN interfaces using that group to be invalid
Applied in changeset commit:0ad707c6b93d41bf731c547b49252af4a15a5649. Renato Botelho

03/31/2013

12:11 PM Bug #2412: inbound 6to4 traffic does not work in pf
Update:
Upgraded to today's (March 30) snapshot. Now inbound connections work OK.
A little bit scary, however...
Irving Popovetsky

03/30/2013

07:20 PM Bug #2917 (Rejected): High CPU Usage
not enough here to make this a legit bug report, feel free to start a discussion on the forum or mailing list and if ... Chris Buechler
07:11 PM Bug #2917: High CPU Usage
It appears to be caused by Firefox. As the number of Firefox browsers that are open with pfSense increases, the high... John Higham
06:31 PM Bug #2917 (Rejected): High CPU Usage
2.0.2 running on D525 Atom with virtually zero CPU usage. Atom hardware replaced with Xeon CPU E5504 @ 2.00GHz with ... John Higham

03/29/2013

01:17 AM Bug #2915: OpenVPN server/client not started after WAN physical hotplug event
/etc/rc.openvpn does not get passed the interface, so it has no idea what is going on. I can't see an easy way to get... Phillip Davis

03/28/2013

11:53 PM Bug #2915: OpenVPN server/client not started after WAN physical hotplug event
as long as it only impacts OpenVPN instances on the interface where the event occurred, it should be fine to call res... Chris Buechler
11:52 PM Bug #2915 (Resolved): OpenVPN server/client not started after WAN physical hotplug event
Easy to reproduce - setup OpenVPN client on interface WAN. Have it running connected to a server somewhere. Physicall... Phillip Davis
11:40 PM Bug #2914 (Resolved): Gateway Group Name change causes all rules and OpenVPN interfaces using that group to be invalid
The Group Name is stored directly in the config of firewall rules, OpenVPN interface selection (and elsewhere...?). W... Phillip Davis
11:32 PM Bug #2913 (Resolved): OpenVPN servers and clients not reevaluated when gateway groups settings are saved and applied
I have a gateway group VPNgways with WAN=Tier1, OPT1=Tier2. The OpenVPN servers and clients use interface VPNgways. T... Phillip Davis
04:44 PM Bug #2753: RRD Graphs failes after pfSense upgrade (2.0.1 -> 2.0.2)
Have been watching status on this issue for a couple months, since a similar scenario has applied to my setup as well... Warm Noise
07:20 AM pfSense Packages Bug #2892 (Feedback): "pfblocker_Range2CIDR" function yields erroneous results (pfBlocker v1.0.2)
Applied in changeset commit:e2ec86f40c9573292a46d4ab89ae70e353a99f8f. Phillip Davis
07:05 AM pfSense Packages Bug #2892: "pfblocker_Range2CIDR" function yields erroneous results (pfBlocker v1.0.2)
This pull request should fix it: https://github.com/pfsense/pfsense-packages/pull/415 Phillip Davis

03/27/2013

09:21 PM pfSense Packages Bug #2902: Snort does not update snort.org (basic?) rules. Possibly clock blocking by snort.org for basic subscribers.
Issue is that the 2941 rules are not yet available to registered users, only subscribers. Modify the $snort_rules_fil... Daniel Davis
08:23 PM pfSense Packages Bug #2902: Snort does not update snort.org (basic?) rules. Possibly clock blocking by snort.org for basic subscribers.
Same issue here, have tried the manual update but still no result. Daniel Davis
07:37 PM Feature #2912: Updater handles unsigned updates poorly when used on beta/snapshot releases
indeed it's not possible to do as described, but I've been irked on more than one occasion by it just bailing out wit... Chris Buechler
07:29 PM Feature #2912: Updater handles unsigned updates poorly when used on beta/snapshot releases
There is no way to know or detect the fact that the update is signed or unsigned until it has been fully downloaded. ... Jim Pingle
06:34 PM Feature #2912 (Resolved): Updater handles unsigned updates poorly when used on beta/snapshot releases
Running 2.1 beta, and notified of an available snapshot update, the updater attempts to download the update but only ... Stilez y
07:32 PM pfSense Packages Bug #2892: "pfblocker_Range2CIDR" function yields erroneous results (pfBlocker v1.0.2)
When doing some addtional work, I noticed that I mistyped the CIDR generated by the "pfblocker_Range2CIDR" function -... B. Derman
06:40 AM Feature #1477 (Feedback): IGMPPROXY spamming the main systemlog
Applied in changeset commit:d6307bd38ef0d50caf1d0224a845a206f00da1aa. Ermal Luçi
02:28 AM Bug #2911 (Rejected): pfsense boot error on usb image w/o usb keyboard plugged in
general FreeBSD issue I suspect is likely already fixed in newer versions. If not, it'll have to be reported upstream... Chris Buechler

03/26/2013

07:54 PM Bug #1351: Mobile IPsec no traffic pass trough after 2nd connect after 5 minutes
I was using 2.1 BETA also and experienced the same issue as David Duchscher. I had to revert back to 2.0.2 stable so ... Luli Dushaj
01:36 PM Bug #2911 (Rejected): pfsense boot error on usb image w/o usb keyboard plugged in
I deployed pfSense-2.0.2-RELEASE-4g-amd64-nanobsd_vga.img.gz on a 4gb usb thumbdrive on a Dell XPS 400 with no hard d... Joe Woss
08:14 AM Bug #2900 (Resolved): "Add new gateway" box is not respecting theme color
Renato Botelho
07:50 AM Bug #2900 (Feedback): "Add new gateway" box is not respecting theme color
Applied in changeset commit:4ad1e4ea74f621c01f9997f46ee7dff412dcc817. Renato Botelho
08:11 AM Bug #2890 (Resolved): radvd segmentation fault
Renato Botelho
06:40 AM Bug #2910 (Feedback): monitoring-disabled gateway causes wrong tiered gateway in route-to
Could not reproduce it here using latest snapshot, tier1 was used as expected on rules when it's up. Renato Botelho

03/25/2013

10:49 PM Bug #2905 (Resolved): radvd.conf does not include all configured RDNSS entries
thanks Chris Buechler
09:13 PM Bug #2905: radvd.conf does not include all configured RDNSS entries
Looks like this issue is resolved. Tested with snapshot:
2.1-BETA1 (i386)
built on Mon Mar 25 15:43:19 EDT 2013
...
David Horn
07:40 AM Bug #2905 (Feedback): radvd.conf does not include all configured RDNSS entries
Applied in changeset commit:3d73a44d84accdb2f70abf705aed9b3858292317. Renato Botelho
10:25 PM Bug #2910 (Resolved): monitoring-disabled gateway causes wrong tiered gateway in route-to
When there is a tier 1 gateway that's being monitored, and a tier 2 gateway with monitoring disabled, the system skip... Chris Buechler
11:01 AM pfSense Packages Feature #2908 (Needs Patch): Add nginx package to available for install
It would be really great feature, cause nginx reaaly great web serser with great proxy possibilities.
and now it i...
Y N

03/24/2013

08:32 PM Bug #2905: radvd.conf does not include all configured RDNSS entries
Version Data: (from snapshots)
2.1-BETA1 (i386)
built on Sat Mar 23 22:03:50 EDT 2013
David Horn
08:26 PM Bug #2905 (Resolved): radvd.conf does not include all configured RDNSS entries
The ipv6 RA does not include all configured dns entries from services_router_advertisements.php configuration page.
...
David Horn
06:33 PM Feature #2904 (Resolved): Add checkbox or default option for "verify_identifier on;" on IPsec RSA VPNs
The ASN1DN field on the "peers_identifier" option within racoon.conf can be used to specify which certificate or set ... Jorge Albarenque
03:41 PM pfSense Packages Bug #2903 (Not a Bug): Lightsquid realtime stat 403 error
With a fresh lightquid install (and with several reinstall attempts) I get the following error when attempting to acc... David Gessel

03/23/2013

11:37 AM pfSense Packages Bug #2902: Snort does not update snort.org (basic?) rules. Possibly clock blocking by snort.org for basic subscribers.
*update*
The tar file contains the ...
David Gessel
10:13 AM pfSense Packages Bug #2902 (Resolved): Snort does not update snort.org (basic?) rules. Possibly clock blocking by snort.org for basic subscribers.
Snort 2.9.4.1 pkg v. 2.5.4 on 2.1-BETA1 (i386) built on Fri Mar 22 22:56:09 EDT 2013
I've tested and found this pr...
David Gessel
09:16 AM pfSense Packages Bug #2581: Snort unexpectedly terminates / signal 11 error
I get sig 11 (segmentation fault) failures as well. ... David Gessel
07:22 AM Bug #2901 (Closed): Traffic shaper error results in blocked traffic
I set up the traffic shaper using the wizard, it worked fine for a few hours (4) then at some point started throwing:... David Gessel

03/22/2013

03:00 PM Bug #2900 (Resolved): "Add new gateway" box is not respecting theme color
On Interfaces configuration, when you click "add a new one" to add a new gateway, it's using a hardcoded bg color #99... Renato Botelho

03/21/2013

05:26 PM Bug #2890: radvd segmentation fault
2.1-BETA1 (i386)
built on Thu Mar 21 04:30:58 EDT 2013
FreeBSD 8.3-RELEASE-p6
Updated to the above version and r...
Mike Cherry
03:50 PM Bug #2891 (Rejected): Limiter does not work with high speed
Renato Botelho
03:04 PM Bug #2891: Limiter does not work with high speed
Forgot to tell that I did a total rekonfiguration but have tried to rekosntruct the limiter issue. I think you are ri... Anders Tillebeck
03:04 PM Bug #2891: Limiter does not work with high speed
You have only 50 slots meaning 50 packets.
Can you configure the 'Queue Size' under advanced options of limiters to ...
Ermal Luçi
02:53 PM Bug #2891: Limiter does not work with high speed
Sure. I think you are just right. Command in shell is the same as "limiter info" in the GUI I guess.
Limiters:
00...
Anders Tillebeck
02:08 PM Bug #2896 (Resolved): IPsec failover may not fully attach to new interface address
In some cases, IPsec failover using a gateway group will not move from one WAN to another properly. Unfortunately thi... Jim Pingle
08:20 AM Bug #2893: Add extTable to SNMPd or change sysDescr.
Nice, thank you! Mike Stupalov
08:10 AM Bug #2893 (Feedback): Add extTable to SNMPd or change sysDescr.
Applied in changeset commit:dadf8ebb488c6dbefc84cf1a104e1d34e41966bb. Jim Pingle

03/20/2013

05:24 PM Bug #2890: radvd segmentation fault
I updated to the following:
2.1-BETA1 (i386)
built on Tue Mar 19 16:35:08 EDT 2013
FreeBSD 8.3-RELEASE-p6
O...
Mike Cherry
04:46 PM Bug #2890 (Feedback): radvd segmentation fault
I have put a fix for radvd.
Can you test with a newer snapshot?
Ermal Luçi
03:34 PM Bug #2893: Add extTable to SNMPd or change sysDescr.
I found old mails in mailing list, which discussed the issue:
http://www.mail-archive.com/support@pfsense.com/msg086...
Mike Stupalov
02:33 PM Bug #2893: Add extTable to SNMPd or change sysDescr.
The commands would only work if the user has the UCD module loaded, which is possible on 2.1. I would hesitate to add... Jim Pingle
02:08 PM Bug #2893 (Resolved): Add extTable to SNMPd or change sysDescr.
Please add extTable lines in bSNMPd config (/var/etc/snmpd.config) like:... Mike Stupalov
08:33 AM Bug #1974: Captive Portal RADIUS accounting bytes wrong
Not it is not fixed it was much better some time ago but recent tests have the same results 700 MB through the portal... Allan Stanley
06:12 AM Bug #1988 (Resolved): Static ARP entries attempted to be applied on disabled interfaces
Renato Botelho
06:11 AM Bug #2010 (Resolved): VLAN parent interface / altq interface wrong assumptions about int_family name format
Renato Botelho
06:09 AM Bug #2338 (Resolved): outbound NAT rules rewrite themselves if active interface is deleted
Renato Botelho
06:06 AM Bug #2703 (Resolved): IPv6 IPs are not removed when interface is re-assigned
Renato Botelho
06:05 AM Bug #2780 (Resolved): CP: passthough has no effect
Renato Botelho
06:03 AM Bug #2883 (New): pf rules contain erroneous "!/" artifact leading to "syntax error" in log
Renato Botelho
02:57 AM Bug #2891: Limiter does not work with high speed
Probably you have to increase the queue of the limiter to hold that traffic.
Can you show an ipfw pipe show of your ...
Ermal Luçi
02:30 AM pfSense Packages Bug #2892 (Resolved): "pfblocker_Range2CIDR" function yields erroneous results (pfBlocker v1.0.2)
E.G. the file
http://list.iblocklist.com/?list=bt_ads&fileformat=p2p&archiveformat=gz
on 2013-Mar-18 has/had an ent...
B. Derman

03/19/2013

07:29 PM Bug #2891 (Rejected): Limiter does not work with high speed
On 2.0.2 limiters only work up til aprox. 15Mbitps. Limiters set to speeds higher than 15Mbit will act if they are ju... Anders Tillebeck
04:10 PM Bug #2890 (Resolved): radvd segmentation fault
2.1-BETA1 (i386)
built on Tue Mar 19 05:51:13 EDT 2013
FreeBSD 8.3-RELEASE-p6
radvd segfaults on my router with ...
Mike Cherry
02:48 PM Bug #2889 (Closed): ACK Traffic Put in Normal Queues. Normal Traffic Put in ACK Queues
We are running 2.0.2 i386. We've noticed any rules that came from 2.0.1 are fine, however if we create new rules on o... Jonathan Black
01:55 PM Bug #2887: ppp-linkdown state killing not right
It's now respecting <kill_states/> Renato Botelho
12:35 AM Bug #2887 (Resolved): ppp-linkdown state killing not right
The state killing in ppp-linkdown only kills the NAT states on the affected WAN. It leaves the firewall states there,... Chris Buechler

03/18/2013

01:48 PM Bug #2883: pf rules contain erroneous "!/" artifact leading to "syntax error" in log
I have tested this fix already with no luck
Provided more information here http://forum.pfsense.org/index.php/topic,...
Vladimir Suhhanov
08:32 AM Bug #2883 (Feedback): pf rules contain erroneous "!/" artifact leading to "syntax error" in log
I already have pushed a fix for this.
Test with newer snapshots.
Ermal Luçi
08:30 AM Bug #2878 (Feedback): radvd does not restart properly
Applied in changeset pfsense-tools:commit:f7608973a69f99c0e0a8fca652579991a9b1607b. Ermal Luçi

03/15/2013

01:16 PM Feature #2691 (Closed): Truncate description on service status widget
It was changed to just put the first sentence of description in changeset commit:41af581edd49bb920a783bf5b78f9bbfe2a7... Renato Botelho
10:15 AM Feature #2886: multiple ips per carp vhid group
> You can add IP alias VIPs on top of a single CARP VIP to have as many IPs as you want on a single VHID in pfSense 2... Alexander Swen
09:23 AM Feature #2886 (Rejected): multiple ips per carp vhid group
This isn't relevant to how we use CARP.
You can add IP alias VIPs on top of a single CARP VIP to have as many IPs as...
Jim Pingle
09:21 AM Feature #2886 (Rejected): multiple ips per carp vhid group
since I can't find very detailed information on how carp works (under the hood i mean) i've read some documentation o... Alexander Swen
09:18 AM Feature #2885 (Closed): loadbalancing should be more tweakable
Our future pfsense boxes will be to distributing traffic over our appservers. Currently we use two old debian Lenny b... Alexander Swen
04:13 AM Bug #2884 (Feedback): Tunnel status in case of NAT before IPSec
thanks! Chris Buechler
04:13 AM Bug #2884: Tunnel status in case of NAT before IPSec
Done! ;) Michele Di Maria
03:52 AM Bug #2884: Tunnel status in case of NAT before IPSec
That sounds sane. I haven't dug into this part of the code though. If it works and you think that's reasonable, go ah... Chris Buechler
02:21 AM Bug #2884: Tunnel status in case of NAT before IPSec
Since the SPD entries are not specular, in stead of searching for the "in" entry, we could look for the "out" entry, ... Michele Di Maria
01:59 AM Bug #2884: Tunnel status in case of NAT before IPSec
I've noticed this on every install I've worked on with NAT lately too, it works just fine but the status always shows... Chris Buechler
01:53 AM Bug #2884 (Resolved): Tunnel status in case of NAT before IPSec
Hi,
the status of the Phase2 is reported as down in case of NAT before IPSec, while the tunnel is up and working ...
Michele Di Maria
02:02 AM Bug #2883: pf rules contain erroneous "!/" artifact leading to "syntax error" in log
most parts of rule generation ensure a legit IP and subnet, need to fix that for this circumstance. Where these retur... Chris Buechler

03/14/2013

11:55 PM Bug #2883 (Resolved): pf rules contain erroneous "!/" artifact leading to "syntax error" in log
I found this one in 2.0.x, but not yet in 2.1. However it looks like someone else had it happen identically:
http://...
Stilez y
09:13 PM Bug #2882 (Resolved): 6RD not working in latest snapshots
Hi guys,
I use Charter's 6RD service to get ipv6 connectivity. I'm currently running the Jan 18th snapshot and my ...
Will Wainwright
10:01 AM pfSense Packages Bug #2870: External DNS server always takes precedence over internal servers
My solution to the problem was to create a DNS domain override for the internal domain. It also wasn't necessary to s... Jan Christoph Ebersbach
06:50 AM Feature #2881 (Closed): LDAP Support for xauth for IPsec mobile clients
It's already in 2.1, and working. Jim Pingle
06:42 AM Feature #2881 (Closed): LDAP Support for xauth for IPsec mobile clients
Hi,
please add the option to use the LDAP backend for xauth in IPsec.
As I found a topic on that, there is alread...
Michael Schietzsch

03/13/2013

11:48 PM pfSense Packages Bug #2747: Snort ignores memcap settings
This can be closed. Issue resolved by BMeeks with Snort version 2.5.4 Angel Torres
07:52 PM pfSense Packages Bug #2879 (Closed): uninstalling Postfix Forwarder leaves widget
The uninstall script for "Postfix Forwarder" doesn't delete any postfix related widgets from the homepage. This resul... Isaac McDonald
03:47 PM Bug #2878 (Resolved): radvd does not restart properly
On the latest 2.1-BETA1 (i386) - built on Thu Mar 7 01:55:06 EST 2013 build, the radvd daemon does not automatically ... Tom M
02:00 PM Bug #2877 (Feedback): Reset webconfigurator password does not unlock admin account
Applied in changeset commit:7d88b4269f01f2282a05df3e671da3f71704d17b. Renato Botelho
01:04 PM Bug #2877 (Resolved): Reset webconfigurator password does not unlock admin account
When the Reset webconfigurator password option is used it states that all permissions have been reset. How ever if th... B Smith
09:44 AM Bug #2636 (New): state mismatch issue on enc0 with amd64
Renato Botelho
09:43 AM Bug #2650 (New): FTP helper breaks TCP sequence numbers on 2nd WAN
Renato Botelho
09:43 AM Bug #2758 (Resolved): Old configuration remains when changing interface type
Renato Botelho
09:41 AM Feature #1836 (New): RFC 5006 support for DNS from RAs
radns was updated and now builds fine Renato Botelho
09:01 AM Feature #2858 (Closed): Do not route rules to default gateway when its own gateway is down
thanks for feedback Renato Botelho
08:53 AM Feature #2858: Do not route rules to default gateway when its own gateway is down
It's working perfectly then :)
Sorry about the previous confusion.
Shawn Bruce
06:43 AM Feature #2858: Do not route rules to default gateway when its own gateway is down
Exactly, or you can negate the 192.168.99.151 as src on rule that allow all traffic from 192.168.99.0/24. Renato Botelho
08:47 AM Bug #2874: IPv6 permissive rules being auto-created when IPv6 disabled in config
Unfortunately we can't write a novella to explain the subtle nuances of every option in the GUI. The revised descript... Jim Pingle
08:42 AM Bug #2874: IPv6 permissive rules being auto-created when IPv6 disabled in config
(Sorry, Chris - overlapped yours and didn't see your comment) Stilez y
08:42 AM Bug #2874: IPv6 permissive rules being auto-created when IPv6 disabled in config
Thanks, that explanation makes sense. (It may be that some apparent "issues" actually relate to improving narrative a... Stilez y
08:40 AM Bug #2874: IPv6 permissive rules being auto-created when IPv6 disabled in config
the block rules override every user-defined and auto-added rule, which is the intent of the feature. It's not enable/... Chris Buechler
08:27 AM Bug #2874: IPv6 permissive rules being auto-created when IPv6 disabled in config
I'll try to reword it, but "allow" and "blocked" imply firewall actions, "disabled" would imply features being shut o... Jim Pingle
08:07 AM Bug #2874: IPv6 permissive rules being auto-created when IPv6 disabled in config
The narrative reads "All IPv6 will be blocked unless this box is checked". That's not the same as "merely blocks by d... Stilez y
07:49 AM Bug #2874 (Rejected): IPv6 permissive rules being auto-created when IPv6 disabled in config
"Allow IPv6" is not a master switch to disable IPv6 functions. It merely adds a block rule to prevent IPv6 from passi... Jim Pingle
07:44 AM Bug #2874 (Rejected): IPv6 permissive rules being auto-created when IPv6 disabled in config
Some automatic IPv6 rules still get created if IPv6 is disabled (not clear if this is intentional). Two examples: the... Stilez y
08:45 AM Bug #2332 (New): gateways always renamed to "dynamic". Implement proper IPv6 support
Renato Botelho
08:44 AM Bug #2377 (Closed): Captive portal fails on empty RADIUS password
Renato Botelho
08:42 AM Bug #2627 (New): Old delegated prefixes are not removed from the LAN interface
Renato Botelho
08:40 AM Bug #2843 (Resolved): Easy Rule: Pass failed for IPv6
I checked and it's fixed. Renato Botelho
08:32 AM Feature #2859 (New): Allow to configure different mac addresses for multiple VLANs on same physical interface
Renato Botelho
07:46 AM Bug #2873 (Rejected): IPv6 rules, filter by protocol
IPv6 rules can certainly have 'any' as the protocol, that can and has worked since IPv6 was added.
IPv4+IPv6 rules...
Jim Pingle
07:41 AM Bug #2873 (Rejected): IPv6 rules, filter by protocol
IPv6 rules doesn't allow "any" or "ignore" as valid for protocol in a rule - but there isn't a full TCP/UDP/ICMP filt... Stilez y

03/12/2013

08:50 PM Feature #2858: Do not route rules to default gateway when its own gateway is down
Ah my apologies... Its working as you have written..
Silly me.
I'm assuming that I should now be placing a DEN...
Shawn Bruce
08:03 PM Feature #2858: Do not route rules to default gateway when its own gateway is down
It appears the rules related to gateway OVPNC1 drop when the VPN is stopped/failed. Shawn Bruce
07:36 PM Feature #2858: Do not route rules to default gateway when its own gateway is down
Could you show me /tmp/rules.debug in 2 different moments, when OVPN is up and when it's down? Renato Botelho
07:00 PM Feature #2858: Do not route rules to default gateway when its own gateway is down
Wow thanks for working to add this!
I've applied the patch to pfSense-2.1-BETA1-amd64-20130312-0847 and it does no...
Shawn Bruce
09:40 AM Feature #2858 (Feedback): Do not route rules to default gateway when its own gateway is down
Applied in changeset commit:a1f735b31c8f7f0cca0ebc5a7153cd06cdf4482e. Renato Botelho
09:37 AM Feature #2858: Do not route rules to default gateway when its own gateway is down
It's the expected behaviour today, so change it to a Feature and adjust Subject as well Renato Botelho
07:04 PM Bug #2871 (Rejected): Non returning call : pfSense_get_modem_devices() called by interfaces_ppps_edit.php?id=1
Duplicate of #2433 Jim Pingle
05:55 PM Bug #2871 (Rejected): Non returning call : pfSense_get_modem_devices() called by interfaces_ppps_edit.php?id=1
When setting up a PPPoE WAN on @interfaces.php?if=wan@, there is an option (which also existed in 2.0.1) to set up ad... Stilez y
03:02 PM Feature #2859: Allow to configure different mac addresses for multiple VLANs on same physical interface
Just 4 vlans, 2 wan and 2 lan Bipin Chandra
12:37 PM Feature #2859: Allow to configure different mac addresses for multiple VLANs on same physical interface
Are just VLANs assigned to interfaces (WAN, LAN, OPTx) or the parent nic is also assigned to any interface? Renato Botelho
12:45 PM Feature #1550 (Resolved): used + active + ready should match # of tickets
Renato Botelho
12:44 PM Bug #2756 (Closed): SNMPD problems when binding pppoe interface
Renato Botelho
04:35 AM pfSense Packages Bug #2870 (Rejected): External DNS server always takes precedence over internal servers
description isn't true, and it's not a bug, rather need to fix your config. Please post to the forum or mailing list ... Chris Buechler
04:23 AM pfSense Packages Bug #2870 (Rejected): External DNS server always takes precedence over internal servers
I have a set-up where pfSense runs between a DSL router (WAN interface) and an internal domain with multiple DNS serv... Jan Christoph Ebersbach
03:12 AM Feature #2869 (Resolved): LDAP user authentication backend doesn't support membership lookups by querying the group
As far as I understood the LDAP authentication backend, the group membership needs to be stored in an attribute of th... Jan Christoph Ebersbach

03/11/2013

12:23 PM Bug #2867: Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HD + sizeable RAM
That's possible, but could you reconsider your rejection?
It *is* a problem with the installer. A user who follows...
Stilez y
12:09 PM Bug #2867 (Rejected): Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HD + sizeable RAM
Easy install always defaults to 2x RAM size for swap. A custom installation is needed for anything that doesn't fit t... Jim Pingle
11:59 AM Bug #2867 (Rejected): Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HD + sizeable RAM
Clean 2.1 install, but existed in 2.01 as well, and I'm guessing all.
Per sizing requirements, I used a 2 GB SSD m...
Stilez y
12:10 PM Bug #2866 (Rejected): Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HDlarge RAM installations
Duplicate of #2867 Jim Pingle
11:55 AM Bug #2866: Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HDlarge RAM installations
Sorry, lcicked OK part way, please delete this, I'll re-enter it Stilez y
11:54 AM Bug #2866 (Rejected): Subpartition algorithms can cause install to fail or subpartition defaults to be impossible, on installs with small HDlarge RAM installations
Stilez y
12:03 PM Bug #2868 (Closed): Inescapable loop in installer
See http://forum.pfsense.org/index.php/topic,59909.msg322186.html#msg322186
Appears in 2.1, I'm guessing all versi...
Stilez y
10:14 AM Feature #2849: IKEv2 support for IPsec
I read about it. I am still worried, about MOBIKE (isnt it important for roaming roadwarriors) and the absense (?) of... Georgios Tsalikis
07:30 AM Bug #2495 (New): pfsense doesn't seem to know what its WAN IP is
Renato Botelho

03/10/2013

07:20 PM Feature #2849: IKEv2 support for IPsec
Another option for IKEv2 would be the portable version of OpenBSD's OpenIKED
https://github.com/reyk/openiked
-...
Dim Hatz

03/09/2013

05:01 PM Bug #2647 (Closed): rc.newwanip discovers wrong WAN IP when using DHCP
duplicate of #2495 Chris Buechler
11:50 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
It was fixed on Jan 31, See #2495 - if it's still broken on 2.1 using a current snapshot, reply there, since that's a... Jim Pingle
11:32 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
Yeah, I tried this on 2.1 from March 7th and January 27th.
Please tell me if you need more information.
Christoph Filnkößl
11:28 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
Have you tried this on 2.1, as recommended? Quite a lot of work went into fixing these kinds of bugs there. Specifica... Jim Pingle
08:57 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
ok, I tried to find the bug myself.
As we need to use DHCP on WAN (Cable Source-Verify) the address is being renewed...
Christoph Filnkößl
11:59 AM Bug #2495: pfsense doesn't seem to know what its WAN IP is
Jim guided me here - I have got a similar problem on the recent 2.1-snapshot (March 7th).
Details are already descri...
Christoph Filnkößl
11:57 AM pfSense Packages Bug #2865 (Rejected): openvpn ping-restart option for TAP interface
That disconnect is the management GUI view of the connected clients. It is not disconnecting your actual client.
...
Jim Pingle
11:50 AM pfSense Packages Bug #2865 (Rejected): openvpn ping-restart option for TAP interface
If tap interface used other side of the tunnel never will be pinged.
But openvpn server instance by default sends
...
Stepan Karandin
03:00 AM pfSense Packages Todo #2864 (Rejected): Port binding for openvpn
duplicate Chris Buechler
02:37 AM pfSense Packages Todo #2864 (Rejected): Port binding for openvpn
2.0.2-RELEASE (i386)
built on Fri Dec 7 16:30:29 EST 2012
FreeBSD 8.1-RELEASE-p13
When trying to bind second ope...
Stepan Karandin

03/08/2013

06:50 PM Bug #2863: Wrong heading for system_gateway_groups_edit.php
Applied in changeset commit:70fee79c520702571be842f16708f3bcdaf11601. Chris Buechler
06:43 PM Bug #2863 (Feedback): Wrong heading for system_gateway_groups_edit.php
should be fixed, thanks Chris Buechler
06:29 PM Bug #2863: Wrong heading for system_gateway_groups_edit.php
It also says "Edit gateway entry" instead of "Edit gateway group entry". Patrick Linstruth
06:24 PM Bug #2863 (Resolved): Wrong heading for system_gateway_groups_edit.php
When editing a gateway group, the header is displayed as "System: Gateways: Edit gateway".
It should probably be "...
Patrick Linstruth
05:02 AM Feature #2859: Allow to configure different mac addresses for multiple VLANs on same physical interface
how to do that coz i have just one nic and 4 VLANS configured on it, 2 WAN and 2 LAN Bipin Chandra
04:54 AM Feature #2859 (Feedback): Allow to configure different mac addresses for multiple VLANs on same physical interface
VLANs follow the same mac address of parent interface. If it's possible, spoof the mac on parent interface to check i... Renato Botelho
02:11 AM Bug #2861 (Resolved): IPSec Status Broken
Chris Buechler
02:09 AM Bug #2861: IPSec Status Broken
Thank you, works fine now. Sebastian Chrostek

03/07/2013

03:36 PM Bug #2712: Openvpn and Quagga cause route collision and race condition
I'm also experiencing this issue and applied the patch.
However, there is still a related issue. (I did not file thi...
Johan Braeken
01:57 AM Bug #1629: invalid state table entries after WAN IP change
Same Problem here with 2.1 Beta (built on Fri Mar 1 21:17:31 EST 2013)
It seems that also states without the old I...
Sebastian Chrostek
12:34 AM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Testing was performed on:
2.1-BETA1 (amd64)
built on Wed Mar 6 15:11:09 EST 2013
FreeBSD 8.3-RELEASE-p6
Freshly...
Anonymous

03/06/2013

09:50 PM Bug #2822: Direction wrong in traffic graph (lan)
Forum thread http://forum.pfsense.org/index.php/topic,59714.0.html
Now the bandwidth by IP display shows separate en...
Phillip Davis
04:29 PM Bug #1629: invalid state table entries after WAN IP change
I’ve upgraded to the latest beta, but the problem still persists. Even when the modem is restartet and i don’t get a ... Matthias Dilbert
12:30 PM Bug #2861 (Feedback): IPSec Status Broken
Applied in changeset commit:2379c48e139eeebabd098a5d17062d8c463afe70. Jim Pingle
12:18 PM Bug #2861: IPSec Status Broken
on debugging this i saw another strange behaviour with this function:
function ipsec_fixup_ip($ipaddr) {
...
Sebastian Chrostek
11:53 AM Bug #2861: IPSec Status Broken
the following two lines are also affected:
elseif (is_ipaddrv6($sp_*src*id))
$sp_dstid .= '/128';
should look ...
Sebastian Chrostek
11:48 AM Bug #2861 (Resolved): IPSec Status Broken
Hi,
there is a bug in
/etc/inc/ipsec.inc
on line 409
the lines
if (!strstr($sp_dstid,"/")) {
if (is_ipad...
Sebastian Chrostek
09:35 AM Bug #2860 (Closed): packages don't get restored
I have a box with pfSense 2.0.2 with several packages installed:
arping
Cron
mtr-nox11
OpenVPN Client Export Util...
Alex Kolesnik
08:54 AM Feature #2847: Add a checkbox to flag a gateway as "down"
+1 same here sometimes i would like to disable my UMTS gateway a few days because of the bandwidth limit. Claudius Badmind
08:37 AM Bug #2647: rc.newwanip discovers wrong WAN IP when using DHCP
Could you help us here?
pfSense is loosing connectivity completely now and then.
Please tell me if there's anythi...
Christoph Filnkößl
07:32 AM Bug #1053: CBQ per se, in kernel
hes back again so any clue on the cost Bipin Chandra
06:04 AM Feature #1855: NAT before IPsec VPN
Hi, sorry for this later testing.
I have figured out how to test it without upgrading to 2.1 in my production envir...
Michele Di Maria
03:27 AM Bug #2832: Gateway status fails when 2 WANs have the same gateway.
Ermal Luçi wrote:
> Why do you have static gateways for your pppoe?
> Please take this to the forums since its a co...
Mathieu Déom
03:15 AM Feature #2117 (New): 6RD support for ISPs like Swisscom
this wasn't for 6rd in general as I thought, rather a diff type.
Chris Buechler

03/05/2013

11:02 PM Feature #2859 (Duplicate): Allow to configure different mac addresses for multiple VLANs on same physical interface
i have a pppoe connection and my isp requires to spoof a fixed mac but it doesnt seem to work when using vlans, witho... Bipin Chandra
10:11 PM Bug #319 (Closed): system_usermanager privilege not working as expected
Chris Buechler
10:09 PM Bug #2067 (Resolved): pppoe-binding deleted
been fixed at some point since then Chris Buechler
10:08 PM Bug #2786 (Resolved): Setting MTU on VLAN does not set MTU on parent interface in 2.2
Chris Buechler
10:04 PM Bug #2364 (Resolved): PPPoE Server doesn't restart correctly
Chris Buechler
09:58 PM Bug #1284 (Resolved): Syslog does not work with CLOG disabled
works Chris Buechler
09:36 PM Bug #1153 (Resolved): Re-assignment of bridge interfaces should be restricted
Chris Buechler
09:28 PM Feature #2117 (Resolved): 6RD support for ISPs like Swisscom
Chris Buechler
09:28 PM Feature #1855 (Closed): NAT before IPsec VPN
works Chris Buechler
09:27 PM Bug #2414 (Resolved): IPv6 DHCP WAN, issue routing firewall-generated traffic
Chris Buechler
09:27 PM Feature #2413 (Resolved): Allow IPv6 interface configuration from the menu
Chris Buechler
09:26 PM Bug #2797 (Resolved): IPsec "connect" button does not work for IPv6
works Chris Buechler
09:20 PM Bug #2362 (Resolved): Deleting last/only port forward doesn't remove from secondary
Chris Buechler
09:06 PM Feature #2858 (Closed): Do not route rules to default gateway when its own gateway is down
Current Behavior:
When an OVPN client connection goes down, any policy based routing rules pointing to the ovpnc gat...
Shawn Bruce
09:06 PM Bug #2555: check_reload_status consumes 100% CPU usage
Unfortunately I have moved on from pfsense so I can't recheck to see if this has been resolved in later versions stil... Snowy Maslov
09:03 PM Bug #2555 (Resolved): check_reload_status consumes 100% CPU usage
There are a wide range of issues unrelated to check_reload_status that can cause this. At the time of the original re... Chris Buechler
08:56 PM Bug #2746 (Resolved): IPv6 IPSEC shows down but is actually not...
look to all work Chris Buechler
08:55 PM Bug #2805 (Resolved): Firewall Rules Interface select causes javascript error
Chris Buechler
08:54 PM Bug #2574 (Closed): Failure of secondary radius server causes PPTP authentication to hang even if primary is working!
problem as described doesn't actually exist. Guessing a GRE NAT issue from the description. Chris Buechler
08:52 PM Bug #2682 (Closed): User Manager server settings appear/disappear randomly, although they still appear to work in 2.1
Chris Buechler
08:52 PM Bug #2816 (Resolved): "none" is not a valid local P2 setting
Chris Buechler
08:49 PM Bug #2842 (Resolved): IPsec status broken
Chris Buechler
08:48 PM Feature #814 (Resolved): GUI should allow to bind openvpn on different ip same port
Chris Buechler
08:47 PM Bug #2518 (Resolved): Gateway in DHCP Server Doesn't Use Default Setting
Chris Buechler
08:43 PM Bug #2677 (Resolved): Dyndns debug file written with ascii string \n instead of line-feed
Chris Buechler
08:42 PM Bug #2804 (Resolved): firewall_rules.php
Chris Buechler
08:42 PM Feature #2768 (Resolved): Don't allow adding IP Alias or CARP VIP on network or broadcast addresses
Chris Buechler
08:41 PM Bug #2836 (Resolved): encrypted backups with RRD data are unrestorable
Chris Buechler
08:40 PM Bug #2837 (Resolved): Interface group rules are incorrectly ordered in the ruleset
Chris Buechler
03:25 PM pfSense Packages Bug #2857: webConfigurator openvpn form multiplication
It's easy to reinstall this package at System: Package Manager. I guess additional warning will be fine.
Is it enou...
Stepan Karandin
02:28 PM pfSense Packages Bug #2857 (Rejected): webConfigurator openvpn form multiplication
You have somehow installed the tap fix package multiple times. Not a GUI bug. Jim Pingle
02:19 PM pfSense Packages Bug #2857: webConfigurator openvpn form multiplication
... Stepan Karandin
02:08 PM pfSense Packages Bug #2857 (Rejected): webConfigurator openvpn form multiplication
2.0.2-RELEASE (i386)
built on Fri Dec 7 16:30:29 EST 2012
FreeBSD 8.1-RELEASE-p13
https://*/vpn_openvpn_server.p...
Stepan Karandin
03:17 PM Bug #2412: inbound 6to4 traffic does not work in pf
Can you be more specific on qwhat does not work? Ermal Luçi
02:00 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Applied in changeset commit:1fadb9d1129b68572e04c3fd7b12fe4bd0098519. Ermal Luçi
02:00 PM Bug #2627 (Feedback): Old delegated prefixes are not removed from the LAN interface
Applied in changeset commit:afe4f2da5079fc68cd0fcdb8d5ba65b173dd5726. Ermal Luçi
01:06 PM Bug #2780 (Feedback): CP: passthough has no effect
Ermal Luçi
01:00 PM Bug #2822: Direction wrong in traffic graph (lan)
Applied in changeset pfsense-tools:commit:d09e8fddd50e95f731f7cef8d1db92ba1b4f2398. Ermal Luçi
12:49 PM Bug #2822 (Feedback): Direction wrong in traffic graph (lan)
Patch pushed test with new snapshots. Ermal Luçi
12:10 PM Bug #2832 (Closed): Gateway status fails when 2 WANs have the same gateway.
Why do you have static gateways for your pppoe?
Please take this to the forums since its a configuration issue rathe...
Ermal Luçi
07:57 AM Bug #2641: mac spoof on wan (pppoe) doesnt spoof
this ticket needs to be opened again as mac spoofing when working with vlans stopped working, ill try without vlans t... Bipin Chandra

03/04/2013

11:50 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
Sorry for the noise, you are right. Thanks for the superfast support. Daniel Migowski
11:48 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
System > Cert Manager, Certificates tab.
Read the notes carefully when it prompts you to delete the user certifica...
Jim Pingle
11:47 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
Please reopen, I am willing to provide further info if you need some. Daniel Migowski
11:45 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
For the preceeding comment... Daniel Migowski
11:45 AM pfSense Packages Bug #2855: OpenVPN Client Export Utility shows deleted user certificates
This is not a browser issue. There was never more than one not deleted cert active, and this is what I get (See attac... Daniel Migowski
11:39 AM pfSense Packages Bug #2855 (Rejected): OpenVPN Client Export Utility shows deleted user certificates
Unable to reproduce the problem. Please post in the forum for more help.
Deleted certificates are no longer in the...
Jim Pingle
11:35 AM pfSense Packages Bug #2855 (Rejected): OpenVPN Client Export Utility shows deleted user certificates
I am using the OpenVPN Client Export Utility v1.0.4, and created a few certs for users, but these deleted certificate... Daniel Migowski
11:38 AM pfSense Packages Bug #2856 (Resolved): OpenVPN Client Export Utility does not handle Spaces in Common Name (CN) of user certificate
I am using the OpenVPN Client Export Utility v1.0.4, and tried to create an "archive" export (the one with the .ovpn-... Daniel Migowski
07:21 AM Bug #2854 (Duplicate): squid with multi wan doesnt work as intended, will route out of default wan1 inspite of configuring it to router out of wan2
squid always routes out of default wan1 in spite of it configured in transparent mode and local ip set to loopback an... Bipin Chandra
07:00 AM Bug #2758 (Feedback): Old configuration remains when changing interface type
Applied in changeset commit:e12ad49f4621ec9e99ca829c2d7188ad456638f8. Renato Botelho
06:50 AM Bug #2786 (Feedback): Setting MTU on VLAN does not set MTU on parent interface in 2.2
Applied in changeset commit:4a7352101fbd6901b46a3b6a9a3c00d23b75f0e1. Renato Botelho
06:40 AM Bug #2852 (Feedback): interfaces.php static route check too strict
Applied in changeset commit:e480d64bc5eb7a9accaad93b8845df1bf8bbb2f3. Renato Botelho
06:31 AM Feature #2853 (Rejected): OpenVPN RADIUS accounting
Duplicate of #1434 Jim Pingle
03:49 AM Feature #2853: OpenVPN RADIUS accounting
it's not designed to, hence a feature request. Chris Buechler
03:42 AM Feature #2853 (Rejected): OpenVPN RADIUS accounting
OpenVPN Server dose not send accounting packet for radius. Nima Mohammadi
02:49 AM pfSense Packages Bug #2624: Varnish3 Package + GUI seems broken
Pull request #396 solves this Torben Hørup

03/03/2013

01:20 PM pfSense Packages Feature #2220: Varnish 3 does not have the ability to change vcl_deliver function
Nice one, but you will get more success on getting it into main branch if you create a pull request with the changes. Torben Hørup
12:52 PM pfSense Packages Bug #2624: Varnish3 Package + GUI seems broken
the LB director page is broken by this commit https://github.com/bsdperimeter/pfsense-packages/commit/9b20c9278aaf542... Torben Hørup
09:53 AM pfSense Packages Bug #2851: Varnish3 config: add option to disable probing
Pull request added: https://github.com/bsdperimeter/pfsense-packages/pull/393 Torben Hørup
05:47 AM Bug #2852 (Resolved): interfaces.php static route check too strict
interfaces.php checks for "This IPv4/IPv6 address conflicts with a Static Route" are too strict. Rather than only che... Chris Buechler
 

Also available in: Atom