Project

General

Profile

Activity

From 08/18/2013 to 09/16/2013

09/16/2013

07:57 PM Revision 2e9d9ede: Merge pull request #803 from PiBa-NL/outboundnat_disable_checkbox
outboundnat, disable rule checkbox Renato Botelho
06:46 PM Revision 6ae8c4f2: outboundnat, disable checkbox
Pi Ba
06:03 PM Bug #3207 (Resolved): bug/feature expansion: ufslabels.sh doesn't account for gmirror systems.
Attempting to run ufslabels.sh on a system using gmirror gives the following:... Andrew Stuart
02:19 PM Bug #2882: 6RD not working in latest snapshots
Hi Will,
Thanks for the explanation. Really wish there was more information abut this, feels like we are being somew...
Christopher Blake
10:24 AM Bug #2882: 6RD not working in latest snapshots
Hi Christopher,
I don't read Chris' response as a problem with the ISP, I think it's a problem with pfSense that w...
Will Wainwright
10:05 AM Bug #2882: 6RD not working in latest snapshots
Kind of disappointing to see this get pushed out of the way for 2.1. You say this is due to the ISP having "lack of p... Christopher Blake
02:14 PM Bug #3206 (Resolved): Certificate Manager: wrong digest algorithm used when generating a certificate
If you select SHA512 as the digest algorithm when creating a certificate in the certificate manager a SHA256 digest i... John S
01:13 PM Revision 1cddd59c: Split SSL/TLS into separate checkboxes so that plaintext connections can be made secured by using STARTTLS. Support for SMTPS connections should probably be done away with in future. Fixes #3180
Warren Baker
10:28 AM Bug #3205 (Resolved): Partial system freeze when disconnecting USB 3G stick
When we disconnect a live USB 3G stick, parts of the pfSense system freezes, for example, opening the dashboard, show... Louis-David Perron
09:52 AM Bug #1738: Restore fails when username in backup is not matching
This exact bug is still present in 2.1. Louis-David Perron
09:40 AM Bug #1919 (Resolved): Package re-install loop on console after upgrade - package reinstall take ages on serial console
Jim Pingle
09:39 AM Bug #1919: Package re-install loop on console after upgrade - package reinstall take ages on serial console
This bug may be closed since it's not present at all in 2.1.
Thanks
Louis-David Perron
09:08 AM pfSense Packages Bug #3204 (Rejected): Can not access available package list
Please post in the forum for support. It is not a general issue with 2.1. Jim Pingle
08:59 AM pfSense Packages Bug #3204 (Rejected): Can not access available package list
Start a new box with 2.1 and can´t access package list and install some of them. It says there is no internet connect... Silverio Chiaradia
08:46 AM pfSense Packages Bug #3203 (Resolved): vnstat2 not working after pfsense 2.1 upgrade
Hi,
I upgraded to Pfsense 2.1 from Pfsense 2.0.3 and now vnstat2 is no longer working
My issue is similar to th...
Kyle Janse van Rensburg
08:10 AM Bug #3180 (Feedback): SMTP notifications not work with 587 port and SSL/TLS
Applied in changeset commit:1cddd59c4ed2341f87cf58d9b67d45c82ffd99d0. Warren Baker
07:02 AM Bug #3180: SMTP notifications not work with 587 port and SSL/TLS
Aitor Fraile wrote:
> On the other hand, it seems that 465 port is deprecated for SMTPS[2].
Yes thats right, ha...
Warren Baker
04:41 AM Bug #3180: SMTP notifications not work with 587 port and SSL/TLS
Hi Warren,
Thanks for the reply. The problem is that my email provider's SMTP server only accept 587 with TLS encr...
Anonymous
03:50 AM Bug #3180: SMTP notifications not work with 587 port and SSL/TLS
That would be because your port 587 is not accepting secure connections. In a typical port 587 setup the connection i... Warren Baker
07:28 AM Revision 4f947669: Merge pull request #802 from Xon/patch-1
Alix 2D6 crashes during 2.1 upgrade process with an out of diskspace error Ermal Luçi
06:50 AM pfSense Packages Bug #3202 (Rejected): Squid3-dev library not found
$ ldd /usr/pbi/squid-i386/sbin/squid
/usr/pbi/squid-i386/sbin/squid:
librt.so.1 => /usr/lib/librt.so.1 (0x284cc000...
Yilmaz Akinci
06:14 AM Bug #3201 (Resolved): RFC2136 cache file not updated because fs is read-only
As shown in the title, RFC2136 cache file is not properly updated. in System logs, all seems to be OK but definitely ... Xavier Romain
02:20 AM Bug #3147: Adding new interface can cause issues
Because this is behavior since pfSense inception and is not considered a blocking/new bug!
Ermal Luçi

09/15/2013

09:15 PM Bug #3147: Adding new interface can cause issues
I have experienced this multiple times.
How did Pfsense 2.1 go stable without this even getting looked at?
Sam McLeod
05:45 PM Revision 73c569ea: Alix 2D6 crashes upgrade process withou out of diskspace
Updating the the RRD graphs causes two copies of each RRD's XML file to be stored in /tmp.
On Nanobsd, the default /...
Xon
08:57 AM Bug #3180: SMTP notifications not work with 587 port and SSL/TLS
Same error in system log with 2.1-RELEASE version. Anonymous
06:01 AM Bug #3200 (Closed): IPv6 bugs
The Board is alix2d13... Wouter Snels

09/14/2013

11:33 PM Feature #3199: Option to accumulate or not IP addresses in Alias table of FQDNs
A bit of relevant discussion at http://forum.pfsense.org/index.php/topic,66300.0.html Phillip Davis
11:30 PM Feature #3199 (Resolved): Option to accumulate or not IP addresses in Alias table of FQDNs
As at the time of writing, an Alias of FQDNs gets the FQDNs translated to the corresponding IP addresses and a table ... Phillip Davis
02:17 PM Revision 67e5e3c6: Set action = pass for configured mac addresses on CP passtrumac
Renato Botelho
01:54 PM Revision 81ce28d8: Remove unecessary blockedmacs db and read it directly from config
Renato Botelho
07:21 AM Bug #3198 (Resolved): IPSEC, when nating to a different size subnet a invalid natting rule is made.
IPSEC, when nating to a different size subnet a invalid natting rule is made.
Reproducable with these phase2 setti...
Pi Ba

09/13/2013

03:58 PM Bug #3197 (Rejected): MBUFs are not freing
Please post in the forum or mailing list for support until a legitimate bug can be confirmed. Jim Pingle
03:48 PM Bug #3197 (Rejected): MBUFs are not freing
Hi,
i installed new firewall with latest snapshot (09/09/2013). it installed on HP DL360 G6 with two dual port int...
Zeev Zalessky

09/12/2013

10:04 PM Todo #3196: Improve IPv4 address validation on interface setup (GUI and console) and setup wizard
I have done this to myself when braindead! It also allows x.x.x.255/24 - it should prohibit the 1st and last address ... Phillip Davis
01:34 PM Todo #3196 (Resolved): Improve IPv4 address validation on interface setup (GUI and console) and setup wizard
If you enter a LAN IP into the Setup Wizard such as x.x.x.0/24 or x.x.x.255/24, the setup wizard does not complain an... Jim Pingle
06:03 PM Revision 204e16db: Convert mac address to lowercase when saving to avoid duplicates. It fixes #3195
Renato Botelho
06:01 PM Revision 01ba8ec6: Convert mac address to lowercase when saving to avoid duplicates. It fixes #3195
Renato Botelho
05:53 PM Revision 4f7bba46: Do not allow local mac address to be added to passtrumac list in CP. It fixes #3122
Renato Botelho
02:29 PM Revision 30cbc007: Fix php short tag opening and silent php -l
Renato Botelho
02:29 PM Revision ea51e9f8: Remove call-time pass by reference from traffic shaper files, it should fix #2565
Renato Botelho
02:28 PM Revision 1e9b4611: Remove call-time pass by reference for do_input_validation, helps ticket #2565
Renato Botelho
01:18 PM Bug #2495: pfsense doesn't seem to know what its WAN IP is
This has been patched even on 2.1 but maybe final conclusion should be done if this ticket is closed. Ermal Luçi
01:00 PM Bug #3195: CP MAC allows duplication
Applied in changeset commit:204e16db77b2d31f934dab9f976bc8b3c83c40d1. Renato Botelho
01:00 PM Bug #3195 (Feedback): CP MAC allows duplication
Applied in changeset commit:01ba8ec63d4c99ed8fd1e3085c9fa960aa6d3a7b. Renato Botelho
12:35 PM Bug #3195: CP MAC allows duplication
We should probably have a standard MAC cleanup/validation function that would also accept other MAC formats as input ... Jim Pingle
12:27 PM Bug #3195 (Resolved): CP MAC allows duplication
You can add a duplicated mac address if a char is lower in one entry and upper in the other one.
aa:00:00:00:00:00...
Renato Botelho
01:00 PM Bug #3122 (Feedback): CP Pass-through MAC entry must deny entering the firewall's own MAC address
Applied in changeset commit:4f7bba4647a291b31d8a8029df2a6c584a6bc138. Renato Botelho
12:43 PM Revision a413e743: Do not add a ipfw rule to block mac since auth can take care of block or redirect it
Renato Botelho
12:43 PM Revision 8d5ddc09: Redirect blocked macs to desired URL or show an error message
Renato Botelho
12:42 PM Revision 2f1548d6: Add a redirect url option to blocked macs
Renato Botelho
11:44 AM Revision 3b2769be: Make sure db doesn't exist when start to configure macs
Renato Botelho
11:44 AM Revision a7c00d8d: Delete the old mac when action changes, not the current one
Renato Botelho
11:44 AM Revision 0d33f1fc: When block a MAC address, add it to a DB to make it possible to redirect it to a URL
Renato Botelho
11:44 AM Revision 6b1cb3fd: Add action to auto created passtru mac rule
Renato Botelho
11:44 AM Revision 0bf1e925: Remove unused variable $macdb
Renato Botelho
11:44 AM Revision 5eee3755: Make captiveportal_passthrumac_delete_entry() return rules instead of execute them as other similar functions do
Renato Botelho
11:44 AM Revision 736c36c6: Use same tab name on all pages
Renato Botelho
11:44 AM Revision ed8899b5: Change 'Pass-through MAC' tab name to reflect current reality
Renato Botelho
11:44 AM Revision 6ffb064f: Add action to auto created passtru mac rule
Renato Botelho
11:44 AM Revision 666f88e0: Add actions (block or pass) to Captive Portal passtrumac
Renato Botelho
11:44 AM Revision cfd88fbc: Fix indent and whitespaces
Renato Botelho
09:40 AM Todo #2565 (Feedback): Update code for PHP 5.4, fix pass-by-reference
Applied in changeset commit:ea51e9f8bfc188f7233ee22e1cc7a58643c4dba5. Renato Botelho
06:39 AM Bug #3194 (Rejected): Can't upgrade pfsense2.1 rc1
That's expected right now, the 2.1-RELEASE is pending. Please read the 2.1 board on the forum for more information. Jim Pingle
02:38 AM Bug #3194 (Rejected): Can't upgrade pfsense2.1 rc1
I try to upgrade my pfsense 2.1 rc1 from 3 days,
A new version is now available
Current version: 2.1-RC2
...
Moula BADJI
02:46 AM pfSense Packages Bug #3188: IPsec Auth
Resolved the issue :) Leonardo Null
02:37 AM pfSense Packages Bug #3188: IPsec Auth
in the pfsense 2.1rc it's not possible add the permission "User - VPN - IPsec xauth Dialin" in the user manager and t... Leonardo Null

09/11/2013

10:12 PM Revision bf2afff0: s/BSDP/ESF/
Chris Buechler
10:12 PM Revision 90a27e64: s/BSDP/ESF/
Chris Buechler
06:33 PM Revision 611f2910: Make sure to account for IP aliases on lo0 here, or they get duplicated on each CARP sync
Jim Pingle
06:32 PM Revision 049d4211: Make sure to account for IP aliases on lo0 here, or they get duplicated on each CARP sync
Jim Pingle
05:01 AM pfSense Packages Bug #2702 (Resolved): OpenBGPD causes out of memory in GUI with Full BGP feed
It is now fixed on version 0.9 Renato Botelho

09/10/2013

06:02 PM Revision eed5b507: Include CA in generated .p12 file. Fixes #2147 the way it was originally intended.
Jim Pingle
03:44 PM Revision 1e2cb1f8: No need to treat PHP errors as a crash on -RELEASE for now.
Jim Pingle
03:08 PM Revision b832d617: This broke correct detection of primary/secondary -- the person in that thread may have had some other config issue, but this broke working/valid configurations. Revert "Correct check to match the right vip based on configured ip. Reported-by: http://forum.pfsense.org/index.php/topic,66234.0.html"
This reverts commit 25f9f3322863eae12f705137d8d414643d7b853f. Jim Pingle
03:07 PM Revision a3d6166b: Fix didn't help -- backing this out and the change that made it necessary. Revert "Correctly check the secondary/primary parameter setting on dhcp failover configuration"
This reverts commit 24670866827b4e2d7a4a05baaf6d09ee377ce7cb. Jim Pingle
01:08 PM Revision 9633e518: Simplify the update URL definition in globals.inc and add some comments to it.
Jim Pingle
01:06 PM Revision 408ebb78: Fix update URL so the -RELEASE version looks at the stable updates URL by default rather than the snapshots server.
Jim Pingle
12:15 PM Revision c312ee8f: Update an existing cron entry for pppoe periodic resets
The array variable name was incorrect in the test, so the existing cron entry was not being matched. Fixes #3192 Phil Davis
12:14 PM Revision 09d2bef3: Merge pull request #801 from phil-davis/master
Update an existing cron entry for pppoe periodic resets Renato Botelho
11:52 AM Revision f1593bfe: Update an existing cron entry for pppoe periodic resets
The array variable name was incorrect in the test, so the existing cron entry was not being matched. Fixes #3192 Phil Davis
09:35 AM Revision 767afbb1: Require IPv6.inc header so that if ipv6 functions are called no surprises arise
Ermal LUÇI
09:35 AM Revision 8d8f5e49: Require IPv6.inc header so that if ipv6 functions are called no surprises arise
Ermal LUÇI
09:27 AM Revision fa4d4be6: Leave a trace that rtsold did fire the dhcp6c client so troubleshooting is easier
Ermal LUÇI
09:26 AM Revision 58fbb3f0: Leave a trace that rtsold did fire the dhcp6c client so troubleshooting is easier
Ermal LUÇI
09:22 AM Revision e4cf52ed: Do not include disabled OpenVPN in vpn_networks and negate_networks
Phil Davis
09:10 AM Revision a01f8bfc: Correctly check the secondary/primary parameter setting on dhcp failover configuration
Ermal LUÇI
09:10 AM Revision 24670866: Correctly check the secondary/primary parameter setting on dhcp failover configuration
Ermal LUÇI
08:20 AM Revision 20809a21: Correct typo that prevents dhcp rules from properly being generated.
Ermal LUÇI
08:18 AM Revision 168a1948: Correct typo that prevents dhcp rules from properly being generated.
Ermal LUÇI
07:19 AM Bug #3193: All connections lost when a WAN IF gets disconnected
There were a few days when "overactive" state clearing was in place. That got fixed on 5 Sep by https://github.com/pf... Phillip Davis
07:13 AM Bug #3193 (Rejected): All connections lost when a WAN IF gets disconnected
That was an issue on snapshots around that day, update to a current snapshot (or -RELEASE when it drops) Jim Pingle
07:11 AM Bug #3193 (Rejected): All connections lost when a WAN IF gets disconnected
We have multiple WAN lines with periodic resets. If a WAN line gets physically disconnected all current connections f... Joram Knaack
07:10 AM Bug #3192: Multiple periodic resets scheduled for WAN interface
Applied in changeset commit:c312ee8fe59e1e12d565d41d61dd090c63ac2dca. Phillip Davis
07:10 AM Bug #3192 (Feedback): Multiple periodic resets scheduled for WAN interface
Applied in changeset commit:f1593bfe1c9195f31a27d50f50422d77befed613. Phillip Davis
06:50 AM Bug #3192: Multiple periodic resets scheduled for WAN interface
See https://github.com/pfsense/pfsense/pull/801
Looks like a plain old bug that nobody ever noticed.
Phillip Davis
04:21 AM Bug #3192 (Resolved): Multiple periodic resets scheduled for WAN interface
We have two German VDSL lines with periodic 24h reset so I want to schedule the reset to a time where no one cares ab... Joram Knaack
06:49 AM Revision 6e46621b: Merge pull request #800 from phil-davis/master
Do not include disabled OpenVPN in vpn_networks and negate_networks Ermal Luçi
06:47 AM pfSense Packages Bug #3164 (Rejected): Varnish:XMLRPC Sync, start everytime without be needed
The log says the function has started, it doesn't mean it's running. Inside the function there is a check, and when t... Renato Botelho
06:33 AM pfSense Packages Bug #3188 (Rejected): IPsec Auth
It's not an issue, it's always set to external, and a script is called to deal with authentication, as you can see on... Renato Botelho
02:30 AM Revision 771c14a3: Do not include disabled OpenVPN in vpn_networks and negate_networks
Phil Davis

09/09/2013

09:44 PM Revision d2f0b142: the time has come - bump to 2.1-RELEASE
Chris Buechler
07:18 PM Revision 0281db8c: Fix errant display of "0 table deleted" during filter reload on console.
Jim Pingle
07:18 PM Revision b841bc23: Fix errant display of "0 table deleted" during filter reload on console.
Jim Pingle
07:10 PM Revision 772e49ce: Remove unecessary capitalized WARNING from disabled APC message
Renato Botelho
07:09 PM Revision 4831f5df: Remove unecessary capitalized WARNING from disabled APC message
Renato Botelho
06:47 PM Bug #1044 (Closed): Authentication servers in LDAP and TLS mode needs ca certificate
this was addressed quite some time ago Chris Buechler
06:46 PM Bug #1694 (Closed): /etc/hosts gets dhcp clients entries with wrong domainnames
duplicate of #1819 and it has better info. Chris Buechler
06:40 PM Bug #2868 (Closed): Inescapable loop in installer
not fixing issues with the current installer, it'll be replaced Chris Buechler
06:39 PM Bug #2954 (Closed): Increase FIRMWARE_MAX to 50 for bwn and bwi wifi firmware
we'll get this on newer FreeBSD versions Chris Buechler
06:38 PM Bug #2988 (Resolved): Aliases not displaying in Diagnostics-Tables
works in 2.1. Chris Buechler
04:48 PM Bug #3191 (Resolved): Quality RRD inaccuracies and failure to update status in some circumstances
There are some circumstances in which apinger puts in incorrect quality RRD data and fails to notice downtime. This n... Chris Buechler
04:32 PM Bug #3184 (Resolved): DHCPv6 failover configuration is broken
Chris Buechler
04:32 PM Bug #3179 (Resolved): Gateway failure not properly detected in certain cases using a monitor IP outside of the WAN's subnet
this particular issue is fixed, the issue with 10 vs. 30 seconds with packet loss still exists but isn't a regression... Chris Buechler
04:31 PM Todo #3183 (Resolved): add config upgrade code to disable state killing on gateway failure
Chris Buechler
04:29 PM Bug #3127 (Resolved): Missing encoding of single quotes in pkg_edit.php / XSS
Chris Buechler
03:42 PM Bug #3189: Growl Notifications not sending anything
All versions of "Growl for Windows" support the old UDP based protocol previous to GNTP.
After updating to latest b...
Steven Lund
03:25 PM Revision c7d48867: Allow for easier override on $g values if needed.
Jim Pingle
03:02 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
I have sent you the system log and the config description. Anonymous
01:14 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Can you show system log for this? Ermal Luçi
02:38 PM Bug #3139: pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
I downloaded the snapshot created yesterday and the problem is still there. I checked "etc/inc/pkg-utils.inc" and th... Charlie Singleton
08:30 AM Bug #3139: pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
Just to clarify, I did make the changes and they do not fix the issue. I see now in the "diff" it is clear exactly w... Charlie Singleton
07:12 AM Bug #3187: LiveCD boot issue on multicore systems.
This doesn't seem to be a general issue with multi-core systems, but may be with that line of chips instead.
We in...
Jim Pingle
07:04 AM Bug #3190 (Rejected): build server ova images are missing
They're not missing, they were disabled on purpose. More info to come later. Jim Pingle
04:37 AM Bug #3190 (Rejected): build server ova images are missing
tried to download ova images and they are all missing. Victor Pereira

09/08/2013

11:57 PM Revision fae7ef31: Test growl whether or not growl is disabled.
Jim Pingle
11:57 PM Revision 1e940f77: Test growl whether or not growl is disabled.
Jim Pingle
06:53 PM Bug #3189 (Resolved): Growl Notifications not sending anything
The only unique bug here is that testing growl didn't work when growl was disabled. I just pushed a fix for that.
...
Jim Pingle
04:53 PM Bug #3189: Growl Notifications not sending anything
According to forum posts i have found, this function has worked in previous 2.0 versions, with Growl for Windows(ment... Steven Lund
04:12 PM Bug #3189: Growl Notifications not sending anything
This thing is dead, #2942 Doktor Notor
03:45 PM Bug #3189 (Resolved): Growl Notifications not sending anything
When Growl Notifications are configured in System -> Advanced - > Notifications. The Test button does nothing. Also G... Steven Lund
08:02 AM pfSense Packages Bug #3188 (Rejected): IPsec Auth
I have pfsense 2.1-RC2 (i386) built on Fri Sep 6 19:47:34 EDT 2013
When I create a ipsec configuration and I sele...
Leonardo Null

09/07/2013

09:58 PM Bug #3187: LiveCD boot issue on multicore systems.
I've also verified that the above hangs don't happen on Freebsd 8.3-release-dvd1 either for booting or installation, ... Christopher Sherman
09:56 PM Bug #3187 (Resolved): LiveCD boot issue on multicore systems.
In the course of testing the amd64 builds on my various systems, I've come across a LiveCD-related issue that occurs ... Christopher Sherman
04:49 PM Bug #3130 (Resolved): System tunables - unknown/readonly values
Jim Pingle
01:28 PM Bug #3130: System tunables - unknown/readonly values
Fixed, thanks. Doktor Notor
11:57 AM Feature #3186 (Resolved): Firewall: NAT: 1:1: Edit
Creating/editing a record is unnecessarily hard. The description for External IP Subnet and Destination are not clear... Andres Petralli

09/06/2013

08:46 PM Bug #3143 (Resolved): Orphaned OpenVPN Client Specific Overrides
Chris Buechler
08:05 PM Bug #3143: Orphaned OpenVPN Client Specific Overrides
Looks good in 2.1-RC1(amd64), Aug 30. Kris Lou
05:56 PM Revision cf07d574: Do not sync DHPCv6, it must operate independetly. Ticket #3184
Jim Pingle
05:56 PM Revision d3b3240b: Remove failover peer IP settings from DHCPv6, DHCPv6 doesn't support failover the way that DHPv4 did. Fixes #3184
Jim Pingle
05:56 PM Revision 1d47cb37: Do not sync DHPCv6, it must operate independetly. Ticket #3184
Jim Pingle
05:56 PM Revision 8571cdd5: Remove failover peer IP settings from DHCPv6, DHCPv6 doesn't support failover the way that DHPv4 did. Fixes #3184
Jim Pingle
04:59 PM Revision 279c2f42: Disable kill_states by default on upgrade, it fixes #3183
Renato Botelho
04:58 PM Revision af0a477a: Disable kill_states by default on upgrade, it fixes #3183
Renato Botelho
01:15 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Yes, otherwise it would not receive any kind of IPv6 address at all. Anonymous
01:14 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
is the option "Use IPv4 connectivity as parent interface" set on WAN interface? Renato Botelho
12:48 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
No improvement with:
2.1-RC2 (amd64)
built on Thu Sep 5 21:38:32 EDT 2013
What's different from the previous bu...
Anonymous
01:09 PM Feature #3185 (New): Accommodate a DHCPv6 failover-like mechanism
Currently, the ISC DHCPv6 daemon doesn't support failover, instead they recommend that unique pools be run independen... Jim Pingle
01:00 PM Bug #3184: DHCPv6 failover configuration is broken
Applied in changeset commit:d3b3240bd0991224f7caa3ba308ada532dea6bbe. Jim Pingle
01:00 PM Bug #3184 (Feedback): DHCPv6 failover configuration is broken
Applied in changeset commit:8571cdd51a9e18c7a22fe2e934708b920b512f70. Jim Pingle
12:14 PM Bug #3184 (Resolved): DHCPv6 failover configuration is broken
See http://forum.pfsense.org/index.php/topic,66093.0/topicseen.html
Failover causes a bad config for the dhcpv6 da...
Jim Pingle
12:00 PM Todo #3183: add config upgrade code to disable state killing on gateway failure
Applied in changeset commit:279c2f425ed41104b41ff4438b291c9a6d4da49c. Renato Botelho
12:00 PM Todo #3183 (Feedback): add config upgrade code to disable state killing on gateway failure
Applied in changeset commit:af0a477a1fe1aa1da9c0543142f892d4109e91fd. Renato Botelho
11:25 AM Todo #3183 (Resolved): add config upgrade code to disable state killing on gateway failure
Now that state killing on gateway failure actually does what it's supposed to, having it enabled by default is going ... Chris Buechler
11:10 AM Revision da95bdcd: Fix #3127
By default htmlspecialchars does not consider single quotes, what can be
a problem when value attribute is set using ...
Renato Botelho
11:08 AM Revision 605ae553: Fix #3127
By default htmlspecialchars does not consider single quotes, what can be
a problem when value attribute is set using ...
Renato Botelho
09:22 AM Bug #3166: status_services.php:starts services 2-3 times;
they are changed .. week ago
but i remeber ive have installed pfblocker,arpwatch,varnish3
Valentin Georgiev
05:27 AM Bug #3166: status_services.php:starts services 2-3 times;
Please show me the <installedpackages><service> section of your config.xml Renato Botelho
06:10 AM Bug #3127: Missing encoding of single quotes in pkg_edit.php / XSS
Applied in changeset commit:da95bdcd9202e0f240099af3bfdf284b8f404d9f. Renato Botelho
06:10 AM Bug #3127 (Feedback): Missing encoding of single quotes in pkg_edit.php / XSS
Applied in changeset commit:605ae5537da157adfb414cc8837d465c132f4c8c. Renato Botelho

09/05/2013

06:27 PM Revision 9e6043cc: Allow for easier override on $g values if needed.
Jim Pingle
06:27 PM Revision 8346b5c4: Allow for easier override on $g values if needed.
Jim Pingle
02:06 PM Bug #3066: Proxy ARP failing with kernel error
Any testing I can do for this? Anything I can clarify? At the moment this breaks Proxy ARP operation. Willing to help... Jesse Peterson
12:39 PM Revision 25f9f332: Correct check to match the right vip based on configured ip. Reported-by: http://forum.pfsense.org/index.php/topic,66234.0.html
Ermal LUÇI
12:39 PM Revision 9d7ca11f: Correct check to match the right vip based on configured ip. Reported-by: http://forum.pfsense.org/index.php/topic,66234.0.html
Ermal LUÇI
12:29 PM Revision 36fa13a6: Ticket #3181 do the state flushing only on down gateway detection rather than any time.
Ermal LUÇI
12:28 PM Revision 19d723d2: Ticket #3181 do the state flushing only on down gateway detection rather than any time.
Ermal LUÇI
12:24 PM Revision 5aa44e98: Revert "Revert back the behaviour to cleanup all states for 2.1 Fixes #3181 and related to Ticket #1629. This commit is only for 2.1 since on master development will continue for better alternatives"
A bit too excessive need to get right.
This reverts commit c59dd719e0a6d9ee8deecaa7bff0d6ee8c76e4ca.
Ermal LUÇI
12:17 PM Bug #2833: Add a knob to prefer IPv4 over IPv6 for rare situations that require it
On my pfsense ipv6 is disabled (but pfsense didn't disable and only hide v6).
Since my ISP enabled v6 on my subnet p...
Grischa Zengel
09:34 AM Bug #3139: pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
I replaced just the stop_packages function in 2.0.3 Release with the committed function and it does not fix the issue... Charlie Singleton
07:14 AM Bug #3139: pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
Charlie Singleton wrote:
> What was changed? Excuse my ignorance. I am new to reporting issues. The code I submitted...
Renato Botelho
06:53 AM Bug #3139: pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
What was changed? Excuse my ignorance. I am new to reporting issues. The code I submitted does fix the issue. Are you... Charlie Singleton
06:43 AM Bug #3139 (Feedback): pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
Did the committed change fix the issue? Renato Botelho
08:52 AM Bug #2863 (Resolved): Wrong heading for system_gateway_groups_edit.php
Renato Botelho
07:20 AM Bug #3130 (Feedback): System tunables - unknown/readonly values
Applied in changeset pfsense-tools:commit:c343307d06a5cfe6ebff877246ae80bc0e78e98a. Renato Botelho
06:48 AM Bug #3140 (Resolved): pfblocker 2.1 error (Cannot allocate memory) with builds after "Aug 1 19:39:40"
Renato Botelho
03:00 AM Bug #2878 (Resolved): radvd does not restart properly
This is not radvd fault in latest snapshots.
Its mostly process that trigger the restart of it so this is corrected ...
Ermal Luçi

09/04/2013

08:27 PM Revision c22f4809: Ba-bump-bump.
Jim Pingle
04:09 PM Bug #1974 (Resolved): Captive Portal RADIUS accounting bytes wrong
Ermal thought this was specific to 32 bit, but it seems to be fine on both 32 and 64 now. A number of test sessions l... Chris Buechler
03:03 PM Revision d6df2c4c: When the v4 wan is dynamic and v6 is type dhcp and v6 information is retrieved through v4 link than trigger dhcp6c reconfiguration.
Ermal LUÇI
03:03 PM Revision 0b18ef05: When the v4 wan is dynamic and v6 is type dhcp and v6 information is retrieved through v4 link than trigger dhcp6c reconfiguration.
Ermal LUÇI
12:05 PM Bug #2700 (Resolved): ppp-linkdown uses /32 for $3 which already has /32
Chris Buechler
12:05 PM Bug #863 (Closed): floating rules breaks passive mode ftp
Chris Buechler
12:04 PM Todo #1071 (Closed): Reevaluate locks
Chris Buechler
12:01 PM Bug #848 (Closed): Remove 'Close' button from firmware update screen?
Chris Buechler
11:59 AM Feature #87 (Needs Patch): Wizards needed
Chris Buechler
11:57 AM Feature #664 (Resolved): Add support for multiple DHCP ranges in a single subnet
exists in 2.1. Chris Buechler
11:57 AM Feature #625 (Needs Patch): Firmware Upgrade via Console
Chris Buechler
11:54 AM Feature #246 (Needs Patch): Allow dragging firewall rules over tab to reassign the interface
Chris Buechler
11:51 AM Bug #878 (Closed): Drag and Drop firewall rules causes corruption
Chris Buechler
11:44 AM Feature #1599 (Needs Patch): Browser detection for captive portal
Chris Buechler
11:43 AM Bug #1657 (Closed): Timezone should be synchronized on all utilities
Chris Buechler
11:41 AM Todo #2346 (New): do we need to change our require() calls to require_once()?
Chris Buechler
11:30 AM Todo #2346 (Closed): do we need to change our require() calls to require_once()?
Chris Buechler
11:39 AM Feature #1687 (Resolved): GetText code inspection
Chris Buechler
11:37 AM Bug #1915 (Resolved): LDAP "authentication containers" select button is inoperative.
Chris Buechler
11:37 AM Bug #1996 (Resolved): status_graph.php is not displaying real-time bw stats
Chris Buechler
11:34 AM pfSense Packages Bug #2602 (Closed): BandwidthD - Reported Traffic / Usage is approximately Double real amount
haven't ever seen this. It's almost certainly a problem within bandwidthd itself under some specific unusual circumst... Chris Buechler
11:33 AM Feature #2492 (Needs Patch): identify changes lines before "apply"
Chris Buechler
11:25 AM pfSense Packages Feature #2925 (Needs Patch): "Monit" Monit for customized monitoring and alerting
Chris Buechler
11:25 AM pfSense Packages Feature #2908 (Needs Patch): Add nginx package to available for install
Chris Buechler
11:23 AM Bug #3033 (Rejected): Static IPv6 route to OpenVPN tunnel ignored
not a bug, config issue somewhere. Chris Buechler
11:20 AM Bug #3064 (Closed): Broadcom BCM57780 Nic lights not working (Activity and Link)
we'll get this fix in 2.2 Chris Buechler
11:18 AM pfSense Packages Bug #3110 (Rejected): apinger down messages
no problems along these lines, this doesn't have a specific problem that we can do anything with. Chris Buechler
11:16 AM Feature #1321 (Closed): Expose the maximum number of state entries a rule can create
exists in 2.x Chris Buechler
11:15 AM Feature #590 (Closed): Allow a detailed description on interfaces page
notes package suffices I think Chris Buechler
11:13 AM Feature #1104 (Closed): mwl driver patch to enable generation of new BSSIDs for additional VAPs
Chris Buechler
11:12 AM Bug #1105 (Closed): WLAN Broadcom BCM 4306 problems -the fw file(bwn_v4_ucode5) not found
Chris Buechler
11:11 AM Feature #627 (Closed): Ruleset for FIREWALL in web Interface. TAB (FW) in FIREWALL: RULES
possible in 2.x Chris Buechler
11:08 AM Bug #1615 (Resolved): rrd graph not refreshing the correct time frame
Chris Buechler
11:07 AM Todo #1528 (Resolved): Automatic outbound NAT from localhost needs a little work
Chris Buechler
11:07 AM Feature #1630 (Resolved): lagg ALTQ support
fixed a while ago Chris Buechler
11:06 AM Bug #1658 (Resolved): Adding new Gateway in interface page needs input validation
this has been added in 2.1 Chris Buechler
11:05 AM pfSense Packages Bug #1820 (Closed): widescreen package doens't show ipv6 link
Chris Buechler
11:04 AM Feature #1901 (Needs Patch): Maintain IP range tables for popular Internet sites
Chris Buechler
11:01 AM Feature #2239 (Resolved): Use Firewall Alias in Static Routing setup
Chris Buechler
10:59 AM Bug #2556 (Closed): PPTP Server not working since 2.0.x Upgrade
no known issues in PPTP in any 2.x version. Chris Buechler
10:56 AM Feature #2631 (Needs Patch): Highlight unapplied changes
Chris Buechler
10:53 AM Bug #2928 (Closed): Authentication attempts against multiple radius servers should stop when the first reject is received.
current behavior is correct Chris Buechler
10:46 AM Bug #3066 (Feedback): Proxy ARP failing with kernel error
proxy ARP is done in userland and hence couldn't trigger any such messages. There's something else going on there, no... Chris Buechler
10:43 AM Revision b9eae2ba: Actually the / here is not needed.
Ermal LUÇI
10:43 AM Revision 0ec64bd2: Actually the / here is not needed.
Ermal LUÇI
10:39 AM Bug #2798 (Closed): Captive Portal does not capture anyone
there were CP issues in general at that point, since fixed. Chris Buechler
10:36 AM Revision c088fe72: Related to Ticket #3045 avoid races in the ntpdate_sync_one script due to killall returning without the process really exiting.
Ermal LUÇI
10:36 AM Revision b8b78b9a: Related to Ticket #3045 avoid races in the ntpdate_sync_one script due to killall returning without the process really exiting.
Ermal LUÇI
10:34 AM Bug #3111 (Resolved): Passive FTP does not pass through pfSense with debug.pfftpproxy=0 (default)
Chris Buechler
10:06 AM Bug #2627: Old delegated prefixes are not removed from the LAN interface
I just pushed a commit for this as well https://github.com/pfsense/pfsense/commit/d6df2c4c71678b5edd98892ca40facbb80f... Ermal Luçi
07:46 AM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Is this still an issue for new snapshots of september? Ermal Luçi
09:49 AM Bug #3045 (Resolved): NTPD crash / doesn't come up
none of us have seen any issues reported here in a while, seems fine. Chris Buechler
09:48 AM Bug #3174 (Resolved): OpenVPN Client bound to a gateway group should not start on backup CARP vip
CARP will very briefly take master status while booting before reverting to backup, which is likely why. This particu... Chris Buechler
03:19 AM Bug #3174: OpenVPN Client bound to a gateway group should not start on backup CARP vip
The fix is there. Thx. But I am still seeing some instances where OpenVPN Client is starting up when bound to a GW gr... Shahid Sheikh
09:35 AM Bug #3181 (Resolved): Fix handling of state killing on WAN failure
works Chris Buechler
09:03 AM Bug #3004 (Resolved): config upgrade code needs to change VIP binding on IPsec
fixed Chris Buechler
08:56 AM Bug #2159 (Resolved): Upgrade code breaks RRD databases on nano
fixed Chris Buechler
08:48 AM Revision 8171a2c2: Introduce two new functions to be used on locking.
- try_lock: used for trying to get an EXCLUSIVE lock for a specified timeout by default of 5
- unlock_force: which ju...
Ermal LUÇI
08:31 AM Revision f33dcc5c: Add safety belts to code in rc.openvpn to avoid php errors to leave stale locks around
Ermal LUÇI
08:31 AM Revision 5d1bde96: Add safety belts to code in rc.openvpn to avoid php errors to leave stale locks around
Ermal LUÇI
08:29 AM Bug #3182 (Resolved): VMware vmxnet interfaces are not detected as VLAN capable
A VMware vmxnet interface, e.g. vxn0 is capable of using VLANs with a reduced MTU, but they do not appear in the list... Jim Pingle
08:23 AM Bug #2951 (Resolved): OpenVPN and alternative monitoring IP in 2.1
confirmed fixed Chris Buechler
08:19 AM Revision 48085d0c: Make the operation of saving old rule nearby the writing operation to be logical to spot
Ermal LUÇI
08:18 AM Revision dc8b4c4e: Make the operation of saving old rule nearby the writing operation to be logical to spot
Ermal LUÇI
08:12 AM Revision b214bf3a: Sprinkle some unsets to reduce footprint and correct some whitespaces
Ermal LUÇI
08:12 AM Revision 53ce7798: Sprinkle some unsets to reduce footprint and correct some whitespaces
Ermal LUÇI
07:29 AM Bug #3173 (Resolved): NEGATE_ROUTE rule does not respect port numbers
Renato Botelho
07:22 AM Revision e8090840: filter_generate_port error log function name
Absolutely minor adjustment to make the error log message refer to the new function name. Phil Davis
07:19 AM Revision 2eebeecb: Merge pull request #797 from phil-davis/master
filter_generate_port error log function name Ermal Luçi
01:03 AM Revision 3b6596b7: filter_generate_port error log function name
Absolutely minor adjustment to make the error log message refer to the new function name. Phil Davis

09/03/2013

08:41 PM Bug #3173: NEGATE_ROUTE rule does not respect port numbers
The change did not quite make the snapshot of 2.1-RC1 (i386)
built on Tue Sep 3 14:08:44 EDT 2013. I copied the /etc...
Phillip Davis
01:40 PM Bug #3173: NEGATE_ROUTE rule does not respect port numbers
Applied in changeset commit:44f0f09bda6b59c0f2f08c87c4d4e32b149555bb. Ermal Luçi
01:40 PM Bug #3173 (Feedback): NEGATE_ROUTE rule does not respect port numbers
Applied in changeset commit:81d81b942b5a6e81b97d2d0b159ae2bdcb739bd4. Ermal Luçi
07:44 PM Bug #3045 (Feedback): NTPD crash / doesn't come up
It looks stable on latest snapshots Renato Botelho
07:05 PM Revision c59dd719: Revert back the behaviour to cleanup all states for 2.1 Fixes #3181 and related to Ticket #1629. This commit is only for 2.1 since on master development will continue for better alternatives
Ermal LUÇI
06:40 PM Revision 44f0f09b: Fixes #3173 if any port information exists on the rule than put it on the NEGATE rule generated.
Ermal LUÇI
06:39 PM Revision 81d81b94: Fixes #3173 if any port information exists on the rule than put it on the NEGATE rule generated.
Ermal LUÇI
06:19 PM Revision 3cb55704: Remove SPD when disable phase2, it fixes #2719
Renato Botelho
06:13 PM Revision 03131eb9: Remove SPD when disable phase2, it fixes #2719
Renato Botelho
05:31 PM Revision f70df069: Increased needed memory for APC to 512M + code cleanup
- Increased the needed memory for APC to 512M as we often run into memory problems on our 256M box
- fixed the RAM ca...
Individual IT Services
05:29 PM Revision fcca1783: Merge pull request #786 from individual-it/master
Increased needed memory for APC to 512M + code cleanup Renato Botelho
05:08 PM Revision be40ce0b: Merge pull request #796 from phil-davis/master
Traffic Shaper GUI text typos Chris Buechler
05:05 PM Revision faf4b1fc: Merge pull request #796 from phil-davis/master
Traffic Shaper GUI text typos Chris Buechler
05:04 PM Revision 0c1870ca: Merge pull request #790 from shahidsheikh/RELENG_2_1
#3174 Added handling of gateway groups in openvpn_restart Chris Buechler
05:03 PM Revision fcb5121d: Merge pull request #793 from shahidsheikh/master
Fix #3174 Handling of gateway groups in openvpn_restart() Chris Buechler
05:03 PM Revision 96551a20: Merge pull request #794 from phil-davis/RELENG_2_1
Backport get_memory changes to 2.1 Chris Buechler
04:52 PM Revision 32a9eb18: Bring back static routes to fix issues reported on Ticext #3179
Ermal LUÇI
04:52 PM Revision c9d099d7: Bring back static routes to fix issues reported on Ticext #3179
Ermal LUÇI
04:36 PM Revision c59e21b5: Fix #3004:
. Create a function to replace strings on deep associative arrays
. Use the recent created function array_replace_val...
Renato Botelho
04:00 PM Revision 243680e5: Disable state killing on gateway failure by default for new configs.
Clarify the text describing the option while here. Chris Buechler
04:00 PM Revision 7050776a: Disable state killing on gateway failure by default for new configs.
Clarify the text describing the option while here. Chris Buechler
03:47 PM Bug #3158 (Rejected): Captive portal, two radius accounting packets sent.
You have issues with your radius server rather than pfSense.
Either the radius servier is busy or something else in ...
Ermal Luçi
03:42 PM Revision 497841f5: Correct typo on variable name
Ermal LUÇI
03:39 PM Revision 6f8cf553: Correct typo on variable name
Ermal LUÇI
03:37 PM Revision f2cc3344: Fix #3004:
. Create a function to replace strings on deep associative arrays
. Use the recent created function array_replace_val...
Renato Botelho
02:20 PM Revision 628a64a9: Fix issue reported on http://forum.pfsense.org/index.php/topic,66160.0.html
Ermal LUÇI
02:20 PM Revision a8ab2b76: Fix issue reported on http://forum.pfsense.org/index.php/topic,66160.0.html
Ermal LUÇI
02:19 PM Bug #2719 (Resolved): Deleting IPsec tunnel does not remove SPDs
Chris Buechler
01:20 PM Bug #2719: Deleting IPsec tunnel does not remove SPDs
Applied in changeset commit:3cb55704924734aa19de58349198ca99d15e00ea. Renato Botelho
01:20 PM Bug #2719 (Feedback): Deleting IPsec tunnel does not remove SPDs
Applied in changeset commit:03131eb95c975ed990ddf955c762ef51137288a0. Renato Botelho
11:31 AM Bug #2719 (New): Deleting IPsec tunnel does not remove SPDs
this works with one exception, if you disable a P2 entry, its SPD is not removed. Deleting a P2 or P1 works fine, and... Chris Buechler
02:10 PM Bug #3181 (Feedback): Fix handling of state killing on WAN failure
Applied in changeset commit:c59dd719e0a6d9ee8deecaa7bff0d6ee8c76e4ca. Ermal Luçi
12:26 PM Bug #3181 (Resolved): Fix handling of state killing on WAN failure
For 2.1, we need to change the state killing on WAN failure to wipe the entire state table. The current state killing... Chris Buechler
01:54 PM Bug #3119 (Resolved): apinger falls into a loop with assigned OpenVPN interface, restarting itself and triggering events indefinitely
Ermal Luçi
01:45 PM Bug #3179: Gateway failure not properly detected in certain cases using a monitor IP outside of the WAN's subnet
It now appears as though apinger sees the gateway as down but does not report nor graph the result as expected.
If...
Jim Pingle
11:49 AM Bug #3179 (Feedback): Gateway failure not properly detected in certain cases using a monitor IP outside of the WAN's subnet
Ermal Luçi
11:00 AM Bug #3179: Gateway failure not properly detected in certain cases using a monitor IP outside of the WAN's subnet
Attaching a capture file that shows the ICMP actually is going out the right interface and is experiencing loss. But ... Jim Pingle
09:36 AM Bug #3179: Gateway failure not properly detected in certain cases using a monitor IP outside of the WAN's subnet
I can provide some input on this issue as well.
On 2 of 8 of my firewalls I have this problem happen consistently....
Shahid Sheikh
07:59 AM Bug #3179 (Resolved): Gateway failure not properly detected in certain cases using a monitor IP outside of the WAN's subnet
Still researching this a bit but it needs an entry so things don't get lost.
Currently, I have two WANs, DSL and C...
Jim Pingle
01:44 PM Bug #1629: invalid state table entries after WAN IP change
#3181 is a band-aid for 2.1, this will need to wait 2.2 Renato Botelho
12:18 PM Bug #2887 (Resolved): ppp-linkdown state killing not right
Chris Buechler
12:06 PM Bug #3174: OpenVPN Client bound to a gateway group should not start on backup CARP vip
Thanks, merged. If you could, please gitsync and confirm fix here. Chris Buechler
12:00 PM Bug #3174: OpenVPN Client bound to a gateway group should not start on backup CARP vip
Applied in changeset commit:fcb5121d6fa41e9858beb3111de24e56b0b49c07. Chris Buechler
12:00 PM Bug #3174 (Feedback): OpenVPN Client bound to a gateway group should not start on backup CARP vip
Applied in changeset commit:330ecea1bf568f1284d31628668b84250641e066. Shahid Sheikh
11:56 AM Revision 7ca8bef4: Make sure RRD data is restored from backup before upgrading data and a new backup is done after. It should fix #2159
Renato Botelho
11:55 AM Revision 42ec9337: Make sure RRD data is restored from backup before upgrading data and a new backup is done after. It should fix #2159
Renato Botelho
11:55 AM Bug #2303 (Resolved): SPD on secondary not cleared after config sync
works Chris Buechler
11:45 AM Revision 794195d1: Traffic Shaper GUI text typos
and note the Queue Limit is a number of packets (not packets per second) Phil Davis
11:40 AM Bug #3004: config upgrade code needs to change VIP binding on IPsec
Applied in changeset commit:c59e21b5c706b46159ecc19b33977299754b07b9. Renato Botelho
10:40 AM Bug #3004 (Feedback): config upgrade code needs to change VIP binding on IPsec
Applied in changeset commit:f2cc3344a19134a3dc594ff767be06f5af800553. Renato Botelho
07:46 AM Bug #3004 (New): config upgrade code needs to change VIP binding on IPsec
that config upgrade code either gets skipped somehow or doesn't work, the attached config for example still has <inte... Chris Buechler
11:24 AM Bug #2896 (Resolved): IPsec failover may not fully attach to new interface address
this work-around suffices for 2.1, if we find the root cause we can start a new ticket to address that at a later time. Chris Buechler
11:22 AM Bug #3172 (Resolved): function return_gateway_groups_array() returns the incorrect vip
Renato Botelho
09:05 AM Bug #3172: function return_gateway_groups_array() returns the incorrect vip
Yep, its fixed. Thx. Shahid Sheikh
08:36 AM Bug #3172: function return_gateway_groups_array() returns the incorrect vip
Shahid: can you please confirm if that fixed what you were seeing? Chris Buechler
10:27 AM Revision 7cb3f7d2: Resolves #3177. Do a filter reconfigure if the dynds ipsec hosts are present and being reloaded.
Ermal LUÇI
10:27 AM Revision bee7cd82: Resolves #3177. Do a filter reconfigure if the dynds ipsec hosts are present and being reloaded.
Ermal LUÇI
10:23 AM Bug #3175: <Firewall: NAT: Port Forward: Edit> takes range in "Redirect target port"
... Grischa Zengel
09:48 AM Bug #3175: <Firewall: NAT: Port Forward: Edit> takes range in "Redirect target port"
The problem is is_port will be true even if there is a range. So you have explicitly test for a range.... Grischa Zengel
08:04 AM Bug #3175: <Firewall: NAT: Port Forward: Edit> takes range in "Redirect target port"
The SEO will be amused if no rules are loaded and all ports are open.
Grischa Zengel
09:33 AM Revision 254261e0: fix text
Chris Buechler
09:07 AM Revision 4cdae0ac: fix text
Chris Buechler
09:05 AM Revision 18f3c2fd: add option to send prefix hint for requesting desired prefix length for delegation
This change adds an option on the interfaces page for sending a prefix hint for the selected delegation size. If enab... Daniel Becker
08:34 AM Bug #2951: OpenVPN and alternative monitoring IP in 2.1
I can replicate this, but I think fixing #3179 will fix this as well. Will leave to feedback to test again after 3179... Chris Buechler
08:30 AM Bug #3180 (Closed): SMTP notifications not work with 587 port and SSL/TLS
SMTP notifications (System>Advanced>Notifications) not work with 587 port and SSL/TLS authentication checked. The sys... Anonymous
08:16 AM Bug #754: hifn driver and AES192 and 256
I can confirm the problem on pfSense 2.0.3, Alix.2D13 and soekris VPN1411 (hifn 7955).
There is no difference in thr...
Igor Liebermann
08:13 AM Bug #3146 (Resolved): Apinger still putting spaces after gateway names, leading to failing commands
Chris Buechler
08:12 AM Bug #3125: hifn on 2.1 breaks certain ciphers w/openssl
not really anything we can do here. will revisit. Chris Buechler
07:59 AM Bug #2993: IPsec in transport mode, tunneled traffic does not flow through enc0
not a regression, pushing to 2.2 Chris Buechler
07:53 AM Bug #2409 (Resolved): ipfw - entryzerostats
Chris Buechler
07:50 AM Bug #3098 (Resolved): Advanced Options - Multiple State / Connection Controls Not Working
Confirmed this is all good now. Chris Buechler
07:16 AM Bug #2910 (Resolved): monitoring-disabled gateway causes wrong tiered gateway in route-to
fixed Chris Buechler
07:15 AM Revision a2ac3661: Merge pull request #792 from razzfazz/RELENG_2_1
add option to send prefix hint for requesting desired prefix length for ... Ermal Luçi
07:06 AM Revision 4a6f3d96: Merge pull request #791 from jean-m-cyr/RELENG_2_1
Dummynet does not require burst size specification Ermal Luçi
07:03 AM Bug #3095 (Resolved): Name column uses old (original) interface name
Chris Buechler
07:00 AM Bug #2159: Upgrade code breaks RRD databases on nano
Applied in changeset commit:7ca8bef40e29d1a4ef7a641141401f51297cc101. Renato Botelho
07:00 AM Bug #2159 (Feedback): Upgrade code breaks RRD databases on nano
Applied in changeset commit:42ec9337ea432906c7fa9ee99f763946fd974e3c. Renato Botelho
02:46 AM Bug #2159 (New): Upgrade code breaks RRD databases on nano
this regressed at some point. Current status same as in original. Chris Buechler
06:56 AM Bug #2440 (Resolved): Wireless client nic set for DHCP does not start dhclient
works Chris Buechler
06:49 AM Revision e9215ad4: Use physmem and realmem from get_memory() in the appropriate places
Backport to 2.1 Phil Davis
06:43 AM Revision 98c10c92: Use new names for get_memory parameters
Phil Davis
06:35 AM Revision 68b253ad: Use hw.physmem when calculating pfsense_default_state_size
hw.physmem is the actual amount of memory that FreeBSD/pfSense can get its hands on, so use this for the calculation.... Phil Davis
06:27 AM Revision 324e112d: touch up text, s/nat/NAT/
Chris Buechler
06:26 AM Revision ec532672: touch up text, s/nat/NAT/
Chris Buechler
05:55 AM Bug #3177 (Resolved): Dynamic IPsec endpoints not added in rules.debug
Yep, that fixes it. Confirmed Seth Mos
05:30 AM Bug #3177: Dynamic IPsec endpoints not added in rules.debug
Applied in changeset commit:7cb3f7d26dd5770f666207f86899fb1529991622. Ermal Luçi
05:30 AM Bug #3177 (Feedback): Dynamic IPsec endpoints not added in rules.debug
Applied in changeset commit:bee7cd82f805daf11c53515059f45ad0da20de7f. Ermal Luçi
04:59 AM Bug #3177 (Resolved): Dynamic IPsec endpoints not added in rules.debug
On boot the Dynamic DNS endpoint rules for IPsec tunnels with the DynDNS name are not added to rules.debug.
This c...
Seth Mos
05:39 AM Feature #3178 (Duplicate): IPSec dynamic hosts for IPv6
The framework of dynamic host names does not work presently for IPv6.
Leaving this here as an issue for future relea...
Ermal Luçi
04:20 AM Bug #3176 (Feedback): Hosts file corrupted when using "Register DHCP leases in DNS forwarder"
haven't seen this anywhere or heard of it elsewhere Chris Buechler
04:03 AM Bug #3176: Hosts file corrupted when using "Register DHCP leases in DNS forwarder"
Cant reproduce the problem anymore. When i disabled the "DHCP leases in DNS forwarder" my problem was gone but after ... Rene Klomp
03:52 AM Bug #3176: Hosts file corrupted when using "Register DHCP leases in DNS forwarder"
> What pfSense version are you on?
Like in issue description: 2.1-RC1 (amd64) built on Tue Aug 27 16:56:42
> How ...
Rene Klomp
03:13 AM Bug #3176: Hosts file corrupted when using "Register DHCP leases in DNS forwarder"
I am running:
2.1-RC1 (i386)
built on Sun Sep 1 01:17:51 EDT 2013
FreeBSD 8.3-RELEASE-p10
"Register DHCP leases...
Phillip Davis
02:55 AM Bug #3176 (Resolved): Hosts file corrupted when using "Register DHCP leases in DNS forwarder"
When the option "Register DHCP leases in DNS forwarder" is enabled the Host Overrides are not working correctly. They... Rene Klomp
02:47 AM Bug #3104 (Closed): Upgrade 2.1RC0 code breaks RRD databases on nano
duplicate of #2159 Chris Buechler
02:22 AM Bug #2950 (Resolved): Upgrading RRD upgrade from 2.0 causes Out of Memory on 128MB embedded systems
still an RRD upgrade issue on nano but that's covered elsewhere Chris Buechler
01:23 AM Revision 330ecea1: Fix #3174 Handling of gateway groups in openvpn_restart()
If the underlying vip of a gateway group that an openvpn client is bound
to is in backup mode then the client should ...
Shahid Sheikh
01:08 AM Bug #3126 (Resolved): sync up ixgbe driver with r253865
Chris Buechler
01:08 AM Bug #1399: rrdtool respawning too fast
doesn't seem to happen anymore, but will put it out to 2.2 for confirmation.
Chris Buechler
01:07 AM Bug #2325 (New): Limiters don't work on OPT WAN rules w/rdr
issue unchanged in general for the specific circumstance in the original. Non-regression, postponing to 2.2. Chris Buechler
12:55 AM Bug #2882: 6RD not working in latest snapshots
Hi Chris,
Well that's quite the disappointing news.
Any chance you could just roll back whatever changes were m...
Will Wainwright
12:33 AM Bug #2882: 6RD not working in latest snapshots
6rd works in general, but there are issues due to the lack of proper v6 frag handling that makes it not functional in... Chris Buechler
12:38 AM Bug #2332 (Resolved): gateways always renamed to "dynamic". Implement proper IPv6 support
Chris Buechler
12:36 AM Bug #3083 (Resolved): Firewall rule toggle fails after several enable/disable cycles : 2.1 RC0 and 2.0.3 release
Chris Buechler
12:35 AM Bug #2979 (Resolved): Increase RRD Max values to account for 10Gbit/s Ethernet
Chris Buechler
12:35 AM Bug #2922 (Resolved): vpn_ipsec_force_reload() needs to be skipped when not really needed
Chris Buechler
12:35 AM Bug #2935 (Resolved): Revert "Backup RRD files using the xml dump and restore from RRD tools" changes
Chris Buechler
12:34 AM Revision 90652fbf: add option to send prefix hint for requesting desired prefix length for delegation
This change adds an option on the interfaces page for sending a prefix hint for the selected delegation size. If enab... Daniel Becker
12:31 AM Bug #2941 (Resolved): Prohibit adding aliases containing FQDNs in static routes
Chris Buechler
12:31 AM Bug #3030 (Resolved): When using LAGG+VLAN+ALTQ, the shaper wizard does not fill in the interface bandwidth
Chris Buechler
12:30 AM Bug #3077 (Resolved): FTP patches in revision 39802d4e cause kernel panics on FTP traffic
Chris Buechler
12:30 AM Bug #3150 (Resolved): Ping, Traceroute, and related pages need fixes to ensure IPv6 addresses are scoped properly.
Chris Buechler
12:10 AM Revision 9880a11d: Dummynet does not require burst size specification
Dummynet traffic shaper does not require burst size specification and
assumes 0 if not specified. Allow user to leave...
Jean Cyr

09/02/2013

09:35 PM Bug #3175 (Rejected): <Firewall: NAT: Port Forward: Edit> takes range in "Redirect target port"
not a bug, how things are supposed to work. Chris Buechler
12:12 PM Bug #3175 (Rejected): <Firewall: NAT: Port Forward: Edit> takes range in "Redirect target port"
If putting a range or an alias with a range in "Redirect target port" the rules crashes.
pfctl -s rules will be empt...
Grischa Zengel
08:33 PM Bug #3174: OpenVPN Client bound to a gateway group should not start on backup CARP vip
Pull requests #793 (for master) and #790 (for RELENG_2_1). Thx. Shahid Sheikh
07:16 AM Bug #3174: OpenVPN Client bound to a gateway group should not start on backup CARP vip
Could you please send a pull request to pfSense repo [1] at github? This is the right path to submit patches. Here yo... Renato Botelho
08:13 PM Revision 6eb6e720: #3174 Handling of gateway groups in openvpn_restart()
If the underlying vip of a gateway group that an openvpn client is bound to is in backup mode then the client should ... Shahid Sheikh
08:09 PM Revision 414edd3e: #3174 Added handling of gateway groups in openvpn_restart
Shahid Sheikh
06:08 PM Revision e7a209f5: Merge pull request #789 from jean-m-cyr/master
shaper burst may be blank, but if not then must be numeric Renato Botelho
06:01 PM Revision 6aab2ea3: shaper burst may be blank, but if not then must be numeric
Jean Cyr
02:10 PM Bug #2719: Deleting IPsec tunnel does not remove SPDs
Grischa Zengel wrote:
> Now I checked it:
> If I disable IPsec phase1 the ping goes thru openvpn.
> If I only dele...
Renato Botelho
01:30 PM Bug #2719: Deleting IPsec tunnel does not remove SPDs
Now I checked it:
If I disable IPsec phase1 the ping goes thru openvpn.
If I only delete phase2 the SPD still exist...
Grischa Zengel
12:30 PM Bug #2719: Deleting IPsec tunnel does not remove SPDs
I didn't check if the SPDs still be there but I had the conclusion of this.
From both sides I could ping both ends o...
Grischa Zengel
07:05 AM Bug #2719 (Feedback): Deleting IPsec tunnel does not remove SPDs
Grischa Zengel wrote:
> The problem still exists.
>
> After deleting IPsec tunnels routing didn't work for these ...
Renato Botelho
11:12 AM Revision 0c3a7a05: Use updated get_memory var names
Backport to 2.1 Phil Davis
11:01 AM Revision 7a6851df: Fix #3172, return_gateway_groups_array() was returning the last vip since it was using wrong variable name on iteration
Renato Botelho
11:00 AM Revision 22234bbb: Fix #3172, return_gateway_groups_array() was returning the last vip since it was using wrong variable name on iteration
Renato Botelho
10:54 AM Revision d613b9d5: Improve var names in get_memory
Backport from master Phil Davis
08:26 AM Revision ce4aea3a: Merge pull request #788 from jean-m-cyr/master
Dummynet does not require burst size specification Ermal Luçi
06:55 AM Revision b3e0fedf: Dummynet does not require burst size specification
Dummynet traffic shaper does not require burst size specification and
assumes 0 if not specified. Allow user to leave...
Jean Cyr
06:00 AM Bug #3172: function return_gateway_groups_array() returns the incorrect vip
Applied in changeset commit:7a6851dff7763fc85d03648ca30039fcd53ac620. Renato Botelho
06:00 AM Bug #3172 (Feedback): function return_gateway_groups_array() returns the incorrect vip
Applied in changeset commit:22234bbb2f3ea46fc61bb5adeabec1e94ccf167f. Renato Botelho

09/01/2013

06:50 PM Bug #3174 (Resolved): OpenVPN Client bound to a gateway group should not start on backup CARP vip
There is no handling for gateway groups in ... Shahid Sheikh
12:51 PM Bug #2882: 6RD not working in latest snapshots
Same issue here.
Using CenturyLink for 6RD so not limited to Charter. Upgraded from an August 2012 build to Sun...
Vince Maroun

08/31/2013

02:31 PM Revision f89f3b3d: Merge pull request #787 from phil-davis/master
Provide get_uptime_sec in a common include file Renato Botelho
06:18 AM Bug #3173 (Resolved): NEGATE_ROUTE rule does not respect port numbers
See forum: http://forum.pfsense.org/index.php/topic,65886.0.html
If I add a rule on LAN to pass source all, destin...
Phillip Davis
06:13 AM Bug #3172 (Resolved): function return_gateway_groups_array() returns the incorrect vip
I am not even a PHP novice so please take these findings with a grain of salt.
The vip returned is always the last...
Shahid Sheikh
04:27 AM Bug #3163: XS4All IPv6 does not work
adding version couldn't hurt either I suppose.
FreeBSD xxxx.xxxxxx.xxx 8.3-RELEASE-p10 FreeBSD 8.3-RELEASE-p10 #0:...
Wouter Snels
04:15 AM Bug #3163: XS4All IPv6 does not work
maybe the output of the dhcp6c helps. Wouter Snels
02:48 AM Bug #3163: XS4All IPv6 does not work
i have that checked all the time ! no that doesn't make it right Wouter Snels

08/30/2013

05:37 PM Revision 3fcb6a21: Show a count of the CPUs if more than one is detected, and show how those CPUs are supplied by the hardware.
Jim Pingle
05:37 PM Revision b097a7cf: Show a count of the CPUs if more than one is detected, and show how those CPUs are supplied by the hardware.
Jim Pingle
05:28 PM Bug #3163: XS4All IPv6 does not work
avink in the forum is right. Checking the box "Use IPv4 connectivity as parent interface" makes the config files use ... Rob J. Epping
03:04 AM Bug #3163: XS4All IPv6 does not work
Also posted on the forum.
It looks to me like the setup of the ipv6 WAN interface is broken.
Instead of configuri...
Rob J. Epping
11:53 AM Feature #410: Eliminate the interface mismatch prompt and try to do the right thing automatically
about restong the backup, that only works if that yet doesn't include the missing interface. my wlan usb stick was qu... dont care
11:49 AM Feature #410: Eliminate the interface mismatch prompt and try to do the right thing automatically
I'd like to add a situation that I recently eperienced: One interface was gone (just a usb stick for WLAN) and networ... dont care
11:18 AM Bug #3171: Network interface mismatch on next boot after adding usb-stick based WLAN
That has been discussed many times. If *any* interface is missing, it's best to stop and not try to assume it is safe... Jim Pingle
11:15 AM Bug #3171: Network interface mismatch on next boot after adding usb-stick based WLAN
Jim P wrote:
> This was due to your wireless device not being present when it needed it to be there, so it's not a s...
dont care
11:14 AM Bug #3171: Network interface mismatch on next boot after adding usb-stick based WLAN
Update: This can be fixed according to the solution in https://redmine.pfsense.org/issues/3170.
Yet I can't unders...
dont care
11:13 AM Bug #3171 (Rejected): Network interface mismatch on next boot after adding usb-stick based WLAN
This was due to your wireless device not being present when it needed it to be there, so it's not a separate issue bu... Jim Pingle
09:42 AM Bug #3171 (Rejected): Network interface mismatch on next boot after adding usb-stick based WLAN
After adding a new interface where I selected run0 (an rt3070 based usb wlan stick, edimax EW-7711UMn) and not doing ... dont care
11:12 AM Bug #3170: USB WLAN stick only recognized after plugging in and out
We can't load every conceivable driver, and run devices have also been known to have panics on some chips/devices, so... Jim Pingle
11:11 AM Bug #3170: USB WLAN stick only recognized after plugging in and out
(Hint came from wallabybob here: http://forum.pfsense.org/index.php?topic=65227.new;topicseen#new) dont care
11:10 AM Bug #3170: USB WLAN stick only recognized after plugging in and out
Update: This problem can be fixed by adding... dont care
10:11 AM Bug #3170 (Rejected): USB WLAN stick only recognized after plugging in and out
driver problem we have no control over. Hopefully will get better with 2.2 (FreeBSD 10) if it isn't already in 2.1. Chris Buechler
09:37 AM Bug #3170 (Rejected): USB WLAN stick only recognized after plugging in and out
I am using an rt3070 based usb wlan stick, edimax EW-7711UMn. in the interface assign pulldown choice, it's only avai... dont care
05:46 AM Bug #2882 (New): 6RD not working in latest snapshots
Renato Botelho
05:42 AM Bug #3112 (Resolved): AHCI disk devices are not detected in Diagnostics > SMART Status
Renato Botelho

08/29/2013

10:20 PM Bug #2882: 6RD not working in latest snapshots
Hello,
Having the same issue here. I also have Charter for my carrier. I am able to get a IPv6 IP, but am unable t...
Christopher Blake
09:41 PM Bug #3112: AHCI disk devices are not detected in Diagnostics > SMART Status
I have a solid state disk in an Atom D525 that I switched over to use AHCI. I now can see ada0 in the SMART status pa... Josh G
05:38 PM Revision 35eb76fa: Use ipprotocol to check gateway protocol, this fix a issue that allow to set more than one default gateway when it's dynamic
Renato Botelho
05:38 PM Revision beb7cd97: Use ipprotocol to check gateway protocol, this fix a issue that allow to set more than one default gateway when it's dynamic
Renato Botelho
07:12 AM Revision 806e5979: Call get_uptime_sec from functions.inc.php
to avoid code duplication Phil Davis
07:09 AM Revision df0cb10b: Provide get_uptime_sec in a common include file
so it is available to anything that cares. Phil Davis
06:32 AM Revision 73fa0178: Increased needed memory for APC to 512M + code cleanup
- Increased the needed memory for APC to 512M as we often run into memory problems on our 256M box
- fixed the RAM ca...
Individual IT Services
05:24 AM pfSense Packages Bug #3168 (Rejected): siproxd
siproxd_registered_phones.php lists a maximum of 10 registered Phones, even if more are connected via pfsense-siproxd... Need Less
04:00 AM Bug #2833: Add a knob to prefer IPv4 over IPv6 for rare situations that require it
Agreed - I've had situations where DNS returns a v6 IP, v6 connectivity isn't working, so checking for updates fails ... Criggie .

08/28/2013

11:58 PM Revision 58ddb24f: Merge pull request #785 from phil-davis/master
Tidy up use of hw.physmem and hw.realmem from get_memory() Renato Botelho
08:13 PM Revision 5517f604: Use physmem and realmem from get_memory() in the appropriate places
Phil Davis
08:11 PM Revision 6b0739ac: Use new names for get_memory parameters
Phil Davis
08:09 PM Revision 386758bb: Use hw.physmem when calculating pfsense_default_state_size
hw.physmem is the actual amount of memory that FreeBSD/pfSense can get its hands on, so use this for the calculation. Phil Davis
08:05 PM Revision 493360f5: Use updated get_memory var names
The value of minimum_ram_warning is designed to be compared to hw.physmem - so do that. Usse the appropriate physmem ... Phil Davis
08:01 PM Revision 517fb89e: Improve var names in get_memory
realmem is the amount of actual (real) memory installed - the size of the RAM card - e.g. 256MB
physmem is the amount...
Phil Davis
05:54 PM Revision f6339216: s/require/require_once/g for filter.inc to avoid redeclaration errors in some rare cases.
Jim Pingle
05:53 PM Revision b6239962: s/require/require_once/g for filter.inc to avoid redeclaration errors in some rare cases.
Jim Pingle
02:49 PM Revision a41c0316: If upgrading NanoBSD, try to grab the previous timezone file so the zone is preserved on the next boot.
Jim Pingle
02:48 PM Revision 495dd804: If upgrading NanoBSD, try to grab the previous timezone file so the zone is preserved on the next boot.
Jim Pingle
02:44 PM Revision fa92a6a4: Also run mtree check post-upgrade.
Jim Pingle
02:43 PM Revision 636307a5: Also run mtree check post-upgrade.
Jim Pingle
02:09 PM Bug #3163: XS4All IPv6 does not work
edit: http://forum.pfsense.org/index.php/topic,65832.msg359062.html#msg359062 starting the dhcp6c client manually mad... Wouter Snels
01:00 PM Revision c53f1e0c: Support the names used by the status page as well as those used internally by service entries.
Jim Pingle
01:00 PM Revision aed00539: Support the names used by the status page as well as those used internally by service entries.
Jim Pingle

08/27/2013

11:37 PM pfSense Packages Feature #3167 (Needs Patch): Add iStat as a package
This guy did most of the work already:
http://geekness.eu/content/istat-pfsense-and-server-monitoring
Would lik...
Mahdi Hedhli
07:50 PM Bug #2919: IPv6 - WAN and LAN (DHCP-PD) does not renew address
The IPv6 address may survive the loss of connectivity *to* the cable modem (i.e., from pfSense's point of view, link ... Daniel Becker
11:33 AM pfSense Packages Bug #2199 (Closed): Varnish3 fails on start with sysctl-ish errors
Thanks config syntax fixed from an over-zealous search and replace. Warren Baker
11:14 AM pfSense Packages Bug #2199: Varnish3 fails on start with sysctl-ish errors
Well i found one your mistake were u forgot.
Foward client IP :
(append X-Forwarded-For):
set req.http.X-Forwarde...
Valentin Georgiev
09:05 AM pfSense Packages Bug #2199: Varnish3 fails on start with sysctl-ish errors
I think about the problem from before is gone => Close Valentin Georgiev
08:56 AM pfSense Packages Bug #2199: Varnish3 fails on start with sysctl-ish errors
Yeah i noticed that. Those are two separate bugs. If you can please log two new bugs related to those issues then we ... Warren Baker
08:53 AM pfSense Packages Bug #2199: Varnish3 fails on start with sysctl-ish errors
Yes, now its better. Saving and running normally.
Works only the first backend, "# backend Web02 not in use." is sho...
Valentin Georgiev
02:50 AM pfSense Packages Bug #2199 (Feedback): Varnish3 fails on start with sysctl-ish errors
I pushed a few commits for this - please let me know how it goes.
Warren Baker
10:28 AM Bug #3166 (Resolved): status_services.php:starts services 2-3 times;
file: service-utils.inc... Valentin Georgiev
10:21 AM Bug #3165 (Resolved): OpenVPN Bridge with Client Specific Override
Configuring an OpenVPN bridge on 2.1-RC1 (i386) (built on Mon Aug 26 16:51:15 EDT 2013)
I use the Wizard to create...
David Priestley
09:16 AM pfSense Packages Bug #3164 (Rejected): Varnish:XMLRPC Sync, start everytime without be needed
(Automatically sync Varnish configuration changes) is not checked.
in the logs see other
>php: config.inc: [varnish...
Valentin Georgiev
04:49 AM Bug #3161 (Resolved): apinger pings loopback instead of gateway on gif tunnels
Renato Botelho
01:43 AM Bug #3161: apinger pings loopback instead of gateway on gif tunnels
Thanks, fixed now with Aug 26 16:51:36 EDT 2013 snapshots. Doktor Notor
02:46 AM Bug #3163: XS4All IPv6 does not work
I think this is related to the item I posted 2 days ago on the forum, I also have native ipv6 issue it used to work a... Wouter Snels

08/26/2013

05:54 PM Bug #3161: apinger pings loopback instead of gateway on gif tunnels
Michael Kellogg wrote:
> 2.1-RC1 (amd64)
> built on Mon Aug 26 01:13:05 EDT 2013
>
> ping times on my tunnel ar...
Renato Botelho
02:32 PM Bug #3161: apinger pings loopback instead of gateway on gif tunnels
2.1-RC1 (amd64)
built on Mon Aug 26 01:13:05 EDT 2013
ping times on my tunnel are still .x ms unlike the norma...
Michael Kellogg
07:01 AM Bug #3161: apinger pings loopback instead of gateway on gif tunnels
Please try later snapshot Renato Botelho
07:00 AM Bug #3161 (Feedback): apinger pings loopback instead of gateway on gif tunnels
Applied in changeset pfsense-tools:commit:b5c0231c6801d25a1555c97c0a82e64b90a994d1. Renato Botelho
05:53 PM Bug #3155 (Resolved): rc.newipsecdns will trigger new static route but didn't delete old route
Renato Botelho
01:11 PM Bug #3155: rc.newipsecdns will trigger new static route but didn't delete old route
The old routes disappear now. Grischa Zengel
05:25 PM Bug #3163 (Resolved): XS4All IPv6 does not work
Ever since 2.1-RC1 my IPv6 connection (XS4all DHCPv6-PD) is broken.
I use a Vigor120 ADSL modem as PPPoA to PPPoE br...
Rob J. Epping
03:11 PM pfSense Packages Bug #2199: Varnish3 fails on start with sysctl-ish errors
PS; I try to add now the two backends but only the 1st one is in .vcl config file
> # backend Web02 not in use.
i...
Valentin Georgiev
02:40 PM pfSense Packages Bug #2199: Varnish3 fails on start with sysctl-ish errors
2 servers, but no matters how much backends have there.
Problem is in pfsense Varnish config generator, see http://f...
Valentin Georgiev
08:50 AM pfSense Packages Bug #2199: Varnish3 fails on start with sysctl-ish errors
Valentin Georgiev wrote:
> php: /status_services.php: The command '/usr/local/etc/rc.d/varnish.sh stop' returned exi...
Warren Baker
03:34 AM pfSense Packages Bug #2199: Varnish3 fails on start with sysctl-ish errors
php: /status_services.php: The command '/usr/local/etc/rc.d/varnish.sh stop' returned exit code '2', the output was '... Valentin Georgiev
02:33 PM Feature #3162 (New): MLPPP Status of connections
Would like to see if using Multi-WAN/MLPPP have something in status like 4 of 4 connections up in pfSense's Dashboard... Gary Chisholm
11:33 AM Revision 4b1c16b9: Merge pull request #783 from phil-davis/master
Add option to specify client management port for OpenVPN client export use Renato Botelho
10:30 AM Bug #2719 (New): Deleting IPsec tunnel does not remove SPDs
Renato Botelho
08:46 AM Bug #2719: Deleting IPsec tunnel does not remove SPDs
The problem still exists.
After deleting IPsec tunnels routing didn't work for these subnets.
I first deleted pha...
Grischa Zengel
08:44 AM Bug #3157: the bug from #2719 still exists
But this won't open this issue... Grischa Zengel
06:21 AM Bug #3157 (Rejected): the bug from #2719 still exists
If you are having the same issue from #2719, please add comments on it instead of open a new ticket. Renato Botelho
06:23 AM Revision faf61f12: Add option to specify client management port for OpenVPN client export use
See forum http://forum.pfsense.org/index.php/topic,63668.0.html and OpenVPN Manager GitHub discussion https://github.... Phil Davis
06:20 AM Feature #3160 (Rejected): Pull request from master to 2.1-RC
It's such a big change to apply to 2.1 at this point. Renato Botelho

08/25/2013

04:48 PM Bug #3161 (Resolved): apinger pings loopback instead of gateway on gif tunnels
As described on this post: http://forum.pfsense.org/index.php/topic,65231.msg358058.html#msg358058... Doktor Notor
11:41 AM Feature #3160 (Rejected): Pull request from master to 2.1-RC
Hi.
Is it possible to also pull the request made on master to the 2.1 RC1 (cf. https://github.com/pfsense/pfsense/...
Mastah Naleh

08/24/2013

11:58 PM Bug #2919 (Resolved): IPv6 - WAN and LAN (DHCP-PD) does not renew address
Thanks for the feedback. I also have done some experimentation and haven't seen any issues, looks like this issue is ... Chris Buechler
06:46 AM Bug #2919: IPv6 - WAN and LAN (DHCP-PD) does not renew address

At this point, I am no longer seeing any problems.
1) DHCP-PD IPv6 addressing has survived multiple renewals.
...
David Williams
11:55 AM Bug #2945: Installation stucks at 36%: /usr/local/bin/cpdup -vvv -I -o /usr /mnt/usr
I was able to correct this issue by:
# Unplugging the network cables and SFP from my NICs
# Using Option #3 to Bo...
Jeffrey Mealo

08/23/2013

10:15 PM Bug #3159: inconsistency in IPv6 logging
No, default deny rules should be consistent in their logging. They are. What you're proposing is the opposite of cons... Chris Buechler
09:50 PM Bug #3159: inconsistency in IPv6 logging
Chris Buechler wrote:
> it's not inconsistent. If you're logging things blocked by default deny, the IPv6 block logg...
winston smith
08:09 PM Bug #3159 (Rejected): inconsistency in IPv6 logging
it's not inconsistent. If you're logging things blocked by default deny, the IPv6 block logging is enabled too. If yo... Chris Buechler
06:31 PM Bug #3159 (Rejected): inconsistency in IPv6 logging
these are the relevant configuration settings:
Advanced: Networking -> "Allow IPv6" is unchecked
Status: Syst...
winston smith
09:39 PM Revision a91773bb: Merge pull request #781 from PiBa-NL/CreateCertificate_DigestAlgorithm
Certificate Manager, for 'Create an internal Certificate' use the correct 'Digest Algorithm' Jim Pingle
07:48 PM Revision 8f07b51c: Certificate Manager, for 'Create an internal Certificate' use the correct 'Digest Algorithm'
Pi Ba
02:42 AM Bug #3158 (Rejected): Captive portal, two radius accounting packets sent.
Hi, I hope this isn't a duplicate, I searched reasonably well.
In the latest version of 2.1 (I took the daily build ...
andy franks

08/22/2013

07:14 PM Revision e89c3caf: Delete old route for remote gateway when its IP changes. It fixes #3155
Renato Botelho
07:14 PM Revision 083a9e6d: Delete old route for remote gateway when its IP changes. It fixes #3155
Renato Botelho
02:10 PM Bug #3155: rc.newipsecdns will trigger new static route but didn't delete old route
Applied in changeset commit:e89c3caf2c4e69e255d18c8a19d163b2d36490e0. Renato Botelho
02:10 PM Bug #3155 (Feedback): rc.newipsecdns will trigger new static route but didn't delete old route
Applied in changeset commit:083a9e6d0ba00c4f80859e4c5d450a0b37d552ce. Renato Botelho
01:20 PM Bug #3155 (Resolved): rc.newipsecdns will trigger new static route but didn't delete old route
Each time the peer address changes there will be a new static route to the peer.
The old route should be removed.
A...
Grischa Zengel
01:45 PM Bug #3157 (Rejected): the bug from #2719 still exists
After deleting IPsec tunnels routing didn't work for these subnets.
I first deleted phase2 and than phase1 and routi...
Grischa Zengel
01:33 PM Feature #3156 (Duplicate): Grouping rules
I would like to define groups of rules and add them on block to interfaces.
Grouping interfaces is not efficient. No...
Grischa Zengel
03:34 AM Revision 475aa214: fix text to remove non-applicable copy/paste from v4 relay
Chris Buechler
03:33 AM Revision afde5956: fix text to remove non-applicable copy/paste from v4 relay
Chris Buechler

08/21/2013

07:21 PM Revision 35e125b4: Fixup check for existing easyrule block rule to account for the ipproto and when the ipproto is blank.
Jim Pingle
07:20 PM Revision 4475997e: Fixup check for existing easyrule block rule to account for the ipproto and when the ipproto is blank.
Jim Pingle
02:35 PM Bug #3150 (Feedback): Ping, Traceroute, and related pages need fixes to ensure IPv6 addresses are scoped properly.
Only ping and test port needed to be changed. Renato Botelho
07:20 AM pfSense Packages Bug #3154 (Rejected): pfSense should not require users' private keys to be uploaded to generate certificates.
This is better handled as a discussion on the forum rather than here in the bug tracker.
Currently there are no fu...
Jim Pingle
07:07 AM pfSense Packages Bug #3154 (Rejected): pfSense should not require users' private keys to be uploaded to generate certificates.
Hi,
In the certificate manager, the UI used to import existing certificates *requires* that you provide both the c...
N. CANIART
07:01 AM Bug #2891: Limiter does not work with high speed
Screen dumps to se symptoms
1) Create a normal limiter with queue size set under advanced settings:
https://dl.dr...
Anders Tillebeck
06:22 AM Bug #2891: Limiter does not work with high speed
This forum post is probably about same problem. But a much more detailed description:
http://forum.pfsense.org/index...
Anders Tillebeck
03:24 AM Bug #2891: Limiter does not work with high speed
Hello.
I would like to reopen this bug.
There is still an issue.
# I cannot create a limiter with 50Mbpits that ...
Anders Tillebeck
06:08 AM Bug #3045: NTPD crash / doesn't come up
Benjamin H. wrote:
> Updatet to latest snapshot, 2.1 RC1 amd64 and replaced the NTPD file again with your provided f...
Renato Botelho
06:03 AM Bug #3104 (Feedback): Upgrade 2.1RC0 code breaks RRD databases on nano
The error message "No DS called 'inpass6'" means the database was not converted to new format, what happens when conf... Renato Botelho
01:24 AM Revision b4dcdbcf: Remove this particular form tag that doesn't appear to serve any purpose on this page, and breaks the drop-down zone selector. Fixes #3153
Jim Pingle
01:23 AM Revision 8cd1d911: Remove this particular form tag that doesn't appear to serve any purpose on this page, and breaks the drop-down zone selector. Fixes #3153
Jim Pingle

08/20/2013

08:20 PM Bug #3153: Captive Portal Status Select List Inop with Vouchers
Applied in changeset commit:b4dcdbcff58fab82d8f62bd8641f0c04429218ea. Jim Pingle
08:20 PM Bug #3153 (Feedback): Captive Portal Status Select List Inop with Vouchers
Applied in changeset commit:8cd1d911dc2f1ecf9fb7cd00ee1a102c35479008. Jim Pingle
07:45 PM Bug #3153 (Resolved): Captive Portal Status Select List Inop with Vouchers
Steps to reproduce:
Define CP zones, one with and one without vouchers enabled. When viewing Captive Portal Statu...
Chris Linstruth
07:41 PM Revision eb0287e9: Add patch from the ticket to fix #3149
Jim Pingle
07:41 PM Revision 51f9b7e4: Add patch from the ticket to fix #3149
Jim Pingle
07:30 PM Revision d318da67: Add scope to target when it is a link-local, it helps ticket #3150
Renato Botelho
07:29 PM Revision 3830eeb3: Add scope to target when it is a link-local, it helps ticket #3150
Renato Botelho
05:39 PM Revision 8f61cb87: Add scope to target when it is a link-local, it helps ticket #3150
Renato Botelho
05:37 PM Revision bd6ff328: Add scope to target when it is a link-local, it helps ticket #3150
Renato Botelho
05:18 PM Feature #1825: Dynamic DNS client IPv6 support
freedns.afraid.org also works, http://freedns.afraid.org/dynamic/update.php?<Authentication Token>&address=<IPv6> Doktor Notor
11:17 AM Revision 86797a92: Merge pull request #779 from CharlieMarshall/fileCss
remove css from edit.php page Renato Botelho
08:51 AM Feature #972: Allow adding gateways outside of interface subnet
Apparently -cloning has been deprecated in FreeBSD, so that parameter should be removed from the above command.
<p...
Jim Pingle

08/19/2013

08:30 PM Bug #3149: SMART status widget always displays error with SCSI drives
I've now confirmed across multiple versions of multiple operating systems that SCSI drives consistently report "SMART... Adam Thompson
08:12 PM Revision 45ce573d: Revert "Improve sh syntax using ${} for all variables"
This was cherry-pick'd by mistake
This reverts commit 1702a838194d2f4ffaa99359f888a42b0832472a.
Renato Botelho
05:55 PM Revision bbd87523: Attempt to recognize pfsync entries from pf logs.
Jim Pingle
05:54 PM Revision e56cb3de: Attempt to recognize pfsync entries from pf logs.
Jim Pingle
05:34 AM Bug #3152: Updater should fall back to IPv4 if IPv6 fails
Feature described at #2833 can help on this Renato Botelho
12:57 AM Bug #3152: Updater should fall back to IPv4 if IPv6 fails
if it appears you have v6 connectivity and you actually don't, you need to disable IPv6. Having it disabled on all yo... Chris Buechler

08/18/2013

11:12 PM Revision 289dd691: Merge pull request #778 from N0YB/patch-11
Update functions.inc.php Renato Botelho
09:37 PM Revision 4fd09104: remove css
Charlie Marshall
02:55 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Tested using:
2.1-RC1 (amd64)
built on Sat Aug 17 21:32:08 EDT 2013
FreeBSD 8.3-RELEASE-p9
Step 1
Freshly boot...
Anonymous
02:17 PM Bug #3152 (Closed): Updater should fall back to IPv4 if IPv6 fails
Updater tries to use ipv6 even if ipv6 is disabled.
If ISP connect ipv6 segment to WAN updater uses ipv6 and could n...
Grischa Zengel
01:31 PM Bug #3104: Upgrade 2.1RC0 code breaks RRD databases on nano
Here are some related tickets which were perhaps closed prematurely:
Issue #2651
Issue #2159
Please let me know ...
Jeremy L
01:29 PM Bug #3104: Upgrade 2.1RC0 code breaks RRD databases on nano
This also happened to me when upgrading from the latest stable 2.0 release to 2.1-RC1. The 2.1 build used for the up... Jeremy L
06:09 AM Feature #3151 (Resolved): Disable gateway monitoring actions without disabling gateway monitoring
Mentioned in this thread: http://forum.pfsense.org/index.php/topic,65452.0.html
In sites with single WAN, I still pu...
Phillip Davis
02:01 AM Revision ffd2f320: Update functions.inc.php
May as well remove this errant td end tag too. N0YB
01:31 AM Revision 30416166: Strip off scope before attempting to resolve the IPv6 IP here.
Jim Pingle
01:31 AM Revision 5d6d1958: Strip off scope before attempting to resolve the IPv6 IP here.
Jim Pingle
12:16 AM Revision e6cfcd26: Update functions.inc.php
Fix gateway widget size change on first update.
Inner table size changes because the table in update data does not ha...
N0YB
 

Also available in: Atom