Project

General

Profile

Activity

From 08/30/2013 to 09/28/2013

09/28/2013

07:39 PM Bug #3241 (Rejected): Automatic connect in Infrastructure mode
that's a feature with legit usage cases. You need to log into the web interface for the initial config regardless, an... Chris Buechler
11:32 AM Bug #3241 (Rejected): Automatic connect in Infrastructure mode
In infrastructure mode, pfsense automatically connects to a open wifi network. Quote from the SSID field description ... dont care
02:27 PM Bug #3234 (New): Captive Portal previously declared getNasIP()
Ermal will make changes here Renato Botelho
08:20 AM Bug #3234: Captive Portal previously declared getNasIP()
Applied in changeset commit:8ad84ebb49f86e791427110233382bd5e804d503. Renato Botelho
01:26 PM Revision ff8affb4: Fix codel not being applied on non-priq queue types
Richard Connon
01:26 PM Revision 931f3890: Fixed typo in CoDel wiki link
Richard Connon
01:16 PM Revision 8ad84ebb: Remove redundant copies of getNasIP(), it should fix #3234
Renato Botelho
01:15 PM Revision 0bb7bfbb: Merge pull request #812 from irconan/master
Minor CoDel fixes, fix #3239 and #3240 Renato Botelho
12:12 PM Revision 9f6919e6: Fix codel not being applied on non-priq queue types
Richard Connon
11:37 AM Revision c27edf55: Fixed typo in CoDel wiki link
Richard Connon
08:41 AM Bug #754: hifn driver and AES192 and 256
I've attached a couple of text files showing the Soekris VPN-1401 (Hifn-7955 / PCI Bus) version working in a Soekris ... Scott Douglas
08:10 AM Bug #3239 (Feedback): Link to codel wiki page malformed (missing :)
Applied in changeset commit:0bb7bfbbd9f0881a6d1970540068c707f4feb69f. Anonymous
06:36 AM Bug #3239: Link to codel wiki page malformed (missing :)
Link href actually reads http://http:// ...
Pull request for fix here: https://github.com/pfsense/pfsense/pull/812
Richard Connon
05:43 AM Bug #3239 (Resolved): Link to codel wiki page malformed (missing :)
Link to codel wiki page in the web UI has href "http//www.bufferbloat.net/projects/codel/wiki"
The colon is missin...
Richard Connon
07:09 AM Bug #3240 (Resolved): CoDel not applied on non-priq queue types
wconfig function for non-priq queue types does not save codel config. Richard Connon
05:55 AM pfSense Packages Bug #3056 (Feedback): Unbound not getting IPv6 host overrides
Hrmm not seeing that David - line 852 is https://github.com/pfsense/pfsense-packages/blob/master/config/unbound/unbou... Warren Baker
04:52 AM pfSense Packages Bug #3056: Unbound not getting IPv6 host overrides
IPv6 host overrides do not work in unbound 1.4.20_8 due to a typo in line 852 of /usr/local/pkg/unbound.inc, which sh... David Wood

09/27/2013

05:14 PM Revision f3a4601c: If rc.newwanip is run on an interface that should not have an IP address, do not take any action.
Jim Pingle
05:14 PM Revision 93821aea: If rc.newwanip is run on an interface that should not have an IP address, do not take any action.
Jim Pingle
01:25 PM Revision f58bfb93: Remove redundant copies of getNasIP(), it should fix #3234
Renato Botelho
11:58 AM Revision bab13e1f: Merge pull request #811 from Scavy/patch-1
Patch to include GratisDNS as dynDNS service Renato Botelho
10:37 AM Revision 58e1f8f2: Update to include GratisDNS dynDNS service
Scavy
09:29 AM Revision 5458bc59: Update to include GratisDNS dynDNS service
Scavy
08:20 AM Bug #3234 (Feedback): Captive Portal previously declared getNasIP()
Applied in changeset commit:f58bfb932acf9924546d3b9a2c77899741adeb9a. Renato Botelho
06:37 AM Bug #3238 (Rejected): RRD Graphs keep deleted getways under quality tab
That is intentional in case someone needed to retain the history.
One can always remove the file from /var/db/rrd/...
Jim Pingle
04:53 AM Bug #3238 (Rejected): RRD Graphs keep deleted getways under quality tab
Hello,
Having played with multiple Gateway configurations, my Pfsense box still shows "WAN_DHCP" as Graphs drop do...
Orsiris de Jong
06:34 AM Feature #3070 (Closed): ova image wan configuration
Works as expected! Ermal Luçi

09/26/2013

01:53 PM Revision 97c78e19: Merge pull request #810 from ExolonDX/branch_04
Update "status_rrd_graph_settings.php" XHTML Renato Botelho
01:53 PM Revision b9147430: Merge pull request #809 from ExolonDX/branch_02
Update "status_rrd_graph.php" XHTML Renato Botelho
01:52 PM Revision 61ba12f0: Merge pull request #808 from ExolonDX/branch_01
Update "pkg_edit.php" XHTML Renato Botelho
01:47 PM Revision 65fec80d: require service-utils.inc for find_service_by_openvpn_vpnid()
Renato Botelho
01:47 PM Revision 857ff425: Add missing td
Renato Botelho
01:47 PM Revision 1650e1ec: Remove use of undefined var $conn and fix some td class
Renato Botelho
01:45 PM Revision c92ccc70: require service-utils.inc for find_service_by_openvpn_vpnid()
Renato Botelho
01:40 PM Revision a5eb046f: Add missing td
Renato Botelho
01:34 PM Bug #3237 (Resolved): "Revoked" status is incorrect for certificates that are different but share the same descriptive name.
is_cert_revoked() in certs.inc is doing a bogus check on the certificate's descr field to see if the certificate is r... Jim Pingle
01:32 PM Revision 7717ee0b: Remove use of undefined var $conn and fix some td class
Renato Botelho
11:45 AM Bug #3234: Captive Portal previously declared getNasIP()
This is easy to resolve, but best if one of the devs does it, as you guys will know which common include file you pre... Phillip Davis
06:48 AM Bug #3234: Captive Portal previously declared getNasIP()
For instance, there is another copy of the same identical function on radius_accounting.inc Renato Botelho
11:41 AM Revision 75f4bdbd: Update "status_rrd_graph_settings.php" XHTML
Close INPUT tags
Update HTML Boolean operators
Update TABLE tag with summary statement
Colin Fleming
11:35 AM Revision c2cc1721: Update "status_rrd_graph.php" XHTML
Update SCRIPT statements with CDATA
Move the close HEAD statement
Move the FORM statement outside the main table
Clos...
Colin Fleming
11:18 AM Revision 5655d48b: Update "pkg_edit.php" XHTML
Update HTML Boolean operator Colin Fleming
03:53 AM Bug #3231 (Rejected): ipv4 / DHCP leases tab
Chris Buechler
12:36 AM Bug #3231: ipv4 / DHCP leases tab
I figured out the issue. The ddwrt i set up as a switch had dhcp forwarder with the ip of the pfsense server. I dis... Anthony M
03:53 AM Feature #3236 (Rejected): allow static routes on WAN interface to function even without "Disable reply-to"
duplicate Chris Buechler

09/25/2013

10:45 PM Revision 9c43a910: Merge pull request #806 from ccesario/master
Set network interfaces description as interface name. Renato Botelho
10:38 PM Feature #3236 (Rejected): allow static routes on WAN interface to function even without "Disable reply-to"
Static routes on the WAN interface do not function if System->Advanced->Firewall&NAT->Disable_Reply-To remains unchec... Adam Thompson
10:21 PM Bug #3235 (Resolved): Could not open shared memory for read 1000
Reported in forum: http://forum.pfsense.org/index.php/topic,66764.0.html
System logs: php: /diag_nanobsd.php: Could ...
Phillip Davis
10:04 PM Bug #3234 (Resolved): Captive Portal previously declared getNasIP()
Reported in forum http://forum.pfsense.org/index.php/topic,66764.0.html:
Fatal error: Cannot redeclare getNasIP() (p...
Phillip Davis
08:16 PM Revision 2d9063af: Set network interfaces description as interface name.
Carlos Cesario
06:54 PM Bug #3226: Captive Portal Radius Error
It appears that it had been reset - instead of MSCHAPV1 it was listed as PAP. Saving it back to MSCHAPV1 and the erro... Nicholas Schirmer
06:29 PM Bug #3226: Captive Portal Radius Error
Seems that parameter radius protocol is empty. Could you please confirm it? Renato Botelho
03:49 PM Revision 5205b0eb: Make sure no extra spaces end up in the parsed IP, it can lead to issues in other places (Easy Rule, etc)
Jim Pingle
03:49 PM Revision d2399f99: Make sure no extra spaces end up in the parsed IP, it can lead to issues in other places (Easy Rule, etc)
Jim Pingle
12:47 PM Feature #3229: make DynDNS status accessible to the colorblind
It would be easy enough to add status icons for good/bad to Services->Dynamic DNS, and to the Dynamic DNS dashboard w... Phillip Davis
11:40 AM pfSense Packages Bug #3203: vnstat2 not working after pfsense 2.1 upgrade
Hi, I was able to fix this using this guide if anyone runs into the same issue.
http://forum.pfsense.org/index.php...
Kyle Janse van Rensburg
09:35 AM pfSense Packages Bug #3109: pfBlocker disables firewall on nanobsd when no there is no internet access at boot time
I couldn't reproduce this on nanobsd 2.1-RELEASE either. Todd Blum
08:44 AM Bug #3233 (Closed): DHCP options slow to save with large lease files
When I change anything in dhcp server options and click save it last more than 10 minutes.
It happens with 2000 le...
Alfredo Rezinovsky
05:55 AM Bug #3231: ipv4 / DHCP leases tab
I am also on 2.1-RELEASE and Status->DHCP Leases shows leases from the pool at the top (including leases for all of t... Phillip Davis
12:28 AM Revision 93ee6032: Respect default gateway option when adding a gateway from interfaces page. It fixes #3230
Renato Botelho
12:27 AM Revision 197099cf: Respect default gateway option when adding a gateway from interfaces page. It fixes #3230
Renato Botelho

09/24/2013

07:30 PM Bug #3230: Creating Gateway in Interface page forces default gateway to be set even if unchecked.
Applied in changeset commit:93ee603200376dad82f9b531a8086049211273e4. Renato Botelho
07:30 PM Bug #3230 (Feedback): Creating Gateway in Interface page forces default gateway to be set even if unchecked.
Applied in changeset commit:197099cffd8cef6667ffd7fecee94c7e0a5e3955. Renato Botelho
05:59 PM Bug #3230 (Resolved): Creating Gateway in Interface page forces default gateway to be set even if unchecked.
When you create a gateway from the Interfaces tab, the interface gets the default gateway bit set, even if you
unche...
Jeremy Porter
07:28 PM Bug #3231 (Rejected): ipv4 / DHCP leases tab
I can check the dhcp logs and see the addresses that were handed out, if i check on the dhcp leases tab i am able to ... Anthony M
04:35 PM Revision 1207b1d6: OpenSSL does not like country codes longer than two letters, so remove these entries that are not actually country codes.
Jim Pingle
04:34 PM Revision 1fcb90d0: OpenSSL does not like country codes longer than two letters, so remove these entries that are not actually country codes.
Jim Pingle
01:32 PM Revision a338d381: Allow multiple valid time servers to be entered in the wizard, as they are allowed under System > General
Jim Pingle
01:31 PM Revision 11d8b2cd: Allow multiple valid time servers to be entered in the wizard, as they are allowed under System > General
Jim Pingle
01:30 PM Revision 49e60fa6: Allow multiple valid time servers to be entered in the wizard, as they are allowed under System > General
Jim Pingle
12:39 PM Feature #3229 (Resolved): make DynDNS status accessible to the colorblind
DynDNS status uses red/green to indicate its status. Especially in a lightweight typeface, this is inaccessible to ... Bill McGonigle
01:53 AM Feature #3228 (Rejected): Please add an "Interface Down" Trigger Level for Gateway Group members
For gateways which are tied to interfaces (which are in all the cases I use Interface Groups) it would be nice to hav... Malte Stretz
01:02 AM Bug #3227: apinger treats interface as down while it isn't
... Malte Stretz
01:00 AM Bug #3227: apinger treats interface as down while it isn't
The RRD graph. Most the time when apinger thought this link was down it was actually working fine. Malte Stretz
12:59 AM Bug #3227 (Closed): apinger treats interface as down while it isn't
This issue affects a 2.0.1 installation and might be fixed in 2.1. There is eg. bug 3138 but that one was affecting ... Malte Stretz

09/23/2013

07:27 PM Revision 6f969455: Add patch from Ermal to fix ifconfig error on gif in certain cases.
Jim Pingle
07:27 PM Revision 7786cd6e: Add patch from Ermal to fix ifconfig error on gif in certain cases.
Jim Pingle
06:03 PM Bug #3226 (Resolved): Captive Portal Radius Error
Freshly auto-upgraded from 2.0.3 and on my first attempt to login to the captive portal, I received the following err... Nicholas Schirmer
02:52 PM Feature #2358: NAT64 support
UPVOTE. It would be really nice to have these capabilities built into pfSense. The Viagenie implementation is nice an... Mathieu Mourez
02:01 PM Revision be773f24: Include the CP zone in the form parameters if one is defined. Fixes access to concurrent graph on zones other than the first/default.
Jim Pingle
02:01 PM Revision 428ea19f: Fix CP stats generation for concurrent users. Fixes #3225
Jim Pingle
02:00 PM Revision c4877616: Include the CP zone in the form parameters if one is defined. Fixes access to concurrent graph on zones other than the first/default.
Jim Pingle
01:56 PM Revision 9e378421: Fix CP stats generation for concurrent users. Fixes #3225
Jim Pingle
11:35 AM Revision 9e768daf: Prevent assigned vlans from being changed the tag.
Ermal LUÇI
09:00 AM Bug #3225: Captive Portal concurrent users graph is not functional
Applied in changeset commit:428ea19f8abcb4f261e7136e2664494af834239d. Jim Pingle
09:00 AM Bug #3225 (Feedback): Captive Portal concurrent users graph is not functional
Applied in changeset commit:9e3784217b322f0e292bbec28ed87abf7d00677e. Jim Pingle
08:34 AM Bug #3225 (Resolved): Captive Portal concurrent users graph is not functional
The RRD data file for CP concurrent users has only NaN values. It appears the script to gather the stats isn't inject... Jim Pingle

09/22/2013

11:08 PM Bug #3224 (Resolved): Download page still refers to VMware images
I just spent some significant time looking for the VMware/OVA images for version 2.1 on the mirrors as they are still... Malte Stretz
09:36 PM Bug #3209: editing VLAN tag on OPT interface changes LAN interface instead
Not verified (and I'm not going to break this firewall *again* just to check it), but I also believe that at some poi... Adam Thompson
03:00 PM Bug #3223: pfr_unroute_kentry: delete failed and freeze
sorry Affected Architecture: i386 xavier Lemaire
02:59 PM Bug #3223 (Resolved): pfr_unroute_kentry: delete failed and freeze
I just tested the update in pre-production for 2.1_release
The configuration is CARP and BGP with 2 machines.
Unf...
xavier Lemaire
06:33 AM Bug #3222 (Resolved): Firewall URL table aliases "Update Freq." has no units
In firewall_aliases_edit.php on line 503, find:
$update_freq_str = gettext("Update Freq.");
and change it to:
...
badon _

09/21/2013

06:17 PM Revision ac8e8506: Fix #3218, reaload filter rules when activate or deactivate dhcpdv6
Renato Botelho
06:16 PM Revision 472ad9a0: Fix #3218, reaload filter rules when activate or deactivate dhcpdv6
Renato Botelho
01:20 PM Bug #3218: Activating DHCP6 server does not reload firewall rules
Applied in changeset commit:ac8e8506b90c64b99c80bdff50892b703431b54a. Renato Botelho
01:20 PM Bug #3218 (Feedback): Activating DHCP6 server does not reload firewall rules
Applied in changeset commit:472ad9a0e58f0e544f2de65d540de27e9da049dc. Renato Botelho
12:29 PM Bug #2627 (New): Old delegated prefixes are not removed from the LAN interface
Renato Botelho
12:49 AM Bug #3220 (Rejected): Embedded version (i386-2g/4g) does not start the Console Menu
not a general problem, specific to certain pieces of hardware we don't support. Chris Buechler

09/20/2013

08:39 PM pfSense Packages Bug #3221 (Resolved): dansguardian 2.12.0.3 pkg v.0.1.8 has carriage returns in dansguardian.sh
/usr/local/etc/rc.d/dansguardian.sh is has lines terminated with CRLF, which prevents the script from running. Ther... Shane DeRidder
01:17 PM Bug #3220 (Rejected): Embedded version (i386-2g/4g) does not start the Console Menu
Related Forum Post: http://forum.pfsense.org/index.php?topic=34814.0
I just acquired a ServGate SG230 (P3-1.0Ghz a...
Kris Lou
12:35 PM Bug #742: apinger doesn't recover opt wan when connection returns.
Please provide your system log when the issue happens!
The only scenario that i can think of is when both pppoe link...
Ermal Luçi
03:16 AM Bug #742: apinger doesn't recover opt wan when connection returns.
Same issue here with 2.1 RELEASE : with my two PPPoe WANs, when they goes offline and then came back, I have to reboo... Mathieu Déom
03:20 AM Bug #3219 (Resolved): Forwarded domain with underscore should be allowed to add
Something I completely missed with 2.1 but realized the UI doesn't allow yet, it also affect previous 2.0 releases (v... Mathieu Simon

09/19/2013

05:53 PM Revision a4dc9632: Make this name a little more general in case we decide to have multiple similar files.
Jim Pingle
05:52 PM Revision a40e7761: Make this name a little more general in case we decide to have multiple similar files.
Jim Pingle
01:45 PM Revision baeb0599: Alix 2D6 crashes upgrade process withou out of diskspace
Updating the the RRD graphs causes two copies of each RRD's XML file to be stored in /tmp.
On Nanobsd, the default /...
Xon
06:17 AM Bug #3218 (Resolved): Activating DHCP6 server does not reload firewall rules
When the DHCP6 server is enabled there is no filter reload triggered that creates rules so the server can be reached.... Seth Mos

09/18/2013

08:20 PM Revision fd750cd0: Certificate Manager, for 'Create an internal Certificate' use the correct 'Digest Algorithm'
Pi Ba
03:15 PM Bug #3206: Certificate Manager: wrong digest algorithm used when generating a certificate
This is fixed on 2.2 already, and is fixed on RELENG_2_1 now by commit:fd750cd Jim Pingle
01:35 PM Bug #3215: pfsense 2.1-RELEASE can't import OpenVPN settings from previous version.
Oh, I see. Sorry. Daniel Landsverk
07:04 AM Bug #3215 (Rejected): pfsense 2.1-RELEASE can't import OpenVPN settings from previous version.
Sections of a configuration cannot be restored across different versions, it's always been that way but it may have w... Jim Pingle
05:03 AM Bug #3215 (Rejected): pfsense 2.1-RELEASE can't import OpenVPN settings from previous version.
When attempting to import OpenVPN-settings from the previous release-version of psense, it just tells me that
that i...
Daniel Landsverk
12:53 PM Bug #3217 (Rejected): IPSec and Firewall
Please post in the forum for configuration help, not the ticket system. Jim Pingle
12:30 PM Bug #3217 (Rejected): IPSec and Firewall
Firewall IPSec Rule :
IPv4 * 10.13.250.97 * 172.16.3.40 * * none Easy Rule: Passed from Firewall Log Vie...
Gaetan Moyse
10:14 AM Revision c13a7052: Merge pull request #795 from razzfazz/ia-pd-hint
add option to send prefix hint for requesting desired prefix length for delegation (for master branch) Renato Botelho
08:23 AM Bug #3216 (Resolved): PFSense 2.1 - Captive Portal Zone - is not avaible in user effective privileges
PFsense 2.1. If you configure an user only to access to captive portal, it doesn´t work, I supose why: in user manage... Francisco Craviotto
04:04 AM Bug #3211: DHCP failover configuration not working in 2.1-RELEASE
And on another note, the referenced commit got reverted here: https://github.com/pfsense/pfsense/commit/a3d6166bb20a3... Doktor Notor
01:33 AM Bug #3211: DHCP failover configuration not working in 2.1-RELEASE
Chris,
I upgraded 6 firewalls to 2.1-RELEASE and it is indeed broken on all 6 of them.
The foreach loop on line...
Shahid Sheikh
12:13 AM Bug #3211 (Rejected): DHCP failover configuration not working in 2.1-RELEASE
DHCP failover is definitely working in general in 2.1 release. We have it running in 5 networks, and have tested it o... Chris Buechler
03:26 AM Bug #3214 (Rejected): bogons/bogonsv6 include stupid things
0.0.0.0/8
8000::1
There are many threads on the forum about these breaking DHCP/DHCPv6. Latest example: http://fo...
Doktor Notor
03:04 AM Bug #3213 (Resolved): Error creating more than 30 limiters
When trying to create a 31st limiter I get an error message:
"The following input errors were detected: At least one...
Ivan Morgun
02:18 AM Bug #3212 (Resolved): PHP Warning: Division by zero in /etc/inc/captiveportal.inc on line 729
2.1-RELEASE (i386)
built on Wed Sep 11 18:16:50 EDT 2013
/tmp/PHP_errors.log
[18-Sep-2013 11:08:54 Europe/Mosc...
Kostya Baranov

09/17/2013

11:55 PM Bug #3211 (Rejected): DHCP failover configuration not working in 2.1-RELEASE
Both nodes are getting setup as Primary.
While 2.1 was in RC a similar problem where both nodes were getting setu...
Shahid Sheikh
11:45 PM Bug #3209: editing VLAN tag on OPT interface changes LAN interface instead
I am seeing this too. My workaround has been to fix the assignment from the Interfaces: Assign network ports: Interfa... Shahid Sheikh
07:00 PM Bug #3209: editing VLAN tag on OPT interface changes LAN interface instead
Sadly, I've just confirmed this... and also confirmed that IT DOESN'T HAPPEN EVERY SINGLE TIME! WTF?!?
I changed OP...
Adam Thompson
06:50 PM Bug #3209 (Resolved): editing VLAN tag on OPT interface changes LAN interface instead
Changing the VLAN tag on my [renamed] OPT interface from "3" to "202" (to accommodate a change my upstream made) actu... Adam Thompson
10:05 PM Bug #3210 (Rejected): Upgrade to 2.1 fails: Something went wrong when trying to update the fstab entry
Same as this: https://redmine.pfsense.org/issues/457
Attempting to upgrade from 2.0.1 RELEASE to 2.1 RELEASE. Als...
Dave T
08:30 PM Revision 336e899a: Fix ufslabels.sh logic to avoid trying to convert slices which are already using appropriate labels. Fixes #3207
Jim Pingle
08:29 PM Revision c4eeb1c4: Fix ufslabels.sh logic to avoid trying to convert slices which are already using appropriate labels. Fixes #3207
Jim Pingle
07:13 PM Revision 819a603c: Switch to rw mode before file operations on RFC2136 cache. Fixes #3201
Jim Pingle
07:12 PM Revision 78db4f1a: Switch to rw mode before file operations on RFC2136 cache. Fixes #3201
Jim Pingle
06:47 PM Bug #3208 (Resolved): interface name over 17 characters long results in pf errors
Renaming an interface to, in my case, RD_LOM_DISTRIBUTION caused this error:
Sep 17 18:43:39 f1 php: rc.bootup: Ne...
Adam Thompson
03:30 PM Bug #3207: bug/feature expansion: ufslabels.sh doesn't account for gmirror systems.
Applied in changeset commit:336e899a3917bb4e68813c3852436cbda12128ff. Jim Pingle
03:30 PM Bug #3207 (Feedback): bug/feature expansion: ufslabels.sh doesn't account for gmirror systems.
Applied in changeset commit:c4eeb1c472b978a3669a2564f9a1e3733965be99. Jim Pingle
02:10 PM Bug #3201: RFC2136 cache file not updated because fs is read-only
Applied in changeset commit:819a603c2deb2c842d0132459731d1ba79498d4c. Jim Pingle
02:10 PM Bug #3201 (Feedback): RFC2136 cache file not updated because fs is read-only
Applied in changeset commit:78db4f1a622d97df6420ee53f2b8224ab2e3a794. Jim Pingle
02:39 AM pfSense Packages Bug #3203: vnstat2 not working after pfsense 2.1 upgrade
Hi,
I have done a new install and it looks like it's broken there as well.
When I click vnstat info and hit save...
Kyle Janse van Rensburg

09/16/2013

07:57 PM Revision 2e9d9ede: Merge pull request #803 from PiBa-NL/outboundnat_disable_checkbox
outboundnat, disable rule checkbox Renato Botelho
06:46 PM Revision 6ae8c4f2: outboundnat, disable checkbox
Pi Ba
06:03 PM Bug #3207 (Resolved): bug/feature expansion: ufslabels.sh doesn't account for gmirror systems.
Attempting to run ufslabels.sh on a system using gmirror gives the following:... Andrew Stuart
02:19 PM Bug #2882: 6RD not working in latest snapshots
Hi Will,
Thanks for the explanation. Really wish there was more information abut this, feels like we are being somew...
Christopher Blake
10:24 AM Bug #2882: 6RD not working in latest snapshots
Hi Christopher,
I don't read Chris' response as a problem with the ISP, I think it's a problem with pfSense that w...
Will Wainwright
10:05 AM Bug #2882: 6RD not working in latest snapshots
Kind of disappointing to see this get pushed out of the way for 2.1. You say this is due to the ISP having "lack of p... Christopher Blake
02:14 PM Bug #3206 (Resolved): Certificate Manager: wrong digest algorithm used when generating a certificate
If you select SHA512 as the digest algorithm when creating a certificate in the certificate manager a SHA256 digest i... John S
01:13 PM Revision 1cddd59c: Split SSL/TLS into separate checkboxes so that plaintext connections can be made secured by using STARTTLS. Support for SMTPS connections should probably be done away with in future. Fixes #3180
Warren Baker
10:28 AM Bug #3205 (Resolved): Partial system freeze when disconnecting USB 3G stick
When we disconnect a live USB 3G stick, parts of the pfSense system freezes, for example, opening the dashboard, show... Louis-David Perron
09:52 AM Bug #1738: Restore fails when username in backup is not matching
This exact bug is still present in 2.1. Louis-David Perron
09:40 AM Bug #1919 (Resolved): Package re-install loop on console after upgrade - package reinstall take ages on serial console
Jim Pingle
09:39 AM Bug #1919: Package re-install loop on console after upgrade - package reinstall take ages on serial console
This bug may be closed since it's not present at all in 2.1.
Thanks
Louis-David Perron
09:08 AM pfSense Packages Bug #3204 (Rejected): Can not access available package list
Please post in the forum for support. It is not a general issue with 2.1. Jim Pingle
08:59 AM pfSense Packages Bug #3204 (Rejected): Can not access available package list
Start a new box with 2.1 and can´t access package list and install some of them. It says there is no internet connect... Silverio Chiaradia
08:46 AM pfSense Packages Bug #3203 (Resolved): vnstat2 not working after pfsense 2.1 upgrade
Hi,
I upgraded to Pfsense 2.1 from Pfsense 2.0.3 and now vnstat2 is no longer working
My issue is similar to th...
Kyle Janse van Rensburg
08:10 AM Bug #3180 (Feedback): SMTP notifications not work with 587 port and SSL/TLS
Applied in changeset commit:1cddd59c4ed2341f87cf58d9b67d45c82ffd99d0. Warren Baker
07:02 AM Bug #3180: SMTP notifications not work with 587 port and SSL/TLS
Aitor Fraile wrote:
> On the other hand, it seems that 465 port is deprecated for SMTPS[2].
Yes thats right, ha...
Warren Baker
04:41 AM Bug #3180: SMTP notifications not work with 587 port and SSL/TLS
Hi Warren,
Thanks for the reply. The problem is that my email provider's SMTP server only accept 587 with TLS encr...
Anonymous
03:50 AM Bug #3180: SMTP notifications not work with 587 port and SSL/TLS
That would be because your port 587 is not accepting secure connections. In a typical port 587 setup the connection i... Warren Baker
07:28 AM Revision 4f947669: Merge pull request #802 from Xon/patch-1
Alix 2D6 crashes during 2.1 upgrade process with an out of diskspace error Ermal Luçi
06:50 AM pfSense Packages Bug #3202 (Rejected): Squid3-dev library not found
$ ldd /usr/pbi/squid-i386/sbin/squid
/usr/pbi/squid-i386/sbin/squid:
librt.so.1 => /usr/lib/librt.so.1 (0x284cc000...
Yilmaz Akinci
06:14 AM Bug #3201 (Resolved): RFC2136 cache file not updated because fs is read-only
As shown in the title, RFC2136 cache file is not properly updated. in System logs, all seems to be OK but definitely ... Xavier Romain
02:20 AM Bug #3147: Adding new interface can cause issues
Because this is behavior since pfSense inception and is not considered a blocking/new bug!
Ermal Luçi

09/15/2013

09:15 PM Bug #3147: Adding new interface can cause issues
I have experienced this multiple times.
How did Pfsense 2.1 go stable without this even getting looked at?
Sam McLeod
05:45 PM Revision 73c569ea: Alix 2D6 crashes upgrade process withou out of diskspace
Updating the the RRD graphs causes two copies of each RRD's XML file to be stored in /tmp.
On Nanobsd, the default /...
Xon
08:57 AM Bug #3180: SMTP notifications not work with 587 port and SSL/TLS
Same error in system log with 2.1-RELEASE version. Anonymous
06:01 AM Bug #3200 (Closed): IPv6 bugs
The Board is alix2d13... Wouter Snels

09/14/2013

11:33 PM Feature #3199: Option to accumulate or not IP addresses in Alias table of FQDNs
A bit of relevant discussion at http://forum.pfsense.org/index.php/topic,66300.0.html Phillip Davis
11:30 PM Feature #3199 (Resolved): Option to accumulate or not IP addresses in Alias table of FQDNs
As at the time of writing, an Alias of FQDNs gets the FQDNs translated to the corresponding IP addresses and a table ... Phillip Davis
02:17 PM Revision 67e5e3c6: Set action = pass for configured mac addresses on CP passtrumac
Renato Botelho
01:54 PM Revision 81ce28d8: Remove unecessary blockedmacs db and read it directly from config
Renato Botelho
07:21 AM Bug #3198 (Resolved): IPSEC, when nating to a different size subnet a invalid natting rule is made.
IPSEC, when nating to a different size subnet a invalid natting rule is made.
Reproducable with these phase2 setti...
Pi Ba

09/13/2013

03:58 PM Bug #3197 (Rejected): MBUFs are not freing
Please post in the forum or mailing list for support until a legitimate bug can be confirmed. Jim Pingle
03:48 PM Bug #3197 (Rejected): MBUFs are not freing
Hi,
i installed new firewall with latest snapshot (09/09/2013). it installed on HP DL360 G6 with two dual port int...
Zeev Zalessky

09/12/2013

10:04 PM Todo #3196: Improve IPv4 address validation on interface setup (GUI and console) and setup wizard
I have done this to myself when braindead! It also allows x.x.x.255/24 - it should prohibit the 1st and last address ... Phillip Davis
01:34 PM Todo #3196 (Resolved): Improve IPv4 address validation on interface setup (GUI and console) and setup wizard
If you enter a LAN IP into the Setup Wizard such as x.x.x.0/24 or x.x.x.255/24, the setup wizard does not complain an... Jim Pingle
06:03 PM Revision 204e16db: Convert mac address to lowercase when saving to avoid duplicates. It fixes #3195
Renato Botelho
06:01 PM Revision 01ba8ec6: Convert mac address to lowercase when saving to avoid duplicates. It fixes #3195
Renato Botelho
05:53 PM Revision 4f7bba46: Do not allow local mac address to be added to passtrumac list in CP. It fixes #3122
Renato Botelho
02:29 PM Revision 30cbc007: Fix php short tag opening and silent php -l
Renato Botelho
02:29 PM Revision ea51e9f8: Remove call-time pass by reference from traffic shaper files, it should fix #2565
Renato Botelho
02:28 PM Revision 1e9b4611: Remove call-time pass by reference for do_input_validation, helps ticket #2565
Renato Botelho
01:18 PM Bug #2495: pfsense doesn't seem to know what its WAN IP is
This has been patched even on 2.1 but maybe final conclusion should be done if this ticket is closed. Ermal Luçi
01:00 PM Bug #3195: CP MAC allows duplication
Applied in changeset commit:204e16db77b2d31f934dab9f976bc8b3c83c40d1. Renato Botelho
01:00 PM Bug #3195 (Feedback): CP MAC allows duplication
Applied in changeset commit:01ba8ec63d4c99ed8fd1e3085c9fa960aa6d3a7b. Renato Botelho
12:35 PM Bug #3195: CP MAC allows duplication
We should probably have a standard MAC cleanup/validation function that would also accept other MAC formats as input ... Jim Pingle
12:27 PM Bug #3195 (Resolved): CP MAC allows duplication
You can add a duplicated mac address if a char is lower in one entry and upper in the other one.
aa:00:00:00:00:00...
Renato Botelho
01:00 PM Bug #3122 (Feedback): CP Pass-through MAC entry must deny entering the firewall's own MAC address
Applied in changeset commit:4f7bba4647a291b31d8a8029df2a6c584a6bc138. Renato Botelho
12:43 PM Revision a413e743: Do not add a ipfw rule to block mac since auth can take care of block or redirect it
Renato Botelho
12:43 PM Revision 8d5ddc09: Redirect blocked macs to desired URL or show an error message
Renato Botelho
12:42 PM Revision 2f1548d6: Add a redirect url option to blocked macs
Renato Botelho
11:44 AM Revision 3b2769be: Make sure db doesn't exist when start to configure macs
Renato Botelho
11:44 AM Revision a7c00d8d: Delete the old mac when action changes, not the current one
Renato Botelho
11:44 AM Revision 0d33f1fc: When block a MAC address, add it to a DB to make it possible to redirect it to a URL
Renato Botelho
11:44 AM Revision 6b1cb3fd: Add action to auto created passtru mac rule
Renato Botelho
11:44 AM Revision 0bf1e925: Remove unused variable $macdb
Renato Botelho
11:44 AM Revision 5eee3755: Make captiveportal_passthrumac_delete_entry() return rules instead of execute them as other similar functions do
Renato Botelho
11:44 AM Revision 736c36c6: Use same tab name on all pages
Renato Botelho
11:44 AM Revision ed8899b5: Change 'Pass-through MAC' tab name to reflect current reality
Renato Botelho
11:44 AM Revision 6ffb064f: Add action to auto created passtru mac rule
Renato Botelho
11:44 AM Revision 666f88e0: Add actions (block or pass) to Captive Portal passtrumac
Renato Botelho
11:44 AM Revision cfd88fbc: Fix indent and whitespaces
Renato Botelho
09:40 AM Todo #2565 (Feedback): Update code for PHP 5.4, fix pass-by-reference
Applied in changeset commit:ea51e9f8bfc188f7233ee22e1cc7a58643c4dba5. Renato Botelho
06:39 AM Bug #3194 (Rejected): Can't upgrade pfsense2.1 rc1
That's expected right now, the 2.1-RELEASE is pending. Please read the 2.1 board on the forum for more information. Jim Pingle
02:38 AM Bug #3194 (Rejected): Can't upgrade pfsense2.1 rc1
I try to upgrade my pfsense 2.1 rc1 from 3 days,
A new version is now available
Current version: 2.1-RC2
...
Moula BADJI
02:46 AM pfSense Packages Bug #3188: IPsec Auth
Resolved the issue :) Leonardo Null
02:37 AM pfSense Packages Bug #3188: IPsec Auth
in the pfsense 2.1rc it's not possible add the permission "User - VPN - IPsec xauth Dialin" in the user manager and t... Leonardo Null

09/11/2013

10:12 PM Revision bf2afff0: s/BSDP/ESF/
Chris Buechler
10:12 PM Revision 90a27e64: s/BSDP/ESF/
Chris Buechler
06:33 PM Revision 611f2910: Make sure to account for IP aliases on lo0 here, or they get duplicated on each CARP sync
Jim Pingle
06:32 PM Revision 049d4211: Make sure to account for IP aliases on lo0 here, or they get duplicated on each CARP sync
Jim Pingle
05:01 AM pfSense Packages Bug #2702 (Resolved): OpenBGPD causes out of memory in GUI with Full BGP feed
It is now fixed on version 0.9 Renato Botelho

09/10/2013

06:02 PM Revision eed5b507: Include CA in generated .p12 file. Fixes #2147 the way it was originally intended.
Jim Pingle
03:44 PM Revision 1e2cb1f8: No need to treat PHP errors as a crash on -RELEASE for now.
Jim Pingle
03:08 PM Revision b832d617: This broke correct detection of primary/secondary -- the person in that thread may have had some other config issue, but this broke working/valid configurations. Revert "Correct check to match the right vip based on configured ip. Reported-by: http://forum.pfsense.org/index.php/topic,66234.0.html"
This reverts commit 25f9f3322863eae12f705137d8d414643d7b853f. Jim Pingle
03:07 PM Revision a3d6166b: Fix didn't help -- backing this out and the change that made it necessary. Revert "Correctly check the secondary/primary parameter setting on dhcp failover configuration"
This reverts commit 24670866827b4e2d7a4a05baaf6d09ee377ce7cb. Jim Pingle
01:08 PM Revision 9633e518: Simplify the update URL definition in globals.inc and add some comments to it.
Jim Pingle
01:06 PM Revision 408ebb78: Fix update URL so the -RELEASE version looks at the stable updates URL by default rather than the snapshots server.
Jim Pingle
12:15 PM Revision c312ee8f: Update an existing cron entry for pppoe periodic resets
The array variable name was incorrect in the test, so the existing cron entry was not being matched. Fixes #3192 Phil Davis
12:14 PM Revision 09d2bef3: Merge pull request #801 from phil-davis/master
Update an existing cron entry for pppoe periodic resets Renato Botelho
11:52 AM Revision f1593bfe: Update an existing cron entry for pppoe periodic resets
The array variable name was incorrect in the test, so the existing cron entry was not being matched. Fixes #3192 Phil Davis
09:35 AM Revision 767afbb1: Require IPv6.inc header so that if ipv6 functions are called no surprises arise
Ermal LUÇI
09:35 AM Revision 8d8f5e49: Require IPv6.inc header so that if ipv6 functions are called no surprises arise
Ermal LUÇI
09:27 AM Revision fa4d4be6: Leave a trace that rtsold did fire the dhcp6c client so troubleshooting is easier
Ermal LUÇI
09:26 AM Revision 58fbb3f0: Leave a trace that rtsold did fire the dhcp6c client so troubleshooting is easier
Ermal LUÇI
09:22 AM Revision e4cf52ed: Do not include disabled OpenVPN in vpn_networks and negate_networks
Phil Davis
09:10 AM Revision a01f8bfc: Correctly check the secondary/primary parameter setting on dhcp failover configuration
Ermal LUÇI
09:10 AM Revision 24670866: Correctly check the secondary/primary parameter setting on dhcp failover configuration
Ermal LUÇI
08:20 AM Revision 20809a21: Correct typo that prevents dhcp rules from properly being generated.
Ermal LUÇI
08:18 AM Revision 168a1948: Correct typo that prevents dhcp rules from properly being generated.
Ermal LUÇI
07:19 AM Bug #3193: All connections lost when a WAN IF gets disconnected
There were a few days when "overactive" state clearing was in place. That got fixed on 5 Sep by https://github.com/pf... Phillip Davis
07:13 AM Bug #3193 (Rejected): All connections lost when a WAN IF gets disconnected
That was an issue on snapshots around that day, update to a current snapshot (or -RELEASE when it drops) Jim Pingle
07:11 AM Bug #3193 (Rejected): All connections lost when a WAN IF gets disconnected
We have multiple WAN lines with periodic resets. If a WAN line gets physically disconnected all current connections f... Joram Knaack
07:10 AM Bug #3192: Multiple periodic resets scheduled for WAN interface
Applied in changeset commit:c312ee8fe59e1e12d565d41d61dd090c63ac2dca. Phillip Davis
07:10 AM Bug #3192 (Feedback): Multiple periodic resets scheduled for WAN interface
Applied in changeset commit:f1593bfe1c9195f31a27d50f50422d77befed613. Phillip Davis
06:50 AM Bug #3192: Multiple periodic resets scheduled for WAN interface
See https://github.com/pfsense/pfsense/pull/801
Looks like a plain old bug that nobody ever noticed.
Phillip Davis
04:21 AM Bug #3192 (Resolved): Multiple periodic resets scheduled for WAN interface
We have two German VDSL lines with periodic 24h reset so I want to schedule the reset to a time where no one cares ab... Joram Knaack
06:49 AM Revision 6e46621b: Merge pull request #800 from phil-davis/master
Do not include disabled OpenVPN in vpn_networks and negate_networks Ermal Luçi
06:47 AM pfSense Packages Bug #3164 (Rejected): Varnish:XMLRPC Sync, start everytime without be needed
The log says the function has started, it doesn't mean it's running. Inside the function there is a check, and when t... Renato Botelho
06:33 AM pfSense Packages Bug #3188 (Rejected): IPsec Auth
It's not an issue, it's always set to external, and a script is called to deal with authentication, as you can see on... Renato Botelho
02:30 AM Revision 771c14a3: Do not include disabled OpenVPN in vpn_networks and negate_networks
Phil Davis

09/09/2013

09:44 PM Revision d2f0b142: the time has come - bump to 2.1-RELEASE
Chris Buechler
07:18 PM Revision 0281db8c: Fix errant display of "0 table deleted" during filter reload on console.
Jim Pingle
07:18 PM Revision b841bc23: Fix errant display of "0 table deleted" during filter reload on console.
Jim Pingle
07:10 PM Revision 772e49ce: Remove unecessary capitalized WARNING from disabled APC message
Renato Botelho
07:09 PM Revision 4831f5df: Remove unecessary capitalized WARNING from disabled APC message
Renato Botelho
06:47 PM Bug #1044 (Closed): Authentication servers in LDAP and TLS mode needs ca certificate
this was addressed quite some time ago Chris Buechler
06:46 PM Bug #1694 (Closed): /etc/hosts gets dhcp clients entries with wrong domainnames
duplicate of #1819 and it has better info. Chris Buechler
06:40 PM Bug #2868 (Closed): Inescapable loop in installer
not fixing issues with the current installer, it'll be replaced Chris Buechler
06:39 PM Bug #2954 (Closed): Increase FIRMWARE_MAX to 50 for bwn and bwi wifi firmware
we'll get this on newer FreeBSD versions Chris Buechler
06:38 PM Bug #2988 (Resolved): Aliases not displaying in Diagnostics-Tables
works in 2.1. Chris Buechler
04:48 PM Bug #3191 (Resolved): Quality RRD inaccuracies and failure to update status in some circumstances
There are some circumstances in which apinger puts in incorrect quality RRD data and fails to notice downtime. This n... Chris Buechler
04:32 PM Bug #3184 (Resolved): DHCPv6 failover configuration is broken
Chris Buechler
04:32 PM Bug #3179 (Resolved): Gateway failure not properly detected in certain cases using a monitor IP outside of the WAN's subnet
this particular issue is fixed, the issue with 10 vs. 30 seconds with packet loss still exists but isn't a regression... Chris Buechler
04:31 PM Todo #3183 (Resolved): add config upgrade code to disable state killing on gateway failure
Chris Buechler
04:29 PM Bug #3127 (Resolved): Missing encoding of single quotes in pkg_edit.php / XSS
Chris Buechler
03:42 PM Bug #3189: Growl Notifications not sending anything
All versions of "Growl for Windows" support the old UDP based protocol previous to GNTP.
After updating to latest b...
Steven Lund
03:25 PM Revision c7d48867: Allow for easier override on $g values if needed.
Jim Pingle
03:02 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
I have sent you the system log and the config description. Anonymous
01:14 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Can you show system log for this? Ermal Luçi
02:38 PM Bug #3139: pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
I downloaded the snapshot created yesterday and the problem is still there. I checked "etc/inc/pkg-utils.inc" and th... Charlie Singleton
08:30 AM Bug #3139: pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
Just to clarify, I did make the changes and they do not fix the issue. I see now in the "diff" it is clear exactly w... Charlie Singleton
07:12 AM Bug #3187: LiveCD boot issue on multicore systems.
This doesn't seem to be a general issue with multi-core systems, but may be with that line of chips instead.
We in...
Jim Pingle
07:04 AM Bug #3190 (Rejected): build server ova images are missing
They're not missing, they were disabled on purpose. More info to come later. Jim Pingle
04:37 AM Bug #3190 (Rejected): build server ova images are missing
tried to download ova images and they are all missing. Victor Pereira

09/08/2013

11:57 PM Revision fae7ef31: Test growl whether or not growl is disabled.
Jim Pingle
11:57 PM Revision 1e940f77: Test growl whether or not growl is disabled.
Jim Pingle
06:53 PM Bug #3189 (Resolved): Growl Notifications not sending anything
The only unique bug here is that testing growl didn't work when growl was disabled. I just pushed a fix for that.
...
Jim Pingle
04:53 PM Bug #3189: Growl Notifications not sending anything
According to forum posts i have found, this function has worked in previous 2.0 versions, with Growl for Windows(ment... Steven Lund
04:12 PM Bug #3189: Growl Notifications not sending anything
This thing is dead, #2942 Doktor Notor
03:45 PM Bug #3189 (Resolved): Growl Notifications not sending anything
When Growl Notifications are configured in System -> Advanced - > Notifications. The Test button does nothing. Also G... Steven Lund
08:02 AM pfSense Packages Bug #3188 (Rejected): IPsec Auth
I have pfsense 2.1-RC2 (i386) built on Fri Sep 6 19:47:34 EDT 2013
When I create a ipsec configuration and I sele...
Leonardo Null

09/07/2013

09:58 PM Bug #3187: LiveCD boot issue on multicore systems.
I've also verified that the above hangs don't happen on Freebsd 8.3-release-dvd1 either for booting or installation, ... Christopher Sherman
09:56 PM Bug #3187 (Resolved): LiveCD boot issue on multicore systems.
In the course of testing the amd64 builds on my various systems, I've come across a LiveCD-related issue that occurs ... Christopher Sherman
04:49 PM Bug #3130 (Resolved): System tunables - unknown/readonly values
Jim Pingle
01:28 PM Bug #3130: System tunables - unknown/readonly values
Fixed, thanks. Doktor Notor
11:57 AM Feature #3186 (Resolved): Firewall: NAT: 1:1: Edit
Creating/editing a record is unnecessarily hard. The description for External IP Subnet and Destination are not clear... Andres Petralli

09/06/2013

08:46 PM Bug #3143 (Resolved): Orphaned OpenVPN Client Specific Overrides
Chris Buechler
08:05 PM Bug #3143: Orphaned OpenVPN Client Specific Overrides
Looks good in 2.1-RC1(amd64), Aug 30. Kris Lou
05:56 PM Revision cf07d574: Do not sync DHPCv6, it must operate independetly. Ticket #3184
Jim Pingle
05:56 PM Revision d3b3240b: Remove failover peer IP settings from DHCPv6, DHCPv6 doesn't support failover the way that DHPv4 did. Fixes #3184
Jim Pingle
05:56 PM Revision 1d47cb37: Do not sync DHPCv6, it must operate independetly. Ticket #3184
Jim Pingle
05:56 PM Revision 8571cdd5: Remove failover peer IP settings from DHCPv6, DHCPv6 doesn't support failover the way that DHPv4 did. Fixes #3184
Jim Pingle
04:59 PM Revision 279c2f42: Disable kill_states by default on upgrade, it fixes #3183
Renato Botelho
04:58 PM Revision af0a477a: Disable kill_states by default on upgrade, it fixes #3183
Renato Botelho
01:15 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Yes, otherwise it would not receive any kind of IPv6 address at all. Anonymous
01:14 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
is the option "Use IPv4 connectivity as parent interface" set on WAN interface? Renato Botelho
12:48 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
No improvement with:
2.1-RC2 (amd64)
built on Thu Sep 5 21:38:32 EDT 2013
What's different from the previous bu...
Anonymous
01:09 PM Feature #3185 (New): Accommodate a DHCPv6 failover-like mechanism
Currently, the ISC DHCPv6 daemon doesn't support failover, instead they recommend that unique pools be run independen... Jim Pingle
01:00 PM Bug #3184: DHCPv6 failover configuration is broken
Applied in changeset commit:d3b3240bd0991224f7caa3ba308ada532dea6bbe. Jim Pingle
01:00 PM Bug #3184 (Feedback): DHCPv6 failover configuration is broken
Applied in changeset commit:8571cdd51a9e18c7a22fe2e934708b920b512f70. Jim Pingle
12:14 PM Bug #3184 (Resolved): DHCPv6 failover configuration is broken
See http://forum.pfsense.org/index.php/topic,66093.0/topicseen.html
Failover causes a bad config for the dhcpv6 da...
Jim Pingle
12:00 PM Todo #3183: add config upgrade code to disable state killing on gateway failure
Applied in changeset commit:279c2f425ed41104b41ff4438b291c9a6d4da49c. Renato Botelho
12:00 PM Todo #3183 (Feedback): add config upgrade code to disable state killing on gateway failure
Applied in changeset commit:af0a477a1fe1aa1da9c0543142f892d4109e91fd. Renato Botelho
11:25 AM Todo #3183 (Resolved): add config upgrade code to disable state killing on gateway failure
Now that state killing on gateway failure actually does what it's supposed to, having it enabled by default is going ... Chris Buechler
11:10 AM Revision da95bdcd: Fix #3127
By default htmlspecialchars does not consider single quotes, what can be
a problem when value attribute is set using ...
Renato Botelho
11:08 AM Revision 605ae553: Fix #3127
By default htmlspecialchars does not consider single quotes, what can be
a problem when value attribute is set using ...
Renato Botelho
09:22 AM Bug #3166: status_services.php:starts services 2-3 times;
they are changed .. week ago
but i remeber ive have installed pfblocker,arpwatch,varnish3
Valentin Georgiev
05:27 AM Bug #3166: status_services.php:starts services 2-3 times;
Please show me the <installedpackages><service> section of your config.xml Renato Botelho
06:10 AM Bug #3127: Missing encoding of single quotes in pkg_edit.php / XSS
Applied in changeset commit:da95bdcd9202e0f240099af3bfdf284b8f404d9f. Renato Botelho
06:10 AM Bug #3127 (Feedback): Missing encoding of single quotes in pkg_edit.php / XSS
Applied in changeset commit:605ae5537da157adfb414cc8837d465c132f4c8c. Renato Botelho

09/05/2013

06:27 PM Revision 9e6043cc: Allow for easier override on $g values if needed.
Jim Pingle
06:27 PM Revision 8346b5c4: Allow for easier override on $g values if needed.
Jim Pingle
02:06 PM Bug #3066: Proxy ARP failing with kernel error
Any testing I can do for this? Anything I can clarify? At the moment this breaks Proxy ARP operation. Willing to help... Jesse Peterson
12:39 PM Revision 25f9f332: Correct check to match the right vip based on configured ip. Reported-by: http://forum.pfsense.org/index.php/topic,66234.0.html
Ermal LUÇI
12:39 PM Revision 9d7ca11f: Correct check to match the right vip based on configured ip. Reported-by: http://forum.pfsense.org/index.php/topic,66234.0.html
Ermal LUÇI
12:29 PM Revision 36fa13a6: Ticket #3181 do the state flushing only on down gateway detection rather than any time.
Ermal LUÇI
12:28 PM Revision 19d723d2: Ticket #3181 do the state flushing only on down gateway detection rather than any time.
Ermal LUÇI
12:24 PM Revision 5aa44e98: Revert "Revert back the behaviour to cleanup all states for 2.1 Fixes #3181 and related to Ticket #1629. This commit is only for 2.1 since on master development will continue for better alternatives"
A bit too excessive need to get right.
This reverts commit c59dd719e0a6d9ee8deecaa7bff0d6ee8c76e4ca.
Ermal LUÇI
12:17 PM Bug #2833: Add a knob to prefer IPv4 over IPv6 for rare situations that require it
On my pfsense ipv6 is disabled (but pfsense didn't disable and only hide v6).
Since my ISP enabled v6 on my subnet p...
Grischa Zengel
09:34 AM Bug #3139: pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
I replaced just the stop_packages function in 2.0.3 Release with the committed function and it does not fix the issue... Charlie Singleton
07:14 AM Bug #3139: pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
Charlie Singleton wrote:
> What was changed? Excuse my ignorance. I am new to reporting issues. The code I submitted...
Renato Botelho
06:53 AM Bug #3139: pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
What was changed? Excuse my ignorance. I am new to reporting issues. The code I submitted does fix the issue. Are you... Charlie Singleton
06:43 AM Bug #3139 (Feedback): pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
Did the committed change fix the issue? Renato Botelho
08:52 AM Bug #2863 (Resolved): Wrong heading for system_gateway_groups_edit.php
Renato Botelho
07:20 AM Bug #3130 (Feedback): System tunables - unknown/readonly values
Applied in changeset pfsense-tools:commit:c343307d06a5cfe6ebff877246ae80bc0e78e98a. Renato Botelho
06:48 AM Bug #3140 (Resolved): pfblocker 2.1 error (Cannot allocate memory) with builds after "Aug 1 19:39:40"
Renato Botelho
03:00 AM Bug #2878 (Resolved): radvd does not restart properly
This is not radvd fault in latest snapshots.
Its mostly process that trigger the restart of it so this is corrected ...
Ermal Luçi

09/04/2013

08:27 PM Revision c22f4809: Ba-bump-bump.
Jim Pingle
04:09 PM Bug #1974 (Resolved): Captive Portal RADIUS accounting bytes wrong
Ermal thought this was specific to 32 bit, but it seems to be fine on both 32 and 64 now. A number of test sessions l... Chris Buechler
03:03 PM Revision d6df2c4c: When the v4 wan is dynamic and v6 is type dhcp and v6 information is retrieved through v4 link than trigger dhcp6c reconfiguration.
Ermal LUÇI
03:03 PM Revision 0b18ef05: When the v4 wan is dynamic and v6 is type dhcp and v6 information is retrieved through v4 link than trigger dhcp6c reconfiguration.
Ermal LUÇI
12:05 PM Bug #2700 (Resolved): ppp-linkdown uses /32 for $3 which already has /32
Chris Buechler
12:05 PM Bug #863 (Closed): floating rules breaks passive mode ftp
Chris Buechler
12:04 PM Todo #1071 (Closed): Reevaluate locks
Chris Buechler
12:01 PM Bug #848 (Closed): Remove 'Close' button from firmware update screen?
Chris Buechler
11:59 AM Feature #87 (Needs Patch): Wizards needed
Chris Buechler
11:57 AM Feature #664 (Resolved): Add support for multiple DHCP ranges in a single subnet
exists in 2.1. Chris Buechler
11:57 AM Feature #625 (Needs Patch): Firmware Upgrade via Console
Chris Buechler
11:54 AM Feature #246 (Needs Patch): Allow dragging firewall rules over tab to reassign the interface
Chris Buechler
11:51 AM Bug #878 (Closed): Drag and Drop firewall rules causes corruption
Chris Buechler
11:44 AM Feature #1599 (Needs Patch): Browser detection for captive portal
Chris Buechler
11:43 AM Bug #1657 (Closed): Timezone should be synchronized on all utilities
Chris Buechler
11:41 AM Todo #2346 (New): do we need to change our require() calls to require_once()?
Chris Buechler
11:30 AM Todo #2346 (Closed): do we need to change our require() calls to require_once()?
Chris Buechler
11:39 AM Feature #1687 (Resolved): GetText code inspection
Chris Buechler
11:37 AM Bug #1915 (Resolved): LDAP "authentication containers" select button is inoperative.
Chris Buechler
11:37 AM Bug #1996 (Resolved): status_graph.php is not displaying real-time bw stats
Chris Buechler
11:34 AM pfSense Packages Bug #2602 (Closed): BandwidthD - Reported Traffic / Usage is approximately Double real amount
haven't ever seen this. It's almost certainly a problem within bandwidthd itself under some specific unusual circumst... Chris Buechler
11:33 AM Feature #2492 (Needs Patch): identify changes lines before "apply"
Chris Buechler
11:25 AM pfSense Packages Feature #2925 (Needs Patch): "Monit" Monit for customized monitoring and alerting
Chris Buechler
11:25 AM pfSense Packages Feature #2908 (Needs Patch): Add nginx package to available for install
Chris Buechler
11:23 AM Bug #3033 (Rejected): Static IPv6 route to OpenVPN tunnel ignored
not a bug, config issue somewhere. Chris Buechler
11:20 AM Bug #3064 (Closed): Broadcom BCM57780 Nic lights not working (Activity and Link)
we'll get this fix in 2.2 Chris Buechler
11:18 AM pfSense Packages Bug #3110 (Rejected): apinger down messages
no problems along these lines, this doesn't have a specific problem that we can do anything with. Chris Buechler
11:16 AM Feature #1321 (Closed): Expose the maximum number of state entries a rule can create
exists in 2.x Chris Buechler
11:15 AM Feature #590 (Closed): Allow a detailed description on interfaces page
notes package suffices I think Chris Buechler
11:13 AM Feature #1104 (Closed): mwl driver patch to enable generation of new BSSIDs for additional VAPs
Chris Buechler
11:12 AM Bug #1105 (Closed): WLAN Broadcom BCM 4306 problems -the fw file(bwn_v4_ucode5) not found
Chris Buechler
11:11 AM Feature #627 (Closed): Ruleset for FIREWALL in web Interface. TAB (FW) in FIREWALL: RULES
possible in 2.x Chris Buechler
11:08 AM Bug #1615 (Resolved): rrd graph not refreshing the correct time frame
Chris Buechler
11:07 AM Todo #1528 (Resolved): Automatic outbound NAT from localhost needs a little work
Chris Buechler
11:07 AM Feature #1630 (Resolved): lagg ALTQ support
fixed a while ago Chris Buechler
11:06 AM Bug #1658 (Resolved): Adding new Gateway in interface page needs input validation
this has been added in 2.1 Chris Buechler
11:05 AM pfSense Packages Bug #1820 (Closed): widescreen package doens't show ipv6 link
Chris Buechler
11:04 AM Feature #1901 (Needs Patch): Maintain IP range tables for popular Internet sites
Chris Buechler
11:01 AM Feature #2239 (Resolved): Use Firewall Alias in Static Routing setup
Chris Buechler
10:59 AM Bug #2556 (Closed): PPTP Server not working since 2.0.x Upgrade
no known issues in PPTP in any 2.x version. Chris Buechler
10:56 AM Feature #2631 (Needs Patch): Highlight unapplied changes
Chris Buechler
10:53 AM Bug #2928 (Closed): Authentication attempts against multiple radius servers should stop when the first reject is received.
current behavior is correct Chris Buechler
10:46 AM Bug #3066 (Feedback): Proxy ARP failing with kernel error
proxy ARP is done in userland and hence couldn't trigger any such messages. There's something else going on there, no... Chris Buechler
10:43 AM Revision b9eae2ba: Actually the / here is not needed.
Ermal LUÇI
10:43 AM Revision 0ec64bd2: Actually the / here is not needed.
Ermal LUÇI
10:39 AM Bug #2798 (Closed): Captive Portal does not capture anyone
there were CP issues in general at that point, since fixed. Chris Buechler
10:36 AM Revision c088fe72: Related to Ticket #3045 avoid races in the ntpdate_sync_one script due to killall returning without the process really exiting.
Ermal LUÇI
10:36 AM Revision b8b78b9a: Related to Ticket #3045 avoid races in the ntpdate_sync_one script due to killall returning without the process really exiting.
Ermal LUÇI
10:34 AM Bug #3111 (Resolved): Passive FTP does not pass through pfSense with debug.pfftpproxy=0 (default)
Chris Buechler
10:06 AM Bug #2627: Old delegated prefixes are not removed from the LAN interface
I just pushed a commit for this as well https://github.com/pfsense/pfsense/commit/d6df2c4c71678b5edd98892ca40facbb80f... Ermal Luçi
07:46 AM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Is this still an issue for new snapshots of september? Ermal Luçi
09:49 AM Bug #3045 (Resolved): NTPD crash / doesn't come up
none of us have seen any issues reported here in a while, seems fine. Chris Buechler
09:48 AM Bug #3174 (Resolved): OpenVPN Client bound to a gateway group should not start on backup CARP vip
CARP will very briefly take master status while booting before reverting to backup, which is likely why. This particu... Chris Buechler
03:19 AM Bug #3174: OpenVPN Client bound to a gateway group should not start on backup CARP vip
The fix is there. Thx. But I am still seeing some instances where OpenVPN Client is starting up when bound to a GW gr... Shahid Sheikh
09:35 AM Bug #3181 (Resolved): Fix handling of state killing on WAN failure
works Chris Buechler
09:03 AM Bug #3004 (Resolved): config upgrade code needs to change VIP binding on IPsec
fixed Chris Buechler
08:56 AM Bug #2159 (Resolved): Upgrade code breaks RRD databases on nano
fixed Chris Buechler
08:48 AM Revision 8171a2c2: Introduce two new functions to be used on locking.
- try_lock: used for trying to get an EXCLUSIVE lock for a specified timeout by default of 5
- unlock_force: which ju...
Ermal LUÇI
08:31 AM Revision f33dcc5c: Add safety belts to code in rc.openvpn to avoid php errors to leave stale locks around
Ermal LUÇI
08:31 AM Revision 5d1bde96: Add safety belts to code in rc.openvpn to avoid php errors to leave stale locks around
Ermal LUÇI
08:29 AM Bug #3182 (Resolved): VMware vmxnet interfaces are not detected as VLAN capable
A VMware vmxnet interface, e.g. vxn0 is capable of using VLANs with a reduced MTU, but they do not appear in the list... Jim Pingle
08:23 AM Bug #2951 (Resolved): OpenVPN and alternative monitoring IP in 2.1
confirmed fixed Chris Buechler
08:19 AM Revision 48085d0c: Make the operation of saving old rule nearby the writing operation to be logical to spot
Ermal LUÇI
08:18 AM Revision dc8b4c4e: Make the operation of saving old rule nearby the writing operation to be logical to spot
Ermal LUÇI
08:12 AM Revision b214bf3a: Sprinkle some unsets to reduce footprint and correct some whitespaces
Ermal LUÇI
08:12 AM Revision 53ce7798: Sprinkle some unsets to reduce footprint and correct some whitespaces
Ermal LUÇI
07:29 AM Bug #3173 (Resolved): NEGATE_ROUTE rule does not respect port numbers
Renato Botelho
07:22 AM Revision e8090840: filter_generate_port error log function name
Absolutely minor adjustment to make the error log message refer to the new function name. Phil Davis
07:19 AM Revision 2eebeecb: Merge pull request #797 from phil-davis/master
filter_generate_port error log function name Ermal Luçi
01:03 AM Revision 3b6596b7: filter_generate_port error log function name
Absolutely minor adjustment to make the error log message refer to the new function name. Phil Davis

09/03/2013

08:41 PM Bug #3173: NEGATE_ROUTE rule does not respect port numbers
The change did not quite make the snapshot of 2.1-RC1 (i386)
built on Tue Sep 3 14:08:44 EDT 2013. I copied the /etc...
Phillip Davis
01:40 PM Bug #3173: NEGATE_ROUTE rule does not respect port numbers
Applied in changeset commit:44f0f09bda6b59c0f2f08c87c4d4e32b149555bb. Ermal Luçi
01:40 PM Bug #3173 (Feedback): NEGATE_ROUTE rule does not respect port numbers
Applied in changeset commit:81d81b942b5a6e81b97d2d0b159ae2bdcb739bd4. Ermal Luçi
07:44 PM Bug #3045 (Feedback): NTPD crash / doesn't come up
It looks stable on latest snapshots Renato Botelho
07:05 PM Revision c59dd719: Revert back the behaviour to cleanup all states for 2.1 Fixes #3181 and related to Ticket #1629. This commit is only for 2.1 since on master development will continue for better alternatives
Ermal LUÇI
06:40 PM Revision 44f0f09b: Fixes #3173 if any port information exists on the rule than put it on the NEGATE rule generated.
Ermal LUÇI
06:39 PM Revision 81d81b94: Fixes #3173 if any port information exists on the rule than put it on the NEGATE rule generated.
Ermal LUÇI
06:19 PM Revision 3cb55704: Remove SPD when disable phase2, it fixes #2719
Renato Botelho
06:13 PM Revision 03131eb9: Remove SPD when disable phase2, it fixes #2719
Renato Botelho
05:31 PM Revision f70df069: Increased needed memory for APC to 512M + code cleanup
- Increased the needed memory for APC to 512M as we often run into memory problems on our 256M box
- fixed the RAM ca...
Individual IT Services
05:29 PM Revision fcca1783: Merge pull request #786 from individual-it/master
Increased needed memory for APC to 512M + code cleanup Renato Botelho
05:08 PM Revision be40ce0b: Merge pull request #796 from phil-davis/master
Traffic Shaper GUI text typos Chris Buechler
05:05 PM Revision faf4b1fc: Merge pull request #796 from phil-davis/master
Traffic Shaper GUI text typos Chris Buechler
05:04 PM Revision 0c1870ca: Merge pull request #790 from shahidsheikh/RELENG_2_1
#3174 Added handling of gateway groups in openvpn_restart Chris Buechler
05:03 PM Revision fcb5121d: Merge pull request #793 from shahidsheikh/master
Fix #3174 Handling of gateway groups in openvpn_restart() Chris Buechler
05:03 PM Revision 96551a20: Merge pull request #794 from phil-davis/RELENG_2_1
Backport get_memory changes to 2.1 Chris Buechler
04:52 PM Revision 32a9eb18: Bring back static routes to fix issues reported on Ticext #3179
Ermal LUÇI
04:52 PM Revision c9d099d7: Bring back static routes to fix issues reported on Ticext #3179
Ermal LUÇI
04:36 PM Revision c59e21b5: Fix #3004:
. Create a function to replace strings on deep associative arrays
. Use the recent created function array_replace_val...
Renato Botelho
04:00 PM Revision 243680e5: Disable state killing on gateway failure by default for new configs.
Clarify the text describing the option while here. Chris Buechler
04:00 PM Revision 7050776a: Disable state killing on gateway failure by default for new configs.
Clarify the text describing the option while here. Chris Buechler
03:47 PM Bug #3158 (Rejected): Captive portal, two radius accounting packets sent.
You have issues with your radius server rather than pfSense.
Either the radius servier is busy or something else in ...
Ermal Luçi
03:42 PM Revision 497841f5: Correct typo on variable name
Ermal LUÇI
03:39 PM Revision 6f8cf553: Correct typo on variable name
Ermal LUÇI
03:37 PM Revision f2cc3344: Fix #3004:
. Create a function to replace strings on deep associative arrays
. Use the recent created function array_replace_val...
Renato Botelho
02:20 PM Revision 628a64a9: Fix issue reported on http://forum.pfsense.org/index.php/topic,66160.0.html
Ermal LUÇI
02:20 PM Revision a8ab2b76: Fix issue reported on http://forum.pfsense.org/index.php/topic,66160.0.html
Ermal LUÇI
02:19 PM Bug #2719 (Resolved): Deleting IPsec tunnel does not remove SPDs
Chris Buechler
01:20 PM Bug #2719: Deleting IPsec tunnel does not remove SPDs
Applied in changeset commit:3cb55704924734aa19de58349198ca99d15e00ea. Renato Botelho
01:20 PM Bug #2719 (Feedback): Deleting IPsec tunnel does not remove SPDs
Applied in changeset commit:03131eb95c975ed990ddf955c762ef51137288a0. Renato Botelho
11:31 AM Bug #2719 (New): Deleting IPsec tunnel does not remove SPDs
this works with one exception, if you disable a P2 entry, its SPD is not removed. Deleting a P2 or P1 works fine, and... Chris Buechler
02:10 PM Bug #3181 (Feedback): Fix handling of state killing on WAN failure
Applied in changeset commit:c59dd719e0a6d9ee8deecaa7bff0d6ee8c76e4ca. Ermal Luçi
12:26 PM Bug #3181 (Resolved): Fix handling of state killing on WAN failure
For 2.1, we need to change the state killing on WAN failure to wipe the entire state table. The current state killing... Chris Buechler
01:54 PM Bug #3119 (Resolved): apinger falls into a loop with assigned OpenVPN interface, restarting itself and triggering events indefinitely
Ermal Luçi
01:45 PM Bug #3179: Gateway failure not properly detected in certain cases using a monitor IP outside of the WAN's subnet
It now appears as though apinger sees the gateway as down but does not report nor graph the result as expected.
If...
Jim Pingle
11:49 AM Bug #3179 (Feedback): Gateway failure not properly detected in certain cases using a monitor IP outside of the WAN's subnet
Ermal Luçi
11:00 AM Bug #3179: Gateway failure not properly detected in certain cases using a monitor IP outside of the WAN's subnet
Attaching a capture file that shows the ICMP actually is going out the right interface and is experiencing loss. But ... Jim Pingle
09:36 AM Bug #3179: Gateway failure not properly detected in certain cases using a monitor IP outside of the WAN's subnet
I can provide some input on this issue as well.
On 2 of 8 of my firewalls I have this problem happen consistently....
Shahid Sheikh
07:59 AM Bug #3179 (Resolved): Gateway failure not properly detected in certain cases using a monitor IP outside of the WAN's subnet
Still researching this a bit but it needs an entry so things don't get lost.
Currently, I have two WANs, DSL and C...
Jim Pingle
01:44 PM Bug #1629: invalid state table entries after WAN IP change
#3181 is a band-aid for 2.1, this will need to wait 2.2 Renato Botelho
12:18 PM Bug #2887 (Resolved): ppp-linkdown state killing not right
Chris Buechler
12:06 PM Bug #3174: OpenVPN Client bound to a gateway group should not start on backup CARP vip
Thanks, merged. If you could, please gitsync and confirm fix here. Chris Buechler
12:00 PM Bug #3174: OpenVPN Client bound to a gateway group should not start on backup CARP vip
Applied in changeset commit:fcb5121d6fa41e9858beb3111de24e56b0b49c07. Chris Buechler
12:00 PM Bug #3174 (Feedback): OpenVPN Client bound to a gateway group should not start on backup CARP vip
Applied in changeset commit:330ecea1bf568f1284d31628668b84250641e066. Shahid Sheikh
11:56 AM Revision 7ca8bef4: Make sure RRD data is restored from backup before upgrading data and a new backup is done after. It should fix #2159
Renato Botelho
11:55 AM Revision 42ec9337: Make sure RRD data is restored from backup before upgrading data and a new backup is done after. It should fix #2159
Renato Botelho
11:55 AM Bug #2303 (Resolved): SPD on secondary not cleared after config sync
works Chris Buechler
11:45 AM Revision 794195d1: Traffic Shaper GUI text typos
and note the Queue Limit is a number of packets (not packets per second) Phil Davis
11:40 AM Bug #3004: config upgrade code needs to change VIP binding on IPsec
Applied in changeset commit:c59e21b5c706b46159ecc19b33977299754b07b9. Renato Botelho
10:40 AM Bug #3004 (Feedback): config upgrade code needs to change VIP binding on IPsec
Applied in changeset commit:f2cc3344a19134a3dc594ff767be06f5af800553. Renato Botelho
07:46 AM Bug #3004 (New): config upgrade code needs to change VIP binding on IPsec
that config upgrade code either gets skipped somehow or doesn't work, the attached config for example still has <inte... Chris Buechler
11:24 AM Bug #2896 (Resolved): IPsec failover may not fully attach to new interface address
this work-around suffices for 2.1, if we find the root cause we can start a new ticket to address that at a later time. Chris Buechler
11:22 AM Bug #3172 (Resolved): function return_gateway_groups_array() returns the incorrect vip
Renato Botelho
09:05 AM Bug #3172: function return_gateway_groups_array() returns the incorrect vip
Yep, its fixed. Thx. Shahid Sheikh
08:36 AM Bug #3172: function return_gateway_groups_array() returns the incorrect vip
Shahid: can you please confirm if that fixed what you were seeing? Chris Buechler
10:27 AM Revision 7cb3f7d2: Resolves #3177. Do a filter reconfigure if the dynds ipsec hosts are present and being reloaded.
Ermal LUÇI
10:27 AM Revision bee7cd82: Resolves #3177. Do a filter reconfigure if the dynds ipsec hosts are present and being reloaded.
Ermal LUÇI
10:23 AM Bug #3175: <Firewall: NAT: Port Forward: Edit> takes range in "Redirect target port"
... Grischa Zengel
09:48 AM Bug #3175: <Firewall: NAT: Port Forward: Edit> takes range in "Redirect target port"
The problem is is_port will be true even if there is a range. So you have explicitly test for a range.... Grischa Zengel
08:04 AM Bug #3175: <Firewall: NAT: Port Forward: Edit> takes range in "Redirect target port"
The SEO will be amused if no rules are loaded and all ports are open.
Grischa Zengel
09:33 AM Revision 254261e0: fix text
Chris Buechler
09:07 AM Revision 4cdae0ac: fix text
Chris Buechler
09:05 AM Revision 18f3c2fd: add option to send prefix hint for requesting desired prefix length for delegation
This change adds an option on the interfaces page for sending a prefix hint for the selected delegation size. If enab... Daniel Becker
08:34 AM Bug #2951: OpenVPN and alternative monitoring IP in 2.1
I can replicate this, but I think fixing #3179 will fix this as well. Will leave to feedback to test again after 3179... Chris Buechler
08:30 AM Bug #3180 (Closed): SMTP notifications not work with 587 port and SSL/TLS
SMTP notifications (System>Advanced>Notifications) not work with 587 port and SSL/TLS authentication checked. The sys... Anonymous
08:16 AM Bug #754: hifn driver and AES192 and 256
I can confirm the problem on pfSense 2.0.3, Alix.2D13 and soekris VPN1411 (hifn 7955).
There is no difference in thr...
Igor Liebermann
08:13 AM Bug #3146 (Resolved): Apinger still putting spaces after gateway names, leading to failing commands
Chris Buechler
08:12 AM Bug #3125: hifn on 2.1 breaks certain ciphers w/openssl
not really anything we can do here. will revisit. Chris Buechler
07:59 AM Bug #2993: IPsec in transport mode, tunneled traffic does not flow through enc0
not a regression, pushing to 2.2 Chris Buechler
07:53 AM Bug #2409 (Resolved): ipfw - entryzerostats
Chris Buechler
07:50 AM Bug #3098 (Resolved): Advanced Options - Multiple State / Connection Controls Not Working
Confirmed this is all good now. Chris Buechler
07:16 AM Bug #2910 (Resolved): monitoring-disabled gateway causes wrong tiered gateway in route-to
fixed Chris Buechler
07:15 AM Revision a2ac3661: Merge pull request #792 from razzfazz/RELENG_2_1
add option to send prefix hint for requesting desired prefix length for ... Ermal Luçi
07:06 AM Revision 4a6f3d96: Merge pull request #791 from jean-m-cyr/RELENG_2_1
Dummynet does not require burst size specification Ermal Luçi
07:03 AM Bug #3095 (Resolved): Name column uses old (original) interface name
Chris Buechler
07:00 AM Bug #2159: Upgrade code breaks RRD databases on nano
Applied in changeset commit:7ca8bef40e29d1a4ef7a641141401f51297cc101. Renato Botelho
07:00 AM Bug #2159 (Feedback): Upgrade code breaks RRD databases on nano
Applied in changeset commit:42ec9337ea432906c7fa9ee99f763946fd974e3c. Renato Botelho
02:46 AM Bug #2159 (New): Upgrade code breaks RRD databases on nano
this regressed at some point. Current status same as in original. Chris Buechler
06:56 AM Bug #2440 (Resolved): Wireless client nic set for DHCP does not start dhclient
works Chris Buechler
06:49 AM Revision e9215ad4: Use physmem and realmem from get_memory() in the appropriate places
Backport to 2.1 Phil Davis
06:43 AM Revision 98c10c92: Use new names for get_memory parameters
Phil Davis
06:35 AM Revision 68b253ad: Use hw.physmem when calculating pfsense_default_state_size
hw.physmem is the actual amount of memory that FreeBSD/pfSense can get its hands on, so use this for the calculation.... Phil Davis
06:27 AM Revision 324e112d: touch up text, s/nat/NAT/
Chris Buechler
06:26 AM Revision ec532672: touch up text, s/nat/NAT/
Chris Buechler
05:55 AM Bug #3177 (Resolved): Dynamic IPsec endpoints not added in rules.debug
Yep, that fixes it. Confirmed Seth Mos
05:30 AM Bug #3177: Dynamic IPsec endpoints not added in rules.debug
Applied in changeset commit:7cb3f7d26dd5770f666207f86899fb1529991622. Ermal Luçi
05:30 AM Bug #3177 (Feedback): Dynamic IPsec endpoints not added in rules.debug
Applied in changeset commit:bee7cd82f805daf11c53515059f45ad0da20de7f. Ermal Luçi
04:59 AM Bug #3177 (Resolved): Dynamic IPsec endpoints not added in rules.debug
On boot the Dynamic DNS endpoint rules for IPsec tunnels with the DynDNS name are not added to rules.debug.
This c...
Seth Mos
05:39 AM Feature #3178 (Duplicate): IPSec dynamic hosts for IPv6
The framework of dynamic host names does not work presently for IPv6.
Leaving this here as an issue for future relea...
Ermal Luçi
04:20 AM Bug #3176 (Feedback): Hosts file corrupted when using "Register DHCP leases in DNS forwarder"
haven't seen this anywhere or heard of it elsewhere Chris Buechler
04:03 AM Bug #3176: Hosts file corrupted when using "Register DHCP leases in DNS forwarder"
Cant reproduce the problem anymore. When i disabled the "DHCP leases in DNS forwarder" my problem was gone but after ... Rene Klomp
03:52 AM Bug #3176: Hosts file corrupted when using "Register DHCP leases in DNS forwarder"
> What pfSense version are you on?
Like in issue description: 2.1-RC1 (amd64) built on Tue Aug 27 16:56:42
> How ...
Rene Klomp
03:13 AM Bug #3176: Hosts file corrupted when using "Register DHCP leases in DNS forwarder"
I am running:
2.1-RC1 (i386)
built on Sun Sep 1 01:17:51 EDT 2013
FreeBSD 8.3-RELEASE-p10
"Register DHCP leases...
Phillip Davis
02:55 AM Bug #3176 (Resolved): Hosts file corrupted when using "Register DHCP leases in DNS forwarder"
When the option "Register DHCP leases in DNS forwarder" is enabled the Host Overrides are not working correctly. They... Rene Klomp
02:47 AM Bug #3104 (Closed): Upgrade 2.1RC0 code breaks RRD databases on nano
duplicate of #2159 Chris Buechler
02:22 AM Bug #2950 (Resolved): Upgrading RRD upgrade from 2.0 causes Out of Memory on 128MB embedded systems
still an RRD upgrade issue on nano but that's covered elsewhere Chris Buechler
01:23 AM Revision 330ecea1: Fix #3174 Handling of gateway groups in openvpn_restart()
If the underlying vip of a gateway group that an openvpn client is bound
to is in backup mode then the client should ...
Shahid Sheikh
01:08 AM Bug #3126 (Resolved): sync up ixgbe driver with r253865
Chris Buechler
01:08 AM Bug #1399: rrdtool respawning too fast
doesn't seem to happen anymore, but will put it out to 2.2 for confirmation.
Chris Buechler
01:07 AM Bug #2325 (New): Limiters don't work on OPT WAN rules w/rdr
issue unchanged in general for the specific circumstance in the original. Non-regression, postponing to 2.2. Chris Buechler
12:55 AM Bug #2882: 6RD not working in latest snapshots
Hi Chris,
Well that's quite the disappointing news.
Any chance you could just roll back whatever changes were m...
Will Wainwright
12:33 AM Bug #2882: 6RD not working in latest snapshots
6rd works in general, but there are issues due to the lack of proper v6 frag handling that makes it not functional in... Chris Buechler
12:38 AM Bug #2332 (Resolved): gateways always renamed to "dynamic". Implement proper IPv6 support
Chris Buechler
12:36 AM Bug #3083 (Resolved): Firewall rule toggle fails after several enable/disable cycles : 2.1 RC0 and 2.0.3 release
Chris Buechler
12:35 AM Bug #2979 (Resolved): Increase RRD Max values to account for 10Gbit/s Ethernet
Chris Buechler
12:35 AM Bug #2922 (Resolved): vpn_ipsec_force_reload() needs to be skipped when not really needed
Chris Buechler
12:35 AM Bug #2935 (Resolved): Revert "Backup RRD files using the xml dump and restore from RRD tools" changes
Chris Buechler
12:34 AM Revision 90652fbf: add option to send prefix hint for requesting desired prefix length for delegation
This change adds an option on the interfaces page for sending a prefix hint for the selected delegation size. If enab... Daniel Becker
12:31 AM Bug #2941 (Resolved): Prohibit adding aliases containing FQDNs in static routes
Chris Buechler
12:31 AM Bug #3030 (Resolved): When using LAGG+VLAN+ALTQ, the shaper wizard does not fill in the interface bandwidth
Chris Buechler
12:30 AM Bug #3077 (Resolved): FTP patches in revision 39802d4e cause kernel panics on FTP traffic
Chris Buechler
12:30 AM Bug #3150 (Resolved): Ping, Traceroute, and related pages need fixes to ensure IPv6 addresses are scoped properly.
Chris Buechler
12:10 AM Revision 9880a11d: Dummynet does not require burst size specification
Dummynet traffic shaper does not require burst size specification and
assumes 0 if not specified. Allow user to leave...
Jean Cyr

09/02/2013

09:35 PM Bug #3175 (Rejected): <Firewall: NAT: Port Forward: Edit> takes range in "Redirect target port"
not a bug, how things are supposed to work. Chris Buechler
12:12 PM Bug #3175 (Rejected): <Firewall: NAT: Port Forward: Edit> takes range in "Redirect target port"
If putting a range or an alias with a range in "Redirect target port" the rules crashes.
pfctl -s rules will be empt...
Grischa Zengel
08:33 PM Bug #3174: OpenVPN Client bound to a gateway group should not start on backup CARP vip
Pull requests #793 (for master) and #790 (for RELENG_2_1). Thx. Shahid Sheikh
07:16 AM Bug #3174: OpenVPN Client bound to a gateway group should not start on backup CARP vip
Could you please send a pull request to pfSense repo [1] at github? This is the right path to submit patches. Here yo... Renato Botelho
08:13 PM Revision 6eb6e720: #3174 Handling of gateway groups in openvpn_restart()
If the underlying vip of a gateway group that an openvpn client is bound to is in backup mode then the client should ... Shahid Sheikh
08:09 PM Revision 414edd3e: #3174 Added handling of gateway groups in openvpn_restart
Shahid Sheikh
06:08 PM Revision e7a209f5: Merge pull request #789 from jean-m-cyr/master
shaper burst may be blank, but if not then must be numeric Renato Botelho
06:01 PM Revision 6aab2ea3: shaper burst may be blank, but if not then must be numeric
Jean Cyr
02:10 PM Bug #2719: Deleting IPsec tunnel does not remove SPDs
Grischa Zengel wrote:
> Now I checked it:
> If I disable IPsec phase1 the ping goes thru openvpn.
> If I only dele...
Renato Botelho
01:30 PM Bug #2719: Deleting IPsec tunnel does not remove SPDs
Now I checked it:
If I disable IPsec phase1 the ping goes thru openvpn.
If I only delete phase2 the SPD still exist...
Grischa Zengel
12:30 PM Bug #2719: Deleting IPsec tunnel does not remove SPDs
I didn't check if the SPDs still be there but I had the conclusion of this.
From both sides I could ping both ends o...
Grischa Zengel
07:05 AM Bug #2719 (Feedback): Deleting IPsec tunnel does not remove SPDs
Grischa Zengel wrote:
> The problem still exists.
>
> After deleting IPsec tunnels routing didn't work for these ...
Renato Botelho
11:12 AM Revision 0c3a7a05: Use updated get_memory var names
Backport to 2.1 Phil Davis
11:01 AM Revision 7a6851df: Fix #3172, return_gateway_groups_array() was returning the last vip since it was using wrong variable name on iteration
Renato Botelho
11:00 AM Revision 22234bbb: Fix #3172, return_gateway_groups_array() was returning the last vip since it was using wrong variable name on iteration
Renato Botelho
10:54 AM Revision d613b9d5: Improve var names in get_memory
Backport from master Phil Davis
08:26 AM Revision ce4aea3a: Merge pull request #788 from jean-m-cyr/master
Dummynet does not require burst size specification Ermal Luçi
06:55 AM Revision b3e0fedf: Dummynet does not require burst size specification
Dummynet traffic shaper does not require burst size specification and
assumes 0 if not specified. Allow user to leave...
Jean Cyr
06:00 AM Bug #3172: function return_gateway_groups_array() returns the incorrect vip
Applied in changeset commit:7a6851dff7763fc85d03648ca30039fcd53ac620. Renato Botelho
06:00 AM Bug #3172 (Feedback): function return_gateway_groups_array() returns the incorrect vip
Applied in changeset commit:22234bbb2f3ea46fc61bb5adeabec1e94ccf167f. Renato Botelho

09/01/2013

06:50 PM Bug #3174 (Resolved): OpenVPN Client bound to a gateway group should not start on backup CARP vip
There is no handling for gateway groups in ... Shahid Sheikh
12:51 PM Bug #2882: 6RD not working in latest snapshots
Same issue here.
Using CenturyLink for 6RD so not limited to Charter. Upgraded from an August 2012 build to Sun...
Vince Maroun

08/31/2013

02:31 PM Revision f89f3b3d: Merge pull request #787 from phil-davis/master
Provide get_uptime_sec in a common include file Renato Botelho
06:18 AM Bug #3173 (Resolved): NEGATE_ROUTE rule does not respect port numbers
See forum: http://forum.pfsense.org/index.php/topic,65886.0.html
If I add a rule on LAN to pass source all, destin...
Phillip Davis
06:13 AM Bug #3172 (Resolved): function return_gateway_groups_array() returns the incorrect vip
I am not even a PHP novice so please take these findings with a grain of salt.
The vip returned is always the last...
Shahid Sheikh
04:27 AM Bug #3163: XS4All IPv6 does not work
adding version couldn't hurt either I suppose.
FreeBSD xxxx.xxxxxx.xxx 8.3-RELEASE-p10 FreeBSD 8.3-RELEASE-p10 #0:...
Wouter Snels
04:15 AM Bug #3163: XS4All IPv6 does not work
maybe the output of the dhcp6c helps. Wouter Snels
02:48 AM Bug #3163: XS4All IPv6 does not work
i have that checked all the time ! no that doesn't make it right Wouter Snels

08/30/2013

05:37 PM Revision 3fcb6a21: Show a count of the CPUs if more than one is detected, and show how those CPUs are supplied by the hardware.
Jim Pingle
05:37 PM Revision b097a7cf: Show a count of the CPUs if more than one is detected, and show how those CPUs are supplied by the hardware.
Jim Pingle
05:28 PM Bug #3163: XS4All IPv6 does not work
avink in the forum is right. Checking the box "Use IPv4 connectivity as parent interface" makes the config files use ... Rob J. Epping
03:04 AM Bug #3163: XS4All IPv6 does not work
Also posted on the forum.
It looks to me like the setup of the ipv6 WAN interface is broken.
Instead of configuri...
Rob J. Epping
11:53 AM Feature #410: Eliminate the interface mismatch prompt and try to do the right thing automatically
about restong the backup, that only works if that yet doesn't include the missing interface. my wlan usb stick was qu... dont care
11:49 AM Feature #410: Eliminate the interface mismatch prompt and try to do the right thing automatically
I'd like to add a situation that I recently eperienced: One interface was gone (just a usb stick for WLAN) and networ... dont care
11:18 AM Bug #3171: Network interface mismatch on next boot after adding usb-stick based WLAN
That has been discussed many times. If *any* interface is missing, it's best to stop and not try to assume it is safe... Jim Pingle
11:15 AM Bug #3171: Network interface mismatch on next boot after adding usb-stick based WLAN
Jim P wrote:
> This was due to your wireless device not being present when it needed it to be there, so it's not a s...
dont care
11:14 AM Bug #3171: Network interface mismatch on next boot after adding usb-stick based WLAN
Update: This can be fixed according to the solution in https://redmine.pfsense.org/issues/3170.
Yet I can't unders...
dont care
11:13 AM Bug #3171 (Rejected): Network interface mismatch on next boot after adding usb-stick based WLAN
This was due to your wireless device not being present when it needed it to be there, so it's not a separate issue bu... Jim Pingle
09:42 AM Bug #3171 (Rejected): Network interface mismatch on next boot after adding usb-stick based WLAN
After adding a new interface where I selected run0 (an rt3070 based usb wlan stick, edimax EW-7711UMn) and not doing ... dont care
11:12 AM Bug #3170: USB WLAN stick only recognized after plugging in and out
We can't load every conceivable driver, and run devices have also been known to have panics on some chips/devices, so... Jim Pingle
11:11 AM Bug #3170: USB WLAN stick only recognized after plugging in and out
(Hint came from wallabybob here: http://forum.pfsense.org/index.php?topic=65227.new;topicseen#new) dont care
11:10 AM Bug #3170: USB WLAN stick only recognized after plugging in and out
Update: This problem can be fixed by adding... dont care
10:11 AM Bug #3170 (Rejected): USB WLAN stick only recognized after plugging in and out
driver problem we have no control over. Hopefully will get better with 2.2 (FreeBSD 10) if it isn't already in 2.1. Chris Buechler
09:37 AM Bug #3170 (Rejected): USB WLAN stick only recognized after plugging in and out
I am using an rt3070 based usb wlan stick, edimax EW-7711UMn. in the interface assign pulldown choice, it's only avai... dont care
05:46 AM Bug #2882 (New): 6RD not working in latest snapshots
Renato Botelho
05:42 AM Bug #3112 (Resolved): AHCI disk devices are not detected in Diagnostics > SMART Status
Renato Botelho
 

Also available in: Atom