Project

General

Profile

Activity

From 10/13/2013 to 11/11/2013

11/11/2013

10:16 PM Revision d60ba078: Merge pull request #831 from ExolonDX/branch_06
Tidy up "diag_logs_filter_summary.php" XHTML Renato Botelho
10:15 PM Revision 454e09bd: Merge pull request #829 from ExolonDX/branch_04
Tidy up "diag_logs_filter.php" XHTML Renato Botelho
09:29 PM Revision 6186cdc4: Rework the usage of the shell i/o during stop_packages(), fixes the "Syntax error: bad fd number" for the remaining people who still saw it on shutdown
Jim Pingle
09:27 PM Revision 2ffc7dc3: Rework the usage of the shell i/o during stop_packages(), fixes the "Syntax error: bad fd number" for the remaining people who still saw it on shutdown
Jim Pingle
06:57 PM Feature #1189: Gateway: Multiple monitor ips
Are advanced parameters for every single monitoring IP actually needed?
In my opinion there is no need for it, as no...
Florian Schaeffler
06:36 PM Bug #3134: Apinger is not updating monitor IP until it is manually restarted
I still have got a similar behavior with the version "2.1-RELEASE (i386) built on Wed Sep 11 18:16:44 EDT 2013 FreeBS... Florian Schaeffler
06:12 PM Revision 629f07c3: This tag could be present, but empty. Skip processing if the interface has no IP address.
Jim Pingle
06:11 PM Revision 793299b8: This tag could be present, but empty. Skip processing if the interface has no IP address.
Jim Pingle
06:10 PM Revision 58ee84b4: If the interface is configured and not enabled, bail. We do not need to change settings for disabled interfaces. Fixes #3313
Jim Pingle
06:10 PM Revision 63f72828: If the interface is configured and not enabled, bail. We do not need to change settings for disabled interfaces. Fixes #3313
Jim Pingle
05:07 PM Bug #3311 (Closed): After enabling save password permission racoon die with (core dumped)
if you can find a way to reliably replicate, please report back. I'll close for now, haven't seen that happen and doe... Chris Buechler
10:23 AM Bug #3311: After enabling save password permission racoon die with (core dumped)
deleted ipsec config, configured once more.. no more problems. sorry. strange thing.
cant find - how to delete my e...
Koichi Tanaka
09:41 AM Bug #3311 (Closed): After enabling save password permission racoon die with (core dumped)
Hi all.
I'd configured IPSec, all was ok. But after enabling save password permission racoon die with (core dumped...
Koichi Tanaka
05:05 PM Bug #3301 (Closed): "Reverse Resolve with DNS" popup poorly formatted
Chris Buechler
05:04 PM Bug #3308 (Feedback): route-to/reply-to not updated when PPP gateway IP changes
not enough info. check Status>Gateways, and the route-to lines in /tmp/rules.debug, guessing one of your gateways is ... Chris Buechler
04:21 PM Bug #3315 (Rejected): SNMP MIB-2 Strange TCP Stats
SNMP TCP Values wrong or missing
PfSense Says:
-----SNMP query started-----
1: tcpRtoAlgorithm.0 vanj(4)
2: tcpRt...
Pr0 vieH
01:38 PM Bug #3314 (Resolved): Traffic graph shows 2X the actual traffic on VLAN interfaces.
2.1-RELEASE (i386)
built on Wed Sep 11 18:16:50 EDT 2013
FreeBSD 8.3-RELEASE-p11
Configuration
em0 - wan inte...
Jean Cyr
12:57 PM Revision f70121be: Fix #3298 and few other fixes:
. Check for fixed array keys (pkg_categories_min_count,
pkg_categories_max_display and pkg_default_categories) inst...
Renato Botelho
12:19 PM Revision 29840546: Fix indent and whitespaces
Renato Botelho
12:10 PM Bug #3313: rc.newwanip should bail on diabled interfaces
Applied in changeset commit:58ee84b4b2f9daba87e44abf663026c6266a7cd8. Jim Pingle
12:10 PM Bug #3313 (Feedback): rc.newwanip should bail on diabled interfaces
Applied in changeset commit:63f7282808458e404feb9c4fdfa11ced3f1bfe45. Jim Pingle
11:58 AM Bug #3313 (Resolved): rc.newwanip should bail on diabled interfaces
If an interface is disabled, rc.newwanip should not attempt to (re)configure the interface when its link goes down/up... Jim Pingle
11:19 AM Revision e09fcde5: Merge pull request #844 from ExolonDX/branch_20
Tidy up "diag_logs_openvpn.php" XHTML Renato Botelho
11:18 AM Revision 4f3d3052: Merge pull request #843 from ExolonDX/branch_19
Tidy up "diag_logs.php" XHTML Renato Botelho
11:18 AM Revision 5f8fc8d8: Merge pull request #842 from ExolonDX/branch_17
Tidy up "diag_logs_wireless.php" XHTML Renato Botelho
11:18 AM Revision ad411437: Merge pull request #841 from ExolonDX/branch_16
Tidy up "diag_logs_vpn.php" XHTML Renato Botelho
11:17 AM Revision d869c813: Merge pull request #840 from ExolonDX/branch_15
Tidy up "diag_logs_settings.php" XHTML Renato Botelho
11:15 AM Revision 750adb5c: Merge pull request #839 from ExolonDX/branch_14
Tidy up "diag_logs_routing.php" XHTML Renato Botelho
11:15 AM Revision d3b01546: Merge pull request #838 from ExolonDX/branch_13
Tidy up "diag_logs_resolver.php" XHTML Renato Botelho
11:14 AM Revision d24de56a: Merge pull request #837 from ExolonDX/branch_12
Tidy up "diag_logs_relayd.php" XHTML Renato Botelho
11:14 AM Revision 12f1bd24: Merge pull request #836 from ExolonDX/branch_11
Tidy up "diag_logs_ppp.php" XHTML Renato Botelho
11:14 AM Revision 77ad3ea3: Merge pull request #834 from ExolonDX/branch_09
Tidy up "diag_logs_ntpd.php" XHTML Renato Botelho
11:13 AM Revision abf49196: Merge pull request #833 from ExolonDX/branch_08
Tidy up "diag_logs_ipsec.php" XHTML Renato Botelho
11:13 AM Revision 5395194e: Merge pull request #832 from ExolonDX/branch_07
Tidy up "diag_logs_gateways.php" XHTML Renato Botelho
11:12 AM Revision 9c76ad6d: Merge pull request #830 from ExolonDX/branch_05
Tidy up "diag_logs_filter_dynamic.php" XHTML Renato Botelho
11:07 AM Revision 10f3e734: Merge pull request #828 from ExolonDX/branch_03
Tidy up "diag_logs_dhcp.php" XHTML Renato Botelho
11:06 AM Revision 8802b918: Merge pull request #827 from ExolonDX/branch_02
Tidy up "diag_logs_auth.php" XHTML Renato Botelho
10:53 AM Bug #3312 (New): Gateway on IPsec rules is not functional in pf
When selecting a gateway on an IPsec tab rule, the GUI looks correct, the generated pf rule looks correct in /tmp/rul... Jim Pingle
07:53 AM Bug #3298 (Resolved): Package type tabs on 2.2 should have a default 'all' tab
Looks good to me, thanks! Jim Pingle
07:00 AM Bug #3298 (Feedback): Package type tabs on 2.2 should have a default 'all' tab
Applied in changeset commit:f70121be366f41c6099e864c1fbebbd96aaae3cf. Renato Botelho
12:28 AM Bug #3287: RRD. No IPv6 data.
Small update.
I have noticed one interesting thing.
My configuration:
1. WAN0 - PPPoE + 6to4 Tunnel;
2. WA...
Dmitriy K

11/09/2013

04:03 PM Revision 62c5794d: Handle comma-separated list of remote networks when making vpn_networks table
If remote_networks for an OpenVPN instance is a list of more than 1 network then none of the networks gets added to t... Phil Davis
06:59 AM Bug #3310 (Rejected): There were error(s) loading the rules: pfctl: DIOCADDRULE: Device busy
I get this error message "php: rc.filter_configure_sync: New alert found: There were error(s) loading the rules: pfct... Atıf CEYLAN

11/08/2013

04:56 AM Bug #3309: wrong routing on multidsl+multiopenvpn
Take a look to http://forum.pfsense.org/index.php/topic,66776.45.html replies #58 and #59 Federico Viel
04:22 AM Bug #3309: wrong routing on multidsl+multiopenvpn
Further digging found out the following:
pfSense code does not list all vpn_networks in <vpn_networks> variable as...
Federico Viel
03:49 AM Feature #1189: Gateway: Multiple monitor ips
I would also like this feature, so I have had a think about how it can be done. The apinger target is just a single I... Phillip Davis

11/07/2013

09:32 PM Feature #1189: Gateway: Multiple monitor ips
Same here. I actually would love to see this feature, as it gives way more stability to the whole failover-concept. Florian Schaeffler
08:42 PM Bug #3307: rc.update_bogons.sh doesn't filter out all private address space
Not just this. See also https://redmine.pfsense.org/issues/3214 Doktor Notor
06:49 AM Bug #3307 (Closed): rc.update_bogons.sh doesn't filter out all private address space
line 103 of /etc/rc.update_bogons.sh currently only egrep's out:
192.168.0.0/16
172.16.0.0/12
10.0.0.0/8
While ...
Gavin J
07:35 PM Revision 6d5fcf57: Unset this variable used in the loop to avoid having wrong information
Ermal LUÇI
07:35 PM Revision 892d23bc: Unset this variable used in the loop to avoid having wrong information
Ermal LUÇI
07:27 PM Revision a00acb4c: Do not forget the trace in the pf.conf that something went wrong during rules generation to be able to at least detect what is going on
Ermal LUÇI
07:26 PM Revision 8194f288: Do not forget the trace in the pf.conf that something went wrong during rules generation to be able to at least detect what is going on
Ermal LUÇI
06:34 PM Revision 215319ce: Merge pull request #846 from jean-m-cyr/RELENG_2_1
Give clients the IPV6 address of the DNS server Ermal Luçi
06:34 PM Revision 96a60eb4: system_camanager init $input_errors so array_push works
Fixes input validation when creating an internal certificate. Reported in forum http://forum.pfsense.org/index.php/to... Phil Davis
06:33 PM Revision 96907170: Merge pull request #848 from phil-davis/master
system_camanager init $input_errors so array_push works Ermal Luçi
06:32 PM Revision 35f584e3: Merge pull request #845 from jean-m-cyr/master
Give clients the IPV6 address of the DNS server Ermal Luçi
06:31 PM Revision e30dd11d: Merge pull request #849 from Robert-Nelson/RELENG_2_1
Fix #3301 Ermal Luçi
05:52 PM Revision 84eaea96: Simplify the code.
No need to worry about the second column, we only need to pad the first one. Robert Nelson
05:52 PM Revision b24622e2: Rewrite the display_host_results() function to use spaces instead of
tabs. It does a much better job of aligning the fields in each column
and works in all the browsers, particularly chr...
Robert Nelson
01:13 PM Bug #3223: pfr_unroute_kentry: delete failed and freeze
Do you have large tables in your setup? Ermal Luçi
12:30 PM Bug #3301 (Feedback): "Reverse Resolve with DNS" popup poorly formatted
Applied in changeset commit:e30dd11d164895307bd56fe043e4770517872fd5. Ermal Luçi
03:42 AM Bug #3301: "Reverse Resolve with DNS" popup poorly formatted
This can be closed, pull request #847 was merged to master. Robert Nelson
01:31 AM Bug #3301: "Reverse Resolve with DNS" popup poorly formatted
Thanks for letting me know, I submitted the pull request. Robert Nelson
11:11 AM Revision 2b8bfda4: system_camanager init $input_errors so array_push works
Fixes input validation when creating an internal certificate. Reported in forum http://forum.pfsense.org/index.php/to... Phil Davis
10:09 AM Bug #3176: Hosts file corrupted when using "Register DHCP leases in DNS forwarder"
I've experienced this problem as well in 2.1-RELEASE (i386). First I got the non-ascii characters like Rene Klomp. ... Jason Crowley
09:24 AM Revision c475a009: Merge pull request #847 from Robert-Nelson/master
Rewrite the display_host_results() function to use spaces instead of tabs Ermal Luçi
09:14 AM Bug #3309 (Resolved): wrong routing on multidsl+multiopenvpn
In a multidsl enviroment with 1Server and 2 (or more) site2site OpenVPN clients the 2nd one does not route correctly.... Federico Viel
09:11 AM Bug #3308 (Closed): route-to/reply-to not updated when PPP gateway IP changes
I have two WAN interfaces and a firewall rule to make the secondary WAN the gateway for some of the hosts. A screens... Oz Solomon
08:34 AM Revision 79f5aebe: Simplify the code.
No need to worry about the second column, we only need to pad the first one. Robert Nelson
06:54 AM Revision 6ff71328: Rewrite the display_host_results() function to use spaces instead of
tabs. It does a much better job of aligning the fields in each column
and works in all the browsers, particularly chr...
Robert Nelson
02:21 AM Revision 91d647b4: Give clients the IPV6 address of the DNS server
For IPV6 WAN tracking interfaces, dhcpdv6 does not provide an IPV6
address for the DNS server... fix that. The IPV6 a...
Jean Cyr
02:15 AM Revision 70da4172: Give clients the IPV6 address of the DNS server
For IPV6 WAN tracking interfaces, dhcpdv6 does not provide an IPV6
address for the DNS server... fix that.
Jean Cyr
01:38 AM Bug #3305: RRD graphs - the graphs legends use original interface name (OPT1) instead of the renamed version (LAN2)
Affected version: 2.1
Affected architecture: i386
Pavel Pilat
01:05 AM Bug #3305 (Resolved): RRD graphs - the graphs legends use original interface name (OPT1) instead of the renamed version (LAN2)
The legends under RRD graphs use an interface's name which was originally assigned to it at the time of creation.
I...
Pavel Pilat
01:37 AM Bug #3306 (Resolved): a notification is not sent when a gateway is down
I have two WAN setup - the default WAN and the other one. Every WAN has a different gateway assigned. I use "Allow de... Pavel Pilat

11/06/2013

10:40 PM Bug #3299 (Rejected): Missing storage driver
We include all drivers available in the base OS version being used. That's some hardware-specific regression that we ... Chris Buechler
08:06 AM Bug #3302 (Closed): unbound - could not open autotrust file for writing
Warren Baker
02:52 AM Bug #3302: unbound - could not open autotrust file for writing
Error gone after package reinstall. Thanks! Doktor Notor
07:17 AM Bug #3301: "Reverse Resolve with DNS" popup poorly formatted
It is easy for the developers if you make changes in GitHub and submit a pull request. Phillip Davis
05:05 AM pfSense Packages Feature #3303 (Resolved): Allow quagga ospf stub, not so stub and totally stub areas
Dear PFSense Team.
We are integrating PFSense in our university here in Campinas - São Paulo - Brazil. At the same...
Andre Luiz Paiz

11/05/2013

06:19 PM Feature #214: Simultaneuous Serial/Video Console
In my scenario, I want VGA and serial, but I want VGA to be primary. Otherwise much of the post-init boot messages ar... Matthew Trent
02:51 PM Revision d7ba0370: Tidy up "diag_logs_openvpn.php" XHTML
Add SUMMARY to table statements
Close BR and INPUT statements
Colin Fleming
02:48 PM Revision c7b94a26: Tidy up "diag_logs.php" XHTML
Add SUMMARY to tables Colin Fleming

11/04/2013

09:19 PM Revision d027e810: Tidy up "diag_logs_wireless.php" XHTML
Add SUMMARY to table statements
Close BR and INPUT statements
Move closing FORM statement into table cell statement
Colin Fleming
09:17 PM Revision e3762a2a: Tidy up "diag_logs_vpn.php" XHTML
Move NOWRAP Boolean operator into CLASS statements
Add ALT and close IMG statements
Add SUMMARY to table statements
D...
Colin Fleming
09:15 PM Revision 00491625: Tidy up "diag_logs_settings.php" XHTML
Add "closehead" PHP variable and close the HEAD statement
Add CDATA to script statement
Add SUMMARY to table statemen...
Colin Fleming
09:12 PM Revision a2f86379: Tidy up "diag_logs_routing.php" XHTML
Add SUMMARY to table statements
Close BR and INPUT statements
Move closing FORM statement into table cell
Colin Fleming
09:10 PM Revision 085955a3: Tidy up "diag_logs_resolver.php" XHTML
Add SUMMARY to table statements Colin Fleming
09:10 PM Revision 68c5d859: Tidy up "diag_logs_relayd.php" XHTML
Add SUMMARY to table statements
Close BR and INPUT statements
Move closing FORM statement into table cell
Colin Fleming
09:08 PM Revision 60219c69: Tidy up "diag_logs_ppp.php" XHTML
Add SUMMARY to table statements
Close BR and INPUT statements
Colin Fleming
09:06 PM Revision 2680a3e9: Tidy up "diag_logs_ntpd.php" XHTML
Add SUMMARY to table statements
Close BR and INPUT statements
Move closing FORM into table cell
Colin Fleming
09:05 PM Revision e51b6dbf: Tidy up "diag_logs_ipsec.php" XHTML
Add SUMMARY to table statements
Close INPUT statement
Colin Fleming
09:03 PM Revision 9890d0c7: Tidy up "diag_logs_gateways.php" XHTML
Add SUMMARY to table statements Colin Fleming
09:02 PM Revision d13c2368: Tidy up "diag_logs_filter_summary.php" XHTML
Remove "px" from width statement, not valid in XHTML
Add SUMMARY to table statements
Add ALT and close img statements...
Colin Fleming
08:59 PM Revision 512ae370: Tidy up "diag_logs_filter_dynamic.php" XHTML
Add CDATA to script statements
Move NOWRAP Boolean operator into class statement
Add SUMMARY to table statements
Add ...
Colin Fleming
08:56 PM Revision 2f1e4020: Tidy up "diag_logs_filter.php" XHTML
Add SUMMARY to table statements
Add secondary row of TABS for "Dynamic" and "Summary" logs
Closing BR and INPUT tags
...
Colin Fleming
08:52 PM Revision 0a6cb6b1: Tidy up "diag_logs_dhcp.php" XHTML
Add SUMMARY to table statements
Close BR and INPUT statements
Move closing FORM into table cell
Colin Fleming
08:51 PM Revision 1bc95a31: Tidy up "diag_logs_auth.php" XHTML
Add SUMMARY to table statements
Close BR and INPUT statements
Move close FORM into table cell
Colin Fleming
01:23 PM Bug #3247: ipsec mobile clients login banner cannot contain certain chars
Hello,
Changeset babc58d30843cb388559178b60aecd7a9a64bcca works for me, banner can contain accent characters.
I n...
Orsiris de Jong
07:30 AM Bug #3302 (Feedback): unbound - could not open autotrust file for writing
Applied in changeset pfsense-packages:commit:a5cb531eed39db304e7325711004ffa017d762db. Warren Baker
06:55 AM Bug #3302 (Closed): unbound - could not open autotrust file for writing
... Doktor Notor

11/03/2013

07:09 PM Bug #3301 (Closed): "Reverse Resolve with DNS" popup poorly formatted
The dialog that is displayed from the firewall log with the results of the reverse DNS lookup is poorly formatted.
...
Robert Nelson
04:32 PM Feature #1811: Monitor PPP for connections stuck in "initial" state
Confirming this bug still exists in 2.1-RELEASE
Nov 2 13:59:47 ppp: [wan_link0] LCP: rec'd Terminate Request #5 (...
Noah O'Donoghue

11/02/2013

10:48 AM Revision 90caf54e: Call conf_mount_rw before delete user, a better fix for #3294
Renato Botelho
10:48 AM Revision 03e156ef: Revert "Add conf_mount_rw calls on functions that changes user/groups. It fixes #3294"
This reverts commit fa757d146c85261b7e90d226c1aecd38089d7e20. Renato Botelho
10:48 AM Revision 8a0ae97f: Call conf_mount_rw before delete user, a better fix for #3294
Renato Botelho
10:48 AM Revision 23b5b16a: Revert "Add conf_mount_rw calls on functions that changes user/groups. It fixes #3294"
This reverts commit b1e5a286bb47d7e4a5b3d589cc27b557b3b13c41. Renato Botelho
05:50 AM Bug #3294: Creating users/groups silently fails on read only filesystem
Applied in changeset commit:03e156efac94129f4b152e3561d39279e153aa7a. Renato Botelho
05:50 AM Bug #3294: Creating users/groups silently fails on read only filesystem
Applied in changeset commit:23b5b16ac6b4107b5321c4e06dfc2b56fa565f20. Renato Botelho

11/01/2013

05:34 PM Bug #3294: Creating users/groups silently fails on read only filesystem
When I reported this I was probably more expecting some error handling to be added so it actually failed properly and... Phil Sweeney
04:38 PM Bug #3294: Creating users/groups silently fails on read only filesystem
The commits are wrong in my opinion!
Why should backend code have to deal with mounting the disk.
I sept a lot of...
Ermal Luçi
08:00 AM Bug #3294: Creating users/groups silently fails on read only filesystem
Applied in changeset commit:fa757d146c85261b7e90d226c1aecd38089d7e20. Renato Botelho
08:00 AM Bug #3294 (Feedback): Creating users/groups silently fails on read only filesystem
Applied in changeset commit:b1e5a286bb47d7e4a5b3d589cc27b557b3b13c41. Renato Botelho
02:45 PM Revision 19b10216: Prevent a Fall Back Pool from being selected when the DNS protocol is in use. If one is present in the config, ignore it. Fixes #3300
Jim Pingle
02:43 PM Revision c5d4d97b: Prevent a Fall Back Pool from being selected when the DNS protocol is in use. If one is present in the config, ignore it. Fixes #3300
Jim Pingle
02:23 PM Revision add913b1: Teach system_timezone_configure() to deal with symlinks to avoid having timezone misconfigured. This fixes #3293
Renato Botelho
02:21 PM Bug #3252 (Rejected): Diagnostics-Tables inconsistency
It's working as expected Renato Botelho
01:33 PM Bug #3252: Diagnostics-Tables inconsistency
It's because snort_fqdns is created using persist Renato Botelho
02:21 PM Revision 87060898: Teach system_timezone_configure() to deal with symlinks to avoid having timezone misconfigured. This fixes #3293
Renato Botelho
01:31 PM Revision 6ae050ae: Update zoneinfo to 2013.h
Renato Botelho
01:31 PM Revision d1f6c3bf: Update zoneinfo to 2013.h
Renato Botelho
12:56 PM Revision fa757d14: Add conf_mount_rw calls on functions that changes user/groups. It fixes #3294
Renato Botelho
12:55 PM Revision b1e5a286: Add conf_mount_rw calls on functions that changes user/groups. It fixes #3294
Renato Botelho
12:40 PM pfSense Packages Bug #3292 (Feedback): Syslog-ng accidentally gzip's SSL key file + fix
Applied in changeset commit:c030cf2781c7bbef197db6f07facef35b6856c8e. Renato Botelho
09:50 AM Bug #3300: relayd does not support a fall back pool for DNS, and will break if one is configured
Applied in changeset commit:19b102161253ac33bdf26010e6e110d6e71cc06c. Jim Pingle
09:50 AM Bug #3300 (Feedback): relayd does not support a fall back pool for DNS, and will break if one is configured
Applied in changeset commit:c5d4d97bab489c5884331e0f36930a4e7aaa78c8. Jim Pingle
09:26 AM Bug #3300 (Resolved): relayd does not support a fall back pool for DNS, and will break if one is configured
relayd does not support a fall back pool for DNS, and will break if one is configured. So we must at least note that ... Jim Pingle
09:30 AM Bug #3293: Using timezone Europe/Oslo causes firewall/system logs to be displayed in UTC
Applied in changeset commit:add913b1437bf56b61a4ae8739e7a426b8267aff. Renato Botelho
09:30 AM Bug #3293 (Feedback): Using timezone Europe/Oslo causes firewall/system logs to be displayed in UTC
Applied in changeset commit:870608984c1d51850a8db5e0a3ab04d2986973d6. Renato Botelho
09:20 AM Bug #3293: Using timezone Europe/Oslo causes firewall/system logs to be displayed in UTC
system_timezone_configure() configure /etc/localtime to empty when the selected timezone is a symlink. Will push a fix Renato Botelho

10/31/2013

07:03 PM Revision 9ed52990: Unset value should be '' and not 'none'
Jim Pingle
06:50 PM Revision edba1982: Change OpenVPN Compression settings to cover the full range of allowed settings on OpenVPN (unset, off, on, adaptive) rather than a simple off/on switch that either doesn't set the value or enables it with adaptive (OpenVPN's default).
Jim Pingle
05:29 PM Bug #3299: Missing storage driver
Ah, not that you think the drive is there, what's he talking about: The logs are from the 2.0.3 version. Oliver Loch
05:28 PM Bug #3299 (Rejected): Missing storage driver
Hi,
just upgpraded today from 2.0.3 to the 2.1 version and after 20 minutes of waiting I connected a monitor to se...
Oliver Loch
02:29 PM Feature #2295 (Feedback): Allow multiple OpenVPN compression settings (disable, yes, no, adaptive)
This is now implemented in commit:edba19827078642a765df3a49e60ab92968cacc6 and commit:9ed529906cf9dc2a571df550a813855... Jim Pingle
12:45 PM Bug #3298 (Resolved): Package type tabs on 2.2 should have a default 'all' tab
On master/2.2 the packages are split into multiple tabs, and it defaults to the Services tab. This should instead hav... Jim Pingle
11:59 AM Bug #3286: Radvd will not function with IPv6 Prefix delegation other than 64 on WAN
Could you also share dhcp6c conf? Renato Botelho

10/30/2013

08:01 PM Revision 85bdf997: Add Auth Digest to OpenVPN wizard also.
Jim Pingle
07:47 PM Revision 97d5b59b: Add an Authentication Digest Algorithm drop-down to OpenVPN server/client (SHA1 is the default since that is OpenVPN's default)
Jim Pingle
03:44 PM Bug #3297 (Closed): IPsec log parsing code does not skip disabled Phase 1 entries
The IPsec log parsing code does not skip disabled Phase 1 entries, however, that may be OK but needs consideration.
...
Jim Pingle
03:29 AM Bug #3280 (New): Assigning GRE interface and configuring an IP address removes the IP from the underlying gre interface in the OS
Renato Botelho

10/29/2013

03:30 PM Bug #3280: Assigning GRE interface and configuring an IP address removes the IP from the underlying gre interface in the OS
Applied in changeset commit:204bec28359f7ef8bc0dee97b909839a0566daf8. Renato Botelho
03:30 PM Bug #3280: Assigning GRE interface and configuring an IP address removes the IP from the underlying gre interface in the OS
Applied in changeset commit:34e178135b252d6664d1ba47dc877e099033ca7f. Renato Botelho
04:10 AM Bug #3280: Assigning GRE interface and configuring an IP address removes the IP from the underlying gre interface in the OS
Applied in changeset commit:6721d6d0443bd7e697bd6ca33f470c801608df7e. Renato Botelho
04:10 AM Bug #3280 (Feedback): Assigning GRE interface and configuring an IP address removes the IP from the underlying gre interface in the OS
Applied in changeset commit:bb6291e0204ffe2828fe9c9425bdae9c8541fe54. Renato Botelho
09:35 AM Revision 204bec28: Revert "Define dynamic gateway for GRE interfaces and do not user to define IP address to the interface. Fixes #3280"
Another solution will be implemented
This reverts commit 6721d6d0443bd7e697bd6ca33f470c801608df7e.
Renato Botelho
09:35 AM Revision 34e17813: Revert "Define dynamic gateway for GRE interfaces and do not user to define IP address to the interface. Fixes #3280"
Another solution will be implemented
This reverts commit bb6291e0204ffe2828fe9c9425bdae9c8541fe54.
Renato Botelho
09:06 AM Revision 6721d6d0: Define dynamic gateway for GRE interfaces and do not user to define IP address to the interface. Fixes #3280
Renato Botelho
09:05 AM Revision bb6291e0: Define dynamic gateway for GRE interfaces and do not user to define IP address to the interface. Fixes #3280
Renato Botelho
12:20 AM Revision d3ad6cf0: fix typo
Chris Buechler
12:20 AM Revision 9aca7390: fix typo
Chris Buechler

10/28/2013

04:20 PM Revision 1dc0e7f4: Make return_gateways_array() return all disabled gateways when $disabled is true, it should fix #3291
Renato Botelho
04:19 PM Revision aec89bd3: Make return_gateways_array() return all disabled gateways when $disabled is true, it should fix #3291
Renato Botelho
01:29 PM Revision b84ac9c6: Merge pull request #822 from CharlieMarshall/interfacesWidget
cleanup interfaces.widget.php Ermal Luçi
12:35 PM Revision 20623f57: Fix an attempt to read unset variable $rtent
Renato Botelho
12:35 PM Revision 7610d228: Fix an attempt to read unset variable $rtent
Renato Botelho
11:20 AM Bug #3291: Add new gateway allow name duplication
Applied in changeset commit:1dc0e7f4f16b57ecca40157c5c8f76e9a60a914e. Renato Botelho
11:20 AM Bug #3291 (Feedback): Add new gateway allow name duplication
Applied in changeset commit:aec89bd3c2d0f9b464e0d7cc6d189c49966d6f0b. Renato Botelho
03:48 AM Bug #3295 (Rejected): /diag_authentication.php throws error
Duplicate of #3234 Renato Botelho

10/27/2013

03:17 PM Bug #3295: /diag_authentication.php throws error
Suggested fix:
wrap getNasIP() in if (!function_exists('getNasIP')) {} in both /usr/local/captiveportal/radius_authe...
Cool Fire
03:07 PM Bug #3295 (Rejected): /diag_authentication.php throws error
Trying to load this page results in the following error:
Fatal error: Cannot redeclare getNasIP() (previously decl...
Cool Fire

10/26/2013

07:49 AM Bug #3294 (Resolved): Creating users/groups silently fails on read only filesystem
Was setting up VPN and following various guides, which included the creation of a group and a user.
I did this, an...
Phil Sweeney

10/25/2013

09:42 PM Bug #3293 (Resolved): Using timezone Europe/Oslo causes firewall/system logs to be displayed in UTC
When configuring pfSense with timezone 'Europe/Oslo', the time shows correctly in the dashboard. The firewall/system ... Andreas Wintervold
07:15 PM Revision 0c951d98: cleanup interfaces.widget.php
Charlie Marshall
04:24 PM Bug #3290: IPV6 conectivity not restored after cablemodem reset
Steps to reproduce
- Establish IPV6 connectivity on Comcast network.
- Cycle cablemodem power.
- Observe that IP...
Jean Cyr
04:10 PM pfSense Packages Bug #3292 (Resolved): Syslog-ng accidentally gzip's SSL key file + fix
First off, pfSense is awesome, you folks rock.
Second off, there's a hilariously annoying bug with syslog-ng when ...
Zaphod Beeblebrox
01:25 PM Bug #3291 (Resolved): Add new gateway allow name duplication
When adding a new gateway, it doesn't check name collision with disabled interfaces and in the end you have 2 gateway... Renato Botelho
12:42 PM Revision bf755503: Use a more accurate error message, fixes #3282
Renato Botelho
12:41 PM Revision f44ac2e9: Use a more accurate error message, fixes #3282
Renato Botelho
07:40 AM Bug #3282: Gateway error "You can not use a IPv4 Gateway Address on a IPv6 only interface." is not accurate
Applied in changeset commit:bf75550387f2d76a0300253a322f42d6ecdf6460. Renato Botelho
07:40 AM Bug #3282 (Feedback): Gateway error "You can not use a IPv4 Gateway Address on a IPv6 only interface." is not accurate
Applied in changeset commit:f44ac2e9734396efa0653fbed255c28e074ae8dd. Renato Botelho
05:43 AM Bug #3249: DHCP Server/DHCP Relay both say the other is started
Scott Smith wrote:
> i too have found this same problem. My config has been workign for years and I have upgraded to...
Renato Botelho
01:27 AM Bug #3235: Could not open shared memory for read 1000
Tested on a stock 2.1-RELEASE test system. Set Permanent Read/Write, rebooted.
Diagnostics->NanoBSD shows reference ...
Phillip Davis

10/24/2013

10:48 PM Bug #3290: IPV6 conectivity not restored after cablemodem reset
This is a significant issue since Comcast is aggressively rolling out IPV6 support, initiating frequent late-night mo... Jean Cyr
10:41 PM Bug #3290 (Duplicate): IPV6 conectivity not restored after cablemodem reset
Cablemodem reset causes complete loss of IPV6 conectivity. Jean Cyr
09:52 PM Bug #3249: DHCP Server/DHCP Relay both say the other is started
i too have found this same problem. My config has been workign for years and I have upgraded to
2.1-RELEASE (i386...
Scott Smith
08:34 PM Revision 53c5407e: Add source address selection to syslog settings, so it can work more effectively over a VPN. Fixes #355
Jim Pingle
08:33 PM Revision cbe12b8d: Add source address selection to syslog settings, so it can work more effectively over a VPN. Fixes #355
Jim Pingle
08:07 PM Revision b8250344: Fix #3235
. diag_nanobsd.php:
. Since conf_mount_ro() is always being called, always call
conf_mount_rw to keep refcount co...
Renato Botelho
08:01 PM Revision 785158c6: Fix #3235
. diag_nanobsd.php:
. Since conf_mount_ro() is always being called, always call
conf_mount_rw to keep refcount co...
Renato Botelho
03:54 PM Bug #3286: Radvd will not function with IPv6 Prefix delegation other than 64 on WAN
I am too busy to pull the files from a completely stock setup but I was able to pull them from a clean 2.1 install wi... Alex Fox
01:02 PM Bug #3286: Radvd will not function with IPv6 Prefix delegation other than 64 on WAN
Could you share relevant part of config.xml and radvd.conf? Renato Botelho
03:40 PM Bug #355: syslog should not bind on *
Applied in changeset commit:53c5407e646028a003b2765a87dd3316b21a9497. Jim Pingle
03:40 PM Bug #355 (Feedback): syslog should not bind on *
Applied in changeset commit:cbe12b8de3fa374e535d4478ab84a4a2c5f6e725. Jim Pingle
03:10 PM Bug #3235: Could not open shared memory for read 1000
Applied in changeset commit:b8250344f5f02851259ffde6fed8da40ddeaf0af. Renato Botelho
03:10 PM Bug #3235 (Feedback): Could not open shared memory for read 1000
Applied in changeset commit:785158c6c48e4e1842791d3b33d9b0395332991d. Renato Botelho
12:17 PM Feature #3289 (Needs Patch): VPN tunnels configuration displayed in pages
Well, if you have few hundred tunnels the web page gets too long and kind a hard do scroll or use at all on slower PC... Todor K
06:31 AM Bug #3255: OpenVPN client or server on GWG does not failover
My feedback above applies - using the version of rc.openvpn merged into the 2.1 branch. It is a good thing IMHO.
Ign...
Phillip Davis
06:27 AM Bug #3255 (Feedback): OpenVPN client or server on GWG does not failover
didn't realize the merge was pulled, last update I noticed was Phil's 2 days ago, back to Feedback since it's merged. Chris Buechler
04:49 AM Bug #3255 (New): OpenVPN client or server on GWG does not failover
Chris Buechler
03:55 AM Bug #3255: OpenVPN client or server on GWG does not failover
Tested with the 2.1 branch version of rc.openvpn
It successfully writes new servern.conf and clientn.conf files for ...
Phillip Davis
04:55 AM Bug #3278 (Rejected): OpenVPN - Unable to contact daemon, service not running?
config or network issue, not a bug. Chris Buechler
02:11 AM Feature #3288: Support interface macros in Outbound NAT rules
Forgot to attach a screenshot (>.<)' Dmitriy K
02:06 AM Feature #3288 (Resolved): Support interface macros in Outbound NAT rules
There is no automatic aliases for LANs in NAT Outbound. It would very useful when creating rules if there were predef... Dmitriy K
01:58 AM Bug #3287 (Rejected): RRD. No IPv6 data.
There is no IPv6 data reflected in RRD Graphs at all. See attachment. Dmitriy K

10/23/2013

03:19 PM Revision 599d564e: Prepend ipsec_ here as well for better protection
Ermal LUÇI
03:19 PM Revision 37a4fc94: Use the pid of the process for the tmp file also prepend ovpn_ here to make it clear
Ermal LUÇI
03:19 PM Revision c4844c2c: Correct even here the routes from cisco-avpair processing
Ermal LUÇI
03:19 PM Revision 56fbff2e: Use the pid of the process for the tmp file
Ermal LUÇI
03:15 PM Bug #3286: Radvd will not function with IPv6 Prefix delegation other than 64 on WAN
Additional information, if it helps. The LAN and WAN interfaces are as follows:
LAN:em0
WAN:em0_vlan100
Alex Fox
03:12 PM Bug #3286 (Not a Bug): Radvd will not function with IPv6 Prefix delegation other than 64 on WAN
Radvd functions properly when LAN interface is set as tracking to WAN and WAN is set to DHCP6 with a prefix delegatio... Alex Fox
01:58 PM Revision a4e4b560: Make sure pf rule labels never have more than 63 chars. It should fix #3208
Renato Botelho
01:58 PM Revision 9d879385: Make sure pf rule labels never have more than 63 chars. It should fix #3208
Renato Botelho
11:58 AM Revision 5d21bce0: Remove redundant test for OpenVPN resync_needed
Phil Davis
11:58 AM Revision f8804b74: Check for disabled OpenVPN instances in openvpn_resync_if_needed
It is much cleaner if we check first for disabled OpenVPN instances, before diving into all the other checks. Note, t... Phil Davis
11:57 AM Revision 4bf23d32: Fix logic inn detecting if OpenVPN resync needed
Commit https://github.com/pfsense/pfsense/commit/f33dcc5c79c54af7daf91a81cfdd7f489e8cb67c reversed the logic sequence... Phil Davis
11:52 AM Revision a3e232db: Merge pull request #813 from phil-davis/master
Fix logic in detecting if OpenVPN resync needed, fixes #3255 Renato Botelho
09:00 AM Bug #3208: interface name over 17 characters long results in pf errors
Applied in changeset commit:a4e4b5609c8ec28b9e680e8813a110b9cf7aedc7. Renato Botelho
09:00 AM Bug #3208 (Feedback): interface name over 17 characters long results in pf errors
Applied in changeset commit:9d879385019c6640fddf16b639d910e17e67f5d4. Renato Botelho
06:50 AM Bug #3255 (Feedback): OpenVPN client or server on GWG does not failover
Applied in changeset commit:a3e232db7d881d3718884676773c3c4780d7ac7f. Anonymous
06:37 AM Bug #3222: Firewall URL table aliases "Update Freq." has no units
You reported an issue, saying the update freq. unit was missing and it's confuse, this issue was fixed and for this r... Renato Botelho
04:22 AM Bug #3222: Firewall URL table aliases "Update Freq." has no units
Renato Botelho wrote:
> I changed the text to clarify freq. is in days. Abou the other changes you suggested, feel f...
badon _

10/22/2013

10:26 PM pfSense Packages Bug #3285 (Resolved): spamd.log corrupt/truncated
noticed log became truncated or corrupt after a period of time (40 to 90 entries, depending upon entry length)
per...
dasanco dasanco
06:49 PM Revision 10d9290f: Prepend ipsec_ here as well for better protection
Ermal LUÇI
06:46 PM Revision 7b95ffdd: Use the pid of the process for the tmp file also prepend ovpn_ here to make it clear
Ermal LUÇI
06:44 PM Revision 45758be4: Correct even here the routes from cisco-avpair processing
Ermal LUÇI
06:42 PM Revision eb7d43c0: Use the pid of the process for the tmp file
Ermal LUÇI
03:45 PM Bug #3284: dhcpleases cannot identify domains set in DHCP server settings, breaks dnsmasq lookups
I should have added an example of how dhcpleases is invoked:... Steve Kerrison
03:44 PM Bug #3284 (Duplicate): dhcpleases cannot identify domains set in DHCP server settings, breaks dnsmasq lookups
dhcpleases is started with the domain suffix set to the domain of the pfsense installation. DHCP servers on individua... Steve Kerrison
03:45 PM Revision 9f293b1c: Fix cisco-avpair processing, and route processing from avpair replies.
Jim Pingle
03:45 PM Revision a35bae66: Fix cisco-avpair processing, and route processing from avpair replies.
Jim Pingle
02:53 PM Revision aad5eef2: Make the RADIUS settings respect the description of the timeout field. If the timeout value is left blank, use 5 seconds, don't print an error.
Jim Pingle
02:53 PM Revision afdf29d3: Make the RADIUS settings respect the description of the timeout field. If the timeout value is left blank, use 5 seconds, don't print an error.
Jim Pingle
02:42 PM Revision f144493c: Make it more explicit that 'update freq.' unit is days
Renato Botelho
02:40 PM Revision dd8e414e: Remove unused variable
Renato Botelho
02:40 PM Revision 2b6e6fee: Make it more explicit that 'update freq.' unit is days
Renato Botelho
02:39 PM Revision 6ff71781: Remove unused variable
Renato Botelho
01:31 PM Revision edc56e48: Add missing privileges to the list, it fixes #3279
Renato Botelho
01:31 PM Revision c03d4be1: Fix typo and whitespace
Renato Botelho
01:31 PM Revision 9b104557: Fix priv name
Renato Botelho
01:31 PM Revision 69aba859: Add missing privileges to the list, it fixes #3279
Renato Botelho
01:30 PM Revision 93f51e4b: Fix typo and whitespace
Renato Botelho
01:29 PM Revision a8521a63: Fix priv name
Renato Botelho
12:59 PM Revision 6ccefb28: Optimize DHCPv4 lease display online status for static leases. Do not re-parse complete ARP table for each lease, as it can be slow with large ARP tables.
Jim Pingle
12:58 PM Revision 63a1e1ee: Optimize DHCPv4 lease display online status for static leases. Do not re-parse complete ARP table for each lease, as it can be slow with large ARP tables.
Jim Pingle
11:19 AM Bug #3263: status_graph.php IP list is limited to interface subnet
It is code in the "rate" binary that controls which data is actually fed through to the front-end browser code. The "... Phillip Davis
10:47 AM Bug #3263: status_graph.php IP list is limited to interface subnet
Do you mean that if I upgrade that page from the source I can re-enable that feature ? Leonardo Lombardo
10:28 AM Bug #3263: status_graph.php IP list is limited to interface subnet
There was a time during 2.1 development when the whole list of IP addresses with their traffic was sent through to th... Phillip Davis
10:57 AM Bug #3206 (Feedback): Certificate Manager: wrong digest algorithm used when generating a certificate
Renato Botelho
10:37 AM Bug #3255: OpenVPN client or server on GWG does not failover
Is the pull request, or some variation of the code in it, going to get merged some time soon? Phillip Davis
10:27 AM Bug #3222 (Resolved): Firewall URL table aliases "Update Freq." has no units
I changed the text to clarify freq. is in days. Abou the other changes you suggested, feel free to send a pull request. Renato Botelho
08:30 AM Bug #3279: Usermanager: No way to assign permissions to DHCPv6 pages
Applied in changeset commit:edc56e4876ce32e70ca9cf37f0310159e8d59c56. Renato Botelho
08:30 AM Bug #3279 (Feedback): Usermanager: No way to assign permissions to DHCPv6 pages
Applied in changeset commit:69aba8590e46b1704542ecb677f335335e2e9f75. Renato Botelho

10/21/2013

08:09 PM Revision 53523624: Fix #3283, use jQuery to change attributes based on id
Renato Botelho
08:03 PM Revision 521504d1: Set id for select elements created dynamicaly created
Renato Botelho
08:01 PM Revision 6794e407: Fix #3283, use jQuery to change attributes based on id
Renato Botelho
07:58 PM Revision f4100c0e: Set id for select elements created dynamicaly created
Renato Botelho
03:10 PM Bug #3283: Removing an alias entry and then adding a new one results in an entry box with broken formatting
Applied in changeset commit:53523624259f97fb7148d80ae581fa09291e0c55. Renato Botelho
03:00 PM Bug #3283 (Feedback): Removing an alias entry and then adding a new one results in an entry box with broken formatting
Applied in changeset commit:6794e407b0b3b410757c5ac1a58c3264b5a79197. Renato Botelho
12:53 PM Bug #3283 (Resolved): Removing an alias entry and then adding a new one results in an entry box with broken formatting
If you edit an existing alias, click X on a row to remove it, then click + to add a new row, the new row comes up wit... Jim Pingle
02:03 PM Revision dd8722db: Limit CIDR choices for IPv4 on GRE interface, fixes #3277
Renato Botelho
02:02 PM Revision de304598: Limit CIDR choices for IPv4 on GRE interface, fixes #3277
Renato Botelho
12:59 PM Revision e782e8f4: Fix #3259. Save 'packet loss rate' and 'bucket size' for limiter queues
Renato Botelho
12:59 PM Revision dda9c67f: Fix #3259. Save 'packet loss rate' and 'bucket size' for limiter queues
Renato Botelho
11:49 AM Bug #3282 (Resolved): Gateway error "You can not use a IPv4 Gateway Address on a IPv6 only interface." is not accurate
Attempting to add an IPv4 gateway to an interface where no IPv4 address can be located results in the error "You can ... Jim Pingle
11:41 AM Bug #3281 (Resolved): In certain cases, GRE interfaces are missing the "RUNNING" flag at bootup and will not function
Still trying to gather information but this has been directly observed on a customer system.
GRE tunnel configured...
Jim Pingle
11:33 AM Bug #3280 (Resolved): Assigning GRE interface and configuring an IP address removes the IP from the underlying gre interface in the OS
If you assign a GRE interface and set the IPv4 type to Static, and configure an address identical to the address on t... Jim Pingle
10:51 AM Bug #3279 (Resolved): Usermanager: No way to assign permissions to DHCPv6 pages
The pages for "Status: DHCPv6 Leases" and "Services: DHCPv6 Server" do not appear in the list of available pages for ... Graeme Bragg
09:10 AM Bug #3277: GRE Tunnel CIDR drop-down is not limiting choices for IPv4
Applied in changeset commit:de3045982be1dcc509e7e519b63c147ed4e15148. Renato Botelho
09:00 AM Bug #3277 (Feedback): GRE Tunnel CIDR drop-down is not limiting choices for IPv4
Applied in changeset commit:dd8722db1f8da8641eab4831f96fa5b1740c35e9. Renato Botelho
07:31 AM Bug #3277 (Resolved): GRE Tunnel CIDR drop-down is not limiting choices for IPv4
On most screens (including the GIF interface configuration) when an IPv4 address is entered, the CIDR drop-down cuts ... Jim Pingle
08:19 AM Bug #3278 (Rejected): OpenVPN - Unable to contact daemon, service not running?
I have actually seen this issue on previous versions as well. Not too long ago, we switched from ipsec to openvpn, an... Anonymous
08:18 AM Bug #3270 (Resolved): Disabling VLAN interface disables vlan port, enabling the interface doesn't enable the vlan port
The issue was fixed. What you are proposing now is a change of the way pfSense creates the interface. What you alread... Renato Botelho
08:00 AM Bug #3259: firewall_shaper_vinterface.php does NOT save Packet loss rate and Queue size
Applied in changeset commit:e782e8f43f2c09a2f9cf4ab952ee718d71fc9237. Renato Botelho
08:00 AM Bug #3259: firewall_shaper_vinterface.php does NOT save Packet loss rate and Queue size
Applied in changeset commit:dda9c67f7f8fdc3401a0d3c7b885630d128e2fbb. Renato Botelho
01:40 AM Bug #3259: firewall_shaper_vinterface.php does NOT save Packet loss rate and Queue size
Here is a vid cap of the bug
https://www.youtube.com/watch?v=YYjNhLkXjOI
Leonardo Lombardo

10/20/2013

08:11 AM pfSense Packages Bug #3274 (Closed): Unbound 1.4.21_1 install fails
Warren Baker

10/19/2013

05:19 PM Bug #3276 (Rejected): [ATH] Atheros 802.11 PCI card - Support of 802.11n
Hello,
I'm using Pfsense witch an Atheros WIFI card (chip AR9285). I can't use the standard "802.11n " although th...
B Broca
12:41 PM pfSense Packages Bug #3274: Unbound 1.4.21_1 install fails
Warren, thanks a lot for your quick reaction! Your second stab at fixing it worked for me, on both of my appliances b... Uwe Doering
09:20 AM pfSense Packages Bug #3274: Unbound 1.4.21_1 install fails
Applied in changeset commit:c5abc3905311d69e442989712cceb391719f6deb. Warren Baker
09:10 AM pfSense Packages Bug #3274 (Feedback): Unbound 1.4.21_1 install fails
Applied in changeset commit:3c7e7ebe4eeeeca998bb7b323322eb70ccd4f281. Warren Baker
07:31 AM pfSense Packages Bug #3274: Unbound 1.4.21_1 install fails
I attached two files that show what I mean. In the install log you can see that pfSense 2.0.2-RELEASE-amd64, installe... Uwe Doering
06:56 AM pfSense Packages Bug #3274: Unbound 1.4.21_1 install fails
I am able to install 1.4.21_1 but the Unbound binary is still 1.4.20. Justin Irwin
11:22 AM Bug #3273: Unable to delete VLAN
https://redmine.pfsense.org/issues/3275 Todor K
11:13 AM Bug #3273: Unable to delete VLAN
Yes please Renato Botelho
09:00 AM Bug #3273: Unable to delete VLAN
Should I raise separate issue for what I've mentioned in my previous update? Todor K
08:54 AM Bug #3273 (Resolved): Unable to delete VLAN
Renato Botelho
12:09 AM Bug #3273: Unable to delete VLAN
Resolved.
Noticed another issue on the same subject:
1. I have enabled and working VLAN interface.
2. Skipping s...
Todor K
11:21 AM Bug #3275 (Closed): Unable to delete VLAN interface
Having VLAN interface enabled and in running state I go to "Interfaces: Assign network ports" and delete the interfac... Todor K

10/18/2013

08:43 PM Revision ea838318: Fix #3273
- When you disable a interface, it destroys vlan interface from system.
Do not report error when interface doesn't ex...
Renato Botelho
08:41 PM Revision 36b7f215: Fix #3273
- When you disable a interface, it destroys vlan interface from system.
Do not report error when interface doesn't ex...
Renato Botelho
08:41 PM pfSense Packages Bug #3274 (Closed): Unbound 1.4.21_1 install fails
According to control files "pkg_config.8.xml" and "pkg_config.8.xml.amd64" the package version of Unbound has been up... Uwe Doering
08:32 PM Revision 40a8f669: Prevent a possible division by zero. it fixes #3212
Renato Botelho
08:32 PM Revision 488e8c81: Prevent a possible division by zero. it fixes #3212
Renato Botelho
05:26 PM Bug #3252: Diagnostics-Tables inconsistency
You have an email. Christian Borchert
05:18 PM Bug #3252: Diagnostics-Tables inconsistency
May I take a look at your /tmp/rules.debug? Renato Botelho
04:45 PM Bug #3252: Diagnostics-Tables inconsistency
Renato Botelho wrote:
> Do you have any firewall rule using snort_ips or snort_wl_hosts? When the table is not used ...
Christian Borchert
03:14 PM Bug #3252: Diagnostics-Tables inconsistency
Do you have any firewall rule using snort_ips or snort_wl_hosts? When the table is not used by any pf rule, it's not ... Renato Botelho
03:50 PM Bug #3273: Unable to delete VLAN
Applied in changeset commit:ea838318c0837b532b7ddf5dbc6881fd9f27cb1a. Renato Botelho
03:50 PM Bug #3273 (Feedback): Unable to delete VLAN
Applied in changeset commit:36b7f215449c027992858f324917a6ad4611e73b. Renato Botelho
03:32 PM Bug #3273 (Resolved): Unable to delete VLAN
I'm following the steps to create an interface, but int reverse.
1. Disable interface at Interfaces.
2. Delete the ...
Todor K
03:30 PM pfSense Packages Bug #3248 (Feedback): NUT package fails to write config to upsd.users
Applied in changeset commit:d199db0bc5bf99c77ec29d01edb646b7713cc9a8. Renato Botelho
03:30 PM Bug #3212: PHP Warning: Division by zero in /etc/inc/captiveportal.inc on line 729
Applied in changeset commit:40a8f669c2dbdc70a53009b97597b1982a5f5d65. Renato Botelho
03:30 PM Bug #3212 (Feedback): PHP Warning: Division by zero in /etc/inc/captiveportal.inc on line 729
Applied in changeset commit:488e8c81adf1b9c11320ef91de7812a7332b2228. Renato Botelho
03:19 PM Bug #3270: Disabling VLAN interface disables vlan port, enabling the interface doesn't enable the vlan port
OS interfaces are still created and up in ifconfig after the VLAN ports arecreated at Interfaces: VLAN.
Assigning an...
Todor K
08:40 AM Bug #3270: Disabling VLAN interface disables vlan port, enabling the interface doesn't enable the vlan port
Applied in changeset commit:ea1084476533bf9452d9f6f1012787c5c73e3939. Renato Botelho
08:40 AM Bug #3270 (Feedback): Disabling VLAN interface disables vlan port, enabling the interface doesn't enable the vlan port
Applied in changeset commit:bae42aaf13bd680f67a9b4f1a4325b03f80f86b4. Renato Botelho
02:38 PM Revision 6666ef48: Actually there is no reason to set a variable just to use once
Renato Botelho
02:38 PM Revision 06896c6a: Actually there is no reason to set a variable just to use once
Renato Botelho
02:31 PM Revision 2db5f9c2: Fix #3242 and some code cleanup:
- Only explode '/' and set address_subnet when address is a subnet, it
fixes issue reported at #3242
- While I'm he...
Renato Botelho
02:26 PM Revision 4e8a79a8: Fix #3242 and some code cleanup:
- Only explode '/' and set address_subnet when address is a subnet, it
fixes issue reported at #3242
- While I'm he...
Renato Botelho
01:40 PM Revision ea108447: Make sure vlan interface exist when it's being configured, it fixes #3270
Renato Botelho
01:40 PM Revision bae42aaf: Make sure vlan interface exist when it's being configured, it fixes #3270
Renato Botelho
10:37 AM Bug #3271: NAT UDP to port range creates rdr for all interfaces, and no nat rule.
Upon examination, I see that on the nat reflection 'disable' doesn't emit the rdr on the other interfaces, while 'pur... Harry Coin
10:22 AM Bug #3271: NAT UDP to port range creates rdr for all interfaces, and no nat rule.
Chris, check again. When 'pure nat' is specified nevertheless the rdr rule is emitted on the other interfaces.
Harry Coin
10:21 AM Bug #3271: NAT UDP to port range creates rdr for all interfaces, and no nat rule.
And, looking it to it even further, even though 'pure nat' was asked for, rules.debug shows:
# NAT Inbound Redirec...
Harry Coin
09:30 AM Bug #3242: editing alias url table doesnt show full link
Applied in changeset commit:2db5f9c23c7158b61f839d1679bde3ad3f135bdf. Renato Botelho
09:30 AM Bug #3242: editing alias url table doesnt show full link
Applied in changeset commit:4e8a79a83043c0880651d749ac67528615a03d90. Renato Botelho
09:28 AM Bug #3242: editing alias url table doesnt show full link
I got it, the problem only happens because your URL doesn't have protocol. I pushed a fix. Renato Botelho
06:43 AM Bug #3242: editing alias url table doesnt show full link
sent Bipin Chandra
06:31 AM Bug #3242: editing alias url table doesnt show full link
Bipin Chandra wrote:
> shall i send u my config file if that may show something?
yes please, send it to renato@pf...
Renato Botelho
12:15 AM Bug #3242: editing alias url table doesnt show full link
shall i send u my config file if that may show something? Bipin Chandra
05:58 AM pfSense Packages Feature #3272 (Resolved): pfBlocker: Specific ports to block.
It would be great if there was a possibility to specify port/port range which I want to block not all ports.
For e...
Dmitriy K

10/17/2013

11:08 PM Bug #3271 (Rejected): NAT UDP to port range creates rdr for all interfaces, and no nat rule.
that's because you have reflection on, that's how reflection works.
Chris Buechler
12:28 PM Bug #3271: NAT UDP to port range creates rdr for all interfaces, and no nat rule.
Looking into it further, I notice that the interface specified on the 'port forward' gui is pretty much ignored. The... Harry Coin
10:29 AM Bug #3271: NAT UDP to port range creates rdr for all interfaces, and no nat rule.
The same happens when an individual udp port is specified and not a range. rdr rules are created for every interface... Harry Coin
04:32 PM Bug #3259: firewall_shaper_vinterface.php does NOT save Packet loss rate and Queue size
I could not replicate this on any of my test systems Renato Botelho
04:31 PM Bug #3242: editing alias url table doesnt show full link
I couldn't replicate the issue on any of my test systems. Renato Botelho
02:11 PM Bug #3180 (Closed): SMTP notifications not work with 587 port and SSL/TLS
Warren Baker
03:50 AM Bug #3180: SMTP notifications not work with 587 port and SSL/TLS
Applied in changeset commit:dd33fd4e8b3fb66f49ae8337823264ab0d13504c. Warren Baker
02:05 PM Bug #3269 (Rejected): Problem System: Certificate Authority Manager
MD5 is harmful and should be avoided. Renato Botelho
04:10 AM Bug #3269: Problem System: Certificate Authority Manager
My comunication is only an advice. Insert an option in pfSense don't mean with pfSense will become insicure, because ... Luca Morri
03:55 AM Bug #3269: Problem System: Certificate Authority Manager
Until?! :-O If they've not noticed they are using insecure crap in 5 years, you'd better find a viable vendor (and di... Doktor Notor
08:43 AM Revision dd33fd4e: Split SSL/TLS into separate checkboxes so that plaintext connections can be made secured by using STARTTLS. Support for SMTPS connections should probably be done away with in future. Fixes #3180
Warren Baker

10/16/2013

08:58 PM Bug #3271 (Rejected): NAT UDP to port range creates rdr for all interfaces, and no nat rule.
The nat rule asking for a port forward on one interface (em0/WAN):
INET1MC UDP * * 97.64.213.58 15000 - 15400 ...
Harry Coin
12:44 PM Bug #3270 (Resolved): Disabling VLAN interface disables vlan port, enabling the interface doesn't enable the vlan port
Describing the steps to reproduce the effect I've noticed:
1. Interfaces: VLAN > Create VLAN on interface
2. Chec...
Todor K
12:18 PM Revision 78b0e51e: Fix #3268 - avoid pf table names conflict:
. Create a list of reserved table names for the hardcoded ones
. Use this list to validate aliases and load balance p...
Renato Botelho
12:18 PM Revision c48fdaa4: Fix #3268 - avoid pf table names conflict:
. Create a list of reserved table names for the hardcoded ones
. Use this list to validate aliases and load balance p...
Renato Botelho
11:48 AM Bug #3269: Problem System: Certificate Authority Manager
Yes, MD5 is insicure, but untill yealink don't update your ip-phone for SHA support is impossible use this phone with... Luca Morri
11:36 AM Bug #3269: Problem System: Certificate Authority Manager
Offering stuff known to be insecure since 2008 at least on not an option. Ditch the crappy HW. http://www.win.tue.nl/... Doktor Notor
05:13 AM Bug #3269 (Rejected): Problem System: Certificate Authority Manager
From pfSense 2.0.1 to 2.1 when you create a certificate, (in pfSense 2.1) you must select an algorithm (Sha1 , sha256... Luca Morri
07:20 AM Bug #3268: Load balancer needs input validation to prohibit reserved table names
Applied in changeset commit:78b0e51e9a135804bfea307ea30c25fe16473da1. Renato Botelho
07:20 AM Bug #3268 (Feedback): Load balancer needs input validation to prohibit reserved table names
Applied in changeset commit:c48fdaa40effe9edc8bb4fb933e124a93cb24a0d. Renato Botelho
05:16 AM Bug #742: apinger doesn't recover opt wan when connection returns.
i have a similar issue but in some ways its different, my isp sometimes blocks all traffic to internet and only gives... Bipin Chandra
02:53 AM Bug #742: apinger doesn't recover opt wan when connection returns.
Same issue for us on pfsense 2.1 Release:
if opt3 goes down, it doesn't recover and the "last check" time on /status...
Lionel Lejeune

10/15/2013

10:49 PM Bug #3257: IP Alias on CARP IP doesn't work where IP alias above CARP parent in list
*How to reproduce this:*
I ran into this bug when I modified a setup pulled in from PFSense 2.0.x that looked like t...
R. S.
10:06 PM pfSense Packages Bug #999: vhosts does not show up as started
I can confirm this is still an issue with the package. It seems to work outside the fact there is no way to know if ... Robert Middleswarth
08:09 PM Bug #3045: NTPD crash / doesn't come up
also line
driftfile /var/db/ntpd.drift
seems to be involved.
those really seems to be directory permission is...
Fabio Giudici
07:46 PM Bug #3045: NTPD crash / doesn't come up
Problem seems to be related to line:
statsdir /var/log/ntp
in /var/etc/ntp.conf.
After commenting this line, n...
Fabio Giudici
06:52 PM Bug #3045: NTPD crash / doesn't come up
Issue just presented to me as well, on both members of cluster (pfSense 2.1 stable), Server SunFire X3-2...
I can at...
Fabio Giudici
01:36 PM Bug #3045: NTPD crash / doesn't come up
It is also incredibly inconsistent. If I wait an hour and try to start, perhaps ntpd will start without issue and run. Steve Jacobs
01:36 PM Bug #3045: NTPD crash / doesn't come up
Seeing this exact same issue on 2.1 Release i386 and amd64. I have attached my ntpd.core from an i386 install here. T... Steve Jacobs
04:22 PM Bug #3268 (Resolved): Load balancer needs input validation to prohibit reserved table names
Reserved table names aren't prohibited from being entered as a table name in load_balancer_pool_edit.php. At least <s... Chris Buechler
01:30 PM Revision c858a035: Merge pull request #817 from stephanel/master
Added OVH DynHOST in dynamic DNS services Renato Botelho
01:10 PM Revision 09dfec24: Merge pull request #819 from CharlieMarshall/responsive
make dashboard responsive (theme pfsense_ng_fs) Renato Botelho
07:14 AM Bug #3255 (New): OpenVPN client or server on GWG does not failover
Reopen it since pull request was not merged yet Renato Botelho
02:25 AM Bug #3255 (Resolved): OpenVPN client or server on GWG does not failover
thanks! Chris Buechler

10/14/2013

07:33 PM Revision b18a99d3: some tidying up
Charlie Marshall
07:27 PM Revision e5e0fd39: make dashboard responsive
Charlie Marshall
06:54 PM Revision 4a913451: Add Captive Portal Zones privileges definition. Fix #3216
Renato Botelho
06:53 PM Revision 8deaf333: Add Captive Portal Zones privileges definition. Fix #3216
Renato Botelho
02:00 PM Bug #3216: PFSense 2.1 - Captive Portal Zone - is not avaible in user effective privileges
Applied in changeset commit:4a913451bba01ac65dcaedf31e24fcd938bbe0a2. Renato Botelho
02:00 PM Bug #3216 (Feedback): PFSense 2.1 - Captive Portal Zone - is not avaible in user effective privileges
Applied in changeset commit:8deaf333f25dc18d461d7f2b0e61b1b2c1a64ace. Renato Botelho
01:28 PM Bug #3256: dnsmasq replying with incorrect address
Is the issue still happening? Renato Botelho

10/13/2013

08:01 PM Bug #3249: DHCP Server/DHCP Relay both say the other is started
I found that config from before. I've attached it. Hans Kokx
03:30 PM Bug #3267 (Closed): Can't skip wizard by clicking the pfSense logo, can't finish it normally either
I recently set up 3 new pfSense installs (all on 2.1 final), and on all 3 I had a problem with the Setup wizard - bot... Jernej Simončič
03:10 PM pfSense Packages Bug #3266: Synchronize OpenVPN + Site-Site = Fail
And in the category of 'somewhat evil hack that works':
If you have a master/backup pfsense setup AND
you have mo...
Harry Coin
02:29 PM pfSense Packages Bug #3266: Synchronize OpenVPN + Site-Site = Fail
Jim,
Doing as you suggest does solve the problem for the site-site server side in a Master/Backup HA situation wi...
Harry Coin
01:11 PM pfSense Packages Bug #3266: Synchronize OpenVPN + Site-Site = Fail
Jim, welcome news indeed. Please then change
"Interface : Whichever interface you want the server to use for incom...
Harry Coin
01:02 PM pfSense Packages Bug #3266 (Rejected): Synchronize OpenVPN + Site-Site = Fail
This works fine on 2.0.2+ if you select a CARP VIP as the "Interface" for the VPN, the system automatically stops the... Jim Pingle
12:11 PM pfSense Packages Bug #3266: Synchronize OpenVPN + Site-Site = Fail
Update: Should have written: the 'Disable this server' and 'Disable this client' button should be forced 'ON' when ... Harry Coin
12:08 PM pfSense Packages Bug #3266 (Rejected): Synchronize OpenVPN + Site-Site = Fail
The 'Synchronize OpenVPN' HA checkbox prevents site-site OpenVPN from working in primary/backup setups. Two enabled ... Harry Coin
 

Also available in: Atom