Project

General

Profile

Activity

From 10/13/2013 to 11/11/2013

11/11/2013

06:57 PM Feature #1189: Gateway: Multiple monitor ips
Are advanced parameters for every single monitoring IP actually needed?
In my opinion there is no need for it, as no...
Florian Schaeffler
06:36 PM Bug #3134: Apinger is not updating monitor IP until it is manually restarted
I still have got a similar behavior with the version "2.1-RELEASE (i386) built on Wed Sep 11 18:16:44 EDT 2013 FreeBS... Florian Schaeffler
05:07 PM Bug #3311 (Closed): After enabling save password permission racoon die with (core dumped)
if you can find a way to reliably replicate, please report back. I'll close for now, haven't seen that happen and doe... Chris Buechler
10:23 AM Bug #3311: After enabling save password permission racoon die with (core dumped)
deleted ipsec config, configured once more.. no more problems. sorry. strange thing.
cant find - how to delete my e...
Koichi Tanaka
09:41 AM Bug #3311 (Closed): After enabling save password permission racoon die with (core dumped)
Hi all.
I'd configured IPSec, all was ok. But after enabling save password permission racoon die with (core dumped...
Koichi Tanaka
05:05 PM Bug #3301 (Closed): "Reverse Resolve with DNS" popup poorly formatted
Chris Buechler
05:04 PM Bug #3308 (Feedback): route-to/reply-to not updated when PPP gateway IP changes
not enough info. check Status>Gateways, and the route-to lines in /tmp/rules.debug, guessing one of your gateways is ... Chris Buechler
04:21 PM Bug #3315 (Rejected): SNMP MIB-2 Strange TCP Stats
SNMP TCP Values wrong or missing
PfSense Says:
-----SNMP query started-----
1: tcpRtoAlgorithm.0 vanj(4)
2: tcpRt...
Pr0 vieH
01:38 PM Bug #3314 (Resolved): Traffic graph shows 2X the actual traffic on VLAN interfaces.
2.1-RELEASE (i386)
built on Wed Sep 11 18:16:50 EDT 2013
FreeBSD 8.3-RELEASE-p11
Configuration
em0 - wan inte...
Jean Cyr
12:10 PM Bug #3313: rc.newwanip should bail on diabled interfaces
Applied in changeset commit:58ee84b4b2f9daba87e44abf663026c6266a7cd8. Jim Pingle
12:10 PM Bug #3313 (Feedback): rc.newwanip should bail on diabled interfaces
Applied in changeset commit:63f7282808458e404feb9c4fdfa11ced3f1bfe45. Jim Pingle
11:58 AM Bug #3313 (Resolved): rc.newwanip should bail on diabled interfaces
If an interface is disabled, rc.newwanip should not attempt to (re)configure the interface when its link goes down/up... Jim Pingle
10:53 AM Bug #3312 (New): Gateway on IPsec rules is not functional in pf
When selecting a gateway on an IPsec tab rule, the GUI looks correct, the generated pf rule looks correct in /tmp/rul... Jim Pingle
07:53 AM Bug #3298 (Resolved): Package type tabs on 2.2 should have a default 'all' tab
Looks good to me, thanks! Jim Pingle
07:00 AM Bug #3298 (Feedback): Package type tabs on 2.2 should have a default 'all' tab
Applied in changeset commit:f70121be366f41c6099e864c1fbebbd96aaae3cf. Renato Botelho
12:28 AM Bug #3287: RRD. No IPv6 data.
Small update.
I have noticed one interesting thing.
My configuration:
1. WAN0 - PPPoE + 6to4 Tunnel;
2. WA...
Dmitriy K

11/09/2013

06:59 AM Bug #3310 (Rejected): There were error(s) loading the rules: pfctl: DIOCADDRULE: Device busy
I get this error message "php: rc.filter_configure_sync: New alert found: There were error(s) loading the rules: pfct... Atıf CEYLAN

11/08/2013

04:56 AM Bug #3309: wrong routing on multidsl+multiopenvpn
Take a look to http://forum.pfsense.org/index.php/topic,66776.45.html replies #58 and #59 Federico Viel
04:22 AM Bug #3309: wrong routing on multidsl+multiopenvpn
Further digging found out the following:
pfSense code does not list all vpn_networks in <vpn_networks> variable as...
Federico Viel
03:49 AM Feature #1189: Gateway: Multiple monitor ips
I would also like this feature, so I have had a think about how it can be done. The apinger target is just a single I... Phillip Davis

11/07/2013

09:32 PM Feature #1189: Gateway: Multiple monitor ips
Same here. I actually would love to see this feature, as it gives way more stability to the whole failover-concept. Florian Schaeffler
08:42 PM Bug #3307: rc.update_bogons.sh doesn't filter out all private address space
Not just this. See also https://redmine.pfsense.org/issues/3214 Doktor Notor
06:49 AM Bug #3307 (Closed): rc.update_bogons.sh doesn't filter out all private address space
line 103 of /etc/rc.update_bogons.sh currently only egrep's out:
192.168.0.0/16
172.16.0.0/12
10.0.0.0/8
While ...
Gavin J
01:13 PM Bug #3223: pfr_unroute_kentry: delete failed and freeze
Do you have large tables in your setup? Ermal Luçi
12:30 PM Bug #3301 (Feedback): "Reverse Resolve with DNS" popup poorly formatted
Applied in changeset commit:e30dd11d164895307bd56fe043e4770517872fd5. Ermal Luçi
03:42 AM Bug #3301: "Reverse Resolve with DNS" popup poorly formatted
This can be closed, pull request #847 was merged to master. Robert Nelson
01:31 AM Bug #3301: "Reverse Resolve with DNS" popup poorly formatted
Thanks for letting me know, I submitted the pull request. Robert Nelson
10:09 AM Bug #3176: Hosts file corrupted when using "Register DHCP leases in DNS forwarder"
I've experienced this problem as well in 2.1-RELEASE (i386). First I got the non-ascii characters like Rene Klomp. ... Jason Crowley
09:14 AM Bug #3309 (Resolved): wrong routing on multidsl+multiopenvpn
In a multidsl enviroment with 1Server and 2 (or more) site2site OpenVPN clients the 2nd one does not route correctly.... Federico Viel
09:11 AM Bug #3308 (Closed): route-to/reply-to not updated when PPP gateway IP changes
I have two WAN interfaces and a firewall rule to make the secondary WAN the gateway for some of the hosts. A screens... Oz Solomon
01:38 AM Bug #3305: RRD graphs - the graphs legends use original interface name (OPT1) instead of the renamed version (LAN2)
Affected version: 2.1
Affected architecture: i386
Pavel Pilat
01:05 AM Bug #3305 (Resolved): RRD graphs - the graphs legends use original interface name (OPT1) instead of the renamed version (LAN2)
The legends under RRD graphs use an interface's name which was originally assigned to it at the time of creation.
I...
Pavel Pilat
01:37 AM Bug #3306 (Resolved): a notification is not sent when a gateway is down
I have two WAN setup - the default WAN and the other one. Every WAN has a different gateway assigned. I use "Allow de... Pavel Pilat

11/06/2013

10:40 PM Bug #3299 (Rejected): Missing storage driver
We include all drivers available in the base OS version being used. That's some hardware-specific regression that we ... Chris Buechler
08:06 AM Bug #3302 (Closed): unbound - could not open autotrust file for writing
Warren Baker
02:52 AM Bug #3302: unbound - could not open autotrust file for writing
Error gone after package reinstall. Thanks! Doktor Notor
07:17 AM Bug #3301: "Reverse Resolve with DNS" popup poorly formatted
It is easy for the developers if you make changes in GitHub and submit a pull request. Phillip Davis
05:05 AM pfSense Packages Feature #3303 (Resolved): Allow quagga ospf stub, not so stub and totally stub areas
Dear PFSense Team.
We are integrating PFSense in our university here in Campinas - São Paulo - Brazil. At the same...
Andre Luiz Paiz

11/05/2013

06:19 PM Feature #214: Simultaneuous Serial/Video Console
In my scenario, I want VGA and serial, but I want VGA to be primary. Otherwise much of the post-init boot messages ar... Matthew Trent

11/04/2013

01:23 PM Bug #3247: ipsec mobile clients login banner cannot contain certain chars
Hello,
Changeset babc58d30843cb388559178b60aecd7a9a64bcca works for me, banner can contain accent characters.
I n...
Orsiris de Jong
07:30 AM Bug #3302 (Feedback): unbound - could not open autotrust file for writing
Applied in changeset pfsense-packages:commit:a5cb531eed39db304e7325711004ffa017d762db. Warren Baker
06:55 AM Bug #3302 (Closed): unbound - could not open autotrust file for writing
... Doktor Notor

11/03/2013

07:09 PM Bug #3301 (Closed): "Reverse Resolve with DNS" popup poorly formatted
The dialog that is displayed from the firewall log with the results of the reverse DNS lookup is poorly formatted.
...
Robert Nelson
04:32 PM Feature #1811: Monitor PPP for connections stuck in "initial" state
Confirming this bug still exists in 2.1-RELEASE
Nov 2 13:59:47 ppp: [wan_link0] LCP: rec'd Terminate Request #5 (...
Noah O'Donoghue

11/02/2013

05:50 AM Bug #3294: Creating users/groups silently fails on read only filesystem
Applied in changeset commit:03e156efac94129f4b152e3561d39279e153aa7a. Renato Botelho
05:50 AM Bug #3294: Creating users/groups silently fails on read only filesystem
Applied in changeset commit:23b5b16ac6b4107b5321c4e06dfc2b56fa565f20. Renato Botelho

11/01/2013

05:34 PM Bug #3294: Creating users/groups silently fails on read only filesystem
When I reported this I was probably more expecting some error handling to be added so it actually failed properly and... Phil Sweeney
04:38 PM Bug #3294: Creating users/groups silently fails on read only filesystem
The commits are wrong in my opinion!
Why should backend code have to deal with mounting the disk.
I sept a lot of...
Ermal Luçi
08:00 AM Bug #3294: Creating users/groups silently fails on read only filesystem
Applied in changeset commit:fa757d146c85261b7e90d226c1aecd38089d7e20. Renato Botelho
08:00 AM Bug #3294 (Feedback): Creating users/groups silently fails on read only filesystem
Applied in changeset commit:b1e5a286bb47d7e4a5b3d589cc27b557b3b13c41. Renato Botelho
02:21 PM Bug #3252 (Rejected): Diagnostics-Tables inconsistency
It's working as expected Renato Botelho
01:33 PM Bug #3252: Diagnostics-Tables inconsistency
It's because snort_fqdns is created using persist Renato Botelho
12:40 PM pfSense Packages Bug #3292 (Feedback): Syslog-ng accidentally gzip's SSL key file + fix
Applied in changeset commit:c030cf2781c7bbef197db6f07facef35b6856c8e. Renato Botelho
09:50 AM Bug #3300: relayd does not support a fall back pool for DNS, and will break if one is configured
Applied in changeset commit:19b102161253ac33bdf26010e6e110d6e71cc06c. Jim Pingle
09:50 AM Bug #3300 (Feedback): relayd does not support a fall back pool for DNS, and will break if one is configured
Applied in changeset commit:c5d4d97bab489c5884331e0f36930a4e7aaa78c8. Jim Pingle
09:26 AM Bug #3300 (Resolved): relayd does not support a fall back pool for DNS, and will break if one is configured
relayd does not support a fall back pool for DNS, and will break if one is configured. So we must at least note that ... Jim Pingle
09:30 AM Bug #3293: Using timezone Europe/Oslo causes firewall/system logs to be displayed in UTC
Applied in changeset commit:add913b1437bf56b61a4ae8739e7a426b8267aff. Renato Botelho
09:30 AM Bug #3293 (Feedback): Using timezone Europe/Oslo causes firewall/system logs to be displayed in UTC
Applied in changeset commit:870608984c1d51850a8db5e0a3ab04d2986973d6. Renato Botelho
09:20 AM Bug #3293: Using timezone Europe/Oslo causes firewall/system logs to be displayed in UTC
system_timezone_configure() configure /etc/localtime to empty when the selected timezone is a symlink. Will push a fix Renato Botelho

10/31/2013

05:29 PM Bug #3299: Missing storage driver
Ah, not that you think the drive is there, what's he talking about: The logs are from the 2.0.3 version. Oliver Loch
05:28 PM Bug #3299 (Rejected): Missing storage driver
Hi,
just upgpraded today from 2.0.3 to the 2.1 version and after 20 minutes of waiting I connected a monitor to se...
Oliver Loch
02:29 PM Feature #2295 (Feedback): Allow multiple OpenVPN compression settings (disable, yes, no, adaptive)
This is now implemented in commit:edba19827078642a765df3a49e60ab92968cacc6 and commit:9ed529906cf9dc2a571df550a813855... Jim Pingle
12:45 PM Bug #3298 (Resolved): Package type tabs on 2.2 should have a default 'all' tab
On master/2.2 the packages are split into multiple tabs, and it defaults to the Services tab. This should instead hav... Jim Pingle
11:59 AM Bug #3286: Radvd will not function with IPv6 Prefix delegation other than 64 on WAN
Could you also share dhcp6c conf? Renato Botelho

10/30/2013

03:44 PM Bug #3297 (Closed): IPsec log parsing code does not skip disabled Phase 1 entries
The IPsec log parsing code does not skip disabled Phase 1 entries, however, that may be OK but needs consideration.
...
Jim Pingle
03:29 AM Bug #3280 (New): Assigning GRE interface and configuring an IP address removes the IP from the underlying gre interface in the OS
Renato Botelho

10/29/2013

03:30 PM Bug #3280: Assigning GRE interface and configuring an IP address removes the IP from the underlying gre interface in the OS
Applied in changeset commit:204bec28359f7ef8bc0dee97b909839a0566daf8. Renato Botelho
03:30 PM Bug #3280: Assigning GRE interface and configuring an IP address removes the IP from the underlying gre interface in the OS
Applied in changeset commit:34e178135b252d6664d1ba47dc877e099033ca7f. Renato Botelho
04:10 AM Bug #3280: Assigning GRE interface and configuring an IP address removes the IP from the underlying gre interface in the OS
Applied in changeset commit:6721d6d0443bd7e697bd6ca33f470c801608df7e. Renato Botelho
04:10 AM Bug #3280 (Feedback): Assigning GRE interface and configuring an IP address removes the IP from the underlying gre interface in the OS
Applied in changeset commit:bb6291e0204ffe2828fe9c9425bdae9c8541fe54. Renato Botelho

10/28/2013

11:20 AM Bug #3291: Add new gateway allow name duplication
Applied in changeset commit:1dc0e7f4f16b57ecca40157c5c8f76e9a60a914e. Renato Botelho
11:20 AM Bug #3291 (Feedback): Add new gateway allow name duplication
Applied in changeset commit:aec89bd3c2d0f9b464e0d7cc6d189c49966d6f0b. Renato Botelho
03:48 AM Bug #3295 (Rejected): /diag_authentication.php throws error
Duplicate of #3234 Renato Botelho

10/27/2013

03:17 PM Bug #3295: /diag_authentication.php throws error
Suggested fix:
wrap getNasIP() in if (!function_exists('getNasIP')) {} in both /usr/local/captiveportal/radius_authe...
Cool Fire
03:07 PM Bug #3295 (Rejected): /diag_authentication.php throws error
Trying to load this page results in the following error:
Fatal error: Cannot redeclare getNasIP() (previously decl...
Cool Fire

10/26/2013

07:49 AM Bug #3294 (Resolved): Creating users/groups silently fails on read only filesystem
Was setting up VPN and following various guides, which included the creation of a group and a user.
I did this, an...
Phil Sweeney

10/25/2013

09:42 PM Bug #3293 (Resolved): Using timezone Europe/Oslo causes firewall/system logs to be displayed in UTC
When configuring pfSense with timezone 'Europe/Oslo', the time shows correctly in the dashboard. The firewall/system ... Andreas Wintervold
04:24 PM Bug #3290: IPV6 conectivity not restored after cablemodem reset
Steps to reproduce
- Establish IPV6 connectivity on Comcast network.
- Cycle cablemodem power.
- Observe that IP...
Jean Cyr
04:10 PM pfSense Packages Bug #3292 (Resolved): Syslog-ng accidentally gzip's SSL key file + fix
First off, pfSense is awesome, you folks rock.
Second off, there's a hilariously annoying bug with syslog-ng when ...
Zaphod Beeblebrox
01:25 PM Bug #3291 (Resolved): Add new gateway allow name duplication
When adding a new gateway, it doesn't check name collision with disabled interfaces and in the end you have 2 gateway... Renato Botelho
07:40 AM Bug #3282: Gateway error "You can not use a IPv4 Gateway Address on a IPv6 only interface." is not accurate
Applied in changeset commit:bf75550387f2d76a0300253a322f42d6ecdf6460. Renato Botelho
07:40 AM Bug #3282 (Feedback): Gateway error "You can not use a IPv4 Gateway Address on a IPv6 only interface." is not accurate
Applied in changeset commit:f44ac2e9734396efa0653fbed255c28e074ae8dd. Renato Botelho
05:43 AM Bug #3249: DHCP Server/DHCP Relay both say the other is started
Scott Smith wrote:
> i too have found this same problem. My config has been workign for years and I have upgraded to...
Renato Botelho
01:27 AM Bug #3235: Could not open shared memory for read 1000
Tested on a stock 2.1-RELEASE test system. Set Permanent Read/Write, rebooted.
Diagnostics->NanoBSD shows reference ...
Phillip Davis

10/24/2013

10:48 PM Bug #3290: IPV6 conectivity not restored after cablemodem reset
This is a significant issue since Comcast is aggressively rolling out IPV6 support, initiating frequent late-night mo... Jean Cyr
10:41 PM Bug #3290 (Duplicate): IPV6 conectivity not restored after cablemodem reset
Cablemodem reset causes complete loss of IPV6 conectivity. Jean Cyr
09:52 PM Bug #3249: DHCP Server/DHCP Relay both say the other is started
i too have found this same problem. My config has been workign for years and I have upgraded to
2.1-RELEASE (i386...
Scott Smith
03:54 PM Bug #3286: Radvd will not function with IPv6 Prefix delegation other than 64 on WAN
I am too busy to pull the files from a completely stock setup but I was able to pull them from a clean 2.1 install wi... Alex Fox
01:02 PM Bug #3286: Radvd will not function with IPv6 Prefix delegation other than 64 on WAN
Could you share relevant part of config.xml and radvd.conf? Renato Botelho
03:40 PM Bug #355: syslog should not bind on *
Applied in changeset commit:53c5407e646028a003b2765a87dd3316b21a9497. Jim Pingle
03:40 PM Bug #355 (Feedback): syslog should not bind on *
Applied in changeset commit:cbe12b8de3fa374e535d4478ab84a4a2c5f6e725. Jim Pingle
03:10 PM Bug #3235: Could not open shared memory for read 1000
Applied in changeset commit:b8250344f5f02851259ffde6fed8da40ddeaf0af. Renato Botelho
03:10 PM Bug #3235 (Feedback): Could not open shared memory for read 1000
Applied in changeset commit:785158c6c48e4e1842791d3b33d9b0395332991d. Renato Botelho
12:17 PM Feature #3289 (Needs Patch): VPN tunnels configuration displayed in pages
Well, if you have few hundred tunnels the web page gets too long and kind a hard do scroll or use at all on slower PC... Todor K
06:31 AM Bug #3255: OpenVPN client or server on GWG does not failover
My feedback above applies - using the version of rc.openvpn merged into the 2.1 branch. It is a good thing IMHO.
Ign...
Phillip Davis
06:27 AM Bug #3255 (Feedback): OpenVPN client or server on GWG does not failover
didn't realize the merge was pulled, last update I noticed was Phil's 2 days ago, back to Feedback since it's merged. Chris Buechler
04:49 AM Bug #3255 (New): OpenVPN client or server on GWG does not failover
Chris Buechler
03:55 AM Bug #3255: OpenVPN client or server on GWG does not failover
Tested with the 2.1 branch version of rc.openvpn
It successfully writes new servern.conf and clientn.conf files for ...
Phillip Davis
04:55 AM Bug #3278 (Rejected): OpenVPN - Unable to contact daemon, service not running?
config or network issue, not a bug. Chris Buechler
02:11 AM Feature #3288: Support interface macros in Outbound NAT rules
Forgot to attach a screenshot (>.<)' Dmitriy K
02:06 AM Feature #3288 (Resolved): Support interface macros in Outbound NAT rules
There is no automatic aliases for LANs in NAT Outbound. It would very useful when creating rules if there were predef... Dmitriy K
01:58 AM Bug #3287 (Rejected): RRD. No IPv6 data.
There is no IPv6 data reflected in RRD Graphs at all. See attachment. Dmitriy K

10/23/2013

03:15 PM Bug #3286: Radvd will not function with IPv6 Prefix delegation other than 64 on WAN
Additional information, if it helps. The LAN and WAN interfaces are as follows:
LAN:em0
WAN:em0_vlan100
Alex Fox
03:12 PM Bug #3286 (Not a Bug): Radvd will not function with IPv6 Prefix delegation other than 64 on WAN
Radvd functions properly when LAN interface is set as tracking to WAN and WAN is set to DHCP6 with a prefix delegatio... Alex Fox
09:00 AM Bug #3208: interface name over 17 characters long results in pf errors
Applied in changeset commit:a4e4b5609c8ec28b9e680e8813a110b9cf7aedc7. Renato Botelho
09:00 AM Bug #3208 (Feedback): interface name over 17 characters long results in pf errors
Applied in changeset commit:9d879385019c6640fddf16b639d910e17e67f5d4. Renato Botelho
06:50 AM Bug #3255 (Feedback): OpenVPN client or server on GWG does not failover
Applied in changeset commit:a3e232db7d881d3718884676773c3c4780d7ac7f. Anonymous
06:37 AM Bug #3222: Firewall URL table aliases "Update Freq." has no units
You reported an issue, saying the update freq. unit was missing and it's confuse, this issue was fixed and for this r... Renato Botelho
04:22 AM Bug #3222: Firewall URL table aliases "Update Freq." has no units
Renato Botelho wrote:
> I changed the text to clarify freq. is in days. Abou the other changes you suggested, feel f...
badon _

10/22/2013

10:26 PM pfSense Packages Bug #3285 (Resolved): spamd.log corrupt/truncated
noticed log became truncated or corrupt after a period of time (40 to 90 entries, depending upon entry length)
per...
dasanco dasanco
03:45 PM Bug #3284: dhcpleases cannot identify domains set in DHCP server settings, breaks dnsmasq lookups
I should have added an example of how dhcpleases is invoked:... Steve Kerrison
03:44 PM Bug #3284 (Duplicate): dhcpleases cannot identify domains set in DHCP server settings, breaks dnsmasq lookups
dhcpleases is started with the domain suffix set to the domain of the pfsense installation. DHCP servers on individua... Steve Kerrison
11:19 AM Bug #3263: status_graph.php IP list is limited to interface subnet
It is code in the "rate" binary that controls which data is actually fed through to the front-end browser code. The "... Phillip Davis
10:47 AM Bug #3263: status_graph.php IP list is limited to interface subnet
Do you mean that if I upgrade that page from the source I can re-enable that feature ? Leonardo Lombardo
10:28 AM Bug #3263: status_graph.php IP list is limited to interface subnet
There was a time during 2.1 development when the whole list of IP addresses with their traffic was sent through to th... Phillip Davis
10:57 AM Bug #3206 (Feedback): Certificate Manager: wrong digest algorithm used when generating a certificate
Renato Botelho
10:37 AM Bug #3255: OpenVPN client or server on GWG does not failover
Is the pull request, or some variation of the code in it, going to get merged some time soon? Phillip Davis
10:27 AM Bug #3222 (Resolved): Firewall URL table aliases "Update Freq." has no units
I changed the text to clarify freq. is in days. Abou the other changes you suggested, feel free to send a pull request. Renato Botelho
08:30 AM Bug #3279: Usermanager: No way to assign permissions to DHCPv6 pages
Applied in changeset commit:edc56e4876ce32e70ca9cf37f0310159e8d59c56. Renato Botelho
08:30 AM Bug #3279 (Feedback): Usermanager: No way to assign permissions to DHCPv6 pages
Applied in changeset commit:69aba8590e46b1704542ecb677f335335e2e9f75. Renato Botelho

10/21/2013

03:10 PM Bug #3283: Removing an alias entry and then adding a new one results in an entry box with broken formatting
Applied in changeset commit:53523624259f97fb7148d80ae581fa09291e0c55. Renato Botelho
03:00 PM Bug #3283 (Feedback): Removing an alias entry and then adding a new one results in an entry box with broken formatting
Applied in changeset commit:6794e407b0b3b410757c5ac1a58c3264b5a79197. Renato Botelho
12:53 PM Bug #3283 (Resolved): Removing an alias entry and then adding a new one results in an entry box with broken formatting
If you edit an existing alias, click X on a row to remove it, then click + to add a new row, the new row comes up wit... Jim Pingle
11:49 AM Bug #3282 (Resolved): Gateway error "You can not use a IPv4 Gateway Address on a IPv6 only interface." is not accurate
Attempting to add an IPv4 gateway to an interface where no IPv4 address can be located results in the error "You can ... Jim Pingle
11:41 AM Bug #3281 (Resolved): In certain cases, GRE interfaces are missing the "RUNNING" flag at bootup and will not function
Still trying to gather information but this has been directly observed on a customer system.
GRE tunnel configured...
Jim Pingle
11:33 AM Bug #3280 (Resolved): Assigning GRE interface and configuring an IP address removes the IP from the underlying gre interface in the OS
If you assign a GRE interface and set the IPv4 type to Static, and configure an address identical to the address on t... Jim Pingle
10:51 AM Bug #3279 (Resolved): Usermanager: No way to assign permissions to DHCPv6 pages
The pages for "Status: DHCPv6 Leases" and "Services: DHCPv6 Server" do not appear in the list of available pages for ... Graeme Bragg
09:10 AM Bug #3277: GRE Tunnel CIDR drop-down is not limiting choices for IPv4
Applied in changeset commit:de3045982be1dcc509e7e519b63c147ed4e15148. Renato Botelho
09:00 AM Bug #3277 (Feedback): GRE Tunnel CIDR drop-down is not limiting choices for IPv4
Applied in changeset commit:dd8722db1f8da8641eab4831f96fa5b1740c35e9. Renato Botelho
07:31 AM Bug #3277 (Resolved): GRE Tunnel CIDR drop-down is not limiting choices for IPv4
On most screens (including the GIF interface configuration) when an IPv4 address is entered, the CIDR drop-down cuts ... Jim Pingle
08:19 AM Bug #3278 (Rejected): OpenVPN - Unable to contact daemon, service not running?
I have actually seen this issue on previous versions as well. Not too long ago, we switched from ipsec to openvpn, an... Anonymous
08:18 AM Bug #3270 (Resolved): Disabling VLAN interface disables vlan port, enabling the interface doesn't enable the vlan port
The issue was fixed. What you are proposing now is a change of the way pfSense creates the interface. What you alread... Renato Botelho
08:00 AM Bug #3259: firewall_shaper_vinterface.php does NOT save Packet loss rate and Queue size
Applied in changeset commit:e782e8f43f2c09a2f9cf4ab952ee718d71fc9237. Renato Botelho
08:00 AM Bug #3259: firewall_shaper_vinterface.php does NOT save Packet loss rate and Queue size
Applied in changeset commit:dda9c67f7f8fdc3401a0d3c7b885630d128e2fbb. Renato Botelho
01:40 AM Bug #3259: firewall_shaper_vinterface.php does NOT save Packet loss rate and Queue size
Here is a vid cap of the bug
https://www.youtube.com/watch?v=YYjNhLkXjOI
Leonardo Lombardo

10/20/2013

08:11 AM pfSense Packages Bug #3274 (Closed): Unbound 1.4.21_1 install fails
Warren Baker

10/19/2013

05:19 PM Bug #3276 (Rejected): [ATH] Atheros 802.11 PCI card - Support of 802.11n
Hello,
I'm using Pfsense witch an Atheros WIFI card (chip AR9285). I can't use the standard "802.11n " although th...
B Broca
12:41 PM pfSense Packages Bug #3274: Unbound 1.4.21_1 install fails
Warren, thanks a lot for your quick reaction! Your second stab at fixing it worked for me, on both of my appliances b... Uwe Doering
09:20 AM pfSense Packages Bug #3274: Unbound 1.4.21_1 install fails
Applied in changeset commit:c5abc3905311d69e442989712cceb391719f6deb. Warren Baker
09:10 AM pfSense Packages Bug #3274 (Feedback): Unbound 1.4.21_1 install fails
Applied in changeset commit:3c7e7ebe4eeeeca998bb7b323322eb70ccd4f281. Warren Baker
07:31 AM pfSense Packages Bug #3274: Unbound 1.4.21_1 install fails
I attached two files that show what I mean. In the install log you can see that pfSense 2.0.2-RELEASE-amd64, installe... Uwe Doering
06:56 AM pfSense Packages Bug #3274: Unbound 1.4.21_1 install fails
I am able to install 1.4.21_1 but the Unbound binary is still 1.4.20. Justin Irwin
11:22 AM Bug #3273: Unable to delete VLAN
https://redmine.pfsense.org/issues/3275 Todor K
11:13 AM Bug #3273: Unable to delete VLAN
Yes please Renato Botelho
09:00 AM Bug #3273: Unable to delete VLAN
Should I raise separate issue for what I've mentioned in my previous update? Todor K
08:54 AM Bug #3273 (Resolved): Unable to delete VLAN
Renato Botelho
12:09 AM Bug #3273: Unable to delete VLAN
Resolved.
Noticed another issue on the same subject:
1. I have enabled and working VLAN interface.
2. Skipping s...
Todor K
11:21 AM Bug #3275 (Closed): Unable to delete VLAN interface
Having VLAN interface enabled and in running state I go to "Interfaces: Assign network ports" and delete the interfac... Todor K

10/18/2013

08:41 PM pfSense Packages Bug #3274 (Closed): Unbound 1.4.21_1 install fails
According to control files "pkg_config.8.xml" and "pkg_config.8.xml.amd64" the package version of Unbound has been up... Uwe Doering
05:26 PM Bug #3252: Diagnostics-Tables inconsistency
You have an email. Christian Borchert
05:18 PM Bug #3252: Diagnostics-Tables inconsistency
May I take a look at your /tmp/rules.debug? Renato Botelho
04:45 PM Bug #3252: Diagnostics-Tables inconsistency
Renato Botelho wrote:
> Do you have any firewall rule using snort_ips or snort_wl_hosts? When the table is not used ...
Christian Borchert
03:14 PM Bug #3252: Diagnostics-Tables inconsistency
Do you have any firewall rule using snort_ips or snort_wl_hosts? When the table is not used by any pf rule, it's not ... Renato Botelho
03:50 PM Bug #3273: Unable to delete VLAN
Applied in changeset commit:ea838318c0837b532b7ddf5dbc6881fd9f27cb1a. Renato Botelho
03:50 PM Bug #3273 (Feedback): Unable to delete VLAN
Applied in changeset commit:36b7f215449c027992858f324917a6ad4611e73b. Renato Botelho
03:32 PM Bug #3273 (Resolved): Unable to delete VLAN
I'm following the steps to create an interface, but int reverse.
1. Disable interface at Interfaces.
2. Delete the ...
Todor K
03:30 PM pfSense Packages Bug #3248 (Feedback): NUT package fails to write config to upsd.users
Applied in changeset commit:d199db0bc5bf99c77ec29d01edb646b7713cc9a8. Renato Botelho
03:30 PM Bug #3212: PHP Warning: Division by zero in /etc/inc/captiveportal.inc on line 729
Applied in changeset commit:40a8f669c2dbdc70a53009b97597b1982a5f5d65. Renato Botelho
03:30 PM Bug #3212 (Feedback): PHP Warning: Division by zero in /etc/inc/captiveportal.inc on line 729
Applied in changeset commit:488e8c81adf1b9c11320ef91de7812a7332b2228. Renato Botelho
03:19 PM Bug #3270: Disabling VLAN interface disables vlan port, enabling the interface doesn't enable the vlan port
OS interfaces are still created and up in ifconfig after the VLAN ports arecreated at Interfaces: VLAN.
Assigning an...
Todor K
08:40 AM Bug #3270: Disabling VLAN interface disables vlan port, enabling the interface doesn't enable the vlan port
Applied in changeset commit:ea1084476533bf9452d9f6f1012787c5c73e3939. Renato Botelho
08:40 AM Bug #3270 (Feedback): Disabling VLAN interface disables vlan port, enabling the interface doesn't enable the vlan port
Applied in changeset commit:bae42aaf13bd680f67a9b4f1a4325b03f80f86b4. Renato Botelho
10:37 AM Bug #3271: NAT UDP to port range creates rdr for all interfaces, and no nat rule.
Upon examination, I see that on the nat reflection 'disable' doesn't emit the rdr on the other interfaces, while 'pur... Harry Coin
10:22 AM Bug #3271: NAT UDP to port range creates rdr for all interfaces, and no nat rule.
Chris, check again. When 'pure nat' is specified nevertheless the rdr rule is emitted on the other interfaces.
Harry Coin
10:21 AM Bug #3271: NAT UDP to port range creates rdr for all interfaces, and no nat rule.
And, looking it to it even further, even though 'pure nat' was asked for, rules.debug shows:
# NAT Inbound Redirec...
Harry Coin
09:30 AM Bug #3242: editing alias url table doesnt show full link
Applied in changeset commit:2db5f9c23c7158b61f839d1679bde3ad3f135bdf. Renato Botelho
09:30 AM Bug #3242: editing alias url table doesnt show full link
Applied in changeset commit:4e8a79a83043c0880651d749ac67528615a03d90. Renato Botelho
09:28 AM Bug #3242: editing alias url table doesnt show full link
I got it, the problem only happens because your URL doesn't have protocol. I pushed a fix. Renato Botelho
06:43 AM Bug #3242: editing alias url table doesnt show full link
sent Bipin Chandra
06:31 AM Bug #3242: editing alias url table doesnt show full link
Bipin Chandra wrote:
> shall i send u my config file if that may show something?
yes please, send it to renato@pf...
Renato Botelho
12:15 AM Bug #3242: editing alias url table doesnt show full link
shall i send u my config file if that may show something? Bipin Chandra
05:58 AM pfSense Packages Feature #3272 (Resolved): pfBlocker: Specific ports to block.
It would be great if there was a possibility to specify port/port range which I want to block not all ports.
For e...
Dmitriy K

10/17/2013

11:08 PM Bug #3271 (Rejected): NAT UDP to port range creates rdr for all interfaces, and no nat rule.
that's because you have reflection on, that's how reflection works.
Chris Buechler
12:28 PM Bug #3271: NAT UDP to port range creates rdr for all interfaces, and no nat rule.
Looking into it further, I notice that the interface specified on the 'port forward' gui is pretty much ignored. The... Harry Coin
10:29 AM Bug #3271: NAT UDP to port range creates rdr for all interfaces, and no nat rule.
The same happens when an individual udp port is specified and not a range. rdr rules are created for every interface... Harry Coin
04:32 PM Bug #3259: firewall_shaper_vinterface.php does NOT save Packet loss rate and Queue size
I could not replicate this on any of my test systems Renato Botelho
04:31 PM Bug #3242: editing alias url table doesnt show full link
I couldn't replicate the issue on any of my test systems. Renato Botelho
02:11 PM Bug #3180 (Closed): SMTP notifications not work with 587 port and SSL/TLS
Warren Baker
03:50 AM Bug #3180: SMTP notifications not work with 587 port and SSL/TLS
Applied in changeset commit:dd33fd4e8b3fb66f49ae8337823264ab0d13504c. Warren Baker
02:05 PM Bug #3269 (Rejected): Problem System: Certificate Authority Manager
MD5 is harmful and should be avoided. Renato Botelho
04:10 AM Bug #3269: Problem System: Certificate Authority Manager
My comunication is only an advice. Insert an option in pfSense don't mean with pfSense will become insicure, because ... Luca Morri
03:55 AM Bug #3269: Problem System: Certificate Authority Manager
Until?! :-O If they've not noticed they are using insecure crap in 5 years, you'd better find a viable vendor (and di... Doktor Notor

10/16/2013

08:58 PM Bug #3271 (Rejected): NAT UDP to port range creates rdr for all interfaces, and no nat rule.
The nat rule asking for a port forward on one interface (em0/WAN):
INET1MC UDP * * 97.64.213.58 15000 - 15400 ...
Harry Coin
12:44 PM Bug #3270 (Resolved): Disabling VLAN interface disables vlan port, enabling the interface doesn't enable the vlan port
Describing the steps to reproduce the effect I've noticed:
1. Interfaces: VLAN > Create VLAN on interface
2. Chec...
Todor K
11:48 AM Bug #3269: Problem System: Certificate Authority Manager
Yes, MD5 is insicure, but untill yealink don't update your ip-phone for SHA support is impossible use this phone with... Luca Morri
11:36 AM Bug #3269: Problem System: Certificate Authority Manager
Offering stuff known to be insecure since 2008 at least on not an option. Ditch the crappy HW. http://www.win.tue.nl/... Doktor Notor
05:13 AM Bug #3269 (Rejected): Problem System: Certificate Authority Manager
From pfSense 2.0.1 to 2.1 when you create a certificate, (in pfSense 2.1) you must select an algorithm (Sha1 , sha256... Luca Morri
07:20 AM Bug #3268: Load balancer needs input validation to prohibit reserved table names
Applied in changeset commit:78b0e51e9a135804bfea307ea30c25fe16473da1. Renato Botelho
07:20 AM Bug #3268 (Feedback): Load balancer needs input validation to prohibit reserved table names
Applied in changeset commit:c48fdaa40effe9edc8bb4fb933e124a93cb24a0d. Renato Botelho
05:16 AM Bug #742: apinger doesn't recover opt wan when connection returns.
i have a similar issue but in some ways its different, my isp sometimes blocks all traffic to internet and only gives... Bipin Chandra
02:53 AM Bug #742: apinger doesn't recover opt wan when connection returns.
Same issue for us on pfsense 2.1 Release:
if opt3 goes down, it doesn't recover and the "last check" time on /status...
Lionel Lejeune

10/15/2013

10:49 PM Bug #3257: IP Alias on CARP IP doesn't work where IP alias above CARP parent in list
*How to reproduce this:*
I ran into this bug when I modified a setup pulled in from PFSense 2.0.x that looked like t...
R. S.
10:06 PM pfSense Packages Bug #999: vhosts does not show up as started
I can confirm this is still an issue with the package. It seems to work outside the fact there is no way to know if ... Robert Middleswarth
08:09 PM Bug #3045: NTPD crash / doesn't come up
also line
driftfile /var/db/ntpd.drift
seems to be involved.
those really seems to be directory permission is...
Fabio Giudici
07:46 PM Bug #3045: NTPD crash / doesn't come up
Problem seems to be related to line:
statsdir /var/log/ntp
in /var/etc/ntp.conf.
After commenting this line, n...
Fabio Giudici
06:52 PM Bug #3045: NTPD crash / doesn't come up
Issue just presented to me as well, on both members of cluster (pfSense 2.1 stable), Server SunFire X3-2...
I can at...
Fabio Giudici
01:36 PM Bug #3045: NTPD crash / doesn't come up
It is also incredibly inconsistent. If I wait an hour and try to start, perhaps ntpd will start without issue and run. Steve Jacobs
01:36 PM Bug #3045: NTPD crash / doesn't come up
Seeing this exact same issue on 2.1 Release i386 and amd64. I have attached my ntpd.core from an i386 install here. T... Steve Jacobs
04:22 PM Bug #3268 (Resolved): Load balancer needs input validation to prohibit reserved table names
Reserved table names aren't prohibited from being entered as a table name in load_balancer_pool_edit.php. At least <s... Chris Buechler
07:14 AM Bug #3255 (New): OpenVPN client or server on GWG does not failover
Reopen it since pull request was not merged yet Renato Botelho
02:25 AM Bug #3255 (Resolved): OpenVPN client or server on GWG does not failover
thanks! Chris Buechler

10/14/2013

02:00 PM Bug #3216: PFSense 2.1 - Captive Portal Zone - is not avaible in user effective privileges
Applied in changeset commit:4a913451bba01ac65dcaedf31e24fcd938bbe0a2. Renato Botelho
02:00 PM Bug #3216 (Feedback): PFSense 2.1 - Captive Portal Zone - is not avaible in user effective privileges
Applied in changeset commit:8deaf333f25dc18d461d7f2b0e61b1b2c1a64ace. Renato Botelho
01:28 PM Bug #3256: dnsmasq replying with incorrect address
Is the issue still happening? Renato Botelho

10/13/2013

08:01 PM Bug #3249: DHCP Server/DHCP Relay both say the other is started
I found that config from before. I've attached it. Hans Kokx
03:30 PM Bug #3267 (Closed): Can't skip wizard by clicking the pfSense logo, can't finish it normally either
I recently set up 3 new pfSense installs (all on 2.1 final), and on all 3 I had a problem with the Setup wizard - bot... Jernej Simončič
03:10 PM pfSense Packages Bug #3266: Synchronize OpenVPN + Site-Site = Fail
And in the category of 'somewhat evil hack that works':
If you have a master/backup pfsense setup AND
you have mo...
Harry Coin
02:29 PM pfSense Packages Bug #3266: Synchronize OpenVPN + Site-Site = Fail
Jim,
Doing as you suggest does solve the problem for the site-site server side in a Master/Backup HA situation wi...
Harry Coin
01:11 PM pfSense Packages Bug #3266: Synchronize OpenVPN + Site-Site = Fail
Jim, welcome news indeed. Please then change
"Interface : Whichever interface you want the server to use for incom...
Harry Coin
01:02 PM pfSense Packages Bug #3266 (Rejected): Synchronize OpenVPN + Site-Site = Fail
This works fine on 2.0.2+ if you select a CARP VIP as the "Interface" for the VPN, the system automatically stops the... Jim Pingle
12:11 PM pfSense Packages Bug #3266: Synchronize OpenVPN + Site-Site = Fail
Update: Should have written: the 'Disable this server' and 'Disable this client' button should be forced 'ON' when ... Harry Coin
12:08 PM pfSense Packages Bug #3266 (Rejected): Synchronize OpenVPN + Site-Site = Fail
The 'Synchronize OpenVPN' HA checkbox prevents site-site OpenVPN from working in primary/backup setups. Two enabled ... Harry Coin
 

Also available in: Atom