Activity
From 11/12/2013 to 12/11/2013
12/11/2013
-
04:36 PM Bug #3321: IPSEC failure on modem reset, automatic reconnection is broken, must manually restart racoon service
- More users reporting the same issue:
http://forum.pfsense.org/index.php/topic,67625.0.html -
04:36 PM Bug #3321: IPSEC failure on modem reset, automatic reconnection is broken, must manually restart racoon service
- Another user reports the same issue:
http://forum.pfsense.org/index.php/topic,67929.0.html -
04:31 PM Bug #3321: IPSEC failure on modem reset, automatic reconnection is broken, must manually restart racoon service
- More users reporting the same issue:
http://forum.pfsense.org/index.php/topic,68776.msg376347.html#msg376347 -
04:22 PM Bug #3321: IPSEC failure on modem reset, automatic reconnection is broken, must manually restart racoon service
- Another user reports the same issue:
http://forum.pfsense.org/index.php/topic,69235.0.html -
04:20 PM pfSense Packages Bug #3360 (Resolved): Apache reverse proxy-dev leaves / out of Backend Path
- When configuring locations the "backend path" text says "Backend redirect path. Leave blank to use / "
But if left b... -
09:41 AM Bug #3045: NTPD crash / doesn't come up
- I can report that this happens on i386 and amd64. I've switched architectures trying to avoid this bug. I can also re...
-
03:11 AM Bug #3264: Double traffic on vlan interfaces "out" side
- The bug is only in the out graph and it's seen on aggregated interfaces too. That's about it.
-
03:04 AM Bug #3264 (Rejected): Double traffic on vlan interfaces "out" side
- Duplicate of #3314. This is older but there are more data there.
-
02:24 AM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
- amd64 version is affected too
https://redmine.pfsense.org/issues/3264
12/10/2013
- 02:08 PM Revision aebf41df: Use current racoon.conf syntax to avoid issues when deprecated one is removed, it fixes #3338
-
08:10 AM Todo #3338 (Feedback): Update racoon.conf "remote" syntax
- Applied in changeset commit:aebf41dfa424604315e42bf0cc3ca545760989ea.
12/09/2013
-
03:27 PM pfSense Packages Bug #3359 (Rejected): Apache Httpd Server compiled with wrong directives for config dir
- The PBI directories are correct for 2.1 packages. The other values can be solved through configuration changes to the...
-
03:24 PM pfSense Packages Bug #3359 (Rejected): Apache Httpd Server compiled with wrong directives for config dir
- Following command gives:
$ httpd -V
Server version: Apache/2.2.23 (FreeBSD)
Server built: Dec 20 2012 15:58:11... - 11:49 AM Revision b3b3d115: Check that DHCP end IP is >= DHCP start IP
- 11:49 AM Revision 2c712868: Use correct vars for IPv6 when checking subnet start and end
- 11:48 AM Revision bed4017e: Merge pull request #862 from phil-davis/master
- Fixes for DHCP range validation when entering from console
- 11:22 AM Revision 9a2d491c: Fix vpn_pppoe_get_id and stop duplicating pppoeid for multiple servers, it fixes #2286
- 11:22 AM Revision d8b011b8: Fix vpn_pppoe_get_id and stop duplicating pppoeid for multiple servers, it fixes #2286
- 11:22 AM Revision fb7c06b8: Fix vpn_pppoe_get_id and stop duplicating pppoeid for multiple servers, it fixes #2286
- 11:07 AM Revision 5a997d96: Use correct vars for IPv6 when checking subnet start and end
- 10:58 AM Revision 60818ff2: tidy up html
- 10:42 AM Revision e9bf4980: Fix whitespaces and indent
-
10:17 AM Todo #3196: Improve IPv4 address validation on interface setup (GUI and console) and setup wizard
- I can't break it now - the console interface is validating lots of IP subnet and DHCP range stuff... Since I did the ...
-
04:02 AM Todo #3196 (Feedback): Improve IPv4 address validation on interface setup (GUI and console) and setup wizard
- 09:53 AM Revision 12f5a2d8: Check that DHCP end IP is >= DHCP start IP
- 09:08 AM Revision 9b749311: Fix checking DHCP end IP is in range
- Cut-paste bug
- 09:06 AM Revision 69116e98: Merge pull request #861 from phil-davis/master
- Fix checking DHCP end IP is in range
-
08:30 AM Bug #3045: NTPD crash / doesn't come up
- Sorry for posting here again. But I still got the "exited on signal 11 (core dumped)" error sometimes.
NTP runs fine... -
05:36 AM Bug #2286: Multiple PPPoE Server do not work
- I've pushed a fix but saved servers has now duplicated pppoeid fields on config.xml, you should remove and add them a...
-
05:30 AM Bug #2286: Multiple PPPoE Server do not work
- Applied in changeset commit:9a2d491c037162137255756eb05bd62316103d42.
-
05:30 AM Bug #2286: Multiple PPPoE Server do not work
- Applied in changeset commit:d8b011b8e6bfea3d0cc841dccd5bc4e764d4f96b.
-
05:30 AM Bug #2286 (Feedback): Multiple PPPoE Server do not work
- Applied in changeset commit:fb7c06b834fd1b02519039f3b3a206338bdcb3f8.
- 03:15 AM Revision 3038ece7: Fix checking DHCP end IP is in range
- Cut-paste bug
12/08/2013
-
09:14 PM Todo #3196: Improve IPv4 address validation on interface setup (GUI and console) and setup wizard
- Latest changes for the console work nicely - it re-prompts for the IPv4 address when the address and netmask combinat...
-
04:51 PM Bug #2286: Multiple PPPoE Server do not work
- Markus Engelbrecht wrote:
> After adding a second PPPoE Server on a different VLAN (interface) the first and the se... -
07:07 AM Bug #3353 (Resolved): Changing IPv6 from None to DHCP6 or vice-versa causes a panic+reboot
- This is solved now mostly a problem in pf patches rather than other places.
12/07/2013
-
08:50 PM Revision a364ecd0: added missing quotes
- thx rbgarga
-
08:50 PM Revision 0c8fb222: Allow setting a default scale type preference for the traffic graphs widget
- I originally submitted this at https://redmine.pfsense.org/issues/2994
but it seems that is not used for commits now ... - 08:49 PM Revision 3c263d45: Merge pull request #860 from iamzam/RELENG_2_1
- Allow setting a default scale type preference for the traffic graphs wid...
-
07:29 PM Revision 52d5ef8d: Nice race on FreeBSD 10 for carp seems you cannot do on the same command line the carp config due to inherent races. Account for this
-
06:54 PM Revision 84b23cce: This needs to have alias added to not remove the interface ip
-
06:05 PM Revision 7a7ba89a: Correct curlies yet again
12/06/2013
-
07:16 PM Revision 0c21eb70: Use _vip as identified for CARP vip IPs to allow easier upgrade code. This way only ipaliases on carp need to be upgraded.
-
02:05 PM Revision e08ba4bb: Load only the options rather than clearing the whole ruleset. This solves a problematic issue on 2.1
-
02:04 PM Revision 86c135de: Load only the options and nothing else
- 01:39 PM Revision 77a341a4: Add a knob to prefer IPv4 over IPv6, it fixes #2833
- 01:37 PM Revision 09e14acf: Unbreak etc/sshd, add a missing quote
-
12:48 PM Bug #3358 (New): new version of <include_file> is not required during reinstall_all
- When an outdated version of a package is installed and pfSense is updated, it will call pkg_reinstall_all() on next b...
-
12:05 PM Todo #3196 (New): Improve IPv4 address validation on interface setup (GUI and console) and setup wizard
-
11:43 AM Bug #3308: route-to/reply-to not updated when PPP gateway IP changes
- This just happened again and per your suggestions I checked Status>Gateways and /tmp/rules.debug.
Status>Gateways ... - 11:43 AM Revision 9401e47c: Check if dhcp start and end addresses are inside interface subnet, helps #3196
- 11:43 AM Revision 9d1225a9: Add function is_inrange() that calls is_inrange_v6 or is_inrange_v4 accordingly
- 11:42 AM Revision 7a25652f: Check if dhcp start and end addresses are inside interface subnet, helps #3196
- 11:41 AM Revision da6cb29e: Add function is_inrange() that calls is_inrange_v6 or is_inrange_v4 accordingly
- 11:39 AM Revision 97049b79: When user attempt to set network or broadcast address, ask again for the IP address. Issue #3196
- 11:34 AM Revision bebf0fa8: When user attempt to set network or broadcast address, ask again for the IP address. Issue #3196
-
09:55 AM Bug #3357 (Resolved): IPv6 on PPPoE default gateway assignment incorrect
- I started with a forum post here [[http://forum.pfsense.org/index.php/topic,68364.0.html]] with details as well.
... -
07:40 AM Bug #2833 (Feedback): Add a knob to prefer IPv4 over IPv6 for rare situations that require it
- Applied in changeset commit:77a341a458d604287f46180db1facbdb540cd139.
-
02:46 AM Feature #3356 (Resolved): Document functionality of unclear DynDNS providers
- The pages [1] and [2] would benefit from improved documentation of certain DynDNS providers. For example, there are t...
-
02:25 AM Bug #3355 (Resolved): Interface monitor logic changes firewall tables too late for DynDNS
- This report corresponds with mailing list email 'Bug in DynDNS notification sequence'.
*PRELUDE*
Some DynDNS pr...
12/05/2013
-
10:04 PM Todo #3196: Improve IPv4 address validation on interface setup (GUI and console) and setup wizard
- As a side-issue, I purposely put in dodgy values for the DHCP - outside of the subnet I had specified - and was surpr...
-
10:00 PM Todo #3196: Improve IPv4 address validation on interface setup (GUI and console) and setup wizard
- I did GitSync and tried this on the console. Here is some sample output:
@Enter an option: 2
Available interfaces... -
08:09 PM Revision 5c43e7bd: Also account for a widget being null/not defined, and not just closed/open.
-
08:05 PM Revision a6d96f9b: Also account for a widget being null/not defined, and not just closed/open.
-
05:03 PM Bug #2082: Captive Portal error when client IPs are reused
- it is a requirement to configure your DHCP lease time and CP timeout appropriately, that's not a work around, it's th...
-
09:45 AM Bug #2082: Captive Portal error when client IPs are reused
- The issue is not resolved, linking the DHCP lease time and CP timeouts is a workaround.
The CP must work based on MA... -
04:27 PM Revision f2dd61a7: Identify vips where needed by @ symbol that will be used
-
04:18 PM Revision af93d29a: Make more strict checks
-
04:16 PM Revision 9cdc1caf: Provide proper interface for getting carp status
-
03:41 PM Revision 103b8e5e: Remove not true comment
-
03:41 PM Revision 049ed50d: Correct syntax
-
03:24 PM Revision 8ff83255: added missing quotes
- thx rbgarga
-
03:13 PM Revision 6363a6de: Create even elyptic curve keys
-
10:51 AM Revision b6877e06: Handle more carp enahancements for FreeBSD 10. the interface vips will be names $if@$vhid since the interface name is the same as other ips.
-
10:51 AM Revision 0aa72930: Optimize a bit
-
09:24 AM Bug #3352 (Rejected): CaptivePortal: new device/different user getting an authorised already IP cannot be authenticated
- "When the DHCP lease time is shorter than the idle/hard timeout of the captive portal the following situation may hap...
-
08:58 AM Bug #3352 (Rejected): CaptivePortal: new device/different user getting an authorised already IP cannot be authenticated
- When the DHCP lease time is shorter than the idle/hard timeout of the captive portal the following situation may happ...
-
09:08 AM Bug #3354 (Resolved): Savecore error during bootup
- During bootup of a pfSense 2.2 / FreeBSD 10 image there is an error from savecore. It still works despite the error, ...
-
09:02 AM Bug #3353 (Resolved): Changing IPv6 from None to DHCP6 or vice-versa causes a panic+reboot
- On a 2.2 image running FreeBSD 10, you can step all the way through the wizard but clicking "Reload" at the end cause...
-
05:19 AM Revision 943d52cf: Allow setting a default scale type preference for the traffic graphs widget
- I originally submitted this at https://redmine.pfsense.org/issues/2994
but it seems that is not used for commits now ... -
12:32 AM Bug #829 (New): WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
12/04/2013
-
11:31 PM Bug #829: WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
- Hello,
I just experienced this issue. My pfSense build is:
2.1-RELEASE (i386)
built on Wed Sep 11 18:16:50 ED... - 08:21 PM Revision 21d74c8e: Prevent network or broadcast address to be set on interface (console, GUI and wizard). It should fix #3196
- 08:21 PM Revision 20dda766: Prevent network or broadcast address to be set on interface (console, GUI and wizard). It should fix #3196
-
06:14 PM Bug #3349: System Information Widget Showing Incorrect Memory Used %
- Also i created some code to accurately show what % of the disk space is being used instead of pulling what % DF puts ...
-
06:10 PM Bug #3349: System Information Widget Showing Incorrect Memory Used %
- Yes, i have tested my new code on 4 systems and tried it with varying amounts of memory, anything over 512MB, and wit...
-
05:46 PM Bug #3349: System Information Widget Showing Incorrect Memory Used %
- You should take inactive and cache into consideration, as it happens today. Considering it you still see differences ...
-
05:53 PM Bug #3351: increase traffic graph.php SVG resolution
- This patch doesn't apply cleanly. Is it possible to submit this change using github's pull request? It's much easier ...
-
12:36 AM Bug #3351 (Needs Patch): increase traffic graph.php SVG resolution
- While debugging a limiter issue it turned out I needed the text on the traffic graphs which hadn't been working for m...
-
04:12 PM pfSense Packages Bug #999: vhosts does not show up as started
- looks a little weird... it seems that \b...\b didn't match the old way:
[2.1-RELEASE][root@pfsense.local]/root(23)... -
02:20 PM Todo #3196: Improve IPv4 address validation on interface setup (GUI and console) and setup wizard
- Applied in changeset commit:21d74c8e79948cd05c11f0ab79a463aea4bff2ce.
-
02:20 PM Todo #3196 (Feedback): Improve IPv4 address validation on interface setup (GUI and console) and setup wizard
- Applied in changeset commit:20dda766516f943339799abc31f7c3640fff3195.
-
11:17 AM Revision f51fa0d4: Use proper interface here
-
11:17 AM Revision 991bd7ad: Correct only carp value changes
-
08:27 AM Bug #3250: problems with ixgbe driver in pfsense 2.1 release
- Since this ticket is light on detail, there are a few main issues with the current driver:
1. Error message from t...
12/03/2013
-
04:20 PM Revision a589dc74: Add FreeBSD pkgng repo definition
- 02:37 PM Revision f70a140f: Fix #3350. Do not destroy an interface when it's being disabled
- 02:37 PM Revision 5bc62353: Fix #3350. Do not destroy an interface when it's being disabled
- 11:42 AM Revision 8e97590d: Remove a left testing code
-
10:54 AM Bug #829: WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
- It seems a workaround is to set the interface to static, type an IP, then submit the changes. Once you do this, you c...
-
10:44 AM Bug #829: WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
- Same issue on 2.1-RELEASE (i386)
built on Wed Sep 11 18:16:50 EDT 2013
FreeBSD 8.3-RELEASE-p11 -
09:33 AM Todo #3196: Improve IPv4 address validation on interface setup (GUI and console) and setup wizard
- It's not only setup wizard, but you can also use network or broadcast addresses on interfaces.php and console.
-
08:40 AM Bug #3350: Disabling and enabling VLAN leaves VLAN interface missing
- Applied in changeset commit:f70a140fe18cb80012e53f82c268788fbcae5436.
-
08:40 AM Bug #3350 (Feedback): Disabling and enabling VLAN leaves VLAN interface missing
- Applied in changeset commit:5bc623536d8bb3b93e68a1b1535c9de582721a09.
-
05:12 AM pfSense Packages Bug #3344: Disable IPV6 Squid3 not run
- Bus only disable ipv6 suport that squid3 port closed
-
05:10 AM pfSense Packages Bug #3344: Disable IPV6 Squid3 not run
- Confuse with another bug reported.
-
04:05 AM pfSense Packages Bug #3344: Disable IPV6 Squid3 not run
- How is it related to squid3? It's an openvpn conf. I'm confused
-
04:00 AM pfSense Packages Bug #3344: Disable IPV6 Squid3 not run
- Generated example configurator GUI pfsense.
Generated parameter automatic tun-ipv6
Print attached configuration gen... -
03:40 AM pfSense Packages Bug #3344: Disable IPV6 Squid3 not run
- but disable checkbox not create route ipv6 automatic
-
12:56 AM pfSense Packages Bug #3344 (Rejected): Disable IPV6 Squid3 not run
- that checkbox has nothing to do with what squid will bind to. It only blocks IPv6 network traffic, which can't have a...
-
12:57 AM pfSense Packages Feature #3320 (Closed): HAVP does not honor FW Gateway rules
- that's how things are supposed to work, you need floating rule policy routing for anything initiated by the firewall ...
12/02/2013
-
10:31 PM Bug #3350 (Resolved): Disabling and enabling VLAN leaves VLAN interface missing
- If you disable an interface that's a VLAN, it deletes the VLAN, and re-enabling that interface doesn't add the VLAN i...
-
09:12 PM Revision 77411fa7: Correct CARP events on devd and the argument processing on called scripts
- 07:35 PM Revision aa87cf11: Fix #3339. Add a way to download CP portal, error and logout html pages
- 06:21 PM Revision 61422dd4: When reset webConfigurator password, if authentication server is not Local Database, ask user to back to it. Fix #3341
- 05:45 PM Revision 338ded9b: Fix whitespaces and indent
-
02:27 PM Bug #3349 (Not a Bug): System Information Widget Showing Incorrect Memory Used %
- I have 2048MB on my system. With the code below the web gui system information widget shows i have 512MB installed, t...
- 02:19 PM Revision 0e42cad8: Show aliases popup on Outbound NAT list
- 02:11 PM Revision dde20226: Declare missing global vars and fix gateway deletion
-
01:40 PM Feature #3339 (Feedback): Add a button to allow downloading the Captive Portal HTML text, error text, and logout page text
- Applied in changeset commit:aa87cf1108532f083761a5d2da4ff518cc398356.
- 01:34 PM Revision a9be92f0: Fix typos
-
12:20 PM Feature #3341 (Feedback): Add a means for reverting GUI auth backend to Local Database from the console
- Applied in changeset commit:61422dd487c2646c21b09b8bb3588ed3e49e3223.
-
06:35 AM Bug #3348 (Resolved): DHCP server: IP of next-server is lost on upgrade to 2.1
- Known issue, already fixed in the repository.
-
02:36 AM Bug #3348 (Resolved): DHCP server: IP of next-server is lost on upgrade to 2.1
- When upgrading from 2.0.3 to 2.1, the contents of the next-server entry in the DHCP server settings is lost. This hap...
-
04:29 AM pfSense Packages Feature #3320: HAVP does not honor FW Gateway rules
- Well, it actually seems that putting a computer's IP in the bypass list of squid does finally honor FW rule to route ...
12/01/2013
-
04:01 PM pfSense Packages Bug #2602: BandwidthD - Reported Traffic / Usage is approximately Double real amount
- This issue should remain closed.
This note is being added so that there is an answer associated with this issue to...
11/29/2013
-
07:35 PM Bug #3345: Openvpn create route ipv6 default Pfsense 2.1
- The configuration generated by the openvpn server in the conf file via shell shows support for ipv6 enabled even usin...
-
02:51 PM Bug #3345 (Rejected): Openvpn create route ipv6 default Pfsense 2.1
- OpenVPN creates whatever routes it's configured to create (or that it pulls if pulling is enabled). No sign of a bug ...
-
07:32 PM pfSense Packages Bug #3344: Disable IPV6 Squid3 not run
- Yes.
System -> Advanced.
Disable ipv6 support package squid3 closed port 3128, but the service runs but refuses con... -
02:52 PM pfSense Packages Bug #3344 (Feedback): Disable IPV6 Squid3 not run
- Need more info, what specifically do you mean by "Disabling IPv6"? Checking the box under System>Advanced?
-
02:42 PM Bug #3346 (Rejected): 1:1 NAT rule (w/ VIP) breaks connectivity to WAN
- 1:1 NAT works fine, sounds like you have an issue with your upstream ARP cache.
-
01:50 AM Bug #3346: 1:1 NAT rule (w/ VIP) breaks connectivity to WAN
- To note: I've tried taking the backup from the alix board and applying it to the new machine (intel motherboard), and...
-
01:47 AM Bug #3346 (Rejected): 1:1 NAT rule (w/ VIP) breaks connectivity to WAN
- Clean installation on a computer, setup default gateway, dhcp and set up basic internet connectivity, no packages, no...
- 12:07 PM Revision 4e4e35dd: One more typo on Alternative Names fill, that was setting type field with $value
- 12:07 PM Revision 4287c73a: One more typo on Alternative Names fill, that was setting type field with $value
- 11:57 AM Revision 30c15c58: Fix a (probably) copy/paste issue that is making all Alternative Names disapear when an input error is detected
- 11:57 AM Revision edf37d56: Fix a (probably) copy/paste issue that is making all Alternative Names disapear when an input error is detected
-
04:44 AM Bug #3347 (Resolved): Certificate Authority SAN names not working in 2.1
- Hey Guys, It appears Subject Alternative Names are not working in the CA module for pfsense 2.1.
The fault is, the...
11/28/2013
- 06:43 PM Revision 1ebb561d: Remove 0.0.0.0 from automatic outbound nat rules
- 06:42 PM Revision 992324ef: Remove 0.0.0.0 from automatic outbound nat rules
-
06:36 PM Revision 7238e0cf: Remove references to _vip interface and provide proper configuration for carp on FreeBSD 10. Still some places to deal with this and certainly missing upgrade code
- 10:55 AM Revision 4c91880c: Fix 0.0.0.0 mask for automatic outbound NAT
-
02:42 AM Bug #829: WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
- Pfsense 2.1-RELEASE (amd64)
built on Wed Sep 11 18:17:37 EDT 2013
FreeBSD 8.3-RELEASE-p11
This exact bug just ha...
11/27/2013
-
04:46 PM Bug #3345 (Rejected): Openvpn create route ipv6 default Pfsense 2.1
- OpenVPN creates ipv6 default route in p2p mode with virtual interface ovpns1 dedicated tunnel. Setup OpenVPN server g...
-
04:42 PM pfSense Packages Bug #3344 (Rejected): Disable IPV6 Squid3 not run
- Disabling ipv6 in the GUI squid3 closes port 3128.
11/26/2013
- 09:23 PM Revision d1113424: fix 0.0.0.0 subnet for automatic outbound NAT rules, fixes #2416
- 09:22 PM Revision 3f0cc2f4: Stop sorting 1to1 rules and leave user decide the order. Fixes #3327
- 09:20 PM Revision 70cb0375: Allow toggle enable/disable, reorder and multiple delete static routes
- 09:17 PM Revision e97df865: Show all gateway entries, even if interface doesn't exist, to avoid adding duplicate items or edit config by hand to remove old entries. While I'm here, allow multiple delete, and toggle enable/disable
- 08:41 PM Revision 96ef7db0: Add an option to disable gateway items
- 08:40 PM Revision 06b8d43c: Add a new param to return_gateways_array and make it return gateways when interface doesn't exist. Default behavior didn't change. Also check the new gateway parameter (disabled) when filtering
- 08:38 PM Revision a5249874: Stop sorting static routed and leave user decide the order
-
03:30 PM Feature #2416 (Feedback): Hybrid NAT mode that is a mix of Auto+Manual
- Applied in changeset commit:d11134243489f7cea17cdc4c04a0624b0c16ed18.
-
03:30 PM Feature #3327 (Feedback): Allow reordering of 1:1 NAT entries
- Applied in changeset commit:3f0cc2f41dcbda4342244130aab6772c6bc358d0.
11/25/2013
- 06:35 PM Revision c83d04dc: Make it more visible when an item is disabled
- 06:24 PM Revision d251a8d4: Fix whitespaces and indent
-
05:41 PM Revision 45508803: Allow an "empty" CRL to be exported, since this is still a valid action.
-
05:40 PM Revision 48f1333b: Allow an "empty" CRL to be exported, since this is still a valid action.
-
02:34 PM Feature #2416 (New): Hybrid NAT mode that is a mix of Auto+Manual
- It looks like this is all OK now - but 0.0.0.0/0 is still there. Is that needed? Intentional?
On 2.1 it appears to... -
02:26 PM Feature #3327 (New): Allow reordering of 1:1 NAT entries
- This seems to work OK until you add a new entry. When you add a new entry, the IPs appear to be sorted and end up in ...
-
02:06 PM Revision 531b9f0e: No need for a second rule forwarding http
-
02:06 PM Revision 1c69dbb0: Correct generation of lighty configuration with zoneid changing to lower that 4000 value
-
02:06 PM Revision 1122705e: Start from 2 here as well
-
02:06 PM Revision 0a806969: Since zoneid need to be less then 4096 provide some upgrade code to handle that from existing configs
-
02:06 PM pfSense Packages Bug #3343 (Closed): (re)starting freeradius service throws "The command '/usr/local/etc/rc.d/radiusd.sh stop' returned exit code '1', the output was 'radiusd not running?'"
- This is related to freeRADIUS version 2.1.12_1/2.2.0 pkg v1.6.7_2 running on 2.1-RELEASE (i386)
Everytime i start... -
01:54 PM pfSense Packages Bug #3342 (Resolved): Missing input validation for MAC addresses
- When adding a new mac address to configuration via gui there seems to be no input validation.
Services -> FreeRAD... -
01:39 PM Revision 06dc05ac: Merge pull request #858 from timdufrane/master
- Add DHCP without gateway capability
-
07:30 AM Feature #3341 (Resolved): Add a means for reverting GUI auth backend to Local Database from the console
- If a user accidentally sets their GUI auth backend to a RADIUS or LDAP server that is unreachable, it can be difficul...
11/24/2013
-
01:41 PM Bug #3340: Captive Portal deletes concurrent sessions even if noconcurrentlogins is not set
- Or would it be better to:
if (isset($config['captiveportal'][$cpzone]['noconcurrentlogins'])) {
if (isset($tm...
11/23/2013
-
07:32 PM Revision fcaf1709: Catch up with mac needed for all operations in the table nowdays.
-
11:42 AM Bug #3340 (Resolved): Captive Portal deletes concurrent sessions even if noconcurrentlogins is not set
- Function captiveportal_prune_old_automac() deletes duplicate sessions even if noconcurrent logins is not set.
This... -
02:30 AM Revision e5f2cf3a: prefork for relayd is usefull only in DNS mode
11/22/2013
- 03:42 PM Revision 61d744c3: Merge pull request #859 from CharlieMarshall/loaderFix
- fix up loader.js for theme pfsense_ng_fs - Fixes traffic shaper graphs not loader as reported in the forum
-
03:39 PM Feature #3339 (Resolved): Add a button to allow downloading the Captive Portal HTML text, error text, and logout page text
- Currently there is no easy way to get the Captive Portal HTML/error/logout page files back once they have been upload...
-
01:53 PM Todo #3338 (Resolved): Update racoon.conf "remote" syntax
- According to racoon.conf(5) the syntax of the remote statement we currently use has been deprecated and will be remov...
- 12:05 PM Revision ae72c0ff: remove unneeded ';'
- 11:50 AM Revision d285ffdb: fix traffic shaper progress bars not displaying
-
11:15 AM Bug #3337 (Resolved): Dashboard Thermal Sensors use "unfriendly names" for Core >= 4
- The dashboard widget for "Thermal Sensors" displays names like "dev.cpu.4.temperature" instead of "Core 4" for my sys...
-
10:23 AM Feature #3336 (Closed): Setting per-pool timeout in load balancer
- Hi there,
It would be nice to have a per-pool timeout (for checks) on the Load BAlancer.
At this moment on the ... -
10:06 AM Bug #3335 (Rejected): Outgoing connections opens the firewall from outside
- pf matches states based on the ICMP id and source/destination but NOT on type/code. If the required bits match, the t...
-
03:07 AM Bug #3335 (Rejected): Outgoing connections opens the firewall from outside
- I have a pfsense with three ports.
These are a LAN (192.168.10.0/24), a DMZ (192.168.30.0/24) and an unused WAN port...
11/21/2013
-
09:18 PM Revision baec2b00: Properly create zones for the CP with the new command arguments and properly invoke ipfw for applying rules and other configuration options.
- 06:38 PM Revision 1bd021e3: Add DHCP without gateway capability
- 06:33 PM Revision 4208f7b1: Add DHCP without gateway capability
-
05:35 PM Revision fc5a4f3c: Remove maximumtables even from the GUI since there is no option
- 03:57 PM Revision 82d1a33e: Fix #3331. Set interface subnet as destination when VIP is in the same subnet, otherwise use VIP subnet instead of IP address
- 03:57 PM Revision d3b17c9a: Fix #3331. Set interface subnet as destination when VIP is in the same subnet, otherwise use VIP subnet instead of IP address
-
01:58 PM Revision f7ec7bf9: FreeBSD 10 pf does not have a limit for table entries
-
01:14 PM Revision e6000a9b: Merge pull request #857 from Wraul/add_city_network_dyndns
- Added support for City Network to Dynamic DNS.
- 11:37 AM Revision 23d9f686: Fix an issue that changes wrong gateway entry when items are hidden
- 11:36 AM Revision 1ad6ad27: Fix an issue that changes wrong gateway entry when items are hidden
-
10:00 AM Bug #3331: Rules to pass out traffic for Proxy ARP VIP entries have an incorrect destination
- Applied in changeset commit:82d1a33e4a0a9e1988277fcd4f9401355a9b4fee.
-
10:00 AM Bug #3331 (Feedback): Rules to pass out traffic for Proxy ARP VIP entries have an incorrect destination
- Applied in changeset commit:d3b17c9a0b111ce20869f226322365324e0da4ce.
-
05:18 AM Bug #3334 (Resolved): Status/Traffic Graph isn't IPv6 ready
- In /usr/local/www/bandwith_by_ip.php, which is called per AJAX/XHR to provide the data for the right table in "Traffi...
11/20/2013
-
08:56 PM Revision 186ab4ea: Don't flush interface cache on each call of the function when looping through all gateways.
-
08:56 PM Revision 33e71f10: Don't flush interface cache on each call of the function when looping through all gateways.
- 05:20 PM Revision e924cd7e: Add hability to insert after, reorder, batch delete and enable/disable to 1:1 NAT rules. It fixes #3327
- 05:16 PM Revision a0e1f0f1: We do not need 2 variables to do the same thing, simplify it a bit
- 04:05 PM Revision d39ed8c3: Fix whitespaces and indent
-
03:14 PM Bug #3333 (Closed): usbusX devices show up as NICs.
- Version 2.1-RELEASE (amd64)
built on Wed Sep 11 18:17:34 EDT 2013
FreeBSD 8.3-RELEASE-p11
You are on the lates... - 02:01 PM Revision bb0469f2: Fix whitespaces and indent
-
12:33 PM Bug #3332 (Rejected): Impossible to change the user for XMLRPC Sync
- Hi all,
I have set a user to test the XMLRPC Sync, so now I try to use an other user.
But the user can't be cha... -
11:20 AM Feature #3327 (Feedback): Allow reordering of 1:1 NAT entries
- Applied in changeset commit:e924cd7eb2457e7fd7122aecc1f2887824229edb.
11/19/2013
-
03:26 PM Bug #3331 (Resolved): Rules to pass out traffic for Proxy ARP VIP entries have an incorrect destination
- On 2.1 some rules are generated on an interface (e.g. WAN) to pass out traffic for Proxy ARP VIP addresses. These rul...
-
01:37 PM Bug #3330 (Closed): Load Balancer showing wrong Status when using aliases for the port
- Hello,
I have come across the issue of using Load Balancer with Port Alias's and the status not showing properly i... - 10:45 AM Revision 858211dd: Improve text on outbound NAT page to reflect last changes, it should fix #2416
- 10:43 AM Revision 1b4a0d79: Fix a wrong } left on my last commit
- 10:35 AM Revision aef6978d: Try to detect already automatically created outbound NAT rules and avoid duplicating them. Also automatically create rules when switching from hybrid to manual. Ticket #2416
-
09:51 AM Feature #3329 (Resolved): Allow creating "not" rules for IPsec Phase 2
- We should have the ability in Phase 2 to negate the action ("none" in the SPD) so that specific traffic can be made t...
-
09:48 AM Feature #3328 (Resolved): Allow reordering of IPsec Phase 1 and Phase 2 entries
- Currently the IPsec entries are stuck in the order they were created, which can be problematic if you need to ensure ...
-
09:44 AM Feature #3327 (Resolved): Allow reordering of 1:1 NAT entries
- Because 1:1 NAT entries can be general (subnet to subnet) or specific (IP to IP) there is a need to be able to reorde...
-
04:50 AM Feature #2416 (Feedback): Hybrid NAT mode that is a mix of Auto+Manual
- Applied in changeset commit:858211ddde3b2a5eff0de609bf47070c4a7a776f.
11/18/2013
- 06:42 PM Revision 58fac695: Add subnet to 0.0.0.0 otherwise it's not added to table, ticket #2416
- 05:26 PM Revision 6f61fea6: Use the same code to automatically create outbound NAT rules when mode change to manual, ticket #2416
- 05:24 PM Revision e4791418: Add gettext() to recently added strings
- 05:09 PM Revision 3bb23264: Add an option to return outbound NAT automatic to nat hosts with description, ticket #2416
- 12:09 PM Revision 9bed0fcd: Add subnet to 0.0.0.0 otherwise it's not added to table, ticket #2416
- 11:56 AM Revision c437485d: Make sure automatic rules are created even if mode is not set, ticket #2416
-
09:37 AM Bug #3326 (New): IPv6 only PPPoE connection
- pfSense version: 2.1-RELEASE
I have discovered that it is impossible to have IPv6 only PPPoE connection. PPP keeps r... -
05:10 AM Bug #3324 (Rejected): NTP Server listens on all interfaces despite that fact there is a configured interface to listen on
- ntpd binds all interfaces, but listen only on the interfaces you choose. This is defined on ntpd.conf. You can check ...
11/16/2013
-
06:34 PM Bug #2712 (Resolved): Openvpn and Quagga cause route collision and race condition
- For those interested in implementing the fix: After updating your Quagga package, edit each interconnect interface (e...
-
06:00 AM Feature #3325 (Closed): MTU Option for PPTP VPN
- In 2.1-RELEASE version, the mtu of PPTP VPN has a fixed value which stored at line 783 of /var/etc/pptp-vpn/mpd.conf
... -
02:47 AM Bug #3324 (Rejected): NTP Server listens on all interfaces despite that fact there is a configured interface to listen on
- I've have configured NTP Server to listen only on LAN interface but it binds to all available interfaces.
11/15/2013
- 09:30 PM Revision 6b1f9a99: Many fixes on privileges, ticket #3216:
- - Remove unused privilege page-diagnostics-logs-wireless
- Remove duplicated privileges
- Fix limiter-info, pf-info a... - 09:21 PM Revision 7997ed44: Many fixes on privileges, ticket #3216:
- - Rename some privileges:
page-diag-system-activity => page-diagnostics-system-activity
page-interfacess-groups... - 06:20 PM Revision 2d845db7: Merge pull request #855 from ExolonDX/branch_01
- Tidy up the "Helper Icons"
-
01:47 PM Bug #3322 (Resolved): Update from 2.0.x to 2.1 fails with disk full.
- This has already been fixed for a few weeks in RELENG_2_1 and master.
-
06:10 AM Bug #3322 (Resolved): Update from 2.0.x to 2.1 fails with disk full.
- System with RRD graphs enabled.
System has more than 3 interfaces.
Update from 2.0.x to 2.1 fails with disk full ... -
12:25 PM pfSense Packages Bug #3323 (Resolved): BIND, Reverse Zones and Register DHCP static mappings.
- BIND 9.9.4 pkg v 0.3.2 with "Register DHCP static mappings" on does not respect Reverse Zone. After applying changes ...
-
12:23 PM Bug #3309 (Resolved): wrong routing on multidsl+multiopenvpn
-
05:03 AM Bug #3309: wrong routing on multidsl+multiopenvpn
- yes, I do!
I tested the fix on 2.1-RELEASE and now both VPNS work. -
11:22 AM Bug #3216: PFSense 2.1 - Captive Portal Zone - is not avaible in user effective privileges
- And Edit Allowed hostnames is mistakenly defined for Allowed IPs page:
$priv_list['page-services-captiveportal-all... -
11:17 AM Bug #3216: PFSense 2.1 - Captive Portal Zone - is not avaible in user effective privileges
- Okay, I think I might have found the glitch: In the array it's defined twice, once for MAC addresses and again undern...
-
11:11 AM Bug #3216: PFSense 2.1 - Captive Portal Zone - is not avaible in user effective privileges
- Thanks. I have applied this fix (nb: less typo "Captiveprotal" and this works, however, have since noticed that it do...
11/14/2013
-
09:49 PM Bug #3321 (Resolved): IPSEC failure on modem reset, automatic reconnection is broken, must manually restart racoon service
- This problem did not exist in 2.0.3
How to reproduce:
1. Cable Modem: Motorola Surfboard SB6120 (any other is lik... -
09:06 PM Revision 2206f1b9: Added support for City Network to Dynamic DNS.
- City Network is a Swedish web hosting company.
They provide a dynamic DNS service for their customers.
This service u... - 06:28 PM Revision a2f0b7c1: Move automatic rules to a separate table, ticket #2416
- 05:54 PM Revision 2b41df9c: Provide a more safe way to avoid pw userdel being interactive because of a crontab existance
- 05:54 PM Revision 0f84dee3: Revert "local_sync_accounts: provides empty STDIN to pw userdel command"
- This reverts commit c6b156bfa537754d079868653ef3561eb1330d8c.
- 05:38 PM Revision 33bcbe5a: Merge pull request #856 from ExolonDX/branch_02
- Tidy up "interface_statistics.widget.php"
- 02:37 PM Revision bef388a7: Show advanced outbound rules and inform user what are being used and what are being ignored. It should fix #2416
- 02:34 PM Revision 3afcc238: Split automatic to nat hosts fill into a function to be able to call it from other place, ticket #2416
- 01:48 PM Revision 94c52ff8: Tidy up "interface_statistics.widget.php"
- Remove padding surrounding the main table, makes the widget have the
same "look and feel" as the other widgets. - 01:44 PM Revision 17b8c60a: Tidy up the "Helper Icons"
- The "Helper Icons" at the top right of some service pages at present
produces 30+ HTML errors/warnings, this is due t... - 12:38 PM Revision c39c8b8f: Remove unused variables and fix automatic nat to alias-address
-
12:19 PM pfSense Packages Feature #3318: Ability to disable "verify-x509-name"
- All OK. Thanks!
-
12:08 PM pfSense Packages Feature #3318: Ability to disable "verify-x509-name"
- FYI- a file apparently didn't get into my final commit, but it's there now.
-
11:46 AM pfSense Packages Feature #3318: Ability to disable "verify-x509-name"
- http://forum.pfsense.org/index.php/topic,69219.0.html
-
11:33 AM pfSense Packages Feature #3318: Ability to disable "verify-x509-name"
- Did you actually choose the option to use tls-remote when exporting after updating the package? "auto" will only use ...
-
11:23 AM pfSense Packages Feature #3318: Ability to disable "verify-x509-name"
- Makes no difference.
-
11:50 AM pfSense Packages Feature #3320 (Closed): HAVP does not honor FW Gateway rules
- Hello,
I have pfSense 2.1 setup with 2 WANs, configured for failover with Gateway groups.
My computers are gettin... -
10:59 AM Feature #2416: Hybrid NAT mode that is a mix of Auto+Manual
- @It's such a big change for a minor release, what is expected to have only bug and security fixes@
Yes, looking at t... -
09:23 AM Feature #2416 (New): Hybrid NAT mode that is a mix of Auto+Manual
- Found a few issues with it after trying to break it a few ways:
* If there is no "mode" tag, there will be no back... -
08:58 AM Feature #2416: Hybrid NAT mode that is a mix of Auto+Manual
- Phillip Davis wrote:
> This is a great thing. I have places where I used Manual for a small reason. Then I add anoth... -
08:40 AM Feature #2416 (Feedback): Hybrid NAT mode that is a mix of Auto+Manual
- Applied in changeset commit:bef388a70dffca0074d82cbd0f709c04c726248f.
-
05:58 AM Feature #2416: Hybrid NAT mode that is a mix of Auto+Manual
- This is a great thing. I have places where I used Manual for a small reason. Then I add another LAN at that site and ...
- 10:19 AM Revision 34f95977: Merge pull request #854 from icyfork/provides_empty_STDIN_to_pw_command
- local_sync_accounts: provides empty STDIN to pw userdel command
-
06:16 AM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
- Confirmed. With VLAN I could reproduce the issue.
-
04:05 AM Bug #3319 (Closed): automatically cleared ip addresses
- There is a strange case about ip address definition.
For example:
192.168.1.1 is a CARP IP
192.168.1.2 is alias...
11/13/2013
-
03:20 PM pfSense Packages Feature #3318 (Feedback): Ability to disable "verify-x509-name"
- Applied in changeset commit:1a533cc04b825769bf2c8a83f574894132fe9ba4.
- 12:36 PM Revision 4e38f1c2: Remove unused variables and fix automatic nat to alias-address
- 12:21 PM Revision ed25d803: Add missing count increment
- 09:45 AM Revision eef01b14: Add hybrid and disabled outbound NAT, fixes #2416:
- - Add 2 new outbound NAT modes, hybrid and disabled, manual and advanced
keep working the same way
- Hybrid mode ap... -
03:52 AM Feature #2416 (New): Hybrid NAT mode that is a mix of Auto+Manual
- Still have some changes to push, keep it as new for now
-
03:50 AM Feature #2416 (Feedback): Hybrid NAT mode that is a mix of Auto+Manual
- Applied in changeset commit:eef01b14df77186f9c1205e9e5cb83f80407d7fd.
-
02:30 AM Bug #2651: traffic RRDs broken after upgrade to 2.1
- Remind to Reset RDD Data after applying the patch.
11/12/2013
- 11:52 PM Revision d5ab3af4: Fix whitespaces and indent
- 11:29 PM Revision c6b156bf: local_sync_accounts: provides empty STDIN to pw userdel command
- The /usr/sbin/pw command may wait for user input. For example,
if there is a manual crontab settings for :foobar acco... - 07:46 PM Revision 858f313d: Fix indent, whitespaces and a close a couple of unbalanced tags
- 05:06 PM Revision d07a2a2a: Handle comma-separated list of remote networks when making vpn_networks table
- If remote_networks for an OpenVPN instance is a list of more than 1 network then none of the networks gets added to t...
- 05:05 PM Revision 7facbef7: Merge pull request #850 from phil-davis/master
- Handle comma-separated list of remote networks when making vpn_networks table
-
02:58 PM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
- Oops... should have read '(both IPV4 and IPV6)'
-
02:57 PM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
- Sorry, that picture didn't come out so well. Essentially I have a two port pfSense box. One port is LAN and one port ...
-
02:48 PM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
- Yes it happens consistently. The HOME interface is one of two vlans configured on the em1 lan interface. The em1 inte...
-
12:37 PM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
- I was not able to reproduce it here. Is it happening all the time on interface HOME? Could you give me more details a...
-
01:38 PM Bug #3316: Usermanager: No way to assign permissions to Freeradius/user pages
- sorry, u can indicate me what is the ticket already opened?
thanks,
Luigi Celeste -
01:30 PM Bug #3316 (Rejected): Usermanager: No way to assign permissions to Freeradius/user pages
- there is already a feature request ticket open on adding specific package permissions
-
05:17 AM Bug #3316 (Rejected): Usermanager: No way to assign permissions to Freeradius/user pages
- Hi everyone,
I would to implement the possibility to assign privileges in user manager so I could assign the privi... -
01:20 PM Bug #3147: Adding new interface can cause issues
- Ermal,
This this need to be resubmitted as a feature request then? -
01:18 PM pfSense Packages Feature #3318: Ability to disable "verify-x509-name"
- It's OpenWRT and DD-WRT yes. Some LTS linux distributions are also working on 2.2.
-
01:11 PM pfSense Packages Feature #3318: Ability to disable "verify-x509-name"
- Any OpenVPN 2.3-based client will work, which is most of them now. Or it should be.
Aside from older Phones (e.g. ... -
12:33 PM pfSense Packages Feature #3318: Ability to disable "verify-x509-name"
- Talking about Openvpn export.
-
12:32 PM pfSense Packages Feature #3318 (Resolved): Ability to disable "verify-x509-name"
- This option is not available in most clients. Would be better to have it disabled (by default) in the export GUI.
... - 12:45 PM Revision c4421dfa: Add an option to set no-sync on rules to keep states from being synced via pfsync. Fix #2501
-
11:59 AM Bug #3309 (Feedback): wrong routing on multidsl+multiopenvpn
- Pull request was merged, could you confirm that it fixed the issue?
-
11:40 AM Bug #2712 (Feedback): Openvpn and Quagga cause route collision and race condition
- Applied in changeset pfsense-packages:commit:63d03dab164bb44ce4747629f14a022086aac3ec.
-
07:10 AM Bug #3317 (Rejected): ntpd sets stratum 16 (unsynced) when selected to listen on multiple interfaces
- Somehow ntpd sets stratum 16 number if one selects to listen on multiple interfaces
and virtual IPs. If it only list... -
06:50 AM Feature #2501 (Feedback): Add no-sync option for firewall rules
- Applied in changeset commit:c4421dfa4fa1eb6c52f7135378e639e66ec9b238.
-
03:06 AM Feature #1189: Gateway: Multiple monitor ips
- Probably don't need advanced parameters on a per-monitor IP basis. It would be extremely unusual to have a need for t...
Also available in: Atom