Project

General

Profile

Activity

From 02/20/2014 to 03/21/2014

03/21/2014

11:27 PM Feature #3541: Add "Stateless DHCP" to Router Advertisements
Please delete this request. I have figured out how to use Github pull request and submitted a pull request to have my... Aqueeb Qadri
06:45 PM Feature #3541 (Closed): Add "Stateless DHCP" to Router Advertisements
Hi,
I just wanted to add Stateless DHCP as an option to the drop down list of Router Advertisement modes. Its a fa...
Aqueeb Qadri
08:38 PM Revision de22e9ca: syntax error
ayvis
06:24 PM Revision 6b5c8143: Add TXT Support
Warren Baker
06:07 PM Revision ae5bbb64: Fix file name for domain overrides and ensure trust anchor is referencing the correct file.
Warren Baker
06:02 PM Revision 19b1ea6c: Use the correct xml tag to check against
Warren Baker
06:02 PM Revision 7e95984f: Ensure options are still checked after post
Warren Baker
12:31 PM Revision 9ebe5b7c: Detect Zones and Cores for thermal sensors using regex, it fixes #3337
Renato Botelho
12:25 PM Revision a6bb4e06: Detect Zones and Cores for thermal sensors using regex, it fixes #3337
Renato Botelho
10:29 AM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
On 2.2 the default DNS Resolver will be Unbound, so you may want to test using that package and if the behavior is st... Jim Pingle
10:27 AM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
Jim, Chris and Doktor Notor,
Thanks for all your focus here. It has led to a discovery and a suggested change to ...
Harry Coin
08:50 AM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
All pointing to pfSense for DNS (hostnames replaced with OS):
Pointing to my edge router (127.0.0.1 localhos...
Jim Pingle
08:47 AM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
Afraid we'd have to go back to "fix your domain to NOT use .local", or fix your Debian/Ubuntu boxes. Since:... Doktor Notor
08:38 AM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
Doktor Notor, if it was just my little box I would be pleased to do as you suggest.
However in situations where pe...
Harry Coin
08:26 AM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
Well, now, let's see, what the braindead script does:... Doktor Notor
08:24 AM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
To Chris's point:
root@server1:~# host -t SOA local. 8.8.8.8
Using domain server:
Name: 8.8.8.8
Address: 8.8....
Harry Coin
08:08 AM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
Is the response:
root@server1:~# host -t SOA local.
local has SOA record local. nobody.localhost. 42 86400 43200 ...
Harry Coin
08:00 AM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
Gentlemen:
1. Every single ubuntu, debian, gnome, xfce and other linux distro that packages the "Network Manager" ...
Harry Coin
07:17 AM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
Oh, and BTW, the proper thing to do would be to check for NXDOMAIN, not doing utter nonsense such as... Doktor Notor
07:10 AM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
BTW, there are multiple bug reports against this BS script check, like
- https://bugs.debian.org/cgi-bin/bugreport...
Doktor Notor
06:52 AM Bug #3539 (Rejected): dnsmasq responds to domain 'local', breaks avahi
The entire description here isn't true. I suspect as Doktor noted you're using .local as your domain. Otherwise you h... Chris Buechler
07:41 AM pfSense Packages Bug #3527: NRPEv2 package distributing empty xml and missing files
I suspect it's trying to get there via v6 for some reason, given the "no route to host" when you clearly have a v4 ro... Chris Buechler
07:31 AM pfSense Packages Bug #3533: bind package restores outdated config.xml
I've never seen a config.xml.bad.
Besides, the erroneously restored config is way older than the last known good, ma...
Andreas Pflug
07:20 AM pfSense Packages Bug #3533: bind package restores outdated config.xml
You can also check if a /conf/config.xml.bad file is present when it happens, this file would be the broken XML that ... Renato Botelho
07:17 AM pfSense Packages Bug #3533: bind package restores outdated config.xml
All I can see from the config history is that after my last sane change "(system): save result config file for zone o... Andreas Pflug
06:57 AM pfSense Packages Bug #3533: bind package restores outdated config.xml
That's what would happen if the package corrupted the XML, it would restore from the last good backup. Is it logging ... Chris Buechler
07:30 AM Bug #3337: Dashboard Thermal Sensors use "unfriendly names" for Core >= 4
Applied in changeset commit:9ebe5b7c271939a4e48e9cd3f0fdb8f3ebeee432. Renato Botelho
07:30 AM Bug #3337 (Feedback): Dashboard Thermal Sensors use "unfriendly names" for Core >= 4
Applied in changeset commit:a6bb4e06551224137312b60dfc7db5c06581d35f. Renato Botelho
07:25 AM Bug #3531 (Rejected): WAN to VIP on WAN traffic routing.
that's the expected and correct behavior where you don't have IP alias (or CARP, though don't use that in this scenar... Chris Buechler
07:22 AM Feature #3515: Windows OpenVPN clients require register-dns to properly use a DNS server set by Pfsense
Feature since it works as it should. Probably a good idea to add as a checkbox so people realize it exists without di... Chris Buechler
07:18 AM Bug #3517 (Feedback): VPN re
The service gets restarted when the NIC comes back up. That definitely works in general. The failure to start in your... Chris Buechler
07:12 AM Feature #3522: Option to set CARP interfaces to 'maintenance mode', persisting through a reboot so the primary machines stays as backup/inactive
It hasn't been rejected because it's not needed (though Ermal said that initially, I know that's not the case from ex... Chris Buechler
07:03 AM Bug #3524 (Feedback): [IPv6] SSDP and LLMNR multicast traffic blocked on LANs
That seems to be the appropriate behavior unless I'm missing something. What do you think it should do? You can alway... Chris Buechler
06:59 AM Feature #3532 (Rejected): please add a option for set time for pdate Dynanimc dns
This isn't necessary, every time an IP changes, it checks whether it's changed and updates if needed. Maybe something... Chris Buechler
06:41 AM Feature #3534: DDNS using arbitrary zone primary
Please submit the pull request on the master branch, the RELENG_2_1 branch is for bug fixes only. Chris Buechler
06:16 AM Feature #3534: DDNS using arbitrary zone primary
Please submit proposed patches using github pull request tool. It's much easier to developers to review and apply cha... Renato Botelho
05:07 AM Revision 141566ff: remove unused supportedbybsdperimeter tag
Chris Buechler
05:06 AM Revision 6dc2a349: remove unused supportedbybsdperimeter tag
Chris Buechler
05:02 AM Revision ebfb0929: s/BSDP/ESF/
Chris Buechler
04:59 AM Revision 837c9f6d: s/BSDP/ESF/
Chris Buechler
04:26 AM Bug #3540 (Resolved): 100% CPU-Issue when IPv6 DHCP with stateless addresses is active
The process check_reload_status takes 100% CPU-Load
if the following conditions are given:
Pfsense Relase:
2.1-...
Ph. T

03/20/2014

11:34 PM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
Of course the bug in this case applies no matter what the pfsense domain name is. The first line in EVERY pfsense /e... Harry Coin
11:23 PM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
Here's a better idea - do NOT use .local domain if you want to use avahi? Sheesh, it's even written as a hint in the ... Doktor Notor
10:58 PM Bug #3539: dnsmasq responds to domain 'local', breaks avahi
server=/local/8.8.8.8
works faster. It's a temporary useful hack, not an answer.
Harry Coin
10:47 PM Bug #3539 (Rejected): dnsmasq responds to domain 'local', breaks avahi
Ubuntu / debian and related network manager issues this command at startup
host -t soa local.
in /usr/lib/avahi...
Harry Coin
08:53 PM Bug #3538: CaptivePortal passthrumac delete captiveportal_get_ipfw_passthru_ruleno and captiveportal_get_dn_passthru_ruleno functions
It will be much easier to quickly review your change if you edit on GitHub and submit a pull request: https://github.... Phillip Davis
06:29 PM Bug #3538: CaptivePortal passthrumac delete captiveportal_get_ipfw_passthru_ruleno and captiveportal_get_dn_passthru_ruleno functions
Finally fully working code is below... Sabri Arslan
06:08 PM Bug #3538: CaptivePortal passthrumac delete captiveportal_get_ipfw_passthru_ruleno and captiveportal_get_dn_passthru_ruleno functions
cut -d \" \" -f 20 not true still searching Sabri Arslan
05:12 PM Bug #3538 (Resolved): CaptivePortal passthrumac delete captiveportal_get_ipfw_passthru_ruleno and captiveportal_get_dn_passthru_ruleno functions
In captive portal i successfully added passthrumac. But when i want to delete mac it can't delete ipfw pipe and rule.... Sabri Arslan
07:59 PM Revision 75e6d1b2: Only display config title if option is enabled
Warren Baker
07:57 PM Revision be5aa310: Rather put forwarding for DNS servers into the configuration file
Warren Baker
07:57 PM Revision 0786eb3a: Make sure post variables are available for form re-population
Warren Baker
07:39 PM Revision 16da09a2: Fix display of port
Warren Baker
07:34 PM Revision d12889b0: Ensure if port is configured it is then used
Warren Baker
07:34 PM Revision fff4a9d1: Various cleanups and shuffle of fields
Warren Baker
07:34 PM Revision d5ee0208: Add privileges for accessing DNS Resolver
Warren Baker
07:28 PM Revision 1c62178a: Use array_flip even for the package parsers
Ermal LUÇI
07:26 PM Revision 1b34f8a7: Add require_once where needed to avoid redeclaration from nested includes
Ermal LUÇI
06:54 PM Revision 00a6fcb7: Configure first the vhid and than pass the vhid when configuring the carp this makes the ip assigned to carp as well
Ermal LUÇI
06:38 PM Revision a63e5ead: Remove balancing reference that does not exist anymore
Ermal LUÇI
06:27 PM Revision b58cb288: Fix abvious error in string building
Ermal LUÇI
06:23 PM Bug #3337: Dashboard Thermal Sensors use "unfriendly names" for Core >= 4
Just a note that this is still an issue under the newest 2.1.1-PRERELEASE builds.
I had forgotten about this since...
Jason Litka
05:42 PM Revision fbacfb90: Clarify note on limiter queue weight to state that higher values get a larger share.
Jim Pingle
04:19 PM Revision e3b98f81: Do not garble the error logging message
Ermal LUÇI
04:18 PM Revision 311464a1: Do not garble the error logging message
Ermal LUÇI
04:09 PM Revision b6f67168: Avoid placing an empty "interface listen" directive in ntpd.conf
Jim Pingle
04:09 PM Revision 8b650e57: Avoid placing an empty "interface listen" directive in ntpd.conf
Jim Pingle
03:59 PM Revision bd53b624: Try to restore last working ruleset rather than staying without configuration at all
Ermal LUÇI
03:56 PM Revision 3ec2fca1: Try to restore last working ruleset rather than staying without configuration at all
Ermal LUÇI
12:17 PM Bug #3537 (Resolved): Bandwidth values are forced by the Traffic Shaper Wizard but are not required nor used for PRIQ
When using PRIQ, the bandwidth values for items such as VoIP prioritization are not used but they are still forced/re... Jim Pingle
12:10 PM Bug #3536 (Closed): Using CBQ in the shaper wizard creates an invalid ruleset no matter which options are given
Since the base problem is the same as #3535, this can be closed in favor of the other ticket. Jim Pingle
11:52 AM Bug #3536: Using CBQ in the shaper wizard creates an invalid ruleset no matter which options are given
This apparently can happen if you select "LAN" as the "WAN" using this wizard since "LAN" is assumed to be LAN, so it... Jim Pingle
11:43 AM Bug #3536 (Closed): Using CBQ in the shaper wizard creates an invalid ruleset no matter which options are given
Using the primary traffic shaper wizard (traffic_shaper_wizard.xml) I am unable to create a valid ruleset with any co... Jim Pingle
11:54 AM Bug #3535: Selecting "LAN" as "WAN" in Multi-WAN Traffic Shaper wizard breaks the ruleset
The main problem with this was actually the wrong interface selected in the wizard.
If you select "LAN" as the "W...
Jim Pingle
11:30 AM Bug #3535 (Resolved): Selecting "LAN" as "WAN" in Multi-WAN Traffic Shaper wizard breaks the ruleset
Using the traffic shaper wizard with PRIQ, if you choose to give a protocol lower priority on the "Raise or Lower Oth... Jim Pingle
11:06 AM Feature #3534 (New): DDNS using arbitrary zone primary
Currently, the zone primary is taken from the client zone configuration (fields DNS servers for primary and secondary... Andreas Pflug
10:56 AM pfSense Packages Bug #3533 (Closed): bind package restores outdated config.xml
Apparently under some circumstances the bind package re-creates config.xml from old values which made me drop using i... Andreas Pflug

03/19/2014

10:44 PM Revision 691a0346: syntax errors
ayvis
10:38 PM Revision 91f026b0: replaced uppercase html tags with lowercase
js files saved as UTF-8 / LF
language="JavaScript" deprecated, replaced with type="text/javascript"
ayvis
09:28 PM Revision 7a433db2: Merge pull request #1030 from ayvis/master-br-patch
replaced BR with br in js Renato Botelho
09:22 PM Feature #3532: please add a option for set time for pdate Dynanimc dns
update* Luis Couto
09:21 PM Feature #3532 (Rejected): please add a option for set time for pdate Dynanimc dns
hi ,
some peoples have a bad isp , for example my ip change 3-4 times for day ,
and pfsense have a long time fo...
Luis Couto
09:12 PM Revision ec879e3d: replaced BR with br
replaced uppercase html tags with lowaercase ayvis
03:50 PM Revision f3bdba41: Merge pull request #907 from PiBa-NL/openvpn_client_usercredentials
openvpn, allow for entering client user credentials in the WebGUI Ermal Luçi
03:15 PM Revision c3e4ef74: Merge pull request #953 from N0YB/Gateway_Quality_RRD
Fix gateway quality RRD to have the correct granularity and be consistent with the pfSense graphs set. Renato Botelho
01:13 PM Bug #3531 (Rejected): WAN to VIP on WAN traffic routing.
2.1.1-PRERELEASE (i386)
built on Wed Mar 12 06:06:11 EDT 2014
FreeBSD 8.3-RELEASE-p14
I have a static IP and a...
Mark Wharton
11:04 AM pfSense Packages Bug #3530 (Needs Patch): TinyDNS creates incorrect NS records
pfsense: 2.1-RELEASE (i386)
dns-server: 1.0.6.18
When enabling the "Automatic PTR entry" for an A record, an expl...
Chris M
08:30 AM Bug #3529 (Rejected): Cannot resolve certain addresses using DNS Forwarder; public DNS it forwards to is fine
You have DNS Rebinding protection enabled (System > Advanced, Admin tab). The A record for ffazva-es001-01.internal.f... Jim Pingle
08:22 AM Bug #3529 (Rejected): Cannot resolve certain addresses using DNS Forwarder; public DNS it forwards to is fine
The following address is an example of an A record that I cannot resolve using the pfSense DNS forwarder:
ffazva-e...
David Pfeffer

03/18/2014

07:09 PM Revision 1d7ba683: replaced <br>, <br/> with <br /> in ANSI encoded files. Converted these files to UTF-8
ayvis
06:09 PM Revision e538fc18: Automatic outbound NAT rules skip openvpn interfaces, lets skip them when creating the first set of manual rules too. It fixes #3528
Renato Botelho
02:12 PM pfSense Packages Bug #3527 (Closed): NRPEv2 package distributing empty xml and missing files
I'm closing the issue since it seems to be a network issue and not a pfSense issue. The best place to look for help w... Renato Botelho
01:37 PM pfSense Packages Bug #3527: NRPEv2 package distributing empty xml and missing files
When I try and 'fetch' the file from the pfsense install I'm having issues with, after about 30 seconds I get this:
...
Gyles Garber
12:29 PM pfSense Packages Bug #3527 (Feedback): NRPEv2 package distributing empty xml and missing files
Renato Botelho
12:28 PM pfSense Packages Bug #3527: NRPEv2 package distributing empty xml and missing files
Maybe the box you ran wget doesn't know the CA, but inside pfSense you do not have this error:... Renato Botelho
11:36 AM pfSense Packages Bug #3527: NRPEv2 package distributing empty xml and missing files
This is indeed an issue with the certificate. I was able to upload the nrpe2.xml file manually to the pfsense server... Gyles Garber
11:12 AM pfSense Packages Bug #3527: NRPEv2 package distributing empty xml and missing files
I think I may have found why the xml hasn't been downloading correctly. I tried downloading from source on a differe... Gyles Garber
10:25 AM pfSense Packages Bug #3527 (Closed): NRPEv2 package distributing empty xml and missing files
Version: 2.1-RELEASE (amd64)
When installing NRPEv2 from package manager GUI, the package install completes succe...
Gyles Garber
01:10 PM Bug #3528 (Feedback): Internally generated automatic outbound NAT rules not the same as those generated when Manual is clicked
Applied in changeset commit:e538fc18448bc2444ea3dce995aa90b717459043. Renato Botelho
10:38 AM Bug #3528 (Resolved): Internally generated automatic outbound NAT rules not the same as those generated when Manual is clicked
Ref forum: https://forum.pfsense.org/index.php?topic=73727.0
The 2.1.1 code in /etc/inc/filter.inc filter_nat_rules_...
Phillip Davis
10:20 AM Bug #3447: pfSense 2.1 Captive Portal RADIUS Accouting records not sent to RADIUS Server
Richard Gate wrote:
> Sorry I misunderstood when you said "it was already fixed". I thought you meant before 3447, n...
Renato Botelho
09:53 AM Bug #3447: pfSense 2.1 Captive Portal RADIUS Accouting records not sent to RADIUS Server
Sorry I misunderstood when you said "it was already fixed". I thought you meant before 3447, not its been fixed since... Richard Gate
09:41 AM Bug #3447: pfSense 2.1 Captive Portal RADIUS Accouting records not sent to RADIUS Server
It was already fixed as you can see on commit:846bedf994079102c29cd140b41b2d1deb466a13 It's better if you gitsync or ... Renato Botelho
09:24 AM Bug #3447: pfSense 2.1 Captive Portal RADIUS Accouting records not sent to RADIUS Server
I'm using 2.1 with the patch for Bug #3447 applied. The patch itself has the error in it;
$insertquery .= "{$sessi...
Richard Gate
09:17 AM Bug #3447: pfSense 2.1 Captive Portal RADIUS Accouting records not sent to RADIUS Server
It was already fixed, are you using the latest 2.1.1 snapshots to test? Renato Botelho
08:25 AM Bug #3447: pfSense 2.1 Captive Portal RADIUS Accouting records not sent to RADIUS Server
Looks like its at line 1922 in /etc/inc/captiveportal.inc Richard Gate
08:19 AM Bug #3447: pfSense 2.1 Captive Portal RADIUS Accouting records not sent to RADIUS Server
Hi, tested this on a new 2.1 install. There is a small error in construction of the query used to update the database... Richard Gate
10:19 AM Bug #3441 (Resolved): Non-alphanumeric characters cause issues with Captive Portal
Renato Botelho
10:13 AM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
Oh, one last thing, definitely "change it for all fields that accepts non-alphanumeric chars" is something that defin... Doktor Notor
10:08 AM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
ISO-8859-1? In 2014? Oh well... forget this bug report. Doktor Notor
09:59 AM Bug #3441 (Feedback): Non-alphanumeric characters cause issues with Captive Portal
It happens because the char is not part of ISO-8859-1, and all pages on pfSense use this encoding. If you insert the ... Renato Botelho

03/17/2014

09:25 PM Revision 22889e9e: Disable default allow incoming rules for 6to4 and 6rd interfaces. This rule unintentionally allows all services on the interface to be reachble and maybe more!
Ermal LUÇI
09:24 PM Revision d5d22d6e: Disable default allow incoming rules for 6to4 and 6rd interfaces. This rule unintentionally allows all services on the interface to be reachble and maybe more!
Ermal LUÇI
03:31 PM Bug #3526: miniupnpd[25277]: DIOCGETSTATUS: Operation not supported by device
That was for _pfSense_ 2.1 in its beta stages. Not FreeBSD directly. Jim Pingle
03:19 PM Bug #3526: miniupnpd[25277]: DIOCGETSTATUS: Operation not supported by device
why then created a issue
https://redmine.pfsense.org/issues/2527
cybermerlin cybermerlin
03:17 PM Bug #3526 (Rejected): miniupnpd[25277]: DIOCGETSTATUS: Operation not supported by device
If you need help running this on FreeBSD, please post on a FreeBSD forum. This is for pfSense, not FreeBSD and we do ... Jim Pingle
03:16 PM Bug #3526: miniupnpd[25277]: DIOCGETSTATUS: Operation not supported by device
Dude, this ain't FreeBSD bug tracker, move on. *facepalm* Doktor Notor
03:14 PM Bug #3526 (Rejected): miniupnpd[25277]: DIOCGETSTATUS: Operation not supported by device
uname -a
FreeBSD ghost.ittown 10.0-RELEASE FreeBSD 10.0-RELEASE #0 r260789: Fri Jan 17 01:46:25 UTC 2014
Mar 1...
cybermerlin cybermerlin
02:55 PM Bug #2527: Miniupnpd starts but isn't working
There aren't any official images for FreeBSD 10.x yet. This ticket was for 2.1 only (and is very old). Jim Pingle
02:50 PM Bug #2527: Miniupnpd starts but isn't working
miniupnpd[2507]: DIOCGETSTATUS: Operation not supported by device
after upgrade freebsd to 10.0 release #0 and por...
cybermerlin cybermerlin
02:17 PM Revision 7f7626ba: Merge branch 'master-br' of https://github.com/ayvis/pfsense into ayvis-master-br
Renato Botelho
12:55 PM Feature #3523: Webgui login - no beeps anymore.
Ok, thank you, this is the best answer :)
Shame on me! :)
Vladimir Suhhanov
12:29 PM Feature #3523: Webgui login - no beeps anymore.
It makes sense. When a user authenticate on web interface, syslog sends a log message to all logged in consoles, and ... Renato Botelho
10:58 AM Feature #3523: Webgui login - no beeps anymore.
Ok I found that this BEEP is disabled by enabling option "Password protect the console menu", so this is not messed u... Vladimir Suhhanov
10:49 AM Feature #3523: Webgui login - no beeps anymore.
On 2.1 installed, my PC speaker on pfsense box beeps every time I log onto pfsense webgui, with latest 2.1.1 builds i... Vladimir Suhhanov
07:38 AM Feature #3523 (Rejected): Webgui login - no beeps anymore.
I checked and this didn't change, I could also reproduce the bell here. Maybe it's something that has changed on your... Renato Botelho
04:19 AM Feature #3523 (New): Webgui login - no beeps anymore.
Thanks for clarification Doktor, I'll take a look Renato Botelho
04:09 AM Feature #3523: Webgui login - no beeps anymore.
Renato, I think you misunderstood the description. Hazard to say he's talking about this: http://kb.site5.com/shell-a... Doktor Notor
12:41 PM pfSense Packages Bug #3525: Dansguardian Writing Script Garbage (CsrfMagic.end)
The Dansguardian author/maintainer will need to add code to that page in the package to disable CSRF for that specifi... Jim Pingle
12:13 PM pfSense Packages Bug #3525 (Closed): Dansguardian Writing Script Garbage (CsrfMagic.end)
On a clean install of pfSense 2.1, I have installed the following:
* squid 2.7.9 pkg v.4.3.3
* Sarge 2.3.6_2 pkg ...
William Bell
10:15 AM Bug #3524 (Rejected): [IPv6] SSDP and LLMNR multicast traffic blocked on LANs
As mentioned almost 3 years ago at https://forum.pfsense.org/index.php?topic=38641.0
The logs get flooded with zil...
Doktor Notor
10:04 AM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
Christ, this Redmine thing sucks...... Doktor Notor
10:03 AM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
@Warren: Ah... Well, looks pretty clear now. Obvious crap there.... Doktor Notor
09:27 AM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
Doktor Notor wrote:
> I don't know what to post here, since obviously the offending lines are gone and restored to p...
Warren Baker
09:22 AM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
I tried again on another box. Still, the same issue. ... Doktor Notor
09:12 AM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
Well, this line is the closing tag:... Doktor Notor
07:40 AM Bug #3441 (New): Non-alphanumeric characters cause issues with Captive Portal
Doktor Notor wrote:
> The only relevant thing logged is this:
>
> [...]
Could you share content of this line? ...
Renato Botelho
07:39 AM Bug #3521 (Resolved): services_captiveportal_vouchers.php shows no comment for a roll
Renato Botelho

03/16/2014

07:34 PM Feature #3523 (Rejected): Webgui login - no beeps anymore.
pfSense only beep when it boots and when it shutdown. There is an option to disable it on System->Advanced->Notificat... Renato Botelho
01:54 AM Feature #3523 (Rejected): Webgui login - no beeps anymore.
Installed letest build and found that pfsense does not beep anymore when I login to webgui. I know that not everyone ... Vladimir Suhhanov

03/15/2014

09:18 PM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
Also looks like the Invalid Voucher Message/Expired Voucher Message stopped syncing with the master... Doktor Notor
05:05 PM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
The only relevant thing logged is this:... Doktor Notor
05:03 PM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
Sorry, this is STILL broken with Sat Mar 15 02:43:41 EDT 2014 snapshot. Nothing relevant in /tmp/PHP_errors.log. nano... Doktor Notor
01:45 PM Feature #3522 (Resolved): Option to set CARP interfaces to 'maintenance mode', persisting through a reboot so the primary machines stays as backup/inactive
Option to set CARP interfaces to 'maintenance mode', persisting through a reboot so the primary machines stays as bac... Pi Ba
06:27 AM Bug #3200: IPv6 bugs
The second point is still open to me.... Kevin Bäker
01:12 AM Revision 9c3b8c6e: fix typo
Chris Buechler
01:12 AM Revision 01df4035: fix typo
Chris Buechler
12:36 AM Revision 358b6cdc: standardize URLs
Chris Buechler
12:33 AM Revision b1d64b46: standardize URLs
Chris Buechler
12:33 AM Revision 34e2973e: standardize URLs
Chris Buechler
12:30 AM Revision e1a456e6: standardize URLs
Chris Buechler
12:29 AM Revision 1aadf5d5: standardize URLs
Chris Buechler
12:28 AM Revision e5644377: standardize URLs
Chris Buechler
12:28 AM Revision 0734024c: standardize URLs
Chris Buechler
12:21 AM Revision 97b18166: standardize URLs
Chris Buechler
12:19 AM Revision 5579d12a: standardize URLs
Chris Buechler
12:18 AM Revision 5775f324: standardize URLs
Chris Buechler
12:16 AM Revision c3abc75a: standardize on https://www.pfsense.org
Chris Buechler
12:15 AM Revision 184016fc: standardize on https on www.pfsense.org
Chris Buechler
12:10 AM Revision ef459eb7: standardize on https://www.pfsense.org, point to packages.pfsense.org
Chris Buechler
12:08 AM Revision 5721595b: standardize on https://www.pfsense.org
Chris Buechler
12:07 AM Revision d1ec51ba: standardize pfsense.com references to https://www.pfsense.org
Chris Buechler
12:04 AM Revision c7281770: standardize on www.pfsense.org and HTTPS, point package URLs to
packages.pfsense.org Chris Buechler
12:01 AM Revision 7c3cf715: fix white space
Chris Buechler

03/14/2014

11:59 PM Revision 85e92a06: s/http/https/ for www.pfsense.org
Chris Buechler
09:06 PM Revision 03900904: Make the Additional tags that may be supplied compliant with new schema
Ermal LUÇI
09:02 PM Revision 6d84c956: Make the parser more efficient to test for keys rather than searching inside the array
Ermal LUÇI
08:47 PM Revision ffd17097: Unbreak listtags(), it should return regular array
Renato Botelho
08:35 PM Revision 703b1ce1: Correct variable name, while here unset some large var
Ermal LUÇI
08:24 PM Revision 8cd558b6: xhtml Compliance
replaced <br>, <br/> and </br> with <br /> ayvis
01:43 PM Revision 46fb4fe7: Fix #3521, show correct field descr
Renato Botelho
01:43 PM Revision e1d68dde: Fix #3521, show correct field descr
Renato Botelho
01:42 PM Revision 20dad315: Provide upgrade code after changes done for Ticket #3441
Ermal LUÇI
08:50 AM Bug #3521: services_captiveportal_vouchers.php shows no comment for a roll
Applied in changeset commit:46fb4fe77d0076adced1234fdc18725792e842e3. Renato Botelho
08:50 AM Bug #3521 (Feedback): services_captiveportal_vouchers.php shows no comment for a roll
Applied in changeset commit:e1d68dde59717fc5f125796f07070a654e28ec43. Renato Botelho
08:15 AM Bug #3521 (Resolved): services_captiveportal_vouchers.php shows no comment for a roll
In *services_captiveportal_vouchers_edit*.php it shows the correct comment of a roll but not in *services_captiveport... Wolfgang Niggl
08:10 AM Bug #3369: Captive vouchers expire too quickly
I have the same problem. No solution or is it solved in 2.1.1 ?
Where in the code could be this bug?
Wolfgang Niggl
07:52 AM Bug #3520 (Rejected): IPV6 address on LAGG VLAN not reachable
I have a /64 network via GIF .
Lan interface is a LAGG (loadbalancing) interface with 2 VLANS. On ipv4 all works f...
Branko Lukman

03/13/2014

11:20 PM Revision b824ff8d: Merge pull request #1025 from florian-asche/patch-5
Update dyndns.class Renato Botelho
10:27 PM Revision 2bbfa6ed: Merge pull request #1026 from PiBa-NL/plugin_array_item
fix plugin method for packages to allow for multiple plugins in an 'item' array as 'plugin' is not allowed as array i... Ermal Luçi
09:57 PM Revision 7dc42e4a: Update dyndns.class
Florian Asche
08:58 PM Revision 3fe73243: fix plugin method for packages to allow for multiple plugins in an 'item' array as 'plugin' is not allowed as array item by xmlparse.inc
Pi Ba
12:20 PM Bug #3519 (Duplicate): IPv6 - Dynamic IPv6-prefix - After reconnect no new IPv6 prefix
When my ISP there is a reconnect every 24 hours.
After reconnect is assigned no new prefix on the LAN.
The old pr...
Kevin Bäker
07:46 AM Revision dd246dc4: set package URL to https://packages.pfsense.org
Chris Buechler
07:46 AM Revision 4db99d5b: set package URL to https://packages.pfsense.org
Chris Buechler
07:43 AM Revision 1b92cc61: use xmlrpcbaseurl here too, not product_website
Chris Buechler
07:42 AM Revision 7057761c: use xmlrpcbaseurl here too, not product_website
Chris Buechler
07:25 AM Revision 0855a1c6: fix text, remove product_website mentions here since that's not actually used anyway.
Chris Buechler
07:24 AM Revision 541e0b77: fix text, remove product_website mentions here since that's not actually used anyway.
Chris Buechler
07:18 AM Revision f5e09d92: we actually use xmlrpcbaseurl here, not product_website
Chris Buechler
07:18 AM Revision 13e6fb2e: we actually use xmlrpcbaseurl here, not product_website
Chris Buechler
04:46 AM Bug #3518 (Duplicate): Sometimes DHCP hostname registration does not work for a newly registered host
Even if the setup works most of the time (i.e. hosts register their hostname through DHCP, which can then be resolved... Florent Thiery

03/12/2014

09:35 PM Revision f049d45e: Merge pull request #1022 from PiBa-NL/carp_notification
rc.carpmaster/rc.carpbackup notification method for packages. Renato Botelho
09:31 PM Revision cd8f7eee: Update dyndns.class
Only use IPv4_only function if ipv6 is false Florian Asche
06:49 PM Revision d84faccb: Add removed file to obsolete list
Ermal LUÇI
06:49 PM Revision bea918b9: Remove sasycnd remenant file
Ermal LUÇI
06:48 PM Revision 8b4abd59: More removal of racoon from referenced in sources
Ermal LUÇI
06:44 PM Revision 1dcb00bb: Remove remeants of racoon
Ermal LUÇI
06:42 PM Revision 3eeac256: Generate nat rules for ipsec when needed
Ermal LUÇI
04:34 PM Revision 72a8c829: Be more efficient, and ordered about thae tags and also syncrhonize tags with xmlreader
Ermal LUÇI
04:19 PM Revision b79ea46a: Make this a bit more smart rather having the penalty going over explode
Ermal LUÇI
04:03 PM Revision f3f04169: Use descr prepended to voucher fields containing descriptions to have them encoded as CDATA. Fixes #3441
Ermal LUÇI
04:03 PM Revision 1274cfd4: Use descr prepended to voucher fields containing descriptions to have them encoded as CDATA. Fixes #3441
Ermal LUÇI
02:50 PM Revision e5b009b8: Try a different strategy for fixing #3514 just send a HUP to dhcp6 to get it to reload.
Ermal LUÇI
02:49 PM Revision 055fa9e3: Try a different strategy for fixing #3514 just send a HUP to dhcp6 to get it to reload.
Ermal LUÇI
02:48 PM Revision 331166a8: -renamed function to pkg_call_plugins
-added is_array()
-added function header text
-replaced fixed 'plugin_carp' by $plugin_type to allow for generic use
Pi Ba
02:42 PM Revision e41ec584: Improve checks for params 'id', 'dup' and other similar ones to make sure they are numeric integer, also, pass them through htmlspecialchars() before print
Renato Botelho
02:42 PM Revision 0e6cf71b: Improve checks for params 'id', 'dup' and other similar ones to make sure they are numeric integer, also, pass them through htmlspecialchars() before print
Renato Botelho
01:53 PM Bug #3510 (Resolved): Rules Advanced Features Advanced Options allows various invalid data entry
Renato Botelho
01:50 PM Bug #3514 (Resolved): IPv6 - LAN looses Prefix after link event
Ermal Luçi
01:47 PM Bug #3514: IPv6 - LAN looses Prefix after link event
-- resolved --
The "just send a HUP to dhcp6 to get it to reload" change checked in today is a good fix.
https://...
David Williams
11:10 AM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
Applied in changeset commit:f3f04169f860542904f4cb833f0b9da9e5f424a8. Ermal Luçi
11:10 AM Bug #3441 (Feedback): Non-alphanumeric characters cause issues with Captive Portal
Applied in changeset commit:1274cfd47d7c8462becccd5e154457750bc38fbc. Ermal Luçi
10:22 AM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
Can you give information from your system?
/tmp/PHP_errors.log etc....
Ermal Luçi
05:48 AM Bug #3441 (New): Non-alphanumeric characters cause issues with Captive Portal
Renato Botelho
05:33 AM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
Please, reopen this, the issue reported here is not fixed. Doktor Notor
11:06 AM Revision 3b77ba4a: Merge pull request #1024 from phil-davis/RELENG_2_1
Validate rule Advanced Options numeric entries Renato Botelho
05:06 AM Bug #3517: VPN re
i cant edit the topic...
Should be(i guesse) OpenVPN deamon cannot bind interface
Thomas Wouters
05:05 AM Bug #3517 (Closed): VPN re
At a customer they had a modem reset. The OpenVPN didn't come backonline because the interface wasn't available at th... Thomas Wouters
03:44 AM Revision eaa2285c: Validate rule Advanced Options numeric entries
version of pull request #1021 for 2.1 branch Phil Davis

03/11/2014

11:31 PM Revision eaee3af6: rc.carpmaster/rc.carpbackup notification method for packages.
Pi Ba
07:57 PM Revision 49f3f28f: Pass id variable through htmlspecialchars before print it
Renato Botelho
07:57 PM Revision ea44d3ba: Pass id variable through htmlspecialchars before print it
Renato Botelho
05:56 PM Revision 7b4d12dc: Merge pull request #1021 from phil-davis/patch-6
Validate rule Advanced Options numeric entries, it should fix #3510 Renato Botelho
05:32 PM Revision 29d2b4e2: Validate rule Advanced Options numeric entries
This makes sure the user puts in ordinary positive integers like "1" and "42" in these advanced options fields. It pr... Phil Davis
03:40 PM Revision f0014c64: Make this a bit more efficient
Ermal LUÇI
01:00 PM Bug #3510 (Feedback): Rules Advanced Features Advanced Options allows various invalid data entry
Applied in changeset commit:7b4d12dcc92c3968c4440598d229bbef81562121. Anonymous
12:53 PM Revision ce99dba2: Merge pull request #1010 from PiBa-NL/alias_allow_delete
firewall_virtual_ip , allow deleting last ip-alias if interface uses same the subnet. (while CARP-ip is present) Renato Botelho
12:42 PM Revision ac28b62e: Merge pull request #1018 from florian-asche/patch-3
Update services.inc Renato Botelho
11:38 AM Revision 6b13f8d2: Do not delete linklocal address
Renato Botelho
11:38 AM Revision c1846841: Do not delete linklocal address
Renato Botelho
09:40 AM Revision 4c3dafc4: Merge pull request #1020 from phil-davis/patch-5
Make Firewall Rules Advanced Options open if used - 2.1 branch Renato Botelho
08:44 AM pfSense Packages Bug #3516: pfflowd segfaults when netflow version is set to version 9
): /usr/local/sbin/pfflowd -n 192.168.111.12:9995 -d -v9
pfflowd[150]: pfflowd listening on pfsync0
pfflowd[150]: <...
Rich Walchuck
08:40 AM pfSense Packages Bug #3516 (Needs Patch): pfflowd segfaults when netflow version is set to version 9
dmesg |grep flow
pid 16589 (pfflowd), uid 0: exited on signal 11
pid 20764 (pfflowd), uid 0: exited on signal 11
...
Rich Walchuck
06:43 AM Bug #3514 (New): IPv6 - LAN looses Prefix after link event
Renato Botelho
06:42 AM Bug #3509 (Resolved): Rules Advanced Features Advanced Options does not open if data defined
Renato Botelho
06:42 AM Bug #3512 (Resolved): Firewall Rules list page, advanced hover text missing for some advanced rule options
Renato Botelho
06:36 AM Bug #3513: affects 2.1.1, interface 'primary' ip changes to alias-ip when saving interface.
Pi Ba wrote:
> Hmm. it solved the IPv4 issue, but it seems to 'delete' the linklocal IPv6 address fe80::x:y:z now.
...
Renato Botelho
02:39 AM Revision c805e0f3: Make Firewall Rules Advanced Options open if used - 2.1 branch
This is the same code as pull request 997 but for 2.1 branch Phil Davis

03/10/2014

09:26 PM Revision 13c545c2: Merge pull request #1019 from florian-asche/patch-4
Update dyndns.class Ermal Luçi
09:15 PM Revision e6d708fe: Update dyndns.class
IPv4 ONLY? YEAH ;) Florian Asche
09:11 PM Revision 181386d6: Update services.inc
Added CURL setops from dyndns.class Florian Asche
09:06 PM Revision 3c6f29c0: Update services.inc
IPv4 ONLY Florian Asche
08:17 PM Revision 11e4dcc7: Merge pull request #991 from phil-davis/RELENG_2_1
Return GWG IP protocol (version) when no gateway IP - 2.1 version Renato Botelho
07:41 PM Revision 56b40844: Merge pull request #1012 from florian-asche/patch-1
Update services.inc Renato Botelho
06:56 PM Bug #3513: affects 2.1.1, interface 'primary' ip changes to alias-ip when saving interface.
Hmm. it solved the IPv4 issue, but it seems to 'delete' the linklocal IPv6 address fe80::x:y:z now. Pi Ba
12:08 PM Bug #3513 (Resolved): affects 2.1.1, interface 'primary' ip changes to alias-ip when saving interface.
Renato Botelho
09:01 AM Bug #3513: affects 2.1.1, interface 'primary' ip changes to alias-ip when saving interface.
Can confirm this fixes the issue. Thanks. Pi Ba
08:20 AM Bug #3513: affects 2.1.1, interface 'primary' ip changes to alias-ip when saving interface.
Applied in changeset commit:d130cd4674d25fb87ff673482ce215f97b979685. Renato Botelho
08:20 AM Bug #3513 (Feedback): affects 2.1.1, interface 'primary' ip changes to alias-ip when saving interface.
Applied in changeset commit:9aa6ad5c1669b044657b6c6808fae5174ff87460. Renato Botelho
06:42 PM Revision 5244c510: Update services.inc
Prepared to make $hosttocheck configureable Florian Asche
06:18 PM Revision 5d1185ce: Update services.inc
Florian Asche
06:12 PM Revision 52c7f0d4: Fix order of parameters to explode() here
Jim Pingle
06:10 PM Revision e6b1b1c1: Fix order of parameters to explode() here
Jim Pingle
04:21 PM Revision f3988c85: Fix OpenVPN XML section name
Forum https://forum.pfsense.org/index.php?topic=73479.0 Phil Davis
04:21 PM Revision 0756be8b: Merge pull request #1015 from phil-davis/patch-4
Fix OpenVPN XML section name Ermal Luçi
04:03 PM Revision 6258aeeb: Fix OpenVPN XML section name
Forum https://forum.pfsense.org/index.php?topic=73479.0 Phil Davis
03:31 PM Revision cec6e65b: Merge pull request #1004 from phil-davis/patch-3
Add all advanced options to rule table hover text on 2.1 branch Renato Botelho
03:30 PM Revision 9a28723d: Merge pull request #1003 from phil-davis/patch-2
Add all advanced options to rule table hover text Renato Botelho
03:15 PM Revision 7324b14b: Fix for now 'IPv6 - LAN looses Prefix after link event'(forums) with a not elegant solution but works. Probably dhcpv6 client should solve this by itself and generate and event for it. For now just bump dhcpv6 client again to have the prefix interface reconfigured.
Ermal LUÇI
03:12 PM Revision b67e9e62: Fix for now 'IPv6 - LAN looses Prefix after link event'(forums) with a not elegant solution but works. Probably dhcpv6 client should solve this by itself and generate and event for it. For now just bump dhcpv6 client again to have the prefix interface reconfigured.
Ermal LUÇI
01:20 PM Revision 0d8fc8ec: Fixes typo on variable name
Renato Botelho
01:17 PM Revision d130cd46: pfSense_interface_deladdress() only knows how to delete an ip address, not a subnet. It should fix #3513
Renato Botelho
01:16 PM Revision 9aa6ad5c: pfSense_interface_deladdress() only knows how to delete an ip address, not a subnet. It should fix #3513
Renato Botelho
12:46 PM Bug #3514: IPv6 - LAN looses Prefix after link event

That change has made the problem worse. I copied the new interfaces.inc to my Fri Mar 7 installation and rebooted....
David Williams
10:40 AM Bug #3514 (Feedback): IPv6 - LAN looses Prefix after link event
I pushed a fix for this today.
Test with new snapshots.
Ermal Luçi
11:42 AM Revision 29b3dd4f: Merge pull request #1014 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
10:28 AM Bug #3512 (Feedback): Firewall Rules list page, advanced hover text missing for some advanced rule options
Pull request has been merged Renato Botelho
10:21 AM Bug #3509 (Feedback): Rules Advanced Features Advanced Options does not open if data defined
Pull request have been merged Renato Botelho
09:01 AM Feature #3515 (Resolved): Windows OpenVPN clients require register-dns to properly use a DNS server set by Pfsense
How to reproduce:
1) Setup an OpenVPN server within pfsense that pushes a DNS server ("Provide a DNS server list to ...
fos4X fos4X
03:41 AM Revision 5cda5039: XHTML Compliance
Services - DNS Forwarder N0YB
01:09 AM Revision a0cb321b: Merge pull request #1013 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho

03/09/2014

11:43 PM Revision d2aa08c2: XHTML Compliance
Services - DHCP Server N0YB
11:35 PM Revision 09cb9dee: Update services.inc
Added missing usepublicip with dyndnsCheckIP Florian Asche
10:54 PM Revision 9d8ce673: Merge pull request #1011 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
08:44 PM Revision 2e19c70f: XHTML Compliance
Diagnostics - Packet Capture N0YB
04:16 PM Revision a9fc108f: firewall_virtual_ip , allow deleting last ip-alias if interface uses same the subnet. (while CARP-ip is present)
Pi Ba
11:56 AM Revision b517603f: Merge pull request #1009 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
03:41 AM Revision fe3088b9: XHTML Compliance
Diagnostics - Tables N0YB
02:39 AM Revision 5ec11086: Merge pull request #1008 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
02:01 AM Revision c5935cb4: XHTML Compliance
VPN - PPTP - Users N0YB
01:51 AM Revision 65149622: XHTML Compliance
VPN - PPTP - Configuration N0YB
01:22 AM Revision 6fee1998: Merge pull request #1007 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho

03/08/2014

11:25 PM Revision 2e2a9fd1: XHTML Compliance
VPN - PPPOE N0YB
10:53 PM Revision 3f55d065: Merge pull request #1006 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
10:30 PM Revision 39da9cf3: XHTML Compliance
VPN - L2TP - Users N0YB
10:25 PM Revision 84b48bb7: XHTML Compliance
VPN - L2TP - Configuration N0YB
09:49 PM Revision f663a49c: Merge pull request #1005 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
09:11 PM Revision 563fed49: XHTML Compliance
VPN - IPsec - Pre-Shared Keys N0YB
06:50 PM Bug #3514 (Resolved): IPv6 - LAN looses Prefix after link event
+*Problem:*+ When the LAN interface experiences a link down/up event. The IPv6 prefix assigned to the interface is l... David Williams
05:40 PM Bug #3513 (Resolved): affects 2.1.1, interface 'primary' ip changes to alias-ip when saving interface.
Affects pfSense 2.1.1-PRERELEASE (amd64) built on Sat Mar 8 (but also that of 20140219-1945)
I could not reproduce t...
Pi Ba
04:50 PM Revision 1439ce28: Merge pull request #1002 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
02:48 PM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
Looks like you fixed the voucher rolls comment issue, but not the Invalid Voucher Message/Expired Voucher Message ones. Doktor Notor
02:45 PM Bug #3441: Non-alphanumeric characters cause issues with Captive Portal
This did not work, sorry. Still getting the same problem with Mar 7 snapshot. Doktor Notor
10:00 AM Revision 19da4e75: Add all advanced options to rule table hover text on 2.1 branch
Bug #3512 Phil Davis
09:56 AM Revision f0c1ce21: Add all advanced options to rule table hover text
Bug #3512 Phil Davis
04:19 AM Revision 23d3e72c: update translate pt_BR gettext file
Luiz Gustavo Costa
03:58 AM Bug #3512: Firewall Rules list page, advanced hover text missing for some advanced rule options
Pull requests #1003 (master) and #1004 (2.1 branch) Phillip Davis
03:52 AM Bug #3512 (Resolved): Firewall Rules list page, advanced hover text missing for some advanced rule options
Normally when there are some advanced rule options specified on a rule, the little "a" sign is displayed in the left ... Phillip Davis
01:43 AM pfSense Packages Feature #3511: IGMP Proxy - its own tab under system logs
After playing with this thing a few days ago, I'd not even call this a feature request. The current logging makes the... Doktor Notor

03/07/2014

08:40 PM pfSense Packages Bug #3168 (Rejected): siproxd
Chris Buechler
08:40 PM Revision 98669e51: XHTML Compliance
VPN - IPsec - Mobile Clients N0YB
08:40 PM Bug #3468 (Resolved): Wording fix
Chris Buechler
08:38 PM pfSense Packages Bug #3459 (Resolved): XSS - snort package
Chris Buechler
08:38 PM Bug #3462 (Resolved): RCE - ARPING
Chris Buechler
08:38 PM Bug #3414 (Resolved): system.inc variable wrong
Chris Buechler
08:36 PM Bug #3046 (Resolved): Fatal error: Call to undefined function get_interface_ip() in /usr/local/captiveportal/radius_authentication.inc on line 56
fixed a while back Chris Buechler
08:36 PM pfSense Packages Bug #3342 (Needs Patch): Missing input validation for MAC addresses
Chris Buechler
08:35 PM Bug #3319 (Feedback): automatically cleared ip addresses
never seen that, can't seem to replicate Chris Buechler
08:34 PM Bug #3267 (Closed): Can't skip wizard by clicking the pfSense logo, can't finish it normally either
never seen that, in 5 months there have been many, many thousands of people going through the wizard, and haven't see... Chris Buechler
08:33 PM Bug #3239 (Resolved): Link to codel wiki page malformed (missing :)
Chris Buechler
08:33 PM Bug #3121 (Resolved): mwexec command line generation malformed
Chris Buechler
08:32 PM Bug #3042 (Closed): CARP interface handling
CARP in 10 does indeed change this Chris Buechler
08:31 PM Bug #3017 (Resolved): Cert Manager - Certificates - + shows "add or import ca" instead of "add or import certificate"
Chris Buechler
08:29 PM Bug #2482 (Resolved): error trying to delete limiter
Chris Buechler
08:25 PM Bug #2709 (Resolved): webgui cannot restart if php is hung
Chris Buechler
08:25 PM Bug #2692 (Resolved): RRD queue graph doe's not stack
Chris Buechler
08:24 PM Bug #2740 (Rejected): 2.0.2 hangs on boot (LiveCD)
Chris Buechler
08:24 PM Bug #2697 (Resolved): jme driver missing from embedded image
Chris Buechler
08:23 PM pfSense Packages Bug #1750 (Closed): Downloaded rules handling optimization
Chris Buechler
08:22 PM Bug #2310 (Resolved): Possible typo - "Optional 11" interface ?
Chris Buechler
08:19 PM pfSense Packages Feature #3511 (Closed): IGMP Proxy - its own tab under system logs
Please consider implementing a tab under system logs for the IGMP Proxy by itself. The current logging of the IGMP P... Jean-Francois Boucher
08:19 PM Bug #549 (Resolved): VIP configuration changes.
Chris Buechler
05:49 PM Revision fac36dfd: Make the voucher auth through xmlrpc work.
Ermal LUÇI
05:49 PM Revision e327358b: Properly use key here.
Ermal LUÇI
05:34 PM Revision be11dd70: Make the voucher auth through xmlrpc work.
Ermal LUÇI
05:12 PM Revision 41602469: better make of gettext in expression (thanks rbgarga)
Luiz Gustavo Costa
05:07 PM pfSense Packages Bug #3400: apcupsd service config does not allow DEVICE to be set
Done.
https://github.com/pfsense/pfsense-packages/pull/598
Danilo Baio
05:00 PM Revision 15e47776: more fix some variables gettext
Luiz Gustavo Costa
04:52 PM Revision e28307d0: fix some variables gettext
Luiz Gustavo Costa
04:30 PM Revision 3d38041e: Properly use key here.
Ermal LUÇI
01:11 PM Revision 331c50a6: Skip input validation when choosing an existing certificate, it should fix #3505
Renato Botelho
01:10 PM Revision eecbeec4: Skip input validation when choosing an existing certificate, it should fix #3505
Renato Botelho
01:06 PM Revision ae0a369e: Remove unecessary quotes
Renato Botelho
01:05 PM Revision 4655b2cd: Remove unecessary quotes
Renato Botelho
10:22 AM Revision d03fcedf: Merge pull request #999 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
10:20 AM Revision 3f9586b6: Merge pull request #997 from phil-davis/master
Make Firewall Rules Advanced Options open if used Renato Botelho
07:37 AM Bug #3505 (Resolved): User Manager - cannot choose an existing certificate for user
Renato Botelho
07:19 AM Bug #3505: User Manager - cannot choose an existing certificate for user
Works. ;) Doktor Notor
07:10 AM Bug #3505: User Manager - cannot choose an existing certificate for user
Applied in changeset commit:331c50a6fb0629bdc0ec8be46eabefd356e19e4d. Renato Botelho
07:10 AM Bug #3505 (Feedback): User Manager - cannot choose an existing certificate for user
Applied in changeset commit:eecbeec45e26e00e4c492ad96213a741f4a1b120. Renato Botelho
06:55 AM Bug #3354 (Resolved): Savecore error during bootup
Renato Botelho
04:28 AM Revision fd839842: Refine check for existence of rule advanced options
Phil Davis
03:03 AM Revision c58a9ec3: XHTML Compliance
VPN - IPsec - Tunnels N0YB

03/06/2014

11:14 PM Bug #3510: Rules Advanced Features Advanced Options allows various invalid data entry
Note: tcp.established is the pf parameter name, pfSense stores it in the rule as 'statetimeout'. The other parameters... Phillip Davis
09:57 PM Bug #3510 (Resolved): Rules Advanced Features Advanced Options allows various invalid data entry
and the result is "there were errors loading the rules".
1) Maximum state entries this rule can create - (max 0) is ...
Phillip Davis
10:11 PM Bug #3384: NTPd should deny service if the packet spacing violates the lower limits specified in the discard command (CVE-2013-5211)
I know it's not enabled by default, you said:
> having discard enabled by default doesn't seem to be appropriate
in...
ky41083 -
10:10 PM Revision f3e65ef4: default openssl to 2048
Chris Buechler
10:10 PM Revision fe3553d1: default openssl to 2048
Chris Buechler
09:59 PM Revision 63159749: Better just use start here seems to be more reliable
Ermal LUÇI
09:50 PM Bug #3509 (Resolved): Rules Advanced Features Advanced Options does not open if data defined
If a rule has data defined in Advanced Features Advanced Options then when it is opened to be edited the Advanced Opt... Phillip Davis
09:08 PM Revision 1c84a5a1: Merge pull request #998 from N0YB/RELENG_2_1
Couple Corrections Ermal Luçi
08:41 PM Revision d58bee7d: Couple Corrections
Table Cell Close Location
Style Border Typo
N0YB
08:38 PM Revision d623693c: Correct the step for phase2 algos as well
Ermal LUÇI
08:38 PM Revision d60eea55: Correct the generation of the config for mobile tunnels as well
Ermal LUÇI
07:57 PM Revision 8c3cba99: Merge pull request #995 from ayvis/master-syntax-errors
syntax errors correction Renato Botelho
07:51 PM Revision 5e57c7c4: Merge pull request #996 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
07:19 PM Revision f37e37bb: Remove not needed anymore function
Ermal LUÇI
07:19 PM Revision ad55629b: update link for 2.2
Chris Buechler
07:18 PM Revision 9149b33e: update year, links for 2.1.1
Chris Buechler
07:02 PM Revision 9601df8a: Use a step of 64 here too to comply with what the daemon can parse/understand
Ermal LUÇI
05:58 PM Bug #3421: dhcpv6 server Netboot/next-server causes dhcpv6 not to start, and reports an error message.
disregard my comment about Static Mappings. I have yet to verify they work, or if filename is supported in dhcpv6. I ... Andrew Stuart
04:46 PM Bug #3421: dhcpv6 server Netboot/next-server causes dhcpv6 not to start, and reports an error message.
I concur. Sorry for the delay, the router in question I needed this on is a production router. I had to build up a a ... Andrew Stuart
01:02 AM Bug #3421 (Resolved): dhcpv6 server Netboot/next-server causes dhcpv6 not to start, and reports an error message.
works Chris Buechler
05:35 PM Feature #3508 (Closed): DNS Lookup - Additional links
+Feature Request - To add additional External links to Resolve IP addresses. Or to allow User Specified links in the ... BBcan177 .
05:34 PM Feature #3507 (Duplicate): add regex? to dhcpv6 Static mappings to convert windows DUID to BSD formatted DUID (replace -s with :s)
There is an unmentioned? Feature in DHCP Static maps, that adding windows formatted Mac addresses, pfSense silently r... Andrew Stuart
05:19 PM Feature #3506 (Duplicate): Firewall:Aliases - Sort/Move Function
+When editing Rules, there is a *Move ICON*. Would it be possible to have the "MOVE" ICON in the Alias edit screen?+ ... BBcan177 .
05:19 PM Bug #3505: User Manager - cannot choose an existing certificate for user
the input validation is technically wrong, though the browser should be sending that value anyway, and does here. I c... Chris Buechler
04:45 PM Bug #3505 (Resolved): User Manager - cannot choose an existing certificate for user
System - User Manager - edit some user, User Certificates - click + to add certificate - select "Choose an existing c... Doktor Notor
01:24 PM Feature #3504 (Resolved): Firewall rules hit counter
I'd like to request a hit counter for firewall rules. When viewing the rules, there would be a new column with a cou... Travis Kreikemeier
01:00 PM Bug #3475 (Resolved): get_interface_gateway returns a subnet mask for tap interfaces
Chris Buechler
06:51 AM Revision da2ec336: bring up appropriate interface for GRE/GIF. Ticket #3281
Chris Buechler
06:50 AM Revision 3945116d: bring up appropriate interface for GRE/GIF. Ticket #3281
Chris Buechler
04:30 AM Bug #2820 (Resolved): Unable to generate CSR in 2.1BETA1
Renato Botelho
04:26 AM Bug #3340 (Resolved): Captive Portal deletes concurrent sessions even if noconcurrentlogins is not set
Renato Botelho
03:53 AM Bug #3461 (Resolved): XSS - package system
Renato Botelho
03:49 AM Bug #3412 (Resolved): serial console output mess on fetch bogons failure
Renato Botelho
01:45 AM Bug #3412: serial console output mess on fetch bogons failure
Well yes, seems to give up now after a minute (tested by pulling the network cable). Doktor Notor
01:43 AM Bug #3313 (Resolved): rc.newwanip should bail on diabled interfaces
works Chris Buechler
01:09 AM Bug #3499 (Resolved): Missing data validation for IPv4+IPv6 rule with IPv4 literal address
Chris Buechler
01:06 AM Bug #3395 (Resolved): DHCPv6 client pass rules need to come before bogons
works Chris Buechler
12:59 AM Bug #3249 (Closed): DHCP Server/DHCP Relay both say the other is started
none of the upgrade code would do that. The input validation prevents configuring the system in that manner in every ... Chris Buechler
12:53 AM Bug #3357 (Resolved): IPv6 on PPPoE default gateway assignment incorrect
Craig - please start a new bug report with the specifics of what you're seeing there on the most recent 2.1.1 snapsho... Chris Buechler
12:49 AM Bug #3281 (Resolved): In certain cases, GRE interfaces are missing the "RUNNING" flag at bootup and will not function
I can't replicate, but the fix Ermal committed, and my later commit fixing the copy/paste-induced bug, should fix thi... Chris Buechler
12:12 AM Bug #3234 (Resolved): Captive Portal previously declared getNasIP()
Chris Buechler
12:05 AM Bug #3483 (Resolved): DHCP server - lack of implicit values validation
Chris Buechler
12:03 AM Bug #3280 (Resolved): Assigning GRE interface and configuring an IP address removes the IP from the underlying gre interface in the OS
confirmed working Chris Buechler

03/05/2014

11:57 PM pfSense Packages Bug #3502: unbound package updated but not available???
Yup the ports tree only has 1.4.21_1 so thats the version for the port not the package. Warren Baker
07:13 PM pfSense Packages Bug #3502: unbound package updated but not available???
Thanks for the quick turnaroound. My pfsense box still says the latest version is 1.4.21_3 but when it installs it c... Cyber Jock
12:46 AM pfSense Packages Bug #3502 (Closed): unbound package updated but not available???
The pbi version shouldnt have been changed. That was my mistake, sorry about that. Warren Baker
11:55 PM Bug #3441 (Resolved): Non-alphanumeric characters cause issues with Captive Portal
Chris Buechler
11:54 PM Bug #829 (Resolved): WAN stays assigned to pppoe0 interface after switching type from PPPoE to Static
this works as it should Chris Buechler
11:50 PM Bug #3350 (New): Disabling and enabling VLAN leaves VLAN interface missing
Chris Buechler
11:48 PM Bug #3300 (Resolved): relayd does not support a fall back pool for DNS, and will break if one is configured
Chris Buechler
11:38 PM Bug #3407 (Resolved): Changing CARP IP to IP Alias doesn't work until failover is trigered
Chris Buechler
03:45 PM Bug #3503 (Resolved): E-Mail Reports syslog error: "rrdcolors.inc.php for theme does not exist" (and proposed fix)
I've been using the "E-Mail Reports" package, with good success, except that it fills my syslog with error messages: ... Late Night
11:55 AM Bug #3484 (Resolved): IPv6 - the gateway address does not lie within one of the chosen interface's subnets
Thanks, I'll update the how to on docs. Renato Botelho
11:51 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
Ah, OK. Yes, that worked. Doktor Notor
11:38 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
Your setup is almost the same I have here. The only difference is I forced the dynamic gif gateway to be default. Jus... Renato Botelho
09:22 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
Argh, this Redmine thing really does not handle inlined code in any usable way. Attached instead. Doktor Notor
09:15 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
OK, tried to nuke most of the irrelevant/sensitive info.... Doktor Notor
07:33 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
Doktor Notor wrote:
> The working one, or the broken one?
broken one
Renato Botelho
06:07 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
The working one, or the broken one? Doktor Notor
05:50 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
Could you show your config.xml (without sensitive data)? Renato Botelho
02:44 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
And indeed, when I look at the routes, with the dynamic GW, it shows just complete nonsense.
Dynamic, non-working ...
Doktor Notor
02:38 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
Sorry, this does not work. GW autoconfigured, shows up (required a reboot to even get that far), the assigned tunnel ... Doktor Notor
05:29 AM Revision bd9d6e0e: Make Firewall Rules Advanced Options open if used
Currently, if there are some settings defined in Firewall Rules Edit, Advanced Features, Advanced Options, the Advanc... Phil Davis
01:23 AM Bug #3500: DHCP Leases List Not Showing Hostname in Some Cases
Had a quick look at this. The relevant original code in /usr/local/www/status_dhcp_leases.dhcp is:
$splitpattern = "...
Phillip Davis
12:45 AM Revision 3ef5194d: XHTML Compliance
VPN - OpenVPN - Client Specific Overrides N0YB

03/04/2014

11:47 PM pfSense Packages Bug #3502 (Closed): unbound package updated but not available???
I had unbound 1.4.21_1-i386 installed earlier today and noticed that a new version is out (1.4.21_3). I attempted to... Cyber Jock
11:30 PM Bug #3501 (Resolved): sanity check for PBI installations before uninstalling old pbi package.
I'm using pfsense 2.1-RELEASE-i386. I tried to update Unbound, but the PBI file isn't available for download. The l... Cyber Jock
11:25 PM Bug #3493: mute-replay-warnings doesn't appear to work
Thanks. The captcha image was only showing as a broken image when I tried, now it loads fine. Chris Buechler
07:37 AM Bug #3493: mute-replay-warnings doesn't appear to work
Re: ... please update your email address...
---
Done.
Re: ... the contact page on your website isn't usable as t...
B. Derman
11:14 PM Revision f08d2ae7: Merge pull request #994 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
09:09 PM Revision 56b490ba: syntax errors corrected
ayvis
08:07 PM Revision 94046ff1: XHTML Compliance
VPN - OpenVPN - Client N0YB
04:42 PM Bug #3500 (Resolved): DHCP Leases List Not Showing Hostname in Some Cases
The DHCP leases list shows a blank in the hostname field for some leases, even though the log shows that a hostname w... David Justl
01:03 PM Revision ebe2b407: Merge pull request #984 from phil-davis/master
Return GWG IP protocol (version) when no gateway IP Renato Botelho
12:52 PM Revision faddd381: Merge pull request #992 from Doncuppjr/master
Add UEFI support to Network Boot options. Renato Botelho
12:47 PM Revision 6c91204d: Merge pull request #993 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
11:40 AM Revision bb30d32c: Remove alert confirmation to delete a package, today user need to confirm twice
Renato Botelho
11:40 AM Revision b6096065: Remove alert confirmation to delete a package, today user need to confirm twice
Renato Botelho
11:40 AM Bug #3460 (Resolved): CSRF Protection - Package manager
Renato Botelho
06:50 AM Feature #3490 (Feedback): Update DHCP options for network booting with UEFI
Pull request 992 was merged Renato Botelho
01:38 AM Bug #3250: problems with ixgbe driver in pfsense 2.1 release
that's something to be revisited in 10.x-based releases, as the situation will be different there. Chris Buechler

03/03/2014

09:17 PM Revision cacc258f: XHTML Compliance
VPN - OpenVPN - Server N0YB
09:00 PM Revision ff9c579f: Fix syntax
Renato Botelho
07:21 PM Revision 218a4ffa: s/unlink/unlink_if_exists/
Renato Botelho
07:21 PM Revision 48047e3f: s/unlink/unlink_if_exists/
Renato Botelho
07:20 PM Revision fdb116a9: Put added option in dhcp config instead of dhcpv6 config.
Use empty function instead of <> "" for null test in dhcp network booting config section.
modified: etc/inc...
Donald Cupp
06:16 PM Revision de9ac478: Validate if src OR dst have IP address set when protocol is IPv4+v6. Fixes #3499
Renato Botelho
06:15 PM Revision 6bb99c3f: Validate if src OR dst have IP address set when protocol is IPv4+v6. Fixes #3499
Renato Botelho
04:31 PM Revision 2ccaa575: Remove broken 'dynamic6' gateway, we already have ipprotocol to tell us the IP version, leave it more simple using only 'dynamic'. It helps #3484
Renato Botelho
04:31 PM Revision 246950c3: Fix typo on var name
Renato Botelho
04:31 PM Revision d07bc322: Remove broken 'dynamic6' gateway, we already have ipprotocol to tell us the IP version, leave it more simple using only 'dynamic'. It helps #3484
Renato Botelho
04:26 PM Revision bf36dafa: Fix typo on var name
Renato Botelho
01:54 PM Revision d557438a: Merge pull request #990 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
01:13 PM Bug #3216 (Resolved): PFSense 2.1 - Captive Portal Zone - is not avaible in user effective privileges
Renato Botelho
01:13 PM Bug #3250: problems with ixgbe driver in pfsense 2.1 release
revert back to 2.1-REL driver don't fix problem with MBUF in 2.1-REL driver. please reopen Zeev Zalessky
12:50 PM Bug #3279 (Resolved): Usermanager: No way to assign permissions to DHCPv6 pages
Renato Botelho
12:49 PM Bug #3350: Disabling and enabling VLAN leaves VLAN interface missing
I reverted it, will leave it as feedback waiting a confirmation from Chris Renato Botelho
12:20 PM Bug #3499: Missing data validation for IPv4+IPv6 rule with IPv4 literal address
Applied in changeset commit:de9ac478b3a846cc4068d21c0cb5cf8f8097e22b. Renato Botelho
12:20 PM Bug #3499 (Feedback): Missing data validation for IPv4+IPv6 rule with IPv4 literal address
Applied in changeset commit:6bb99c3fe0e5510c8c1962f082ef30bf0ab84a81. Renato Botelho
10:43 AM Bug #3499: Missing data validation for IPv4+IPv6 rule with IPv4 literal address
Note: this is with pfsense 2.1 Brian Candler
10:38 AM Bug #3499 (Resolved): Missing data validation for IPv4+IPv6 rule with IPv4 literal address
If you add a rule selected as "IPv4+IPv6", but the source or destination is an IPv4 literal, then it is accepted but ... Brian Candler
10:38 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
I pushed more fixes today, please try tomorrow's snapshot or gitsync it to latest RELENG_2_1 and let me know the resu... Renato Botelho
07:14 AM Revision c10d55ba: Add missing option code for uefi booting
modified: etc/inc/services.inc Donald Cupp
05:59 AM Revision c636d517: Merge branch 'master' of https://github.com/Doncuppjr/pfsense
Donald Cupp
05:47 AM Revision 7023c602: Added support for UEFI booting to Network Booting configuration.
modified: conf.default/config.xml
modified: etc/inc/services.inc
modified: usr/local/www/servic...
Charlie Root
01:26 AM Bug #3394 (Resolved): radvd wrongly binds to *:546 in some circumstances
Chris Buechler
01:24 AM Bug #3384 (Resolved): NTPd should deny service if the packet spacing violates the lower limits specified in the discard command (CVE-2013-5211)
limited is not enabled by default (the commits associated with this ticket have been backed out). Everything here is ... Chris Buechler
01:18 AM Bug #3277 (Resolved): GRE Tunnel CIDR drop-down is not limiting choices for IPv4
Chris Buechler
01:17 AM Bug #3225 (Resolved): Captive Portal concurrent users graph is not functional
Chris Buechler
01:17 AM Bug #3331 (Resolved): Rules to pass out traffic for Proxy ARP VIP entries have an incorrect destination
Chris Buechler
01:16 AM Bug #2286 (Resolved): Multiple PPPoE Server do not work
Chris Buechler

03/02/2014

11:42 PM Bug #3200: IPv6 bugs
I can confirm that at least the 2nd bullet point is still valid with the latest snapshot of 2.1.1.... Anonymous
11:25 PM Bug #3200 (Closed): IPv6 bugs
no feedback, I've confirmed elsewhere what I believe to be the root cause of the described problem to be fixed in 2.1... Chris Buechler
11:24 PM Bug #3250 (Closed): problems with ixgbe driver in pfsense 2.1 release
reverted back to 2.1-REL driver which will suffice for 2.1.1. Chris Buechler
11:12 PM Bug #3268 (Resolved): Load balancer needs input validation to prohibit reserved table names
Chris Buechler
11:11 PM Bug #3333 (Closed): usbusX devices show up as NICs.
unable to replicate, no response. Chris Buechler
11:10 PM Bug #3486 (Resolved): crash reporter fails to delete crash report
Chris Buechler
06:09 PM Bug #3498 (Resolved): Wake on Lan Widget no auth needed
Wake on Lan Widget doesn't include "guiconfig.inc", so no auth is required when accessing it remotely, this could lea... Fernando Munoz
04:26 PM pfSense Packages Feature #3497: Zabbix-2 Proxy needs a custom field box.
Wrote up a quick patch to add the feature.
https://github.com/rmiddle/pfsense-packages/commit/2799c464e83a4039e61b...
Robert Middleswarth
09:50 AM pfSense Packages Feature #3497 (Resolved): Zabbix-2 Proxy needs a custom field box.
My Discoverers Processes have been 75% busy for the last 6 hours. I need to increase the number of poller processes ... Robert Middleswarth
09:15 AM Bug #3496 (Rejected): NTP monlist Command Enabled
Duplicate of #3384, already fixed. Jim Pingle
08:06 AM Bug #3496 (Rejected): NTP monlist Command Enabled
*Description*
The version of ntpd on the remote host has the 'monlist' command enabled. This command returns a list ...
Gerrit Helm

03/01/2014

11:54 PM pfSense Packages Bug #3495: Zabbix2-Agent and Zabbix2-proxy upgrade.
Workaround.
If you can't upgrade Zabbix Agent remove /usr/local/pkg/zabbix2-agent.xml and then you can reinstall...
Robert Middleswarth
10:09 PM pfSense Packages Bug #3495 (Resolved): Zabbix2-Agent and Zabbix2-proxy upgrade.
I have several systems 2.0 and 2.1 and running into upgrade issues when I try to move from Zabbix 2.0.4 to 2.2.1 if I... Robert Middleswarth
10:55 PM Revision 3d8e954b: sync up ALTQ-capable interfaces list
Chris Buechler
10:54 PM Revision 263f1c9c: sync up ALTQ-capable interfaces list
Chris Buechler
06:56 PM Revision 0a173e6b: XHTML Compliance
Firewall - Traffic Shaper N0YB
06:38 PM Bug #3481 (Needs Patch): Run-Away processing with hme NICs
ah thanks, I didn't check the link. Driver issues are outside our control. It might be fixed in FreeBSD 10.0, though ... Chris Buechler
06:35 PM Bug #3493 (Feedback): mute-replay-warnings doesn't appear to work
mute-replay-warnings should work fine in general, if it doesn't, it's an issue in OpenVPN itself. I'm not aware of an... Chris Buechler
06:31 PM Bug #3493: mute-replay-warnings doesn't appear to work
B. Derman - could you please update your email address to something that doesn't bounce? I get a slew of bounces from... Chris Buechler
06:07 PM Revision 68169a55: Wrap this in an is_array() test, or else if you have no manually configured DNS servers, saving the DHCP settings produces a PHP error.
Jim Pingle
06:06 PM Revision 3ffc016b: Wrap this in an is_array() test, or else if you have no manually configured DNS servers, saving the DHCP settings produces a PHP error.
Jim Pingle
09:35 AM Revision f8c5358d: Merge pull request #989 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
03:56 AM Revision e1002cd2: XHTML Compliance
Firewall - Schedules - Edit N0YB
03:33 AM Bug #2945: Installation stucks at 36%: /usr/local/bin/cpdup -vvv -I -o /usr /mnt/usr
I faced same issue and resolved by disabling multi core processing in the BIOS and enabling virtualization. Inder P. MEEL

02/28/2014

09:01 PM Revision d7f3520f: Merge pull request #988 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
08:57 PM Revision 76b1d814: XHTML Compliance
Firewall - Aliases - Edit N0YB
08:52 PM Revision 1aad59d8: Merge pull request #987 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
08:25 PM Revision 7d50bd3e: XHTML Compliance
Firewall - NAT - Npt - Edit N0YB
08:25 PM Revision 6d0f5a63: Add an option to verify peers_identifier when it's ASN.1 distinguished name. It should fix #2904
Renato Botelho
06:46 PM Revision dadb4846: Merge pull request #986 from andrespetralli/master
Re-enabling static lease updates Renato Botelho
04:59 PM Revision 3cdef187: Re-enabling static lease updates
Andres Petralli
04:37 PM Revision c468ffb5: Add a file flag to trigger the forced serial or else we may miss it during a firmware update and still end up with an accidentally disabled port.
Jim Pingle
04:36 PM Revision 9904df17: Add a file flag to trigger the forced serial or else we may miss it during a firmware update and still end up with an accidentally disabled port.
Jim Pingle
02:57 PM Feature #2904 (Resolved): Add checkbox or default option for "verify_identifier on;" on IPsec RSA VPNs
Renato Botelho
02:55 PM Feature #2904: Add checkbox or default option for "verify_identifier on;" on IPsec RSA VPNs
Yay! Excellent, works just fine. Doktor Notor
02:30 PM Feature #2904 (Feedback): Add checkbox or default option for "verify_identifier on;" on IPsec RSA VPNs
Applied in changeset commit:6d0f5a635aed336e5d2b6208a07a564b79f8863d. Renato Botelho
02:14 PM Revision b31247af: Small correction for clear code
Ermal LUÇI
02:13 PM Revision 9cca1a4f: Ticket #3484 Correct the case for GRE tunnels as well since they behave the same. GRE seems to need the prefixlen 128 specified all the time so do it explicitly to be on safe side
Ermal LUÇI
02:11 PM Revision cdeaf91e: Ticket #3484 Correct the case for GRE tunnels as well since they behave the same. GRE seems to need the prefixlen 128 specified all the time so do it explicitly to be on safe side
Ermal LUÇI
02:00 PM Revision 088a4eed: Tidy up GWG dropdown selection tests
Tested this making a new rule, and editing existing IPv4, IPv6 and IPv4+Ipv6 rules, and switching the IP version on a... Phil Davis
01:57 PM Revision cd962bb9: Tidy up GWG dropdown selection tests
Tested this making a new rule, and editing existing IPv4, IPv6 and IPv4+Ipv6 rules, and switching the IP version on a... Phil Davis
01:52 PM Revision d2c59808: Ticket #3484 Note that for now prefixlen is useless in ipv6 tunnels. IPv4 accepts them
Ermal LUÇI
01:49 PM Revision c32a6b82: Fixes #3484. Provide a dynamic gateway for gif v6 tunnels so it can be used on firewall rules etc. The guide for setting up this tunnels on docs need to change to leave the gif interface as none type. People upgrading need to fix this themselves with a not on release notes. This can be fixed if the kernel condition is relaxed to allow setting the prefixlen on the tunnel as ipv4
Ermal LUÇI
01:38 PM Revision ddb30ebf: Fixes #3484. Provide a dynamic gateway for gif v6 tunnels so it can be used on firewall rules etc. The guide for setting up this tunnels on docs need to change to leave the gif interface as none type. People upgrading need to fix this themselves with a not on release notes. This can be fixed if the kernel condition is relaxed to allow setting the prefixlen on the tunnel as ipv4
Ermal LUÇI
01:12 PM Revision 95281343: Merge pull request #983 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
12:13 PM Revision 1de88429: Ticket #3484 Note that for now prefixlen is useless in ipv6 tunnels. IPv4 accepts them
Ermal LUÇI
11:40 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
OK, back to static IPv6, manually created GW, everything working again. So, assigned GIF interface set to None defini... Doktor Notor
11:23 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
This totally messed up my IPv6 connectivity. Cannot even ping an IPv6 from the firewall due to some nonsense about bu... Doktor Notor
10:20 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
Ah just gitsync to latest code and set the assigned GIF interface to none on the Interfaces configuration screen and ... Ermal Luçi
09:20 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
OK, thanks for investigating. Please, let me know what should be done to test the fixes, kinda confused by the commen... Doktor Notor
07:50 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
Applied in changeset commit:c32a6b82a708149a66c1e477ddc0ba1c54d70440. Ermal Luçi
07:40 AM Bug #3484 (Feedback): IPv6 - the gateway address does not lie within one of the chosen interface's subnets
Applied in changeset commit:ddb30ebfc686165e00f0155e00df16edc17c31c5. Ermal Luçi
06:06 AM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
After investigation this seems to be an problem of INET6 implementation of FreeBSD.
It does not allow on gifv6 tunne...
Ermal Luçi
11:29 AM Revision 0344d76e: Tidy "gateway name - IP" in dropdown list
for 2.1 branch Phil Davis
11:28 AM Revision fa94f1e1: Tidy "gateway name - IP" in dropdown list
While I notice this also, for a plain gateway, the current IP address is also listed in the dropdown list text, like ... Phil Davis
08:10 AM Revision b612c49f: Use return_gateway_groups_array() to build correct GWG list
Version for 2.1 branch Phil Davis
07:48 AM Revision d47e25c7: Use return_gateway_groups_array() to build correct GWG list
Now return_gateway_groups_array() always returns at least the IP version 'ipprotocol' of each GWG, even if all its me... Phil Davis
03:04 AM Revision c6708833: Return GWG IP protocol (version) when no gateway IP - 2.1 branch
Phil Davis
02:54 AM Revision f60003fa: Return GWG IP protocol (version) when no gateway IP
This is a resubmit of an older pull request I had closed. It came up again in the forum, with a user setting up a VM ... Phil Davis
01:51 AM Revision 1541e25f: XHTML Compliance
Firewall - NAT - Outbound - Edit N0YB

02/27/2014

11:38 PM Bug #3494 (Rejected): default deny/block bogons blocks some ipv6 multicast traffic
that's working as it should, you can disable logging for the bogon blocking if you want to silence the logs. There is... Chris Buechler
10:48 PM Bug #3494 (Rejected): default deny/block bogons blocks some ipv6 multicast traffic
With IPv6 enabled, my ISP's default gateway (Comcast) sends an ICMP6 packet (Multicast Listener Report) destined for ... qubit nano
09:03 PM Revision 78c74f9b: Fix #3492, make sure filesystem is read-write
Renato Botelho
09:03 PM Revision 920dbb26: Fix #3492, make sure filesystem is read-write
Renato Botelho
08:50 PM Revision 2658000b: Merge pull request #981 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
08:41 PM Revision 813016d2: XHTML Compliance
Firewall - NAT - Port Forward - 1 to 1 - Edit N0YB
04:39 PM Revision c7fbdd6c: Make the IPSec status page work with strongswan
Ermal LUÇI
04:38 PM Bug #3492 (Resolved): nanobsd - group update: Read-only file system
Renato Botelho
03:48 PM Bug #3492: nanobsd - group update: Read-only file system
Thanks, that worked. Doktor Notor
03:10 PM Bug #3492: nanobsd - group update: Read-only file system
Applied in changeset commit:78c74f9b2188e029e0dd331a4cbfc1a9492ffc38. Renato Botelho
03:10 PM Bug #3492 (Feedback): nanobsd - group update: Read-only file system
Applied in changeset commit:920dbb26b19773ae1ef96992ee26ae31293d029e. Renato Botelho
11:52 AM Bug #3492 (Resolved): nanobsd - group update: Read-only file system
... Doktor Notor
03:38 PM Revision 6e8bb592: Merge pull request #979 from phil-davis/RELENG_2_1
Errors in graph calculations Renato Botelho
03:37 PM Revision df992bc1: Merge pull request #980 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
03:08 PM Bug #3493 (Closed): mute-replay-warnings doesn't appear to work
Have the lines
mute-replay-warnings;
verb 1;
as entries in the OpenVPN Advanced Configuration box, but am stil...
B. Derman
02:51 PM Bug #3491: Improper input validation on firewall rules when using a numerical alias name
Alias name validation do not accept only numbers anymore on 2.2 since https://github.com/pfsense/pfsense/pull/960 was... Renato Botelho
10:26 AM Bug #3491 (Resolved): Improper input validation on firewall rules when using a numerical alias name
If you have a host alias using a numerical name such as "2222", then using port "2222" (literal) in firewall rules is... Jim Pingle
01:01 PM Feature #2904: Add checkbox or default option for "verify_identifier on;" on IPsec RSA VPNs
Guys, this is NOT a feature request, this is a major security issue! Can someone finally fix this?
https://forum.p...
Doktor Notor
10:55 AM Bug #3489 (Rejected): Update DHCP options for network booting with UEFI
Duplicate of #3490 Renato Botelho
10:51 AM Revision 90435b20: Fix #3486, delete /var/crash content when click 'No'
Renato Botelho
10:51 AM Revision d7d6e57a: Fix #3486, delete /var/crash content when click 'No'
Renato Botelho
10:46 AM Bug #3212 (Resolved): PHP Warning: Division by zero in /etc/inc/captiveportal.inc on line 729
Renato Botelho
10:46 AM Bug #2952 (Resolved): Unvalidated input during system_firmware_check.php
It was replaced by htmlspecialchars() Renato Botelho
08:20 AM Bug #3486: crash reporter fails to delete crash report
Applied in changeset commit:90435b203e6a4adc35e582511ddf122a4fe699fa. Renato Botelho
08:20 AM Bug #3486 (Feedback): crash reporter fails to delete crash report
Applied in changeset commit:d7d6e57a228de0d855b12b3bb7eb0f2a50aef108. Renato Botelho
02:20 AM Revision e082672d: XHTML Compliance
Firewall - NAT - Port Forward - Edit N0YB
02:13 AM Revision edaa41be: Errors in in graph calculations
This is the version for 2.1 branch corresponding to https://github.com/pfsense/pfsense/commit/f9983a874d6acf5fcf08a08... Phil Davis

02/26/2014

09:36 PM Revision 7f43c116: Merge pull request #978 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
08:39 PM Revision cd83111a: XHTML Compliance
Firewall - Rules - Edit N0YB
06:24 PM Revision a73ba11b: Fix variable used to create description when deleting a route, put the network in the description as intended.
Jim Pingle
04:26 PM Revision 2124fad4: Oops forgot the query message
Ermal LUÇI
04:24 PM Revision df0878b0: Add a function to read the status of connections/SAs/SPDs from smp plugin of StrongSWAN. No need to go through the setkey dumps
Ermal LUÇI
02:25 PM Revision ddfe5e43: Make xmlreader parse any document and properly consider listtags specified and attributes. Probably should be made the default due to its speed.
Ermal LUÇI
01:56 PM Bug #3489: Update DHCP options for network booting with UEFI
Re-Filed as a Feature Request. Donald Cupp
01:50 PM Bug #3489 (Rejected): Update DHCP options for network booting with UEFI
All new computers have the ability to boot UEFI afaik. There are few little changes that need to be made to pfsense t... Donald Cupp
01:55 PM Feature #3490 (Resolved): Update DHCP options for network booting with UEFI
All new computers have the ability to boot UEFI afaik. There are few little changes that need to be made to pfsense t... Donald Cupp
12:13 PM Revision 9f66bc5e: Merge pull request #977 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
11:55 AM Revision 8ffb5ccd: Parse even attributes when present
Ermal LUÇI
10:55 AM Revision 082c9d96: XHTML Compliance
Firewall - Rules N0YB
10:18 AM Revision a02b89b0: Merge pull request #976 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
09:10 AM Revision a5921773: XHTML Compliance
Firewall - NAT - Port Forward N0YB
03:51 AM Revision d11f5bff: XHTML Compliance
Firewall - NAT - Port Forward N0YB
03:41 AM Revision 334ca9d7: XHTML Compliance
Firewall - NAT - Port Forward N0YB
01:02 AM Bug #3250: problems with ixgbe driver in pfsense 2.1 release
Hi,
i received following link that can fix IXGBE driver problem. http://christopher-technicalmusings.blogspot.com....
Zeev Zalessky

02/25/2014

09:41 PM Revision 0c78acf8: Merge pull request #975 from stilez/patch-1
Port dropdowns: Put port no. after descrip Renato Botelho
07:48 PM Revision f7e481dd: Port dropdowns: Put port no. after descrip
At the moment, even if a port number is entered, it's re-displayed only as a port name when editing. Users who don't ... Stilez y
06:47 PM Bug #3488 (Resolved): Deleting an interface doesn't delete associated shaper queues
I'd defined a PRIQ shaper setup (via the wizard) on a 2 LAN, 1 WAN (with 4 CARP VIPs, no fail-over/syncing) then chan... B. Derman
05:30 PM Bug #3376 (Resolved): Alias Edit does not display correctly
Renato Botelho
05:28 PM Bug #3444 (Resolved): IPv6 network alias input validation lacking
Renato Botelho
05:25 PM Bug #3433 (Resolved): Case-sensitive detection of link local addresses
Renato Botelho
05:25 PM Bug #3432 (Resolved): PPPoE (WAN) reconnected, WAN does not updated
Renato Botelho
05:18 PM Bug #3283 (Resolved): Removing an alias entry and then adding a new one results in an entry box with broken formatting
Renato Botelho
05:18 PM Bug #3293 (Resolved): Using timezone Europe/Oslo causes firewall/system logs to be displayed in UTC
Renato Botelho
04:56 PM Bug #3294 (Resolved): Creating users/groups silently fails on read only filesystem
It was fixed by commit:8a0ae97fa0e249aa13538103e662aa6191ebde65 and commit:90caf54ebf46763f4856d446ab0aa77259282119 Renato Botelho
02:37 PM Bug #3487 (Closed): Punctuation removed when replicating rule descriptions from primary to secondary
I like to diff my primary and secondary configs to check they are fully in sync. However, there are some false alarms... Brian Candler
01:51 PM Bug #3291 (Resolved): Add new gateway allow name duplication
Renato Botelho
01:50 PM Bug #3282 (Resolved): Gateway error "You can not use a IPv4 Gateway Address on a IPv6 only interface." is not accurate
Renato Botelho
01:49 PM Bug #3226 (Resolved): Captive Portal Radius Error
Renato Botelho
01:47 PM Bug #3259 (Resolved): firewall_shaper_vinterface.php does NOT save Packet loss rate and Queue size
Renato Botelho
01:46 PM Bug #3247 (Resolved): ipsec mobile clients login banner cannot contain certain chars
Renato Botelho
01:46 PM Bug #3230 (Resolved): Creating Gateway in Interface page forces default gateway to be set even if unchecked.
Renato Botelho
01:44 PM Bug #3218 (Resolved): Activating DHCP6 server does not reload firewall rules
Renato Botelho
01:42 PM Bug #3208 (Resolved): interface name over 17 characters long results in pf errors
Renato Botelho
01:42 PM Bug #3206 (Resolved): Certificate Manager: wrong digest algorithm used when generating a certificate
Renato Botelho
12:41 PM Bug #3486 (Resolved): crash reporter fails to delete crash report
On clicking No on the crash report, nothing gets deleted, get the same notice at dashboard again and again, until del... Doktor Notor
10:28 AM Bug #2495: pfsense doesn't seem to know what its WAN IP is
I just tried it again with the current 2.1.1 Snapshot (2.1.1-PRERELEASE (amd64) built on Mon Feb 24 16:48:44 EST 2014... Thomas Rieschl
10:10 AM Revision c6efc8fd: Push log changes for IPSec and fix generation of strongswan.conf and ipsec.secrets to be properly considered
Ermal LUÇI
10:10 AM Revision 7335fa53: * Correct logging to syslog and proper file for ipsec from strongswan
* Use proper commands to reload strongswan rather than just the daemon Ermal LUÇI
07:46 AM Revision a63f8ba8: Merge pull request #971 from phil-davis/RELENG_2_1
Fix #3483 only use IPv4 DNS servers in DHCP v4 conf Ermal Luçi
07:46 AM Revision 042436e8: Merge pull request #970 from phil-davis/master
Fix #3483 only use IPv4 DNS servers in DHCP v4 conf Ermal Luçi
03:47 AM Revision 6a201696: Fix #3483 only use IPv4 DNS servers in DHCP v4 conf
Version for 2.1 branch Phil Davis
03:40 AM Revision 3ad6b569: Fix #3483 only use IPv4 DNS servers in DHCP v4 conf
Phil Davis
01:50 AM Bug #3483: DHCP server - lack of implicit values validation
Applied in changeset commit:a63f8ba8f37edf07c9d40c9134f98c74e36a83d7. Ermal Luçi
01:50 AM Bug #3483: DHCP server - lack of implicit values validation
Applied in changeset commit:042436e8f2e1ffee2411894fbb61ad961d13bf4f. Ermal Luçi
01:50 AM Bug #3483: DHCP server - lack of implicit values validation
Applied in changeset commit:6a2016960b433f579b73f539ac5f64f5e956369e. Phillip Davis
01:50 AM Bug #3483 (Feedback): DHCP server - lack of implicit values validation
Applied in changeset commit:3ad6b569d64043a75bbb63453658ed005e89ef2c. Phillip Davis
12:14 AM Bug #3483: DHCP server - lack of implicit values validation
Phillip Davis wrote:
> /etc/inc/vpn.inc
> function vpn_pppoe_configure(&$pppoecfg)
> function vpn_l2tp_configure()...
Bryan Paradis
12:13 AM Bug #3483: DHCP server - lack of implicit values validation
Phillip Davis wrote:
> /etc/inc/vpn.inc
> function vpn_pppoe_configure(&$pppoecfg)
> function vpn_l2tp_configure()...
Bryan Paradis

02/24/2014

11:38 PM pfSense Packages Feature #3485 (Closed): Log rotation for mod_security
As it stands, mod_security+apache does not rotate any logs generated by Apache, which can cause problems down the roa... Stéphane Lapie
11:15 PM Bug #3483: DHCP server - lack of implicit values validation
/etc/inc/vpn.inc
function vpn_pppoe_configure(&$pppoecfg)
function vpn_l2tp_configure()
search for 'dnsserver'
bo...
Phillip Davis
10:44 PM Bug #3483: DHCP server - lack of implicit values validation
Phillip Davis wrote:
> And also, if you have DNS Forwarder disabled, no DNS servers specified on the DHCPv4 page, an...
Bryan Paradis
09:56 PM Bug #3483: DHCP server - lack of implicit values validation
And also, if you have DNS Forwarder disabled, no DNS servers specified on the DHCPv4 page, and no IPv4 DHCP servers o... Phillip Davis
09:45 PM Bug #3483: DHCP server - lack of implicit values validation
Should be fixed by:
https://github.com/pfsense/pfsense/pull/970 - master branch
https://github.com/pfsense/pfsense/...
Phillip Davis
09:52 AM Bug #3483: DHCP server - lack of implicit values validation
There was a fix implemented for the same sort of thing happening with Dns zones here that seems to strip off any bad ... Bryan Paradis
09:31 AM Bug #3483 (Resolved): DHCP server - lack of implicit values validation
1/ Put some IPv6 IPs as DNS servers into System - General Setup
2/ Disable DNS forwarder
3/ Configure some DHCPv4 p...
Doktor Notor
07:05 PM Revision f13a1d6a: Make is_linklocal case-insensitive and fix #3433
Renato Botelho
07:03 PM Revision 04f5393f: Make is_linklocal case-insensitive and fix #3433
Renato Botelho
04:16 PM Bug #3484: IPv6 - the gateway address does not lie within one of the chosen interface's subnets
Afraid it's trying to compare the subnet to the "gif remote address" which is obviously IPv4. No wonder it fails. As ... Doktor Notor
04:06 PM Bug #3484 (Resolved): IPv6 - the gateway address does not lie within one of the chosen interface's subnets
... Doktor Notor
03:25 PM Revision b5388f03: Fix #2302, save custom uploaded l7 pattern files on config.xml and replicate it to slave
Renato Botelho
03:25 PM Revision 732b160d: Set variable after make sure it's defined and has elements
Renato Botelho
03:25 PM Revision 420b4538: Fix whitespace and indent
Renato Botelho
03:25 PM Revision 1b90e2d5: Fix whitespaces and indent
Renato Botelho
02:58 PM Revision 2c02c4d0: Properly detect when there are issues with communicating with syncip and to use the local DB for this. Otherwise detect if the remote says the voucher is not valid say its not valid.
Ermal LUÇI
02:57 PM Revision 62f96568: Properly detect when there are issues with communicating with syncip and to use the local DB for this. Otherwise detect if the remote says the voucher is not valid say its not valid.
Ermal LUÇI
02:39 PM Revision ac420abd: Properly compile the query to insert the values. Pointy-hat: myself. While here respect the redirurl when passed to portal_allow and use proper function to do redirection.
Ermal LUÇI
02:38 PM Revision 846bedf9: Properly compile the query to insert the values. Pointy-hat: myself. While here respect the redirurl when passed to portal_allow and use proper function to do redirection.
Ermal LUÇI
01:10 PM Bug #3433: Case-sensitive detection of link local addresses
Applied in changeset commit:f13a1d6a8a57df7c5c6466bb34ebdf26e77a2846. Renato Botelho
01:10 PM Bug #3433 (Feedback): Case-sensitive detection of link local addresses
Applied in changeset commit:04f5393f49be48989cb6e073a51bd35b33f177a1. Renato Botelho
12:47 PM Feature #3477 (Resolved): PIM protocol in firewall rules configuration
Pull request merged - https://github.com/pfsense/pfsense/pull/964 Renato Botelho
10:57 AM Revision 037e7a62: Merge pull request #959 from stilez/patch-3
Tighten is_subnet() functions Renato Botelho
09:30 AM Feature #2302 (Feedback): Uploaded Layer 7 patterns not saved in config, backed up, or synced
Applied in changeset commit:b5388f033c51ba1102ec00d8c1d604c6ea39827d. Renato Botelho
03:04 AM Bug #3464: No RRD Graphing When Using "Enable Pass-through MAC automatic additions"
Thanks. Makes sense.
Perhaps adding the following to the text under the "Enable Pass-through MAC automatic additi...
B. Derman
02:56 AM Bug #3481: Run-Away processing with hme NICs
Chris:
Per the 3rd bullet on the indicated web page "... in all cases, simply switching the interface to a vr, de,...
B. Derman
01:22 AM Revision 8cee3e44: Merge pull request #969 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
12:59 AM Revision b48958df: XHTML Compliance
Interfaces N0YB

02/23/2014

08:45 PM Revision 5462854c: Merge pull request #968 from N0YB/RELENG_2_1
XHTML Compliance Renato Botelho
07:02 PM Revision 3698711f: XHTML Compliance
Interfaces - PPPs Edit N0YB
06:34 PM Revision d06c4448: Merge branch 'RELENG_2_1' of git://github.com/pfsense/pfsense into RELENG_2_1
N0YB
02:49 PM Bug #3482 (Resolved): Initial Setup disables WAN
I created a Xen-VM with
2 cores
2 nics, e1000
8 GB Disc
1 GB Ram
installed pfsense 2.1, no errors.
...
Stefan Schindler
12:21 PM pfSense Packages Bug #3203: vnstat2 not working after pfsense 2.1 upgrade
I have updated the package again and moved away from the previous package + archive. Should work fine now. Bryan Paradis
12:16 PM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Tested this on:
2.1.1-PRERELEASE (amd64)
built on Sat Feb 22 05:12:28 EST 2014
FreeBSD 8.3-RELEASE-p14
1. Fre...
Anonymous
11:42 AM Revision aa563d40: Merge pull request #967 from N0YB/RELENG_2_1
XHTML Compliance Ermal Luçi
10:58 AM Revision 37b6250b: Merge branch 'RELENG_2_1' of git://github.com/pfsense/pfsense into RELENG_2_1
N0YB
10:01 AM Revision 813288dc: XHTML Compliance
Interfaces - Wireless Edit N0YB
09:51 AM Revision 5dbd81a6: Merge pull request #966 from N0YB/RELENG_2_1
XHTML Compliance Ermal Luçi
09:48 AM Revision b527a954: Merge pull request #965 from N0YB/Advanced_DHCP_Client_Options
XHTML Compliance Ermal Luçi
07:09 AM Revision cfd3676d: This one too.
N0YB
06:55 AM Revision 6c156433: XHTML Compliance
Interfaces N0YB
05:04 AM Revision 4a2c47fe: Element id's are to be unique. 'provider' used is elsewhere.
N0YB
04:50 AM Revision ca4467bc: Better done globally here in the function.
N0YB
03:58 AM Bug #3480: Firewalländerungen OpenVPN-Client erst nach Tunnelneustart wirksam
because that's not true. Chris Buechler
03:54 AM Bug #3481 (Feedback): Run-Away processing with hme NICs
seems likely to be driver-specific, can you test with a different type of NIC to confirm or deny that? Chris Buechler
03:49 AM Bug #3481 (Needs Patch): Run-Away processing with hme NICs
Subsequent to posting an issue to the mailing list (issue documented at http://www.derman.com/pfSense-Run-Away-Issue)... B. Derman
02:30 AM Revision 6e31ca39: XHTML Compliance
Interfaces N0YB

02/22/2014

09:16 PM Bug #3357: IPv6 on PPPoE default gateway assignment incorrect
Craig Falconer wrote:
> My next plan is ... temporarily try a USB ethernet card, and see if stripping the VLAN tags ...
Criggie .
02:11 PM Bug #3357: IPv6 on PPPoE default gateway assignment incorrect
Ermal Luçi wrote:
> That is a different issue.
> Probably plain simple routing issue.
Definitely not simple rout...
Criggie .
06:18 AM Bug #3357: IPv6 on PPPoE default gateway assignment incorrect
That is a different issue.
Probably plain simple routing issue.
Since your LAN as a PD which is smaller than the ...
Ermal Luçi
04:14 AM Bug #3357: IPv6 on PPPoE default gateway assignment incorrect
Ermal Luçi wrote:
> Can you test with latest snapshot of 2.1.1 and see if ti behaves better?
FANTASTIC! I have ...
Criggie .
04:32 PM Bug #3480: Firewalländerungen OpenVPN-Client erst nach Tunnelneustart wirksam
Könnte ich vielleicht noch gesagt bekommen, warum ich kommentarlos rejected werde? Christian Scholz
03:06 PM Bug #3480 (Rejected): Firewalländerungen OpenVPN-Client erst nach Tunnelneustart wirksam
Renato Botelho
02:56 PM Bug #3480 (Rejected): Firewalländerungen OpenVPN-Client erst nach Tunnelneustart wirksam
Hallo zusammen,
ich habe grade festgestellt, dass Firewalländerungen erst wirksam werden, wenn ich den Tunnel neu au...
Christian Scholz
12:26 PM Revision f5db657d: Merge pull request #964 from wildstray/patch-1
Update firewall_rules_edit.php Ermal Luçi
10:26 AM Bug #1943 (Feedback): PPPoE won't reconnect after link loss when using vr(4) NICs on certain ISPs only
Ermal Luçi
06:54 AM Bug #1943: PPPoE won't reconnect after link loss when using vr(4) NICs on certain ISPs only
this seems to be solved in the latest 2.1.1-PRERELEASE Bipin Chandra
12:44 AM Bug #3479 (Closed): Rosewill RC-404 NIC not operating properly
Warren Baker

02/21/2014

11:55 PM Revision c95b52d5: Update firewall_rules_edit.php
PIM protocol for firewall rules. Andrea Tuccia
08:46 PM Revision bc50c8d7: Update tzdata to 2013i
Renato Botelho
08:30 PM Bug #3479: Rosewill RC-404 NIC not operating properly
Nevermind, come to find out it's some sort of hardware conflict.
My apologies.
X X
05:21 PM Bug #3479 (Closed): Rosewill RC-404 NIC not operating properly
So for some reason I can not get an IP on my Rosewill RC-404 NIC (http://www.newegg.com/Product/Product.aspx?Item=N82... X X
03:51 PM Revision 796587a9: These are remenants of old 1.2 remove them from the wizard
Ermal LUÇI
03:07 PM Bug #3449 (Resolved): IE 8 does not respect disabled CIDR field when editing host alias, leading to filter ruleset syntax errors
The input validation does not allow the problem case any longer. Looks good enough to me. Jim Pingle
03:01 PM Bug #3449 (Feedback): IE 8 does not respect disabled CIDR field when editing host alias, leading to filter ruleset syntax errors
Move it to feedback since it should be enough for 2.1.1 Renato Botelho
01:45 PM Revision 11aa4666: Ticket #2627. Just pass the array over no need to traverse it
Ermal LUÇI
01:45 PM Revision 34340c56: Ticket #2627. Just pass the array over no need to traverse it
Ermal LUÇI
01:38 PM Revision e45a0b69: Trigger rc.newwaipv6 as well from pppoe when it gets an inet6 config
Ermal LUÇI
01:37 PM Revision 761dc91c: Trigger rc.newwaipv6 as well from pppoe when it gets an inet6 config
Ermal LUÇI
01:28 PM Revision 080fd00b: Fixes #2627. When an interface goes down try to shut the RAs and dhcpd6 service on that interface
Ermal LUÇI
01:23 PM Revision 92977616: Fixes #2627. When an interface goes down try to shut the RAs and dhcpd6 service on that interface
Ermal LUÇI
11:58 AM Revision d6101e23: Avoid recursion of convert_real_interface_to_friendly_interface_name with get_parent and on linkup of parent interface properly configure especially useful on ppp type links
Ermal LUÇI
11:55 AM Revision 9510780f: Avoid recursion of convert_real_interface_to_friendly_interface_name with get_parent and on linkup of parent interface properly configure especially useful on ppp type links
Ermal LUÇI
11:01 AM Revision ad43847b: Merge pull request #960 from stilez/patch-4
Tighten is_validaliasname() Renato Botelho
10:03 AM Revision ef60dfa5: Be friendly to memory
Ermal LUÇI
10:03 AM Revision 4d327744: Fix problem with the voucher synching that was introduced during conversion to zones
Ermal LUÇI
10:03 AM Revision 57cd35cf: Be friendly to memory
Ermal LUÇI
10:00 AM Revision be1e9342: Fix problem with the voucher synching that was introduced during conversion to zones
Ermal LUÇI
08:58 AM pfSense Packages Feature #3478 (Resolved): OpenVPN Client Export Utility - save preferred settings
It would be handy to be able to save:
a) The default Remote Access Server to be displayed when when the Client Expor...
Phillip Davis
07:30 AM Bug #2627: Old delegated prefixes are not removed from the LAN interface
Applied in changeset commit:080fd00bac29b736a5e1e8e91b9efbb3c3ea8305. Ermal Luçi
07:30 AM Bug #2627 (Feedback): Old delegated prefixes are not removed from the LAN interface
Applied in changeset commit:929776169f0f36b99ef62f7bfe633f8d02db2c43. Ermal Luçi
07:24 AM Bug #2627: Old delegated prefixes are not removed from the LAN interface
I put a fix which should handle properly all cases to this.
Can you try tomorrows snapshots of 2.1.1?
Ermal Luçi
02:49 AM Revision 4ad9a1e7: Tighten is_validaliasname()
is_validaliasname() treats "empty string" as a valid alias name, it probably shouldn't.
I suspect it also should not...
Stilez y
02:47 AM Bug #3045: NTPD crash / doesn't come up
Upgraded one of my clusters to 2.1.1-PRERELEASE (amd64) built on Wed Feb 19 19:46:29 EST 2014.
Can confirm NTPD is...
Markus Brungs
02:21 AM Feature #3473: Allow configuration of OpenVPN keepalive
Oh, ping-restart should also be added to the list. B. Derman
02:19 AM Revision a5e2a35f: Tighten is_subnet() functions
The is_subnet(), is_subnetv4() and is_subnetv6() functions have significant issues in their coding logic.
Issues:
1...
Stilez y

02/20/2014

11:36 PM Revision 4cdd20bc: Rather than having issues with not started radvd try to start radvd to discover by itself the prefix on the interface by using the special directive :: on the prefix declaration. Related to many tickets and forum posts
Ermal LUÇI
11:36 PM Revision 75aec77a: Rather than having issues with not started radvd try to start radvd to discover by itself the prefix on the interface by using the special directive :: on the prefix declaration. Related to many tickets and forum posts
Ermal LUÇI
09:00 PM Feature #3477: PIM protocol in firewall rules configuration
It is very easy for the devs if you submit a pull request on GitHub - https://github.com/pfsense Phillip Davis
03:02 PM Feature #3477 (Resolved): PIM protocol in firewall rules configuration
PIM protocol is missing, so I added it in firewall_rules_edit.php. It would be nice to release in the official versio... Andrea Tuccia
08:43 PM Revision 3e0b2df2: Update tzdata to 2013i
Renato Botelho
08:32 PM Revision 6a193210: Update list of mobile service providers
Renato Botelho
08:32 PM Revision 9d40745b: Update list of mobile service providers
Renato Botelho
08:19 PM Revision 8b731067: Correct obvious bug in IPv6.inc
Ermal LUÇI
08:06 PM Revision 77148acc: s/PEAR.php/PEAR.inc/
Ermal LUÇI
08:05 PM Revision bf416e49: Actually take latest one from github. It has some more checks and more execution time penalities but catches more errors
Ermal LUÇI
08:00 PM Revision 03ab9b30: Update IPV6.inc to latest 1.2.1 version
Ermal LUÇI
07:32 PM Revision 7519cc29: If set use the default bandwidth setting on the CP even for mac passthrough. Reported-by: https://forum.pfsense.org/index.php/topic,72761.0.html
Ermal LUÇI
07:30 PM Revision 2e080989: Use the default bw specification if configured even for allowed ip and hostname.
Ermal LUÇI
07:30 PM Revision a23ff107: Use the default bw specification if configured even for allowed ip and hostname.
Ermal LUÇI
06:37 PM Revision 3f7f26ae: Add the missing global $g
N0YB
05:28 PM Revision ea188e45: If set use the default bandwidth setting on the CP even for mac passthrough. Reported-by: https://forum.pfsense.org/index.php/topic,72761.0.html
Ermal LUÇI
05:23 PM Bug #3446 (Closed): NTP server doesn't bind to assigned interfaces on automatic service restart after queriing his assigned master time server
duplicate of #3317 Chris Buechler
07:12 AM Bug #3446: NTP server doesn't bind to assigned interfaces on automatic service restart after queriing his assigned master time server
I just saw that my report is most likely a duplicate of: https://redmine.pfsense.org/issues/3317 Michael Noack
05:03 PM Bug #3286: Radvd will not function with IPv6 Prefix delegation other than 64 on WAN
What would be needed is you system log or at least o confirmation from ifconfig that dhcp6c is retrieving something f... Ermal Luçi
03:35 PM pfSense Packages Feature #3456: ladvd (lldp/cdp/edp/ndp daemon)
Send a pull request on github. Ermal Luçi
03:20 PM pfSense Packages Feature #3456: ladvd (lldp/cdp/edp/ndp daemon)
Excuse me for the additional update, but I added a <hideinterfaceregex> to hide loopback interfaces from the LADVD co... Andrea Tuccia
11:26 AM Revision 070dad6c: Use env var provided by openvpn to determine if it's tun or tap, it should fix #3475
Renato Botelho
11:21 AM Revision 08185f4a: Use env var provided by openvpn to determine if it's tun or tap, it should fix #3475
Renato Botelho
10:30 AM pfSense Packages Bug #3168: siproxd
A tested and the code will show as many records as available on registration file. Are you sure there were more recor... Renato Botelho
09:45 AM pfSense Packages Bug #3168: siproxd

cleaned ip-adresses and sip-user-ids
at this moment: Currently Registered Phones (1)
Need Less
09:28 AM pfSense Packages Bug #3168: siproxd
Could you please share the content of /var/siproxd/siproxd_registrations? Renato Botelho
09:18 AM Revision 26ea40b7: Do some more error checking and put secondary radius attributes only if configured. Probably radius configuration should be merged with central server for logins!
Ermal LUÇI
09:18 AM Revision 315bdf65: Do some more error checking and put secondary radius attributes only if configured. Probably radius configuration should be merged with central server for logins!
Ermal LUÇI
09:02 AM Revision e570f0eb: silence any errors
Ermal LUÇI
09:02 AM Revision 49a8ee7f: Do not show errors on bootup and test before trying to make a directory if it exists
Ermal LUÇI
08:59 AM Revision 9c8f0a3a: Fix the issue with crash reporter even here as per pull #954
Ermal LUÇI
08:33 AM Revision 0b8a6bcb: Merge pull request #951 from stilez/patch-1
Tighten is_numeric() Ermal Luçi
08:32 AM Revision feb79ce5: Merge pull request #954 from phil-davis/master
Make a good copy of PHP_errors.log for crash reporter Ermal Luçi
07:56 AM Revision 38cb3c39: Make a good copy of PHP_errors.log for crash reporter
Forum report https://forum.pfsense.org/index.php/topic,72877.0.html Phil Davis
07:09 AM Feature #3365: Implement package signing
Only missing signing key and definition about how it will happen Renato Botelho
07:06 AM Bug #2125 (Feedback): Update Package XML for FreeBSD 10.x
Done Renato Botelho
07:06 AM Bug #2126 (Feedback): Build package binaries for FreeBSD 10.x
Done Renato Botelho
05:30 AM Bug #3475: get_interface_gateway returns a subnet mask for tap interfaces
Applied in changeset commit:070dad6c8d4f4e02ad9f6f87169b7adc1ebeee34. Renato Botelho
05:20 AM Bug #3475 (Feedback): get_interface_gateway returns a subnet mask for tap interfaces
Applied in changeset commit:08185f4aa2282077e2e1f15baad5593352123d68. Renato Botelho
03:35 AM Feature #3476 (Duplicate): Null rule entry for logical segmentation of sets of rules
Hello,
We have a rather complicated rule set, with IPSec links to other offices and customers, DMZ LAN and also Pr...
Simon Barrett
02:18 AM Bug #3464 (Rejected): No RRD Graphing When Using "Enable Pass-through MAC automatic additions"
that's by design - the MAC pass-through entries aren't captive portal users, they're MACs that are always allowed thr... Chris Buechler
02:18 AM Revision d55cba63: Fix gateway quality RRD to have the correct granularity and be consistent with the pfSense graphs set.
Create gateway quality RRD with settings suitable for pfSense graph set, since apinger uses default step (300) and o... N0YB
01:53 AM Revision 4caa9574: Tighten is_numeric()
Improvements:
1) avoids 'expensive' preg_match() and is a more exact test
2) fixes logic whereby an empty string or ...
Stilez y
 

Also available in: Atom