Project

General

Profile

Activity

From 03/28/2014 to 04/26/2014

04/26/2014

10:21 PM Revision a5303b6e: Don't refuse to delete a bridge in the GUI just because its bridge interface doesn't exist, just log that it doesn't exist and don't attempt to ifconfig destroy it, delete it from config
Chris Buechler
10:20 PM Revision 549b7ce2: Don't refuse to delete a bridge in the GUI just because its bridge interface doesn't exist, just log that it doesn't exist and don't attempt to ifconfig destroy it, delete it from config
Chris Buechler
02:49 PM Bug #3626: rc.start_packages called twice on startup if WAN is set to DHCP
According to a comment in /etc/rc.newwanip:
@We need to force sync VPNs on such even when the IP is the same for d...
Daniel Eckert
12:15 PM Bug #3626 (Not a Bug): rc.start_packages called twice on startup if WAN is set to DHCP
Hi,
rc.start_packages: Restarting/Starting all packages is called twice at boot!...
Gunther Jauch
01:00 PM Feature #3623: Allow each package to choose if it is restarted on interface events
A simple working "workaround" approach to notice if a restart of packages occured could be realized like so:
1. Th...
Gunther Jauch
12:53 PM Feature #3623: Allow each package to choose if it is restarted on interface events
Phillip Davis wrote:
> Possible solution:
> a) Leave the "start" and "stop" actions as is - calling /var/local/etc/...
Gunther Jauch
12:49 PM Feature #3623: Allow each package to choose if it is restarted on interface events
Phillip Davis wrote:
> Possible solution:
> a) Leave the "start" and "stop" actions as is - calling /var/local/etc/...
Gunther Jauch
09:59 AM Revision b2e2c6bc: Its long overdue the ez-ipupdate.cache file
Ermal LUÇI

04/25/2014

06:55 PM Revision 6374fb57: Make sure to actually configure the outgoing query interfaces if selected.
Warren Baker
06:44 PM Revision 5c048099: Make sure the correct interface is selected once the config has been saved for the DNS forwarder
Warren Baker
06:44 PM Revision 1155de41: Make sure the correct interface is selected once the config has been saved. Fixes #3620
Warren Baker
06:18 PM Bug #3557 (Resolved): module runfw.ko is missing in 2.2 alpha
Cool, thanks for reporting back. Renato Botelho
04:56 PM Bug #3557: module runfw.ko is missing in 2.2 alpha
Just wanted to say thanks for fixing this issue!
I've been waiting for PFS 2.2 nightlies to appear so that I could...
William Bedard
05:05 PM Revision 67273d72: Merge pull request #1105 from florian-asche/RELENG_2_1
Renato Botelho
04:45 PM Revision 8dcf0a57: Update services.inc
fix Florian Asche
04:13 PM Revision 71172088: Move the IPsec settings from System > Advanced, Misc tab to "Advanced Settings" tab under VPN > IPsec.
Jim Pingle
02:00 PM Bug #3620 (Feedback): Saving unbound settings twice in a row yields incorrect interface selection validation errors
Applied in changeset commit:1155de41f7eb1e32f7902b6dca67b256baa04fad. Warren Baker
02:22 AM Feature #3625 (Rejected): Able to select a Gateway Group as the Default Gateway
duplicate of #1411 Chris Buechler
01:53 AM Feature #3625 (Rejected): Able to select a Gateway Group as the Default Gateway
pfSense is limited to selecting only interfaces as the default gateway. Some services and packages such Squid and the... Jorge Talamas
02:21 AM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
the RRDs are accurate because they pull from pf's counters, not the OS NIC-level counters. This hopefully works in 2.... Chris Buechler

04/24/2014

08:11 PM Revision 05e3936a: Merge pull request #1095 from ExolonDX/unknown branch
Renato Botelho
08:10 PM Revision d1d6d0d3: Tidy up "maintable.inc" XHTML
Change escaped single quotes to just a single quote Colin Fleming
08:02 PM Revision 75a8ba83: Resolver has no option for remote syslog, remove wrong copy/paste that was adding it when apinger was enabled
Renato Botelho
08:02 PM Revision 1ccccb84: Resolver has no option for remote syslog, remove wrong copy/paste that was adding it when apinger was enabled
Renato Botelho
08:00 PM Revision 4ac23286: Merge pull request #1119 from phil-davis/patch-4
Renato Botelho
08:00 PM Revision b149b3a1: Merge pull request #1118 from phil-davis/patch-3
Renato Botelho
06:37 PM Revision a600043b: Merge pull request #1104 from ExolonDX/branch_master_04
Renato Botelho
06:36 PM Revision 005a1442: Merge pull request #1103 from ExolonDX/branch_master_03
Renato Botelho
06:35 PM Revision 5325746c: Merge pull request #1102 from ExolonDX/branch_master_02
Renato Botelho
06:32 PM Revision ee0a8a87: Merge pull request #1101 from ExolonDX/branch_master_01
Renato Botelho
06:18 PM Revision 00d35e1d: Merge pull request #1114 from ExolonDX/branch_master_13
Renato Botelho
06:17 PM Revision b8c23e11: Merge pull request #1113 from ExolonDX/branch_master_12
Renato Botelho
06:17 PM Revision 97ec4900: Merge pull request #1112 from ExolonDX/branch_master_11
Renato Botelho
06:17 PM Revision 2b5e7781: Merge pull request #1111 from ExolonDX/branch_master_10
Renato Botelho
06:17 PM Revision 67015da5: Merge pull request #1110 from ExolonDX/branch_master_09
Renato Botelho
06:15 PM Revision 7a24a70f: Merge pull request #1109 from ExolonDX/branch_master_08
Renato Botelho
06:15 PM Revision c58af6ee: Merge pull request #1108 from ExolonDX/branch_master_07
Renato Botelho
06:15 PM Revision 30ca9c24: Merge pull request #1107 from ExolonDX/branch_master_06
Renato Botelho
06:14 PM Revision 58b0ed00: Merge pull request #1106 from ExolonDX/branch_master_05
Renato Botelho
06:13 PM Revision 199b6581: Merge pull request #1120 from phil-davis/patch-5
Renato Botelho
06:12 PM Revision 7362b959: Merge pull request #1121 from fegu/patch-1
Renato Botelho
03:02 PM Bug #3613 (Feedback): Remote syslog server gets added to " DHCP service events" without being checked.
Both pull requests were merged. Thanks! Renato Botelho
02:16 PM Revision 3cc28680: Fix PBI installation when target lies on different directorie
Renato Botelho
11:35 AM Revision 74127ce3: Update services_dnsmasq.php
Clarified that domain overrides also encompasses subdomains (see https://forum.pfsense.org/index.php?topic=72978.15 f... Finn Espen Gundersen
11:15 AM Feature #2766: status_openvpn.php needs IPv6 support
This still isn't entirely possible in the most current version of OpenVPN (2.3.3 as of this update) for mixed IPv4 an... Jim Pingle
06:23 AM Feature #3623: Allow each package to choose if it is restarted on interface events
Completely behind this.
Would the additional parameter cause an issue for rc scripts that were not written to expect...
Steve Wheeler

04/23/2014

11:03 PM Bug #1773: wrong URL is displayed for web interface access at console for DHCP
This still seems to be an issue in 2.2 Alpha (4/23/14 build). Fairly minor, bit thought I'd mention it.... Andy Sayler
10:33 PM Revision ccbae577: fix typo
Chris Buechler
10:33 PM Revision 5f91c28e: fix typo
Chris Buechler
10:23 PM Bug #3624 (Closed): "ppp: OpenConfFile: Can't open file '/var/etc/mpd_wan.conf': No such file or directory"
I've got this error "ppp: OpenConfFile: Can't open file '/var/etc/mpd_wan.conf': No such file or directory". No conne... Vladimir Suhhanov
09:24 PM Feature #3623 (New): Allow each package to choose if it is restarted on interface events
Example discussion here about LCD-Proc: https://forum.pfsense.org/index.php?topic=7920.msg413642#msg413642
Some pa...
Phillip Davis
08:45 PM Revision 9a5b377e: Single quoting $password breaks getting the value from the variable.
Jim Pingle
08:31 PM Revision a502e39f: No spaces between variable assignments in sh
Jim Pingle
08:30 PM Revision f931befd: This doesn't need via-env
Jim Pingle
04:59 PM pfSense Packages Bug #3622 (Rejected): OpenVPN Client Export Utility - Detect the wrong IP when generating config file and a VIP exists
Probably the same root cause as #2495 not a unique bug. Jim Pingle
04:38 PM pfSense Packages Bug #3622 (Rejected): OpenVPN Client Export Utility - Detect the wrong IP when generating config file and a VIP exists
Let's say you have a WAN Interface with the IP Address 1.1.1.1 and a Virtual IP 2.2.2.2
OpenVPN is listening on the ...
Mathieu FRAPPIER
02:16 PM Revision bd5737dc: Make sure that the DNS Forwarder/Resolver is actually capable of accepting queries on localhost before using it as a DNS server.
Jim Pingle
12:04 PM Bug #3621 (Resolved): Editing an IPsec Phase 1 creates a new Phase 1 instead
On 2.2 if you edit a Phase 1 and save, it leaves the original untouched and creates a new Phase 1 entry as if "duplic... Jim Pingle
11:50 AM Bug #3619: ipfw/dummynet not always loaded when required in 2.2
forgot to mention, I manually kldloaded ipfw as it wasn't there, but didn't on dummynet. After kldload of dummynet as... Chris Buechler
09:17 AM Bug #3619: ipfw/dummynet not always loaded when required in 2.2
Is dummynet loaded? Ermal Luçi
02:57 AM Bug #3619 (Resolved): ipfw/dummynet not always loaded when required in 2.2
Any attempt at loading a rules.limiter file results in: ... Chris Buechler
10:06 AM Bug #3450: DHCPv6 Lease Status shows no Leases
*2.1.2-RELEASE (amd64)*
* same issue as the original incident report
** DHCPv6 Leases page is empty
** NDP Table...
Vinícius Zavam
09:30 AM Bug #3620 (Resolved): Saving unbound settings twice in a row yields incorrect interface selection validation errors
Saving unbound settings twice in a row yields incorrect interface selection validation errors. Easy to reproduce as f... Jim Pingle

04/22/2014

11:07 PM Bug #3614: dhcpd: send_packet: No buffer space available
Traffic shaper is disabled on all interfaces. I read about traffic shaper possibly causing this, but this is not the ... Eugene Vignanker
10:25 PM Bug #3614 (Feedback): dhcpd: send_packet: No buffer space available
guessing this is probably either misconfigured traffic shaper, or needing to tune some parameters, maybe mbufs (kern.... Chris Buechler
08:33 PM Bug #3618 (Rejected): Pfsense boot message about intel license
not a bug, a license requirement of that driver Chris Buechler
08:14 PM Bug #3618 (Rejected): Pfsense boot message about intel license
When booting pfsense 2.1, the boot logs contain the message below:
kernel: ipw_bss: You need to read the LICENSE f...
Nico Rat
07:36 PM Revision 770f4ee5: Missed pbi_prefix here
Renato Botelho
06:37 PM Revision 384e2647: Fix PBI symlink creation and deletion under /usr/local following .pbiopt files, also drop setup_library_paths() since it's not necessary anymore
Renato Botelho
06:10 PM Revision 6f931ad2: Make sure /usr/local/etc/rc.d exists
On 2.2-ALPHA (i386)built on Mon Apr 21 13:01:11 CDT 2014 (for example) there was /usr/local/etc but not /usr/local/et... Phil Davis
03:27 PM Bug #3617: DHCP default gateway is missing on initial install with static WAN address
I have to disagree that this is a misconfiguration and not a bug. The "misconfiguration" is not adding a default gate... Tim Dufrane
03:14 PM Bug #3617 (Rejected): DHCP default gateway is missing on initial install with static WAN address
misconfiguration, not bug. Continue on forum Chris Buechler
03:09 PM Bug #3617 (Rejected): DHCP default gateway is missing on initial install with static WAN address
Initial documentation at https://forum.pfsense.org/index.php?topic=75766
Steps to reproduce:
1. Change WAN inte...
Tim Dufrane
11:01 AM Bug #1629: invalid state table entries after WAN IP change
sorry for spamming...yet another update..
Today there were troubles with the Wan provider. In pfsense the gateway...
Tom De Coninck
09:32 AM Revision 635f9eb5: Merge pull request #1116 from PiBa-NL/interface_has_gateway-ipv4_gif_gre
Ermal LUÇI
09:30 AM Revision 1147bd00: Merge pull request #1115 from PiBa-NL/reply-to_IPv6gateway
Ermal LUÇI
08:03 AM Bug #3613: Remote syslog server gets added to " DHCP service events" without being checked.
See pull requests https://github.com/pfsense/pfsense/pull/1118 and https://github.com/pfsense/pfsense/pull/1119 Phillip Davis
06:52 AM Revision ebafd470: Load if_stf module when needed
Ermal LUÇI
04:13 AM Bug #3615 (Closed): /etc/rc.d/*.sh start" is executed during bootup, but equivalent "stop" cmd is never issued during shutdown
Hi there. I apologize if this is issue has been entered in the wrong category.
There seems to be no feature to all...
Dreamcat Four

04/21/2014

11:40 PM Bug #3614 (Resolved): dhcpd: send_packet: No buffer space available
DHCPD service fails with "No buffer space available" error in the log after period of interface inactivity. pfSense v... Eugene Vignanker
05:01 AM Revision 9fca7574: Cut paste bug fix in Remote Syslog DHCP events
This version for 2.1 branch.
apinger is repeated here from the code above, but it should be dhcp.
Forum https://forum...
Phil Davis
04:57 AM Revision 80571c81: Cut paste bug fix in Remote Syslog DHCP events
apinger is repeated here from the code above, but it should be dhcp.
Forum https://forum.pfsense.org/index.php?topic=...
Phil Davis

04/20/2014

10:16 PM Bug #3481: Run-Away processing with hme NICs
It's a hme driver problem, the PHP that gets kicked off repeatedly is a symptom of the underlying driver issue. We ha... Chris Buechler
04:23 PM Bug #3481: Run-Away processing with hme NICs
I have this same problem. I am fairly certain it did not occur on pfsense 2.0.x (the last stable before 2.1).
When t...
Volker Kuhlmann
10:12 PM Bug #3611 (Feedback): DHCP relay to a server behind the gateway does not work
Thanks Phil Chris Buechler
04:07 AM Bug #3611: DHCP relay to a server behind the gateway does not work
Yep, this should have fixed this issue: https://github.com/pfsense/pfsense/commit/d530f8f77da83d8e8dd1ac84c5a42077d52... Phillip Davis
02:19 AM Bug #3611: DHCP relay to a server behind the gateway does not work
I think Phil Davis may have already put in a pull request to fix this, though at a quick glance I'm not seeing it. Chris Buechler
08:07 AM Bug #3613 (Resolved): Remote syslog server gets added to " DHCP service events" without being checked.
A remote syslog server gets added to the dhcp services in /var/etc/syslog.conf without "DHCP service events" being ch... David Williams
02:29 AM Bug #3612 (Resolved): Packages through proxy doesn't work since change to HTTPS
Since changing from HTTP to HTTPS for packages, it seems connectivity doesn't work if via a proxy. Multiple reports h... Chris Buechler

04/19/2014

11:38 PM Feature #1189: Gateway: Multiple monitor ips
Think we can get this implemented by 2.2? That would be awesome Jorge Albarenque
03:35 PM Revision b7b461fc: Add nohttpsforwards option to captive portal
derelict-pf
02:26 PM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
Note that this only affects the SVG based graphs (on the dashboard or Status -> Traffic Graph), the RRD based ones (S... Bernhard Schmidt
02:23 PM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
Same problem with 2.1.2 x64 on vmxnet3 interfaces. Input rate is always doubled regardless of the direction, see the ... Bernhard Schmidt
01:43 PM Bug #3611 (Resolved): DHCP relay to a server behind the gateway does not work
We have the following setup
WAN: 192.168.15.16/29
LAN: 172.16.18.0/24
DHCP server: 10.156.33.53
iow, the DHC...
Bernhard Schmidt
01:20 PM Revision 2700ef96: add gre and gif checks for for IPv4 function interface_has_gateway($friendly), like they are already for IPv6
Pi Ba
01:15 PM Revision 93f1d233: check gateway for IPv6 also for reply-to rules.
Pi Ba
09:40 AM Bug #3610: Network Connection Problem
Hi,
i think i found the Problem.
I Think its 50% a configuration problem and 50% a bug.
I Configured the DNS...
Florian Asche

04/18/2014

10:52 PM Bug #3597: Package reinstall on system upgrades needs some fallback handling
Definitely some improvements to be made here.
One that'd go a long way is before doing anything, see if you can f...
Chris Buechler
10:49 PM Bug #3592 (Rejected): DynDNS
Chris Buechler
06:43 PM Bug #3592: DynDNS
Please Close this Issue! Florian Asche
10:48 PM Bug #3609 (Rejected): ppoe in virtual machines sometimes dont receive signal
You have an issue of some sort but nothing indicates it's a bug. Please post to the forum or mailing list for further... Chris Buechler
11:59 AM Bug #3609 (Rejected): ppoe in virtual machines sometimes dont receive signal
pfsense 2.1.2 using vmware workstation
i get a lot of
Apr 18 13:18:30 apinger: No usable targets found, ex...
Luis Couto
10:44 PM Bug #3610 (Rejected): Network Connection Problem
Nothing mentioned here appears to be a bug, rather you have some configuration issues you need to correct. Please uti... Chris Buechler
06:52 PM Bug #3610 (Rejected): Network Connection Problem
Hi,
i installed PFSense Version 2.1.2, amd64.
I have 4 interfaces:
WAN: IPv4 Internet
WAN3G IPv4 Backup Inter...
Florian Asche
10:29 PM Revision cdb782b7: Tidy up "services_wol" XHTML
Add SUMMARY to tables
Update HTML Boolean operators
Close INPUT and IMG tags and add ALT to IMG tags
Deprecate ampers...
Colin Fleming
10:25 PM Revision a50337c3: Tidy up "services_snmp" XHTML
Add "closehead" PHP variable and manually close HEAD
Add CDATA section to scripts
Add SUMMARY to tables
Closing INPUT...
Colin Fleming
10:20 PM Revision ce6c33e3: Tidy up "vpn_pppoe" XHTML
Add SUMMARY to tables
Close IMG tags and and ALT
Move NOWRAP to class statement
Close INPUT tags
Colin Fleming
10:15 PM Revision 32a31f8a: Tidy up "services_ntpd_pps" XHTML
Add SUMMARY to tables
Update HTML Boolean operators
Close INPUT tags
Add missing closing DIV, closing TD and closing ...
Colin Fleming
10:13 PM Revision 9c37d703: Tidy up "serviecs_ntp_gps" XHTML
Add "closehead" PHP variable and manually close HEAD
Add CDATA section to SCRIPTS
Add SUMMARY to tables
Update HTML B...
Colin Fleming
10:08 PM Revision d9555fc5: Tidy up "services_ntpd" XHTML
Add "closehead" PHP variable and manually close HEAD
Add CDATA sections to SCRIPTS
Closing IMG tag and add ALT
Change...
Colin Fleming
10:04 PM Revision 5f4f4c3f: Tidy up "load_balancer_setting" XHTML
Add SUMMARY to tables
Closing INPUT tags
Add missing closing TD tag
Colin Fleming
10:01 PM Revision 835d6d5c: Tidy up "load_balancer_monitor" XHTML
Add SUMMARY to tables
Update PHP shorthamd
Move "fbegin.inc" between BODY and SCRIPT
Add CDATA section to scripts
Clo...
Colin Fleming
09:55 PM Revision 76523ef5: Tidy up "load_balancer_virtual_server" XHTML
Add SUMMARY to tables
Update PHP shorthand
Move "fbegin.inc" inbetween BODY and SCRIPT
Close INPUT tags
Update HTML B...
Colin Fleming
09:48 PM Revision 0e7aea24: Tidy up "load_balancer_pool" XHTML
Add SUMMARY to tables
Update PHP shorthand
Move "fbegin.inc" include between BODY and SCRIPT
Add CDATA section to scr...
Colin Fleming
09:44 PM Revision 90e5ca6f: Moved my changes from Pull Request #1025 , #1019 , #1018 , #1012 (master) to RELENG_2_1
* Added missing usepublicip with dyndnsCheckIP
* Added missing CURL setops
Florian Asche
09:40 PM Revision 1fb1117c: Tidy up "services_igmpproxy" XHTML
Add SUMMARY to tables
Close INPUT and IMG tags and add ALT to IMG tags
Deprecate ampersand in anchor tags
Add CDATA s...
Colin Fleming
09:35 PM Revision d3c90ddd: Tidy up "services rfc2136" XHTML
Add SUMMARY to tables
Move NOWRAP to class statement
Close INPUT and IMG tags and add ALT to IMG tags
Update HTML Boo...
Colin Fleming
09:24 PM Revision f9f467e2: Tidy up "services_dyndns" XHTML
Add CDATA section to scripts
Add SUMMARY to tables
Move NOWRAP to class statement
Deprecate ampersand
Close INPUT and...
Colin Fleming
03:24 PM Revision 928dc66a: Be smarter at using kenv
Ermal LUÇI
02:34 PM Revision 2f0401af: Remove problematic code without proper checks but even not needed here
Ermal LUÇI
02:33 PM Revision 7b66c1d7: Remove problematic code without proper checks but even not needed here
Ermal LUÇI
09:55 AM Revision dd8d9bdc: pfSense - Bug #3607: Fix issue whereby the ICMP6 messages sometimes have the wrong source IP when a monitor gateway has been set.
Gilles Compienne
09:43 AM Revision 8c7e38ff: [pfSense - Bug #3607] Ensure gateway detection can cope with the gateway being a dynamically assigned PPoE interface.
Gilles Compienne
07:38 AM Bug #1629: invalid state table entries after WAN IP change
This week i have done some more testing on this issue nr #1629.
Everybody in that issue is talking that the stat...
Tom De Coninck
05:03 AM Bug #3607: apinger misconfigured when using PPPoE link
Phillip Davis wrote:
> Go to https://github.com/pfsense/pfsense and make yourself an account and submit the code cha...
Gilles Compienne

04/17/2014

08:19 PM Revision 302c005e: Unload the ZFS module if its not in use to not consume uselss memory
Ermal LUÇI
12:56 PM Revision c93f46fe: Merge pull request #1096 from fraenki/fix_pbi_services
Ermal LUÇI
12:55 PM Revision 7896c39c: Merge pull request #1094 from ingenieurmt/master
Ermal LUÇI
12:51 PM Bug #3607: apinger misconfigured when using PPPoE link
Go to https://github.com/pfsense/pfsense and make yourself an account and submit the code change there. It will be mu... Phillip Davis
08:21 AM Bug #3607: apinger misconfigured when using PPPoE link
Posting the source code on the bug report does not seems to have gone well (missing bits and the like, escape issues ... Gilles Compienne
08:17 AM Bug #3607 (Resolved): apinger misconfigured when using PPPoE link
When using a PPoE link for a WAN then the script configuring apinger (i.e. /etc/inc/gwlb.inc) will not configure apin... Gilles Compienne
12:21 PM Revision 5e5c72be: support symlinked RC scripts from PBI packages
Frank Wall
10:56 AM Bug #3443: run -- Ralink Technology USB
OK. There is something else wrong, not just "freebsd 10" needed.
On boot I have that (newest on top)
@
Apr 17 18:3...
Vladimir Suhhanov
09:44 AM pfSense Packages Feature #3608 (Rejected): new package: puppet
A puppet agent for pfSense. Please review the pull-request and add the
package to the official repository.
https...
Frank Wall
08:35 AM Revision 4010266a: GC unused code and do not set this to 0 for now since it is not anymore relevant
Ermal LUÇI
07:59 AM Bug #3550: [IPv6] wizard not pointing to the right IPv6 address after first setup.
*pfSense-LiveCD-2.1.2-RELEASE-i386*.
* got the same issue with it;
* steps to install and setup were just the sa...
Vinícius Zavam
04:50 AM Feature #3599 (Resolved): missing kernel option / kernel module in 2.2 (mount_nullfs)
Renato Botelho
04:41 AM Feature #3599: missing kernel option / kernel module in 2.2 (mount_nullfs)
Downloaded the latest snapshot. It worked. Thanks guys! Dreamcat Four

04/16/2014

04:12 PM Bug #3223: pfr_unroute_kentry: delete failed and freeze
2.1.1-RELEASE (amd64) built on Tue Apr 1 15:22:32 EDT 2014 FreeBSD 8.3-RELEASE-p14 on new hp server 360 G6
Intel(R)...
xavier Lemaire
11:29 AM pfSense Packages Bug #3606 (Resolved): can't use content scanner in Dansguardian 2.12.0.3_2 pkg v.0.1.8 pfsense 2.1.2-RELEASE (amd64)
i have those messages in system logs
Apr 16 16:17:15 root: /usr/local/etc/rc.d/dansguardian.sh: WARNING: failed to ...
sylvain sylvain
08:48 AM pfSense Packages Bug #3605 (Closed): Dansguardian not saving groups config files with correct PICS paths.
Either that, or the PICS files are saved as the wrong files.
When saving a PICS list, it saves the file as /usr/pb...
Calvin Kruse
08:18 AM pfSense Packages Bug #3525: Dansguardian Writing Script Garbage (CsrfMagic.end)
I am also seeing this bug. I wish I knew where to submit a report to the dansguardian package maintainer, though. Calvin Kruse
02:28 AM Bug #3604: Traffic shaper wizard rules can't be deleted
I forgot to indicate that it's version:
2.1.2-RELEASE (i386)
built on Thu Apr 10 05:23:34 EDT 2014
FreeBSD 8.3-...
badon _
02:25 AM Bug #3604 (Rejected): Traffic shaper wizard rules can't be deleted
Here:
https://192.168.1.1/firewall_shaper_wizards.php
I first tried to use the "Single Wan multi Lan" wizard, ...
badon _

04/15/2014

09:43 PM Revision 922e4ab6: Add missing closing quotes
ingmthompson
09:11 PM Revision a15450e7: Correct missing parenthesis. Reported-by: https://forum.pfsense.org/index.php?topic=75120.0
Ermal LUÇI
05:57 PM Revision 8a84b3ab: Key off net.inet.carp.demotion and display a warning to the user if the system has self-demoted its CARP status.
Jim Pingle
05:26 PM Revision f7b0cd43: Fix text, capitalization, and change wording to put more focus on how the action behaves.
Jim Pingle
05:08 PM Revision 5c4d2d75: Ensure e-mail address carries over from the CA screen to the Cert screen in the OpenVPN wizard.
Jim Pingle
02:19 PM Revision 525a502c: Merge pull request #1093 from phil-davis/patch-2
Ermal LUÇI
02:06 PM Revision 45f4d762: Fix susbstr-substr typo
I just got this error again on 14 Apr 2014 2.2 snapshot. I can see the fix in 2.1 branch. I could have sworn it got f... Phil Davis
01:27 PM Bug #3281 (New): In certain cases, GRE interfaces are missing the "RUNNING" flag at bootup and will not function
Have a config from a customer that can replicate on all 2.1x versions. In projects git repo, redmine-3281.xml. That's... Chris Buechler
01:18 PM Bug #3579 (Resolved): Limiter rules causing syntax errors
Jim Pingle
01:18 PM Bug #3579: Limiter rules causing syntax errors
Confirmed fixed. Anonymous
02:43 AM Bug #3579: Limiter rules causing syntax errors
Fixed in my limited (padon the pun) testing with 2.2-ALPHA (i386) built on Mon Apr 14 15:07:07 CDT 2014 Phillip Davis
01:17 PM Bug #3596: OpenVPN being passed bad arguments
Confirmed working here also. Anonymous
12:00 PM Bug #3596 (Resolved): OpenVPN being passed bad arguments
Confirmed fixed on current code (snap+gitsync), no error and the process is running. Interface is there also. Jim Pingle
12:25 PM Feature #3413 (Resolved): CARP interface names in WebGUI
This is a bit of a moot point on 2.2 as the names already appear differently and use the configured interface descrip... Jim Pingle
12:17 PM Bug #3573: tun/tap interfaces not available for assignment in 2.2
The OpenVPN interfaces do appear for assignment in current code.
For interfaces made outside of OpenVPN:
tunX in...
Jim Pingle
12:06 PM Bug #3593 (Resolved): pfSsh.php playback gitsync master not working on 2.2 ALPHA
Works OK on current snapshots (I just used it) Jim Pingle
08:56 AM Feature #3599 (Feedback): missing kernel option / kernel module in 2.2 (mount_nullfs)
Already added to kernel Renato Botelho
08:18 AM Feature #3393: AS filtering support in aliases
+1
that would be great indeed to allow, for example, filtering and policy routing by AS.
Fabrice Vincent
07:31 AM Revision d35b367a: Merge pull request #1092 from phil-davis/patch-1
Ermal LUÇI
03:05 AM Revision 62e92cb3: Fix bracket type in Log File Size text
Now I am the one with fat fingers (or brain). Somehow I typed a curly bracket opening bracket in this text, but finis... Phil Davis
12:40 AM Bug #3603 (Rejected): Outbound NAT failure on Carp VIP after editing firewall rule.
this is a network problem of sorts, not a bug. continue the discussion on the forum. Chris Buechler

04/14/2014

11:40 PM Revision 75106986: License Agreement
Jeremy Porter
08:46 PM Revision 9265d991: Insert tracker ids for the default LAN rules
Ermal LUÇI
07:11 PM Revision 4a97aa34: Correct the sense of the check to allow openvpn to work
Ermal LUÇI
06:52 PM Revision 57ab9f7d: Correct auth-user-pass-verify to include parameters properly so openvpn can start
Ermal LUÇI
06:38 PM Revision e86ae5ae: Merge pull request #1091 from dv-user1/usort_fix2
Renato Botelho
06:30 PM Revision 1565d318: Merge pull request #1085 from ExolonDX/branch_master_01
Renato Botelho
06:05 PM Bug #3321: IPSEC failure on modem reset, automatic reconnection is broken, must manually restart racoon service
This is broken again in 2.1.2 Christian Borchert
06:05 PM Revision c760c69c: Fixup update URL
Ermal LUÇI
05:52 PM Revision 14da6d95: fixed a type in usort callback
Francois Blanchette
03:32 PM Bug #3579 (Feedback): Limiter rules causing syntax errors
Fixed please test new snapshots. Ermal Luçi
03:13 PM Revision 05dd0c32: Use the FreeBSD script for ldconfig to catch all libs
Ermal LUÇI
03:06 PM Revision 7723551f: Merge pull request #1088 from phil-davis/patch-11
Ermal LUÇI
02:40 PM Revision f4462954: Unset logfilesize rather than let it be zero
1) When saving Status: System logs: Settings, if the Log File Size field is left blank, it gets cast to (int) and end... Phil Davis
01:48 PM Revision df8e43cc: Avoid warnings later on if no config for layer7 exists
Ermal LUÇI
01:06 PM Revision e61f548f: Get rid of embedded platform. Its time to GC this
Ermal LUÇI
12:47 PM Revision 115b7b81: Start using filterlog
Renato Botelho
12:43 PM Revision 2a438d7e: Switch over to filterlog sooner than later
Ermal LUÇI
12:34 PM Revision b13567f0: Unset also here
Ermal LUÇI
12:32 PM Revision 2154560d: Unset these globals after use
Ermal LUÇI
12:25 PM Revision b0de4399: Merge pull request #1087 from phil-davis/patch-10
Ermal LUÇI
12:24 PM Revision 82f273e1: Merge pull request #1086 from phil-davis/patch-9
Ermal LUÇI
11:37 AM Revision 32751b9f: Include static routes in automatic NAT rules display
If I have an internal gateway to other private subnets behind LAN, and add a static route to those private subnets th... Phil Davis
11:23 AM Revision ee34e137: Do not allow upgrade_101_to_102 to exit early
This upgrade step does both Captive Portal stuff and OpenVPN stuff. So do not return early just because there is no C... Phil Davis
10:33 AM Revision 146ee078: console, reload firewall rules after enabling SSH
Pi Ba
10:28 AM Revision b4e0a62a: Merge pull request #1076 from phil-davis/patch-2
Renato Botelho
10:27 AM Revision c30639e4: Get real interface when dhcrelay uses default GW
If the DHCP Relay server is not on any local subnet, and not on any subnet that has an internal static route, but is ... Phil Davis
10:25 AM Revision 856be311: Merge pull request #1078 from phil-davis/patch-4
Ermal LUÇI
10:22 AM Revision 93fb6094: Tidy up XHTML
Update HTML Boolean operator (multiple)
Change ONCLICK to lower case
Add missing semi-colon
Colin Fleming
10:20 AM Revision d2bdd53a: Merge pull request #1073 from phil-davis/patch-1
Ermal LUÇI
10:19 AM Revision 33f53717: Merge pull request #1072 from marcelloc/patch-3
Ermal LUÇI
10:16 AM Revision 69a5d970: Merge pull request #1084 from phil-davis/patch-8
Ermal LUÇI
09:54 AM Revision d87ec8f9: Merge pull request #1071 from ExolonDX/master
Renato Botelho
09:35 AM Revision d471a890: tls-verify requires quotes around the command to be executed. Ticket #3596
Chris Buechler
09:35 AM Revision 84fc1d4d: use email from CA creation also as the default for server cert
Chris Buechler
09:11 AM Bug #3603: Outbound NAT failure on Carp VIP after editing firewall rule.
If it helps;
When this problem occurs and I edit the interface, I see (on the console):
wan_vip2: 2 Link states...
Tony Rogers
05:37 AM Bug #3603 (Rejected): Outbound NAT failure on Carp VIP after editing firewall rule.
pfSense version 2.1.1-RELEASE (amd64).
Hardware: HP DL380 G5 server with on board Broadcom nics and additional HP ...
Tony Rogers
09:10 AM Revision c58dbe2f: Fix typo
Phil Davis
08:13 AM Revision 23cb5252: There is no need to make distinction in kernel anymore since they are the same nowdays and it does the right thing(tm) most of the time
Ermal LUÇI
08:09 AM Revision f03ed350: Nowdays there is no real difference between the kernels apart the ZFS support. So do not keep a distinction anymore
Ermal LUÇI

04/13/2014

03:41 PM Bug #3595 (Feedback): OpenVPN TAP/TUN <--> interface bridge not working after reeboot
This has been solved on latest 2.1 cod ein github.
If you gitsync it will solve the issues.
It will be discussed ...
Ermal Luçi
02:43 PM Bug #3595: OpenVPN TAP/TUN <--> interface bridge not working after reeboot
Issue confirmed: OpenVPN tap connection is initiated successfully, but no traffic passes through.
Affected version...
Christian Baerike
01:56 PM Feature #2960: Add queue length adjustment capabilities to traffic shaper based on network size
Actually, after some research and a better understanding of queuing, this is not practical.
Queue lengths need to ...
Shawn Iverson
01:12 PM Revision ae588a5c: add is_array safety check
Pi Ba
01:05 PM Revision 07c82152: console, reload firewall rules after enabling SSH
Pi Ba
01:04 PM Revision c42117c1: Certificate Manager, call packages plugin function to show used certificates
Pi Ba
10:48 AM Bug #3602 (Rejected): OpenVPN can authenticate via a broken certificate
That is correct. OpenVPN only checks that the cert is a valid cert (not expired, not revoked) from the same CA as the... Jim Pingle
07:20 AM Bug #3602: OpenVPN can authenticate via a broken certificate
I am not sure what's the bug here? AFAICT OpenVPN only tries to match user against Common Name (not SAN!) in the clie... Doktor Notor
07:37 AM Bug #3249: DHCP Server/DHCP Relay both say the other is started
I am not across the update code but the problem definitely occurred. I have just manually edited the server's /conf/c... Scott Smith

04/12/2014

08:08 PM Bug #3470: IPSec VPN not recognizing alternative IP name
Since OpenVPN accepts a certificate that was created with a common name that doesn't match the IP address to which Op... B. Derman
06:05 PM Bug #3470: IPSec VPN not recognizing alternative IP name
If you take the certificate and look at it via OpenSSL, you can clearly see the extensions are completely missing. If... Doktor Notor
01:08 PM Bug #3470: IPSec VPN not recognizing alternative IP name
#3347 claims that SANs don't work at all but, in my configuration, they do work for OpenVPN where the SAN is of type ... B. Derman
05:02 AM Bug #3470: IPSec VPN not recognizing alternative IP name
Duplicate of Bug #3347, SubjectAltNames are completely broken. Doktor Notor
08:05 PM Bug #3602 (Rejected): OpenVPN can authenticate via a broken certificate
See bug 3470 (https://redmine.pfsense.org/issues/3470). B. Derman
04:32 PM Revision 7fd38f44: fixing typo for GIF tunnels to work over IPv6
the call of get_interface_gatewayv6() in the creation of a GIF tunnel over IPv6 leads to a "Fatal error: Call to unde... m0se
04:29 PM Revision bb8f3ce1: fixing typo for GIF tunnels to work over IPv6
the call of get_interface_gatewayv6() in the creation of a GIF tunnel over IPv6 leads to a "Fatal error: Call to unde... m0se
03:53 PM Bug #3601 (Closed): Assigning a PPP Interface failed
Assigning a PPPs Interface via Webconfigurator fails. The Link https://pfsense.localdomain/interfaces_ppps_edit.php s... Tobias Kuehn
02:44 PM Revision d530f8f7: Get real interface when dhcrelay uses default GW
If the DHCP Relay server is not on any local subnet, and not on any subnet that has an internal static route, but is ... Phil Davis
11:28 AM Revision faf20ee4: Also add similar checks on rc.newwanipv6 as in the v4 version
Ermal LUÇI
11:28 AM Revision 5aba8d90: Also add similar checks on rc.newwanipv6 as in the v4 version
Ermal LUÇI
11:25 AM Revision 1f43ccf5: Forgot to remove the problematic part from previous OpenVPN loop fix commit
Ermal LUÇI
11:24 AM Revision 83c0dc1d: Forgot to remove the problematic part from previous OpenVPN loop fix commit
Ermal LUÇI
11:03 AM Revision ffb76388: Tidy up package signature text
Thought I would tidy this up while coming across it. IMHO "Package settings" reads better than "Packages settings"...... Phil Davis
06:21 AM Revision 91571af5: Take care of the loops reported for OpenVPN in tap mode. Also fixes the problems of tap disappearing from bridge if its a member.
Ermal LUÇI
06:20 AM Revision f96b9a18: Take care of the loops reported for OpenVPN in tap mode. Also fixes the problems of tap disappearing from bridge if its a member.
Ermal LUÇI
12:33 AM Revision db45bc68: tls-verify requires quotes around the command to be executed. Ticket #3596
Chris Buechler
12:31 AM Revision e8e28366: use email from CA creation also as the default for server cert
Chris Buechler

04/11/2014

08:30 PM Bug #3598 (Resolved): AutoConfigBackup restore not working
this is resolved in the latest version of the package. Chris Buechler
07:31 PM pfSense Packages Bug #3580 (Closed): Stunnel mangled cert on upgrade
Chris Buechler
09:08 AM pfSense Packages Bug #3580: Stunnel mangled cert on upgrade
I have just upgraded to 2.1.2-RELEASE (amd64) and the certificates look fine this time so possibly something else got... jeffrey Smith
10:39 AM Bug #3571: Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
It's not a general issue currently, please post on the forum for assistance. Jim Pingle
10:38 AM Bug #3571: Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
I cannot use the auto updater via the web GUI or the CLI. I am still at 2.1 upon reboot. Gabriel Latour
07:57 AM Bug #3596: OpenVPN being passed bad arguments
I pulled this from /var/etc/openvpn/server1.conf:... Anonymous
07:02 AM pfSense Packages Bug #3600 (Rejected): Snort rules update causes 'Last config change' in Status: Dashboard
Please post in the forum to discuss and confirm before opening a bug.
You can always see what updated the configurat...
Jim Pingle
06:00 AM pfSense Packages Bug #3600 (Rejected): Snort rules update causes 'Last config change' in Status: Dashboard
I updated one of my pfSense 2.1 systems to snort pkg v 3.0.6 last night. Logging in this morning, I saw this in Statu... Toomas Aas
04:00 AM Feature #3599 (Resolved): missing kernel option / kernel module in 2.2 (mount_nullfs)
Hi there.
I understand that pfSense doesn't come with a lot of the standard (FreeBSD-GENERIC) modules and kernel o...
Dreamcat Four

04/10/2014

09:13 PM Bug #3598 (Resolved): AutoConfigBackup restore not working
It always gives an error like:
The following input errors were detected:
SHA256 values do not match, cannot r...
Phillip Davis
08:50 PM Revision d6fa5566: Add curly brackets here to improve readability
Renato Botelho
08:49 PM Revision 43f661f7: unset doesn't like @ to silent it, just check if it's set before unset
Renato Botelho
04:56 PM Bug #3597 (Resolved): Package reinstall on system upgrades needs some fallback handling
Lost all packages on upgrade. No idea if the process was killed or what, does not exactly matter. Result:
- Instal...
Doktor Notor
04:46 PM Bug #3592: DynDNS
Hm no, sorry, the bug must be somewhere else.
The pull i send was just a output improovement.
i think the dyndn...
Florian Asche
03:55 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Chris Buechler wrote:
> fixed.
PFSense 2.1.2 fixes CVE-2014-0160.
David Smid
02:35 PM pfSense Packages Bug #3588 (Resolved): Heartbleed bug in OpenSSL
fixed. Chris Buechler
02:26 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Frederic MEYER wrote:
> I am on 2.1 and did not upgrade to 2.1.1 (obviously waiting for 2.1.2 now...).
> Nor did I ...
David Smid
02:10 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
I am on 2.1 and did not upgrade to 2.1.1 (obviously waiting for 2.1.2 now...).
Nor did I have to reboot to see the p...
Frederic MEYER
01:56 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Frederic MEYER wrote:
> That's my point!
> So I don't understand David's output even though he claims to have updat...
David Smid
11:45 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
We're looking into a way to do that but the version numbers are controlled by the FreeBSD port versions and not direc... Jim Pingle
11:32 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Don't get me wrong, but "if the version number on the PBI file itself did not change" is just something that *never* ... Doktor Notor
10:36 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
No, but you may have to uninstall and reinstall the package if the version number on the PBI file itself did not change. Jim Pingle
10:31 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Frederic MEYER wrote:
> That's my point!
> So I don't understand David's output even though he claims to have updat...
David Smid
10:20 AM pfSense Packages Bug #3588 (Feedback): Heartbleed bug in OpenSSL
Ah, well he's looking at output without considering the wrappers. He's checking the base system and not the self-cont... Jim Pingle
10:17 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
That's my point!
So I don't understand David's output even though he claims to have updated his system.
Frederic MEYER
10:14 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
What is wrong in that output? 1.0.1g is the updated/fixed/correct version. Jim Pingle
10:11 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Correct.
And, as Jeremy said,
> "Please note that haproxy-devel seems to ship its own instance own instance of o...
Frederic MEYER
10:04 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
PBI packages are run using wrappers such that they see the libraries present inside of their own PBI dir. Checking wi... Jim Pingle
09:52 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Frederic MEYER wrote:
> FWIW, haproxy-devel package seems to have been updated a few hours ago and bumped to 1.5-dev...
David Smid
03:54 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Agreed. Not the best place.
Will look at the development forum.
Frederic MEYER
03:48 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Not really the place for a long off-topic discussion in a bug. I'll support Lane's suggestion to sign up for pfSense ... Phillip Davis
03:02 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
FWIW, haproxy-devel package seems to have been updated a few hours ago and bumped to 1.5-dev22 pkg v 0.8.
I did the ...
Frederic MEYER
02:09 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Since others are pointing me to this ticket to keep tabs I thought it best to comment with something useful.
If yo...
Lane Campbell
02:01 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
To everyone involved, is there anything we can do to assist with getting this released? Rather keen to get this patch... Ross Williamson
02:40 PM Bug #3591 (Resolved): Impossible to edit CRLs in 2.1.1
Chris Buechler
02:38 PM Bug #3585 (Resolved): CVE-2014-0160 - OpenSSL Heartbleed Bug
fixed Chris Buechler
10:20 AM Bug #3585: CVE-2014-0160 - OpenSSL Heartbleed Bug
FYI- 2.1.2 images are being tested now. So far, so good.
As a reminder, this bug is for Heartbleed in the base syste...
Jim Pingle
02:36 PM Bug #3596: OpenVPN being passed bad arguments
What arguments does it have after those parameters in the conf file? Chris Buechler
08:01 AM Bug #3596 (Resolved): OpenVPN being passed bad arguments
Basic OpenVPN configuration (Remote Access SSL/TLS) yields the following result in system log:
openvpn[34830]: Opt...
Anonymous
07:58 AM Bug #1629: invalid state table entries after WAN IP change
Friends, Developers
i have been doing some extensive testing on this issue yesterday evening.. yes i know ...get a l...
Tom De Coninck
02:58 AM Bug #3595 (Resolved): OpenVPN TAP/TUN <--> interface bridge not working after reeboot
After building Tap OpenVPN tunnel with bridged interfaces between 2 sites with pfsense 2.1.1
That looks like :
...
Marcin Nowak
12:58 AM Revision f4065455: List GWGs in Interface to send update from
Back-port of this fix done in master https://github.com/pfsense/pfsense/commit/31300a95f71b14dcb98c139388205223a36e8c... Phil Davis

04/09/2014

08:53 PM Revision da1d0165: fix git path calls and CODIR
it may need some checks/fixes on pkg-utils.inc as git downloads but not installs.
After manual pbi install of git, "...
Marcello Silva Coutinho
07:35 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Jim Thompson wrote:
> And you registered only today to tell us that?
>
> Hi Jim,
> I do not think comments like this ...
Sam McLeod
07:29 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Jim Thompson wrote:
> Justin Foreman wrote:
> > Agreed with Sam. I've had to make the call to disable our VPN. The ...
Justin Foreman
07:05 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
in any case, yes, this bug had to be fixed.
and while we were in there, the ECDSA bug had to be fixed (note that i...
Jim Thompson
06:59 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Note: This bug is for Heartbleed in _packages_, and many (if not all) of those have already been updated and bumped s... Jim Pingle
06:58 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Justin Foreman wrote:
> Agreed with Sam. I've had to make the call to disable our VPN. The natives are getting restl...
Jim Thompson
06:56 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
We know its vulnerable, but for what its worth.. I have tested the POC available here: https://gist.github.com/mpdavi... Josh Cavalier
06:55 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
The release will be done when its done.
I release involves some 80+ variants all of which have to be built.
Build...
Jeremy Porter
06:45 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Agreed with Sam. I've had to make the call to disable our VPN. The natives are getting restless. This is a *security*... Justin Foreman
05:49 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Any update with this?
It's pretty critical...
Sam McLeod
06:23 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Guys, can someone fix the CRLs in 2.1.1 *before* releasing 2.1.2? A LOT of people will want/need to revoke certificat... Doktor Notor
04:52 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
When will haproxy-devel be available as a separate update? This would solve my problem. David Smid
04:29 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
I don't know more than you, but once Chris and the US wakes up, by the look of the above. ie sometime on Apr 9: US ti... Oliver Schonrock
04:27 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Is there any ETA on new release? A realistic one, not 1 hour then 10+ :)
I need to patch but I'd rather wait and ...
Arr0way .
04:15 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Phil Jaenke wrote:
> Lot's of PolarSSL stuff and about how awesome it is ....
Don't think a bug report is the r...
Oliver Loch
05:35 PM Bug #3594 (Resolved): Captive portal inconsistancy - "Allowed IP addresses" vs "Allowed Hostnames"
When editing an entry under Services --> Captive Portal --> Allowed IP Addresses
the note on screen refers to dire...
Criggie .
03:57 PM Bug #3593 (Resolved): pfSsh.php playback gitsync master not working on 2.2 ALPHA
pull request pushed with a fix.
https://github.com/pfsense/pfsense/pull/1072
Marcello Silva Coutinho
03:54 PM Bug #3569: pkg_edit.php jquery 'add' and 'delete' action scrolls page to top.
Pull request merged to 2.2 and 2.1 branch.
Marcello Silva Coutinho
12:52 PM Revision 80f48850: Use an alphanumeric test rather than purely is_numericint because the ID is generated by uniqid and is not purely numeric. Fixes #3591
Jim Pingle
12:45 PM Revision d22169cf: Use an alphanumeric test rather than purely is_numericint because the ID is generated by uniqid and is not purely numeric. Fixes #3591
Jim Pingle
12:24 PM Bug #3592 (Rejected): DynDNS
Hi Guys,
the RFC 2136 Update Script didnt work right.
It sends again and again a mail "DynDNS updated IP Address ...
Florian Asche
08:32 AM Bug #3591: Impossible to edit CRLs in 2.1.1
OK, fix works, thanks. It is indeed correct that starting with a completely new CA is best solution in this case, but... Doktor Notor
08:00 AM Bug #3591: Impossible to edit CRLs in 2.1.1
Applied in changeset commit:80f48850307dea4ceb08dc1a785dd24322b5283d. Jim Pingle
08:00 AM Bug #3591 (Feedback): Impossible to edit CRLs in 2.1.1
Applied in changeset commit:d22169cfd68a26c04ca6d1aa997575f1b3e4cc80. Jim Pingle
07:48 AM Bug #3591: Impossible to edit CRLs in 2.1.1
A fix is coming but ideally you'd create a whole new CA and Cert structure if you believe yours has been compromised.... Jim Pingle
06:30 AM Bug #3591 (Resolved): Impossible to edit CRLs in 2.1.1
See https://forum.pfsense.org/index.php?topic=74935.msg408977#msg408977
Since lots of people will want/need to rev...
Doktor Notor
05:27 AM Bug #3585: CVE-2014-0160 - OpenSSL Heartbleed Bug
Unfortunately.
Check the https://redmine.pfsense.org/issues/3588 to watch the progress.
Frederic MEYER
05:26 AM Bug #3585: CVE-2014-0160 - OpenSSL Heartbleed Bug
that's true only for the base system.
but several packages including lighttpd for the webfrontend use /usr/local/...
Oliver Schonrock
05:25 AM Bug #3585: CVE-2014-0160 - OpenSSL Heartbleed Bug
OK, my fault: find / -type f -name 'openssl' -exec \{\} version \;
>OpenSSL 1.0.1e 11 Feb 2013
>OpenSSL 0.9.8y 5 Fe...
Nils Bernhardt
05:19 AM Bug #3585: CVE-2014-0160 - OpenSSL Heartbleed Bug
PFsense 2.1 uses openssl 0.9.8y, which is NOT VULNERABLE. Nils Bernhardt

04/08/2014

10:11 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Please note that haproxy-devel seems to ship its own instance own instance of openssl, so will need to be reviewed as... Jeremy B
08:53 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Chris Buechler wrote:
> "actually been audited", "has a vastly better track record"? Uh, no. OpenSSL has had a lot m...
Phil Jaenke
06:29 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
oh that. 1 hour, hah! I wish. We've burned easily 20+ man hours in the last day on this. Chris Buechler
06:27 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
nothing says "1 hour", it takes 4-5 times that long just to build a release, much less actually test it and push it o... Chris Buechler
06:16 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Revised time estimate? Says "1 hour" up top, which strikes me as overly optimistic.
Thanks,
-danny
Daniel Howard
06:10 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
"actually been audited", "has a vastly better track record"? Uh, no. OpenSSL has had a lot more eyes on it than Polar... Chris Buechler
02:20 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
At this point, I would vastly prefer to see OpenSSL kicked to the curb as unceremoniously as possible in favor of Pol... Phil Jaenke
11:15 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Not exactly. The problem in packages is distinct from the one in base. The base firmware update won't fix package and... Jim Pingle
11:12 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Additionally, already reported in #3585 Doktor Notor
10:42 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
It's known and we're already working on it. Jim Pingle
10:35 AM pfSense Packages Bug #3588 (Resolved): Heartbleed bug in OpenSSL
http://heartbleed.com reports a serious defect in OpenSSL 1.0.1 that has been fixed in 1.0.1g
haproxy is vulnerable.
David Smid
05:14 PM pfSense Packages Bug #3590 (Resolved): Snort package missing
fixed Chris Buechler
01:52 PM pfSense Packages Bug #3590 (Resolved): Snort package missing
When attempting to install snort from PFsense, the package is missing from the repo.
Beginning package installatio...
Adriel Desautels
05:07 PM Revision def5d042: No pre release this time
Renato Botelho
03:47 PM Revision 6e767d17: Restore old logic and add a @ at unset to silent when it is not set as suggested by Ermal
Renato Botelho
01:25 PM Revision 8294066e: Make extra sure that we do not start multiple instances of dhcpleases if, for example, the PID is stale/invalid and there is still a running instance.
Jim Pingle
01:10 PM Revision e222576c: Bump to 2.1.2-PRERELEASE since 2.1.1 was released
Renato Botelho
12:43 PM Revision 3f08e7ab: Tidy up "guiconfig.inc" XHTML
Add missing closing SELECT tag Colin Fleming
12:12 PM Revision df0b05a3: Merge pull request #1068 from FCI/patch-1
Renato Botelho
11:50 AM Feature #3589 (Resolved): OpenVPN client: GUI option for "route-nopull"
The current OpenVPN client has no GUI option corresponding to the "route-nopull" argument. This is definitely an opt... Dan Matsuma
09:21 AM Bug #3587 (Resolved): postfix packag requires pfSense 2.1
After latest commits, this requires features only available on 2.1.x, like IPv6 stuff. Ref: https://forum.pfsense.org... Doktor Notor
09:07 AM Bug #3585: CVE-2014-0160 - OpenSSL Heartbleed Bug
+1111111 Steve Thomas
04:32 AM Bug #3585 (Resolved): CVE-2014-0160 - OpenSSL Heartbleed Bug
Marking as urgent, see http://heartbleed.com/ Doktor Notor
08:27 AM Bug #3586 (Rejected): Gateway monitoring issue when 2 PPPoE WANs share the same gateway
Hi,
I have 2 DSL connections plugged into my Pfsense. I use 2 PPPoE interface in Pfsense to establish the link.
...
Mathieu Déom
05:53 AM pfSense Packages Bug #3584: arpwatch package fails to start in pfsense 2.1.1
Thanks for the quick response which was right on the spot.
I made the proposed change to /usr/local/pkg/arpwatch.xml...
Max Frames
04:36 AM pfSense Packages Bug #3584: arpwatch package fails to start in pfsense 2.1.1
This recent commit introduced those quotes to the arpwatch package: https://github.com/pfsense/pfsense-packages/commi... Phillip Davis
02:11 AM pfSense Packages Bug #3584 (Resolved): arpwatch package fails to start in pfsense 2.1.1
I'm not sure if this is a bug with arpwatch or with pfsense 2.1.1, it did not happen in pfsense 2.1 though, with the ... Max Frames
01:05 AM pfSense Packages Feature #3583 (Closed): haproxy-devel: individual backend for each acl
To define several backends based on acl's for one frontend a backend selection iten is recommended for each acl - cur... Andreas Morf

04/07/2014

11:27 PM Bug #3582 (Closed): webConfigurator redirect rule not working
Chris Buechler
10:16 PM Bug #3582: webConfigurator redirect rule not working
RESOLVED
Not a pfSense issue, errors experienced only on clients running Windows 8
James Morgan
09:36 PM Bug #3582 (Closed): webConfigurator redirect rule not working
after updating from 2.1 to 2.1.1, the port 80 redirect to a listening port of 4434 for HTTPS failed, redirects to 443... James Morgan
07:00 PM Bug #1629: invalid state table entries after WAN IP change
I'm still experiencing this issue with pfsense 2.1 on an ALIX platform and an Cisco SPA112 ATA.
pfsense is configure...
Andy Lawson
06:52 PM Bug #3573: tun/tap interfaces not available for assignment in 2.2
tun and tap interfaces should be available for assignment, whether tunX/tapX or ovpnsX/ovpncX. Chris Buechler
05:38 PM Revision 1d0cacfe: Check if the ipsec section exists before doing operations on it.
Ermal LUÇI
03:30 PM Revision ca321bfd: Correct typo on function name that has slipped unnoticed. Reported-by: https://forum.pfsense.org/index.php?topic=74688.0
Ermal LUÇI
03:29 PM Revision bde74857: Correct typo on function name that has slipped unnoticed. Reported-by: https://forum.pfsense.org/index.php?topic=74688.0
Ermal LUÇI
02:49 PM Revision 2c0dd263: fixes Bug #3569
On packages that uses row_helper when user clicks on add or delete button, the page scrolls to top.
It seems somethin...
Marcello Silva Coutinho
02:49 PM Revision dc915669: Merge pull request #1053 from marcelloc/patch-1
Renato Botelho
02:43 PM Revision 539d94b3: Merge pull request #1055 from ExolonDX/branch_master_10
Renato Botelho
02:10 PM Revision 69e593c1: Make extra sure that we do not start multiple instances of dhcpleases if, for example, the PID is stale/invalid and there is still a running instance.
Jim Pingle
12:45 PM Bug #3575: OPT interfaces on GRE tunnels do not accept IPv6 or IPv4 addresses to be set.
GRE addresses should be configured only on the GRE itself, not its assigned interface. Sounds like this is the proper... Chris Buechler
12:40 PM Bug #3581 (Rejected): Create Option to either password protech just 1 option or remove it from the console.
Password protecting the console doesn't disable ctrl-alt-del to reboot. Chris Buechler
09:41 AM Bug #3581: Create Option to either password protech just 1 option or remove it from the console.
And then you also accidentally pressed Y? ... Doktor Notor
08:29 AM Bug #3581 (Rejected): Create Option to either password protech just 1 option or remove it from the console.
We have had issue with instead of rebooting they will hit option 4) Reset to factory default. That option need to be... Robert Middleswarth
12:31 PM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
hi,
I have similar trouble but on almost all interface VLAN and not VLAN in 2.1.1 x64
Information for SNMP are fals...
xavier Lemaire
12:18 PM Revision 1bf572ec: Merge pull request #1056 from ExolonDX/branch_master_12
Renato Botelho
12:17 PM Revision ec307f4d: Merge pull request #1057 from ExolonDX/branch_master_13
Renato Botelho
12:17 PM Revision dc11a7dd: Merge pull request #1058 from ExolonDX/branch_master_14
Renato Botelho
12:17 PM Revision 0031e4da: Merge pull request #1059 from ExolonDX/branch_master_15
Renato Botelho
12:16 PM Revision ee5c8e0b: Merge pull request #1060 from ExolonDX/branch_master_16
Renato Botelho
12:16 PM Revision 8c771b19: Merge pull request #1061 from ExolonDX/branch_master_17
Renato Botelho
12:15 PM Revision c3288e0c: Merge pull request #1062 from ExolonDX/branch_master_18
Renato Botelho
11:40 AM Revision f5961e7b: Merge pull request #1063 from ExolonDX/branch_master_19
Renato Botelho
10:55 AM Revision 29773e5c: Merge pull request #1065 from ExolonDX/branch_master_22
Renato Botelho
09:06 AM Revision a7ee038b: Put the fix to be more generic to prevent any other leak possible in the long run. Fixes #3062
Ermal LUÇI
09:01 AM Revision 39f3d843: Update captiveportal.inc
Release unused pipeno when client is already authenticated.
Bug #3062
Dsi Unicaen
08:10 AM Revision bb7843fd: Indentation
Warren Baker
08:09 AM Revision 2a2b603d: Indentation
Warren Baker
08:09 AM Revision c2fe67eb: Dont check for 'checked' but rather if it is just set
Warren Baker
07:43 AM Bug #742: apinger doesn't recover opt wan when connection returns.
Chris Buechler wrote:
> It's not that easy to replicate, none of mine do that. What kind of WANs?
on my system th...
Sharif Al Motawally
07:12 AM pfSense Packages Bug #3580: Stunnel mangled cert on upgrade
https://forum.pfsense.org/index.php?topic=60009.msg322825#msg322825
I raised the above post on the forum over a ye...
jeffrey Smith
06:31 AM pfSense Packages Bug #3580 (Closed): Stunnel mangled cert on upgrade
I had pfsense 2.1 installed with stunnel 4.43 installed and added a certificate.
I upgraded to 2.1.1-RELEASE(amd64...
jeffrey Smith
06:04 AM Bug #3572: Can't set IPv6 gateway
Hello,
I use a Sixxs tunnel. I found my fault. The Subnet Mask of the GIF-Interface must set to 128. Then the GW w...
Samuel Schmidt
02:35 AM Bug #3572 (Rejected): Can't set IPv6 gateway
not a bug Chris Buechler
04:00 AM Bug #3062: Captive Portal NOT re-using PIPENO
The patch was merged Dsi. Ermal Luçi
03:18 AM Bug #3062: Captive Portal NOT re-using PIPENO
When a user is already authenticated and re-send an authentication, a new pipeno is created (function radius). The al... Dsi Unicaen
02:34 AM Bug #3578 (Rejected): Upgrade from 2.1 to 2.1.1 causes Fatal trap 12 - 0x4c
not a replicable issue Chris Buechler
02:31 AM Bug #3571 (Resolved): Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
was fixed yesterday Chris Buechler

04/06/2014

09:13 PM Bug #3544: Inbound IPv6 connections over PPPoE, replies do not route through the tunnel.
I have just upgraded to
@2.1.1-RELEASE (i386)
built on Tue Apr 1 15:27:01 EDT 2014
FreeBSD 8.3-RELEASE-p14@
a...
Criggie .
04:51 PM Revision d269747b: Ensure variable is available when testing smtp. Fixes #3577 (well not the rrd summary package).
Warren Baker
12:55 PM Bug #3579 (Resolved): Limiter rules causing syntax errors
Creating and applying a limiter rule in 2.2 causes an error similar to the below:
There were error(s) loading the ...
Anonymous
12:00 PM Bug #3577 (Feedback): SMTP Notifications not working when using SMTPS
Applied in changeset commit:d269747b358f6e8f844e88d39fe36b8f33343d24. Warren Baker
06:19 AM Bug #3577 (Resolved): SMTP Notifications not working when using SMTPS
h3. Configuration:
* E-Mail server: example.com
* SMTP Port of E-Mail server: 2525
* Secure SMTP Connection: Ena...
Anonymous
07:08 AM Bug #3578: Upgrade from 2.1 to 2.1.1 causes Fatal trap 12 - 0x4c
Removing the virtual CDROM from the settings allows it to boot correctly. Anonymous
06:51 AM Bug #3578 (Rejected): Upgrade from 2.1 to 2.1.1 causes Fatal trap 12 - 0x4c
Host: Oracle VM Virtualbox @ Windows 7
Steps: Upgrade via web interface, seems successful and reboots automaticly.
...
Anonymous

04/05/2014

09:13 PM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
I am currently seeing this issue without VLANs. 2.1.1 64-bit
Jason Litka
06:57 PM Revision 2a230e80: Update system_advanced_misc.php
Nick Daniels
06:49 PM Revision 5a9dd268: Added check line 175: Needed to fix error in GUI
Added check to see if $config['ipsec']["ipsec_{$lkey}"] is set before executing unnecessary unset, was causing issues... Nick Daniels
02:22 PM Bug #3576 (Resolved): Console upgrade automatically skips hash check if no hash file found
When performing an upgrade via the console, if no hash file for the downloaded image is found at the expected locatio... Daniel Becker
01:21 PM Bug #3571: Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
FWIW, doing a command line upgrade (with ".img.gz" removed from the default URL) seems to have worked fine. It did ju... Daniel Becker
09:17 AM Bug #3571: Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
Certainly *NOT* fixed. Doktor Notor
03:56 AM Bug #3571: Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
The file names of the images at http://updates.pfsense.org/_updaters/amd64 still seem to be messed up (missing the .i... Daniel Becker
12:47 AM Bug #3571: Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
"The image file is corrupt. Update cannot continue" Daniel Becker
12:34 AM Bug #3571 (Feedback): Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
I'm going through and testing now to fully confirm, but should be ok. If you can also confirm that'd be appreciated. Chris Buechler
12:12 PM Bug #3575: OPT interfaces on GRE tunnels do not accept IPv6 or IPv4 addresses to be set.
This applies to 2.1.1, it worked on 2.1. Mix Room
12:07 PM Bug #3575 (Resolved): OPT interfaces on GRE tunnels do not accept IPv6 or IPv4 addresses to be set.
I have set up a GRE tunnel over an IPSec tunnel. I can ping the IPv4 end-points with no problem.
I have added an ...
Mix Room
08:43 AM Bug #3572: Can't set IPv6 gateway
Are you creating a tunnel? See #3484 - you should just leave the GW as dynamic instead of creating one manually. Doktor Notor
05:57 AM Bug #3572: Can't set IPv6 gateway
I'm on pfsense 2.1.1 Samuel Schmidt
05:51 AM Bug #3572 (Rejected): Can't set IPv6 gateway
Hello,
when i set a „IPv6 Upstream Gateway“ with the link „or add a new one“ on the Interface GUI. It works fine! ...
Samuel Schmidt
07:43 AM Bug #3573 (Closed): tun/tap interfaces not available for assignment in 2.2
Version 2.2 Alpha options not create virtual interface.
Pfsense Version 2.1.1 is possible create virtual interface u...
Gilmar Cabral

04/04/2014

10:10 PM Bug #3570 (Rejected): Configuring OPT1 interface IPV4 create IPV6 route Pfsense 2.1.1
no apparent bug here, please post to the forum or list for assistance. Chris Buechler
01:12 PM Bug #3570 (Rejected): Configuring OPT1 interface IPV4 create IPV6 route Pfsense 2.1.1
In pfsense 2.1.1 setup creates an interface OPT1 only ipv4 ipv6 route is created automatically.
Attached Images
Gilmar Cabral
10:01 PM Bug #3571: Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
that's my bad, fixing it right now. Chris Buechler
09:56 PM Bug #3571: Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
Comparing to the listing in http://updates.pfsense.org/_updaters/ (without amd64), I noticed another oddity: The amd6... Daniel Becker
09:44 PM Bug #3571: Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
Also, for some reason, there appear to be two sets of identically named copies of the hash files for the NanoBSD imag... Daniel Becker
09:42 PM Bug #3571: Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
Looking at http://updates.pfsense.org/_updaters/amd64/ in a browser, I noticed that all the NanoBSD images have a tim... Daniel Becker
09:38 PM Bug #3571 (Resolved): Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
I've gone through the update wizard in the web interface twice now on my NanoBSD/4G/amd64 system, and I keep ending u... Daniel Becker
05:09 PM Revision e68b4e91: Tidy up "services_unbound_advanced.php" XHTML
Add "closehead" variable and manually close HEAD
Add CDATA sections to scripts
Add SUMMARY to tables
Update HTML Bool...
Colin Fleming
05:02 PM Revision f6543a41: Tidy up "services_unbound_acls.php" XHTML
Add "cloeahead" variable and manually close HEAD
Add CDATA sections to scripts
Close INPUT
Add SUMMARY to tables
Upda...
Colin Fleming
04:58 PM Revision 931f47ea: Tidy up "services_unbound" XHTML
Add "cloeahead" variable and manually close HEAD
Add CDATA sections to scripts
Add SUMMARY to tables
Update HTML Bool...
Colin Fleming
04:47 PM Revision 7bd5b320: Tidy up "services_dnsmasq" XHTML
Add "closehead" variable and manually close HEAD
Add CDATA sections to scripts
Add SUMMARY to tables
Update HTML Bool...
Colin Fleming
04:39 PM Revision d29303c5: Tidy up "services_router_advertisements" XHTML
Add CDATA sections to script
Add SUMMARY to table
Update HTML Boolean operators
Add dummy table row, but don't displa...
Colin Fleming
04:35 PM Revision ee9530e1: Tidy up "services_dhcpv6" XHTML
Update alert message
Add "closehead" variable and manually close HEAD
Add CDATA sections to script
Add SUMMARY to tab...
Colin Fleming
04:30 PM Revision 3565970f: Tidy up "services_dhcpv6_realy.php" XHTML
Add "closehead" variable and manually close HEAD
Add CDATA sections to scripts
Add summary to tables
Add missing clos...
Colin Fleming
04:25 PM Revision 180db186: Tidy up "services_dhcp" XHTML
Update alert message
Add "closehead" variable and manually close HEAD
Add CDATA sections to scripts
Add summart to ta...
Colin Fleming
04:15 PM Revision d2b3e9dc: Tidy up "services_dhcp_relay.php" XHTML
Add "closehead" variable and close HEAD manually
Add CDATA sections to scripts
Add summary to TABLES
Add missing clos...
Colin Fleming
04:08 PM Revision 5a2b90cd: Tidy up "functions.inc"
Escape single quotes for TABLE and HREF
Updated closing TR tag
Colin Fleming
01:04 PM Revision 251a1246: fixes Bug #3569
On packages that uses row_helper when user clicks on add or delete button, the page scrolls to top.
It seems somethin...
Marcello Silva Coutinho
11:44 AM Revision 1458017a: Fix variable name, it's not necessary to check since it is always set at ipsec.inc
Renato Botelho
07:58 AM Bug #3569 (Resolved): pkg_edit.php jquery 'add' and 'delete' action scrolls page to top.
On packages that uses row_helper when user clicks on add or delete button, the page scrolls to top.
It seems somet...
Marcello Silva Coutinho
06:51 AM pfSense Packages Bug #3565 (Rejected): package blinkLED not working on the APU1C board from PC Engines
We don't have FreeBSD drivers for the APU LEDs generally available yet. There isn't anything the package can do about... Jim Pingle
01:09 AM pfSense Packages Bug #3565 (Rejected): package blinkLED not working on the APU1C board from PC Engines
Install is done correctly.
blinkLED process cannot start.
Apr 4 08:09:42 php: /pkg_edit.php: The command '/usr/lo...
Nicolas Scheffer
06:50 AM pfSense Packages Bug #3564 (Rejected): package gwled not working on the APU1C board from PC Engines
We don't have FreeBSD drivers for the APU LEDs generally available yet. There isn't anything the package can do about... Jim Pingle
01:01 AM pfSense Packages Bug #3564 (Rejected): package gwled not working on the APU1C board from PC Engines
Install is done correctly.
gwled process cannot start.
Apr 4 08:02:33 php: /pkg_edit.php: New alert found: An err...
Nicolas Scheffer
06:45 AM Bug #3568 (Resolved): DynDNS: Hostname '@' not accepted for Namecheap
When you try to create a dynamic DNS entry for '@' as per Namecheap's DNS configuration, pfSense gives an error "The ... Anonymous
03:14 AM Feature #3567 (Resolved): Option to disable NTP
At the moment the only way I can find to stop ntpd is working is put some invalid value in the ntp server field.
I...
Fred Cox
02:35 AM Bug #3566: Gateway monitoring 6TO4 Bug
Sorry, it's working now !
Still a newbie with pfSense....
Nicolas Scheffer
02:28 AM Bug #3566 (Rejected): Gateway monitoring 6TO4 Bug
set monitor IP to something that will respond to pings. Doesn't look like a bug Chris Buechler
01:39 AM Bug #3566 (Rejected): Gateway monitoring 6TO4 Bug
I am using an APU1C board from PC Engines running pfSense (was 2.1 and 2.1.1 since this morning with the same result)... Nicolas Scheffer

04/03/2014

05:49 PM Bug #3074 (Resolved): DHCPv6 traffic blocked on LAN with DHCPv6 relay enabled
Chris Buechler
05:44 PM Bug #3562 (Feedback): Wireless Radius Setup Fails - partially due to empty config strings
Chris Buechler
04:19 PM Revision ebc311e8: Merge pull request #1052 from ExolonDX/branch_master_09
Branch master 09 Renato Botelho
04:19 PM Revision b0a2d7ed: Merge pull request #1051 from ExolonDX/branch_master_08
Tidy up "services_captiveportal_filemanager" XHTM Renato Botelho
04:18 PM Revision 22ac2187: Merge pull request #1050 from ExolonDX/branch_master_07
Tidy up "services_captiveportal_vouchers" XHTML Renato Botelho
04:18 PM Revision ab191755: Merge pull request #1049 from ExolonDX/branch_master_05
Tidy up "services_captiveportal_ip.php" XHTML Renato Botelho
04:17 PM Revision 0ba331d3: Merge pull request #1048 from ExolonDX/branch_master_04
Tidy up "services_captiveportal_mac.php" XHTML Renato Botelho
04:16 PM Revision 5aed0886: Merge pull request #1047 from ExolonDX/branch_master_03
Tidy up "services_captiveportal.php" XHTML Renato Botelho
04:15 PM Revision 99b59654: Merge pull request #1046 from ExolonDX/branch_master_02
Tidy up "services_captiveportal_zones.php" XHTML Renato Botelho
04:14 PM Revision 4ca38523: Merge pull request #1045 from ExolonDX/branch_master_01
Tidy up "system_advanced_misc.php" XHTML Renato Botelho
03:15 PM Revision 708079ba: Tidy up "services_captiveportal_hostname" XHTML
Swap BODY with php statement
Add SUMMARY to tables
Close IMG and add ALT
Deprecate ampersand
Update HTML Boolean oper...
Colin Fleming
03:06 PM Revision ad7af00b: Tidy up "services_captiveportal_filemanager" XHTM
Swap BODY and ph statement
Add SUMMARY to tables
Deprecate ampersand
Close IMG and add ALT
Move NOWRAP to class
Close...
Colin Fleming
03:01 PM Revision e25742f0: Tidy up "services_captiveportal_vouchers" XHTML
Add closehead varaiable, move script into HEAD and close HEAD manually
Add BODY
Remove unordered list tag
Update HTML...
Colin Fleming
02:47 PM Revision 48abdd0e: Tidy up "services_captiveportal_hostname" XHTML
Swap BODY with php statement
Add SUMMARY to tables
Close IMG and add ALT
Deprecate ampersand
Update HTML Boolean oper...
Colin Fleming
02:38 PM Revision 91290030: Tidy up "services_captiveportal_ip.php" XHTML
Swap BODY with php statement
Add SUMMARY to tables
Close IMG and add ALT
Deprecate ampersand
Move NOWARP to class
Clo...
Colin Fleming
02:26 PM Revision 0a1ad48c: Tidy up "services_captiveportal_mac.php" XHTML
Swapp BODY and php statement
Close INPUT
Close IMG and add ALT
Deprecated ampersand
Add SUMMARY to tables
Move NOWRAP...
Colin Fleming
02:18 PM Revision 73672832: Tidy up "services_captiveportal.php" XHTML
Add "closehead" variable, move script into HEAD and close head manually
Add CDATA sections to SCRIPT
Add SUMMARY to t...
Colin Fleming
02:09 PM Revision 8abd1782: Tidy up "services_captiveportal_zones.php" XHTML
Add SUMMARY to tables
Close IMG and add ALT
Close INPUT
Move NOWRAP to class
Deprecate ampersand
Swap BODY with php s...
Colin Fleming
01:46 PM Revision f0c522d3: Tidy up "system_advanced_misc.php" XHTML
Tidy up HTML Boolean operator
Remove redundant closing slash and chevron
Colin Fleming

04/02/2014

01:58 PM Revision 01f4a81d: Make rc.php_ini_setup ready for php 5.5
Renato Botelho
07:53 AM pfSense Packages Bug #2581: Snort unexpectedly terminates / signal 11 error
Hi All. I found that snort builded for pfsense have one nasty future. All your rulse must have classtype specified. A... Dmitry Aleksandrov

04/01/2014

08:28 PM Bug #3563 (Feedback): Wireless reconfig generates unnecessary error
should be what Phil noted there, already fixed in 2.1.1. Chris Buechler
07:53 PM Bug #3563: Wireless reconfig generates unnecessary error
This sort of thing was fixed here https://github.com/pfsense/pfsense/commit/0d8fc8ec415ace48f7963b83224fc8ee186c9a48 ... Phillip Davis
11:21 AM Bug #3563 (Resolved): Wireless reconfig generates unnecessary error
While debugging some WPA2 Enterprise issues I kept getting an error:
php: /interfaces.php The command '/sbin/ifcon...
not george
07:31 PM Bug #3562: Wireless Radius Setup Fails - partially due to empty config strings
Are you testing with 2.1.1 snapshots? It looks like this is fixed by https://github.com/pfsense/pfsense/commit/26ea40... Phillip Davis
11:15 AM Bug #3562 (Resolved): Wireless Radius Setup Fails - partially due to empty config strings
Been trying to get WPA2-Enterprise with freeradius auth setup with an onboard wireless interface. The settings were ... not george
05:26 PM Revision d374f0c4: Merge pull request #1044 from ExolonDX/master
Tidy up "system_information.widget.php" XHTML Renato Botelho
03:59 PM Revision a4b1bf88: Tidy up "functions.inc"
Remove unnecessary semi-colon. Colin Fleming
03:55 PM Revision bd42727d: Tidy up "system_information.widget.php" XHTML
Add CDATA secttions to script
Remove link to CSS file and place it in HEAD.INC and add "type"
Colin Fleming
01:15 PM Bug #3557 (Feedback): module runfw.ko is missing in 2.2 alpha
I enabled it again, should be fine on next snapshots Renato Botelho
01:39 AM Bug #3561 (Resolved): PPTP VPN broken without RADIUS - always requires RADIUS server configuration.
Upgrading from 1.2.3 to 2.1 and importing config, that includes PPTP VPN, I had problems with bringing it up, because... Jānis Veinbergs

03/31/2014

08:57 PM Revision ef322f45: Merge pull request #1042 from bmeeks8/master
Update Help links to Doc Wiki for Snort package. Renato Botelho
07:39 PM Revision 2def89a2: Fix #3555, on chrome it is not initializing correct minutes when adding a new time, just drop unused php variables and set it on js
Renato Botelho
07:38 PM Revision 5c757d82: Fix #3555, on chrome it is not initializing correct minutes when adding a new time, just drop unused php variables and set it on js
Renato Botelho
05:03 PM Bug #3182: VMware vmxnet interfaces are not detected as VLAN capable
ifconfig list caps shouldn't be used any longer. Case in point, also doesn't work for em(4) on 10.0-RELEASE. Should c... Phil Jaenke
04:28 PM Bug #3549: Reported issues with VMware guests on ESX 5.1 patch 201402001
Concur on leaving it as monitoring for now, since it's self-corrected. The calcru issues have been around since first... Phil Jaenke
03:05 PM Bug #3555 (Resolved): Editing firewall schedules is seriously buggy
Thanks Renato Botelho
02:47 PM Bug #3555: Editing firewall schedules is seriously buggy
Fixed in Chrome and IE as well here. Thanks! Doktor Notor
02:40 PM Bug #3555: Editing firewall schedules is seriously buggy
Applied in changeset commit:2def89a2ddff8d7183a03c385fba8394c5bbf08e. Renato Botelho
02:40 PM Bug #3555 (Feedback): Editing firewall schedules is seriously buggy
Applied in changeset commit:5c757d82d84c5363cd5c3d1b3df7d8bf1c641388. Renato Botelho
02:23 PM Bug #3555 (New): Editing firewall schedules is seriously buggy
On Chrome I was able to replicate, will work on a fix Renato Botelho
02:19 PM Bug #3555: Editing firewall schedules is seriously buggy
Well, that one is broken at least in Chrome 33+ and IE11. Does not happen in FF (27/28). Doktor Notor
02:11 PM Bug #3555: Editing firewall schedules is seriously buggy
I couldn't replicate this one, what browser/version are you using? Renato Botelho
02:06 PM Bug #3555: Editing firewall schedules is seriously buggy
OK, after gitsync, all fixed except for the issue described in the last comment. Doktor Notor
08:00 AM Bug #3555 (Feedback): Editing firewall schedules is seriously buggy
Applied in changeset commit:02b29d72f91d5fe4e9d9a2d4a4f7be3b4db119a1. Renato Botelho
02:42 PM Revision 291e0a1c: Remove TRIM_set and TRIM_unset support. This method isn't very elegant and isn't necessary in the long run. It's better handled in the installer stage and not after the fact.
Jim Pingle
02:40 PM Revision aa87bae5: Remove TRIM_set and TRIM_unset support. This method isn't very elegant and isn't necessary in the long run. It's better handled in the installer stage and not after the fact.
Jim Pingle
01:24 PM Bug #3560: Disabled Static Route not fully disabled
After doing testing, I deleted my static route. But there was no subsystem-dirty prompt to apply the change. The pf r... Phillip Davis
01:18 PM Bug #3560: Disabled Static Route not fully disabled
I didn't bother putting a target version on this, IMHO I wouldn't hold up any release for this! The simple workaround... Phillip Davis
01:05 PM Bug #3560 (Resolved): Disabled Static Route not fully disabled
Add a gateway to an internal router behind LAN. Add a static route to some private IPv4 subnet behind that gateway. A... Phillip Davis
12:56 PM Revision 02b29d72: Revert "XHTML Compliance"
This commit broke schedules edit, it should fix #3555.
This reverts commit e1002cd2724869eabdfe1f9258d4522d572722e4.
Renato Botelho
09:28 AM Bug #1681: OpenVPN tun IPs fail HTTP REFERER checks
This should fix it: https://github.com/pfsense/pfsense/pull/1043 Per von Zweigbergk
07:11 AM Bug #1681: OpenVPN tun IPs fail HTTP REFERER checks
I'm going to see if I can't just make a fix for this myself. Per von Zweigbergk
07:06 AM Bug #1681 (New): OpenVPN tun IPs fail HTTP REFERER checks
Jim Pingle
05:29 AM Bug #1681: OpenVPN tun IPs fail HTTP REFERER checks
This bug has not been correctly resolved, as tested with pfSense 2.1-RELEASE.
The changeset listed earlier does re...
Per von Zweigbergk
03:26 AM Bug #3518: Sometimes DHCP hostname registration does not work for a newly registered host
Unfortunately, i don't have other deployment or replication method. I am suspecting that maybe one of the hostnames t... Florent Thiery
02:14 AM Revision efecff7f: Merge pull request #1041 from PiBa-NL/carp_maintenance_2.2
carp, provide a way to 'permanently' set carp to 'maintenance mode' (advskew 254) persisting a reboot Chris Buechler
01:55 AM Revision a5c0aaa1: Update Help links to Doc Wiki for Snort package.
Bill Meeks
01:09 AM Bug #3558: Schedule States in System - Advanced - Misc not working
Best thing would be to add a checkbox to the firewall rules "reset state(s) when activated".
This would also resolve...
Dig dug3

03/30/2014

10:07 PM Bug #3447: pfSense 2.1 Captive Portal RADIUS Accouting records not sent to RADIUS Server
should be fixed in 2.1.1 but will leave for feedback for now. Chris Buechler
10:04 PM Bug #3545: OpenVPN Clients don't reconnect after dynamic WAN IPv4 changes
The subject isn't true in all cases at least. Needs testing to see if it's replicable and find the actual specific ca... Chris Buechler
09:54 PM Bug #3519: IPv6 - Dynamic IPv6-prefix - After reconnect no new IPv6 prefix
needs testing to see if it's replicable, and find the actual specific issue if so. Chris Buechler
09:51 PM Bug #3518 (Feedback): Sometimes DHCP hostname registration does not work for a newly registered host
Generally speaking, it works. Do you have a specific scenario where it's replicable? Chris Buechler
09:48 PM Bug #3549: Reported issues with VMware guests on ESX 5.1 patch 201402001
A timing issue causing a variety of other issues is definitely a more likely cause if you were getting calcru runtime... Chris Buechler
09:23 PM Feature #3559 (Resolved): add option for backup ddns ( dynamic dns ) in restore area
add option for backup ddns ( dynamic dns ) in restore area
ty
hugs
Luis Couto
03:40 AM Bug #3558 (Resolved): Schedule States in System - Advanced - Misc not working
Simply does not work, the states of existing connections are *NOT* cleared on expiration time
https://forum.pfsen...
Doktor Notor
03:04 AM Bug #3557 (Resolved): module runfw.ko is missing in 2.2 alpha
As Jimp propose i open a ticket about this little problem.
https://forum.pfsense.org/index.php?topic=74293.msg406140
xavier Lemaire

03/29/2014

11:09 PM Revision 783f1ee2: carp, provide a way to 'permanently' set carp to 'maintenance mode' (advskew 254) persisting a reboot
Option to set CARP interfaces to 'maintenance mode', persisting through a reboot so the primary machines stays as bac... Pi Ba
01:06 PM Revision f66e049a: Add privileges
Warren Baker
12:59 PM Revision 5bb1c495: Reflect the service name when starting it
Warren Baker
12:52 PM Revision 4e8e8cc8: Add localhost as always allowed and ensure to include the access lists
Warren Baker
12:47 PM Revision 58d00e65: Write out the access list correctly
Warren Baker
12:47 PM Revision e9162677: Dont unnecessarily unset
Warren Baker
12:34 PM Revision 188609c6: Fix tab indents and make sure interfaces are saved correctly
Warren Baker
10:58 AM Revision 16a3108f: Configure acls for local networks and ensure listening interfaces are correctly set
Warren Baker
10:23 AM Revision 44cf1382: Make sure interface selection works
Warren Baker
09:29 AM Revision 3b7df5f1: Reference unbound subsystem as dirty
Warren Baker
09:29 AM Revision 54b16877: Mark unbound as the subsystem
Warren Baker
09:28 AM Revision 05fec96b: Reference correct dirty subsystem
Warren Baker
09:23 AM Revision 0ae676cd: Add missing new line
Warren Baker
09:23 AM Revision 957bb61e: Add domain override page
Warren Baker
08:23 AM Bug #3556: WAN interface status missing data for pppoe ipv6 connection
Forgot to mention that the interface widget on the dashboard is also missing IPv6 information for the interface. I ... Adrien Carlyle
08:21 AM Bug #3556 (Resolved): WAN interface status missing data for pppoe ipv6 connection
When looking at status -> interfaces data is missing for WAN connection with native IPv6 over pppoe.
Web interfa...
Adrien Carlyle
06:16 AM Revision ece2988f: Correct reference
Warren Baker
06:16 AM Revision 80120fff: Email add update
Warren Baker
06:12 AM Revision fe9ec529: Correct priv match
Warren Baker
06:09 AM Revision 1b6e3c30: Ensure TXT support on host descriptions actually works
Warren Baker
06:02 AM Bug #3555: Editing firewall schedules is seriously buggy
And yet another one. When you select Start Time ending with 00 Min, click Add Time, the Min dropdown gets empty, then... Doktor Notor
05:53 AM Bug #3555: Editing firewall schedules is seriously buggy
Additionally, upon deleting the buggy schedule (example two above), the selected days stays selected, however when yo... Doktor Notor
05:47 AM Bug #3555 (Resolved): Editing firewall schedules is seriously buggy
Forum thread: https://forum.pfsense.org/index.php?topic=74101.0
Even after some previous fixes
- clicking edit on...
Doktor Notor
05:46 AM Revision 80948260: Reference correct unbound hosts edit file
Warren Baker
05:46 AM Revision 567e5f65: Reference correct module name
Warren Baker
01:21 AM Bug #3549: Reported issues with VMware guests on ESX 5.1 patch 201402001
Yep, on both hosts - related (and very relevant) VMware KB is 2072654 and 2072652: http://kb.vmware.com/selfservice/m... Phil Jaenke
12:04 AM Bug #3549: Reported issues with VMware guests on ESX 5.1 patch 201402001
Is it strictly ESX 5.1 with update 201402001? Chris Buechler

03/28/2014

10:21 PM Revision 0d73a468: Remove to other scripts with no function/or not working
Ermal LUÇI
10:17 PM Revision 412f9462: Remove another unused script
Ermal LUÇI
10:15 PM Revision 6214dd36: Remove unused ppp-script
Ermal LUÇI
10:13 PM Revision 3ae82923: Remove even unused pamd.conf
Ermal LUÇI
10:09 PM Revision e0c72564: Remove utterly old libmap.conf file
Ermal LUÇI
10:06 PM Revision c70a9878: Update disktab to FreeBSD 10
Ermal LUÇI
09:58 PM Revision 1b60c644: Remove cvsup file from pfSense tree
Ermal LUÇI
09:57 PM Revision 4cc0dce5: Another remenant from old days
Ermal LUÇI
09:54 PM Revision 362fdc4c: Remove remenants of pccardd from FreeBSD 5
Ermal LUÇI
09:45 PM Revision b110f1ba: Update protocols file as well
Ermal LUÇI
09:34 PM Revision 2c9325f6: Remove unused files
Ermal LUÇI
09:34 PM Revision a02fa5ec: Do not use the version_kernel ad version_base files since they are not relevant anyway
Ermal LUÇI
08:29 PM Bug #3549: Reported issues with VMware guests on ESX 5.1 patch 201402001
I have two physical boxes reproducing this, so yes, it is legit. I agree there doesn't seem to be any change that wou... Phil Jaenke
08:04 PM Bug #3549 (Feedback): Reported issues with VMware guests on ESX 5.1 patch 201402001
not seeing anything along those lines, nor is anyone else it appears. The supposed introduction dates have no even re... Chris Buechler
04:41 PM Revision 255596d9: Use proper variable name for the interface
Ermal LUÇI
03:19 PM Revision fe291564: Correct check that was broken even before to actually make the ieee8021x enable from proper setting. Reported-by: https://forum.pfsense.org/index.php?topic=74013.0
Ermal LUÇI
03:18 PM Revision 6e474fa9: Correct check that was broken even before to actually make the ieee8021x enable from proper setting. Reported-by: https://forum.pfsense.org/index.php?topic=74013.0
Ermal LUÇI
11:21 AM Bug #3554: apinger and OpenVPN: Gateway down after OpenVPN client service restart
Hi,
it seems to happen, if the openvpn interface comes up but encounters an error: in my configuration, a route ad...
Cullen Trey
07:48 AM Bug #3554 (Closed): apinger and OpenVPN: Gateway down after OpenVPN client service restart
Hi,
when i restart the OpenVPN client service, which has an interface assigned, the correspondig gateway is going ...
Cullen Trey
07:24 AM Revision c40d6c7a: time for 2.1.1-RELEASE
Chris Buechler
06:56 AM Feature #3553 (Rejected): Multi Wan FTP Server
I've read the forums and on some sites that the pfsense (specifically ftp-proxy) can not handle external connections ... Kelsen Cristiano P.de Faria
04:03 AM Feature #3552 (New): Allow configuring link keep-alive value in PPP
Please give us one more option to edit the PPPoE Connection for the WAN Interface
set link keep-alive 10 60
i...
Claudius Badmind
02:33 AM Feature #3551 (Rejected): add option for select multiples types of backup
if you need more than one config area, you should just backup the entire config. You can always split things out manu... Chris Buechler
 

Also available in: Atom