Project

General

Profile

Activity

From 04/06/2014 to 05/05/2014

05/05/2014

11:29 PM Revision 93caffc0: add column for internal port on UPnP status page
Daniel Becker
10:35 PM Revision a0dd23e0: add column for internal port on UPnP status page
Daniel Becker
10:10 PM Bug #3642: Can't reset to factory defaults
I'm a transposing champ. Version 2.1.3 Charlie Singleton
10:08 PM Bug #3642: Can't reset to factory defaults
Version is 1.2.3 nanoBSD Charlie Singleton
10:06 PM Bug #3642 (Resolved): Can't reset to factory defaults
checked nanoBSD in 2GB and 4GB. Unknown if other distributions are affected. Pressing option 4 in a console session... Charlie Singleton
05:58 PM Bug #3544: Inbound IPv6 connections over PPPoE, replies do not route through the tunnel.
Craig Falconer wrote:
> I have just upgraded to
>
> @2.1.1-RELEASE (i386)
> built on Tue Apr 1 15:27:01 EDT 2014...
Criggie .
03:20 PM pfSense Packages Bug #3641 (Closed): Freeradius Pfsense 2.1.3
Freeradius does not boot.
Running debug mode radiusd -X
rlm_eap: SSL error error:02001002:system library:fopen:N...
Gilmar Cabral
03:18 PM Bug #3635: Apinger does't start after upgrade to 2.1.3-RELEASE
'manually' as in 'from console'?
If so, I can't find where is apinger service located.
This also didn't work:
> ...
Kirill Harkin
02:50 PM Bug #3635 (Feedback): Apinger does't start after upgrade to 2.1.3-RELEASE
not true that it doesn't work in general. try starting it manually, what output does it get? Chris Buechler
02:49 PM Feature #3007 (Resolved): "protocol" field in rules does not support selection of protocol 41 (used by GIF tunnels)
Chris Buechler
02:48 PM Bug #2227 (Resolved): International / UTF-8 characters not working in LDAP configuration
thanks Chris Buechler
07:21 AM Bug #2227: International / UTF-8 characters not working in LDAP configuration
I'm OK with changes: works fine. Claude Duvergier
02:47 PM Bug #3636: IPssec Pre-Shared Key error
¤ is not a valid PSK character. need input validation to check the PSK more closely. Chris Buechler
02:42 PM Bug #3028 (Resolved): Prefix delegation fails to add rules for dhcp6 traffic on tracking (LAN) interface
thanks Chris Buechler
02:16 PM Bug #3520: IPV6 address on LAGG VLAN not reachable
See the _duplicated_ in *lagg0_vlan2* (re4+re5)?... Vinícius Zavam
01:57 PM Revision ec25f18a: Silent kldstat
Renato Botelho
01:47 PM Bug #3640 (Closed): Sierra Wireless 3G Modem support driver
Before FreeBSD 9.0, you need to install and compile specific Sierra driver when you want to use the Direct IP mode.
...
Nicolas Scheffer
01:20 PM Revision f5813962: Sometimes fsck requires a second run, teach rc script to call it more than once when it's necessary
Renato Botelho
10:02 AM Bug #3639 (Resolved): Captive portal crash when paackets come
Steps to reproduce:
- Configure captive portal with local user auth
- Try to access any webpage through CP
Att...
Renato Botelho
07:12 AM pfSense Packages Bug #3638 (Not a Bug): Radius internal certificate broken in 2.1.12_1/2.2.5 pkg v1.6.7_2 pfSense 2.1.3
In service > Radius > EAP > CERTIFICATES FOR TLS
If you choose the default option "Choose Cert-Manager" the path ...
greg Bernard
05:06 AM Bug #3637 (Resolved): Incorrect interface matching on bridge edit page
At line 276 of interfaces_bridge_edit.php, the comparison whether the interface is a bridge member or not is kind of ... Peter O

05/04/2014

08:11 PM Bug #3636 (Closed): IPssec Pre-Shared Key error
hey
I just made my first IPsec VPN tunnel followed this guide https://www.youtube.com/watch?v=PZjf2s53sss
but ...
dennis petersen
02:04 AM Bug #3028: Prefix delegation fails to add rules for dhcp6 traffic on tracking (LAN) interface
This can be closed. Daniel Becker
02:03 AM Feature #3007: "protocol" field in rules does not support selection of protocol 41 (used by GIF tunnels)
This ticket can probably be closed now. Daniel Becker
02:01 AM Feature #3029: DHCPv6 Server/RA page should list interfaces that are configured to track DHCP-PD
Could somebody comment whether this is an intentional restriction, or just something nobody got around to implementing? Daniel Becker

05/03/2014

04:27 PM Revision 4ec6b54d: Merge the forgotten Ticket #3062 patch for CP pipeno leaking issue which leads to the 'Maximum login reached' on CP
Ermal LUÇI
07:02 AM Bug #3062: Captive Portal NOT re-using PIPENO
Ermal Luçi wrote:
> The patch was merged Dsi.
Cannot see this merged anywhere in 2.1.3; https://forum.pfsense.org...
Doktor Notor
06:19 AM Bug #3635 (Rejected): Apinger does't start after upgrade to 2.1.3-RELEASE
After upgrading 3 routers to version 2.1.3 today, on one of the routers apinger can't be started.
It's the only x64 ...
Kirill Harkin

05/02/2014

09:48 AM Bug #3634 (Rejected): Default gateway not restored after it comes back online
I have a multi-wan setup with two gateways.
Recently, the primary cable company's connection (the primary gatewa...
Oz Solomon

05/01/2014

06:17 PM Revision 4e1b06aa: Put .hushlogin even here to not be done from tools repo. Maybe some people would like to have that on rmlist.
Ermal LUÇI
06:14 PM Revision c79f330d: Move the sh/profile files here as a more natural place to live in.
Ermal LUÇI
04:32 PM Revision 5216e359: Obsolete old clog binary from /usr/sbin
Renato Botelho
04:31 PM Revision 4f0a5e57: Obsolete old clog binary from /usr/sbin
Renato Botelho
10:56 AM Revision 96fe4393: Merge pull request #1125 from msilvoso/master
Ermal LUÇI
09:37 AM Revision 188b3b88: Merge pull request #1127 from phil-davis/patch-6
Ermal LUÇI
06:22 AM Bug #3628: Firewall: Aliases: Edit - When i remove a item, the "Diagnostics: Tables" dont remove the referer IP of a host
Note: The patch Ermal is referring to is for Bug #3627. Phillip Davis
04:37 AM Bug #3628 (Feedback): Firewall: Aliases: Edit - When i remove a item, the "Diagnostics: Tables" dont remove the referer IP of a host
The patch has been committed to the 2_1 branch. Ermal Luçi
01:18 AM Bug #3628: Firewall: Aliases: Edit - When i remove a item, the "Diagnostics: Tables" dont remove the referer IP of a host
Note: I checked this on both 2.1.2 release and 2.2-ALPHA (i386) built on 20140428-0050.
I deleted an entry from an a...
Phillip Davis
05:45 AM Revision b6ba57f6: Fix Bug #3627 Diagnostics: Tables - Remove button dont work after update to PfSense 2.1.2
This annoyed me also, so I thought it worth finding what changes exactly broke this.
del_entry was broken on 2.1 bran...
Phil Davis
02:22 AM Feature #3633 (Resolved): OpenVPN client's "Client Certificate" should be optional
The OpenVPN client configuration requires a client certificate when mode is configured as SSL/TLS. The "Client Certif... Chris Buechler
12:44 AM Bug #3627: Diagnostics: Tables - Remove button dont work after update to PfSense 2.1.2
Pull request https://github.com/pfsense/pfsense/pull/1127
This annoyed me a bit also, so I chased down which lines o...
Phillip Davis

04/30/2014

09:13 PM Revision 25f7f725: Bump version to 2.1.3-RELEASE
Renato Botelho
08:46 PM Revision 226a09d4: Tidy up "load_balancer_pool_edit.php" XHTML
Backout changes to the the SELECT tag from pull request 1104, further testing shows that it doesn't populate the disa... Colin Fleming
07:47 PM Revision 5cf91315: Migrate captive portal code to SQLite3 php module
Renato Botelho
07:47 PM Revision 6f657dfd: sqlite module is now called sqlite3
Renato Botelho
07:47 PM Revision 0c4ecb0d: Obsolete old php modules
Renato Botelho
06:42 PM Revision 31dbd433: Take care of interfaces that have no ip but might be part of the bridge as done for openvpn to avoid loops
Ermal LUÇI
06:41 PM Revision 4d076356: Take care of interfaces that have no ip but might be part of the bridge as done for openvpn to avoid loops
Ermal LUÇI
03:12 PM Bug #3631: TCP reassembly vulnerability FreeBSD-SA-14:08.tcp
we're not vulnerable by default as we enable scrub by default. Still, will put out an update. Chris Buechler
04:12 AM Bug #3631 (Closed): TCP reassembly vulnerability FreeBSD-SA-14:08.tcp
see http://www.freebsd.org/security/advisories/FreeBSD-SA-14:08.tcp.asc
Can we plan to make a 2.1.*3*-RELEASE with t...
xavier Lemaire
03:00 PM Bug #1107: mpd on AMD64 generates invalid checksums with NAT
2.2 is not released. This needs to be tested on 2.2 and this ticket updated accordingly. Chris Buechler
05:35 AM Bug #1107: mpd on AMD64 generates invalid checksums with NAT
hi all,
2.2 was release and still issue with AMD64 VPN out.
do we have a new target date for this fix?
thx
Tavo Lopez
02:49 PM Todo #3632 (Feedback): Move to sqlite3 php module
Fixed on commit:5cf913151107b1da12f44a4c0f3269f0d4dc94db Renato Botelho
07:53 AM Todo #3632 (Resolved): Move to sqlite3 php module
Old qlite module was deprecated in php 5.4, move Captive Portal to new sqlite3 syntax Renato Botelho
02:41 PM Revision 0ae4f3fa: Changes to make it work behind a bluecoat proxy - added a user agent, and changed url scheme
Manuel Silvoso
07:27 AM Revision fd2fe87d: Oops specify mode of operation to fopen
Ermal LUÇI
07:26 AM Revision e45bae34: Make the alias url processing functions not memory hungry!
Ermal LUÇI
07:07 AM Revision 8422cdd5: Rewrite update_alias_url_data to be with small memory footprint. Also return the status if an update is performed to callers and remove the write_config call embedded here since its not good to have this by default.
Ermal LUÇI
06:50 AM Revision 6657d23c: Signal a reload if anything got updated
Ermal LUÇI
06:50 AM Revision 0ad94616: Signal a reload if anything got updated
Ermal LUÇI
06:48 AM Revision 2392ed60: Merge the patch suggested in Ticket #3629. It also Fixes #3629. The question is why this is using config lock? Also where is filter configure called here?
Ermal LUÇI
06:46 AM Revision 26d060bc: Merge the patch suggested in Ticket #3629. It also Fixes #3629. The question is why this is using config lock? Also where is filter configure called here?
Ermal LUÇI
04:14 AM Bug #3630 (Needs Patch): Loadbalance idget displays wrong.
that's a general issue in a number of widgets and other screens in the GUI where you can make text long enough to scr... Chris Buechler
02:45 AM Bug #3630: Loadbalance idget displays wrong.
Widget displays out of page bounds. RoNiN The Free Soul
02:24 AM Bug #3630 (Needs Patch): Loadbalance idget displays wrong.
RoNiN The Free Soul
02:00 AM Bug #3629: URL alias update process hangs waiting for lock
Applied in changeset commit:2392ed60f3d1efa9f5a9efd6c583e4de3bba0afd. Ermal Luçi
02:00 AM Bug #3629 (Feedback): URL alias update process hangs waiting for lock
Applied in changeset commit:26d060bc8b885ec839de94cc18cfd7913662918f. Ermal Luçi

04/29/2014

10:22 PM Bug #3629: URL alias update process hangs waiting for lock
patch for anyone that needs to fix 2.1.x versions (only tested on 2.1.2)... Chris Buechler
10:17 PM Bug #3629 (Resolved): URL alias update process hangs waiting for lock
URL alias updates can hang indefinitely waiting for a lock because they call write_config() with a config lock held. ... Chris Buechler
06:36 PM Revision 19166f7d: Check the right field here
Renato Botelho
06:33 PM Revision 9caf5eca: Check the right field here
Renato Botelho
05:56 PM Revision 2ae50326: Unbreak 'add rule on top of the list' allowing after param to be -1
Renato Botelho
05:56 PM Revision 2f7f1190: Unbreak 'add rule on top of the list' allowing after param to be -1
Renato Botelho
05:36 PM Revision cd79de00: Merge pull request #1124 from ExolonDX/master
Renato Botelho
03:52 PM Revision 6316efd3: Expose all p0f OS types that it supports so that subtypes of various Operating Systems can be detected
Jim Pingle
01:34 PM Bug #3621 (Feedback): Editing an IPsec Phase 1 creates a new Phase 1 instead
Fixed by commit:9caf5eca2cf066bb293c68aa4de5e86c77eab42a and commit:19166f7d2d1d846e8b5b51252e63e05e005d9602 Renato Botelho
01:16 PM Revision 4845d642: Fix kldstat match/output to check for a running module. It was claiming all modules were loaded so none were being loaded.
Jim Pingle

04/28/2014

11:40 PM Revision 0f8af922: Tidy up "services_igmpproxy.php" XHTML
Move NOWRAP to class statement Colin Fleming
11:38 PM Revision 38505a80: Tidy up "services_ntpd_gps.php" XHTML
Update " " Colin Fleming
09:12 PM Revision 66201c96: Send HUP to restart syslogd rather than trying to restart it, thus loosing messages
Ermal LUÇI
08:36 PM Revision 3f06e538: make sure unbound is included here
Warren Baker
08:26 PM Revision 37d4cbf3: Include Unbound in logic here
Warren Baker
08:22 PM Revision 3453affc: Reconfigure unbound on dhcpv4 edit
Warren Baker
08:20 PM Revision d939c1d4: Reconfigure unbound on dhcp edit
Warren Baker
08:20 PM Revision ed225b4c: Reconfigure unbound on dhcp edit
Warren Baker
08:16 PM Revision 1e2c8821: Also reconfigure Unbound here
Warren Baker
08:15 PM Revision 9c54ed89: Reconfigure Unbound for Rebind admin checks
Warren Baker
08:12 PM Revision d1116f3b: Ensure config is global here
Warren Baker
08:12 PM Revision 137460a7: Ensure to reconfigure Unbound for filter configuration on XMLRPC
Warren Baker
08:07 PM Revision 50b2851b: Handle 0MQ filter configure
Warren Baker
08:05 PM Revision ad750d3b: If unbound is configured then assign it for the vpn service
Warren Baker
08:00 PM Revision f6248774: If Unbound is been used then make sure to reload when system_hosts_generate() is called
Warren Baker
07:27 PM Revision 9a51bb64: Make sure unbound is reconfigured when interfaces are
Warren Baker
06:51 PM Revision 7a19fd77: Add space between configile and switch
Warren Baker
06:37 PM Revision f2bc186f: Make sure domain+host overrides are deleted
Warren Baker
06:22 PM Revision 02d674e0: Put .hushlogin even here to not be done from tools repo. Maybe some people would like to have that on rmlist.
Ermal LUÇI
06:16 PM Revision 46decea7: Move the sh/profile files here as a more natural place to live in.
Ermal LUÇI
02:56 PM Revision 2db29614: Move clog from /usr to /usr/local
Conflicts:
etc/inc/filter_log.inc
etc/inc/system.inc
etc/rc
usr/local/www/guiconfig.inc
Renato Botelho
02:54 PM Revision 2a50fd8a: Move clog from /usr to /usr/local
Renato Botelho
01:41 PM Revision ebf45d96: Add filterlog to separatefacilitylog to avoid logs going elsewhere
Ermal LUÇI
01:36 PM Revision 3ffae79b: Change log level to error for php-fpm
Ermal LUÇI
01:02 PM Revision 4a4fc162: Another dir to be created
Ermal LUÇI
01:01 PM Revision 3ad5fd27: Correct the definitions of certificate path to correct place to allow the daemon to start
Ermal LUÇI
12:44 PM Revision 9e5dfe47: Update binaries used
Ermal LUÇI
12:37 PM Revision 1c73248c: Put this here for easier troubleshooting and code reading. Helps with Ticket #3619
Ermal LUÇI
12:36 PM Revision f2c34876: Use php module calls here to speedup things
Ermal LUÇI
09:48 AM Bug #3627: Diagnostics: Tables - Remove button dont work after update to PfSense 2.1.2
It does appear to be broken on 2.1.2, but it does work on 2.2. We may want to fix it on 2.1.x if it's simple, but oth... Jim Pingle
08:27 AM Revision dc5c69f1: Correct the ridirection URL to unbreak ones passed through Radius attributes and repsect user choices. Reported-by: Antoine Guillemot
Ermal LUÇI
08:27 AM Revision fb0c2bd6: Correct the ridirection URL to unbreak ones passed through Radius attributes and repsect user choices. Reported-by: Antoine Guillemot
Ermal LUÇI
08:08 AM Revision 686777c4: Use the daemon name to send the filter logs
Ermal LUÇI
08:00 AM Revision 759a6fcf: Merge pull request #1032 from fichtner/contributions manually since it does not apply cleanly
Ermal LUÇI
07:34 AM Bug #3619: ipfw/dummynet not always loaded when required in 2.2
Strange since the code to load the module is there already. Ermal Luçi
07:25 AM Revision 244741aa: Merge pull request #1040 from fichtner/pw_userdel manually since it does not apply cleanly
Ermal LUÇI
07:20 AM Revision 9d63fe5b: Merge pull request #1082 from PiBa-NL/console_ssh_rules_reload
Ermal LUÇI
07:19 AM Revision 8227e801: Merge pull request #1098 from camlin/master
Ermal LUÇI
07:16 AM Revision c6f7dce8: Merge pull request #1117 from derelict-pf/nohttpsforwards
Ermal LUÇI
07:15 AM Revision a6711d23: Merge pull request #1122 from razzfazz/miniupnp_listen_on_interface
Ermal LUÇI
07:14 AM Revision 2f965ba7: Merge pull request #1123 from razzfazz/miniupnp_listen_on_interface_master
Ermal LUÇI
03:38 AM Bug #3223: pfr_unroute_kentry: delete failed and freeze
hi all,
for follow this trouble, i erase all my pfblocker's tables and i just keep two very importantes. Today it s ...
xavier Lemaire

04/27/2014

11:20 PM Revision 3f986e2d: make miniupnpd listen on interface instead of IP
The 'listening_ip' option in miniupnpd.conf can accept an interface name
directly instead of having to translate it t...
Daniel Becker
11:09 PM Revision b1c9aff6: make miniupnpd listen on interface instead of IP
The 'listening_ip' option in miniupnpd.conf can accept an interface name
directly instead of having to translate it t...
Daniel Becker
02:16 PM Bug #3628 (Resolved): Firewall: Aliases: Edit - When i remove a item, the "Diagnostics: Tables" dont remove the referer IP of a host
When remove a single host (dhcp host name) on a Host(s) Aliases List, pfSense dont automatic remove the referer ip ad... Cleocir José Hoffmann
02:02 PM Bug #3627 (Resolved): Diagnostics: Tables - Remove button dont work after update to PfSense 2.1.2
After updated to PfSense 2.1.2 the "IP Address" remove button dont work in "Diagnostics: Tables" for Firewall: Aliase... Cleocir José Hoffmann

04/26/2014

10:21 PM Revision a5303b6e: Don't refuse to delete a bridge in the GUI just because its bridge interface doesn't exist, just log that it doesn't exist and don't attempt to ifconfig destroy it, delete it from config
Chris Buechler
10:20 PM Revision 549b7ce2: Don't refuse to delete a bridge in the GUI just because its bridge interface doesn't exist, just log that it doesn't exist and don't attempt to ifconfig destroy it, delete it from config
Chris Buechler
02:49 PM Bug #3626: rc.start_packages called twice on startup if WAN is set to DHCP
According to a comment in /etc/rc.newwanip:
@We need to force sync VPNs on such even when the IP is the same for d...
Daniel Eckert
12:15 PM Bug #3626 (Not a Bug): rc.start_packages called twice on startup if WAN is set to DHCP
Hi,
rc.start_packages: Restarting/Starting all packages is called twice at boot!...
Gunther Jauch
01:00 PM Feature #3623: Allow each package to choose if it is restarted on interface events
A simple working "workaround" approach to notice if a restart of packages occured could be realized like so:
1. Th...
Gunther Jauch
12:53 PM Feature #3623: Allow each package to choose if it is restarted on interface events
Phillip Davis wrote:
> Possible solution:
> a) Leave the "start" and "stop" actions as is - calling /var/local/etc/...
Gunther Jauch
12:49 PM Feature #3623: Allow each package to choose if it is restarted on interface events
Phillip Davis wrote:
> Possible solution:
> a) Leave the "start" and "stop" actions as is - calling /var/local/etc/...
Gunther Jauch
09:59 AM Revision b2e2c6bc: Its long overdue the ez-ipupdate.cache file
Ermal LUÇI

04/25/2014

06:55 PM Revision 6374fb57: Make sure to actually configure the outgoing query interfaces if selected.
Warren Baker
06:44 PM Revision 5c048099: Make sure the correct interface is selected once the config has been saved for the DNS forwarder
Warren Baker
06:44 PM Revision 1155de41: Make sure the correct interface is selected once the config has been saved. Fixes #3620
Warren Baker
06:18 PM Bug #3557 (Resolved): module runfw.ko is missing in 2.2 alpha
Cool, thanks for reporting back. Renato Botelho
04:56 PM Bug #3557: module runfw.ko is missing in 2.2 alpha
Just wanted to say thanks for fixing this issue!
I've been waiting for PFS 2.2 nightlies to appear so that I could...
William Bedard
05:05 PM Revision 67273d72: Merge pull request #1105 from florian-asche/RELENG_2_1
Renato Botelho
04:45 PM Revision 8dcf0a57: Update services.inc
fix Florian Asche
04:13 PM Revision 71172088: Move the IPsec settings from System > Advanced, Misc tab to "Advanced Settings" tab under VPN > IPsec.
Jim Pingle
02:00 PM Bug #3620 (Feedback): Saving unbound settings twice in a row yields incorrect interface selection validation errors
Applied in changeset commit:1155de41f7eb1e32f7902b6dca67b256baa04fad. Warren Baker
02:22 AM Feature #3625 (Rejected): Able to select a Gateway Group as the Default Gateway
duplicate of #1411 Chris Buechler
01:53 AM Feature #3625 (Rejected): Able to select a Gateway Group as the Default Gateway
pfSense is limited to selecting only interfaces as the default gateway. Some services and packages such Squid and the... Jorge Talamas
02:21 AM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
the RRDs are accurate because they pull from pf's counters, not the OS NIC-level counters. This hopefully works in 2.... Chris Buechler

04/24/2014

08:11 PM Revision 05e3936a: Merge pull request #1095 from ExolonDX/unknown branch
Renato Botelho
08:10 PM Revision d1d6d0d3: Tidy up "maintable.inc" XHTML
Change escaped single quotes to just a single quote Colin Fleming
08:02 PM Revision 75a8ba83: Resolver has no option for remote syslog, remove wrong copy/paste that was adding it when apinger was enabled
Renato Botelho
08:02 PM Revision 1ccccb84: Resolver has no option for remote syslog, remove wrong copy/paste that was adding it when apinger was enabled
Renato Botelho
08:00 PM Revision 4ac23286: Merge pull request #1119 from phil-davis/patch-4
Renato Botelho
08:00 PM Revision b149b3a1: Merge pull request #1118 from phil-davis/patch-3
Renato Botelho
06:37 PM Revision a600043b: Merge pull request #1104 from ExolonDX/branch_master_04
Renato Botelho
06:36 PM Revision 005a1442: Merge pull request #1103 from ExolonDX/branch_master_03
Renato Botelho
06:35 PM Revision 5325746c: Merge pull request #1102 from ExolonDX/branch_master_02
Renato Botelho
06:32 PM Revision ee0a8a87: Merge pull request #1101 from ExolonDX/branch_master_01
Renato Botelho
06:18 PM Revision 00d35e1d: Merge pull request #1114 from ExolonDX/branch_master_13
Renato Botelho
06:17 PM Revision b8c23e11: Merge pull request #1113 from ExolonDX/branch_master_12
Renato Botelho
06:17 PM Revision 97ec4900: Merge pull request #1112 from ExolonDX/branch_master_11
Renato Botelho
06:17 PM Revision 2b5e7781: Merge pull request #1111 from ExolonDX/branch_master_10
Renato Botelho
06:17 PM Revision 67015da5: Merge pull request #1110 from ExolonDX/branch_master_09
Renato Botelho
06:15 PM Revision 7a24a70f: Merge pull request #1109 from ExolonDX/branch_master_08
Renato Botelho
06:15 PM Revision c58af6ee: Merge pull request #1108 from ExolonDX/branch_master_07
Renato Botelho
06:15 PM Revision 30ca9c24: Merge pull request #1107 from ExolonDX/branch_master_06
Renato Botelho
06:14 PM Revision 58b0ed00: Merge pull request #1106 from ExolonDX/branch_master_05
Renato Botelho
06:13 PM Revision 199b6581: Merge pull request #1120 from phil-davis/patch-5
Renato Botelho
06:12 PM Revision 7362b959: Merge pull request #1121 from fegu/patch-1
Renato Botelho
03:02 PM Bug #3613 (Feedback): Remote syslog server gets added to " DHCP service events" without being checked.
Both pull requests were merged. Thanks! Renato Botelho
02:16 PM Revision 3cc28680: Fix PBI installation when target lies on different directorie
Renato Botelho
11:35 AM Revision 74127ce3: Update services_dnsmasq.php
Clarified that domain overrides also encompasses subdomains (see https://forum.pfsense.org/index.php?topic=72978.15 f... Finn Espen Gundersen
11:15 AM Feature #2766: status_openvpn.php needs IPv6 support
This still isn't entirely possible in the most current version of OpenVPN (2.3.3 as of this update) for mixed IPv4 an... Jim Pingle
06:23 AM Feature #3623: Allow each package to choose if it is restarted on interface events
Completely behind this.
Would the additional parameter cause an issue for rc scripts that were not written to expect...
Steve Wheeler

04/23/2014

11:03 PM Bug #1773: wrong URL is displayed for web interface access at console for DHCP
This still seems to be an issue in 2.2 Alpha (4/23/14 build). Fairly minor, bit thought I'd mention it.... Andy Sayler
10:33 PM Revision ccbae577: fix typo
Chris Buechler
10:33 PM Revision 5f91c28e: fix typo
Chris Buechler
10:23 PM Bug #3624 (Closed): "ppp: OpenConfFile: Can't open file '/var/etc/mpd_wan.conf': No such file or directory"
I've got this error "ppp: OpenConfFile: Can't open file '/var/etc/mpd_wan.conf': No such file or directory". No conne... Vladimir Suhhanov
09:24 PM Feature #3623 (New): Allow each package to choose if it is restarted on interface events
Example discussion here about LCD-Proc: https://forum.pfsense.org/index.php?topic=7920.msg413642#msg413642
Some pa...
Phillip Davis
08:45 PM Revision 9a5b377e: Single quoting $password breaks getting the value from the variable.
Jim Pingle
08:31 PM Revision a502e39f: No spaces between variable assignments in sh
Jim Pingle
08:30 PM Revision f931befd: This doesn't need via-env
Jim Pingle
04:59 PM pfSense Packages Bug #3622 (Rejected): OpenVPN Client Export Utility - Detect the wrong IP when generating config file and a VIP exists
Probably the same root cause as #2495 not a unique bug. Jim Pingle
04:38 PM pfSense Packages Bug #3622 (Rejected): OpenVPN Client Export Utility - Detect the wrong IP when generating config file and a VIP exists
Let's say you have a WAN Interface with the IP Address 1.1.1.1 and a Virtual IP 2.2.2.2
OpenVPN is listening on the ...
Mathieu FRAPPIER
02:16 PM Revision bd5737dc: Make sure that the DNS Forwarder/Resolver is actually capable of accepting queries on localhost before using it as a DNS server.
Jim Pingle
12:04 PM Bug #3621 (Resolved): Editing an IPsec Phase 1 creates a new Phase 1 instead
On 2.2 if you edit a Phase 1 and save, it leaves the original untouched and creates a new Phase 1 entry as if "duplic... Jim Pingle
11:50 AM Bug #3619: ipfw/dummynet not always loaded when required in 2.2
forgot to mention, I manually kldloaded ipfw as it wasn't there, but didn't on dummynet. After kldload of dummynet as... Chris Buechler
09:17 AM Bug #3619: ipfw/dummynet not always loaded when required in 2.2
Is dummynet loaded? Ermal Luçi
02:57 AM Bug #3619 (Resolved): ipfw/dummynet not always loaded when required in 2.2
Any attempt at loading a rules.limiter file results in: ... Chris Buechler
10:06 AM Bug #3450: DHCPv6 Lease Status shows no Leases
*2.1.2-RELEASE (amd64)*
* same issue as the original incident report
** DHCPv6 Leases page is empty
** NDP Table...
Vinícius Zavam
09:30 AM Bug #3620 (Resolved): Saving unbound settings twice in a row yields incorrect interface selection validation errors
Saving unbound settings twice in a row yields incorrect interface selection validation errors. Easy to reproduce as f... Jim Pingle

04/22/2014

11:07 PM Bug #3614: dhcpd: send_packet: No buffer space available
Traffic shaper is disabled on all interfaces. I read about traffic shaper possibly causing this, but this is not the ... Eugene Vignanker
10:25 PM Bug #3614 (Feedback): dhcpd: send_packet: No buffer space available
guessing this is probably either misconfigured traffic shaper, or needing to tune some parameters, maybe mbufs (kern.... Chris Buechler
08:33 PM Bug #3618 (Rejected): Pfsense boot message about intel license
not a bug, a license requirement of that driver Chris Buechler
08:14 PM Bug #3618 (Rejected): Pfsense boot message about intel license
When booting pfsense 2.1, the boot logs contain the message below:
kernel: ipw_bss: You need to read the LICENSE f...
Nico Rat
07:36 PM Revision 770f4ee5: Missed pbi_prefix here
Renato Botelho
06:37 PM Revision 384e2647: Fix PBI symlink creation and deletion under /usr/local following .pbiopt files, also drop setup_library_paths() since it's not necessary anymore
Renato Botelho
06:10 PM Revision 6f931ad2: Make sure /usr/local/etc/rc.d exists
On 2.2-ALPHA (i386)built on Mon Apr 21 13:01:11 CDT 2014 (for example) there was /usr/local/etc but not /usr/local/et... Phil Davis
03:27 PM Bug #3617: DHCP default gateway is missing on initial install with static WAN address
I have to disagree that this is a misconfiguration and not a bug. The "misconfiguration" is not adding a default gate... Tim Dufrane
03:14 PM Bug #3617 (Rejected): DHCP default gateway is missing on initial install with static WAN address
misconfiguration, not bug. Continue on forum Chris Buechler
03:09 PM Bug #3617 (Rejected): DHCP default gateway is missing on initial install with static WAN address
Initial documentation at https://forum.pfsense.org/index.php?topic=75766
Steps to reproduce:
1. Change WAN inte...
Tim Dufrane
11:01 AM Bug #1629: invalid state table entries after WAN IP change
sorry for spamming...yet another update..
Today there were troubles with the Wan provider. In pfsense the gateway...
Tom De Coninck
09:32 AM Revision 635f9eb5: Merge pull request #1116 from PiBa-NL/interface_has_gateway-ipv4_gif_gre
Ermal LUÇI
09:30 AM Revision 1147bd00: Merge pull request #1115 from PiBa-NL/reply-to_IPv6gateway
Ermal LUÇI
08:03 AM Bug #3613: Remote syslog server gets added to " DHCP service events" without being checked.
See pull requests https://github.com/pfsense/pfsense/pull/1118 and https://github.com/pfsense/pfsense/pull/1119 Phillip Davis
06:52 AM Revision ebafd470: Load if_stf module when needed
Ermal LUÇI
04:13 AM Bug #3615 (Closed): /etc/rc.d/*.sh start" is executed during bootup, but equivalent "stop" cmd is never issued during shutdown
Hi there. I apologize if this is issue has been entered in the wrong category.
There seems to be no feature to all...
Dreamcat Four

04/21/2014

11:40 PM Bug #3614 (Resolved): dhcpd: send_packet: No buffer space available
DHCPD service fails with "No buffer space available" error in the log after period of interface inactivity. pfSense v... Eugene Vignanker
05:01 AM Revision 9fca7574: Cut paste bug fix in Remote Syslog DHCP events
This version for 2.1 branch.
apinger is repeated here from the code above, but it should be dhcp.
Forum https://forum...
Phil Davis
04:57 AM Revision 80571c81: Cut paste bug fix in Remote Syslog DHCP events
apinger is repeated here from the code above, but it should be dhcp.
Forum https://forum.pfsense.org/index.php?topic=...
Phil Davis

04/20/2014

10:16 PM Bug #3481: Run-Away processing with hme NICs
It's a hme driver problem, the PHP that gets kicked off repeatedly is a symptom of the underlying driver issue. We ha... Chris Buechler
04:23 PM Bug #3481: Run-Away processing with hme NICs
I have this same problem. I am fairly certain it did not occur on pfsense 2.0.x (the last stable before 2.1).
When t...
Volker Kuhlmann
10:12 PM Bug #3611 (Feedback): DHCP relay to a server behind the gateway does not work
Thanks Phil Chris Buechler
04:07 AM Bug #3611: DHCP relay to a server behind the gateway does not work
Yep, this should have fixed this issue: https://github.com/pfsense/pfsense/commit/d530f8f77da83d8e8dd1ac84c5a42077d52... Phillip Davis
02:19 AM Bug #3611: DHCP relay to a server behind the gateway does not work
I think Phil Davis may have already put in a pull request to fix this, though at a quick glance I'm not seeing it. Chris Buechler
08:07 AM Bug #3613 (Resolved): Remote syslog server gets added to " DHCP service events" without being checked.
A remote syslog server gets added to the dhcp services in /var/etc/syslog.conf without "DHCP service events" being ch... David Williams
02:29 AM Bug #3612 (Resolved): Packages through proxy doesn't work since change to HTTPS
Since changing from HTTP to HTTPS for packages, it seems connectivity doesn't work if via a proxy. Multiple reports h... Chris Buechler

04/19/2014

11:38 PM Feature #1189: Gateway: Multiple monitor ips
Think we can get this implemented by 2.2? That would be awesome Jorge Albarenque
03:35 PM Revision b7b461fc: Add nohttpsforwards option to captive portal
derelict-pf
02:26 PM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
Note that this only affects the SVG based graphs (on the dashboard or Status -> Traffic Graph), the RRD based ones (S... Bernhard Schmidt
02:23 PM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
Same problem with 2.1.2 x64 on vmxnet3 interfaces. Input rate is always doubled regardless of the direction, see the ... Bernhard Schmidt
01:43 PM Bug #3611 (Resolved): DHCP relay to a server behind the gateway does not work
We have the following setup
WAN: 192.168.15.16/29
LAN: 172.16.18.0/24
DHCP server: 10.156.33.53
iow, the DHC...
Bernhard Schmidt
01:20 PM Revision 2700ef96: add gre and gif checks for for IPv4 function interface_has_gateway($friendly), like they are already for IPv6
Pi Ba
01:15 PM Revision 93f1d233: check gateway for IPv6 also for reply-to rules.
Pi Ba
09:40 AM Bug #3610: Network Connection Problem
Hi,
i think i found the Problem.
I Think its 50% a configuration problem and 50% a bug.
I Configured the DNS...
Florian Asche

04/18/2014

10:52 PM Bug #3597: Package reinstall on system upgrades needs some fallback handling
Definitely some improvements to be made here.
One that'd go a long way is before doing anything, see if you can f...
Chris Buechler
10:49 PM Bug #3592 (Rejected): DynDNS
Chris Buechler
06:43 PM Bug #3592: DynDNS
Please Close this Issue! Florian Asche
10:48 PM Bug #3609 (Rejected): ppoe in virtual machines sometimes dont receive signal
You have an issue of some sort but nothing indicates it's a bug. Please post to the forum or mailing list for further... Chris Buechler
11:59 AM Bug #3609 (Rejected): ppoe in virtual machines sometimes dont receive signal
pfsense 2.1.2 using vmware workstation
i get a lot of
Apr 18 13:18:30 apinger: No usable targets found, ex...
Luis Couto
10:44 PM Bug #3610 (Rejected): Network Connection Problem
Nothing mentioned here appears to be a bug, rather you have some configuration issues you need to correct. Please uti... Chris Buechler
06:52 PM Bug #3610 (Rejected): Network Connection Problem
Hi,
i installed PFSense Version 2.1.2, amd64.
I have 4 interfaces:
WAN: IPv4 Internet
WAN3G IPv4 Backup Inter...
Florian Asche
10:29 PM Revision cdb782b7: Tidy up "services_wol" XHTML
Add SUMMARY to tables
Update HTML Boolean operators
Close INPUT and IMG tags and add ALT to IMG tags
Deprecate ampers...
Colin Fleming
10:25 PM Revision a50337c3: Tidy up "services_snmp" XHTML
Add "closehead" PHP variable and manually close HEAD
Add CDATA section to scripts
Add SUMMARY to tables
Closing INPUT...
Colin Fleming
10:20 PM Revision ce6c33e3: Tidy up "vpn_pppoe" XHTML
Add SUMMARY to tables
Close IMG tags and and ALT
Move NOWRAP to class statement
Close INPUT tags
Colin Fleming
10:15 PM Revision 32a31f8a: Tidy up "services_ntpd_pps" XHTML
Add SUMMARY to tables
Update HTML Boolean operators
Close INPUT tags
Add missing closing DIV, closing TD and closing ...
Colin Fleming
10:13 PM Revision 9c37d703: Tidy up "serviecs_ntp_gps" XHTML
Add "closehead" PHP variable and manually close HEAD
Add CDATA section to SCRIPTS
Add SUMMARY to tables
Update HTML B...
Colin Fleming
10:08 PM Revision d9555fc5: Tidy up "services_ntpd" XHTML
Add "closehead" PHP variable and manually close HEAD
Add CDATA sections to SCRIPTS
Closing IMG tag and add ALT
Change...
Colin Fleming
10:04 PM Revision 5f4f4c3f: Tidy up "load_balancer_setting" XHTML
Add SUMMARY to tables
Closing INPUT tags
Add missing closing TD tag
Colin Fleming
10:01 PM Revision 835d6d5c: Tidy up "load_balancer_monitor" XHTML
Add SUMMARY to tables
Update PHP shorthamd
Move "fbegin.inc" between BODY and SCRIPT
Add CDATA section to scripts
Clo...
Colin Fleming
09:55 PM Revision 76523ef5: Tidy up "load_balancer_virtual_server" XHTML
Add SUMMARY to tables
Update PHP shorthand
Move "fbegin.inc" inbetween BODY and SCRIPT
Close INPUT tags
Update HTML B...
Colin Fleming
09:48 PM Revision 0e7aea24: Tidy up "load_balancer_pool" XHTML
Add SUMMARY to tables
Update PHP shorthand
Move "fbegin.inc" include between BODY and SCRIPT
Add CDATA section to scr...
Colin Fleming
09:44 PM Revision 90e5ca6f: Moved my changes from Pull Request #1025 , #1019 , #1018 , #1012 (master) to RELENG_2_1
* Added missing usepublicip with dyndnsCheckIP
* Added missing CURL setops
Florian Asche
09:40 PM Revision 1fb1117c: Tidy up "services_igmpproxy" XHTML
Add SUMMARY to tables
Close INPUT and IMG tags and add ALT to IMG tags
Deprecate ampersand in anchor tags
Add CDATA s...
Colin Fleming
09:35 PM Revision d3c90ddd: Tidy up "services rfc2136" XHTML
Add SUMMARY to tables
Move NOWRAP to class statement
Close INPUT and IMG tags and add ALT to IMG tags
Update HTML Boo...
Colin Fleming
09:24 PM Revision f9f467e2: Tidy up "services_dyndns" XHTML
Add CDATA section to scripts
Add SUMMARY to tables
Move NOWRAP to class statement
Deprecate ampersand
Close INPUT and...
Colin Fleming
03:24 PM Revision 928dc66a: Be smarter at using kenv
Ermal LUÇI
02:34 PM Revision 2f0401af: Remove problematic code without proper checks but even not needed here
Ermal LUÇI
02:33 PM Revision 7b66c1d7: Remove problematic code without proper checks but even not needed here
Ermal LUÇI
09:55 AM Revision dd8d9bdc: pfSense - Bug #3607: Fix issue whereby the ICMP6 messages sometimes have the wrong source IP when a monitor gateway has been set.
Gilles Compienne
09:43 AM Revision 8c7e38ff: [pfSense - Bug #3607] Ensure gateway detection can cope with the gateway being a dynamically assigned PPoE interface.
Gilles Compienne
07:38 AM Bug #1629: invalid state table entries after WAN IP change
This week i have done some more testing on this issue nr #1629.
Everybody in that issue is talking that the stat...
Tom De Coninck
05:03 AM Bug #3607: apinger misconfigured when using PPPoE link
Phillip Davis wrote:
> Go to https://github.com/pfsense/pfsense and make yourself an account and submit the code cha...
Gilles Compienne

04/17/2014

08:19 PM Revision 302c005e: Unload the ZFS module if its not in use to not consume uselss memory
Ermal LUÇI
12:56 PM Revision c93f46fe: Merge pull request #1096 from fraenki/fix_pbi_services
Ermal LUÇI
12:55 PM Revision 7896c39c: Merge pull request #1094 from ingenieurmt/master
Ermal LUÇI
12:51 PM Bug #3607: apinger misconfigured when using PPPoE link
Go to https://github.com/pfsense/pfsense and make yourself an account and submit the code change there. It will be mu... Phillip Davis
08:21 AM Bug #3607: apinger misconfigured when using PPPoE link
Posting the source code on the bug report does not seems to have gone well (missing bits and the like, escape issues ... Gilles Compienne
08:17 AM Bug #3607 (Resolved): apinger misconfigured when using PPPoE link
When using a PPoE link for a WAN then the script configuring apinger (i.e. /etc/inc/gwlb.inc) will not configure apin... Gilles Compienne
12:21 PM Revision 5e5c72be: support symlinked RC scripts from PBI packages
Frank Wall
10:56 AM Bug #3443: run -- Ralink Technology USB
OK. There is something else wrong, not just "freebsd 10" needed.
On boot I have that (newest on top)
@
Apr 17 18:3...
Vladimir Suhhanov
09:44 AM pfSense Packages Feature #3608 (Rejected): new package: puppet
A puppet agent for pfSense. Please review the pull-request and add the
package to the official repository.
https...
Frank Wall
08:35 AM Revision 4010266a: GC unused code and do not set this to 0 for now since it is not anymore relevant
Ermal LUÇI
07:59 AM Bug #3550: [IPv6] wizard not pointing to the right IPv6 address after first setup.
*pfSense-LiveCD-2.1.2-RELEASE-i386*.
* got the same issue with it;
* steps to install and setup were just the sa...
Vinícius Zavam
04:50 AM Feature #3599 (Resolved): missing kernel option / kernel module in 2.2 (mount_nullfs)
Renato Botelho
04:41 AM Feature #3599: missing kernel option / kernel module in 2.2 (mount_nullfs)
Downloaded the latest snapshot. It worked. Thanks guys! Dreamcat Four

04/16/2014

04:12 PM Bug #3223: pfr_unroute_kentry: delete failed and freeze
2.1.1-RELEASE (amd64) built on Tue Apr 1 15:22:32 EDT 2014 FreeBSD 8.3-RELEASE-p14 on new hp server 360 G6
Intel(R)...
xavier Lemaire
11:29 AM pfSense Packages Bug #3606 (Resolved): can't use content scanner in Dansguardian 2.12.0.3_2 pkg v.0.1.8 pfsense 2.1.2-RELEASE (amd64)
i have those messages in system logs
Apr 16 16:17:15 root: /usr/local/etc/rc.d/dansguardian.sh: WARNING: failed to ...
sylvain sylvain
08:48 AM pfSense Packages Bug #3605 (Closed): Dansguardian not saving groups config files with correct PICS paths.
Either that, or the PICS files are saved as the wrong files.
When saving a PICS list, it saves the file as /usr/pb...
Calvin Kruse
08:18 AM pfSense Packages Bug #3525: Dansguardian Writing Script Garbage (CsrfMagic.end)
I am also seeing this bug. I wish I knew where to submit a report to the dansguardian package maintainer, though. Calvin Kruse
02:28 AM Bug #3604: Traffic shaper wizard rules can't be deleted
I forgot to indicate that it's version:
2.1.2-RELEASE (i386)
built on Thu Apr 10 05:23:34 EDT 2014
FreeBSD 8.3-...
badon _
02:25 AM Bug #3604 (Rejected): Traffic shaper wizard rules can't be deleted
Here:
https://192.168.1.1/firewall_shaper_wizards.php
I first tried to use the "Single Wan multi Lan" wizard, ...
badon _

04/15/2014

09:43 PM Revision 922e4ab6: Add missing closing quotes
ingmthompson
09:11 PM Revision a15450e7: Correct missing parenthesis. Reported-by: https://forum.pfsense.org/index.php?topic=75120.0
Ermal LUÇI
05:57 PM Revision 8a84b3ab: Key off net.inet.carp.demotion and display a warning to the user if the system has self-demoted its CARP status.
Jim Pingle
05:26 PM Revision f7b0cd43: Fix text, capitalization, and change wording to put more focus on how the action behaves.
Jim Pingle
05:08 PM Revision 5c4d2d75: Ensure e-mail address carries over from the CA screen to the Cert screen in the OpenVPN wizard.
Jim Pingle
02:19 PM Revision 525a502c: Merge pull request #1093 from phil-davis/patch-2
Ermal LUÇI
02:06 PM Revision 45f4d762: Fix susbstr-substr typo
I just got this error again on 14 Apr 2014 2.2 snapshot. I can see the fix in 2.1 branch. I could have sworn it got f... Phil Davis
01:27 PM Bug #3281 (New): In certain cases, GRE interfaces are missing the "RUNNING" flag at bootup and will not function
Have a config from a customer that can replicate on all 2.1x versions. In projects git repo, redmine-3281.xml. That's... Chris Buechler
01:18 PM Bug #3579 (Resolved): Limiter rules causing syntax errors
Jim Pingle
01:18 PM Bug #3579: Limiter rules causing syntax errors
Confirmed fixed. Anonymous
02:43 AM Bug #3579: Limiter rules causing syntax errors
Fixed in my limited (padon the pun) testing with 2.2-ALPHA (i386) built on Mon Apr 14 15:07:07 CDT 2014 Phillip Davis
01:17 PM Bug #3596: OpenVPN being passed bad arguments
Confirmed working here also. Anonymous
12:00 PM Bug #3596 (Resolved): OpenVPN being passed bad arguments
Confirmed fixed on current code (snap+gitsync), no error and the process is running. Interface is there also. Jim Pingle
12:25 PM Feature #3413 (Resolved): CARP interface names in WebGUI
This is a bit of a moot point on 2.2 as the names already appear differently and use the configured interface descrip... Jim Pingle
12:17 PM Bug #3573: tun/tap interfaces not available for assignment in 2.2
The OpenVPN interfaces do appear for assignment in current code.
For interfaces made outside of OpenVPN:
tunX in...
Jim Pingle
12:06 PM Bug #3593 (Resolved): pfSsh.php playback gitsync master not working on 2.2 ALPHA
Works OK on current snapshots (I just used it) Jim Pingle
08:56 AM Feature #3599 (Feedback): missing kernel option / kernel module in 2.2 (mount_nullfs)
Already added to kernel Renato Botelho
08:18 AM Feature #3393: AS filtering support in aliases
+1
that would be great indeed to allow, for example, filtering and policy routing by AS.
Fabrice Vincent
07:31 AM Revision d35b367a: Merge pull request #1092 from phil-davis/patch-1
Ermal LUÇI
03:05 AM Revision 62e92cb3: Fix bracket type in Log File Size text
Now I am the one with fat fingers (or brain). Somehow I typed a curly bracket opening bracket in this text, but finis... Phil Davis
12:40 AM Bug #3603 (Rejected): Outbound NAT failure on Carp VIP after editing firewall rule.
this is a network problem of sorts, not a bug. continue the discussion on the forum. Chris Buechler

04/14/2014

11:40 PM Revision 75106986: License Agreement
Jeremy Porter
08:46 PM Revision 9265d991: Insert tracker ids for the default LAN rules
Ermal LUÇI
07:11 PM Revision 4a97aa34: Correct the sense of the check to allow openvpn to work
Ermal LUÇI
06:52 PM Revision 57ab9f7d: Correct auth-user-pass-verify to include parameters properly so openvpn can start
Ermal LUÇI
06:38 PM Revision e86ae5ae: Merge pull request #1091 from dv-user1/usort_fix2
Renato Botelho
06:30 PM Revision 1565d318: Merge pull request #1085 from ExolonDX/branch_master_01
Renato Botelho
06:05 PM Bug #3321: IPSEC failure on modem reset, automatic reconnection is broken, must manually restart racoon service
This is broken again in 2.1.2 Christian Borchert
06:05 PM Revision c760c69c: Fixup update URL
Ermal LUÇI
05:52 PM Revision 14da6d95: fixed a type in usort callback
Francois Blanchette
03:32 PM Bug #3579 (Feedback): Limiter rules causing syntax errors
Fixed please test new snapshots. Ermal Luçi
03:13 PM Revision 05dd0c32: Use the FreeBSD script for ldconfig to catch all libs
Ermal LUÇI
03:06 PM Revision 7723551f: Merge pull request #1088 from phil-davis/patch-11
Ermal LUÇI
02:40 PM Revision f4462954: Unset logfilesize rather than let it be zero
1) When saving Status: System logs: Settings, if the Log File Size field is left blank, it gets cast to (int) and end... Phil Davis
01:48 PM Revision df8e43cc: Avoid warnings later on if no config for layer7 exists
Ermal LUÇI
01:06 PM Revision e61f548f: Get rid of embedded platform. Its time to GC this
Ermal LUÇI
12:47 PM Revision 115b7b81: Start using filterlog
Renato Botelho
12:43 PM Revision 2a438d7e: Switch over to filterlog sooner than later
Ermal LUÇI
12:34 PM Revision b13567f0: Unset also here
Ermal LUÇI
12:32 PM Revision 2154560d: Unset these globals after use
Ermal LUÇI
12:25 PM Revision b0de4399: Merge pull request #1087 from phil-davis/patch-10
Ermal LUÇI
12:24 PM Revision 82f273e1: Merge pull request #1086 from phil-davis/patch-9
Ermal LUÇI
11:37 AM Revision 32751b9f: Include static routes in automatic NAT rules display
If I have an internal gateway to other private subnets behind LAN, and add a static route to those private subnets th... Phil Davis
11:23 AM Revision ee34e137: Do not allow upgrade_101_to_102 to exit early
This upgrade step does both Captive Portal stuff and OpenVPN stuff. So do not return early just because there is no C... Phil Davis
10:33 AM Revision 146ee078: console, reload firewall rules after enabling SSH
Pi Ba
10:28 AM Revision b4e0a62a: Merge pull request #1076 from phil-davis/patch-2
Renato Botelho
10:27 AM Revision c30639e4: Get real interface when dhcrelay uses default GW
If the DHCP Relay server is not on any local subnet, and not on any subnet that has an internal static route, but is ... Phil Davis
10:25 AM Revision 856be311: Merge pull request #1078 from phil-davis/patch-4
Ermal LUÇI
10:22 AM Revision 93fb6094: Tidy up XHTML
Update HTML Boolean operator (multiple)
Change ONCLICK to lower case
Add missing semi-colon
Colin Fleming
10:20 AM Revision d2bdd53a: Merge pull request #1073 from phil-davis/patch-1
Ermal LUÇI
10:19 AM Revision 33f53717: Merge pull request #1072 from marcelloc/patch-3
Ermal LUÇI
10:16 AM Revision 69a5d970: Merge pull request #1084 from phil-davis/patch-8
Ermal LUÇI
09:54 AM Revision d87ec8f9: Merge pull request #1071 from ExolonDX/master
Renato Botelho
09:35 AM Revision d471a890: tls-verify requires quotes around the command to be executed. Ticket #3596
Chris Buechler
09:35 AM Revision 84fc1d4d: use email from CA creation also as the default for server cert
Chris Buechler
09:11 AM Bug #3603: Outbound NAT failure on Carp VIP after editing firewall rule.
If it helps;
When this problem occurs and I edit the interface, I see (on the console):
wan_vip2: 2 Link states...
Tony Rogers
05:37 AM Bug #3603 (Rejected): Outbound NAT failure on Carp VIP after editing firewall rule.
pfSense version 2.1.1-RELEASE (amd64).
Hardware: HP DL380 G5 server with on board Broadcom nics and additional HP ...
Tony Rogers
09:10 AM Revision c58dbe2f: Fix typo
Phil Davis
08:13 AM Revision 23cb5252: There is no need to make distinction in kernel anymore since they are the same nowdays and it does the right thing(tm) most of the time
Ermal LUÇI
08:09 AM Revision f03ed350: Nowdays there is no real difference between the kernels apart the ZFS support. So do not keep a distinction anymore
Ermal LUÇI

04/13/2014

03:41 PM Bug #3595 (Feedback): OpenVPN TAP/TUN <--> interface bridge not working after reeboot
This has been solved on latest 2.1 cod ein github.
If you gitsync it will solve the issues.
It will be discussed ...
Ermal Luçi
02:43 PM Bug #3595: OpenVPN TAP/TUN <--> interface bridge not working after reeboot
Issue confirmed: OpenVPN tap connection is initiated successfully, but no traffic passes through.
Affected version...
Christian Baerike
01:56 PM Feature #2960: Add queue length adjustment capabilities to traffic shaper based on network size
Actually, after some research and a better understanding of queuing, this is not practical.
Queue lengths need to ...
Shawn Iverson
01:12 PM Revision ae588a5c: add is_array safety check
Pi Ba
01:05 PM Revision 07c82152: console, reload firewall rules after enabling SSH
Pi Ba
01:04 PM Revision c42117c1: Certificate Manager, call packages plugin function to show used certificates
Pi Ba
10:48 AM Bug #3602 (Rejected): OpenVPN can authenticate via a broken certificate
That is correct. OpenVPN only checks that the cert is a valid cert (not expired, not revoked) from the same CA as the... Jim Pingle
07:20 AM Bug #3602: OpenVPN can authenticate via a broken certificate
I am not sure what's the bug here? AFAICT OpenVPN only tries to match user against Common Name (not SAN!) in the clie... Doktor Notor
07:37 AM Bug #3249: DHCP Server/DHCP Relay both say the other is started
I am not across the update code but the problem definitely occurred. I have just manually edited the server's /conf/c... Scott Smith

04/12/2014

08:08 PM Bug #3470: IPSec VPN not recognizing alternative IP name
Since OpenVPN accepts a certificate that was created with a common name that doesn't match the IP address to which Op... B. Derman
06:05 PM Bug #3470: IPSec VPN not recognizing alternative IP name
If you take the certificate and look at it via OpenSSL, you can clearly see the extensions are completely missing. If... Doktor Notor
01:08 PM Bug #3470: IPSec VPN not recognizing alternative IP name
#3347 claims that SANs don't work at all but, in my configuration, they do work for OpenVPN where the SAN is of type ... B. Derman
05:02 AM Bug #3470: IPSec VPN not recognizing alternative IP name
Duplicate of Bug #3347, SubjectAltNames are completely broken. Doktor Notor
08:05 PM Bug #3602 (Rejected): OpenVPN can authenticate via a broken certificate
See bug 3470 (https://redmine.pfsense.org/issues/3470). B. Derman
04:32 PM Revision 7fd38f44: fixing typo for GIF tunnels to work over IPv6
the call of get_interface_gatewayv6() in the creation of a GIF tunnel over IPv6 leads to a "Fatal error: Call to unde... m0se
04:29 PM Revision bb8f3ce1: fixing typo for GIF tunnels to work over IPv6
the call of get_interface_gatewayv6() in the creation of a GIF tunnel over IPv6 leads to a "Fatal error: Call to unde... m0se
03:53 PM Bug #3601 (Closed): Assigning a PPP Interface failed
Assigning a PPPs Interface via Webconfigurator fails. The Link https://pfsense.localdomain/interfaces_ppps_edit.php s... Tobias Kuehn
02:44 PM Revision d530f8f7: Get real interface when dhcrelay uses default GW
If the DHCP Relay server is not on any local subnet, and not on any subnet that has an internal static route, but is ... Phil Davis
11:28 AM Revision faf20ee4: Also add similar checks on rc.newwanipv6 as in the v4 version
Ermal LUÇI
11:28 AM Revision 5aba8d90: Also add similar checks on rc.newwanipv6 as in the v4 version
Ermal LUÇI
11:25 AM Revision 1f43ccf5: Forgot to remove the problematic part from previous OpenVPN loop fix commit
Ermal LUÇI
11:24 AM Revision 83c0dc1d: Forgot to remove the problematic part from previous OpenVPN loop fix commit
Ermal LUÇI
11:03 AM Revision ffb76388: Tidy up package signature text
Thought I would tidy this up while coming across it. IMHO "Package settings" reads better than "Packages settings"...... Phil Davis
06:21 AM Revision 91571af5: Take care of the loops reported for OpenVPN in tap mode. Also fixes the problems of tap disappearing from bridge if its a member.
Ermal LUÇI
06:20 AM Revision f96b9a18: Take care of the loops reported for OpenVPN in tap mode. Also fixes the problems of tap disappearing from bridge if its a member.
Ermal LUÇI
12:33 AM Revision db45bc68: tls-verify requires quotes around the command to be executed. Ticket #3596
Chris Buechler
12:31 AM Revision e8e28366: use email from CA creation also as the default for server cert
Chris Buechler

04/11/2014

08:30 PM Bug #3598 (Resolved): AutoConfigBackup restore not working
this is resolved in the latest version of the package. Chris Buechler
07:31 PM pfSense Packages Bug #3580 (Closed): Stunnel mangled cert on upgrade
Chris Buechler
09:08 AM pfSense Packages Bug #3580: Stunnel mangled cert on upgrade
I have just upgraded to 2.1.2-RELEASE (amd64) and the certificates look fine this time so possibly something else got... jeffrey Smith
10:39 AM Bug #3571: Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
It's not a general issue currently, please post on the forum for assistance. Jim Pingle
10:38 AM Bug #3571: Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
I cannot use the auto updater via the web GUI or the CLI. I am still at 2.1 upon reboot. Gabriel Latour
07:57 AM Bug #3596: OpenVPN being passed bad arguments
I pulled this from /var/etc/openvpn/server1.conf:... Anonymous
07:02 AM pfSense Packages Bug #3600 (Rejected): Snort rules update causes 'Last config change' in Status: Dashboard
Please post in the forum to discuss and confirm before opening a bug.
You can always see what updated the configurat...
Jim Pingle
06:00 AM pfSense Packages Bug #3600 (Rejected): Snort rules update causes 'Last config change' in Status: Dashboard
I updated one of my pfSense 2.1 systems to snort pkg v 3.0.6 last night. Logging in this morning, I saw this in Statu... Toomas Aas
04:00 AM Feature #3599 (Resolved): missing kernel option / kernel module in 2.2 (mount_nullfs)
Hi there.
I understand that pfSense doesn't come with a lot of the standard (FreeBSD-GENERIC) modules and kernel o...
Dreamcat Four

04/10/2014

09:13 PM Bug #3598 (Resolved): AutoConfigBackup restore not working
It always gives an error like:
The following input errors were detected:
SHA256 values do not match, cannot r...
Phillip Davis
08:50 PM Revision d6fa5566: Add curly brackets here to improve readability
Renato Botelho
08:49 PM Revision 43f661f7: unset doesn't like @ to silent it, just check if it's set before unset
Renato Botelho
04:56 PM Bug #3597 (Resolved): Package reinstall on system upgrades needs some fallback handling
Lost all packages on upgrade. No idea if the process was killed or what, does not exactly matter. Result:
- Instal...
Doktor Notor
04:46 PM Bug #3592: DynDNS
Hm no, sorry, the bug must be somewhere else.
The pull i send was just a output improovement.
i think the dyndn...
Florian Asche
03:55 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Chris Buechler wrote:
> fixed.
PFSense 2.1.2 fixes CVE-2014-0160.
David Smid
02:35 PM pfSense Packages Bug #3588 (Resolved): Heartbleed bug in OpenSSL
fixed. Chris Buechler
02:26 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Frederic MEYER wrote:
> I am on 2.1 and did not upgrade to 2.1.1 (obviously waiting for 2.1.2 now...).
> Nor did I ...
David Smid
02:10 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
I am on 2.1 and did not upgrade to 2.1.1 (obviously waiting for 2.1.2 now...).
Nor did I have to reboot to see the p...
Frederic MEYER
01:56 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Frederic MEYER wrote:
> That's my point!
> So I don't understand David's output even though he claims to have updat...
David Smid
11:45 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
We're looking into a way to do that but the version numbers are controlled by the FreeBSD port versions and not direc... Jim Pingle
11:32 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Don't get me wrong, but "if the version number on the PBI file itself did not change" is just something that *never* ... Doktor Notor
10:36 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
No, but you may have to uninstall and reinstall the package if the version number on the PBI file itself did not change. Jim Pingle
10:31 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Frederic MEYER wrote:
> That's my point!
> So I don't understand David's output even though he claims to have updat...
David Smid
10:20 AM pfSense Packages Bug #3588 (Feedback): Heartbleed bug in OpenSSL
Ah, well he's looking at output without considering the wrappers. He's checking the base system and not the self-cont... Jim Pingle
10:17 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
That's my point!
So I don't understand David's output even though he claims to have updated his system.
Frederic MEYER
10:14 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
What is wrong in that output? 1.0.1g is the updated/fixed/correct version. Jim Pingle
10:11 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Correct.
And, as Jeremy said,
> "Please note that haproxy-devel seems to ship its own instance own instance of o...
Frederic MEYER
10:04 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
PBI packages are run using wrappers such that they see the libraries present inside of their own PBI dir. Checking wi... Jim Pingle
09:52 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Frederic MEYER wrote:
> FWIW, haproxy-devel package seems to have been updated a few hours ago and bumped to 1.5-dev...
David Smid
03:54 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Agreed. Not the best place.
Will look at the development forum.
Frederic MEYER
03:48 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Not really the place for a long off-topic discussion in a bug. I'll support Lane's suggestion to sign up for pfSense ... Phillip Davis
03:02 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
FWIW, haproxy-devel package seems to have been updated a few hours ago and bumped to 1.5-dev22 pkg v 0.8.
I did the ...
Frederic MEYER
02:09 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Since others are pointing me to this ticket to keep tabs I thought it best to comment with something useful.
If yo...
Lane Campbell
02:01 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
To everyone involved, is there anything we can do to assist with getting this released? Rather keen to get this patch... Ross Williamson
02:40 PM Bug #3591 (Resolved): Impossible to edit CRLs in 2.1.1
Chris Buechler
02:38 PM Bug #3585 (Resolved): CVE-2014-0160 - OpenSSL Heartbleed Bug
fixed Chris Buechler
10:20 AM Bug #3585: CVE-2014-0160 - OpenSSL Heartbleed Bug
FYI- 2.1.2 images are being tested now. So far, so good.
As a reminder, this bug is for Heartbleed in the base syste...
Jim Pingle
02:36 PM Bug #3596: OpenVPN being passed bad arguments
What arguments does it have after those parameters in the conf file? Chris Buechler
08:01 AM Bug #3596 (Resolved): OpenVPN being passed bad arguments
Basic OpenVPN configuration (Remote Access SSL/TLS) yields the following result in system log:
openvpn[34830]: Opt...
Anonymous
07:58 AM Bug #1629: invalid state table entries after WAN IP change
Friends, Developers
i have been doing some extensive testing on this issue yesterday evening.. yes i know ...get a l...
Tom De Coninck
02:58 AM Bug #3595 (Resolved): OpenVPN TAP/TUN <--> interface bridge not working after reeboot
After building Tap OpenVPN tunnel with bridged interfaces between 2 sites with pfsense 2.1.1
That looks like :
...
Marcin Nowak
12:58 AM Revision f4065455: List GWGs in Interface to send update from
Back-port of this fix done in master https://github.com/pfsense/pfsense/commit/31300a95f71b14dcb98c139388205223a36e8c... Phil Davis

04/09/2014

08:53 PM Revision da1d0165: fix git path calls and CODIR
it may need some checks/fixes on pkg-utils.inc as git downloads but not installs.
After manual pbi install of git, "...
Marcello Silva Coutinho
07:35 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Jim Thompson wrote:
> And you registered only today to tell us that?
>
> Hi Jim,
> I do not think comments like this ...
Sam McLeod
07:29 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Jim Thompson wrote:
> Justin Foreman wrote:
> > Agreed with Sam. I've had to make the call to disable our VPN. The ...
Justin Foreman
07:05 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
in any case, yes, this bug had to be fixed.
and while we were in there, the ECDSA bug had to be fixed (note that i...
Jim Thompson
06:59 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Note: This bug is for Heartbleed in _packages_, and many (if not all) of those have already been updated and bumped s... Jim Pingle
06:58 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Justin Foreman wrote:
> Agreed with Sam. I've had to make the call to disable our VPN. The natives are getting restl...
Jim Thompson
06:56 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
We know its vulnerable, but for what its worth.. I have tested the POC available here: https://gist.github.com/mpdavi... Josh Cavalier
06:55 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
The release will be done when its done.
I release involves some 80+ variants all of which have to be built.
Build...
Jeremy Porter
06:45 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Agreed with Sam. I've had to make the call to disable our VPN. The natives are getting restless. This is a *security*... Justin Foreman
05:49 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Any update with this?
It's pretty critical...
Sam McLeod
06:23 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Guys, can someone fix the CRLs in 2.1.1 *before* releasing 2.1.2? A LOT of people will want/need to revoke certificat... Doktor Notor
04:52 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
When will haproxy-devel be available as a separate update? This would solve my problem. David Smid
04:29 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
I don't know more than you, but once Chris and the US wakes up, by the look of the above. ie sometime on Apr 9: US ti... Oliver Schonrock
04:27 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Is there any ETA on new release? A realistic one, not 1 hour then 10+ :)
I need to patch but I'd rather wait and ...
Arr0way .
04:15 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Phil Jaenke wrote:
> Lot's of PolarSSL stuff and about how awesome it is ....
Don't think a bug report is the r...
Oliver Loch
05:35 PM Bug #3594 (Resolved): Captive portal inconsistancy - "Allowed IP addresses" vs "Allowed Hostnames"
When editing an entry under Services --> Captive Portal --> Allowed IP Addresses
the note on screen refers to dire...
Criggie .
03:57 PM Bug #3593 (Resolved): pfSsh.php playback gitsync master not working on 2.2 ALPHA
pull request pushed with a fix.
https://github.com/pfsense/pfsense/pull/1072
Marcello Silva Coutinho
03:54 PM Bug #3569: pkg_edit.php jquery 'add' and 'delete' action scrolls page to top.
Pull request merged to 2.2 and 2.1 branch.
Marcello Silva Coutinho
12:52 PM Revision 80f48850: Use an alphanumeric test rather than purely is_numericint because the ID is generated by uniqid and is not purely numeric. Fixes #3591
Jim Pingle
12:45 PM Revision d22169cf: Use an alphanumeric test rather than purely is_numericint because the ID is generated by uniqid and is not purely numeric. Fixes #3591
Jim Pingle
12:24 PM Bug #3592 (Rejected): DynDNS
Hi Guys,
the RFC 2136 Update Script didnt work right.
It sends again and again a mail "DynDNS updated IP Address ...
Florian Asche
08:32 AM Bug #3591: Impossible to edit CRLs in 2.1.1
OK, fix works, thanks. It is indeed correct that starting with a completely new CA is best solution in this case, but... Doktor Notor
08:00 AM Bug #3591: Impossible to edit CRLs in 2.1.1
Applied in changeset commit:80f48850307dea4ceb08dc1a785dd24322b5283d. Jim Pingle
08:00 AM Bug #3591 (Feedback): Impossible to edit CRLs in 2.1.1
Applied in changeset commit:d22169cfd68a26c04ca6d1aa997575f1b3e4cc80. Jim Pingle
07:48 AM Bug #3591: Impossible to edit CRLs in 2.1.1
A fix is coming but ideally you'd create a whole new CA and Cert structure if you believe yours has been compromised.... Jim Pingle
06:30 AM Bug #3591 (Resolved): Impossible to edit CRLs in 2.1.1
See https://forum.pfsense.org/index.php?topic=74935.msg408977#msg408977
Since lots of people will want/need to rev...
Doktor Notor
05:27 AM Bug #3585: CVE-2014-0160 - OpenSSL Heartbleed Bug
Unfortunately.
Check the https://redmine.pfsense.org/issues/3588 to watch the progress.
Frederic MEYER
05:26 AM Bug #3585: CVE-2014-0160 - OpenSSL Heartbleed Bug
that's true only for the base system.
but several packages including lighttpd for the webfrontend use /usr/local/...
Oliver Schonrock
05:25 AM Bug #3585: CVE-2014-0160 - OpenSSL Heartbleed Bug
OK, my fault: find / -type f -name 'openssl' -exec \{\} version \;
>OpenSSL 1.0.1e 11 Feb 2013
>OpenSSL 0.9.8y 5 Fe...
Nils Bernhardt
05:19 AM Bug #3585: CVE-2014-0160 - OpenSSL Heartbleed Bug
PFsense 2.1 uses openssl 0.9.8y, which is NOT VULNERABLE. Nils Bernhardt

04/08/2014

10:11 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Please note that haproxy-devel seems to ship its own instance own instance of openssl, so will need to be reviewed as... Jeremy B
08:53 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Chris Buechler wrote:
> "actually been audited", "has a vastly better track record"? Uh, no. OpenSSL has had a lot m...
Phil Jaenke
06:29 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
oh that. 1 hour, hah! I wish. We've burned easily 20+ man hours in the last day on this. Chris Buechler
06:27 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
nothing says "1 hour", it takes 4-5 times that long just to build a release, much less actually test it and push it o... Chris Buechler
06:16 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Revised time estimate? Says "1 hour" up top, which strikes me as overly optimistic.
Thanks,
-danny
Daniel Howard
06:10 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
"actually been audited", "has a vastly better track record"? Uh, no. OpenSSL has had a lot more eyes on it than Polar... Chris Buechler
02:20 PM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
At this point, I would vastly prefer to see OpenSSL kicked to the curb as unceremoniously as possible in favor of Pol... Phil Jaenke
11:15 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Not exactly. The problem in packages is distinct from the one in base. The base firmware update won't fix package and... Jim Pingle
11:12 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
Additionally, already reported in #3585 Doktor Notor
10:42 AM pfSense Packages Bug #3588: Heartbleed bug in OpenSSL
It's known and we're already working on it. Jim Pingle
10:35 AM pfSense Packages Bug #3588 (Resolved): Heartbleed bug in OpenSSL
http://heartbleed.com reports a serious defect in OpenSSL 1.0.1 that has been fixed in 1.0.1g
haproxy is vulnerable.
David Smid
05:14 PM pfSense Packages Bug #3590 (Resolved): Snort package missing
fixed Chris Buechler
01:52 PM pfSense Packages Bug #3590 (Resolved): Snort package missing
When attempting to install snort from PFsense, the package is missing from the repo.
Beginning package installatio...
Adriel Desautels
05:07 PM Revision def5d042: No pre release this time
Renato Botelho
03:47 PM Revision 6e767d17: Restore old logic and add a @ at unset to silent when it is not set as suggested by Ermal
Renato Botelho
01:25 PM Revision 8294066e: Make extra sure that we do not start multiple instances of dhcpleases if, for example, the PID is stale/invalid and there is still a running instance.
Jim Pingle
01:10 PM Revision e222576c: Bump to 2.1.2-PRERELEASE since 2.1.1 was released
Renato Botelho
12:43 PM Revision 3f08e7ab: Tidy up "guiconfig.inc" XHTML
Add missing closing SELECT tag Colin Fleming
12:12 PM Revision df0b05a3: Merge pull request #1068 from FCI/patch-1
Renato Botelho
11:50 AM Feature #3589 (Resolved): OpenVPN client: GUI option for "route-nopull"
The current OpenVPN client has no GUI option corresponding to the "route-nopull" argument. This is definitely an opt... Dan Matsuma
09:21 AM Bug #3587 (Resolved): postfix packag requires pfSense 2.1
After latest commits, this requires features only available on 2.1.x, like IPv6 stuff. Ref: https://forum.pfsense.org... Doktor Notor
09:07 AM Bug #3585: CVE-2014-0160 - OpenSSL Heartbleed Bug
+1111111 Steve Thomas
04:32 AM Bug #3585 (Resolved): CVE-2014-0160 - OpenSSL Heartbleed Bug
Marking as urgent, see http://heartbleed.com/ Doktor Notor
08:27 AM Bug #3586 (Rejected): Gateway monitoring issue when 2 PPPoE WANs share the same gateway
Hi,
I have 2 DSL connections plugged into my Pfsense. I use 2 PPPoE interface in Pfsense to establish the link.
...
Mathieu Déom
05:53 AM pfSense Packages Bug #3584: arpwatch package fails to start in pfsense 2.1.1
Thanks for the quick response which was right on the spot.
I made the proposed change to /usr/local/pkg/arpwatch.xml...
Max Frames
04:36 AM pfSense Packages Bug #3584: arpwatch package fails to start in pfsense 2.1.1
This recent commit introduced those quotes to the arpwatch package: https://github.com/pfsense/pfsense-packages/commi... Phillip Davis
02:11 AM pfSense Packages Bug #3584 (Resolved): arpwatch package fails to start in pfsense 2.1.1
I'm not sure if this is a bug with arpwatch or with pfsense 2.1.1, it did not happen in pfsense 2.1 though, with the ... Max Frames
01:05 AM pfSense Packages Feature #3583 (Closed): haproxy-devel: individual backend for each acl
To define several backends based on acl's for one frontend a backend selection iten is recommended for each acl - cur... Andreas Morf

04/07/2014

11:27 PM Bug #3582 (Closed): webConfigurator redirect rule not working
Chris Buechler
10:16 PM Bug #3582: webConfigurator redirect rule not working
RESOLVED
Not a pfSense issue, errors experienced only on clients running Windows 8
James Morgan
09:36 PM Bug #3582 (Closed): webConfigurator redirect rule not working
after updating from 2.1 to 2.1.1, the port 80 redirect to a listening port of 4434 for HTTPS failed, redirects to 443... James Morgan
07:00 PM Bug #1629: invalid state table entries after WAN IP change
I'm still experiencing this issue with pfsense 2.1 on an ALIX platform and an Cisco SPA112 ATA.
pfsense is configure...
Andy Lawson
06:52 PM Bug #3573: tun/tap interfaces not available for assignment in 2.2
tun and tap interfaces should be available for assignment, whether tunX/tapX or ovpnsX/ovpncX. Chris Buechler
05:38 PM Revision 1d0cacfe: Check if the ipsec section exists before doing operations on it.
Ermal LUÇI
03:30 PM Revision ca321bfd: Correct typo on function name that has slipped unnoticed. Reported-by: https://forum.pfsense.org/index.php?topic=74688.0
Ermal LUÇI
03:29 PM Revision bde74857: Correct typo on function name that has slipped unnoticed. Reported-by: https://forum.pfsense.org/index.php?topic=74688.0
Ermal LUÇI
02:49 PM Revision 2c0dd263: fixes Bug #3569
On packages that uses row_helper when user clicks on add or delete button, the page scrolls to top.
It seems somethin...
Marcello Silva Coutinho
02:49 PM Revision dc915669: Merge pull request #1053 from marcelloc/patch-1
Renato Botelho
02:43 PM Revision 539d94b3: Merge pull request #1055 from ExolonDX/branch_master_10
Renato Botelho
02:10 PM Revision 69e593c1: Make extra sure that we do not start multiple instances of dhcpleases if, for example, the PID is stale/invalid and there is still a running instance.
Jim Pingle
12:45 PM Bug #3575: OPT interfaces on GRE tunnels do not accept IPv6 or IPv4 addresses to be set.
GRE addresses should be configured only on the GRE itself, not its assigned interface. Sounds like this is the proper... Chris Buechler
12:40 PM Bug #3581 (Rejected): Create Option to either password protech just 1 option or remove it from the console.
Password protecting the console doesn't disable ctrl-alt-del to reboot. Chris Buechler
09:41 AM Bug #3581: Create Option to either password protech just 1 option or remove it from the console.
And then you also accidentally pressed Y? ... Doktor Notor
08:29 AM Bug #3581 (Rejected): Create Option to either password protech just 1 option or remove it from the console.
We have had issue with instead of rebooting they will hit option 4) Reset to factory default. That option need to be... Robert Middleswarth
12:31 PM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
hi,
I have similar trouble but on almost all interface VLAN and not VLAN in 2.1.1 x64
Information for SNMP are fals...
xavier Lemaire
12:18 PM Revision 1bf572ec: Merge pull request #1056 from ExolonDX/branch_master_12
Renato Botelho
12:17 PM Revision ec307f4d: Merge pull request #1057 from ExolonDX/branch_master_13
Renato Botelho
12:17 PM Revision dc11a7dd: Merge pull request #1058 from ExolonDX/branch_master_14
Renato Botelho
12:17 PM Revision 0031e4da: Merge pull request #1059 from ExolonDX/branch_master_15
Renato Botelho
12:16 PM Revision ee5c8e0b: Merge pull request #1060 from ExolonDX/branch_master_16
Renato Botelho
12:16 PM Revision 8c771b19: Merge pull request #1061 from ExolonDX/branch_master_17
Renato Botelho
12:15 PM Revision c3288e0c: Merge pull request #1062 from ExolonDX/branch_master_18
Renato Botelho
11:40 AM Revision f5961e7b: Merge pull request #1063 from ExolonDX/branch_master_19
Renato Botelho
10:55 AM Revision 29773e5c: Merge pull request #1065 from ExolonDX/branch_master_22
Renato Botelho
09:06 AM Revision a7ee038b: Put the fix to be more generic to prevent any other leak possible in the long run. Fixes #3062
Ermal LUÇI
09:01 AM Revision 39f3d843: Update captiveportal.inc
Release unused pipeno when client is already authenticated.
Bug #3062
Dsi Unicaen
08:10 AM Revision bb7843fd: Indentation
Warren Baker
08:09 AM Revision 2a2b603d: Indentation
Warren Baker
08:09 AM Revision c2fe67eb: Dont check for 'checked' but rather if it is just set
Warren Baker
07:43 AM Bug #742: apinger doesn't recover opt wan when connection returns.
Chris Buechler wrote:
> It's not that easy to replicate, none of mine do that. What kind of WANs?
on my system th...
Sharif Al Motawally
07:12 AM pfSense Packages Bug #3580: Stunnel mangled cert on upgrade
https://forum.pfsense.org/index.php?topic=60009.msg322825#msg322825
I raised the above post on the forum over a ye...
jeffrey Smith
06:31 AM pfSense Packages Bug #3580 (Closed): Stunnel mangled cert on upgrade
I had pfsense 2.1 installed with stunnel 4.43 installed and added a certificate.
I upgraded to 2.1.1-RELEASE(amd64...
jeffrey Smith
06:04 AM Bug #3572: Can't set IPv6 gateway
Hello,
I use a Sixxs tunnel. I found my fault. The Subnet Mask of the GIF-Interface must set to 128. Then the GW w...
Samuel Schmidt
02:35 AM Bug #3572 (Rejected): Can't set IPv6 gateway
not a bug Chris Buechler
04:00 AM Bug #3062: Captive Portal NOT re-using PIPENO
The patch was merged Dsi. Ermal Luçi
03:18 AM Bug #3062: Captive Portal NOT re-using PIPENO
When a user is already authenticated and re-send an authentication, a new pipeno is created (function radius). The al... Dsi Unicaen
02:34 AM Bug #3578 (Rejected): Upgrade from 2.1 to 2.1.1 causes Fatal trap 12 - 0x4c
not a replicable issue Chris Buechler
02:31 AM Bug #3571 (Resolved): Upgrade from 2.1-RELEASE to 2.1.1-RELEASE on NanoBSD/4G/amd64 results in system still being at 2.1-RELEASE
was fixed yesterday Chris Buechler

04/06/2014

09:13 PM Bug #3544: Inbound IPv6 connections over PPPoE, replies do not route through the tunnel.
I have just upgraded to
@2.1.1-RELEASE (i386)
built on Tue Apr 1 15:27:01 EDT 2014
FreeBSD 8.3-RELEASE-p14@
a...
Criggie .
04:51 PM Revision d269747b: Ensure variable is available when testing smtp. Fixes #3577 (well not the rrd summary package).
Warren Baker
12:55 PM Bug #3579 (Resolved): Limiter rules causing syntax errors
Creating and applying a limiter rule in 2.2 causes an error similar to the below:
There were error(s) loading the ...
Anonymous
12:00 PM Bug #3577 (Feedback): SMTP Notifications not working when using SMTPS
Applied in changeset commit:d269747b358f6e8f844e88d39fe36b8f33343d24. Warren Baker
06:19 AM Bug #3577 (Resolved): SMTP Notifications not working when using SMTPS
h3. Configuration:
* E-Mail server: example.com
* SMTP Port of E-Mail server: 2525
* Secure SMTP Connection: Ena...
Anonymous
07:08 AM Bug #3578: Upgrade from 2.1 to 2.1.1 causes Fatal trap 12 - 0x4c
Removing the virtual CDROM from the settings allows it to boot correctly. Anonymous
06:51 AM Bug #3578 (Rejected): Upgrade from 2.1 to 2.1.1 causes Fatal trap 12 - 0x4c
Host: Oracle VM Virtualbox @ Windows 7
Steps: Upgrade via web interface, seems successful and reboots automaticly.
...
Anonymous
 

Also available in: Atom