Project

General

Profile

Activity

From 05/15/2014 to 06/13/2014

06/13/2014

10:14 PM Bug #3712: missing protocols in NAT edit page
Please advise if there is any concern with merging these. I'll happily modify the pull requests as necessary. Daniel Becker
10:13 PM Bug #3712: missing protocols in NAT edit page
I created pull requests for this a few weeks back:
- "1208 for RELENG_2_1":https://github.com/pfsense/pfsense/pull...
Daniel Becker
10:12 PM Bug #3712: missing protocols in NAT edit page
I created pull requests for this a few weeks back:
"1208 for RELENG_2_1":https://github.com/pfsense/pfsense/pull/12...
Daniel Becker
10:10 PM Bug #3712 (Resolved): missing protocols in NAT edit page
The protocol selection on the NAT edit page is missing some protocols that are available for selection on other pages... Daniel Becker
08:46 PM Revision bc388533: Avoid keeping old files from previous sessions on /tmp/configbak
Renato Botelho
07:13 PM Revision 828da370: cf/ dir is removed below, do not need to remove the file here
Renato Botelho
07:08 PM Revision dc86f24d: Fix path for trigger_initial_wizard
Renato Botelho
06:11 PM Revision 061ac3f3: Better string check
N0YB
12:25 PM Revision c352b9d1: Merge pull request #1034 from vsquared56/master
Renato Botelho
11:59 AM Revision 6f3d2063: Replace Header() calls by lowercase
Renato Botelho
11:37 AM Revision 44b79ffb: Merge pull request #1222 from phil-davis/patch-8
Renato Botelho
11:36 AM Revision bcfd894e: Merge pull request #1229 from ExolonDX/branch-master_06
Renato Botelho
11:36 AM Revision 718af29d: Merge pull request #1228 from ExolonDX/branch_master_05
Renato Botelho
08:17 AM Revision f5b26faa: Remove htmlspecialchars() call for a fixed string.
N0YB
07:21 AM Bug #3542 (Feedback): cert_get_issuer() in certs.inc doesn't always return the full Distinguished Name
Pull request merged Renato Botelho

06/12/2014

09:06 PM Revision cbe38717: Bring the code of captiveportal up to speed with its module counterpart requirments
Ermal LUÇI
05:24 PM Bug #3707: pfsense-tools: No sync for > 1month between ESF-internal and git.pfsense.org
Ok there was a missing path option in the crontab. This appears to be running normally now.
Jeremy Porter
03:25 PM Bug #3707: pfsense-tools: No sync for > 1month between ESF-internal and git.pfsense.org
The tools repo was trying to update with the wrong key. Its also having trouble running form cron. Its manually upda... Jeremy Porter
12:16 AM Bug #3707 (Resolved): pfsense-tools: No sync for > 1month between ESF-internal and git.pfsense.org
Related to my report in #3693 the pfsense-tools repository on git.pfsense.org hasn't been updated since 20th may whil... Mathieu Simon
04:27 PM pfSense Packages Bug #3711 (Resolved): bind package not starting after update
Hello,
We reinstalled bind package after an update, but now the named service is not starting up. we restarted our...
Anonymous
02:55 PM Bug #3710 (Resolved): Adding static DHCP leases doesn't cause BIND zones to update
Adding static DHCP leases doesn't cause BIND zones to update with "Register DHCP static mappings" on.
This one mus...
Dmitriy K
02:48 PM pfSense Packages Bug #897: Missing DNS record types SRV SPF DOMAINKEYS
I believe "Custom Zone Domain records" is enough to implement any idea you want. Just add there mail._domainkey.<doma... Dmitriy K
02:42 PM pfSense Packages Bug #3323: BIND, Reverse Zones and Register DHCP static mappings.
I have performed some tests with pfSense 2.2 and seems like #3323 has been successfully fixed. Dmitriy K
01:22 PM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
Issue persists on 2.2 Renato Botelho
12:53 PM Revision 1d8b3cdd: Fix i386 default URL for snapshots
Renato Botelho
12:31 PM Revision e7eeb5ce: Do not expire already disabled users, it fixes #3644
Renato Botelho
12:31 PM Revision 11eaf7bf: Do not expire already disabled users, it fixes #3644
Renato Botelho
11:59 AM Revision 859a5304: Fix #3665, show IPSec tunnel description on status page
Renato Botelho
11:33 AM Revision bd757043: Fix a typo on variable name
Renato Botelho
11:16 AM Revision 6186c00a: Fix td class
Renato Botelho
08:48 AM Bug #3665: IPsec tunnel description not displayed on status output
Looks good to me. Might be nice to have the P2 descriptions in the Child SA list as well if it's not too much trouble. Jim Pingle
07:00 AM Bug #3665 (Feedback): IPsec tunnel description not displayed on status output
Applied in changeset commit:859a53045631abf3844efda55a3169186618746a. Renato Botelho
07:50 AM Bug #3644: rc.expireaccounts expires every expired account every time it runs
Applied in changeset commit:e7eeb5ceac07f83630ced5e9cf18b10083a9aca8. Renato Botelho
07:50 AM Bug #3644 (Feedback): rc.expireaccounts expires every expired account every time it runs
Applied in changeset commit:11eaf7bfe6ba02d39e08d3c7541cb5d2b181d686. Renato Botelho
04:36 AM Bug #2882: 6RD not working in latest snapshots
I am also running in to this issue using the Dutch fiber ISP 'OnsBrabantnet'. If there is anything I can do or provid... Wouter van Rooy
03:05 AM Bug #3709 (Resolved): Disabled static route entries trigger 'route delete' error at boot
I've got a site to site openvpn setup. On the server i've got "remote networks" setup. On system reboot, this remote ... Maarten Bakker
02:32 AM pfSense Packages Bug #3708 (Closed): Error with order field while creating the first entry in "groups ACL" for squidGuard package
While creating the first ACL in "Groups ACL" for squidGuard package the following message is shown in the "Order" fie... Anonymous

06/11/2014

05:56 PM Revision f01c3b59: Fix #3702, make sure tunnel inside IP is set when interface changes
Renato Botelho
03:49 PM Bug #1107: mpd on AMD64 generates invalid checksums with NAT
When I look back at what I wrote and on the logs, I see that all NAT have the checksum error. But for some reason the... Andreas Winge
03:17 PM Bug #1107: mpd on AMD64 generates invalid checksums with NAT
As long as this problem has existed, NAT out WAN via PPTP on amd64 has been broken, that was the easiest problem to r... Jim Pingle
03:13 PM Bug #1107: mpd on AMD64 generates invalid checksums with NAT
Oh 2.1.3 that I am running now is so much worse than when I reported this. As said in 2.1.3 NAT out to the WAN wasn't... Andreas Winge
12:43 PM Bug #1107: mpd on AMD64 generates invalid checksums with NAT
Your description of what you did is something that has worked all along.
It was when the pfsense had an outgoing ...
Andreas Winge
01:00 PM Bug #3702 (Feedback): gif interface assignment removes tunnel's inside IPv6 IPs
Applied in changeset commit:f01c3b5973e96502b787d282cc508a95f3a40d38. Renato Botelho
09:11 AM Bug #3706 (New): Permission order affects default page on limited accounts, but can't reorder
1. Make an account
2. Assign dashboard permission
3. save
4. Assign reboot permission
5. save
6. log in with tha...
Trel S
05:59 AM Bug #3666: PMTUD is broken for NATed traffic
I think you're on to something there. This: ... Chris Buechler
05:47 AM Feature #973 (Resolved): OpenVPN client in GUI cannot connect to a server requiring username/password
yep, this one's been implemented. Chris Buechler
12:27 AM Feature #973: OpenVPN client in GUI cannot connect to a server requiring username/password
And now I looked in the code for 2.2 and saw that it was there. Awesome! Andreas Winge
05:23 AM Revision daa169f7: remove extra .
Chris Buechler

06/10/2014

11:42 PM Feature #973: OpenVPN client in GUI cannot connect to a server requiring username/password
Sorry, I misread the description. Ignore that last comment.
Will there ever be a possibility to provide user/pass ...
Andreas Winge
11:36 PM Feature #973: OpenVPN client in GUI cannot connect to a server requiring username/password
This one can be closed. It has been working for years now. Andreas Winge
05:21 PM Revision f5629ea6: Be more precise to match members of a bridge interface, it should fix #3637
Renato Botelho
05:20 PM Revision f2c86031: Be more precise to match members of a bridge interface, it should fix #3637
Renato Botelho
03:15 PM Bug #3666: PMTUD is broken for NATed traffic
not identical, no. Had the same basic components - scrub all, pass all, nat on. I can throw the completely identical ... Chris Buechler
05:37 AM Bug #3666: PMTUD is broken for NATed traffic
You used the same ruleset on stock FreeBSD as pfSense? Ermal Luçi
02:25 AM Bug #3666: PMTUD is broken for NATed traffic
Additional data point. This seemingly isn't an issue in stock FreeBSD 10-STABLE. One I had handy: ... Chris Buechler
12:36 AM Bug #3666 (New): PMTUD is broken for NATed traffic
no change. I did confirm it's specific to NATed traffic and updated subject accordingly. Send any packet > egress int... Chris Buechler
03:13 PM Bug #3703 (Resolved): MTU not applied on reboot
the root issue is the link route MTUs in FreeBSD 8.3 aren't correctly updated. That works in 10.x, and hence 2.2 (I'v... Chris Buechler
12:59 PM Bug #3703: MTU not applied on reboot
fwiw, in UI going from mtu 9000 to mtu 'blank', after multiple save/apply, ifconfig, netstat, and ping all still show... Steve Russell
12:49 PM Bug #3703: MTU not applied on reboot
Netstat -rnW output after first save/apply, while ifconfig says mtu 9000
$ netstat -rnW
Routing tables
Interne...
Steve Russell
12:30 PM Bug #3703: MTU not applied on reboot
Please also include "netstat -rnW" -- watch the mtu column there. Jim Pingle
12:27 PM Bug #3703: MTU not applied on reboot
This is the ifconfig output after first save/apply:
$ ifconfig
em0: flags=8843<UP,BROADCAST,RUNNING,SIMPLEX,MULTI...
Steve Russell
12:00 PM Bug #3703: MTU not applied on reboot
Also be sure to specify any additional configurations you have on the interfaces such as lagg, vlans, bridges, gif/gr... Jim Pingle
11:57 AM Bug #3703: MTU not applied on reboot
Are you sure the MTU is not being set? Could you paste the output of ifconfig? I tried it both on 2.1.3 and 2.2 and i... Renato Botelho
10:48 AM Bug #3703 (Resolved): MTU not applied on reboot
Set MTU on LAN to 9000. Save. Apply. 'Ping -f -l 8972 pfsense' from windows box. Timed out.
Save LAN settings aga...
Steve Russell
02:28 PM Revision b2821f7d: Revert "Revert "Fix #3700 and other syntax issues:""
This reverts commit 4cc2ae78d3027c349969437f08a88b1fb88c9de8. Renato Botelho
02:28 PM Revision ab3c1e24: Revert "Fix sh syntax"
This reverts commit cd49f9cd5d21a6592ba690cd315f19266092bee5. Renato Botelho
01:54 PM Revision cd49f9cd: Fix sh syntax
Renato Botelho
01:54 PM Revision 4cc2ae78: Revert "Fix #3700 and other syntax issues:"
This reverts commit e912bfae186b6b657daf52607f9d027f46be0478. Renato Botelho
01:42 PM Revision ff3da5db: Fix #3700 and other syntax issues:
- Remove -G parameter from pfctl since it doesn't exist anymore
- Initialize $old_router
- Fix sh syntax on variable ...
Renato Botelho
01:40 PM Revision e912bfae: Fix #3700 and other syntax issues:
- Remove -G parameter from pfctl since it doesn't exist anymore
- Initialize $old_router
- Fix sh syntax on variable ...
Renato Botelho
12:30 PM Bug #3637: Incorrect interface matching on bridge edit page
Applied in changeset commit:f5629ea6b83572ae8fa681b7bfd0c2e05844b290. Renato Botelho
12:30 PM Bug #3637 (Feedback): Incorrect interface matching on bridge edit page
Applied in changeset commit:f2c86031649e5f199ef10e848593ba38429694da. Renato Botelho
12:03 PM Todo #3705 (Resolved): use HTTPS for rc.update_bogons.sh
The *rc.Update_bogons.sh* script should reference the *HTTPS* site instead of the HTTP one.
v4url=${v4url:-"http:/...
BBcan177 .
12:03 PM pfSense Packages Bug #3704 (Closed): spamd whitelist/blacklist bug
1 - I've create a white list with google IP's range but I'm still get connections from Google IP's in GREY when I cli... Ricardson Williams
09:00 AM Bug #3700: pfctl: illegal option -- G
Applied in changeset commit:ff3da5dba67c64514808e86165e92362f3ff8b33. Renato Botelho
09:00 AM Bug #3700 (Feedback): pfctl: illegal option -- G
Applied in changeset commit:e912bfae186b6b657daf52607f9d027f46be0478. Renato Botelho

06/09/2014

06:32 PM Revision 6da518fc: Do not allow interface group name to be bigger than 15 chars, helps ticket #3208
Renato Botelho
06:32 PM Revision 6a0f34b8: Do not allow interface group name to be bigger than 15 chars, helps ticket #3208
Renato Botelho
05:35 PM Bug #3678: Kernel panic: "Bogus interrupt trigger mode" on Intel J1900
Dan E wrote:
> I can confirm this issue on a Gigabyte GA-J1900N-D3V. I've tried AMD64/i386 builds of 2.1.3 as well a...
Eric Tol
01:05 PM Bug #3125: hifn on 2.1 breaks certain ciphers w/openssl
Confirmed same on an ALIX with: ... Chris Buechler
12:59 AM Bug #3514: IPv6 - LAN looses Prefix after link event
Derek Ivey wrote:
> I seem to be running into this bug in pfSense 2.1.3-RELEASE. It seems like a SIGHUP is properly ...
Derek Ivey
12:14 AM Bug #3514: IPv6 - LAN looses Prefix after link event
I seem to be running into this bug in pfSense 2.1.3-RELEASE. It seems like a SIGHUP is properly being sent to the dhc... Derek Ivey

06/08/2014

09:50 PM Revision 529ba86a: Populate gateway address field with tilde if there is no address or friendly interface.
This is to match the update data. N0YB
09:47 PM Revision 1f47798a: Fix gateway widget size change on first update.
Inner table size changes on the first update because the table in update data does not have the same attributes as th... N0YB
12:42 AM Bug #3701 (Rejected): IPv6 address assignment inside gif only functions with 128 prefixlen
the actual bug at fault here is #3702. We do actually ignore prefixlen there and set it to 128, so maybe shouldn't gi... Chris Buechler
12:23 AM Bug #3701 (Rejected): IPv6 address assignment inside gif only functions with 128 prefixlen
This used to work, but I'm not entirely sure at what point - 2.1.4 behaves the same. On the most current 2.2 snapshot... Chris Buechler
12:41 AM Bug #3702 (Resolved): gif interface assignment removes tunnel's inside IPv6 IPs
Normally removing an IP from an interface where that type is "none" is appropriate. But not with gif (or tun or tap o... Chris Buechler

06/07/2014

11:34 PM Bug #3700 (Resolved): pfctl: illegal option -- G
we're either missing a patch or doing it wrong here. ... Chris Buechler
10:15 PM Feature #3699: Log pfsense version after bootup
Pull request submitted.
https://github.com/pfsense/pfsense/pull/1230
Adam Gibson
08:34 PM Feature #3699: Log pfsense version after bootup
I posted a discussion about it several days ago where someone else mentioned it would be nice to log the version.
...
Adam Gibson
08:21 PM Feature #3699 (Resolved): Log pfsense version after bootup
I have had trouble trying to keep track of what version of pfSense I was running in the past to submit bug reports an... Adam Gibson
01:59 PM Todo #3698 (Rejected): Design flaw in floating rules ui
javascript updates them accordingly after you put an address in the field. If you want to submit a pull request so th... Chris Buechler
12:45 PM Todo #3698: Design flaw in floating rules ui
This is on 2.1.3 x64 Oliver Loch
12:44 PM Todo #3698 (Rejected): Design flaw in floating rules ui
Hi,
as you can see on the attached picture, the available subnets are a bit "out of range" for the selected protoc...
Oliver Loch

06/06/2014

05:48 PM Bug #3517 (Closed): VPN re
Chris Buechler
05:44 PM Bug #3669 (Feedback): WAN IPs not being cached causing unnecessary "rc.start_packages: Restarting/Starting all packages"
Chris Buechler
02:54 PM Revision ad03afb6: Escape argument on call to is_process_running too, also remove some unecessary mwexec() calls
Renato Botelho
02:53 PM Revision 4cc34245: Add some protection to parameters that come through _GET
Renato Botelho
02:48 PM Revision 2f9951fe: Add some protection to parameters that come through _GET
Renato Botelho
02:33 PM Feature #3522 (Feedback): Option to set CARP interfaces to 'maintenance mode', persisting through a reboot so the primary machines stays as backup/inactive
Jim Pingle
02:32 PM Bug #3649 (Closed): IPv6 Gateway is not functioning when using DHCPv6
Oops, duplicate of #3361 Jim Pingle
01:16 PM Todo #3396 (Feedback): Replace dnsmasq with Unbound
Needs more testing though Warren Baker
12:26 PM Revision cbf16c30: Escape this before running.
Jim Pingle
04:50 AM Feature #3697 (New): New backup/restore area: Certificates
It would be nice if we could backup / restore all certificates only. Dmitriy K
02:57 AM Bug #2945: Installation stucks at 36%: /usr/local/bin/cpdup -vvv -I -o /usr /mnt/usr
Seems pretty random to me.
When I faced the same issue, I tried various advises about BIOS settings (CPU VT, Energy ...
Игорь Горьков
12:57 AM Feature #3696 (New): Multiple items backup/restore
It would be great if we could choose what areas we want to backup/restore. Backuping/Restoring area 1 by 1 is a bad a... Dmitriy K

06/05/2014

10:00 PM Feature #3693: pfPorts: Sync lighttpd with FreeBSD ports
Hi, let's see if it needs some additional waiting time but I still get last commit being from may 20th.
(I messed up...
Mathieu Simon
06:28 PM Feature #3693: pfPorts: Sync lighttpd with FreeBSD ports
It should be fixed now. Thanks! Renato Botelho
05:20 PM Feature #3693: pfPorts: Sync lighttpd with FreeBSD ports
Hi Renato
*bummer* ;-)
However I guess that there must be some issues with the replication between ESF's internal...
Mathieu Simon
03:01 PM Feature #3693 (Closed): pfPorts: Sync lighttpd with FreeBSD ports
It was already done a week ago. Thanks anyway. Renato Botelho
01:21 AM Feature #3693 (Closed): pfPorts: Sync lighttpd with FreeBSD ports
Syncs our lighttpd port with FreeBSD ports tree at r355995
Let's see if this can be used as procedure for contribu...
Mathieu Simon
09:44 PM Revision 56898132: Tidy up misc. widgets XHTML
captive_portal_status.widget.php
Remove NAME from TABLE tag, not valid in XHTML
carp_status.widget.php
Add missing c...
Colin Fleming
06:41 PM Revision 2690afba: Update "pkg_edit.,php"
"custom_php_after_head_command", if the PHP code also contains
JavaScript ("squid_auth.xml" for example) then this wi...
Colin Fleming
06:36 PM Revision 3bbc23b8: Bump version to 2.1.4
Renato Botelho
11:55 AM Revision 764ac8c7: Fix #3691, use curl instead of fetch to download update files
Renato Botelho
11:55 AM Revision 1c52509c: Fix #3691, use curl instead of fetch to download update files
Renato Botelho
11:38 AM Bug #3695: CVE-2014-0224 - OpenSSL SSL/TLS MITM vulnerability
More links with info:
http://www.freebsd.org/security/advisories/FreeBSD-SA-14:14.openssl.asc
https://www.imperialv...
Jim Pingle
11:37 AM Bug #3695: CVE-2014-0224 - OpenSSL SSL/TLS MITM vulnerability
We're already aware and investigating.
As far as we can tell it may not be critical for most. As with Heartbleed i...
Jim Pingle
11:30 AM Bug #3695 (Resolved): CVE-2014-0224 - OpenSSL SSL/TLS MITM vulnerability
This newly released exploit affects all versions of OpenSSL and allows a MITM attacker to decrypt and modify traffic ... Adam Gauthier
11:21 AM Bug #3125: hifn on 2.1 breaks certain ciphers w/openssl
Testing this on 2.2 I am still unable to set lighttpd to use BEAST protection. I receive the same error as before, in... Jim Pingle
10:04 AM Bug #3694: Some certificates not in CRL is also blocked
OK, thanks for your quick answer.
You're right, 2 certificates have the same serial number.
Forum topic for furth...
Laurent Legendre
09:02 AM Bug #3694 (Rejected): Some certificates not in CRL is also blocked
Most likely explanation is that you somehow have a serial number collision, so both certs have the same serial number... Jim Pingle
08:48 AM Bug #3694 (Rejected): Some certificates not in CRL is also blocked
Hi,
I've an OpenVPN server with many users. 3 of them are in a CRL which is used by the openvpn server.
Another u...
Laurent Legendre
07:00 AM Bug #3691: Fetch error on HTTPS console update by URL
Applied in changeset commit:764ac8c73a7529740b80773d6c8bf44c3a2244df. Renato Botelho
07:00 AM Bug #3691 (Feedback): Fetch error on HTTPS console update by URL
Applied in changeset commit:1c52509cabc014ca55e07548338b3990bfc2ace9. Renato Botelho
03:20 AM Bug #3691: Fetch error on HTTPS console update by URL
just needs a symlink. ... Chris Buechler
12:55 AM Bug #3208: interface name over 17 characters long results in pf errors
The problem persists in 2.1.3 release, if interface is an Interface Group of more than 15 characters Damien Montalan

06/04/2014

07:25 PM Revision 88e545b4: Whitespace fixes
Jim Pingle
07:22 PM Revision 2da48592: Allow the user to select "None" for OpenVPN client certificate, so long as they supply and auth user/pass. Ticket #3633
Jim Pingle
06:17 PM Revision df13b077: Just use ID here instead.
Jim Pingle
06:13 PM Revision 5344099a: Various fixes to diag_dump_states.php (Add interface column, some extra validation safety, etc). Should fix #2121
Jim Pingle
04:43 PM Bug #3692 (Resolved): apinger loss % gets stuck
I have noticed on multiple (5) independent pfSense installs/locations/ISPs (both active/passive and single-node, x86 ... Jeroen van Gelderen
02:31 PM Feature #3633 (Feedback): OpenVPN client's "Client Certificate" should be optional
I added a commit to allow this with some input validation to make sure that if they leave it on 'none' that they must... Jim Pingle
01:30 PM Bug #2121 (Feedback): pfctl -ss output has changed on FreeBSD 10
Applied in changeset commit:5344099abc7e490e63c9dacfb311c3fb3cc38de7. Jim Pingle
10:56 AM Bug #1107 (Feedback): mpd on AMD64 generates invalid checksums with NAT
This does appear to be fixed on 2.2 snapshots. I connected up a PPTP client to and amd64 VM running 2.2 and it could ... Jim Pingle
10:32 AM Bug #3187 (Feedback): LiveCD boot issue on multicore systems.
Needs feedback from affected users now that we have 2.2 snapshots. Jim Pingle
10:28 AM Feature #620: No privilege choice to allow access to Dashboard
The current permission seems to be fine for most everyone. If we need to improve upon this, it can wait until after 2.2 Jim Pingle
10:20 AM Bug #3690 (Resolved): php-fpm blocks (stops the boot, prevents webgui startup, etc)
This was resolved yesterday. Jim Pingle
09:23 AM Bug #3691 (Resolved): Fetch error on HTTPS console update by URL
When performing a console update by URL from an HTTPS URL, fetch displays an error validating the certificate.
<pr...
Jim Pingle
05:07 AM Bug #3624: "ppp: OpenConfFile: Can't open file '/var/etc/mpd_wan.conf': No such file or directory"
Temporal solution to this problem is to check "Use RAM Disks" box in System: Advanced: Miscellaneous. Dmitriy K

06/03/2014

06:18 PM Revision 466cabed: allow ipaliases to be configured on lo0
Matthew Smith
06:15 PM Revision e9490019: Silent pbi_info
Renato Botelho
05:39 PM Revision 29732bc3: Update csrf-magic to 1.0.4
Renato Botelho
01:59 PM Revision bc29d9fd: Reduce possible noise
Renato Botelho
12:33 PM Revision ee7f5e7a: Merge pull request #1226 from ExolonDX/branch_master_04
Renato Botelho
12:33 PM Revision f1330391: Merge pull request #1225 from ExolonDX/branch_master_03
Renato Botelho
12:33 PM Revision ccc3b027: Merge pull request #1224 from ExolonDX/branch_master_02
Renato Botelho
12:33 PM Revision 960ed83f: Merge pull request #1223 from ExolonDX/branch_master_01
Renato Botelho
12:12 PM Revision 580a6561: Tidy up "status_queues.php" XHTML
Add closing BODY and closing HTML tags if "traffic shaping is not
configured."
Colin Fleming
12:08 PM Revision 2a351d32: Tidy up "status_openvpn.php" XHTML
Move the closing FORM tag after the PHP check if there are any OpenVPN
instances.
Colin Fleming
11:52 AM Revision e6f98d5b: Tidy up "diag_dns.php" XHTML
Move the "=" sign into the first table cell, this allows the output to
line up in the second cell,
Tidy up the table ...
Colin Fleming
11:28 AM Revision 26509223: Tidy up "crash_reporter.php" XHTML
Tidy up Paragraph tags
Close INPUT tags
Colin Fleming
09:34 AM Feature #3522: Option to set CARP interfaces to 'maintenance mode', persisting through a reboot so the primary machines stays as backup/inactive
This has been pushed into the 2.2 Alpha from what I read on the forums. Correct? The status probably can be changed... Adam Gibson
09:24 AM Revision c4107752: Handle firewall log filter regex input better bug #3689
If the user inputs an invalid regex in any of the filter fields, then a page full of "warning" messages appear in the... Phil Davis
04:28 AM Bug #3689: Filter logs Input Validation Failure
I submitted pull request https://github.com/pfsense/pfsense/pull/1222
This will be nice to this type of input, escap...
Phillip Davis
02:37 AM Bug #3690: php-fpm blocks (stops the boot, prevents webgui startup, etc)
Given that this is a showstopper bug, I feel it should be given a high priority. Anonymous
02:30 AM Feature #3687: Multi sources,destinations,ports on single rule

I know that aliases can do that. i only report my experience with customers who insert/edit policies often don't l...
Anonymous

06/02/2014

08:55 PM Bug #3690 (Resolved): php-fpm blocks (stops the boot, prevents webgui startup, etc)
Since about 29-May, php-fpm has been apparently blocking. This prevents the webgui from starting up, and also stops ... Charlie m
08:46 PM Revision ed10564b: allow ipaliases to be configured on lo0
Matthew Smith
07:54 PM Feature #3687 (Closed): Multi sources,destinations,ports on single rule
aliases and aliases containing aliases can do all that already. Chris Buechler
07:53 PM Bug #3679 (Closed): Wrong values Current Traffic Graph Dashboard WAN
same issue as another ticket with this general problem Chris Buechler
06:50 PM Bug #3417 (Feedback): racoon crashes after mobile xauth login with fourth DNS server configured
ran into this one today. Presume this is not an issue with 2.2 given racoon is gone, setting target version 2.2 to co... Chris Buechler
11:55 AM Bug #3689 (Resolved): Filter logs Input Validation Failure
In
diag_logs_filter.php
entering a source or destination in the format 1.1.1.0/24 causes the below error to be rep...
Mark Wharton
11:27 AM Revision 0db055f0: Merge pull request #1219 from nagyrobi/patch-13
Renato Botelho
07:36 AM Bug #3688 (Resolved): firewall rule syntax error with Diffserv Code Point
I am using 2.1.3.
I am getting a syntax error when creating a floating firewall rule with a particular Diffserv Co...
James Dietrich
01:49 AM Bug #1943: PPPoE won't reconnect after link loss when using vr(4) NICs on certain ISPs only
As a developer, I don't understand why pmd config is being generated EACH time on connect?! It's so hard to add a che... Dmitriy K

06/01/2014

12:55 PM Bug #3679: Wrong values Current Traffic Graph Dashboard WAN
ok,
error on version 2.1.3
Let me try with version 2.2 snaps
Gilberto Tunon

05/31/2014

05:12 PM Feature #3687 (Closed): Multi sources,destinations,ports on single rule
hello,
it would be fine if it could be possible to create or to edit a policy adding more than 1 source,destination ...
Anonymous
02:40 PM Revision 0bb15b99: Fix filename
Jim Pingle
02:40 PM Revision 2fc7b003: Fix variable name
Jim Pingle
01:01 AM Revision cac386b6: remove openbgpd bits from system_gateways_edit and system.inc. The package
match is case-sensitive and hasn't matched the openbgpd package's name in
at least 5 years, so it doesn't do anything...
Chris Buechler
12:57 AM Revision bc76b18e: remove openbgpd bits from system_gateways_edit and system.inc. The package
match is case-sensitive and hasn't matched the openbgpd package's name in
at least 5 years, so it doesn't do anything...
Chris Buechler

05/30/2014

11:14 PM Feature #3686 (Resolved): Distinguish services when sending authentication request to RADIUS server
I use RADIUS for authenticating users on different services on pfSense: Captive Portal, multiple OpenVPN servers, Web... Jocelyn Viau
06:40 PM Revision 24c57e72: Drop a note on the page about how to repair a failed mirror.
Jim Pingle
06:15 PM Revision 52398a6b: Bring in proper gmirror support for the GUI and notifications.
Made a general gmirror library to perform various gmirror tasks and get information, using some of the former widget ... Jim Pingle
03:00 PM pfSense Packages Feature #3685 (Resolved): haproxy listener ip from alias
If there are too many IPs in listener list (100+) haproxy_listener.php is very slow viewing.
Perhaps it's related ...
Atıf CEYLAN
01:18 PM Revision 8490ba0f: glob() is already called by unlink_if_exists
Renato Botelho
01:08 PM Bug #3684 (Rejected): Openvpn not routing incomming traffic correct when using tap device
Will try this again and it is *NOT* a config issue
I have 2 openvpn clients on my server 1 running with tun as dev...
Lars Jensen
12:45 PM Revision 7d363e57: client-config-dir is also useful when using OpenVPN's internal DHCP while bridging.
Jim Pingle
12:45 PM Revision cb4f4ea9: client-config-dir is also useful when using OpenVPN's internal DHCP while bridging.
Jim Pingle
12:30 PM Revision 5125c746: Add @ to silent any possible return of posix_kill
Renato Botelho
12:05 PM Revision 33b42689: Fix typo
Renato Botelho
12:01 PM Revision 2d6e7bfb: Improve /etc/sshd:
. Create ed25519 key for ssh and silent daemon
. Remove some exec() calls
. We do not need to re-create all keys if /...
Renato Botelho
09:39 AM Bug #3649: IPv6 Gateway is not functioning when using DHCPv6
Seems rtsold is not passing the gateway as second argument!
Looking more on how to fix this
Ermal Luçi
09:20 AM Bug #3654 (Feedback): Outbound IPsec rules do not exclude WAN subnet
Pushed a patch for this!
It is the same as for reply-to.
Ermal Luçi
07:56 AM Bug #3666 (Feedback): PMTUD is broken for NATed traffic
Patch put in to try to handle this case.
For record this is happening due to NAT being applied on packets and the ...
Ermal Luçi

05/29/2014

10:58 PM Bug #3683: pfSense Not Blocking Pre-Auth Captive Portal DNS Requests
Even with the first rule on the interface as "IPv4 TCP/UDP * * * * * none (Block Al)" the client is still getting "es... Kyle Fergusson
10:37 PM Bug #3683 (Rejected): pfSense Not Blocking Pre-Auth Captive Portal DNS Requests
It's not getting out to the Internet, the DNS forwarder can though and supplies responses. It's possible to block via... Chris Buechler
05:25 PM Bug #3683 (Rejected): pfSense Not Blocking Pre-Auth Captive Portal DNS Requests
pfSense appears to be susceptible to DNS Tunneling attacks. I've got a neighbor who's dishTV keeps associating with m... Kyle Fergusson
08:07 PM Revision 7a47edcc: Include the v4 prefix on the v6 netmask to make routing more sane and alos tracking interface configurations work!
Ermal LUÇI
02:29 PM Revision ae73fcb1: Merge pull request #1220 from ExolonDX/branch_master_01
Renato Botelho
02:18 PM Revision 7786daaa: Tidy up "diag_tables.php" XHTML
Add BODY tag
Add ACTION to FORM tag
Add CDATA section to SCRIPTS
Remove NAME from OPTION tag, not valid in XHTML
Upda...
Colin Fleming
02:09 PM Bug #3682: Openvpn not routing incomming traffic correct when using tap device
and the reply-to:
pass in quick on $PRQTUNNEL reply-to ( ovpnc2 88.80.28.129 ) inet proto icmp from any to any...
Lars Jensen
01:58 PM Bug #3682: Openvpn not routing incomming traffic correct when using tap device
from rules.debug:
pass out route-to ( ovpnc2 88.80.28.129 ) from 88.80.yyy.xxx to !88.80.28.128/25 keep state allo...
Lars Jensen
01:51 PM Bug #3682 (Rejected): Openvpn not routing incomming traffic correct when using tap device
traffic is routed by where the routing table says it should go, or via reply-to if you assign the VPN interface. Conf... Chris Buechler
12:33 PM Bug #3682 (Rejected): Openvpn not routing incomming traffic correct when using tap device
I have 2 openvpn clients on my server 1 running with tun as device and 1 running with tap as device,
traffic comin...
Lars Jensen
01:53 PM Revision 268258b5: Unset iflist and iflist_disabled
Renato Botelho
01:53 PM Revision 36b9bb28: Unset iflist and iflist_disabled
Renato Botelho
12:20 PM Revision 4e6b0a0e: Update services_ntpd.php
Add validation for the case of no server specified, fall back to pool.ntp.org robi robi
11:53 AM Revision 22ed6e3e: Show disabled interface when it was already part of interface group, it avoids to show a random interface instead and let user to add it by mistake. It should fix #3680
Renato Botelho
11:52 AM Revision 6e73977b: Show disabled interface when it was already part of interface group, it avoids to show a random interface instead and let user to add it by mistake. It should fix #3680
Renato Botelho
07:00 AM Bug #3680: disabling an interface which is part of an interface group puts another (arbitrary) interface into the group instead
Applied in changeset commit:22ed6e3eab85f55e993c75a28a772b6e1fc870d8. Renato Botelho
07:00 AM Bug #3680 (Feedback): disabling an interface which is part of an interface group puts another (arbitrary) interface into the group instead
Applied in changeset commit:6e73977bd7a542e703d1b05587c434880ef727a9. Renato Botelho
06:41 AM Revision 5635eec8: bring protocols on NAT edit page more in line with rule edit page
Daniel Becker

05/28/2014

08:48 PM Revision 1930a63e: Convert protocol ssl:// to https:// when creating http headers
Manuel Silvoso
08:14 PM Revision 499f6e20: Merge pull request #1217 from nagyrobi/patch-15
Renato Botelho
08:08 PM Revision 40c75329: Merge pull request #1216 from nagyrobi/patch-14
Renato Botelho
08:01 PM Revision 612b6ad6: Merge pull request #1212 from ExolonDX/branch_master_04
Renato Botelho
08:01 PM Revision 4f280a4a: Merge pull request #1211 from ExolonDX/branch_master_03
Renato Botelho
08:00 PM Revision 0e1a4b55: Merge pull request #1210 from ExolonDX/branch_master_02
Renato Botelho
08:00 PM Revision e2935a75: Merge pull request #1209 from ExolonDX/branch_master_01
Renato Botelho
07:52 PM Revision 151693da: Update services_ntpd_gps.php
Fixed MRC->RMC typos in sentence types, display and fine-tuning for SureGPS card. robi robi
07:39 PM Revision a88376d9: Update rrd.inc
fixed NTPd graphs resetting when service restarts or reconfigured (thanks charliem https://forum.pfsense.org/index.ph... robi robi
06:00 PM Revision 504e5fd4: Use script-friendly gmirror status output to build this info, old method was breaking output when the mirror was being rebuilt.
Jim Pingle
03:47 PM Bug #3612 (Feedback): Packages through proxy doesn't work since change to HTTPS
A fix was pushed few weeks ago on branch master commit:81c8b51db2
I cherry-picked it to RELENG_2_1 today - commit:...
Renato Botelho
12:31 PM Revision 1c847e5e: Make sure check_reload_status is stopped so it can be upgraded and no events disturb the upgrade.
Ermal LUÇI
11:05 AM Bug #2610: Whole-disk gmirror may break when upgraded to a FreeBSD 10.x base
Another relevant bit of info: The installer option works OK on 2.2 as well. Jim Pingle
11:02 AM Bug #2610 (Closed): Whole-disk gmirror may break when upgraded to a FreeBSD 10.x base
Non-issue. Ran some tests and a gmirror installed using our installer gmirror option on 2.1.x or before upgraded OK, ... Jim Pingle

05/27/2014

11:43 PM Bug #3681: Email notifications don't work with IPv6-only SMTP servers
our smtp.inc (looks to be from elsewhere, phpmailer maybe) uses gethostbyname to check whether a hostname is valid. g... Chris Buechler
07:45 PM Bug #3681 (Closed): Email notifications don't work with IPv6-only SMTP servers
The email notifications system does not function with an ipv6 only mail server.
@php: /system_advanced_notifications...
William Jagels
07:44 PM Revision 9cc22856: Remove the space here which probably is preventing from calling sshd from fcgi
Ermal LUÇI
03:34 PM Bug #3679 (Feedback): Wrong values Current Traffic Graph Dashboard WAN
on what version? You'll have to try the most recent 2.2 snapshot and report back. Chris Buechler
01:34 PM Revision aa7ec418: Make logging of pass rules opt-in rather than opt-out
Ermal LUÇI
01:14 PM Revision 1fd46d44: Split the setting of logging pass and block into 2 separate settings. Maybe this can be extended to control even the user rules?
Ermal LUÇI
12:59 PM Revision d7582888: Trim whitespaces from options text and fix #3674
Renato Botelho
12:35 PM Revision efa26483: Add ICMP to filter parser, it should fix #3663
Renato Botelho
11:57 AM Bug #3680: disabling an interface which is part of an interface group puts another (arbitrary) interface into the group instead
I can reproduce the problem in my 2.1.3 productive installation (tried again right now to verify), but I see now ther... Lukas Zeller
09:41 AM Bug #3680: disabling an interface which is part of an interface group puts another (arbitrary) interface into the group instead
I couldn't reproduce it on 2.1.3 and 2.2 recent snapshots. When an interface is disabled, it's removed from group, an... Renato Botelho
11:39 AM Revision 587ecd08: Tidy up "system_firware" XHTML
Remove WRAP from TEXTAREA and add Javascript to add wrap hard Colin Fleming
11:33 AM Revision b3733e10: Tidy up Ampersand XHTML
Deprecate Ampersand in Anchor tags Colin Fleming
11:22 AM Revision 2a74f9d7: Tidy up misc. XHTML
Close FORM tag correctly
Add missing TD and TR tags
Move NOWRAP into CLASS statement
Colin Fleming
11:11 AM Revision 9ef4289c: Tidy up "system_usermanager.php" XHTML
Add CLOSEHEAD varialbe and manually close HEAD
Add CDATA sections to SCRIPTS
Deprecate Ampersand in Anchor tags
Remov...
Colin Fleming
10:53 AM Bug #1943: PPPoE won't reconnect after link loss when using vr(4) NICs on certain ISPs only
After an upgrade from a rock-stable 2.0.3 to 2.1.3, I experience the same link lost problem with the PPP daemon.
My ...
Philippe P
05:06 AM Bug #1943: PPPoE won't reconnect after link loss when using vr(4) NICs on certain ISPs only
i just tried it on 2.1.3 nanobsd alix and after the last time this was patched, it works fine, it was able to reconne... Bipin Chandra
09:43 AM Bug #3615 (Closed): /etc/rc.d/*.sh start" is executed during bootup, but equivalent "stop" cmd is never issued during shutdown
Closing by submitter request Renato Botelho
09:31 AM Bug #3569 (Feedback): pkg_edit.php jquery 'add' and 'delete' action scrolls page to top.
Pull requests merged Renato Botelho
09:29 AM Bug #3676 (Resolved): Some typos in the build log text output
Fixed, thanks! Renato Botelho
08:01 AM Bug #3648 (Feedback): Filter logs broken on amd64, working on i386
It should be fine now Renato Botelho
08:00 AM Bug #3669: WAN IPs not being cached causing unnecessary "rc.start_packages: Restarting/Starting all packages"
You can always use gitsync to sync your installation with latest changes made on branch, in this case RELENG_2_1.
...
Renato Botelho
08:00 AM Bug #3674 (Feedback): Subnet options do not activate on manual outbound NAT rule edit page
Applied in changeset commit:d758288839b46bc09507cdb9236d7cd110c0a01a. Renato Botelho
07:50 AM Bug #3663 (Feedback): Filter parser does not display ICMP log messages
Applied in changeset commit:efa26483ee517f6f5087631ef895cdc1f48c17e2. Renato Botelho

05/26/2014

06:19 PM Bug #3670: IPv6 DHCP-PD over PPPoE non functional + radvd core dump + solution
I have access to an Internode connection and can confirm Nic's findings.
The system is 2.1.3-RELEASE and I have appl...
Josh Cavalier
05:00 PM Bug #3680 (Resolved): disabling an interface which is part of an interface group puts another (arbitrary) interface into the group instead
Preconditions:
- Assume WAN interface W and VLAN interfaces A,B,C configured.
- Assume an interface group called G ...
Lukas Zeller
03:19 PM Bug #3678: Kernel panic: "Bogus interrupt trigger mode" on Intel J1900
I can confirm this issue on a Gigabyte GA-J1900N-D3V. I've tried AMD64/i386 builds of 2.1.3 as well as 2.2-DEVELOPMEN... Dan E
02:20 PM Bug #1943: PPPoE won't reconnect after link loss when using vr(4) NICs on certain ISPs only
I have the very same problem on 2.1.3 amd64: after series of disconnects pppoe daemon stops reconnecting;
ppp log:...
Dmitriy K
02:17 PM Bug #3679 (Closed): Wrong values Current Traffic Graph Dashboard WAN
I have bge0 and vr0 U300M linksys usb. On status RRD graph, is righ, but dashboard show wrong values. I enable traffi... Gilberto Tunon
10:03 AM Bug #3664 (Feedback): "IPsec" not displayed in firewall log interface column
This should have been fixed by the applied patch. Ermal Luçi
07:57 AM Bug #3619 (Feedback): ipfw/dummynet not always loaded when required in 2.2
This has been fixed with the bug on kldstat on 10. Ermal Luçi

05/25/2014

07:40 AM Bug #3635: Apinger does't start after upgrade to 2.1.3-RELEASE
20 days and noone has any fresh ideas on this... :(
Well on opening post I mentioned that it could get nasty. And ...
Kirill Harkin

05/24/2014

10:38 AM Bug #3678 (Resolved): Kernel panic: "Bogus interrupt trigger mode" on Intel J1900
Asrock Q1900M motherboard with Bay Trail Intel J1900 is unable to boot pfSense 2.1.3 live CD and USB images. A kernel... Ken Masterson
05:21 AM Bug #3677 (Closed): packages.pfsense.org fails on IPv6
Sometimes packages.pfsense.org is reachable by IPv4 only (e.g. May, 24th. 2014) so pfSense fails access if IPv6 is en... Christian Felsing

05/23/2014

06:00 PM Revision 67eec085: Add (self) for an outbound NAT source as well
Jim Pingle
06:00 PM Revision b7988b29: Let (self) be used on port forward destinations also
Jim Pingle
06:00 PM Revision 0d0c01ca: Add (self) keyword for specifying "any IP address on this firewall" as a rule choice.
Jim Pingle
10:48 AM Revision 23b3e679: Fix typo
Renato Botelho
06:45 AM Revision a4d67bd5: bring protocols on NAT edit page more in line with rule edit page
Daniel Becker

05/22/2014

11:54 PM Bug #3676 (Resolved): Some typos in the build log text output
Might as well report this totally inconsequential stuff while I notice it:
a) s/runinng/running
Thu May 22 22:17:48...
Phillip Davis
07:54 PM Revision 77a4e6d7: Clarify usage for not/and/or in host field
Jim Pingle
07:45 PM Revision 017e4ad3: Add some rudimentary and/or logic to the host field of packet capture.
Jim Pingle
07:45 PM Revision 715d2895: Allow for negation of protocol, host, or port number when capturing packets.
Jim Pingle
06:49 PM Revision cfa59dce: Merge pull request #1154 from ExolonDX/branch_master_01
Renato Botelho
06:33 PM Revision 33261707: Merge pull request #1149 from phil-davis/patch-7
Renato Botelho
06:26 PM Revision 3543db5e: Merge pull request #1205 from ExolonDX/branch_master_59
Renato Botelho
06:26 PM Revision 7d8aad66: Merge pull request #1204 from ExolonDX/branch_master_58
Renato Botelho
06:26 PM Revision e286c998: Merge pull request #1203 from ExolonDX/branch_master_56
Renato Botelho
06:26 PM Revision e1ee5ebd: Merge pull request #1202 from ExolonDX/branch_master_54
Renato Botelho
06:26 PM Revision cc2dcd1b: Merge pull request #1201 from ExolonDX/branch_master_53
Renato Botelho
06:26 PM Revision 165b7165: Merge pull request #1200 from ExolonDX/branch_master_52
Renato Botelho
06:26 PM Revision be612412: Merge pull request #1199 from ExolonDX/branch_master_51
Renato Botelho
06:26 PM Revision 34e52740: Merge pull request #1198 from ExolonDX/branch_master_50
Renato Botelho
06:26 PM Revision 50eab2d7: Merge pull request #1196 from ExolonDX/branch_master_46
Renato Botelho
06:26 PM Revision 799dec85: Merge pull request #1195 from ExolonDX/branch_master_45
Renato Botelho
06:26 PM Revision 9e47b48c: Merge pull request #1194 from ExolonDX/branch_master_44
Renato Botelho
06:26 PM Revision 60f2eebe: Merge pull request #1193 from ExolonDX/branch_master_43
Renato Botelho
06:26 PM Revision c077dfc1: Merge pull request #1192 from ExolonDX/branch_master_42
Renato Botelho
06:26 PM Revision 3762be9e: Merge pull request #1191 from ExolonDX/branch_master_41
Renato Botelho
06:26 PM Revision ed79ff86: Merge pull request #1190 from ExolonDX/branch_master_40
Renato Botelho
06:26 PM Revision 1e9cf477: Merge pull request #1189 from ExolonDX/branch_master_39
Renato Botelho
06:26 PM Revision 2b0a8c1f: Merge pull request #1188 from ExolonDX/branch_master_38
Renato Botelho
06:25 PM Revision 725859ee: Merge pull request #1187 from ExolonDX/branch_master_37
Renato Botelho
06:25 PM Revision d45e93b8: Merge pull request #1186 from ExolonDX/branch_master_36
Renato Botelho
06:25 PM Revision ae5d438d: Merge pull request #1185 from ExolonDX/branch_master_34
Renato Botelho
06:25 PM Revision 171fdf65: Merge pull request #1183 from ExolonDX/branch_master_32
Renato Botelho
06:25 PM Revision dcb5c494: Merge pull request #1180 from ExolonDX/branch_master_29
Renato Botelho
06:25 PM Revision 5f424c21: Merge pull request #1178 from ExolonDX/branch_master_26
Renato Botelho
06:25 PM Revision 192bac8f: Merge pull request #1177 from ExolonDX/branch_master_25
Renato Botelho
06:25 PM Revision 7f38b875: Merge pull request #1176 from ExolonDX/branch_master_24
Renato Botelho
06:25 PM Revision 24864771: Merge pull request #1175 from ExolonDX/branch_master_23
Renato Botelho
06:25 PM Revision 8ca0e58a: Merge pull request #1173 from ExolonDX/branch_master_21
Renato Botelho
06:25 PM Revision c6b061db: Merge pull request #1172 from ExolonDX/branch_master_20
Renato Botelho
06:25 PM Revision 801f04b5: Merge pull request #1171 from ExolonDX/branch_master_19
Renato Botelho
06:25 PM Revision f9b5bc8b: Merge pull request #1170 from ExolonDX/branch_master_18
Renato Botelho
06:25 PM Revision 8cd9566e: Merge pull request #1169 from ExolonDX/branch_master_17
Renato Botelho
06:25 PM Revision 0ab02bfd: Merge pull request #1168 from ExolonDX/branch_master_16
Renato Botelho
06:25 PM Revision d05f3d88: Merge pull request #1167 from ExolonDX/branch_master_15
Renato Botelho
06:25 PM Revision e07e831f: Merge pull request #1166 from ExolonDX/branch_master_14
Renato Botelho
06:25 PM Revision 290ffa8f: Merge pull request #1164 from ExolonDX/branch_master_12
Renato Botelho
06:25 PM Revision 86fdc4cc: Merge pull request #1163 from ExolonDX/branch_master_11
Renato Botelho
06:25 PM Revision 1e94f6e1: Merge pull request #1162 from ExolonDX/branch_master_10
Renato Botelho
06:25 PM Revision 702455a2: Merge pull request #1161 from ExolonDX/branch_master_09
Renato Botelho
06:25 PM Revision 78c44da3: Merge pull request #1160 from ExolonDX/branch_master_08
Renato Botelho
06:25 PM Revision 2839155a: Merge pull request #1159 from ExolonDX/branch_master_06
Renato Botelho
06:25 PM Revision 8586d275: Merge pull request #1158 from ExolonDX/branch_master_05
Renato Botelho
06:25 PM Revision 0eaaddf8: Merge pull request #1157 from ExolonDX/branch_master_04
Renato Botelho
06:25 PM Revision d4a58c15: Merge pull request #1156 from ExolonDX/branch_master_03
Renato Botelho
06:25 PM Revision b84967c7: Merge pull request #1155 from ExolonDX/branch_master_02
Renato Botelho
04:47 PM Revision 0d4b6b89: Display space usage for all mounted filesystems, not just /. Also display FS type and indicate if it's a RAM disk.
Jim Pingle
09:41 AM Bug #3612: Packages through proxy doesn't work since change to HTTPS
I made the change to /etc/inc/globals.inc mentioned in the Bug Description and can successfully see the Available Pac... tall tree
09:27 AM Bug #3612: Packages through proxy doesn't work since change to HTTPS
I have just upgraded from 2.1 to 2.1.3 and now have this issue too. pfSense is configured to use an external proxy se... tall tree
06:48 AM Bug #3670: IPv6 DHCP-PD over PPPoE non functional + radvd core dump + solution
Ermal Luçi wrote:
> You are sure that you have not selected the wrong options in the interface configuration page on...
Nic Hannekum
02:02 AM Bug #3670: IPv6 DHCP-PD over PPPoE non functional + radvd core dump + solution
You are sure that you have not selected the wrong options in the interface configuration page on the GUI for this? Ermal Luçi
05:08 AM Bug #3657: Web Interface - Missing Static IPv6 /127 Subnet Prefix
We have successfully been using a IPv6 /127 subnet to connect our pfSense router with our ISP's router (COLT).
The u...
Cyril Tourist
03:40 AM Bug #3675: pfPorts failed builds on RELENG_2_2
Ermal Luçi wrote:
> Thank you for the report though there is nothing that can be done on pfSense side of things unti...
Anonymous
01:59 AM Bug #3675 (Closed): pfPorts failed builds on RELENG_2_2
Thank you for the report though there is nothing that can be done on pfSense side of things until this is fixed on po... Ermal Luçi
12:03 AM Bug #3675 (Closed): pfPorts failed builds on RELENG_2_2
I'm trying to build pfPorts as the first step of the whole build as I was instructed to do. I'm doing it like this in... Anonymous

05/21/2014

07:15 PM Bug #3670: IPv6 DHCP-PD over PPPoE non functional + radvd core dump + solution
I only do simple things that do not effect many files at once, so I haven't bothered with a whole development environ... Phillip Davis
04:34 PM Bug #3670: IPv6 DHCP-PD over PPPoE non functional + radvd core dump + solution
No worries Phillip - will do. Just setting up a proper dev environment. Any recommendations? I'm on a Mac and would i... Nic Hannekum
06:20 PM pfSense Packages Todo #3673 (Resolved): disable jail_template from 2.2?
yeah I removed it from the package list in all 2.x versions since it hasn't been maintained. Chris Buechler
01:38 AM pfSense Packages Todo #3673 (Resolved): disable jail_template from 2.2?
Jail_template hasn't been updated since added. It was built for 1.2, and thus is a FreeBSD 7x image. Considering 7x i... Andrew Stuart
05:30 PM Revision d62a265c: Properly handle this rename, and squelch errors if it fails.
Jim Pingle
05:29 PM Revision e1854cad: Properly handle this rename, and squelch errors if it fails.
Jim Pingle
05:22 PM Revision 8d6c5f66: Delete all ip aliases when interface is disabled, it should fix #3650
Renato Botelho
05:21 PM Revision 672e28f3: Delete all ip aliases when interface is disabled, it should fix #3650
Renato Botelho
03:54 PM Bug #3671: PFSense crashes and reboots on running nmap or nessus scans from inside the network
and, like I said, something specific to what you're doing. You're running 32 bit on something where you should run 64... Chris Buechler
01:15 AM Bug #3671: PFSense crashes and reboots on running nmap or nessus scans from inside the network
Chris,
This crash happens like clock-work, irrelevant of the PFSense utilization or any other factors. Start a nma...
Yash Kadakia
12:15 AM Bug #3671 (Rejected): PFSense crashes and reboots on running nmap or nessus scans from inside the network
this isn't true in the least. At least several well-known names in vulnerability assessment use pfSense because it ha... Chris Buechler
03:50 PM Feature #1189: Gateway: Multiple monitor ips
there are plenty of anycasted IPs that are always up. Google DNS, OpenDNS, Level 3's public DNS, among others. Chris Buechler
08:58 AM Feature #1189: Gateway: Multiple monitor ips
I searched about this and I'm glad others need that.
I tried several IP but there is no one that can be ALWAYS onl...
Nome Fasullo
12:30 PM Bug #3650: IP aliases are configured even when an interface is disabled
Applied in changeset commit:8d6c5f6621417861cbf656ff867e03da3cef7926. Renato Botelho
12:30 PM Bug #3650 (Feedback): IP aliases are configured even when an interface is disabled
Applied in changeset commit:672e28f3d6ff02c21f9e771656fc984531a5782f. Renato Botelho
12:29 PM Bug #3669: WAN IPs not being cached causing unnecessary "rc.start_packages: Restarting/Starting all packages"
Would it be possible to set target version to 2.1.x ?
I've been struggling with the same thing (altough i thought it...
jeroen van breedam
12:18 PM Revision aed5ba4e: Fix package changelog link when package doesn't has its own directory inside config subdir. Ticket #3672
Renato Botelho
12:13 PM Bug #3674 (Resolved): Subnet options do not activate on manual outbound NAT rule edit page
Firewall > NAT, Outbound Tab, + to add a rule.
Change Translation Address to "Other Subnet (enter below)"
The sub...
Jim Pingle
07:30 AM pfSense Packages Bug #3672 (Feedback): s/jailscanner/mailscanner and fix website links in pkg_config.10.xml
Applied in changeset commit:2756de4fc9eb14746bf0d5be7e83826958723201. Renato Botelho
01:20 AM pfSense Packages Bug #3672 (Resolved): s/jailscanner/mailscanner and fix website links in pkg_config.10.xml
It appears someone made a mistake? and named mailscanner jailscanner in pkg_config.10.xml. links,etc say mailscanner,... Andrew Stuart
04:02 AM Revision a1b9ad59: fix variable typo. ticket #3669
Chris Buechler
03:57 AM Revision 38f6f50a: fix variable typo. ticket #3669
Chris Buechler

05/20/2014

11:58 PM Bug #3671 (Rejected): PFSense crashes and reboots on running nmap or nessus scans from inside the network
I've had this problem for a year or two now. Every time we run a nmap or nessus scan against more than 3-4 hosts, PFS... Yash Kadakia
11:04 PM Bug #3669: WAN IPs not being cached causing unnecessary "rc.start_packages: Restarting/Starting all packages"
I fixed the typo in the variable part. Leaving this here for Ermal's review on the other. Chris Buechler
08:14 AM Bug #3669 (Resolved): WAN IPs not being cached causing unnecessary "rc.start_packages: Restarting/Starting all packages"
First bug report so please excuse administrative mistakes.
Affected version is actually 2.1.3 (maybe others)
Th...
Nic Hannekum
07:53 PM Bug #3670: IPv6 DHCP-PD over PPPoE non functional + radvd core dump + solution
@Nicolas - in addition to reporting the bug/s here, you can make edits and submit your own pull requests online at ht... Phillip Davis
10:50 AM Bug #3670: IPv6 DHCP-PD over PPPoE non functional + radvd core dump + solution
Further note:
During the course of debugging this issue I also came across bug https://redmine.pfsense.org/issues/...
Nic Hannekum
10:31 AM Bug #3670 (Resolved): IPv6 DHCP-PD over PPPoE non functional + radvd core dump + solution
So i've been working through this for a couple of evenings now and have a working, reliable configuration requiring a... Nic Hannekum
06:24 PM Revision 8d9a95f9: This is not true any longer (and required for L2TP+IPsec)
Jim Pingle
03:41 PM Revision 75786d2a: Correct variable test here, too. Ticket #3662
Jim Pingle
03:09 PM Revision 89adb2f3: Restore 989d361e88d08bd9e71bf7daafcb3b39af65bd3d to preserve a scenario that seems useful as suggested from @fitchner.
Ermal LUÇI
01:00 PM Revision d35fe5fc: Remove commented out code since long time
Ermal LUÇI
01:00 PM Revision 989d361e: Remove a line spotted by @fitchner which is not needed at all
Ermal LUÇI
12:56 PM Revision b5e8282d: Put a line on logs when this situation happens!
Ermal LUÇI
11:52 AM Bug #3662 (Resolved): "Provide a list of accessible networks to clients" is not working
After my last two commits this appears to work properly on iOS. With the box checked, the client only tries to send t... Jim Pingle
10:08 AM pfSense Packages Bug #3660: Captive Portal Idle timeout Pfsense 2.1.3
With my current time zone(gmt -3), session last activity is almost 5 hours ahead.
so I've tried to set my timezone t...
Gilmar Cabral
05:48 AM pfSense Packages Bug #3660: Captive Portal Idle timeout Pfsense 2.1.3
Problem is related to time Last Activity as print attached.
Login as 07:46:12 and presented logout but time was 12:0...
Gilmar Cabral
06:10 AM Bug #3668 (Rejected): Building of RELENG_2_2 i386 fails at the buildworld stage.
Sure there are not much documentation on the builder and work is going on to improve that.
Though you are supposed...
Ermal Luçi
05:57 AM Feature #1205: VPN: User-based / Group-based firewall rules
The user based rules are supported if they come from radius.
Locally to pfSense they still need to be implemented.
Ermal Luçi
05:10 AM Feature #1205: VPN: User-based / Group-based firewall rules
+1
some could say that it can be done using more than one openvpn server instances with different client ip settings...
al all
05:35 AM Feature #3156: Grouping rules
+1
it would be very convenient to be able to group firewall-rules and simply enable or disable them as a group. It w...
al all
04:46 AM Feature #3476: Null rule entry for logical segmentation of sets of rules
+1
that would be really comfortable...
al all

05/19/2014

10:49 PM Revision 1b244d38: Update SCRIPT tags.
Add CDATA sections to SCRIPT tags in various files Colin Fleming
10:26 PM Revision c1229525: Tidy up "diag_logs_ipsec" "service_unbound_acls"
Move NOWRAP into class statement Colin Fleming
10:19 PM Revision 428c3e9d: Update services_captiveportal_filemanager.php
Move NOWRAP into class STATEMENT Colin Fleming
10:18 PM Revision 5c770630: Update services_captiveportal_couchers.php
Move NOWRAP to class statement Colin Fleming
10:15 PM Revision 51bf0dbb: Update services_dhcpv6.php
Move NOWRAP into class statement Colin Fleming
10:10 PM Revision d085e7ac: Tidy up "log.widget.php" XHTML
Add CR to SCRIPT
Update HTML Boolean operators
Move NOWRAP into CLASS statement
Deprecate Ampersand in Anchor tags
Ad...
Colin Fleming
08:32 PM Feature #3029: DHCPv6 Server/RA page should list interfaces that are configured to track DHCP-PD
Can this be changed to a Bug instead of a feature request? Cino .
08:22 PM Revision 8f5ac1a1: Fix test (variable is a checkbox, not an array/string). Fixes #3662
Jim Pingle
08:19 PM Revision aeb0f546: Use correct variable name here.
Jim Pingle
03:50 PM Bug #3662 (Feedback): "Provide a list of accessible networks to clients" is not working
Applied in changeset commit:8f5ac1a168f06ce87297a6c0ad9dfd30451a7071. Jim Pingle

05/18/2014

08:52 PM Bug #3668 (Rejected): Building of RELENG_2_2 i386 fails at the buildworld stage.
I'm using tools repo version ab05d9c85e15e8467ca694cb17c3a2fd67c1e4e3. The buildworld is failing midway with an error... Anonymous
02:00 PM Revision 264b3ca8: Update services_dhcp_edit.php
Change ONCLICK to lower case Colin Fleming
01:53 PM Revision 1edd5d22: Tidy up "services_dhcp.php" XHTML
Change ONLICK to lower case
Change P tags to BR tags
Move opening TR tag inside the PHP IF statement
Colin Fleming
01:46 PM Revision 905bafa1: Tidy up "services_dhcp_relay" XHTML
Move closing BODY and closing HTML tags after the PHP FEND.INC statement Colin Fleming
01:43 PM Revision ce668fcd: Tidy up "interfaces.php" XHTML
Tidy up Anchor tag and PHP GETTEXT
Swap double quote and semi-colon in ONLICK statement
Colin Fleming
01:37 PM Revision 793e2a41: Tidy up "system_gateway_groups.php" XHTML
Change P tag to BR tag
Add missing closing TD tags
Change TR row to a hidden row
Colin Fleming
01:29 PM Revision 4b0dbd37: Tidy up "system_camanager.php" XHTML
Change ONCHANGE to lower case
Move NOWRAP into CLASS statement
Colin Fleming
11:28 AM Feature #3667: Hook for user shutdown script - "/etc/rc.custom_shutdown"
Signed up to Contributor License Agreement. Dreamcat Four
07:13 AM Feature #3667: Hook for user shutdown script - "/etc/rc.custom_shutdown"
Pull request:
https://github.com/pfsense/pfsense/pull/1197
The proposed solution also solves another similar is...
Dreamcat Four
07:09 AM Feature #3667 (Needs Patch): Hook for user shutdown script - "/etc/rc.custom_shutdown"
There remains no simple feature for a user to run their custom rc scripts during shutdown. (without resorting to writ... Dreamcat Four
07:14 AM Bug #3615: /etc/rc.d/*.sh start" is executed during bootup, but equivalent "stop" cmd is never issued during shutdown
Issue may be solved by a new issue:
https://redmine.pfsense.org/issues/3667
Please close this one, or mark as d...
Dreamcat Four
06:45 AM Bug #3615: /etc/rc.d/*.sh start" is executed during bootup, but equivalent "stop" cmd is never issued during shutdown
*Sorry* Apologies for any confusion. I meant to say: "take my pull request for shutdown hook" (not submit your own one!) Dreamcat Four
06:43 AM Bug #3615: /etc/rc.d/*.sh start" is executed during bootup, but equivalent "stop" cmd is never issued during shutdown
Reading carefully the official FreeBSD manages, the behaviour of this feature is ambiguous.
If you `man rc`, wher...
Dreamcat Four

05/17/2014

06:11 PM Revision afc09384: Tidy up "diag_dns.php" XHTML
Add SUMMARY to TABLES
Close INPUT tags
Add missing closing FONT tags
Deprecate Ampersand in Anchor tags
Change _new t...
Colin Fleming
05:54 PM Revision ffcfd9fb: Tidy up "diag_traceroute.php" XHTML
Add SUMMARY to tables
Close INPUT tags
Update HTML Boolean operators
Change PRE tag to a TEXTAREA tag and add JavaScr...
Colin Fleming
05:43 PM Revision 2231fe29: Tidy up "diag_testport.php" XHTML
Add SUMMARY to TABLES
Close INPUT tags
Update HTML Boolean operators
Change PRE tag to a TEXTAREA tag and add JavaScr...
Colin Fleming
05:18 PM Revision f74c828f: Tidy up "diag_system_activity.php" XHTML
Move PHP "fbegin.inc" between BODY and SCRIPT
Add CDATA sections to SCRIPTS
Merge FONT tags and escape closing PRE an...
Colin Fleming
05:12 PM Revision f11afbf7: Tidy up "diag_states_summary.php" XHTML
Add SUMMARY to TABLES
Update single quotes to double quotes in HTML
Add missing BODY, closing BODY and closing HTML tags
Colin Fleming
05:12 PM Bug #3666 (Resolved): PMTUD is broken for NATed traffic
Where you have an interface on a system with a lower MTU than other interfaces, send traffic larger than the MTU of t... Chris Buechler
05:08 PM Revision a2b16c0c: Tidy up "diag_dump_states" and "diag_resetstat"
Add CDATA sections to SCRIPTS
Add SUMMARY to TABLES
Add missing closing FORM tag
Update HTML Boolean operators
Close ...
Colin Fleming
05:00 PM Revision 339a588f: Tidy up "diag_sockets.php" XHTML
Add SUMMARY to TABLES
Change "onclick" to lower case
Remove closing FONT tag
ID cannot start with a number, so add PH...
Colin Fleming
04:47 PM Revision 6bd30fed: Tidy up "diag_smart.php" XHTML
Add PHP "closehead" variable
Add CDATA sections and TYPE to STYLE tag
Add SUMMARY to TABLES
Update HTML Boolean opera...
Colin Fleming
04:38 PM Revision 92e8dc9d: Tidy up "diag_routes.php" XHTML
Move PHP "fbegin.inc" between BODY and SCRIPT
Add SUMMARY to TABLES
Update HTML Boolean operators
Add missing closing...
Colin Fleming
04:33 PM Revision 58a0ffb4: Tidy up "reboot.php" XHTML
Move BODY tag before PHP "fbegin.inc"
Close INPUT tags
Colin Fleming
04:30 PM Revision 74286b9e: Tidy up "edit.php" XHTML
Add PHP closehead variable and close HEAD manually
Add CDATA sections to SCRIPTS
Add SUMMARY to TABLES
Add JavaScript...
Colin Fleming
04:02 PM Revision f1a9b09d: Tidy up "diag_ping.php" XHTML
Add SUMMARY to TABLES
Close INPUT tags
Update HTML Boolean operators
Change the PRE tag to a TEXTAREA tag and ad a pi...
Colin Fleming
03:32 PM Revision 29629bca: Make some fixes related to Ticket #3662. Its mostly cleanup.
Ermal LUÇI
01:14 PM Revision 7442b5c6: test
Colin Fleming
01:03 PM Revision 99f089be: Tidy up "diag_system_pftop.php" XHTML
Move PHP include FBEGIN between BODY and SCRIPT
Add CDATA sections to SCRIPTS
Merge "face" and "size" into on FONT ta...
Colin Fleming
12:42 PM Revision e19669c5: Tidy up "diag_packet_capture.php" XHTML
Add SUMMARY to TABLES
Update HTML Boolean operators
Close INPUT tags
Remove TYPE from INPUT tags, invalid in XHTML
Re...
Colin Fleming
12:29 PM Revision 3edbd787: Tidy up "diag_ndp.php" XHTML
Close IMG tag and ALT to IMG
Add SUMMARY to TABLES
Add CDATA section to SCRIPT
Add missing closing BODY and closing H...
Colin Fleming
12:26 PM Revision 9610936a: Tidy up "diag_limiter.php" XHTML
Move PHP include FBEGIN between BODY and SCRIPT
Add CDATA sections to SCRIPTS
Merge "face" and "size" into on FONT ta...
Colin Fleming
12:19 PM Revision ed80f8e5: Tidy up "halt.php" and "diag_defaults.php" XHTML
Close INPUT, STRONG and P tags Colin Fleming
12:11 PM Revision fa7855f3: Tidy up "exec.php" XHTM
Add "closehead" PHP variable
Add CDATA sections to SCRIPTS and STYLES
Add TYPE to STYLES
Add hard space to closing PR...
Colin Fleming
12:01 PM Revision a3457472: Tidy up "diag_confbak.php" XHTML
Move VALIGN to STYLE statement
Add the colour WHITE other BGCOLOR will display error
Add SUMMARY to TABLES
Close INPU...
Colin Fleming
11:47 AM Revision fc82e8b6: Tidy up "diag_backup.php" XHTML
Add CDATA sections to SCRIPTS
Add SUMMARY to TABLES
Update HTML Boolean operators
Close INPUT tags
Add missing closin...
Colin Fleming
11:38 AM Revision 1ec21686: Tidy up "diag_authentication.php" XHTML
Add SUMMARY to TABLES
Update HTML Boolean operators
Add missing closing FORM, closing DIV, closing BODY and closing HTML
Colin Fleming
11:34 AM Revision 293ceb87: Tidy up "diag_arp.php" XHTML
Close IMG tags and and ALT
Add SUMMARY to TABLES
Add CDATA sections to SCRIPTS
Colin Fleming
11:27 AM Revision 286996b4: Tidy up "status_graph" XHTML
Move "fbegin.inc" between BODY and SCRIPT
Add CDATA sections to SCRTIPS
Update HTML Boolean operators
Remove EMBED, p...
Colin Fleming
11:06 AM Revision 9bc2519a: Tidy up "diag_logs filter" XHTML
Change ONCLICK to lowercase
Tidy up closing TD tags
Add dummy row to TBODY, but don't display it
Add missing closing ...
Colin Fleming
11:02 AM Revision 99d55f5a: Tidy up "diag_logs_filter.php" XHTML
Change "sortableMultirow" to a STYLE
Add missing quotes
Tidy up TD tags
Remove THEAD and TFOOT.
Move NOWRAP into CLAS...
Colin Fleming
10:36 AM Revision b3b6fcf4: Update status_lb_vs.php
Add missing closing TD and closing TR tags Colin Fleming
10:33 AM Revision 50e5ba04: Update status_lb_pool.php
Add missing closing TD and closing TR tags Colin Fleming
10:29 AM Bug #3662: "Provide a list of accessible networks to clients" is not working
Normally this should work if its defined as 'net_list'.
Please share strongswan config and the part rtelated from ...
Ermal Luçi
10:29 AM Revision 215e2cd6: Update status_captiveportal.php
Add missing closing TD tag Colin Fleming

05/16/2014

10:22 PM Revision d456b043: Tidy up "status_queues.php" XHTML
Add CDATA sections to SCRIPTS
Add SUMMARY to TABLES
Move NOWRAP into CLASS statement
Colin Fleming
10:16 PM Revision 4d33138f: Tidy up "status_openvpn.php" XHTML
Add CDATA sections to SCRIPTS
Add SUMMARY to TABLES
Change NAME to ID in TR tags
Closing IMG tags and add ALT to IMG
...
Colin Fleming
10:00 PM Revision 64feeb74: Tidy up "status_ntpd.php" XHTML
Add SUMMARY to TABLES
Move NOWRAP into CLASS statement
Change TD class to LISTR
Colin Fleming
09:54 PM Revision f96770ab: Tidy up "status_lb" XHTML
Add SUMMARY to TABLES
Update HTML Boolean operators
Close INPUT tags
Colin Fleming
09:45 PM Revision a8590dd6: Tidy up "diag_ipsec" XHTML
Add SUMMARY to TABLES
Move NOWRAP into CLASS statement
Close INPUT and IMG tags and add ALT to IMG tag
Add dummy row ...
Colin Fleming
09:15 PM Revision 112546f8: Tidy up "status_filter_reload.php" XHTML
Close INPUT tags
Remove NAME from DIV tags, not valid in XHTML
Add CDATA section to SCRIPTS
Close IMG tags and add AL...
Colin Fleming
09:08 PM Revision 61b07343: Tidy up "status_dhcpv6_leases.php" XHTML
Add SUMMARY to TABLES
Move spaces to $fspans and $fspane
Close INPUT and IMG tags and add ALT to IMG
Deprecate Ampers...
Colin Fleming
08:58 PM Revision 2871ce84: Tidy up "status_dhcp_leases.php" XHTML
Add SUMMARY to TABLES
Updates spaces in $fspans and $fspane
Close INPUT and IMG tags and ALT to IMG
Deprecate Ampersa...
Colin Fleming
08:27 PM Revision 0f4317d3: Tidy up "carp_status.php" XHTML
Add SUMMARY to TABLES
Close INPUT tags and IMG tags and ALT to IMG
Tidy up CENTER tags
Add missing closing FORM tag
Colin Fleming
08:12 PM Revision 0cb60645: Tidy up "status_captiveportal" XHTML
Add SUMMARY to TABLES
Remove PHP ECHO that isn't in a PHP statement
Update HTML Boolean operator
Add COLSPAN to fill ...
Colin Fleming
08:09 PM Revision 5ebb2954: Spell that correctly
Ermal LUÇI
08:00 PM Revision 1ff56562: Handle enc0->IPSec convertion. Should help Ticket #3664
Ermal LUÇI
07:46 PM Revision c739be2c: Add "match" to floating rules
Add "match" to floating rules as proposed in the forums
https://forum.pfsense.org/index.php?topic=76611.0
Remove Wind...
Colin Fleming
07:22 PM Revision 5ed13df0: Actually make this correct
Ermal LUÇI
06:43 PM Revision 3060dcd4: Use subnet rather than address/netmask to allow multiple clients to behave properly
Ermal LUÇI
05:11 PM Revision c42a35e5: /etc/version_kernel and /etc/version_base no longer exist, use php_uname to get the info instead.
Jim Pingle
05:10 PM Revision 02406801: /etc/version_kernel and /etc/version_base no longer exist, use php_uname to get the info instead.
Jim Pingle
03:09 PM Bug #3665 (Resolved): IPsec tunnel description not displayed on status output
The strongswan IPsec status output uses the internal name, e.g. conn2-2, and does not display the description entered... Jim Pingle
02:38 PM Bug #3664 (Resolved): "IPsec" not displayed in firewall log interface column
On the firewall log, when a log entry is recorded for the IPsec interface, the interface column shows "enc0" when it ... Jim Pingle
02:33 PM Bug #3663 (Resolved): Filter parser does not display ICMP log messages
I crafted an icmp block rule on the IPsec tab and it produced a message in the raw log but does not display in the GU... Jim Pingle
02:16 PM Bug #3662 (Resolved): "Provide a list of accessible networks to clients" is not working
"Provide a list of accessible networks to clients" doesn't seem to work. If a client tries to use the networks that s... Jim Pingle
02:15 PM Bug #3661: xauth user is not displayed in IPsec status
To clarify: The connection shows, as do the IPs and the identifiers but not the username. You can't distinguish betwe... Jim Pingle
02:13 PM Bug #3661 (Resolved): xauth user is not displayed in IPsec status
The mobile xauth userid should show up in the IPsec status page. It doesn't appear in the output now, and doesn't see... Jim Pingle
12:50 PM pfSense Packages Bug #3659: Bind Slave Zone - Ignoring Allow-transfer value
I've made a pull request, but apparently I've got to modify (I think) some other file too.
https://github.com/pfse...
Oskar Johansson
12:16 AM pfSense Packages Bug #3659: Bind Slave Zone - Ignoring Allow-transfer value
Sounds like you are happy with coding, so go to https://github.com/pfsense/pfsense amke the edit and submit a pull re... Phillip Davis
02:28 AM pfSense Packages Bug #3584 (Resolved): arpwatch package fails to start in pfsense 2.1.1
thanks Chris Buechler
01:40 AM pfSense Packages Bug #3584: arpwatch package fails to start in pfsense 2.1.1
I confirm that. Thanks. Max Frames
12:27 AM pfSense Packages Bug #3584: arpwatch package fails to start in pfsense 2.1.1
@Max - the changes were committed a while ago. arpwatch v1.1.2 and later should be fixed. Can you confirm that this i... Phillip Davis
02:27 AM Bug #3657: Web Interface - Missing Static IPv6 /127 Subnet Prefix
Because FreeBSD 8.x doesn't support it, the same as it doesn't support /31s. 10.x might support it, as it does suppor... Chris Buechler
02:15 AM Bug #3657: Web Interface - Missing Static IPv6 /127 Subnet Prefix
@Phil: There was RFC 3627 (http://tools.ietf.org/html/rfc3627) especially discouraging the use of /127. It's now in h... Doktor Notor
12:13 AM Bug #3657: Web Interface - Missing Static IPv6 /127 Subnet Prefix
/usr/local/www/interfaces.php has code to specifically exclude 127:
for ($i = 128; $i > 0; $i--) {
if(...
Phillip Davis
02:24 AM Feature #3658 (Needs Patch): Receiving stateless radius accounting packets for captive portal
Chris Buechler

05/15/2014

09:09 PM pfSense Packages Bug #3660 (Rejected): Captive Portal Idle timeout Pfsense 2.1.3
Using the value in Captive Portal idle timeout greater 60 minutes, connection does not expire.
Tested with 70 to 120...
Gilmar Cabral
05:34 PM Revision 95589abd: Move duplicated code into a function; Include local ID on mobile tunnel key line in ipsec.secrets.
Jim Pingle
05:33 PM Revision 25e2281c: Use the glob on 2.2 now as well for listing PPP serial devices.
Rather than doing auto-detection, fall back to a glob for now when listing potential PPP serial devices. This will al... Jim Pingle
02:46 PM pfSense Packages Bug #3659 (Resolved): Bind Slave Zone - Ignoring Allow-transfer value
Slave zones ignore the allow-transfer value for the zone and writes "none" in named.conf.
It's a simple fix, but c...
Oskar Johansson
02:20 PM Revision 95e496d6: Use the setkey proper path since ipsec-tools are not used anymore
Ermal LUÇI
02:17 PM Revision 4767004f: Use the right specification for ahnding over the subnet to mobile clients
Ermal LUÇI
02:03 PM Revision 7a1f391a: Do not specify the rightid in mobile tunnels since it makes things not work
Ermal LUÇI
02:01 PM Revision 34bb5eb0: Give needed +x flag to make working xauth proper
Ermal LUÇI
01:50 PM Revision 6586b30f: Oops this was moved accidentally
Ermal LUÇI
01:39 PM Revision b4ad5b1c: Correct sense of match and move the code up to since it makes more sense
Ermal LUÇI
01:29 PM Revision abd3c8f4: Actually this should be rightauth2 since they should send the extra infor to be validated
Ermal LUÇI
11:58 AM Feature #3658 (Needs Patch): Receiving stateless radius accounting packets for captive portal
Hi,
as pfSense's captive portal is already able to send accounting packets to a radius server (while using radius ...
Michael Schietzsch
04:26 AM Bug #3657 (Resolved): Web Interface - Missing Static IPv6 /127 Subnet Prefix
*Bug*: When using the web interface (GUI) to configure a network interface with a static IPv6 the subnet prefix /127 ... Cyril Tourist
02:48 AM Bug #3607 (Resolved): apinger misconfigured when using PPPoE link
Chris Buechler
02:47 AM Bug #1914 (Closed): LDAP Authentication test wont use credentials
Chris Buechler
02:46 AM Bug #2524 (Resolved): SNMP only shows one processor on a dual core system
this was fixed quite some time ago Chris Buechler
02:43 AM Bug #2446 (Closed): pfSense fails to queue UDP packets
Chris Buechler
02:43 AM Bug #2828 (Closed): CARP does not work on dual-homed VMware ESXi hosts without a workaround on the ESX host
this is a VMware issue, not our issue. CARP is likely to be deprecated in favor of VRRP in FreeBSD, so touching CARP ... Chris Buechler
02:39 AM Bug #2958 (Resolved): Load Balancer: relayd must be manually restarted when added second virtual server
not an issue on 2.1x or 2.2 Chris Buechler
02:38 AM Bug #3047 (Closed): IPSEC remote access broken in 2.03
Mobile IPsec works fine in general in 2.1x versions. 2.2 changes out ipsec-tools which will change everything any edg... Chris Buechler
02:34 AM Bug #1697 (Resolved): Interface group doesn't apply to all interfaces in all cases
Chris Buechler
02:34 AM Bug #1401 (Resolved): VLANs and Web settings "TCP Segmentation Offload"
Chris Buechler
02:33 AM Bug #1351 (Resolved): Mobile IPsec no traffic pass trough after 2nd connect after 5 minutes
Chris Buechler
02:26 AM Bug #3319 (Closed): automatically cleared ip addresses
can't replicate, and with CARP changes in 10/2.2, anything along these lines changes significantly so not likely to b... Chris Buechler
02:24 AM Bug #3084 (Closed): bsnmpd stopped working when openvpn is activated
subject isn't true in general. maybe a problem specific to the snapshot in use here. If you can replicate on 2.1.3, p... Chris Buechler
02:22 AM Bug #3310 (Rejected): There were error(s) loading the rules: pfctl: DIOCADDRULE: Device busy
nothing to go on here, and definitely not a general problem. If it's replicable, please let us know specifically how ... Chris Buechler
02:20 AM Bug #3520 (Rejected): IPV6 address on LAGG VLAN not reachable
config issue, not bug. Can't have 2 interfaces on the same subnet. Chris Buechler
02:17 AM Bug #1221: igb driver mbuf allocation problems on multicore machines aka Could not setup receive structures
the original issue of this ticket is resolved. Any specific combination of hardware may require tuning outside the de... Chris Buechler
01:43 AM Bug #3656: "LAN network" in v6 rules doesn't work when assigning link-local address to LAN
note for others who happen upon this, this really isn't a valid config. But there isn't any reason it shouldn't work. Chris Buechler
01:40 AM Bug #3656 (Resolved): "LAN network" in v6 rules doesn't work when assigning link-local address to LAN
If you configure a link-local address on an interface, that interface's "network" subnet fails being looked up. For i... Chris Buechler
 

Also available in: Atom