Activity
From 07/02/2014 to 07/31/2014
07/31/2014
-
12:49 PM Bug #3788 (Resolved): NetBIOS h-node should be translated 8 instead of 5
- Hallo everybody.
At line 182 of /usr/local/www/guiconfig.inc, nodetype value for h-node should be 8 instead than 5... -
11:59 AM Bug #3039: New vouchers doesn't sync with CARP slave
- Same problem on 2.1.4 (x64)
Ermal Luçi wrote:
> The system log would be interesting to see here
---
h3. 1) ... -
11:40 AM Bug #3787 (Rejected): Outbound NAT to VIP AMD64 not working from OPT1 interface
- No matter what I do and how I try to get it working, it doesnt work.
As long as I keep the WAN interface address t...
07/30/2014
-
06:46 PM Bug #3786: Browser hangs when wireless card enabled
- Ok clearing the highlight input boxes didn't fix it for me, but disabling lastpass completely did. Not sure why this...
-
02:50 PM Bug #3786: Browser hangs when wireless card enabled
- All pages or only the interface page for the wireless interface?
I can sort of reproduce this in Firefox but only ... -
02:18 PM Bug #3786 (Closed): Browser hangs when wireless card enabled
- As soon as the interface is enabled in assign interfaces, web page refreshes hang/are slow. Theory: problems loadin...
-
03:57 PM Revision fa0a1411: Fix for #3785 - 'strongswan config being generated with ike SA lifetime set to value of ipsec SA lifetime'
-
02:57 PM Bug #2144: pfSense dyndns for Namecheap doesn't work with hostnames containing "."
- Pardon me for re-opening this old bug, but I've finally gotten tired of manually updating my "dynamic" DNS entry host...
-
12:50 PM Bug #3785: strongswan config being generated with ike SA lifetime set to value of ipsec SA lifetime
- Fixed by commit fa0a1411026bcbf173fbe6d573dfc260ee883102.
https://git.pfmechanics.com/pfsense/pfsense/commit/fa0a1... -
10:53 AM Bug #3785 (Resolved): strongswan config being generated with ike SA lifetime set to value of ipsec SA lifetime
- Connection entries in /var/etc/ipsec/ipsec.conf are being generated with ikelifetime set to 3600s when the GUI shows ...
-
05:39 AM Feature #1361: DNSMasq, source interface and IPSec VPNs
- maybe now this will get fixed.
-
04:52 AM Bug #3784: Cannot enter hostname with a dot
- I guess to enforce the message on the page to only use the host and not the domain part, checking for a dot was seen ...
-
04:37 AM Bug #3784: Cannot enter hostname with a dot
- was looking on github.
The issue it relates to is: https://redmine.pfsense.org/issues/159 -
04:33 AM Bug #3784: Cannot enter hostname with a dot
- introduced in commit https://github.com/pfsense/pfsense/commit/46c5b763ef26269b50d303fc62793c58a42eefb1
I can't se... -
04:27 AM Bug #3784 (Rejected): Cannot enter hostname with a dot
- We want the hostname name of our server to be server.sub.domain.com, but pfsense doesn't recognise server.sub as a va...
07/29/2014
-
10:28 PM Revision 63dd9f08: Remove even the config.cache from /tmp to avoid issues while here
-
06:55 PM Bug #3783: wan interface loses IP after carrier reconnect
- Here is an annotated log showing the strange dhclient restart behavior.
-
06:49 PM Bug #3783 (Rejected): wan interface loses IP after carrier reconnect
- *Summary:* My WAN interface successfully gets an IP address via DHCP after reconnecting the Ethernet connection. Howe...
-
06:43 PM Bug #3782: ntp/gps serial speed doesn't set
- The speed is set correctly (to "16") in the config file, and the ntpd.log seems to show the correct speed:
Jul 29 23... -
06:39 PM Bug #3782: ntp/gps serial speed doesn't set
- Happens in chrome and Firefox. Firebug output shows that speed 9600 is selected. although 4800 shows in the box.
" ... -
05:08 PM Bug #3782 (Resolved): ntp/gps serial speed doesn't set
- https://172.27.44.136/services_ntpd_gps.php
Changing the serial port and speed does not actually save the speed. -
03:59 PM Revision 9280a998: Fix #3781 - 'strongswan dpdtimeout value not generated correctly'
-
02:15 PM Bug #3760 (Feedback): reply-to with TCP and IPv6 generates broken checksums
- Merged a patch to correct the regression.
-
11:20 AM Bug #3781 (Feedback): strongswan dpdtimeout value not generated correctly
- Applied in changeset commit:9280a998704d182bc3a559163126e290edafbb26.
-
08:23 AM Bug #3781: strongswan dpdtimeout value not generated correctly
- I'm going to go with the first approach of converting the value in the config.xml/GUI to (number of retries + 1) * DP...
07/28/2014
-
04:13 PM Bug #3781 (Resolved): strongswan dpdtimeout value not generated correctly
- When you enter a value in the retries field of the "Dead Peer Detection" row in the edit form on vpn_ipsec_phase1.php...
-
02:08 PM Bug #3692: apinger loss % gets stuck
- And again. Is there any diagnostic information that we can gather to help with this???
-
10:01 AM Bug #3780 (Closed): VLAN on LAGG may loose their MAC addresses if the LAGG membership is changed.
- Configuration:
* PFSense 2.1.3
* Watchguard X750e
* LAGG0 consisting of sk2,sk3,msk0,msk1
* VLAN10, VLAN100 on LA... -
09:42 AM pfSense Packages Bug #3779 (Resolved): Zabbix Agent 1.x - ZABBIX_AGENT_BASE not defined
- Problem:
Zabbix 1.x agent does not start automatically and complains on boot that it cannot find ZABBIX_AGENT_BASE/e...
07/27/2014
-
05:38 AM Bug #3737: Incoming VLAN traffic fails to reach VLAN interface if PCP not 0
- I've finally managed to put together a fully working environment and take a deeper look at this.
The problem is th...
07/26/2014
-
03:37 PM Bug #3778 (Resolved): Destination port range not displayed when it's an associated NAT rule and "other" ports
- firewall_rules_edit.php doesn't display Destination Port Range when it's an associated NAT rule and From and To are "...
-
12:27 PM Bug #2800: OpenVPN doesn't work properly with intermediate/chained CAs
- Ran into the same issue today with version 2.1.4.
The hack to copy the full chain into the certmanager solves the p...
07/25/2014
-
07:42 PM Revision f84b7bff: Add message about Gold to setup wizard and menu/link to Gold signup.
-
06:20 PM pfSense Packages Feature #3768 (Closed): Snort IPS/IDS
- 03:48 PM Revision f3d88511: Fix #3575, do not allow user to set IPs for GRE interfaces on interface edit page.
-
01:32 PM Revision 75de6b29: Fix redirect after editing permissions
- 12:15 PM Revision 6141a91b: Disable bandwidth checks for PRIQ, it should fix #3537
- 11:58 AM Revision c8f89a40: Fix field name that cannot contain spaces, and use displayname
- 11:57 AM Revision cdcbc988: Fix scheduler field name
- 11:35 AM Revision 6f1d690c: Fix field name that cannot contain spaces, and use displayname
- 11:34 AM Revision 52cacff8: Fix field name
-
11:00 AM Bug #3575 (Feedback): OPT interfaces on GRE tunnels do not accept IPv6 or IPv4 addresses to be set.
- Applied in changeset commit:f3d8851136156c14fbce86489f99043bf20423a6.
-
08:34 AM Bug #3777 (Resolved): User with "WebCfg - Help pages " permission listed first gets a bogus redirect
- If a user has "WebCfg - Help pages" in their personal permissions (not inherited) and it is listed first, then after ...
-
07:30 AM Bug #3537 (Feedback): Bandwidth values are forced by the Traffic Shaper Wizard but are not required nor used for PRIQ
- Applied in changeset commit:6141a91b4606b9fec2edf8b55e352c33a68875f8.
07/24/2014
-
11:40 PM Bug #3747: Route uses wrong interface (lo0) when tun local and remote are the same
- I wrote up what looks to be a similar issue here in the forums:
https://forum.pfsense.org/index.php?topic=79305.0
... - 09:28 PM Revision 260a6901: Strict checks for number of WANs and LANs on wizard
- 09:28 PM Revision e75a787f: Fix number of WAN / LAN interfaces detection for dedicated wizard
- 09:28 PM Revision 46cbc96e: Try to guess number of WANs
- 09:28 PM Revision 3ab6aff7: Try to guess number of WANs and LANs
- 09:28 PM Revision dad05dac: Fix number of WAN and LAN connections check
- 09:28 PM Revision 070aeff3: Just show right type of interfaces (LAN/WAN) on traffic shapper wizards, it fixes #3535
- 09:28 PM Revision c1d09bfe: Remove 'multi lan/single wan' and 'multi wan/single lan' traffic shaper wizards, multi lan/wan can be used to replace any of them
- 09:28 PM Revision 71802285: Replace exec() and system() calls by internal functions
- 09:28 PM Revision ba782be2: Fix indent and whitespaces
- 09:28 PM Revision 4844813b: Fix indent and whitespaces
- 09:28 PM Revision d6933213: Fix indent and whitespaces
-
06:41 PM Bug #3775 (Feedback): Installer installs incorrect gettytab/ttys
- I pushed a fix, next round of snapshots should be fine.
-
06:31 PM Bug #3775 (Resolved): Installer installs incorrect gettytab/ttys
- Running a fresh install from http://snapshots.pfsense.org/FreeBSD_stable/10/amd64/pfSense_HEAD/livecd_installer/pfSen...
-
05:34 PM Bug #3774: MTU Interface Settings Ignored when Assigned to LAGG Ports
- It seems like a simular issue has been resolved for VLANS: https://redmine.pfsense.org/issues/2786. Although it's unc...
-
05:26 PM Bug #3774 (Closed): MTU Interface Settings Ignored when Assigned to LAGG Ports
- In pfSense 2.2 (and I believe 2.1 and earlier as well), there is no way to properly set the MTU when assigning a LAGG...
-
04:30 PM Bug #3535 (Feedback): Selecting "LAN" as "WAN" in Multi-WAN Traffic Shaper wizard breaks the ruleset
- Applied in changeset commit:070aeff3b72fb2a5627f933b6595b2489f946b71.
-
04:05 PM Bug #3773 (Resolved): Can't add an IP alias on lo0 through the web GUI in 2.2
- In 2.2, if you go to Firewall->Virtual IPs and try to add an IP alias on the loopback interface, when you click the s...
-
02:47 PM Bug #3624: "ppp: OpenConfFile: Can't open file '/var/etc/mpd_wan.conf': No such file or directory"
- Follow-up to say my problems are partly resolved ... I replaced the network cable to the ADSL2 modem (Vigor 120). Now...
-
09:19 AM Feature #1388: 3G outbound failover connection with auto dial-up and hang-up
- +1 for this.
-
09:00 AM pfSense Packages Bug #3772 (Feedback): Broken openbgpd config generation logic in 2.2
- Applied in changeset commit:02dcf3888c643fcbd6b7f01d92eec2f9b5dc5955.
-
08:25 AM pfSense Packages Bug #3772 (Resolved): Broken openbgpd config generation logic in 2.2
- Under Services -> OpenBGPD, under the neighbors tab, if you add a neighbor and set the Neighbor Parameter called "Loc...
-
08:52 AM Bug #3769: Only the first phase 2 entry is used when multiple entries are present for an IPsec tunnel in 2.2
- The change included in the next snapshot worked fine.
-
07:52 AM pfSense Packages Feature #3768: Snort IPS/IDS
- This feature already exists in the Snort package, but the setting is global and is located on the GLOBAL SETTINGS tab...
-
06:47 AM Bug #3771 (Feedback): Webinterface and dhcpdcrashes with 500+ static leases
- I was not supposed to close it yet, will wait more details from submitter about how to reproduce
-
06:46 AM Bug #3771 (Rejected): Webinterface and dhcpdcrashes with 500+ static leases
- I have test environments with 1000+ static mappings working perfectly on 2.1.4 and on 2.2-snapshots. You can discuss ...
-
03:34 AM Bug #3771 (New): Webinterface and dhcpdcrashes with 500+ static leases
- I'm using pfSense 2.1.3 in a HA setup with CARP, pfsync, and dhcp failover.
I've got about 500+ static leases in m...
07/23/2014
-
11:23 PM pfSense Packages Bug #3767: Ntop Problem.
- Ok, thanks for the prompt response.
I do not think there is a need for any development, just correct recompilation... -
11:14 PM pfSense Packages Bug #3767: Ntop Problem.
- because any efforts we're going to put towards ntop in general will be on ntopng, we're not going to put dev time int...
-
10:54 PM pfSense Packages Bug #3767: Ntop Problem.
- Chris Buechler wrote:
> there's nothing broken in general with ntop
I would not be so sure about that - if there ... -
06:08 PM pfSense Packages Bug #3767 (Rejected): Ntop Problem.
- there's nothing broken in general with ntop. it needs to be deprecated and replaced with ntopng regardless.
-
05:45 PM Bug #3761 (Rejected): Disable interface where Captive portal is mapped you cannot login anymore
- it's not an issue on any stable release version I've seen. If you can replicate, let us know exactly how.
-
12:45 PM Bug #3761: Disable interface where Captive portal is mapped you cannot login anymore
- Hello, thank you for your information, propably it is fixed in version 2.1.4, because I had this problem in 2.1.1
... -
05:42 PM Bug #3191: Quality RRD inaccuracies and failure to update status in some circumstances
- There are a few descriptions of problems in tickets in Kayako under the apinger-badstats tag.
-
04:51 PM Bug #3198: IPSEC, when nating to a different size subnet a invalid natting rule is made.
- Forgot to add that the VPNs work after the patch, binat is perfect, but my firewall is useless.
-
04:48 PM Bug #3198: IPSEC, when nating to a different size subnet a invalid natting rule is made.
- I have this bug on 2.1.4 and after applying the patch described in https://github.com/pfsense/pfsense/pull/784, I hav...
-
04:19 PM Revision 1f2acda1: Fix for bug 3769
-
03:48 PM Bug #3770 (Resolved): Some drivers not being built with altq support
- The Intel igb driver is currently not being built with altq support enabled. This leads to a situation where the use...
-
11:19 AM Bug #3769: Only the first phase 2 entry is used when multiple entries are present for an IPsec tunnel in 2.2
- pushed the patch to master. Will test in next snapshot.
-
11:13 AM Bug #3769 (Resolved): Only the first phase 2 entry is used when multiple entries are present for an IPsec tunnel in 2.2
- See the attached config.xml file. The ipsec phase 1 peers with ikeid's 2 and 3 are active. Each of them have 3 phase ...
07/22/2014
-
08:31 PM Bug #3723 (Rejected): URL Table based rules may pass blocked IP
-
07:28 AM Bug #3723: URL Table based rules may pass blocked IP
- My bad, it was a configuration mistake. I'm sorry. Feel free to close the ticket.
-
08:30 PM Bug #3482 (Resolved): Initial Setup disables WAN
- This looks to be fixed already in 2.2.
The scenario where it's replicable in 2.1x is easy to duplicate. This is t... -
03:45 PM Bug #3482: Initial Setup disables WAN
- I couldn't reproduce it on similar setup using virtualbox. Let me know if I can have access to this box.
-
02:02 PM Bug #3482: Initial Setup disables WAN
- It's fairly easy to reproduce on a fresh install in VMware workstation.
1. Connect a client to the WAN network (or... -
06:01 AM Bug #3482: Initial Setup disables WAN
- I can't assign this until we know how to duplicate it.
- 07:39 PM Revision bc53fec6: Use SERVER_NAME instead of HTTP_HOST env var, it doesn't have port, then it avoids wizard end point to wrong IPv6 address. It should fix #3550
-
04:18 PM Bug #3601 (Feedback): Assigning a PPP Interface failed
- Can you confirm it's still happening on new snapshots? I couldn't replicate it on my test systems.
- 04:13 PM Revision 1b37ae46: Fix #983 - Add IP aliases subnets to interface subnet macro on GUI, since I'm here also fix not rules for PPTP clients macro.
-
02:50 PM Bug #3550 (Feedback): [IPv6] wizard not pointing to the right IPv6 address after first setup.
- Applied in changeset commit:bc53fec62dd3e40c8f6c1d65baeb12a40b1167cf.
-
02:30 PM Bug #3586 (Rejected): Gateway monitoring issue when 2 PPPoE WANs share the same gateway
- That type of configuration would require a custom monitor IP address configuration so leaving it on 'auto' is definit...
-
06:06 AM Bug #3586: Gateway monitoring issue when 2 PPPoE WANs share the same gateway
- assigned to pingle for eval
-
11:20 AM Feature #983 (Feedback): Improve/Enhance IP Alias VIP handling in GUI
- Applied in changeset commit:1b37ae46e73fed8db8ca6c5cc67988a369a738b8.
-
11:12 AM Feature #983: Improve/Enhance IP Alias VIP handling in GUI
- Jim Thompson wrote:
> assigned to Renato.
>
> see other comments on possible security issues in the Alias code.
... -
06:03 AM Bug #3191: Quality RRD inaccuracies and failure to update status in some circumstances
- need more info on 'when' this happens (why would be great)
07/21/2014
-
10:01 PM pfSense Packages Feature #3768 (Closed): Snort IPS/IDS
- Hello Everyone,
I would like ask add timer (in minutes) for blocked IP in snort.
That timer will drop the drop rul... - 09:57 PM Revision ef74c9e4: Concat var before call escapeshellarg
- 09:56 PM Revision 604623a1: Make dhcpleases use unbound pid when it's configured
- 09:54 PM Revision 9d83d01f: Fix shell script syntax, it should fix #3361
-
05:00 PM Bug #3361 (Feedback): DHCP6 WAN is not obtaining a default gateway
- Applied in changeset commit:9d83d01ff26b259bf149acedf2761cc4b09828db.
-
08:19 AM Bug #3361: DHCP6 WAN is not obtaining a default gateway
- Added the patch to rtsol, next round of snapshots will have it in
-
04:29 PM Bug #3761 (Feedback): Disable interface where Captive portal is mapped you cannot login anymore
- this isn't true in general, went through a couple scenarios last week on 2.1.4 with disabling an interface where CP i...
-
07:26 AM Bug #3747: Route uses wrong interface (lo0) when tun local and remote are the same
- Ermal is checking routing issue, here are some details:...
07/19/2014
-
10:25 PM Bug #2335: IGMPProxy and CARP Results in System Instability Upon Reboot
- Is this issue still present or is there a target on when it will be possibly resolved?
-
09:18 PM pfSense Packages Bug #3767 (Rejected): Ntop Problem.
- Hello,I have install ntop latest version.When I want see IP information.It's will show this screenshot on ip_informat...
- 11:56 AM Revision 9775c69d: Merge pull request #1252 from N0YB/XHTML_Compliance_System_Menu
-
07:28 AM pfSense Packages Bug #3766 (Closed): Unhashed plain passwords saved by 2 packages (one a shell login package)
- In the saved config.xml, user passwords are (?salted and) hashed, and so are PPP passwords.
But passwords for Anyt... -
07:19 AM Bug #3765 (Resolved): Port alias creation and expansion leaves white space padding, causes is_numeric() tests on port validity to fail.
- I entered a port alias ("Myport" defined as 999) through the 2.1.4 FW->"Alias"->"Port" UI, as part of a test. Using s...
- 04:01 AM Revision de467f00: System: Firmware: Settings
- Updater Settings Tab
system_firmware_settings.php
Line 488, Column 43: value of attribute "type" cannot be "input"; ... -
12:23 AM Bug #3692: apinger loss % gets stuck
- Just got bit with this again. Different symptoms this time... Gateway status (home page) showed 102% loss. RRD graphs...
07/18/2014
- 05:18 PM Revision dd030de9: Detect when protocol changes and invalidate session to get a new cookie with secure flag set according. It fixes #3714
-
04:32 PM Bug #3692: apinger loss % gets stuck
- i have the same problem on two pfsense machines.
- 04:21 PM Revision 639567b8: Merge pull request #1247 from DasTestament/master
- 01:33 PM Revision d806061c: Merge pull request #1232 from N0YB/Widget_Gateways
- 01:32 PM Revision f4b75912: Merge pull request #1235 from N0YB/Mixed_Case_Hostname
- 01:31 PM Revision 5847917c: Merge pull request #1236 from N0YB/Widget_Services_Status
- 01:29 PM Revision 34bb3ffc: Merge pull request #1237 from N0YB/XHTML_Compliance_System_Menu
-
12:30 PM Bug #3714 (Feedback): Session cookie inconsistent behavior when switching GUI protocols
- Applied in changeset commit:dd030de935c500d9c3698969b985fbf068ab6ef8.
-
11:30 AM Bug #3713: Gateways missing for OpenVPN server (shared key or /30s)
- Applied in changeset commit:8ff231b430864a08040c22518fde9bdfff54be0a.
-
11:29 AM Bug #3713 (Feedback): Gateways missing for OpenVPN server (shared key or /30s)
- Pull request has been merged
-
10:43 AM Bug #3713: Gateways missing for OpenVPN server (shared key or /30s)
- This should be an easy fix. Where you have a tap OpenVPN server configured, a dynamic gateway is added that has no IP...
-
10:18 AM pfSense Packages Bug #3764 (Rejected): ntop can't see IP detail information
- the package works in general, there is no indication of an actual bug here. Please post to the forum or mailing list ...
-
05:32 AM pfSense Packages Bug #3764: ntop can't see IP detail information
- It's can't see any ip detail information.
-
05:16 AM pfSense Packages Bug #3764 (Rejected): ntop can't see IP detail information
- Hello,I install pfsense 2.1.4 and install ntop package.I can access ntop web gui.But when I see any IP detail informa...
-
09:28 AM Todo #2109 (Feedback): pfSense on FreeBSD 10.x
-
09:27 AM Bug #2124 (Feedback): Package system updates for FreeBSD 10.x
07/17/2014
-
06:36 PM pfSense Packages Bug #3756 (Resolved): PBI package for Snort does not properly configure the barnyard2 support binary
-
06:31 PM pfSense Packages Bug #3756: PBI package for Snort does not properly configure the barnyard2 support binary
- Tested newly built PBI and it installs all the dependent components correctly. I believe this ticket can now be closed.
-
06:25 PM pfSense Packages Bug #3756 (Feedback): PBI package for Snort does not properly configure the barnyard2 support binary
- Should be fixed now
- 11:35 AM Revision bee27ca1: Merge pull request #1234 from agibson2/master
-
09:29 AM Feature #3365 (Feedback): Implement package signing
- It's working with BETA key, let it as feedback while the final key is not ready
-
09:13 AM Bug #3491 (Feedback): Improper input validation on firewall rules when using a numerical alias name
-
07:11 AM Bug #3713: Gateways missing for OpenVPN server (shared key or /30s)
- Maybe you were seeing issues like #3475?
-
07:10 AM Bug #3713: Gateways missing for OpenVPN server (shared key or /30s)
- Can you please add more information about what issue you are trying to get fixed here?
07/16/2014
-
06:01 PM Bug #3692: apinger loss % gets stuck
- I just got bit by this again running 2.1.4. For me, it happens every few weeks. and is always associated with an elev...
- 02:13 PM Revision 615ae81f: Review all parameters on unbound main GUI, fix boolean params and add missing ones. Also make it work properly with 'apply'
- 02:12 PM Revision f7e6c49a: Use the apply trigger for unbound acls to avoid restart unbound every time
- 12:58 PM Revision a88ec513: Fix indent and whitespaces
- 12:56 PM Revision c538f864: Some GUI tweaks on unbound main screen
- 12:42 PM Revision dbf81496: Improve unbound ACL edit page to use correct classes and jquery.ipv4v6ify.js
- 12:17 PM Revision cb79dc0d: Fix acl item removal
- 11:48 AM Revision 026f3639: Few GUI tweaks on unbound ACL page
-
11:27 AM Feature #3763 (Rejected): GUI: Packages: add 'non supported' or 'experimental' field
- G'day,
Based on my journey here:
https://forum.pfsense.org/index.php?topic=79367.0
I installed squid3-dev, c... -
06:43 AM Bug #3762 (Closed): web interface ajax updates do not work after upgrade
- I have two pfsense boxes:
gw-1 - nanobsd (4g) vga (boots from usb flash drive) platform
gw-2 - generic pfsense (boo... -
04:03 AM Bug #3761 (Rejected): Disable interface where Captive portal is mapped you cannot login anymore
- When Captive Portal is configured to work on WLAN-interface (not tested on other interfaces) and you go to "Interface...
07/15/2014
- 09:48 PM Revision 18eb5d0e: Fix multiple issues on unbound advanced options GUI:
- - Drop many wrong key assignments to pconfig
- Add missing keys to pconfig
- Deal fine with boolean parameters
- Mark... -
07:08 PM Bug #3755 (Rejected): XML error: "X cannot occur more than once" kills the frontends
- don't create invalid config files is the lesson here. Always test on an unimportant system before restoring. And neve...
-
07:07 PM Bug #3753 (Rejected): OpenVPN changing protocol/port Firewall rule ain't updated
- it ain't linked and ain't designed to be updated. it only gets added at all as part of the wizard
-
06:43 PM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
- Had default block logging disabled. Turned it back on and saw the reply packets being dropped attempting to exit anot...
-
06:31 PM Bug #3760 (Resolved): reply-to with TCP and IPv6 generates broken checksums
- With two WANs, reply-to will normally ensure connections that enter via alternate WANs return back via the expected p...
-
06:30 PM Bug #3737: Incoming VLAN traffic fails to reach VLAN interface if PCP not 0
- source is freely accessible, info here:
https://forum.pfsense.org/index.php?topic=76132.0 - 02:34 PM Revision dca795b7: Use cron.pid to get pid number and avoid kill minicron processes. It fixes #3757
-
09:50 AM Bug #3757 (Feedback): Minicron process inexplicaly terminated
- Applied in changeset commit:dca795b7cf6136c010adc50b268b62cef2f7ead1.
07/14/2014
-
11:53 PM pfSense Packages Bug #3758 (Resolved): syslog-ng won't save settings nor it service will start
- When trying to save syslog-ng settings, error is displaying, complaining about configuration file format being too ol...
-
10:45 PM Bug #3757 (Resolved): Minicron process inexplicaly terminated
- The minicron process handling rc.prunecaptiveportal get terminated when command 'pkill -HUP cron' is called.
The p... -
03:07 PM Revision 861b9b7a: Allow hostnames in bulk import since they are valid entries in a network type alias.
-
02:56 PM Revision 5a1450dc: Allow hostnames in bulk import since they are valid entries in a network type alias.
-
02:56 PM pfSense Packages Bug #3756 (Resolved): PBI package for Snort does not properly configure the barnyard2 support binary
- Testing with Snort package on current 2.2 Alpha release shows the barnyard2 program is not properly installed/linked ...
-
11:48 AM Bug #3755 (Rejected): XML error: "X cannot occur more than once" kills the frontends
- I recently got some new hardware and moved my old 2.0.4 setup to 2.1.4 by manually merging the configuration files fo...
-
06:12 AM pfSense Packages Feature #3754 (Closed): Add APC Back-UPS CS to NUT
- I cannot make an APC Back-UPS CS work with NUT 2.6.5_1 pkg 2.0.2, no matter what settings I choose ("php: nut: Servic...
-
05:08 AM Bug #3737: Incoming VLAN traffic fails to reach VLAN interface if PCP not 0
- As far as I know FreeBSD does not support PCP by itself (a “man vlan” on the latest 10-STABLE still indicates “No 802...
07/13/2014
-
08:01 AM Bug #3753 (Rejected): OpenVPN changing protocol/port Firewall rule ain't updated
- When changing protocol/port for OpenVPN the Firewall rule that allow traffic ain't updated.
Could just be deleted ...
07/12/2014
-
09:39 PM Bug #3737: Incoming VLAN traffic fails to reach VLAN interface if PCP not 0
- I haven't dug too deeply into this, but I suspect the root issue here is this should be a feature request for PCP con...
-
08:35 PM Bug #3748 (Resolved): Interface in extended down state, not functional when link is brought back up
- thanks for confirming
07/11/2014
- 09:35 PM Revision 5a582d33: Merge pull request #1242 from ExolonDX/branch_master_01
-
09:22 PM Revision dcafc712: Don't use pfsense name in comment
-
09:22 PM Revision 76fce373: Use $product instead of pfSense when logging the version to syslog
-
09:22 PM Revision 4982e61e: Log pfsense version to syslog after bootup
-
07:27 PM Revision e860ec1d: Fix PHP script closing tag placement.
-
04:36 PM Feature #3667 (Needs Patch): Hook for user shutdown script - "/etc/rc.custom_shutdown"
- As Ermal mentioned on pull request comment, it needs to be improved. We can keep the technical discussion there.
-
01:30 PM Bug #3691 (Resolved): Fetch error on HTTPS console update by URL
- 11:23 AM Revision 720c529f: Fix #3749:
- When a full upgrade from 2.1.x to 2.2 is being done, after decompress
tarball with 2.2 files, /bin/sh is not able to ... - 11:23 AM Revision 5fbdacc1: Make sure scripts have necessary attributes and use its shebang line instead of force sh to call it. This will help to prevent or workaround issues similar to #3749 in the future
- 11:23 AM Revision 00aa34f1: In some cases, new /bin/sh binary doesn't work properly before reboot during a upgrade, and because of that /etc/rc.reboot is not executed and system doesn't reboot. Source /etc/rc.reboot instead of open a new sh session to avoid it happening again in future versions (ticket #3749)
-
06:30 AM Bug #3749 (Feedback): Upgrade from 2.1.4 to 2.2 does not automatically reboot
- Applied in changeset commit:720c529f2890708c8dca6264924ec5b1afbf0daf.
07/10/2014
-
11:15 AM Bug #2786: Setting MTU on VLAN does not set MTU on parent interface in 2.2
- This seems to be an issue again in 2.2.
See [[https://forum.pfsense.org/index.php?topic=79180.0]]. -
11:02 AM Bug #3748: Interface in extended down state, not functional when link is brought back up
- Issue seems to be resolved with pfSense-LiveCD-2.2-DEVELOPMENT-i386-20140708-0814 with the exact same testing environ...
-
06:37 AM Bug #3750 (Feedback): Console auto login is not setup properly on upgrade from 2.1.4 to 2.2
- /etc/ttys was missing on full update tarball, it's now fixed on latest snapshots
- 02:56 AM Revision 375fce94: use HTTPS for files.pfsense.org for update_bogons and priv_url in pkg-utils
07/09/2014
-
09:55 PM Todo #3705 (Resolved): use HTTPS for rc.update_bogons.sh
- this has changed for 2.2.
-
03:59 PM Bug #3747 (New): Route uses wrong interface (lo0) when tun local and remote are the same
- It works as expected on stock FreeBSD
-
07:55 AM pfSense Packages Bug #3752: IMSpector fails to start
- I'd love to suggest a fix, but I'm not even sure where the repository is. There's a _lot_ of imspector-related junk o...
-
03:06 AM pfSense Packages Bug #3752 (Needs Patch): IMSpector fails to start
- As most all IM has moved to HTTPS or otherwise encrypted, its usefulness has declined significantly. The imspector pr...
-
07:51 AM Bug #3745 (New): VLANs are not ALTQ capable on 2.2 (missing patches?)
-
07:43 AM Bug #3745: VLANs are not ALTQ capable on 2.2 (missing patches?)
- No traffic on em1_Vlan10 or em1_vlan200. I have traffic on em1. No shaping enabled in this interfaces.
Snapshot: Wed... - 05:08 AM Revision 9edcc5fa: no () around qlength here
- 05:07 AM Revision a061ddb9: no () around qlength here
-
03:21 AM Bug #3187 (Resolved): LiveCD boot issue on multicore systems.
- I think it's safe to assume this is fixed upstream in FreeBSD. If there are any rare edge cases like this previously ...
-
03:18 AM Bug #3738 (Rejected): sockstat broken on 2.2
- root cause in #3749
-
03:17 AM Bug #3739 (Rejected): netstat missing IP info in 2.2
- root cause in #3749
-
03:17 AM Bug #3741 (Rejected): states output is broken on 2.2
- root cause in #3749
-
03:16 AM Bug #3748: Interface in extended down state, not functional when link is brought back up
- What we do to the NIC is the same whether it lost link for a minute or a year or anywhere in between. Our code actual...
-
03:10 AM Bug #3742 (Rejected): SSH doesn't answer post-2.2 upgrade
- root cause in #3749
-
03:10 AM Bug #3740 (Rejected): IPsec issues post-2.2 upgrade
- not sure how that would even end up working in the circumstance. writing this one off to #3749
-
03:09 AM Bug #3743 (Rejected): CARP status page broken on 2.2
- root cause in #3749
-
03:08 AM Bug #3744 (Rejected): CARP IPs stuck in INIT on 2.2
- this goes back to #3749
07/08/2014
-
08:54 PM pfSense Packages Bug #3752: IMSpector fails to start
- The issue was solved by uninstalling the package, manually removing /usr/local/lib/imspector/ and installing imspecto...
-
08:33 PM pfSense Packages Bug #3752: IMSpector fails to start
- I would like to rectify a mistake I have made. Two of the missing files are actually called "sqlitelog*ging*plugin.so...
-
08:13 PM pfSense Packages Bug #3752 (Needs Patch): IMSpector fails to start
- The latest release of imspector fails to start. Logfiles report the following missing files:
* /usr/local/lib/imspec... -
08:10 PM pfSense Packages Bug #3751 (Resolved): bandwidthd graphics missing
- The latest release of bandwidthd does not ship with legend.gif and the header.
-
07:39 PM Bug #3745 (Feedback): VLANs are not ALTQ capable on 2.2 (missing patches?)
- Added the missing patch, should be fine on next snapshots
- 03:44 PM Revision 1ee3a295: Change Cancel button to call history.back() as done in Firewall Rules, the current method has issues with IE 11, it should fix #3728
-
03:10 PM Bug #3750 (Resolved): Console auto login is not setup properly on upgrade from 2.1.4 to 2.2
- After 2.1.4 to 2.2 upgrade, the console does not auto login until the admin page settings are saved again. (System > ...
-
03:07 PM Bug #3749 (Resolved): Upgrade from 2.1.4 to 2.2 does not automatically reboot
- After an upgrade from 2.1.4 to 2.2, the firewall does not automatically reboot. The architecture stayed the same, but...
- 11:47 AM Revision c9a88bbd: qlimit must be included here
- 11:46 AM Revision ca16c66a: qlimit must be included here
-
11:45 AM Bug #3748 (Resolved): Interface in extended down state, not functional when link is brought back up
- Environment:
-pfSense 2.1.3/2.1.4
-Default/base installation (single DHCP WAN, LAN as 192.168.1.1 with DHCP server)... -
11:40 AM Feature #3534: DDNS using arbitrary zone primary
- Please consider spending 7 seconds on a glance at the few lines I posted, it's really trivial. I'm not inclined to pu...
-
10:38 AM Bug #3728 (Resolved): Cancel Button Doesn't Work - Firewall Aliases Edit
- Fix cherry-picked to RELENG_2_1
-
10:37 AM Bug #3747 (Resolved): Route uses wrong interface (lo0) when tun local and remote are the same
-
08:10 AM Bug #3747 (Feedback): Route uses wrong interface (lo0) when tun local and remote are the same
- Pushed a fix on tools, next round of snapshots should be ok
-
08:04 AM Bug #3747 (Resolved): Route uses wrong interface (lo0) when tun local and remote are the same
- When an openvpn client is configured using tun, and server sets topology subnet, we end up with routing issues. tun i...
-
07:52 AM Bug #3746 (Resolved): Firewall hostname being reset by DHCP WAN client
- This appears to have fixed it. The latest snap contains the proper hostname on my system that easily replicated the p...
07/07/2014
- 11:13 PM Revision 7b15d229: Avoid reseting firewall hostname by WAN DHCP. It should fix #3746
- 11:12 PM Revision 2d34e81a: Avoid reseting firewall hostname by WAN DHCP. It should fix #3746
- 11:06 PM Revision 971de1f9: Convert almost all /sbin/sysctl calls to php functions
-
09:54 PM Bug #3558: Schedule States in System - Advanced - Misc not working
- @Phillip: I confirmed that your fix was in my test unit. The states still do not get cleared.
There are some subt... -
06:29 PM Bug #3744: CARP IPs stuck in INIT on 2.2
- Also sounds like a corrupted system
-
06:28 PM Bug #3743: CARP status page broken on 2.2
- This also sounds like a corrupted system, CARP IPs are on the same interface on 2.2, like this output:...
-
06:21 PM Bug #3740: IPsec issues post-2.2 upgrade
- Are racoon binaries available after upgrade? They should be removed by pfSense.obsoletedfiles. Based on the other tic...
-
06:20 PM Bug #3746: Firewall hostname being reset by DHCP WAN client
- Applied in changeset commit:7b15d22967a9f9fefe7b8b11fa2d68c762c55219.
-
06:20 PM Bug #3746 (Feedback): Firewall hostname being reset by DHCP WAN client
- Applied in changeset commit:2d34e81a9f80f556fa28d3a5ef30a7a7cad5285a.
-
01:33 PM Bug #3746 (Resolved): Firewall hostname being reset by DHCP WAN client
- If the firewall has a DHCP WAN, and the DHCP server on WAN supplies a hostname to the client, the firewall will take ...
-
06:19 PM Bug #3742: SSH doesn't answer post-2.2 upgrade
- What is the snapshot timestamp? I tested on Sun Jul 06 14:26:03 CDT 2014 and it's ok
About the sshd keys being reg... -
06:16 PM Bug #3741: states output is broken on 2.2
- What is the snapshot timestamp? I tested on Sun Jul 06 14:26:03 CDT 2014 and it's ok
-
06:13 PM Bug #3739: netstat missing IP info in 2.2
- What is the snapshot timestamp? I tested on Sun Jul 06 14:26:03 CDT 2014 and it's ok
-
06:12 PM Bug #3738: sockstat broken on 2.2
- What is the snapshot timestamp? I tested on Sun Jul 06 14:26:03 CDT 2014 and it's ok
-
06:08 PM Bug #3369: Captive vouchers expire too quickly
- Wolfgang Niggl wrote:
> I have the same problem. No solution or is it solved in 2.1.1 ?
> Where in the code could b... -
05:54 PM Bug #3187: LiveCD boot issue on multicore systems.
- I can't speak to having tested this _exhaustedly_ this time, since two out of four of the original listed systems are...
- 03:52 PM Revision 79cd8239: Fix sysctl name
- 02:05 PM Revision 82f75815: Add set_single_sysctl(), a wrapper to set_sysctl() to make it simple to set value of a single sysctl
- 01:57 PM Revision ff23363d: Add get_single_sysctl(), a wrapper to get_sysctl() to make it simple to get value of a single sysctl
- 01:52 PM Revision aae16684: Fix indent
- 11:42 AM Revision 42bb1bee: Remove extra spaces and tabs
-
11:19 AM Bug #3745 (Resolved): VLANs are not ALTQ capable on 2.2 (missing patches?)
- Trying to enable traffic shaping on VLANs with 2.2 does not work. The GUI allows them to be selected but pf generates...
07/06/2014
-
11:41 PM Bug #3728: Cancel Button Doesn't Work - Firewall Aliases Edit
- Fix confirmed in 2.2.
Still broken in 2.1.4.
- 07:25 PM Revision e7f65689: Remove extra quote and fix syntax
-
05:24 PM Bug #3744 (Rejected): CARP IPs stuck in INIT on 2.2
- On at least 32 bit. ...
-
04:21 PM Bug #3743 (Rejected): CARP status page broken on 2.2
- Where CARP IPs are in INIT (at a minimum), Status>CARP shows nothing under the "Status" column. ifconfig: ...
-
04:09 PM Bug #3742 (Rejected): SSH doesn't answer post-2.2 upgrade
- After upgrade from 2.1.4, on at least 32 bit, SSH is running properly but sends a RST back when attempting to connect...
-
04:04 PM Bug #3741 (Rejected): states output is broken on 2.2
- Partial state table dump....
-
03:50 PM Bug #3740 (Rejected): IPsec issues post-2.2 upgrade
- Something not right with IPsec after upgrade to 2.2 (and maybe when starting clean on 2.2, haven't entirely confirmed...
-
03:43 PM Bug #3739 (Rejected): netstat missing IP info in 2.2
- "netstat -an" for instance in prior versions and stock FreeBSD lists "Active Internet connections" among the output. ...
-
03:41 PM Bug #3738 (Rejected): sockstat broken on 2.2
- results in: ...
-
03:37 PM Bug #3723 (Feedback): URL Table based rules may pass blocked IP
- what's in the table works as configured, it's likely the way outdated country data in the pfblocker package and/or a ...
-
01:31 AM Bug #3624: "ppp: OpenConfFile: Can't open file '/var/etc/mpd_wan.conf': No such file or directory"
- Forgot to say, I was having this problem on 2.1.3-RELEASE (amd64) but now am having the same problem on 2.1.4-RELEASE...
-
01:29 AM Bug #3624: "ppp: OpenConfFile: Can't open file '/var/etc/mpd_wan.conf': No such file or directory"
- Have tried the suggested work-around but it doesn't work for me. In case my symptoms are different I'm adding a short...
07/05/2014
- 09:00 PM Revision 64746cf6: use HTTPS for dyndns providers that support it
- 09:00 PM Revision 9b8c7295: use HTTPS for dyndns providers that support it
-
04:33 PM Bug #3723: URL Table based rules may pass blocked IP
- As an FYI, The pfBlocker Country Codes has been obsolete for almost two years now.
It still shouldn't be allowing ... -
02:43 PM Bug #3554: apinger and OpenVPN: Gateway down after OpenVPN client service restart
- Cullen Trey wrote:
> Hi,
>
> it seems to happen, if the openvpn interface comes up but encounters an error: in my... -
03:57 AM Bug #3692: apinger loss % gets stuck
- I'm having the same issue with 2.1.4.
I have to restart the entire pfsense box to correct it, just restarting the ... -
01:16 AM Bug #3737 (Duplicate): Incoming VLAN traffic fails to reach VLAN interface if PCP not 0
- On ESXi, incoming VLAN traffic fails to reach the related VLAN interface if PCP is set to anything else than the defa...
07/04/2014
-
07:53 PM Revision 3fe260c2: Use a php function rather tan using exec. Suggested-by: garga
-
02:51 PM Revision 95cdee87: Remove all .xml file generated from upgrade since it makes /var full
-
01:18 PM Bug #3725 (Resolved): Firewall Logs Widget Filters Not Working
-
01:11 PM Bug #3725: Firewall Logs Widget Filters Not Working
- Fix confirmed in both 2.1.4 and 2.2 Alpha. Thanks
- 12:44 PM Revision 2e906a1a: Add one more seatbelt to prevent tar to attempt to overwrite /dev items
-
07:23 AM Bug #3736 (Resolved): No static IPv6 address for WAN interface in Dashboard for PPPoE+static IPv6
- The IPv6 is not displayed in the Dashboard page when using a static IPv6 on WAN interface.
Steps for reproducing t... -
07:21 AM Bug #3735 (Rejected): No default route when using WAN static IPv6 address
- No default route is created when using a static IPv6 on WAN interface.
Steps for reproducing the issue :
- enable... -
06:43 AM Bug #3678: Kernel panic: "Bogus interrupt trigger mode" on Intel J1900
- I am not entirely sure...
Chris Buechler seemed to know a little about this, as stated above "This has been worked... -
04:37 AM Bug #3678: Kernel panic: "Bogus interrupt trigger mode" on Intel J1900
- How do we get it in the next update?
07/03/2014
- 09:07 PM Revision be0af33e: Add missing $g to global, as noted on pull request 1249
-
03:09 PM Feature #785: DNS servers over gateways
- it's possible. That's a support request, which isn't appropriate here, please use one of our available support resour...
-
12:32 PM Feature #785: DNS servers over gateways
- Chris Buechler wrote:
> yes that's all possible. You can do that manually as well, with floating rules.
I just ga... -
01:17 PM Feature #484 (Feedback): Add a warning if users are using non-official package repo
- This is now in current snapshots and may be good enough for 2.2.
I did find that the XML_RPC code is in need of an... -
01:15 PM Todo #3734 (Resolved): Remove PHP static pear modules from repo and use ports
- The current XML_RPC code from PEAR in /etc/inc/xmlrpc_client.inc and /etc/inc/xmlrpc_server.inc is a bit behind. XML_...
-
12:52 PM Bug #1943: PPPoE won't reconnect after link loss when using vr(4) NICs on certain ISPs only
- One of my sites that relies on radio-based Internet connectivity is experiencing this misbehavior. We are very, VERY...
-
12:36 PM Bug #3647 (Resolved): Serial console input is sent to system log as kernel messages
-
12:31 PM Bug #3647: Serial console input is sent to system log as kernel messages
- I am no longer seeing the console input in the logs on current snapshots, this appears to be fixed now.
- 12:26 PM Revision d461583b: Change Cancel button to call history.back() as done in Firewall Rules, the current method has issues with IE 11, it should fix #3728
-
07:30 AM Bug #3728 (Feedback): Cancel Button Doesn't Work - Firewall Aliases Edit
- Applied in changeset commit:d461583b18b84b47ba0a398b9138085fa8eb47c8.
-
04:33 AM Bug #3678: Kernel panic: "Bogus interrupt trigger mode" on Intel J1900
- Just for info, no change with release 2.1.4
As said above, the workaround did not make it into this release. -
04:31 AM Bug #2945: Installation stucks at 36%: /usr/local/bin/cpdup -vvv -I -o /usr /mnt/usr
- Hi Frenel
How has the GB J1900n-d3v been going? I also managed to get pfsense installed, but if the system reboots... -
04:18 AM Bug #3733 (Resolved): Certificate manager doesn't allow wildcards in Subject Alternative Names
- Hi there,
Having a wildcard certificate in the DNS Subject Alternative Name is valid, but the pfSense webinterfa... -
03:13 AM Feature #3732 (Rejected): Request: a small info about the pfSense kernel build - to help build 3rd party software for pfSense
- The source is not closed, it's under an open source license and anyone can obtain it.
https://forum.pfsense.org/inde... -
02:47 AM Feature #3732 (Rejected): Request: a small info about the pfSense kernel build - to help build 3rd party software for pfSense
- For building certain 3rd party software - For example the "virtualbox-ose" port. Or "cuse4bsd".
These programs (an... -
02:23 AM Feature #3731 (Closed): request: kernel module "zfs.ko" for optional zfs file support, and options VIMAGE
- I am aware that ZFS is a storage feature and not required by Router / Firewalls. However to include gives more option...
07/02/2014
-
09:46 PM Bug #3147: Adding new interface can cause issues
- The issue affects more than just VIPs. Whatever auto-populates the 'Network Port' field after the new Interface is a...
-
08:46 PM Bug #3558: Schedule States in System - Advanced - Misc not working
- @Richard: I fixed up the timing of the schedule end, so now the state clearing code should be executed at the correct...
- 08:24 PM Revision d4b1e549: Back to cons25 for now since we found some issues with xterm on serial console
- 08:24 PM Revision 23c01a69: un-obsolete gettytab.bak
-
07:20 PM Revision 6916360e: Also check and verify the package server's SSL certificate if using HTTPS. Issue 484
- Our current XMLRPC client version doesn't have support on its own to validate this in a way we can use to test in a u...
-
04:07 PM Revision 7c8f3711: More refinements to the unofficial package repository warning ( Issue #484 ) -- Now also shows on Dashboard and installed package list. Cleaned up some code and shuffled things around to avoid unnecessary repetition.
-
12:02 PM Bug #3728: Cancel Button Doesn't Work - Firewall Aliases Edit
- Tried again on 2 machines. Neither works. Though the other (NAT & Rules) edit cancel buttons work fine. But the Al...
-
06:51 AM Bug #3728: Cancel Button Doesn't Work - Firewall Aliases Edit
- It works fine for me, on 2.1.4 and 2.2 snapshot
-
09:35 AM Bug #3730 (Resolved): Router advertisement advertises gateway address as dns server even if the dns forwarder is disabled
- When using 6to4 on wan and assigning an interface tracking that, the radvd advertises the interface address as a dns ...
-
08:30 AM pfSense Packages Bug #3729 (Resolved): Bacula-client Services not running
- Version: 2.1.4-RELEASE (amd64)
Package: bacula-client 5.2.12_3 pkg v 1.0.3
The service was not running because th... -
07:01 AM Bug #3717 (Resolved): Adding an IPv6 rule on an interface with IPv6 gateway does not add "reply-to" in the resulting rule - fix proposal attached
- It was already fixed in commit:93f1d233b27d9aa3347050b2e7138660a23e28f9
-
02:15 AM Bug #3724 (Resolved): Jumbo frames not being honoured with vmxnet3 driver
- that is indeed an issue with FreeBSD 8.3, confirmed fixed in 2.2.
-
01:45 AM Bug #3669 (Resolved): WAN IPs not being cached causing unnecessary "rc.start_packages: Restarting/Starting all packages"
-
01:44 AM Bug #3695 (Resolved): CVE-2014-0224 - OpenSSL SSL/TLS MITM vulnerability
- was fixed in 2.1.4, ticket never got closed out.
Also available in: Atom