Activity
From 07/25/2014 to 08/23/2014
08/22/2014
- 11:53 PM Revision 8430c546: fix typo
- 03:12 PM Revision 2cff71c4: Take virtual IPs into consideration for automatic outbound NAT rules, it should now fix #983
- 01:53 PM Revision a94b9bef: pgrep parameters are out of order and it also needs -a to find sshd. While I'm here, simplify sh syntax and prevent noise to be printed if pid file doesn't exist
- 01:53 PM Revision 8c366060: pgrep parameters are out of order and it also needs -a to find sshd. While I'm here, simplify sh syntax and prevent noise to be printed if pid file doesn't exist
- 12:28 PM Revision b075c1e2: delete the dhcpd.pid file before starting dhcpd. Fixes bug where on rare occasions a stale PID file could prevent dhcpd from starting until it's manually deleted.
- 12:26 PM Revision a762649b: delete the dhcpd.pid file before starting dhcpd. Fixes bug where on rare occasions a stale PID file could prevent dhcpd from starting until it's manually deleted.
- 11:28 AM Revision 61b2ed1c: use pgrep here instead, previous way could wrongly show SSH as enabled where it isn't.
- 11:27 AM Revision b6a7a5a9: use pgrep here instead, previous way could wrongly show SSH as enabled where it isn't.
08/21/2014
- 10:32 AM Revision 7f00d47e: Fix text description for interface mismatch, fixes #3820
- 10:31 AM Revision 0b252f7a: Fix text description for interface mismatch, fixes #3820
08/20/2014
- 11:41 PM Revision 2a07df85: Merge branch 'RELENG_2_1' of git.pfmechanics.com:pfsense/pfsense into RELENG_2_1
- 11:39 PM Revision 41312f7f: fix top nav to fit gold in non-default themes
- 06:40 PM Revision fab1cd2f: Revert "improve/tidy up interfaces widget"
- I pushed it accidentally, will wait a fixed version of the patch
This reverts commit b75192e3bc851e80d6bfd33c12849db... - 06:26 PM Revision 821c82c4: Merge pull request #1259 from CharlieMarshall/improveInter
- 06:18 PM Revision b75192e3: improve/tidy up interfaces widget
-
05:18 PM Revision f950a062: Add missing s to solve the issue reported on https://forum.pfsense.org/index.php?topic=80722.new#new
- 12:50 PM Revision c38764dc: fix #3515
- 11:40 AM Revision 847fe304: Remove extra noise from rc.shutdown
- 11:14 AM Revision db63c043: Simplify a bit ppp-linkup syntax
- 11:00 AM Revision fe85513f: Fix awk syntax, it fixes #3813
08/19/2014
-
06:33 PM Revision fa8be5de: non-css parts of gold menu
-
06:32 PM Revision bfe9c9e7: Move the fetching of a package's config file and additional files to separate functions, and then have the "xml" package button perform these so that it is not only a redundant copy of the "pkg" reinstall button. This can help ensure a package files are in a known-good state before other actions are performed, in case the deinstall would fail or behave erratically due to other files being missing.
- 05:59 PM Revision bdde98fc: fix spacing in pfsense_ng topnav
- 05:35 PM Revision e0f10116: fix gold alignment and redirect
- 04:12 PM Revision 1cca6b6a: Revert "make gold link more visable"
- This reverts commit a03943d203441a87ea9c01f383d451dfc921bdd2.
- 12:13 AM Revision a03943d2: make gold link more visable
08/18/2014
-
09:15 PM Revision 9694d32c: Do this check now that hash algos can be empty
-
08:33 PM Revision 17402c63: Correct the ipsec status pages to show proper information as needed.
-
08:13 PM Revision 5bce82b4: Correct processing and assignment on ikeid variable so it does the right thing
-
07:53 PM Revision 30c591d6: Use proper path to setkey now that ipsec-tools are not used anymore
-
07:51 PM Revision fe12d7ea: Correct the functions for returning tunnel status to use strongswan status reports
-
07:18 PM Revision c650b2f7: Allow HASH algorithms to be empty for phase2 in case the encryption one is AES-GCM
-
02:34 PM Revision c28da0a7: Add filter.so to list of extensions loaded for 2.2
-
10:25 AM Revision ae170e96: Do not allow duplicate subnet entries on left|rightsubnet specification since it will blackhole all traffic to that subnet when connection is setup as route
-
10:18 AM Revision 5d37d515: Do not accept proposal out of that configured even for IKEv2 even though there is no possibility in the GUI to set more than one proposal for Phase1 so far.
-
06:52 AM Revision 3b68ec45: Restore behaviour as with racoon to trigger tunnel startup from traffic that needs to go into the tunnel. Even related to Ticket #3806.
08/15/2014
-
01:41 PM Revision 8bb47a46: Do not show errors from trying to delete a socket or similar
-
12:41 PM Revision bc0a452f: Ensure this is always an array to avoid a PHP error from foreach.
-
12:40 PM Revision 086e76dc: Ensure this is always an array to avoid a PHP error from foreach.
08/14/2014
- 08:05 PM Revision 6d170e2e: Bump version to 2.1.5
- 05:14 AM Revision 154298f1: rightsourceip must be used with PSK+Xauth.
- 04:59 AM Revision 7f1b720f: This is required for PSK+Xauth. I'll commit that clarification in a bit.
- Revert "Revert "Fix assignment of tunnel IPs to mobile clients.""
This reverts commit 23ba08fc940b711f3b44551199890d... -
12:18 AM Revision 3cb773da: cherry pic from 'hotfix/3347-Certificate_Authority_SAN_names_not_working':
- bugfix #3347: Certificate Authority SAN names not working in 2.1
subjectAltName can be set _only_ via configuration ...
08/13/2014
-
05:50 PM Revision b107e187: Added filter.so to list of extensions loaded for filter_var() support.
-
09:52 AM Revision 23ba08fc: Revert "Fix assignment of tunnel IPs to mobile clients."
- This normally is not needed since the attr plugin deals with all this.
This reverts commit 00311d6a841c0f6fc162ea11d...
08/12/2014
-
09:11 PM Revision 1c70bdff: Actually disable this plugin for now. It was not really needed for solving the issues with IKEv1
- 06:03 PM Revision b8137fc2: * Fix a typo mismatch in /etc/inc/dyndns.class for CloudFlare URL entry.
08/11/2014
- 07:04 PM Revision e35ec763: Do not reset source and destination port range values when it's an associated rule created by nat port forward. It fixes #3778
- 07:01 PM Revision 4a3495b3: Move dhcp6c log to dhcpd.log, it fixes #3799
- 05:22 PM Revision 0e2eaa1b: Do not reset source and destination port range values when it's an associated rule created by nat port forward. It fixes #3778
- 02:47 PM Revision b462fc5e: Move dhcp6c log to dhcpd.log, it fixes #3799
- 12:44 PM Revision 687d11a6: Remove double defined 'localhost' on the list of networks to create outbound NAT rules. It should fix #3800
- 12:40 PM Revision 565908d2: Do not create automatic outbound NAT rule for disabled openvpn servers and clients
- 10:19 AM Revision 00311d6a: Fix assignment of tunnel IPs to mobile clients.
08/08/2014
-
10:20 PM Revision a3331d72: Fix #3798 - 'IPsec phase 2 pinghost is not used if the source IP should be a virtual IP address'
-
10:09 PM Revision dc63467f: Fix #3798 - 'IPsec phase 2 pinghost is not used if the source IP should be a virtual IP address'
-
04:36 PM Revision ffb8e02f: Avoid generating an invalid racoon config if the user specified a mobile pool that is too small.
-
04:24 PM Revision 762e8cf9: Avoid a "Cannot use string offset as an array" error if the packages section of the config is missing.
-
04:22 PM Revision b21ad5d5: Avoid a "Cannot use string offset as an array" error if the packages section of the config is missing.
-
03:33 PM Revision b6513591: Require click-through POST confirmation when restoring or deleting a configuation from the backup history page.
-
03:22 PM Revision 889c83d7: Require click-through POST confirmation when restoring or deleting a configuation from the backup history page.
-
02:36 PM Revision ed2a6e89: Do not execute DNS resolution on GET, only pre-fill Host box so the user can press the button to execute. Turn alias creation links into submit buttons for POST. While here, remove some backticks and simplify a little.
-
02:26 PM Revision 8108b423: Remove javascript alert DNS resolution action from the firewall log view. It was already removed from 2.2, and it's better not to allow a GET action to perform that action.
-
02:21 PM Revision a9d6ac9a: Do not execute on GET, only pre-fill Host box so the user can press the button to execute. Turn alias creation links into submit buttons for POST. While here, remove some backticks and simplify a little.
-
01:40 PM Revision bf8aab82: Correct this so the dpdaction is created properly as restart
- 05:04 AM Revision 6f4a300b: Shorten the wait at "reload" in startup wizard to 5 seconds from 60. That's more than adequate for current systems, no need to make people sit there for 1 minute. Many likely click out via the logo and miss the last screen entirely.
- 05:02 AM Revision 67067ea3: Shorten the wait at "reload" in startup wizard to 5 seconds from 60. That's more than adequate for current systems, no need to make people sit there for 1 minute. Many likely click out via the logo and miss the last screen entirely.
08/07/2014
-
08:53 PM Revision 9f6a5b50: Do a reload on the cofniguration which is better than update. Also let the keyingtries to 3 rather than forever to avoid problems on recovery.
-
06:53 PM Revision 0b5fc1d1: Change the logic of the vpn config generation to make connectivity more stable especially ipsec. Also for IKEv1 just generate the policies and only on traffic start them.
-
03:52 PM Revision b31a2c76: Move the rekey to yes always to avoid issues.
- 02:38 AM Revision 959dc96b: Per the dhcpd.conf man page and other documentation from ISC, mclt must not be defined on the secondary.
- 02:37 AM Revision 8b8085ce: Per the dhcpd.conf man page and other documentation from ISC, mclt must not be defined on the secondary.
08/06/2014
-
07:57 PM Revision 88c24958: Encode interface/VIP descriptions before displaying them on the NTP daemon settings.
-
07:55 PM Revision c3e77841: Encode interface/VIP descriptions before displaying them on the GRE and GIF pages also;
- While here, the GRE page was missing IP aliases from its list of bind IPs, add it in.
-
07:53 PM Revision 978c71d2: Encode interface/VIP descriptions before displaying them on the GRE and GIF pages also;
- While here, the GRE page was missing IP aliases from its list of bind IPs, add it in.
-
07:52 PM Revision bf2fb3db: Encode interface/VIP descriptions before displaying them on the NTP daemon settings.
-
07:36 PM Revision 92ca4bc3: Encode the detail field of an alias entry before displaying its contents back to the user.
-
07:34 PM Revision 2276d743: Encode the detail field of an alias entry before displaying its contents back to the user.
-
07:27 PM Revision 071f6059: Escape the individual dnsmasq advanced/custom options
-
07:26 PM Revision 52c67bc2: Escape the individual dnsmasq advanced/custom options
08/05/2014
- 03:43 PM Revision 12c88700: Allow to add ipalias vip to lo0, it should fix #3773
- 01:01 PM Revision 8e2a4091: Use GPS type presets only to pre-set values then user can change it. After user changes, save type always as Custom to avoid overwriting values when user attempt to edit. It fixes #3782
- 12:19 PM Revision f9f3e44c: More non-functional changes to make code more readable
- 12:01 PM Revision 42b5c637: Fix indent and spaces
- 11:59 AM Revision 46f5ced5: This if is unecessary since input_errors is unset in the line above
- 11:35 AM Revision 4c291f4c: Fix indent and whitespaces
- 10:48 AM Revision 4c4c59b9: Make sure there are not empty options on dst select to avoid creating empty user or group. This issue was introduced by b4e9a4da
- 10:44 AM Revision 46f6eb78: Fix select name
08/04/2014
-
07:25 PM Revision 1de3a5dd: Fix input validation logic on diag_testport.php, escape more shell arguments for good measure
-
07:23 PM Revision 46d3f6a6: Fix input validation logic on diag_testport.php, escape more shell arguments for good measure
- 03:34 PM Revision aeb44799: Fix #3790. Fix IPv6 Prefix ID check using interface user choose before save
08/01/2014
-
08:52 PM Revision f088b8cd: Do not try to rekey for IKEv1.
-
08:39 PM Revision 9b915686: Use a uniqid() to track phase2 entries to avoid confustion and various mistakes when modifying and editing them.
07/30/2014
07/29/2014
-
10:28 PM Revision 63dd9f08: Remove even the config.cache from /tmp to avoid issues while here
-
03:59 PM Revision 9280a998: Fix #3781 - 'strongswan dpdtimeout value not generated correctly'
07/25/2014
-
07:42 PM Revision f84b7bff: Add message about Gold to setup wizard and menu/link to Gold signup.
- 03:48 PM Revision f3d88511: Fix #3575, do not allow user to set IPs for GRE interfaces on interface edit page.
-
01:32 PM Revision 75de6b29: Fix redirect after editing permissions
- 12:15 PM Revision 6141a91b: Disable bandwidth checks for PRIQ, it should fix #3537
- 11:58 AM Revision c8f89a40: Fix field name that cannot contain spaces, and use displayname
- 11:57 AM Revision cdcbc988: Fix scheduler field name
- 11:35 AM Revision 6f1d690c: Fix field name that cannot contain spaces, and use displayname
- 11:34 AM Revision 52cacff8: Fix field name
Also available in: Atom