Project

General

Profile

Activity

From 09/24/2014 to 10/23/2014

10/23/2014

07:25 PM Feature #3385 (Needs Patch): Accommodate static routes for PPTP connections
PPTP is dead, and shouldn't be used in this context anyway Chris Buechler
07:23 PM Bug #3955 (Resolved): IPsec dashboard widget needs adapting for 2.2
The IPsec dashboard widget needs updating to understand strongswan's status. Chris Buechler
05:00 PM Bug #3901: DynDNS is not forcefully updated after powerup
that's a scenario that no client accounts for. Excessive updating can get you banned from some of the providers, whic... Chris Buechler
04:03 PM Bug #3901: DynDNS is not forcefully updated after powerup
From my point of view the current behaviour is not perfect.
As I described above it might be the case that the data ...
Philippe Schnyder
02:25 PM Revision e112f9ee: Merge pull request #1312 from phil-davis/patch-8
Renato Botelho
02:24 PM Revision 095707fe: Merge pull request #1313 from phil-davis/patch-9
Renato Botelho
10:12 AM Bug #3954 (Rejected): Port forwarding rule changes do NOT take affect
Jim Pingle
10:06 AM Bug #3954: Port forwarding rule changes do NOT take affect
Nevermind, I found that vpn->pptp->redirect to x.x.x.x was configured. please close bug. carl paulino
09:21 AM Bug #3954 (Rejected): Port forwarding rule changes do NOT take affect
my pfsense is:
2.1.5-RELEASE (i386)
built on Mon Aug 25 07:44:26 EDT 2014
FreeBSD 8.3-RELEASE-p16
I have a po...
carl paulino
09:16 AM Bug #3898: Traffic Graph webpage freezes up after some time
After upgrading my Mac to Yosemite 10.10 and Safari to 8.0, I don't have this problem anymore. I do see the page free... carl paulino
06:46 AM Bug #3944 (Feedback): git fatal errors are not shown to user when building pfSense iso from source.
Pushed Renato Botelho
04:12 AM Bug #2882: 6RD not working in latest snapshots
I'm using the latest snapshot (amd64 built on Tue Oct 21 22:27:38 CDT 2014) and it seems like 6rd still isn't working... Hondo Eriksson

10/22/2014

03:27 PM Bug #3369: Captive vouchers expire too quickly
Chris Buechler wrote:
> mine for further testing when time permits
good luck :)
maz nos
12:12 PM Bug #3369: Captive vouchers expire too quickly
mine for further testing when time permits Chris Buechler
12:07 PM Bug #3369: Captive vouchers expire too quickly
Thanks maz, got it. One follow-up question sent via email. Chris Buechler
03:55 AM Bug #3369: Captive vouchers expire too quickly
I have sent you the link through your email Chris cmb(at)pfsense
please do not share the image publicly as its key...
maz nos
11:42 AM Bug #1957 (Confirmed): Remove button-inside-hyperlink usage from web forms
this is still the case, though only IE seems to care, it's still an issue in IE 11. Chris Buechler

10/21/2014

06:43 PM Revision a376c57d: Teach the certificate generation code how to make a self-signed certificate, and
change the GUI cert generation code to use it. Also, move the GUI cert
generation code to its own function so we can ...
Jim Pingle
06:25 PM Revision c25d1fd7: Encode values before displaying them back to the user in notification settings
Jim Pingle
06:25 PM Revision 5b473705: Encode values before displaying them back to the user in notification settings.
Jim Pingle
05:52 PM Bug #3946 (Confirmed): Disabling RAM Disk doesn't remove schedule from /etc/crontab if schedules aren't disabled
Chris Buechler
05:46 PM Revision 687d0a6d: remove the command number shown in the shell prompt, it's a pointless
waste of screen space Chris Buechler
05:43 PM Bug #2724 (Resolved): CARP IPs in INIT on both firewalls leads to dual master
it doesn't appear to be possible to get a system into this state in FreeBSD 10.x, it's been fixed since 8.x. Chris Buechler
05:42 PM Bug #2166 (Resolved): Dynamic DNS not updating
this definitely works on 2.1x and 2.2. Chris Buechler
05:41 PM Bug #3924 (Confirmed): Renaming limiters removes them from firewall rules
Chris Buechler
04:59 PM Bug #3576 (Resolved): Console upgrade automatically skips hash check if no hash file found
works Chris Buechler
04:53 PM Bug #3797 (Resolved): DHCP server restarted multiple times on secondary after config sync
this looks to be fine, scenarios that previously triggered multiple restarts on the secondary now only have it restar... Chris Buechler
04:48 PM Bug #3876: pfsync is not synchronizing states on 2.2
Additional info, secondary spits this out: ... Chris Buechler
03:18 PM Bug #3951: Processes like filterdns and ipfw-classifyd accumulate many open file handles
Here it is! Petr Klus
03:13 PM Bug #3951: Processes like filterdns and ipfw-classifyd accumulate many open file handles
could anyone attach the full output of fstat from an affected system? Spot checked some using filterdns and they seem... Chris Buechler
07:00 AM Bug #3951: Processes like filterdns and ipfw-classifyd accumulate many open file handles
My case: pfSense 2.1.5 running on i386 embedded version. Clean install, only modification apart from UI is password f... Petr Klus
05:20 AM Bug #3951 (Resolved): Processes like filterdns and ipfw-classifyd accumulate many open file handles
Forum: https://forum.pfsense.org/index.php?topic=63357.msg453040#msg453040
and surrounding discussion and results in...
Phillip Davis
03:08 PM Bug #3789: rc.update_bogons.sh and login shell ignore http proxy settings
why do it there in update_bogons? Set it as an env variable in general and nothing else needs to be touched. Chris Buechler
01:43 PM Bug #3950 (Feedback): Entering a backwards IP range in an Alias results in an Internal Server Error
pull requests merged, will leave this to feedback for verification Chris Buechler
03:49 AM Bug #3950 (Resolved): Entering a backwards IP range in an Alias results in an Internal Server Error
Firewall->Aliases, add an alias, type Networks.
Put a range like 192.168.1.10-192.168.1.0
Save
It tries for a wh...
Phillip Davis
12:50 PM Bug #3900: DynamicDNS should allow "@" at hostname
Sent a pull request to fix this annoyance. ( https://github.com/pfsense/pfsense/pull/1315 )
Forum discussion at: h...
F. D.Castel
09:32 AM Revision 99ba943a: Prevent Internal Server Error if range is backwards
Fixes redmine #3950 - ip_range_to_subnet_array can easily swap the input parameters if the caller has passed/entered ... Phil Davis
09:18 AM Revision 29b3bb05: Prevent Internal Server Error if range is backwards
Fixes redmine #3950 - ip_range_to_subnet_array can easily swap the input parameters if the caller has passed/entered ... Phil Davis
09:07 AM Feature #809: Config sync username change
Still a problem. Version 2.1.5 Paul Rensing
09:07 AM Bug #3953 (Rejected): Web pages extremely slow if LDAP down
Duplicate of #3383
Please search a bit before opening tickets.
Jim Pingle
09:05 AM Bug #3953 (Rejected): Web pages extremely slow if LDAP down
I have 2.1.5 with a local user (admin) plus an LDAP server (Active Directory). The LDAP server is set as the primary ... Paul Rensing
09:02 AM Bug #3332 (Rejected): Impossible to change the user for XMLRPC Sync
Duplicate of #809 Jim Pingle
09:02 AM Bug #3952 (Rejected): Username not used in config sync
Duplicate of #809 Jim Pingle
08:59 AM Bug #3952 (Rejected): Username not used in config sync
The HA configuration sync page takes a username and password. However, if you change the username to something other ... Paul Rensing
06:54 AM Revision 9b86d3fe: + is a valid character in some dynamic DNS providers' usernames. Fixes #3912
Chris Buechler
05:40 AM Revision 2fb66948: hostnames can end with a . (and actually always do, it's just usually implied), so allow that here. Fixes wrong input validation in parts of nsupdate GUI, among other things.
Chris Buechler
03:52 AM Bug #3369: Captive vouchers expire too quickly
Chris Buechler wrote:
> maz: if you can upload that image somewhere, I'll check it out.
I will upload it ASAP as ...
maz nos
03:07 AM Bug #3904: Firewall Log widget generates a load of HTML code when Reverse DNS resolution is clicked
Also, this is the same as #3829, which is resolved, so good.
Now clicking the IP address takes the user to the full ...
Phillip Davis
02:06 AM Bug #3904 (Resolved): Firewall Log widget generates a load of HTML code when Reverse DNS resolution is clicked
Jim worked around this one. Phil, if you see anything that was missed, feedback appreciated but I think this is funct... Chris Buechler
02:35 AM Bug #3811: IP aliases on CARP w/IPsec getting mixed up on addition of a new VLAN.
needs re-testing on 2.2 Chris Buechler
02:20 AM Bug #3198 (New): IPSEC, when nating to a different size subnet a invalid natting rule is made.
this is still an issue. That pull request was not the answer though.
It should suffice (for 2.2) to add input val...
Chris Buechler
01:56 AM Bug #3898 (Feedback): Traffic Graph webpage freezes up after some time
I've left multiple browsers up on traffic graph for several hours up to days, with no ill effects. I just pulled up t... Chris Buechler
01:49 AM Bug #3912 (Resolved): Dynamic DNS disallows valid character in username
fixed, thanks Chris Buechler
01:44 AM Bug #3901 (Rejected): DynDNS is not forcefully updated after powerup
You'll see in the system log how it works. If your IP hasn't changed, and it's been less than 25 days since the last ... Chris Buechler
01:44 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
Had a look at dhcp.c ISC source code and submitted a bug report. Then after more research I found this:
Extend the...
Phillip Davis
01:17 AM Bug #3928 (Confirmed): lagg and its VLANs must have same MAC address
Chris Buechler
01:11 AM Bug #3949: Dynamic DNS public IP check always uses default gateway
Updated subject to reflect full extent of issue - it's all dynamic DNS services, not just RFC 2136. Chris Buechler
01:07 AM Bug #3949 (Resolved): Dynamic DNS public IP check always uses default gateway
When using the "Use Public IP" option of RFC 2136 dynamic DNS updates, you'll always end up with the public IP of the... Chris Buechler

10/20/2014

11:14 PM Bug #3829 (Resolved): Widget Firewall: Reverse Resolve with DNS Issues
Jim's fix works, and suffices for 2.2. Chris Buechler
10:41 PM Bug #3945 (Confirmed): BOOTP lease end status is mis-parsed
Chris Buechler
10:40 PM Bug #3889 (Confirmed): Non relevant changes in config.xml
A variety of areas do things like this, it'd be nice to eliminate any unrelated changes Chris Buechler
10:14 PM Bug #3937: Interfaces Dashboard Widget - Font to big and scaling wrong
I tried on Opera 25.0.1614.50 and somehow Opera fits it in better, but still the font size of stuff in the Interfaces... Phillip Davis
10:06 PM Bug #3937: Interfaces Dashboard Widget - Font to big and scaling wrong
I have attached a screen shot of what the Interfaces widget looks like on a 2.2 system with a long IPv6 address. Rega... Phillip Davis
10:50 AM Bug #3937: Interfaces Dashboard Widget - Font to big and scaling wrong
2.2-BETA (amd64)
built on Sun Oct 19
Have tried it with:
Windows7 with Firefox (33.0 and prior)
Mac OSX wit...
David Williams
10:25 AM Bug #3937: Interfaces Dashboard Widget - Font to big and scaling wrong
What is the operating system, browser and pfSense version you are using? I couldn't replicate the problem here. Renato Botelho
07:59 PM Bug #3684 (Rejected): Openvpn not routing incomming traffic correct when using tap device
it is broken on 2.2 at the moment, that's #3760.
It does work where route-to/reply-to function correctly though. ...
Chris Buechler
07:56 PM Feature #3329: Allow creating "not" rules for IPsec Phase 2
not important for 2.2 Chris Buechler
07:55 PM Bug #3656 (Confirmed): "LAN network" in v6 rules doesn't work when assigning link-local address to LAN
still an issue on latest snapshot. the LAN rule in that scenario ends up as a comment with "at the break". Chris Buechler
07:15 PM Bug #3948 (Closed): Changing OpenVPN from tun to tap or vice-versa breaks that instance
Where you have an OpenVPN client or server instance defined on tun and switch to tap, or vice-versa, the ovpnc*/ovpns... Chris Buechler
07:10 PM Bug #3165: OpenVPN Bridge with Client Specific Override
I fixed it in commit:7d363e57a0df41604777b4019c98caeef0b8a79f before 2.1.4 but apparently never noticed this ticket t... Jim Pingle
06:53 PM Bug #3165 (Resolved): OpenVPN Bridge with Client Specific Override
this has been fixed at some point in the mean time (probably in a 2.1.x release since then, but tested and definitely... Chris Buechler
06:35 PM Bug #2584 (Closed): Import server certificate - Bad Issuer
can't replicate, inadequate detail to know what might have happened there, doesn't appear to be something anyone else... Chris Buechler
06:27 PM Bug #3545 (Rejected): OpenVPN Clients don't reconnect after dynamic WAN IPv4 changes
re-tested this scenario on 2.2 and it works fine there as well. Chris Buechler
06:16 PM Bug #3947 (Resolved): "ipsec_starter: Bad file descriptor" spams system log
Ermal and I talked about this a couple days ago, it doesn't have a ticket though so opening here. System log on 2.2 s... Chris Buechler
05:00 PM Revision a23adfba: Merge pull request #1306 from phil-davis/patch-3
Renato Botelho
03:41 PM Revision 6d951458: Let user decide if he wants to proceed to the upgrade when sha256 fails to download. Fixes #3576
Renato Botelho
01:58 PM Bug #3946 (Resolved): Disabling RAM Disk doesn't remove schedule from /etc/crontab if schedules aren't disabled
pfSense version: 2.1.5-RELEASE (amd64)
built on Mon Aug 25 07:44:45 EDT 2014
FreeBSD 8.3-RELEASE-p16
After ena...
Marco Verleun
01:03 PM Feature #3933: Limiter burst doesn't have any effect
after discussion with Ermal, needs testing vs. stock FreeBSD Chris Buechler
11:53 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
Phil - do you not see a pencil to the right of your comment? That's how you can edit previous posts. I thought it was... Chris Buechler
06:06 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
Domain-Name-Server is specifically set in pfSense DHCP config to 10.49.48.*250* and that is delivered correctly to th... Phillip Davis
06:01 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
It is related to the client requesting DHCP "option 252", which is related to web-proxy auto-discovery - http://tools... Phillip Davis
10:50 AM Bug #3576 (Feedback): Console upgrade automatically skips hash check if no hash file found
Applied in changeset commit:6d9514581abc09a05f6d86633bbd0bb08aab2cf5. Renato Botelho
10:26 AM Bug #3921: max-packets option missing from pfctl
@ermal, Are you aware of these performance issues? Renato Botelho
12:31 AM Revision 2c296872: h-node should be 8
Chris Buechler
12:30 AM Revision 13ec619c: h-node should be 8
Chris Buechler

10/19/2014

11:38 PM Revision bc12ae8a: Underscores are valid characters in domains. Fixes #3219
Chris Buechler
07:26 PM Bug #3788 (Resolved): NetBIOS h-node should be translated 8 instead of 5
fixed, thanks Chris Buechler
07:16 PM Bug #3213 (Resolved): Error creating more than 30 limiters
that'll suffice Chris Buechler
07:12 PM Feature #1836 (Resolved): RFC 5006 support for DNS from RAs
Chris Buechler
07:03 PM Bug #2245 (Resolved): User permissions for shell access are not clear/complete
resolution Jim noted has since been implemented, which resolves the only real issue I see here. Chris Buechler
06:57 PM Bug #1637 (Needs Patch): captive portal web service port bind validation issue
lot of things it can conflict with, if you want to add the input validation, patches welcome. Chris Buechler
06:55 PM Bug #2649 (Resolved): Ipv6 Easy rule creation failing
Chris Buechler
06:55 PM Bug #3052 (Rejected): Adding a static dhcp for mac address dissapears.
as described isn't an issue Chris Buechler
06:52 PM Bug #3369: Captive vouchers expire too quickly
maz: if you can upload that image somewhere, I'll check it out. Chris Buechler
06:46 PM Bug #3408 (Closed): IPV6 DHCP not disabling on initial setup
issue as described doesn't exist in 2.2 Chris Buechler
06:37 PM Bug #3762 (Closed): web interface ajax updates do not work after upgrade
Local browser cache was the likely cause of that, though www not matching would be unexpected. Not a replicable issue. Chris Buechler
06:35 PM Bug #3501 (Resolved): sanity check for PBI installations before uninstalling old pbi package.
issue as described was fixed in 2.2 Chris Buechler
06:33 PM Bug #3219 (Resolved): Forwarded domain with underscore should be allowed to add
fixed in 2.2 Chris Buechler
06:02 PM Bug #3939 (Confirmed): Cannot create Host or Network type alias with an IP address/range
Confirmed as described. Create a new host alias containing only "example.com", save and apply changes. ... Chris Buechler
05:52 PM Bug #3861 (Rejected): PPPOE non-NAT config cannot ping attached hosts as packets go upstream
there is something fundamentally wrong with your configuration, LAN and WAN can't have the same IP, and you have a ma... Chris Buechler
05:51 PM Bug #3935 (Resolved): Unable to complete NIC assignment with only one NIC
fixed Chris Buechler
02:42 PM Bug #3945: BOOTP lease end status is mis-parsed
also after changing the display from UTC to local time, BOOTP entries show up as "1969/12/31 07:00:00PM" Chris Buechler
02:40 PM Bug #3945 (Resolved): BOOTP lease end status is mis-parsed
status_dhcp_leases.php shows the end of BOOTP leases as "tstp never", where it should just show the "never" and maybe... Chris Buechler
08:25 AM Bug #3944 (Resolved): git fatal errors are not shown to user when building pfSense iso from source.
git fatal errors are not shown to user when building pfSense iso from source.
This complicates troubleshooting when ...
Pi Ba
02:49 AM Bug #3576: Console upgrade automatically skips hash check if no hash file found
Replacing line 90 in rc.initial.firmware_update, the "sleep(15)", with aborting the upgrade instead (making the sha25... Chris Buechler

10/18/2014

11:02 PM Bug #3760 (Confirmed): reply-to with TCP and IPv6 generates broken checksums
Return routing is correct now, but TCP checksums are broken (with or without hardware checksum offloading enabled). Chris Buechler
08:05 PM Bug #3891: ipfw, on pfSense 2.2 kernel dump caused by: ipfw zone 4096 create
Tester issue. Ermal Luçi
08:05 PM Bug #3891 (Resolved): ipfw, on pfSense 2.2 kernel dump caused by: ipfw zone 4096 create
Ermal Luçi

10/17/2014

11:33 PM Revision 621fed0e: Ticket #3932 For more than 100 entries create pipes in line with the rules file to speedup the process
Ermal LUÇI
06:28 PM Bug #3932: Captive portal with greater than 9000 permanent MAC addresses causes timeout in loading CP
The loading should be faster. Ermal Luçi
01:31 PM Bug #3760 (Resolved): reply-to with TCP and IPv6 generates broken checksums
Works correctly now. Ermal Luçi
11:25 AM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
Next snapshot should have the fixed of allowing states to match properly. Ermal Luçi
11:27 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
I am sorry but you need to read better the source!
Ermal Luçi

10/16/2014

09:46 PM Revision 2ac79ade: Merge pull request #1310 from phil-davis/patch-6
Renato Botelho
09:44 PM Revision 308e3042: Merge pull request #1311 from phil-davis/patch-7
Renato Botelho
07:22 PM pfSense Packages Bug #3660: Captive Portal Idle timeout Pfsense 2.1.3
that's a problem inherent in what you're doing with squid and has nothing to do with CP itself. Chris Buechler
03:58 PM pfSense Packages Bug #3660: Captive Portal Idle timeout Pfsense 2.1.3
It's true. Solution to the problem on the link below
https://forum.pfsense.org/index.php?topic=69606.0
Gilmar Cabral
12:51 PM pfSense Packages Bug #3660 (Rejected): Captive Portal Idle timeout Pfsense 2.1.3
issue as described isn't true Chris Buechler
07:22 PM Revision 2f17d32e: Fix the log widget to lookup hosts by DNS using a link rather than AJAX. Quick fix for now. Ticket #3829
Jim Pingle
07:21 PM Revision 497563be: Fix the log widget to lookup hosts by DNS using a link rather than AJAX. Quick fix for now. Ticket #3829
Jim Pingle
05:40 PM Feature #3943 (New): pf - divert-reply not implemented (usefull for haproxy)
Not sure if i should file this under pfsense or packages..
For haproxy it would be beneficial to have support in pf ...
Pi Ba
04:10 PM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
Same troubles on:
built on Thu Oct 16 09:56:37 CDT 2014
FriendlyFire isnotcool
12:17 PM Bug #3760 (Confirmed): reply-to with TCP and IPv6 generates broken checksums
no change on: ... Chris Buechler
04:05 PM Bug #3935: Unable to complete NIC assignment with only one NIC
Thanks Phil, my bad on that breakage. Will re-test this when I get a moment Chris Buechler
01:56 PM pfSense Packages Bug #3942 (Resolved): bind - allow starting named with "-4" argument
pfSense Version 2.1.15 amd64
BIND pkg Version - 9.9.5P1_5 pkg v 0.3.5
Requesting feature to start the named daemo...
Braden Del More
01:10 PM Bug #3898: Traffic Graph webpage freezes up after some time
p.s. the browser in my case was Firefox 33.0 on intel windows-7 Dammon Butler
01:09 PM Bug #3898: Traffic Graph webpage freezes up after some time
Just thought I'd add:
There is also a similar issue on "Status: Traffic shaper: Queues". If left in a browser for so...
Dammon Butler
12:49 PM Bug #3389 (Confirmed): GUI allows to configure ICMPv4 types for ICMPv6 firewall rules
Chris Buechler
12:48 PM Bug #3938 (Confirmed): Captive Portal PHP Error at bootup on current snapshots
Chris Buechler
12:46 PM Bug #3727 (Confirmed): PPP config loses "on-demand" setting when configured via interfaces tab
that didn't fix it. Config diff attached that shows changes made by interfaces.php just clicking "Save" on an assigne... Chris Buechler
12:35 PM Feature #3553 (Rejected): Multi Wan FTP Server
there is an invalid checksum issue at play here that has a separate ticket. Chris Buechler
12:28 PM Bug #3941 (Resolved): adding a DHCP client interface results in missing default gateway on 2.2
Take a simple WAN and LAN setup, WAN on DHCP with its dynamic gateway marked as default, LAN static. Add a third NIC ... Chris Buechler
12:23 PM Feature #3923: Rules MAC Block
Using ipguard and dhcp server to block using MAC is palliative solution as firewalls usually block via MAC rules are ... Gilmar Cabral
12:13 PM Feature #3923: Rules MAC Block
Using ipguard and dhcp server to block using MAC is palliative solution as firewalls usually block via MAC rules are ... Gilmar Cabral
11:55 AM Feature #3923 (Rejected): Rules MAC Block
duplicate. and it's pointless.
Though it is possible to MAC filter w/CP
Chris Buechler
12:20 PM Bug #3891 (Confirmed): ipfw, on pfSense 2.2 kernel dump caused by: ipfw zone 4096 create
doesn't crash anymore, but it also doesn't work at all.
trying to create any zone results in: ...
Chris Buechler
12:00 PM Bug #3829 (Confirmed): Widget Firewall: Reverse Resolve with DNS Issues
Chris Buechler
12:00 PM Bug #3829: Widget Firewall: Reverse Resolve with DNS Issues
affects at least 2.1.5 and 2.2, not sure about earlier. Not sure how involved fixing this is at a brief glance, it's ... Chris Buechler
11:54 AM Bug #3361 (Confirmed): DHCP6 WAN is not obtaining a default gateway
SLAAC also ends up missing a default gateway, though System>Routing shows a gateway entry with the appropriate IP and... Chris Buechler
11:52 AM Bug #1681 (Confirmed): OpenVPN tun IPs fail HTTP REFERER checks
still no CLA.
Per - could you please go through that process as Jim noted so we can accept this?
Chris Buechler
11:27 AM Bug #3876 (Confirmed): pfsync is not synchronizing states on 2.2
This is a little better, but still completely non-functional. It actually sends pfsync traffic now, which is the impr... Chris Buechler
11:22 AM Bug #3884 (Resolved): Restarting Web GUI does not restart PHP-FPM
fixed Chris Buechler
10:47 AM Bug #3870 (Confirmed): re(4) NICs on APU are unable to hardcode speed/duplex properly
This has always been an issue on at least some (and I believe most, if not all) re(4), dating back to at least the Fr... Chris Buechler
06:04 AM Bug #3940: check_reload_status uses deprecated libevent-1.4
As crosscheck: I just have build check_reload_status using libevent-1.4.14b-stable. With this version the load is ok. Thomas Hilse
03:25 AM Bug #3940 (Resolved): check_reload_status uses deprecated libevent-1.4
The snapshot 2.2 builds uses deprecated libevent-1.4 library. The Makefile of "check_reload_status" was fixed with co... Thomas Hilse
04:10 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
Also, in *rc.newwanipv6* instances are started twice ... Dmitriy K
01:50 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
Look for "openvpn_restart" event in the system log to speedup things. Just forgot to mention it in the post above. Dmitriy K
01:49 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
Yeah, obviously I can't run 2 times same instance but bug in logic can. So, here is system log.
Looks like opvn i...
Dmitriy K

10/15/2014

07:22 PM Bug #3939 (Resolved): Cannot create Host or Network type alias with an IP address/range
Affects 2.1.5 release as well as the latest 2.2 build - pfSense-LiveCD-2.2-BETA-amd64-20141015-1437.iso
Repro step...
Landon Timothy
06:28 PM Bug #3935: Unable to complete NIC assignment with only one NIC
Thanks Phillip, I can get past the interface assignment now.
I don't know if this is related or not but now webConfi...
Landon Timothy
09:00 AM Bug #3935 (Feedback): Unable to complete NIC assignment with only one NIC
Applied in changeset commit:5d49ceac8b7591f4db502eb4c2c52b37cc63e7ae. Phillip Davis
06:25 PM Bug #3854 (Resolved): pf on 2.2 should not have an upper table entry limit, but generates errors with large datasets
This can be marked as resolved.
Though general issues are to be solved in FreeBSD for this....
Ermal Luçi
06:12 PM Bug #3854: pf on 2.2 should not have an upper table entry limit, but generates errors with large datasets
Tested this with several very large lists. I think it can be changed to resolved. Thanks.
Updating: pfB_IBlock
6...
Bill Crowder
10:47 AM Bug #3854 (Feedback): pf on 2.2 should not have an upper table entry limit, but generates errors with large datasets
Patch has been merged in to fix the wrong ioctl handling.
Please test newer snapshots.
Ermal Luçi
06:23 PM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
Please use the next one. Ermal Luçi
02:56 PM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
Damn, i was getting crazy with my servers until i found this report !
I tested "built on Wed Oct 15 11:40:50 CDT 2...
FriendlyFire isnotcool
09:43 AM Bug #3760 (Feedback): reply-to with TCP and IPv6 generates broken checksums
Please test with later coming snapshot since it should have the final fix for this. Ermal Luçi
06:01 PM Revision b6dbbebc: Add command line script to generate and activate a new GUI certificate.
Jim Pingle
06:01 PM Revision 2cf2c62b: Fix descriptions and cn on generated GUI cert to be consistent.
Jim Pingle
05:17 PM Bug #3890: Aliases multiple CIDR ranges show error message
Just need tests. I'll take care of it. Renato Botelho
02:42 PM Feature #1836 (Feedback): RFC 5006 support for DNS from RAs
Ermal Luçi
02:41 PM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
From the logs seems you have already an running instance hence you cannot start a second one!
Can you post your syst...
Ermal Luçi
02:33 PM Bug #3913 (Feedback): if_bridge missing ALTQ support
Please try next coming snapshots this should be fixed. Ermal Luçi
02:23 PM Revision 2f5488df: Reintroduce the vfs.forcesync systl
Ermal LUÇI
02:04 PM Bug #3870: re(4) NICs on APU are unable to hardcode speed/duplex properly
I've tried both 2.1.x and 2.2 and they are both affected. It's not possible to set the speed/duplex on either one. Jim Pingle
02:02 PM Bug #3870: re(4) NICs on APU are unable to hardcode speed/duplex properly
Do we know if this is a problem with 2.1 or 2.2, (or both)? Jim Thompson
01:49 PM Revision 29fb23d4: Merge pull request #1309 from phil-davis/patch-5
Renato Botelho
12:41 PM Revision 29be59ad: Tame the poodle. Disable SSLv3.
Jim Pingle
12:40 PM Revision 5ff7f58e: Tame the poodle. Disable SSLv3.
Jim Pingle
12:18 PM Bug #3842: Verdana font from the Linux package ttf-mscorefonts-installer causes rendering issues with pfSense WebGUI
Jared put fixes into 2.2 ( commit:6817c18afa737e83756516a7b7c14ff5e5d85814 and commit:2300ee35e94bc49dff99f64133fe98c... Jim Pingle
11:51 AM Bug #3842: Verdana font from the Linux package ttf-mscorefonts-installer causes rendering issues with pfSense WebGUI
Assigned back to JimP, because Jared is no longer with us. Jim Thompson
12:15 PM Bug #3666 (Feedback): PMTUD is broken for NATed traffic
Did you try to send an tcp/udp packet rather than icmp one? Ermal Luçi
11:11 AM Bug #3666: PMTUD is broken for NATed traffic
Actually try out a next coming snapshot i found a quick hack that will help even for icmp case. Ermal Luçi
11:51 AM Bug #3932: Captive portal with greater than 9000 permanent MAC addresses causes timeout in loading CP
Ermal suggests that if /cf/conf/use_xmlreader exists, that a faster parser will be used in 2.2.
Please re-test. E...
Jim Thompson
09:43 AM Bug #3938 (Resolved): Captive Portal PHP Error at bootup on current snapshots
At boot on a current snapshot with captive portal enabled there is a PHP error displayed:
PHP Errors:
[15-Oct-201...
Jim Pingle
09:15 AM Bug #3918 (Resolved): On 2.2, mounting read-only after mounting read-write can be very slow on certain media NanoBSD
Ermal Luçi
08:41 AM Revision 466aae83: Manage dhcpleaseinlocaltime consistently
dhcpleaseinlocaltime is actually a global setting, but the setting is stored per-DHCP-enabled-interface.
The display ...
Phil Davis
08:03 AM Bug #3931 (Resolved): Using international characters in IPsec PSK causes invalid XML
Confirmed fixed for IPsec P1, PSK tab, and User PSK fields. Invalid characters are now properly rejected. Jim Pingle
07:48 AM Bug #3937 (Resolved): Interfaces Dashboard Widget - Font to big and scaling wrong
The changes in this commit ( https://github.com/pfsense/pfsense/commit/607e15dbdf942483154887fea278bf54c64ae6ce ) hav... David Williams
06:41 AM Revision 73a96698: Provide an edit button for static mapped entries
As suggested in forum https://forum.pfsense.org/index.php?topic=82883.msg0#new
Instead of a non-functioning red plus ...
Phil Davis
05:47 AM Revision fff9ee45: Whitespace in status_dhcp_leases.php
Phil Davis
05:37 AM Bug #3784: Cannot enter hostname with a dot
Owen Gerrard wrote:
> Buster de wrote:
> > Why you can't put only "server" into the hostname and "sub.domain.com" i...
Buster de
04:19 AM Revision 5d49ceac: Fix #3935 Properly allow WAN without LAN
Was broken by https://github.com/pfsense/pfsense/commit/bd0b5d2dc7a279d3473a65a11d67efb5e39392be Phil Davis

10/14/2014

11:39 PM Revision 8ff85c39: rename interfaces_carp_setup to interfaces_sync_setup and call it during bootup since it does not only relate to carp interfaces.
Ermal LUÇI
11:27 PM pfSense Packages Bug #3936 (Resolved): Proxy state tab of lightsquid
In the proxy state tab of lightsquid I get the following ... Darkhan Sarmurzanov
11:17 PM Bug #3935: Unable to complete NIC assignment with only one NIC
It was broken a week ago, I'm sure accidentally :)
This code works: https://github.com/pfsense/pfsense/pull/1309
...
Phillip Davis
08:47 PM Bug #3935: Unable to complete NIC assignment with only one NIC
Also, if I add a NIC to finish startup then try to unassign from the menu, it doesn't say anything but returns to the... Landon Timothy
08:42 PM Bug #3935 (Resolved): Unable to complete NIC assignment with only one NIC
Running a VM with one NIC.
Boot to the latest snapshot ISO:
pfSense-LiveCD-2.2-BETA-amd64-20141014-1737
No VLANs...
Landon Timothy
10:59 PM Revision 4703c007: Fixes #3727 Do not unset ondemand for ppp type interfaces since it is controlled here only for pppoe/l2tp
Ermal LUÇI
10:55 PM Revision 664adf38: Ticket #3789. Put a start at using the proxyurl/proxyport from system configured settings for bogons. It still does not consider the user/pass configured
Ermal LUÇI
10:36 PM Revision e02ea742: Fixes #3213. Allow up to 2900 limiters. This was set to 30 since limiters are to be controlled by mask and not created manually!
Ermal LUÇI
09:21 PM Revision febe0112: Make proper check here
Ermal LUÇI
09:10 PM Bug #3876 (Feedback): pfsync is not synchronizing states on 2.2
It is fixed for me with new snapshots. Ermal Luçi
08:14 PM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
Whoops - Submitted that last update too early and couldn't figure out how to remove it.
The version I am currently...
Matt Bunce
08:08 PM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
Can I just check, should I be using the pre-compiled snapshot from here:
https://snapshots.pfsense.org/FreeBSD_relen...
Matt Bunce
01:39 PM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
More testing needed after another change have been merged. Ermal Luçi
07:30 PM Revision 7c4c77ee: Teach the certificate generation code how to make a self-signed certificate, and change the GUI cert generation code to use it. Also, move the GUI cert generation code to its own function so we can add a GUI option to regenerate it later.
Also use some more sane defaults for the contents of the default self-signed certificate's fields so it will be more ... Jim Pingle
06:44 PM Revision 1f4ad8f4: update comment to reflect breakage caused here and reference associated redmine ticket, not high priority, can be fixed later
Chris Buechler
06:21 PM Revision eb71461c: block IPv4 link-local. Per RFC 3927, hosts "MUST NOT send the packet to
any router for forwarding", and "any network device receiving such a
packet MUST NOT forward it". FreeBSD won't route...
Chris Buechler
06:00 PM Bug #3727 (Feedback): PPP config loses "on-demand" setting when configured via interfaces tab
Applied in changeset commit:4703c007ef8b5cef28ab9650b28ea807cc7611f6. Ermal Luçi
05:50 PM Bug #3789 (Feedback): rc.update_bogons.sh and login shell ignore http proxy settings
A patch for proxy support without username/password configured on system->settings will be considered now. Ermal Luçi
05:50 PM Bug #3213: Error creating more than 30 limiters
Applied in changeset commit:e02ea742a546513eedcef1f4049a90e998951b78. Ermal Luçi
05:32 PM Bug #3213 (Feedback): Error creating more than 30 limiters
Ermal Luçi
05:32 PM Bug #3213: Error creating more than 30 limiters
Bumped to 2900. The only reason left to 30 was for speed ones.
Normally having 30 limiters is a bit.... unusual sinc...
Ermal Luçi
05:41 PM Revision 69b79ff0: Fix PSK for non-ascii also here, ticket #3917
Renato Botelho
05:40 PM Feature #1836: RFC 5006 support for DNS from RAs
This should be working afaik! Ermal Luçi
05:36 PM Bug #729: if_bridge unpredictable filter interface selection
This should work better on pfSense 2.2 as of 1 week ago! Ermal Luçi
05:23 PM Bug #3891 (Feedback): ipfw, on pfSense 2.2 kernel dump caused by: ipfw zone 4096 create
It should not do this anymore on newer snapshots. Ermal Luçi
05:23 PM Revision 5a42d9ef: Fix initial console menu layout, it fixes #3884
Renato Botelho
05:10 PM Bug #3918 (Feedback): On 2.2, mounting read-only after mounting read-write can be very slow on certain media NanoBSD
Patch merged for 2.2 from 2.1 Ermal Luçi
04:52 PM Feature #3933: Limiter burst doesn't have any effect
It will take effect only when the queue if full as normal with other shaping implementations.
If your queue is not f...
Ermal Luçi
04:50 PM Revision b907136c: Improve IPsec status page for mobile. It fixes #3917
Renato Botelho
04:46 PM Revision ca1fdcce: Add missing gettext call
Renato Botelho
04:40 PM Revision d6c9dcf9: Add missing gettext calls
Renato Botelho
04:23 PM Revision 6795e0da: Fix indent and spaces
Renato Botelho
03:50 PM Revision 123d8700: Does not accept non-ascii characters on IPsec PSK. It fiixes #3931
Renato Botelho
03:48 PM Revision a4c1fff2: Close this form early since there is another form below
Renato Botelho
01:49 PM Bug #3709 (Confirmed): Disabled static route entries trigger 'route delete' error at boot
Chris Buechler
01:20 PM Bug #2056 (Resolved): Display error in captive portal admin screen
works Chris Buechler
01:19 PM Bug #2073 (Resolved): APIPA broadcasts forwarded by route-to
fixed by implementing the appropriate behavior per RFC 3927 - block it. Chris Buechler
12:37 PM Bug #3931 (Feedback): Using international characters in IPsec PSK causes invalid XML
Renato Botelho
12:28 PM Bug #3931 (New): Using international characters in IPsec PSK causes invalid XML
Seems to still allow some characters that can break XML (like à )
Jim Pingle
12:09 PM Bug #3931 (Feedback): Using international characters in IPsec PSK causes invalid XML
Pushed a fix commit:123d870060 Renato Botelho
12:30 PM Bug #3884 (Feedback): Restarting Web GUI does not restart PHP-FPM
Applied in changeset commit:5a42d9ef426a05cbd64559bbe2b75a355dc0d821. Renato Botelho
12:00 PM Bug #3917 (Feedback): Mobile IPsec status page issues
Applied in changeset commit:b907136c28defe8b45da3ae4a17a5e23f07a7e4a. Renato Botelho
11:21 AM Bug #3419 (Closed): Traffic shaper wizard doesn't properly populate download speed
several wizard fixes in 2.2, and no issues like this outstanding. Though this one in particular doesn't sound legit a... Chris Buechler
11:18 AM Bug #1839 (Closed): No Quality RRD Graph w/ Non-Default Frequency Probe
I can't find any frequency that doesn't work, this has been fixed at some point in the mean time. Chris Buechler
11:16 AM Bug #3929: Port Forwarding with an association Filter
Of course. Nothing that simple is broken. Block private networks is my guess. This isn't the place to discuss, please... Chris Buechler
11:12 AM Bug #3929: Port Forwarding with an association Filter
i completly reinstalled pfsense, with default configuration.
then i configured the port forwarding.
are u sure, t...
Florian Asche
11:09 AM Bug #3929: Port Forwarding with an association Filter
Because you have something misconfigured. There isn't anything wrong with port forwards or associated rules. Chris Buechler
11:07 AM Bug #3929: Port Forwarding with an association Filter
Hi,
how could this be not a bug?
I set all things by documentation.
Have a look at https://doc.pfsense.org/ind...
Florian Asche
11:03 AM Bug #3929 (Rejected): Port Forwarding with an association Filter
not a bug, please use one of our available support resources for assistance. https://pfsense.org/support Chris Buechler
11:15 AM Bug #3678 (Resolved): Kernel panic: "Bogus interrupt trigger mode" on Intel J1900
this was since fixed in 9 and 10 stable FreeBSD, current 2.2 should work here Chris Buechler
11:07 AM Bug #3930 (Rejected): Browser Page Refresh After CA Creation Creates Duplicate CA
This could be summarized as "I forced my browser to create multiple CAs and it created multiple CAs." Yes, it does. Chris Buechler
11:00 AM Bug #3777 (Resolved): User with "WebCfg - Help pages " permission listed first gets a bogus redirect
fixed Chris Buechler
06:21 AM Bug #3735: No default route when using WAN static IPv6 address
This issue has already been discussed on the forum :
https://forum.pfsense.org/index.php?topic=65964.0
The way to s...
Eric Boudrand
04:07 AM Revision dc4a8b9e: update input_error description after changes for ticket #3491
Chris Buechler

10/13/2014

11:27 PM Feature #3933 (Closed): Limiter burst doesn't have any effect
No matter what you put in the burst field, the limiter behaves exactly the same as if it's 0 or null. Re-tested on th... Chris Buechler
11:08 PM pfSense Packages Bug #3772 (Resolved): Broken openbgpd config generation logic in 2.2
fixed Chris Buechler
11:07 PM Todo #3880 (Resolved): Write upgrade code for unbound
Chris Buechler
11:06 PM Feature #983 (Resolved): Improve/Enhance IP Alias VIP handling in GUI
works, nice improvement for ease of use. Chris Buechler
11:02 PM Bug #3491 (Resolved): Improper input validation on firewall rules when using a numerical alias name
fixed Chris Buechler
10:48 PM Bug #3542 (Resolved): cert_get_issuer() in certs.inc doesn't always return the full Distinguished Name
Chris Buechler
09:50 PM Bug #3932: Captive portal with greater than 9000 permanent MAC addresses causes timeout in loading CP
How big are the resulting configs there? I'm not running PHP out of memory after throwing 9000 randomly-generated MAC... Chris Buechler
12:09 PM Bug #3932 (Closed): Captive portal with greater than 9000 permanent MAC addresses causes timeout in loading CP
When using captive portal, with all users become permanently learned after enough users have authenticated the system... Jeremy Porter
08:32 PM Bug #3769 (Resolved): Only the first phase 2 entry is used when multiple entries are present for an IPsec tunnel in 2.2
fixed Chris Buechler
08:30 PM Todo #3795 (Resolved): Update hostapd to support 802.11n
fixed Chris Buechler
08:29 PM Bug #2665 (Resolved): 'pass out' on gif matches inbound traffic
fixed Chris Buechler
08:15 PM Bug #3922 (Resolved): jumbo frames on lagg not working
fixed Chris Buechler
12:50 PM Bug #3922 (Feedback): jumbo frames on lagg not working
Applied in changeset commit:71c26c22209e22c37d437077da6c69b0fb09627f. Renato Botelho
05:36 PM Revision 71c26c22: Properly set MTU for lagg interface, it fixes #3922
Renato Botelho
04:09 PM Revision 5c2e6873: Make sentence more accurate as pointed out by phil-davis
Renato Botelho
03:42 PM Revision 1c764a3a: GIF interfaces MTU must be something between 1280 and 8192, make the correct check. It fixes #3927
Renato Botelho
03:39 PM Bug #3191 (New): Quality RRD inaccuracies and failure to update status in some circumstances
The first issue as noted originally is still a problem as described. Throw a limiter on an upstream system that drops... Chris Buechler
12:46 PM Feature #3365: Implement package signing
After deploying hardware key storage, we need to distribute access keys to users that will be logging into builders t... Jeremy Porter
12:23 PM Bug #3790 (Resolved): Input validation is too strict for IPv6 Prefix ID for Track Interface
Chris Buechler
12:10 PM Bug #3927 (Resolved): Unable to set gif MTU
fixed Chris Buechler
10:50 AM Bug #3927 (Feedback): Unable to set gif MTU
Applied in changeset commit:1c764a3a50d4eb732e7c96eb9351e7b35c2051d4. Renato Botelho
10:20 AM Bug #3927 (New): Unable to set gif MTU
Back to new, we should provide a validation on GUI Renato Botelho
10:20 AM Bug #3927 (Rejected): Unable to set gif MTU
According src code https://github.com/freebsd/freebsd/blob/releng/10.1/sys/net/if_gif.h#L91 minimum valid MTU for gif... Renato Botelho
12:08 PM Bug #3822 (Resolved): 2.2 boot hangs at "Synchronizing user settings"
Several upgrades later on systems that used to have this issue, and we're still good. Others on forum have also confi... Chris Buechler
11:54 AM Revision 07c24bf1: Merge pull request #1308 from phil-davis/patch-4
Renato Botelho
11:41 AM Feature #1965 (Resolved): Support Multiple IPsec Peers
Chris Buechler
11:39 AM Bug #3931: Using international characters in IPsec PSK causes invalid XML
#3431 and #3636 are effectively the same, closed those in favor of this. Chris Buechler
11:35 AM Bug #3931 (Resolved): Using international characters in IPsec PSK causes invalid XML
If an international character, such as à is added to an IPsec PSK, it will cause the configuration to contain invalid... Jim Pingle
11:39 AM Bug #3636 (Closed): IPssec Pre-Shared Key error
closing in favor of #3931 Chris Buechler
11:38 AM Bug #3431 (Closed): IPSec PSK Characters Error
closing in favor of #3931 Chris Buechler

10/12/2014

11:21 PM Bug #3620 (Resolved): Saving unbound settings twice in a row yields incorrect interface selection validation errors
Chris Buechler
11:21 PM Todo #3399 (Resolved): Implement a replacement for base nsupdate command for RFC2136 Dynamic DNS
Chris Buechler
04:46 AM Bug #3568 (Resolved): DynDNS: Hostname '@' not accepted for Namecheap
Renato Botelho

10/11/2014

11:44 PM Bug #3568: DynDNS: Hostname '@' not accepted for Namecheap
Works great now, thanks Renato! Feel free to mark this one as resolved. Anonymous
11:23 PM pfSense Packages Bug #3805: enable-http-violation are not compiled in Squid
In squid, yes, but *not* in the FreeBSD port from which we build the package. It'll come eventually once the package ... Jim Pingle
11:16 PM pfSense Packages Bug #3805: enable-http-violation are not compiled in Squid
This option is available in: 2.7 / 2.6 http://www.squid-cache.org/Doc/config/header_access/ Nikolay Stoyanov
09:29 AM pfSense Packages Bug #3805 (Rejected): enable-http-violation are not compiled in Squid
That wasn't an option in the squid 2.7.x FreeBSD port, it was hardcoded. That port is gone from FreeBSD now, eventual... Jim Pingle
06:27 PM Feature #1032 (Resolved): Add all interfaces to Packet Capture drop-down
this has been addressed since then, I can't think of any common scenario that isn't covered. Chris Buechler
03:25 PM Feature #852 (Needs Patch): Add Captive Portal default realm
Chris Buechler
03:20 PM Feature #3490 (Resolved): Update DHCP options for network booting with UEFI
Chris Buechler
03:20 PM Feature #3515 (Resolved): Windows OpenVPN clients require register-dns to properly use a DNS server set by Pfsense
Chris Buechler
11:29 AM Bug #3930 (Rejected): Browser Page Refresh After CA Creation Creates Duplicate CA
+*Issue*+: After creating an internal CA, refreshing/reloading the browser page immediately after creation causes the... David Guyton
10:12 AM Bug #3929 (Rejected): Port Forwarding with an association Filter
Hello,
using Port Forwarding with an association Filter rule isnt working.
I have a WAN (em2) and a LAN (em0). ...
Florian Asche
10:10 AM Bug #3770: Some drivers not being built with altq support
But "bridge"? Michael Sh.
03:17 AM Revision 3b5b437b: fix text
Chris Buechler
02:54 AM Revision 0c4cd13f: fix up text on sys_adv_misc
Chris Buechler
02:10 AM Revision 5046435d: fix text and descriptions in GRE edit page
Chris Buechler
01:11 AM Bug #3735 (Rejected): No default route when using WAN static IPv6 address
there isn't a bug described there, post to the forum or mailing list to discuss further. Chris Buechler
01:09 AM Bug #3727: PPP config loses "on-demand" setting when configured via interfaces tab
confirmed Chris Buechler
01:01 AM Bug #3928 (Duplicate): lagg and its VLANs must have same MAC address
Take a test system with lagg0 and lagg0_vlan5 both assigned. Specify a MAC address for lagg0 on interfaces.php, and i... Chris Buechler
12:50 AM Bug #3798 (Resolved): IPsec phase 2 pinghost is not used if the source IP should be a virtual IP address
fixed Chris Buechler
12:50 AM Bug #3780 (Closed): VLAN on LAGG may loose their MAC addresses if the LAGG membership is changed.
This is true, but it doesn't matter in most circumstances. For those where you need the MAC to not change, you need t... Chris Buechler
12:24 AM Bug #3774 (Closed): MTU Interface Settings Ignored when Assigned to LAGG Ports
closing in favor of #3922 Chris Buechler
12:23 AM Bug #3890: Aliases multiple CIDR ranges show error message
Phil's pull request to fix this still pending, some reason that hasn't been accepted? Chris Buechler
12:20 AM Bug #3856 (Resolved): Delete a user, edit another one and going back... delete the edited user
This seems to be fixed, and fixed a similar but different issue I'd run into but not opened a ticket for yet. Chris Buechler
12:19 AM Feature #3832 (Resolved): change default update URL to https
fixed Chris Buechler
12:17 AM Bug #3613 (Resolved): Remote syslog server gets added to " DHCP service events" without being checked.
fixed Chris Buechler
12:16 AM Bug #3237 (Resolved): "Revoked" status is incorrect for certificates that are different but share the same descriptive name.
fixed Chris Buechler
12:14 AM Bug #3080 (Resolved): 2.1-RC0 (i386) - GRE Interface not getting correct/configured MTU at boot time
works in 2.2 (and probably newer 2.1x versions than this referenced, but didn't test those) Chris Buechler
12:09 AM Revision b22f436a: s/removing/omitting/g for gateway monitor log entires. "Removing" is not necessarily correct, there are many circumstances where this runs where it wasn't there to begin with, and is potentially misleading.
Chris Buechler

10/10/2014

11:04 PM Bug #3540 (Resolved): 100% CPU-Issue when IPv6 DHCP with stateless addresses is active
haven't seen this in 2.2 Chris Buechler
11:03 PM Feature #3365 (New): Implement package signing
back to new for Jeremy to finalize production implementation. Chris Buechler
11:02 PM Bug #3361 (New): DHCP6 WAN is not obtaining a default gateway
seems this is still an issue in at least one circumstance. Where WAN is set to DHCP6, and no DHCP6 server is availabl... Chris Buechler
10:17 PM Bug #1621 (Closed): Switching WAN from type PPP to other leaves former port assigned
Chris Buechler
10:15 PM Feature #484 (Resolved): Add a warning if users are using non-official package repo
... Chris Buechler
10:06 PM Bug #3562 (Resolved): Wireless Radius Setup Fails - partially due to empty config strings
Chris Buechler
10:04 PM Bug #2124 (Resolved): Package system updates for FreeBSD 10.x
complete Chris Buechler
10:04 PM Todo #2109 (Resolved): pfSense on FreeBSD 10.x
this as a whole is resolved and can be gotten out of the list, some individual tickets under this still outstanding Chris Buechler
10:02 PM Bug #3612 (Resolved): Packages through proxy doesn't work since change to HTTPS
fixed Chris Buechler
09:23 PM Bug #3775 (Resolved): Installer installs incorrect gettytab/ttys
fixed Chris Buechler
09:21 PM Bug #3920 (Rejected): Backup of CA files broken
as described isn't true. I added a reply in the linked forum thread as to what appears to be happening here, from peo... Chris Buechler
09:07 PM Bug #3281 (Resolved): In certain cases, GRE interfaces are missing the "RUNNING" flag at bootup and will not function
Every scenario I'm aware of where that wasn't working now is on 2.2. Chris Buechler
09:06 PM Bug #3182 (Resolved): VMware vmxnet interfaces are not detected as VLAN capable
Chris Buechler
08:39 PM pfSense Packages Bug #3645 (Resolved): Many Call-time Pass-by-reference instances in packages need fixed for PHP 5.5
Should be covered. If there are any remaining, specific tickets can be opened. Chris Buechler
08:37 PM Bug #3537 (Resolved): Bandwidth values are forced by the Traffic Shaper Wizard but are not required nor used for PRIQ
fixed Chris Buechler
08:34 PM Feature #2151 (Resolved): Add IPv6 support to the pfSense module
generally speaking, what's there is fine. if there are some specific things it's lacking, new tickets can be opened f... Chris Buechler
08:32 PM Bug #3575 (Resolved): OPT interfaces on GRE tunnels do not accept IPv6 or IPv4 addresses to be set.
Chris Buechler
08:32 PM Bug #3664 (Resolved): "IPsec" not displayed in firewall log interface column
fixed Chris Buechler
08:30 PM Bug #3909 (Resolved): carp_status.php shows disabled after initial config when it really isn't
fixed Chris Buechler
08:27 PM Bug #3666 (New): PMTUD is broken for NATed traffic
no change in behavior Chris Buechler
06:13 PM Bug #3854: pf on 2.2 should not have an upper table entry limit, but generates errors with large datasets
This is an issue that needs to be addressed before 2.2 is released. This problem does not exist in 2.1.4.
Bill Crowder
05:39 PM Bug #1399 (Resolved): rrdtool respawning too fast
Chris Buechler
05:38 PM Bug #3770 (Resolved): Some drivers not being built with altq support
fixed on everything I have handy to try Chris Buechler
04:15 PM Bug #3822 (Feedback): 2.2 boot hangs at "Synchronizing user settings"
this seems to have been fixed within the last day or two, at least the systems I had where it was replicable no longe... Chris Buechler
04:13 PM Bug #3702 (Resolved): gif interface assignment removes tunnel's inside IPv6 IPs
fixed Chris Buechler
04:13 PM Bug #3927 (Resolved): Unable to set gif MTU
If you set MTU on interfaces.php for a gif interface, it's not actually changed. For instance, see 22vpntest (info in... Chris Buechler
04:00 PM Bug #1047 (New): Disable TSO, hardware checksum don't work for unassigned but active interfaces
This is an issue on 2.2. Example at 172.27.32.125, see its igb1 where igb1_vlan10 is assigned but igb1 isn't. Chris Buechler
02:17 PM Revision 1f237bb4: Fix pf syntax s/divert/divert-to/. It should fix #3921
Renato Botelho
02:09 PM Bug #3925 (Rejected): dnsmasq refuses non-standard port for domain overrides
you can manually configure the domain overrides instead, or use a port forward to rewrite the target port for that de... Chris Buechler
12:50 PM Bug #3925 (Rejected): dnsmasq refuses non-standard port for domain overrides
According to the dnsmasq documentation, the syntax for a domain override is --server=[/[<domain>]/[domain/]][<ipaddr>... Andreas Pflug
02:07 PM Bug #3524 (Rejected): [IPv6] SSDP and LLMNR multicast traffic blocked on LANs
not a bug Chris Buechler
02:06 PM Bug #3926 (Resolved): clearing MTU field on interface doesn't set back to default
If you set an interface's MTU on interfaces.php, save and apply changes, then clear the MTU field so there is nothing... Chris Buechler
12:17 PM Bug #3924 (Resolved): Renaming limiters removes them from firewall rules
Hello,
* Created two bandwidth limiters "OutLimit" and "InLimit".
* Selected then as In/Out in a firewall WAN rul...
Eduard Rozenberg
11:31 AM Bug #3921 (New): max-packets option missing from pfctl
Renato Botelho
11:08 AM Bug #3921: max-packets option missing from pfctl
This seems to have corrected the syntax issues. There appears to be some performance issues now. I understand some pe... Steven Selph
09:48 AM Bug #3921: max-packets option missing from pfctl
Steven Selph wrote:
> This change seems to only address half the issue. The max-packets option still seems to be mis...
Renato Botelho
09:41 AM Bug #3921: max-packets option missing from pfctl
This change seems to only address half the issue. The max-packets option still seems to be missing or is that somethi... Steven Selph
09:30 AM Bug #3921 (Feedback): max-packets option missing from pfctl
Applied in changeset commit:1f237bb460b8ae7a8803adfb3a8b21b485131ab4. Renato Botelho
08:40 AM Bug #3921: max-packets option missing from pfctl
max-packets option is missing from pfctl parser. I'm working on a fix Renato Botelho
08:34 AM Bug #3911: VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
I'm sorry i was not clear, IP alias on CARP ip is *not* what i want, i want "ifconfig wan_vip2 vhid 2 alias 1.2.3.2",... Tony den Haan
05:47 AM Feature #3923 (Rejected): Rules MAC Block
I think pfsense need native feature to block MAC ADDRESS via rules. Today should use ipguard or dhcpd to achieve. Gilmar Cabral
05:00 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
Here are logs from clean start with only one ovpn instance enabled. Obviously, "2nd" instance is being detached, beca... Dmitriy K
02:24 AM Bug #3922 (Resolved): jumbo frames on lagg not working
Setting a MTU on a lagg interface greater than the Ethernet interface MTU fails in 2.2. To replicate:
- create a la...
Chris Buechler

10/09/2014

11:55 PM Bug #3440 (Resolved): Aliases, Networks and the vanishing subnets inside of Google Chrome
fixed a while back Chris Buechler
11:46 PM Bug #2755 (Closed): PFSense fail to upgrade if using VMXNet cards under Vmware
resolves itself, as Ermal noted Chris Buechler
10:57 PM Bug #2038 (Closed): Some 3G WANs on 2.0.x do not come up on cold boot
This needs to be re-tested from scratch on 2.2 by someone who has the affected hardware. There's a good chance it's f... Chris Buechler
05:31 PM Bug #3860: Selection of Enable STARTTLS disapears after clicking TEST SMTP on system_advanced_notifications.php
The pull request you mention indeed fixes the problem for me on 2.1. Thank you. Nicolas Coomer
12:13 PM Bug #3860: Selection of Enable STARTTLS disapears after clicking TEST SMTP on system_advanced_notifications.php
This is fixed in 2.1 branch by https://github.com/pfsense/pfsense/pull/1308
Then I saw that it got re-engineered in ...
Phillip Davis
05:01 AM Bug #3860: Selection of Enable STARTTLS disapears after clicking TEST SMTP on system_advanced_notifications.php
I can confirm this bug on pfSense 2.1.5-RELEASE. This also happens if instead of "Enable STARTTLS" you are using "Ena... Nicolas Coomer
04:55 AM Bug #3860: Selection of Enable STARTTLS disapears after clicking TEST SMTP on system_advanced_notifications.php
I can confirm this bug on pfSense 2.1.5-RELEASE. This also happens if instead of "Enable STARTTLS" you are using "Ena... Nicolas Coomer
05:08 PM Bug #3921: max-packets option missing from pfctl
Attached my config.xml. The l7 portion results in the following /tmp/rules.debug line:
pass in log quick on $GUES...
Steven Selph
03:38 PM Bug #3921: max-packets option missing from pfctl
Could you share your config.xml sanitized? Renato Botelho
03:36 PM Bug #3921: max-packets option missing from pfctl
Sorry copy and paste issues meant to say
Rules are generated using "divert port (max-packets 8)"
Steven Selph
03:35 PM Bug #3921 (Resolved): max-packets option missing from pfctl
using "divert port (max-packets 8)"
This causes pf to throw a syntax error since divert and max-packets don't appe...
Steven Selph
04:42 PM Revision cce09d94: Ticket #3860 Correctly display SMTP SSL TLS boxes
After using the "Test" button, $_POST['smtpssl'] and $_POST['smtptls'] was 'on' or null - this got blindly copied bac... Phil Davis
03:15 PM Feature #1833: PPTP type WAN IPv6 support
not important for 2.2 Chris Buechler
03:08 PM Bug #3911: VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
It has to be an IP alias on top of the CARP IP. Please use one of our support resources for further assistance. https... Chris Buechler
05:25 AM Bug #3911: VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
So, what's the story? I've wasted way too much time on this. Am i really supposed to edit /cf/conf/config.xml to make... Tony den Haan
01:34 PM Bug #3920 (Rejected): Backup of CA files broken
Using the Backup/Restore feature, CA sections seem to be interrupted in the long lines. See forum post:
https://f...
Greg Harris
12:35 PM Bug #3919 (Resolved): carp vhid=255
When a carp vhid=255 is used, the CARP interface fails to sync correctly and logs errors such as:
VRRPv2, Advertisem...
Greg Harris
08:35 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
Error code 61 means "Connection refused". Dmitriy K
08:07 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
After some research I've found out that system can't connect to "detached" ovpn instance socket.
I've added some l...
Dmitriy K
06:36 AM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
I'm experiencing the same issue with 2.1.5 i386. But with my LAN (em) interface. I guess this is a bug with FreeBSD i... Cino .
12:38 AM Bug #2753 (Closed): RRD Graphs failes after pfSense upgrade (2.0.1 -> 2.0.2)
Chris Buechler
12:24 AM Bug #3213: Error creating more than 30 limiters
config snippet with 30 limiters attached if you want to just paste something in ready to test (add one after pasting ... Chris Buechler
12:19 AM Bug #3061 (Closed): Updating 2.1 snapshots nukes the bogons lists
not sure if this was true at that point, it's not now. Chris Buechler
12:03 AM Bug #2748 (Closed): Route53 DynDNS Updater does not work
I know there are a number of people using this Chris Buechler
12:02 AM Bug #2713 (Resolved): missing input validation for mobile IPsec P2 to prevent transport
Chris Buechler
12:02 AM Bug #2582 (Closed): OpenVPN service won't start after changing the IP of interface
this works as it should in 2.1.5 and 2.2 Chris Buechler
12:01 AM Bug #2374 (Resolved): When entering values in firewall rules leading and trailing spaces are not deleted
Chris Buechler
12:00 AM Bug #1851 (Closed): ECC-Cert breaks the webconfigurator
Chris Buechler

10/08/2014

11:59 PM Bug #1959 (Resolved): openssl does not accept ECC-certificates
Chris Buechler
11:58 PM Bug #1969 (Resolved): IPsec refuses connection after first Cisco Client connection
these scenarios were fixed a while back for at least the significant majority. Any outstanding issue in racoon is no ... Chris Buechler
11:54 PM Bug #3213: Error creating more than 30 limiters
Thinking this is trivially easy to fix, just a matter of fixing the input validation it appears.
Ermal, any techn...
Chris Buechler
11:33 PM Bug #3256 (Rejected): dnsmasq replying with incorrect address
nothing to go on here, need a replicable scenario of where it's not working. It works fine in general. Chris Buechler
11:29 PM Bug #3317 (Rejected): ntpd sets stratum 16 (unsynced) when selected to listen on multiple interfaces
I don't think there's a general issue here. There are tons of systems out there that run ntpd selected on multiple in... Chris Buechler
11:26 PM Bug #3561 (Resolved): PPTP VPN broken without RADIUS - always requires RADIUS server configuration.
the original issue here was the result of a config upgrade issue that's since been fixed at some point. I tested rest... Chris Buechler
10:57 PM Bug #3866 (Resolved): firewall log filtering
fixed Chris Buechler
10:48 PM Bug #3389: GUI allows to configure ICMPv4 types for ICMPv6 firewall rules
still an issue in 2.2 Chris Buechler
04:25 PM Bug #3884: Restarting Web GUI does not restart PHP-FPM
True, yeah php-fpm should handle those scenarios on its own.
Let's leave it as is, but fix the menu layout. 8 sho...
Chris Buechler
07:26 AM Bug #3884: Restarting Web GUI does not restart PHP-FPM
In 2.2 there are many things using php-fpm.
While before php would get stuck and probably for other reasons php-fpm ...
Ermal Luçi
11:54 AM Revision 9da083fc: Fix an error introduced in bd0b5d2dc7 that makes system believe interfaces always mismatch
Renato Botelho
08:08 AM Bug #3918 (Resolved): On 2.2, mounting read-only after mounting read-write can be very slow on certain media NanoBSD
Same issue as #2401 but it's happening again on 2.2:
Mounting read-only after mounting read-write can be very slow...
Jim Pingle
04:33 AM Revision bd0b5d2d: Remove the minimum NIC warning, this dates back to when minimum 2 NICs were supported and it made sense to throw this message at people. It's obvious a network appliance requires at least one NIC.
Chris Buechler
01:19 AM Bug #3891: ipfw, on pfSense 2.2 kernel dump caused by: ipfw zone 4096 create
Confirmed, simply running "ipfw zone 4096 create" will reproduce. Chris Buechler
01:17 AM Bug #3864 (Resolved): /diag_dump_states.php has duplicate <form> element
Chris Buechler
01:17 AM Bug #3817 (Resolved): Missing call to preg_quote at pkg-utils.inc:295
Chris Buechler
01:17 AM Bug #3789: rc.update_bogons.sh and login shell ignore http proxy settings
this is really annoying in proxy scenarios and should be trivially easy to fix. Just a matter of setting ftp_proxy, h... Chris Buechler
12:56 AM Bug #3677 (Closed): packages.pfsense.org fails on IPv6
there is another ticket for v6 to v4 fallback in general Chris Buechler
12:53 AM Bug #3397 (Needs Patch): Cannot load builtin or external firmware for mwl driver
what JimP has there is as good as anything will get for that driver. It's likely better behaved in 2.2 with the impro... Chris Buechler
12:44 AM Bug #3665 (Resolved): IPsec tunnel description not displayed on status output
fixed Chris Buechler
12:43 AM Todo #34 (Needs Patch): PPTP users integration with user manager
not worth the effort at this point, PPTP is dead. Chris Buechler
12:42 AM Bug #3917 (Resolved): Mobile IPsec status page issues
When viewing diag_ipsec.php with mobile IPsec configured, there are a couple issues.
1) if there are no clients c...
Chris Buechler
12:36 AM Feature #3916 (Closed): IPsec status Overview tab no longer an overview
diag_ipsec.php is way too noisy in 2.2. Those are good details to have, but what you want as an overview is a quick g... Chris Buechler
12:28 AM Bug #3535 (Resolved): Selecting "LAN" as "WAN" in Multi-WAN Traffic Shaper wizard breaks the ruleset
fixed Chris Buechler

10/07/2014

11:40 PM Bug #3884 (New): Restarting Web GUI does not restart PHP-FPM
I'm not sure this should be its own menu item. The vast majority of the time that the web interface gets hung up, it'... Chris Buechler
07:59 AM Bug #3884 (Feedback): Restarting Web GUI does not restart PHP-FPM
A new menu entry was added Renato Botelho
06:17 PM Revision b4bd9c56: Update the URL for snapshots update
Ermal LUÇI
05:44 PM Revision 86ce2df7: Be more strict when checking if olsrd is enabled, otherwise when package is deinstalled and configuration is kept dhcpd will consider it's always as enabled
Renato Botelho
01:50 PM Bug #3911: VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
What aliases? The dialog only accepts IP address. That's why i wondered if i was supposed to try the "IP aliases" tab... Tony den Haan
01:36 PM Bug #1345 (Closed): Static routes to DNS on local subnet should not be added
not sure if this behaved differently in earlier base OS versions, but it doesn't hurt anything in 8.3 and 10.x base v... Chris Buechler
01:25 PM Bug #3915 (Feedback): DHCP server static mapped clients do not receive custom DNS servers
also works fine here. Suspect client-side issue, will leave for feedback from Phil. Chris Buechler
10:35 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
Oh dear - I was thinking this was going to be a nice clear bug, since I noticed it on my test 2.2 system, then did si... Phillip Davis
07:58 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
I tried it on 2.2 and 2.1.5 and both worked as expected, my test config is similar to the one you posted. Renato Botelho
06:28 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
In 2.2 and using DNS Resolver it seems other way around. If you don't config custom DNS on DHCP client don't pic DNS ... Raul Ramos
01:17 PM Bug #3853 (Resolved): DHCP Server failover_peerip is not synchronized on 2.2 with CARP
works Chris Buechler
02:00 AM Revision 3b5707db: Support up to 4 DNS Servers in DHCP
Phil Davis
01:59 AM Revision 81af6a08: Support up to 4 DNS Servers in DHCP
Phil Davis
01:57 AM Revision 3d88ea11: Support up to 4 DNS Servers in DHCP
Phil Davis
01:55 AM Revision 6190312f: Support up to 4 DNS Servers in DHCP
Phil Davis
01:52 AM Revision 8cbb140a: Support up to 4 DNS Servers in DHCP
Phil Davis

10/06/2014

10:24 PM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
And here is the dhcpd.conf I forgot to attach. Phillip Davis
10:11 PM Bug #3915 (Resolved): DHCP server static mapped clients do not receive custom DNS servers
When I add a static mapped DHCP client, then put 2 custom DNS servers for that client (e.g. 8.8.8.8 and 8.8.4.4 to ov... Phillip Davis
10:01 PM Bug #3822: 2.2 boot hangs at "Synchronizing user settings"
If I halt the system then they will hang at "Synch user settings" ?? But if I pull the plug they seem to finish the... Chris Palmer
09:59 PM Bug #3822: 2.2 boot hangs at "Synchronizing user settings"
I have two machines on the latest 2.2 that hang every first boot but come alive after a re-boot. I can provide config... Chris Palmer
07:06 PM Bug #3822: 2.2 boot hangs at "Synchronizing user settings"
I updated the above mentioned redmine-3822.xml config file. I can reliably reproduce this hang by just restoring this... Chris Buechler
04:05 PM Revision a3cc8dcc: Add an option to restart php-fpm from console
Ermal LUÇI
03:47 PM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
Here is a video http://rghost.net/private/58388261/44e5fb12a48d08550c2bb5cd6c676bd3
Bug is 100% reproducible. My g...
Dmitriy K
05:29 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
Normally openvpn instances are restarted on interface up event!
Can you back this claim with proper information as...
Ermal Luçi
02:29 PM Bug #3846 (Resolved): Adding interface for new VLAN selects active WAN VIP address breaking connectivity
fixed Chris Buechler
12:54 PM Feature #3914: Support up to 4 DNS Servers in DHCP
That's reasonable Phil, feel free to submit that as a merge request to master. Chris Buechler
11:01 AM Feature #3914: Support up to 4 DNS Servers in DHCP
and OpenVPN server GUI has boxes to provide up to 4 DNS servers to clients, so it seems reasonable/consistent to have... Phillip Davis
10:55 AM Feature #3914 (Resolved): Support up to 4 DNS Servers in DHCP
System->General Setup already supports 4 DNS servers, which get passed to DHCP clients if DNS Forwarder is not enable... Phillip Davis
11:08 AM Bug #3911: VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
Our recommendation for that is to use ip aliases.
Since you have already configured a VIP(carp) why you want to ad...
Ermal Luçi
07:15 AM Bug #3911: VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
maybe my formulation is wrong, but shouldn't it be possible to add multiple IP addresses/aliases to same VHID? ifconf... Tony den Haan
10:31 AM Revision 9c296826: Fixes #3909 Properly report and detect carp_status
Ermal LUÇI
08:22 AM Revision 2d5fd3c2: Remove function that is not implemented properly. Nothing seems to use it.
Ermal LUÇI
08:21 AM Revision 4aa7f542: Merge pull request #1303 from PiBa-NL/carp_without_matching_subnet
Ermal LUÇI
08:16 AM Revision 042f0d12: Merge pull request #1304 from sselph/powerd_normal_mode
Ermal LUÇI
08:15 AM Revision 78aadc14: Merge pull request #1305 from phil-davis/patch-2
Ermal LUÇI
05:50 AM Bug #3909 (Feedback): carp_status.php shows disabled after initial config when it really isn't
Applied in changeset commit:9c2968266996b21bb4e3754ae7ae4d6100970563. Ermal Luçi
04:48 AM Revision fb0a4e7a: Fix not rules for OPTn network case
Reported in forum https://forum.pfsense.org/index.php?topic=82319.0
The "if (is_subnet($src)) ... filter_address_add_...
Phil Davis

10/05/2014

10:35 PM Revision 3d77cc35: Add powerd normal mode flag (-n)
Steven Selph
04:05 PM Bug #3913 (Resolved): if_bridge missing ALTQ support
Hello,
I just upgraded my pfSense 2.1.5 install to the latest 2.2 beta release.
Once the update completed, i coul...
Orsiris de Jong
02:33 AM Bug #3737: Incoming VLAN traffic fails to reach VLAN interface if PCP not 0
I encounter the same issue, with the patch PCP is working fine.
Can you push this patch so it can be included in the...
Damien Flament

10/04/2014

12:48 AM Feature #3328 (Resolved): Allow reordering of IPsec Phase 1 and Phase 2 entries
works Chris Buechler
12:31 AM Bug #1107 (Resolved): mpd on AMD64 generates invalid checksums with NAT
fixed Chris Buechler
12:24 AM Bug #3807 (Resolved): Unable to edit existing Virtual IPs
fixed Chris Buechler
12:22 AM Bug #3760 (New): reply-to with TCP and IPv6 generates broken checksums
still doesn't work on: ... Chris Buechler
12:13 AM Bug #3661 (Resolved): xauth user is not displayed in IPsec status
works Chris Buechler
12:00 AM Bug #3826 (Resolved): 2.2 diag_ipsec.php issues
these issues are fixed. The page as a whole needs some design work so "Overview" isn't a huge wall of text, will cove... Chris Buechler

10/03/2014

11:30 PM Bug #3823 (Resolved): diag_ipsec.php fails with PSK+Xauth mobile client connected
fixed Chris Buechler
10:34 PM Bug #3912 (Resolved): Dynamic DNS disallows valid character in username
OpenDNS allows a username (email) in the format of example+email@gmail.com, however the + sign trips up the services_... Brian Rozmierski
10:21 PM Bug #3822 (New): 2.2 boot hangs at "Synchronizing user settings"
still an issue in some particular edge case I haven't quantified yet. Chris Buechler
04:21 PM Bug #3911 (Rejected): VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
That forum thread has no relation. The scenario as described doesn't exist in 2.1.5 or 2.2. The input error "VHID ...... Chris Buechler
07:25 AM Bug #3911 (Rejected): VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
This happens when trying to add more IPs to a VHID, as discussed in https://forum.pfsense.org/index.php?topic=54885.0... Tony den Haan
03:15 PM Revision 4665dbdd: Make proper check if IP address is configured on another interfaces and ignore current one. It fixes #3807
Renato Botelho
10:20 AM Bug #3807 (Feedback): Unable to edit existing Virtual IPs
Applied in changeset commit:4665dbdd51ea845a4b84d5068b4ecf31cd9dce4b. Renato Botelho
07:06 AM Feature #3228: Please add an "Interface Down" Trigger Level for Gateway Group members
Chris Buechler wrote:
> Interface link down will trigger "interface down" from monitoring, so I fail to see a point....
Malte Stretz
05:53 AM Bug #3831: VPN PPTP, RADIUS issued IPs and secondary RADIUS server
Found that problem in MPD (and libradius library). (http://sourceforge.net/p/mpd/discussion/44693/thread/e738def4) Vyachelav B
03:21 AM Bug #2366: Error in User Manager - Privileges are not being enforced
You should follow setup procedures for AD.
Search the net and you will find them.
Ermal Luçi

10/02/2014

09:52 PM Bug #3822 (Resolved): 2.2 boot hangs at "Synchronizing user settings"
Edit: scratch that, still an issue in some particular edge case I haven't quantified yet. Chris Buechler
09:19 PM Revision 3c4fc30b: get back to our standard RFC-defined capitalization of IPsec
Chris Buechler
08:56 PM Revision 80a261a2: CARP, allow carp ip to be outside interface and alias subnets (FreeBSD10 feature)
Pi Ba
08:09 PM Revision 3258d442: Merge pull request #1300 from jean-m-cyr/master
Renato Botelho
08:09 PM Revision 90a430c7: Merge pull request #1298 from PiBa-NL/vips_sort
Renato Botelho
08:01 PM Revision 8d3c338e: firewall_virtual_ip make the table sortable remove double tfoot, but use 2 tr inside.
Pi Ba
07:18 PM Bug #3383: Web GUI becomes slow or unusable if the LDAP server used for GUI auth is unreachable
Another option would be to add an authentication realm drop down to the login page, like you would get on a windows m... Adam Esslinger
06:51 PM Bug #3383: Web GUI becomes slow or unusable if the LDAP server used for GUI auth is unreachable
It would also be nice if it supported multiple LDAP servers. In an AD environment there are multiple directory serve... Adam Esslinger
06:28 PM Bug #2366: Error in User Manager - Privileges are not being enforced
I have also experienced this bug. When pfsense is set to use LDAP as the authentication server (specifically Active ... Adam Esslinger
06:04 PM Bug #2889 (Closed): ACK Traffic Put in Normal Queues. Normal Traffic Put in ACK Queues
haven't seen that elsewhere, and can't replicate on current versions Chris Buechler
06:03 PM Bug #2173 (Closed): pfsync errors
Chris Buechler
06:01 PM Bug #1721 (Closed): uPnP issue with STATIC ip addresses
Chris Buechler
06:00 PM Bug #1304 (Resolved): Quick option ignored for "Queue" action rules on floating tab
Chris Buechler
05:59 PM Bug #731 (Resolved): Shaper: p2p catch all bandwidth allows various selections but only % usable
Chris Buechler
05:56 PM Feature #2847 (Resolved): Add a checkbox to flag a gateway as "down"
Chris Buechler
05:55 PM Feature #2295 (Resolved): Allow multiple OpenVPN compression settings (disable, yes, no, adaptive)
Chris Buechler
05:54 PM Todo #3632 (Resolved): Move to sqlite3 php module
Chris Buechler
05:53 PM Feature #73 (Resolved): Log failed PPTP vpn logins to PPTP log
fixed ages ago Chris Buechler
05:52 PM Feature #262 (Resolved): Add NAT-PMP support to miniupnpd
Chris Buechler
05:52 PM Feature #403 (Resolved): tinydns/dnscache drop in replacement for dnsmasq in pfSense
Chris Buechler
05:51 PM Bug #1333 (Resolved): Rate causes high CPU usage
fixed quite some time ago. Chris Buechler
05:51 PM Feature #1807 (Resolved): Button needed for '-add a new one-' on the static IP configuration
Chris Buechler
05:49 PM Bug #1909 (Resolved): dhcp dies after reboot
Chris Buechler
05:46 PM Feature #2281 (Closed): NAT reflection of UDP using "socat"
reflection of UDP works fine in pure NAT mode. Chris Buechler
05:46 PM Feature #2637 (Closed): Add ability to define dnsmasq cache size
dnsmasq no longer used Chris Buechler
05:45 PM Feature #2715 (Resolved): Don't reactivate CARP until I manually do it
feature exists in 2.2 Chris Buechler
05:44 PM Feature #2986 (Resolved): Turkish Language Import For Next Snapshots
Chris Buechler
05:43 PM Bug #2860 (Closed): packages don't get restored
as described is not a general issue, and good chance any edge case has been fixed in the years since. Chris Buechler
05:41 PM Feature #2834 (Needs Patch): carp+pfsync: add ability to prefer one node as master
Chris Buechler
05:40 PM Bug #2819 (Resolved): Unconstrained memory growth of tcpdump
this hasn't happened in 2.1x and newer versions Chris Buechler
05:39 PM Bug #3207 (Resolved): bug/feature expansion: ufslabels.sh doesn't account for gmirror systems.
Chris Buechler
05:37 PM Bug #3910: Cannot set advskew back to 0
This seems to me to be a FreeBSD bug, setting advskew to 0 never works.. Setting it to 1 is possible though. Perhaps ... Pi Ba
05:30 PM Bug #3910 (Resolved): Cannot set advskew back to 0
When leaving persistent CARP maintenance mode, the advskew is left at 254 on the running system, so it retains backup... Chris Buechler
05:33 PM Bug #3595 (Resolved): OpenVPN TAP/TUN <--> interface bridge not working after reeboot
Chris Buechler
05:32 PM Bug #3066 (Rejected): Proxy ARP failing with kernel error
issue as described doesn't exist. Chris Buechler
05:30 PM Feature #3522 (Resolved): Option to set CARP interfaces to 'maintenance mode', persisting through a reboot so the primary machines stays as backup/inactive
feature is implemented. There is still an outstanding problem with it not dropping back to the configured advskew, th... Chris Buechler
05:24 PM Bug #1983 (Resolved): Cancel Button generates a Confirm Form Resubmission message
fixed Chris Buechler
05:23 PM Bug #3635 (Rejected): Apinger does't start after upgrade to 2.1.3-RELEASE
there is no general bug here. Upgrades don't delete any groups, and of tens of thousands of systems that have upgrade... Chris Buechler
05:20 PM Bug #3604 (Rejected): Traffic shaper wizard rules can't be deleted
no outstanding bugs here, the wizard history has no functional impact and is retained for convenience. The lacking in... Chris Buechler
04:56 PM Feature #3228 (Rejected): Please add an "Interface Down" Trigger Level for Gateway Group members
Interface link down will trigger "interface down" from monitoring, so I fail to see a point. Chris Buechler
04:53 PM Feature #3186 (Resolved): Firewall: NAT: 1:1: Edit
I added a note to the documentation re: destination, which is the only legit issue here. Chris Buechler
04:44 PM Todo #3893 (Resolved): Alias -> IP
Chris Buechler
04:43 PM Bug #3876: pfsync is not synchronizing states on 2.2
Confirmed as described, whether multicast or unicast, no pfsync traffic is ever seen on the wire. Chris Buechler
04:03 PM Bug #3807 (New): Unable to edit existing Virtual IPs
original issue still exists Chris Buechler
04:02 PM Bug #3825 (Resolved): Rejected traffic shown as blocked in firewall log
fixed Chris Buechler
03:59 PM Bug #3909 (Resolved): carp_status.php shows disabled after initial config when it really isn't
To replicate:
Take a clean default config, and add a CARP IP. Apply changes. Go to Status>CARP. It shows disabled...
Chris Buechler
07:51 AM Bug #3450: DHCPv6 Lease Status shows no Leases
@pfSense used in notes #4 was i386/32bit.@ Vinícius Zavam
07:46 AM Feature #3908 (Rejected): Set gateway outside the range of wan address
Duplicate of #972 Jim Pingle
07:38 AM Feature #3908 (Rejected): Set gateway outside the range of wan address
For example:
An ISP give you an IP: 5.30.2.24/32 and give you a gateway with an address in an other range : 217.13...
Pierre-Antoine Zeebroeck

10/01/2014

05:06 PM Revision d4f4ebc7: Remove stray 'i'.
Reported-by: https://forum.pfsense.org/index.php?topic=82393.0 Jim Pingle
04:18 PM Bug #3450: DHCPv6 Lease Status shows no Leases
*Manual Action is Needed!*
* pfSense's "DHCPv6 Leases" page can show the hosts after that....
Vinícius Zavam
03:58 AM Bug #3771: Webinterface and dhcpdcrashes with 500+ static leases
It's easy to reproduce, setup an HA setup with dhcpd failover and create about 500 leases.
If I deactivate the dhc...
Niels Gassen
12:37 AM Feature #3907 (Resolved): OpenVPN widget connected client count display
Hello,
It would be nice to know how much openvpn clients are connected.
The Dashboard widget's title is "Server TC...
Todor K

09/30/2014

06:14 PM Bug #3906 (Rejected): Menu bar wraps, System menu hard to access
Duplicate of #3842 Jim Pingle
05:55 PM Bug #3906: Menu bar wraps, System menu hard to access
I've just realised this is a duplicate of https://redmine.pfsense.org/issues/3842
Sorry.
Criggie .
05:48 PM Bug #3906 (Rejected): Menu bar wraps, System menu hard to access
From a debian and a fedora linux client, I have problems accessing the System menu in the webgui. The HELP menu is ... Criggie .
09:48 AM pfSense Packages Bug #3905 (Closed): Upgrade from 2.1.3 to 2.1.5 broken Net/SNMP.pm path
This results in issues with some plugins of Nagios. e.g.
/usr/pbi/nrpe-amd64/libexec/nagios/check_ifoperstatus
...
Rens Autempspourmoi
07:31 AM Bug #3904 (Resolved): Firewall Log widget generates a load of HTML code when Reverse DNS resolution is clicked
As per this forum report by chpalmer:
https://forum.pfsense.org/index.php?topic=82254.0
The version from 2.1 bran...
Phillip Davis
07:07 AM Todo #3903: Disable NTPD server
In addition to being a duplicate ticket, that's not a valid reason for wanting to disable ntpd.
Free tip: Bind Ope...
Jim Pingle
06:47 AM Todo #3903 (Rejected): Disable NTPD server
Duplicate of #3567 Renato Botelho
05:09 AM Todo #3903 (Rejected): Disable NTPD server
I've my Openvpn servers runs on port 123 UDP, when the firewall rebooting NTPD or OpenVPN service is down... ( same p... Oscar Francia
06:49 AM Todo #3893 (Feedback): Alias -> IP
Pull request has been merged Renato Botelho

09/29/2014

06:49 PM Bug #3634 (Rejected): Default gateway not restored after it comes back online
duplicate of #1837 and/or #1705 Chris Buechler
06:46 PM Bug #3875 (Feedback): interface reporting dscrepancy
Hey Ike,
Sounds like some general known issues in 8.x base with certain NICs in certain circumstances, the underl...
Chris Buechler
06:32 PM Bug #3865 (Rejected): With explicit block-everything rule in firewall it incorrectly blocks LAN to LAN DHCP broadcast 0.0.0.0 and 255.255.255.255
no bug here. Chris Buechler
05:20 PM Feature #3633 (Resolved): OpenVPN client's "Client Certificate" should be optional
works Chris Buechler
05:01 PM Bug #3849 (Rejected): Compex WLE200NX wireless card stops responding
driver issue that's outside our control, and is almost certainly fixed in 2.2's base OS. Chris Buechler
04:59 PM Bug #3877 (Rejected): OpenVPN Client Connection routing Internettraffic
config issue, not a bug. Please use one of our support resources for assistance. https://pfsense.org/support
Chris Buechler
04:58 PM Feature #3897 (Rejected): recurring schedules
this has been possible for years Chris Buechler
04:58 PM Bug #3867 (Rejected): Fatal error: Allowed memory size of 134217728 bytes exhausted (tried to allocate 71 bytes) on diag_states_summary.php version 2.1.5
duplicate of #3796 Chris Buechler
03:35 AM Revision c7fa58ac: Fix up NTP status page formatting
Number of columns is not the same for all table rows Jean Cyr

09/28/2014

11:00 PM Feature #3453: Management GUI (lighttpd) interface binding control
Well, just had to do another pfSense update, and then had to go through the ritual of patching files to make it work.... Ted Lum
08:56 PM Revision 547d7641: firewall_virtual_ip make the table sortable
Pi Ba
07:28 PM Bug #3902 (Resolved): dhcp6c can't handle Server Unicast Option
Hi
My ISPs DHCP6 server uses the Unicast Option (http://tools.ietf.org/html/rfc3315#section-22.12) which seemingly...
Philippe Schnyder
05:36 PM Bug #3901 (Rejected): DynDNS is not forcefully updated after powerup
Hi
I was playing around with two instances of pfSense (with the same config).
pfSense1 had IP a.b.c.x (via DHCP) ...
Philippe Schnyder
03:23 PM Revision 762a7b89: Spelling
Phil Davis
03:16 PM Bug #3900: DynamicDNS should allow "@" at hostname
BTW, where these configs are stored? Could I change them directly via Diagnostics / Edit File? It would be a good wor... F. D.Castel
03:11 PM Bug #3900 (Resolved): DynamicDNS should allow "@" at hostname
No-ip has the ability to update one of several IP addresses of a round-robin DNS A record. This is done adding a "@<l... F. D.Castel

09/27/2014

07:17 PM Revision e7b03bc1: Merge pull request #1295 from phil-davis/patch-21
Renato Botelho
05:19 PM Revision 6b18c66b: Clarify bracketing
to minimize risk of a problem when adding code here in the future. Phil Davis
05:10 PM Revision 055a43d2: Allow extended alias inputs #3890
Currently if you enter a space-separated list of subnets in the IP address box when entering an alias, the code repor... Phil Davis
04:40 PM Feature #3899 (New): Add feature to allow reordering of <package> items in config.xml
Would it be possible to add a new page that would allow an admin/user to change the order in which packages are order... Cino .
12:36 PM Bug #3890: Aliases multiple CIDR ranges show error message
The version for 2.2 was not so difficult to integrate:
https://github.com/pfsense/pfsense/pull/1297
Phillip Davis
11:26 AM Bug #3890: Aliases multiple CIDR ranges show error message
It was kind-of a feature:) It fills out all the rows when you press Save the first time but tells you that the data i... Phillip Davis
12:08 PM Revision da7f6588: Spelling
Phil Davis
12:04 PM Revision ff5fa759: Spelling
Phil Davis
12:02 PM Revision 3c4cddc7: Spelling
Phil Davis
11:59 AM Revision 0a97a7bb: Spelling
Phil Davis
11:51 AM Revision 51dc66c9: Spelling
Phil Davis
11:49 AM Revision ec074a86: Spelling
Phil Davis
11:47 AM Revision f64b0b8e: Spelling
Phil Davis
11:45 AM Revision 15c58806: Spelling
Phil Davis
11:38 AM Revision abe63176: Spelling
Phil Davis
11:37 AM Revision fb3b7640: Spelling
Phil Davis
11:35 AM Revision 4304dd97: Spelling
Phil Davis
11:34 AM Revision 8913533d: Spelling
Phil Davis
11:26 AM Revision 47e1f0d4: Spelling
Phil Davis
04:14 AM Bug #3896: ipv6 pppoe ISP with static adress
I am trying with 2.2-BETA (i386) built on Fri Sep 26 14:06:31 CDT 2014
Pareil mais pas mieux. similar but not better
xavier Lemaire

09/26/2014

06:17 PM Bug #3898: Traffic Graph webpage freezes up after some time
my pfsense is:
2.1.5-RELEASE (i386)
built on Mon Aug 25 07:44:26 EDT 2014
FreeBSD 8.3-RELEASE-p16
You are on ...
carl paulino
06:17 PM Bug #3898 (Closed): Traffic Graph webpage freezes up after some time
Anytime I leave the page up 'Status-->Traffic Graph' on my Mac 10.9.5 Safari 7.1 browser, eventually the whole page w... carl paulino
04:56 PM Revision adab585d: Merge pull request #1294 from phil-davis/patch-19
Renato Botelho
04:56 PM Revision 45cd176a: Merge pull request #1293 from phil-davis/patch-20
Renato Botelho
04:18 PM Revision bbd1f783: firewall_aliases_edit UI text changes
If type URL Table then the heading "Description" on the 3rd column gets suppressed (I am not really sure why that is,... Phil Davis
04:01 PM Revision c5cfa06b: Minor fixes to firewall_aliases_edit
for 2.1 branch Phil Davis
03:41 PM pfSense Packages Feature #3685: haproxy listener ip from alias
Hi Atıf are you using the haproxy-devel 1.5.x package?
If so could you share the <haproxy> part of a configfile yo...
Pi Ba
03:11 PM pfSense Packages Bug #3892: Critical bash vulnerability CVE-2014-6271
Security Announcement posted:
https://www.pfsense.org/security/advisories/pfSense-SA-14_18.packages.asc
Jim Pingle
07:36 AM pfSense Packages Bug #3892 (Feedback): Critical bash vulnerability CVE-2014-6271
Affected packages have been either updated or removed.
* FreeRADIUS2: Package updated with a patched version of ba...
Jim Pingle
11:31 AM Feature #3897: recurring schedules
You can already make these, IMHO. e.g. I have one called OfficeTime that looks like:
OfficeTime
Mon - Thur 14:0...
Phillip Davis
08:49 AM Feature #3897 (Rejected): recurring schedules
it would be great to have the possibility to create recurring schedules such as "working hours", ... Anonymous
11:22 AM Todo #3893: Alias -> IP
See https://github.com/pfsense/pfsense/pull/1293 for my suggested change, which also fixes up a little issue with the... Phillip Davis
03:17 AM Todo #3893 (Resolved): Alias -> IP
Hi !
In the Web-GUI under Alias - IP - Hosts only IP is shown when addng a new entry.
Perhaps there should also be ...
Anonymous
10:13 AM Revision ace5483e: Merge pull request #1292 from phil-davis/patch-18
Renato Botelho
07:20 AM pfSense Packages Bug #3816 (Feedback): Bump FreeRADIUS to fix libssl version mismatch error
Please try latest version. Renato Botelho
06:21 AM Bug #3877: OpenVPN Client Connection routing Internettraffic
1. There is no need to set *IPv4 Configuration Type* to "DHCP" at all. Ovpn client interfaces are autoconfigurable. S... Dmitriy K
06:12 AM Bug #3896 (Resolved): ipv6 pppoe ISP with static adress
Hi all,
Funny case In France Nerim provider doesn't affect IPV6 address in adsl PPPOE.
It is dual IPV4 / IPV6 acc...
xavier Lemaire
06:11 AM Feature #3895 (New): Timeout for "Apply change"
It would be nice to have a timeout when you applied changes to make it possible to revert changes back if no cofirmat... Dmitriy K
05:48 AM Bug #3894 (Resolved): OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
Requirements:
1. WAN connection should not be Static/DHCP!
Steps to reproduce:
1. Create an ovpn client instance...
Dmitriy K
03:51 AM Bug #3205: Partial system freeze when disconnecting USB 3G stick
any fix for this as its still troubling me Bipin Chandra
02:40 AM Revision 62218b4d: Remove useless check for alias description matching an interface description
While looking at other checks in the code I noticed this check. It was not effective anyway, because the first line i... Phil Davis
02:18 AM Bug #3312: Gateway on IPsec rules is not functional in pf
hello,
I installed 2.1.5 and when I put a getaway on ipsec rules, traffic goes to the default.
Is it a bug?
Frédéric Pougnault

09/25/2014

07:39 PM pfSense Packages Bug #3892: Critical bash vulnerability CVE-2014-6271
Checking further: git, avahi, and ntopng use bash during the build but do not include it in the PBI for installation.... Jim Pingle
07:29 PM pfSense Packages Bug #3892: Critical bash vulnerability CVE-2014-6271
Update again:
More affected packages, full list is now:
git, avahi, freeradius2, ntopng, mailscanner
Jim Pingle
05:49 PM pfSense Packages Bug #3892: Critical bash vulnerability CVE-2014-6271
Also: The mailscanner package appears to be affected along with FreeRADIUS2 Jim Pingle
05:37 PM pfSense Packages Bug #3892: Critical bash vulnerability CVE-2014-6271
[2.2-ALPHA][admin@apu.localdomain]/root(1): which bash
bash: Command not found.
[2.2-ALPHA][admin@apu.localdomain]/...
Jim Pingle
05:36 PM pfSense Packages Bug #3892: Critical bash vulnerability CVE-2014-6271
2.2 does not include bash. No base install includes bash. If you added it manually, it came from FreeBSD, or perhaps ... Jim Pingle
05:31 PM pfSense Packages Bug #3892 (Resolved): Critical bash vulnerability CVE-2014-6271
2.2-beta appears vulnerable:... Steve Thomas
03:37 PM Bug #3891 (Resolved): ipfw, on pfSense 2.2 kernel dump caused by: ipfw zone 4096 create
ipfw is used by captive portal, and uses a cpzoneid to create a zone in ipfw using mwexec("/sbin/ipfw zone {$cpzonei... Pi Ba
01:04 PM Bug #3890 (Resolved): Aliases multiple CIDR ranges show error message
Hi
If you create a new IP alias for network white-listing with any CIDR ranges separated by a space, pfsense WILL ...
Gio M
12:55 PM Revision 7ea27b0d: Be more strict on removing groups checking group id and group name, it avoids issues like happened to users on ticket #3856. While I'm here, replace GET by POST
Renato Botelho
12:29 PM Revision fbe0d698: Be more strict on user removal checking array id and also username to avoid removing wrong users when browser back button is used. It should fix #3856
Renato Botelho
11:18 AM Revision e45e3bf4: Merge pull request #1290 from jean-m-cyr/master
Renato Botelho
11:13 AM Revision b4db2d0e: Remove also old unbound startup script
Renato Botelho
07:41 AM Bug #3849: Compex WLE200NX wireless card stops responding
I had the same issue, with nearly the same setup (APU 1D4 engine).
What really helped me, was to set the Wireless ...
Mischa De Pol
07:30 AM Bug #3856 (Feedback): Delete a user, edit another one and going back... delete the edited user
Applied in changeset commit:fbe0d6986aef1ce933f91ad34ba9393344693180. Renato Botelho
01:26 AM Revision 31377265: Support IPV6 in unbound.conf
IPv6 addresses are not included in unbound config and access list Jean Cyr

09/24/2014

11:58 PM Revision 78244277: Merge pull request #1289 from jean-m-cyr/master
Renato Botelho
11:10 PM Revision 806bf882: outgoing ip incorrectly set in unbound.conf
DNS resolver outgoing IP interface IP address is incorrectly set to the
last inbound interface IP address... fix it.
Jean Cyr
09:43 PM Revision c11b7ffe: Remove unbound files, menu and service during config upgrade, otherwise things can go really bad with functions redeclared un base and package unbound.inc and config corrupted when upgrading from 2.1.x with unbound installed to 2.2. PBI and package section are both removed later during package upgrade
Renato Botelho
06:28 PM Revision 90a95930: Merge pull request #1288 from brunostein/fix_button_close_info_box
Renato Botelho
06:20 PM Revision 370b4666: Fix close button in the info box
Bruno Ferri
12:41 PM Bug #3883: Changing SNMP Bind Interface does not change actual bind interface of SNMP service.
At a minimum, upgrade to 2.1.5. If you still have a problem, post on the forum. Jim Pingle
12:31 PM Bug #3883: Changing SNMP Bind Interface does not change actual bind interface of SNMP service.
There are six interfaces on this system. This is the output for binding to interface All, LAN, two other interfaces,... J B
10:10 AM Revision abf2e0f1: Merge pull request #1287 from jean-m-cyr/master
Renato Botelho
09:53 AM Revision a99547e4: Provide a toggle for apinger debug messages to be logged to syslog. To help with roubleshooting issues
Ermal LUÇI
05:52 AM Bug #3889 (Confirmed): Non relevant changes in config.xml
Version 2.1.5:
I push the configs to git for QA.
I have a lot of changes in empty tags (from short to long format...
Grischa Zengel
02:09 AM Revision 3be4caf9: NTP Service GPS page always reverts to 'Custom' GPS type
Remember and correctly display GPS type setting Jean Cyr
 

Also available in: Atom