Activity
From 09/24/2014 to 10/23/2014
10/23/2014
-
07:25 PM Feature #3385 (Needs Patch): Accommodate static routes for PPTP connections
- PPTP is dead, and shouldn't be used in this context anyway
-
07:23 PM Bug #3955 (Resolved): IPsec dashboard widget needs adapting for 2.2
- The IPsec dashboard widget needs updating to understand strongswan's status.
-
05:00 PM Bug #3901: DynDNS is not forcefully updated after powerup
- that's a scenario that no client accounts for. Excessive updating can get you banned from some of the providers, whic...
-
04:03 PM Bug #3901: DynDNS is not forcefully updated after powerup
- From my point of view the current behaviour is not perfect.
As I described above it might be the case that the data ... - 02:25 PM Revision e112f9ee: Merge pull request #1312 from phil-davis/patch-8
- 02:24 PM Revision 095707fe: Merge pull request #1313 from phil-davis/patch-9
-
10:12 AM Bug #3954 (Rejected): Port forwarding rule changes do NOT take affect
-
10:06 AM Bug #3954: Port forwarding rule changes do NOT take affect
- Nevermind, I found that vpn->pptp->redirect to x.x.x.x was configured. please close bug.
-
09:21 AM Bug #3954 (Rejected): Port forwarding rule changes do NOT take affect
- my pfsense is:
2.1.5-RELEASE (i386)
built on Mon Aug 25 07:44:26 EDT 2014
FreeBSD 8.3-RELEASE-p16
I have a po... -
09:16 AM Bug #3898: Traffic Graph webpage freezes up after some time
- After upgrading my Mac to Yosemite 10.10 and Safari to 8.0, I don't have this problem anymore. I do see the page free...
-
06:46 AM Bug #3944 (Feedback): git fatal errors are not shown to user when building pfSense iso from source.
- Pushed
-
04:12 AM Bug #2882: 6RD not working in latest snapshots
- I'm using the latest snapshot (amd64 built on Tue Oct 21 22:27:38 CDT 2014) and it seems like 6rd still isn't working...
10/22/2014
-
03:27 PM Bug #3369: Captive vouchers expire too quickly
- Chris Buechler wrote:
> mine for further testing when time permits
good luck :) -
12:12 PM Bug #3369: Captive vouchers expire too quickly
- mine for further testing when time permits
-
12:07 PM Bug #3369: Captive vouchers expire too quickly
- Thanks maz, got it. One follow-up question sent via email.
-
03:55 AM Bug #3369: Captive vouchers expire too quickly
- I have sent you the link through your email Chris cmb(at)pfsense
please do not share the image publicly as its key... -
11:42 AM Bug #1957 (Confirmed): Remove button-inside-hyperlink usage from web forms
- this is still the case, though only IE seems to care, it's still an issue in IE 11.
10/21/2014
-
06:43 PM Revision a376c57d: Teach the certificate generation code how to make a self-signed certificate, and
- change the GUI cert generation code to use it. Also, move the GUI cert
generation code to its own function so we can ... -
06:25 PM Revision c25d1fd7: Encode values before displaying them back to the user in notification settings
-
06:25 PM Revision 5b473705: Encode values before displaying them back to the user in notification settings.
-
05:52 PM Bug #3946 (Confirmed): Disabling RAM Disk doesn't remove schedule from /etc/crontab if schedules aren't disabled
- 05:46 PM Revision 687d0a6d: remove the command number shown in the shell prompt, it's a pointless
- waste of screen space
-
05:43 PM Bug #2724 (Resolved): CARP IPs in INIT on both firewalls leads to dual master
- it doesn't appear to be possible to get a system into this state in FreeBSD 10.x, it's been fixed since 8.x.
-
05:42 PM Bug #2166 (Resolved): Dynamic DNS not updating
- this definitely works on 2.1x and 2.2.
-
05:41 PM Bug #3924 (Confirmed): Renaming limiters removes them from firewall rules
-
04:59 PM Bug #3576 (Resolved): Console upgrade automatically skips hash check if no hash file found
- works
-
04:53 PM Bug #3797 (Resolved): DHCP server restarted multiple times on secondary after config sync
- this looks to be fine, scenarios that previously triggered multiple restarts on the secondary now only have it restar...
-
04:48 PM Bug #3876: pfsync is not synchronizing states on 2.2
- Additional info, secondary spits this out: ...
-
03:18 PM Bug #3951: Processes like filterdns and ipfw-classifyd accumulate many open file handles
- Here it is!
-
03:13 PM Bug #3951: Processes like filterdns and ipfw-classifyd accumulate many open file handles
- could anyone attach the full output of fstat from an affected system? Spot checked some using filterdns and they seem...
-
07:00 AM Bug #3951: Processes like filterdns and ipfw-classifyd accumulate many open file handles
- My case: pfSense 2.1.5 running on i386 embedded version. Clean install, only modification apart from UI is password f...
-
05:20 AM Bug #3951 (Resolved): Processes like filterdns and ipfw-classifyd accumulate many open file handles
- Forum: https://forum.pfsense.org/index.php?topic=63357.msg453040#msg453040
and surrounding discussion and results in... -
03:08 PM Bug #3789: rc.update_bogons.sh and login shell ignore http proxy settings
- why do it there in update_bogons? Set it as an env variable in general and nothing else needs to be touched.
-
01:43 PM Bug #3950 (Feedback): Entering a backwards IP range in an Alias results in an Internal Server Error
- pull requests merged, will leave this to feedback for verification
-
03:49 AM Bug #3950 (Resolved): Entering a backwards IP range in an Alias results in an Internal Server Error
- Firewall->Aliases, add an alias, type Networks.
Put a range like 192.168.1.10-192.168.1.0
Save
It tries for a wh... -
12:50 PM Bug #3900: DynamicDNS should allow "@" at hostname
- Sent a pull request to fix this annoyance. ( https://github.com/pfsense/pfsense/pull/1315 )
Forum discussion at: h... - 09:32 AM Revision 99ba943a: Prevent Internal Server Error if range is backwards
- Fixes redmine #3950 - ip_range_to_subnet_array can easily swap the input parameters if the caller has passed/entered ...
- 09:18 AM Revision 29b3bb05: Prevent Internal Server Error if range is backwards
- Fixes redmine #3950 - ip_range_to_subnet_array can easily swap the input parameters if the caller has passed/entered ...
-
09:07 AM Feature #809: Config sync username change
- Still a problem. Version 2.1.5
-
09:07 AM Bug #3953 (Rejected): Web pages extremely slow if LDAP down
- Duplicate of #3383
Please search a bit before opening tickets. -
09:05 AM Bug #3953 (Rejected): Web pages extremely slow if LDAP down
- I have 2.1.5 with a local user (admin) plus an LDAP server (Active Directory). The LDAP server is set as the primary ...
-
09:02 AM Bug #3332 (Rejected): Impossible to change the user for XMLRPC Sync
- Duplicate of #809
-
09:02 AM Bug #3952 (Rejected): Username not used in config sync
- Duplicate of #809
-
08:59 AM Bug #3952 (Rejected): Username not used in config sync
- The HA configuration sync page takes a username and password. However, if you change the username to something other ...
- 06:54 AM Revision 9b86d3fe: + is a valid character in some dynamic DNS providers' usernames. Fixes #3912
- 05:40 AM Revision 2fb66948: hostnames can end with a . (and actually always do, it's just usually implied), so allow that here. Fixes wrong input validation in parts of nsupdate GUI, among other things.
-
03:52 AM Bug #3369: Captive vouchers expire too quickly
- Chris Buechler wrote:
> maz: if you can upload that image somewhere, I'll check it out.
I will upload it ASAP as ... -
03:07 AM Bug #3904: Firewall Log widget generates a load of HTML code when Reverse DNS resolution is clicked
- Also, this is the same as #3829, which is resolved, so good.
Now clicking the IP address takes the user to the full ... -
02:06 AM Bug #3904 (Resolved): Firewall Log widget generates a load of HTML code when Reverse DNS resolution is clicked
- Jim worked around this one. Phil, if you see anything that was missed, feedback appreciated but I think this is funct...
-
02:35 AM Bug #3811: IP aliases on CARP w/IPsec getting mixed up on addition of a new VLAN.
- needs re-testing on 2.2
-
02:20 AM Bug #3198 (New): IPSEC, when nating to a different size subnet a invalid natting rule is made.
- this is still an issue. That pull request was not the answer though.
It should suffice (for 2.2) to add input val... -
01:56 AM Bug #3898 (Feedback): Traffic Graph webpage freezes up after some time
- I've left multiple browsers up on traffic graph for several hours up to days, with no ill effects. I just pulled up t...
-
01:49 AM Bug #3912 (Resolved): Dynamic DNS disallows valid character in username
- fixed, thanks
-
01:44 AM Bug #3901 (Rejected): DynDNS is not forcefully updated after powerup
- You'll see in the system log how it works. If your IP hasn't changed, and it's been less than 25 days since the last ...
-
01:44 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
- Had a look at dhcp.c ISC source code and submitted a bug report. Then after more research I found this:
Extend the... -
01:17 AM Bug #3928 (Confirmed): lagg and its VLANs must have same MAC address
-
01:11 AM Bug #3949: Dynamic DNS public IP check always uses default gateway
- Updated subject to reflect full extent of issue - it's all dynamic DNS services, not just RFC 2136.
-
01:07 AM Bug #3949 (Resolved): Dynamic DNS public IP check always uses default gateway
- When using the "Use Public IP" option of RFC 2136 dynamic DNS updates, you'll always end up with the public IP of the...
10/20/2014
-
11:14 PM Bug #3829 (Resolved): Widget Firewall: Reverse Resolve with DNS Issues
- Jim's fix works, and suffices for 2.2.
-
10:41 PM Bug #3945 (Confirmed): BOOTP lease end status is mis-parsed
-
10:40 PM Bug #3889 (Confirmed): Non relevant changes in config.xml
- A variety of areas do things like this, it'd be nice to eliminate any unrelated changes
-
10:14 PM Bug #3937: Interfaces Dashboard Widget - Font to big and scaling wrong
- I tried on Opera 25.0.1614.50 and somehow Opera fits it in better, but still the font size of stuff in the Interfaces...
-
10:06 PM Bug #3937: Interfaces Dashboard Widget - Font to big and scaling wrong
- I have attached a screen shot of what the Interfaces widget looks like on a 2.2 system with a long IPv6 address. Rega...
-
10:50 AM Bug #3937: Interfaces Dashboard Widget - Font to big and scaling wrong
- 2.2-BETA (amd64)
built on Sun Oct 19
Have tried it with:
Windows7 with Firefox (33.0 and prior)
Mac OSX wit... -
10:25 AM Bug #3937: Interfaces Dashboard Widget - Font to big and scaling wrong
- What is the operating system, browser and pfSense version you are using? I couldn't replicate the problem here.
-
07:59 PM Bug #3684 (Rejected): Openvpn not routing incomming traffic correct when using tap device
- it is broken on 2.2 at the moment, that's #3760.
It does work where route-to/reply-to function correctly though. ... -
07:56 PM Feature #3329: Allow creating "not" rules for IPsec Phase 2
- not important for 2.2
-
07:55 PM Bug #3656 (Confirmed): "LAN network" in v6 rules doesn't work when assigning link-local address to LAN
- still an issue on latest snapshot. the LAN rule in that scenario ends up as a comment with "at the break".
-
07:15 PM Bug #3948 (Closed): Changing OpenVPN from tun to tap or vice-versa breaks that instance
- Where you have an OpenVPN client or server instance defined on tun and switch to tap, or vice-versa, the ovpnc*/ovpns...
-
07:10 PM Bug #3165: OpenVPN Bridge with Client Specific Override
- I fixed it in commit:7d363e57a0df41604777b4019c98caeef0b8a79f before 2.1.4 but apparently never noticed this ticket t...
-
06:53 PM Bug #3165 (Resolved): OpenVPN Bridge with Client Specific Override
- this has been fixed at some point in the mean time (probably in a 2.1.x release since then, but tested and definitely...
-
06:35 PM Bug #2584 (Closed): Import server certificate - Bad Issuer
- can't replicate, inadequate detail to know what might have happened there, doesn't appear to be something anyone else...
-
06:27 PM Bug #3545 (Rejected): OpenVPN Clients don't reconnect after dynamic WAN IPv4 changes
- re-tested this scenario on 2.2 and it works fine there as well.
-
06:16 PM Bug #3947 (Resolved): "ipsec_starter: Bad file descriptor" spams system log
- Ermal and I talked about this a couple days ago, it doesn't have a ticket though so opening here. System log on 2.2 s...
- 05:00 PM Revision a23adfba: Merge pull request #1306 from phil-davis/patch-3
- 03:41 PM Revision 6d951458: Let user decide if he wants to proceed to the upgrade when sha256 fails to download. Fixes #3576
-
01:58 PM Bug #3946 (Resolved): Disabling RAM Disk doesn't remove schedule from /etc/crontab if schedules aren't disabled
- pfSense version: 2.1.5-RELEASE (amd64)
built on Mon Aug 25 07:44:45 EDT 2014
FreeBSD 8.3-RELEASE-p16
After ena... -
01:03 PM Feature #3933: Limiter burst doesn't have any effect
- after discussion with Ermal, needs testing vs. stock FreeBSD
-
11:53 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
- Phil - do you not see a pencil to the right of your comment? That's how you can edit previous posts. I thought it was...
-
06:06 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
- Domain-Name-Server is specifically set in pfSense DHCP config to 10.49.48.*250* and that is delivered correctly to th...
-
06:01 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
- It is related to the client requesting DHCP "option 252", which is related to web-proxy auto-discovery - http://tools...
-
10:50 AM Bug #3576 (Feedback): Console upgrade automatically skips hash check if no hash file found
- Applied in changeset commit:6d9514581abc09a05f6d86633bbd0bb08aab2cf5.
-
10:26 AM Bug #3921: max-packets option missing from pfctl
- @ermal, Are you aware of these performance issues?
- 12:31 AM Revision 2c296872: h-node should be 8
- 12:30 AM Revision 13ec619c: h-node should be 8
10/19/2014
- 11:38 PM Revision bc12ae8a: Underscores are valid characters in domains. Fixes #3219
-
07:26 PM Bug #3788 (Resolved): NetBIOS h-node should be translated 8 instead of 5
- fixed, thanks
-
07:16 PM Bug #3213 (Resolved): Error creating more than 30 limiters
- that'll suffice
-
07:12 PM Feature #1836 (Resolved): RFC 5006 support for DNS from RAs
-
07:03 PM Bug #2245 (Resolved): User permissions for shell access are not clear/complete
- resolution Jim noted has since been implemented, which resolves the only real issue I see here.
-
06:57 PM Bug #1637 (Needs Patch): captive portal web service port bind validation issue
- lot of things it can conflict with, if you want to add the input validation, patches welcome.
-
06:55 PM Bug #2649 (Resolved): Ipv6 Easy rule creation failing
-
06:55 PM Bug #3052 (Rejected): Adding a static dhcp for mac address dissapears.
- as described isn't an issue
-
06:52 PM Bug #3369: Captive vouchers expire too quickly
- maz: if you can upload that image somewhere, I'll check it out.
-
06:46 PM Bug #3408 (Closed): IPV6 DHCP not disabling on initial setup
- issue as described doesn't exist in 2.2
-
06:37 PM Bug #3762 (Closed): web interface ajax updates do not work after upgrade
- Local browser cache was the likely cause of that, though www not matching would be unexpected. Not a replicable issue.
-
06:35 PM Bug #3501 (Resolved): sanity check for PBI installations before uninstalling old pbi package.
- issue as described was fixed in 2.2
-
06:33 PM Bug #3219 (Resolved): Forwarded domain with underscore should be allowed to add
- fixed in 2.2
-
06:02 PM Bug #3939 (Confirmed): Cannot create Host or Network type alias with an IP address/range
- Confirmed as described. Create a new host alias containing only "example.com", save and apply changes. ...
-
05:52 PM Bug #3861 (Rejected): PPPOE non-NAT config cannot ping attached hosts as packets go upstream
- there is something fundamentally wrong with your configuration, LAN and WAN can't have the same IP, and you have a ma...
-
05:51 PM Bug #3935 (Resolved): Unable to complete NIC assignment with only one NIC
- fixed
-
02:42 PM Bug #3945: BOOTP lease end status is mis-parsed
- also after changing the display from UTC to local time, BOOTP entries show up as "1969/12/31 07:00:00PM"
-
02:40 PM Bug #3945 (Resolved): BOOTP lease end status is mis-parsed
- status_dhcp_leases.php shows the end of BOOTP leases as "tstp never", where it should just show the "never" and maybe...
-
08:25 AM Bug #3944 (Resolved): git fatal errors are not shown to user when building pfSense iso from source.
- git fatal errors are not shown to user when building pfSense iso from source.
This complicates troubleshooting when ... -
02:49 AM Bug #3576: Console upgrade automatically skips hash check if no hash file found
- Replacing line 90 in rc.initial.firmware_update, the "sleep(15)", with aborting the upgrade instead (making the sha25...
10/18/2014
-
11:02 PM Bug #3760 (Confirmed): reply-to with TCP and IPv6 generates broken checksums
- Return routing is correct now, but TCP checksums are broken (with or without hardware checksum offloading enabled).
-
08:05 PM Bug #3891: ipfw, on pfSense 2.2 kernel dump caused by: ipfw zone 4096 create
- Tester issue.
-
08:05 PM Bug #3891 (Resolved): ipfw, on pfSense 2.2 kernel dump caused by: ipfw zone 4096 create
10/17/2014
-
11:33 PM Revision 621fed0e: Ticket #3932 For more than 100 entries create pipes in line with the rules file to speedup the process
-
06:28 PM Bug #3932: Captive portal with greater than 9000 permanent MAC addresses causes timeout in loading CP
- The loading should be faster.
-
01:31 PM Bug #3760 (Resolved): reply-to with TCP and IPv6 generates broken checksums
- Works correctly now.
-
11:25 AM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
- Next snapshot should have the fixed of allowing states to match properly.
-
11:27 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
- I am sorry but you need to read better the source!
10/16/2014
- 09:46 PM Revision 2ac79ade: Merge pull request #1310 from phil-davis/patch-6
- 09:44 PM Revision 308e3042: Merge pull request #1311 from phil-davis/patch-7
-
07:22 PM pfSense Packages Bug #3660: Captive Portal Idle timeout Pfsense 2.1.3
- that's a problem inherent in what you're doing with squid and has nothing to do with CP itself.
-
03:58 PM pfSense Packages Bug #3660: Captive Portal Idle timeout Pfsense 2.1.3
- It's true. Solution to the problem on the link below
https://forum.pfsense.org/index.php?topic=69606.0 -
12:51 PM pfSense Packages Bug #3660 (Rejected): Captive Portal Idle timeout Pfsense 2.1.3
- issue as described isn't true
-
07:22 PM Revision 2f17d32e: Fix the log widget to lookup hosts by DNS using a link rather than AJAX. Quick fix for now. Ticket #3829
-
07:21 PM Revision 497563be: Fix the log widget to lookup hosts by DNS using a link rather than AJAX. Quick fix for now. Ticket #3829
-
05:40 PM Feature #3943 (New): pf - divert-reply not implemented (usefull for haproxy)
- Not sure if i should file this under pfsense or packages..
For haproxy it would be beneficial to have support in pf ... -
04:10 PM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
- Same troubles on:
built on Thu Oct 16 09:56:37 CDT 2014 -
12:17 PM Bug #3760 (Confirmed): reply-to with TCP and IPv6 generates broken checksums
- no change on: ...
-
04:05 PM Bug #3935: Unable to complete NIC assignment with only one NIC
- Thanks Phil, my bad on that breakage. Will re-test this when I get a moment
-
01:56 PM pfSense Packages Bug #3942 (Resolved): bind - allow starting named with "-4" argument
- pfSense Version 2.1.15 amd64
BIND pkg Version - 9.9.5P1_5 pkg v 0.3.5
Requesting feature to start the named daemo... -
01:10 PM Bug #3898: Traffic Graph webpage freezes up after some time
- p.s. the browser in my case was Firefox 33.0 on intel windows-7
-
01:09 PM Bug #3898: Traffic Graph webpage freezes up after some time
- Just thought I'd add:
There is also a similar issue on "Status: Traffic shaper: Queues". If left in a browser for so... -
12:49 PM Bug #3389 (Confirmed): GUI allows to configure ICMPv4 types for ICMPv6 firewall rules
-
12:48 PM Bug #3938 (Confirmed): Captive Portal PHP Error at bootup on current snapshots
-
12:46 PM Bug #3727 (Confirmed): PPP config loses "on-demand" setting when configured via interfaces tab
- that didn't fix it. Config diff attached that shows changes made by interfaces.php just clicking "Save" on an assigne...
-
12:35 PM Feature #3553 (Rejected): Multi Wan FTP Server
- there is an invalid checksum issue at play here that has a separate ticket.
-
12:28 PM Bug #3941 (Resolved): adding a DHCP client interface results in missing default gateway on 2.2
- Take a simple WAN and LAN setup, WAN on DHCP with its dynamic gateway marked as default, LAN static. Add a third NIC ...
-
12:23 PM Feature #3923: Rules MAC Block
- Using ipguard and dhcp server to block using MAC is palliative solution as firewalls usually block via MAC rules are ...
-
12:13 PM Feature #3923: Rules MAC Block
- Using ipguard and dhcp server to block using MAC is palliative solution as firewalls usually block via MAC rules are ...
-
11:55 AM Feature #3923 (Rejected): Rules MAC Block
- duplicate. and it's pointless.
Though it is possible to MAC filter w/CP -
12:20 PM Bug #3891 (Confirmed): ipfw, on pfSense 2.2 kernel dump caused by: ipfw zone 4096 create
- doesn't crash anymore, but it also doesn't work at all.
trying to create any zone results in: ... -
12:00 PM Bug #3829 (Confirmed): Widget Firewall: Reverse Resolve with DNS Issues
-
12:00 PM Bug #3829: Widget Firewall: Reverse Resolve with DNS Issues
- affects at least 2.1.5 and 2.2, not sure about earlier. Not sure how involved fixing this is at a brief glance, it's ...
-
11:54 AM Bug #3361 (Confirmed): DHCP6 WAN is not obtaining a default gateway
- SLAAC also ends up missing a default gateway, though System>Routing shows a gateway entry with the appropriate IP and...
-
11:52 AM Bug #1681 (Confirmed): OpenVPN tun IPs fail HTTP REFERER checks
- still no CLA.
Per - could you please go through that process as Jim noted so we can accept this? -
11:27 AM Bug #3876 (Confirmed): pfsync is not synchronizing states on 2.2
- This is a little better, but still completely non-functional. It actually sends pfsync traffic now, which is the impr...
-
11:22 AM Bug #3884 (Resolved): Restarting Web GUI does not restart PHP-FPM
- fixed
-
10:47 AM Bug #3870 (Confirmed): re(4) NICs on APU are unable to hardcode speed/duplex properly
- This has always been an issue on at least some (and I believe most, if not all) re(4), dating back to at least the Fr...
-
06:04 AM Bug #3940: check_reload_status uses deprecated libevent-1.4
- As crosscheck: I just have build check_reload_status using libevent-1.4.14b-stable. With this version the load is ok.
-
03:25 AM Bug #3940 (Resolved): check_reload_status uses deprecated libevent-1.4
- The snapshot 2.2 builds uses deprecated libevent-1.4 library. The Makefile of "check_reload_status" was fixed with co...
-
04:10 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
- Also, in *rc.newwanipv6* instances are started twice ...
-
01:50 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
- Look for "openvpn_restart" event in the system log to speedup things. Just forgot to mention it in the post above.
-
01:49 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
- Yeah, obviously I can't run 2 times same instance but bug in logic can. So, here is system log.
Looks like opvn i...
10/15/2014
-
07:22 PM Bug #3939 (Resolved): Cannot create Host or Network type alias with an IP address/range
- Affects 2.1.5 release as well as the latest 2.2 build - pfSense-LiveCD-2.2-BETA-amd64-20141015-1437.iso
Repro step... -
06:28 PM Bug #3935: Unable to complete NIC assignment with only one NIC
- Thanks Phillip, I can get past the interface assignment now.
I don't know if this is related or not but now webConfi... -
09:00 AM Bug #3935 (Feedback): Unable to complete NIC assignment with only one NIC
- Applied in changeset commit:5d49ceac8b7591f4db502eb4c2c52b37cc63e7ae.
-
06:25 PM Bug #3854 (Resolved): pf on 2.2 should not have an upper table entry limit, but generates errors with large datasets
- This can be marked as resolved.
Though general issues are to be solved in FreeBSD for this.... -
06:12 PM Bug #3854: pf on 2.2 should not have an upper table entry limit, but generates errors with large datasets
- Tested this with several very large lists. I think it can be changed to resolved. Thanks.
Updating: pfB_IBlock
6... -
10:47 AM Bug #3854 (Feedback): pf on 2.2 should not have an upper table entry limit, but generates errors with large datasets
- Patch has been merged in to fix the wrong ioctl handling.
Please test newer snapshots. -
06:23 PM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
- Please use the next one.
-
02:56 PM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
- Damn, i was getting crazy with my servers until i found this report !
I tested "built on Wed Oct 15 11:40:50 CDT 2... -
09:43 AM Bug #3760 (Feedback): reply-to with TCP and IPv6 generates broken checksums
- Please test with later coming snapshot since it should have the final fix for this.
-
06:01 PM Revision b6dbbebc: Add command line script to generate and activate a new GUI certificate.
-
06:01 PM Revision 2cf2c62b: Fix descriptions and cn on generated GUI cert to be consistent.
-
05:17 PM Bug #3890: Aliases multiple CIDR ranges show error message
- Just need tests. I'll take care of it.
-
02:42 PM Feature #1836 (Feedback): RFC 5006 support for DNS from RAs
-
02:41 PM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
- From the logs seems you have already an running instance hence you cannot start a second one!
Can you post your syst... -
02:33 PM Bug #3913 (Feedback): if_bridge missing ALTQ support
- Please try next coming snapshots this should be fixed.
-
02:23 PM Revision 2f5488df: Reintroduce the vfs.forcesync systl
-
02:04 PM Bug #3870: re(4) NICs on APU are unable to hardcode speed/duplex properly
- I've tried both 2.1.x and 2.2 and they are both affected. It's not possible to set the speed/duplex on either one.
-
02:02 PM Bug #3870: re(4) NICs on APU are unable to hardcode speed/duplex properly
- Do we know if this is a problem with 2.1 or 2.2, (or both)?
- 01:49 PM Revision 29fb23d4: Merge pull request #1309 from phil-davis/patch-5
-
12:41 PM Revision 29be59ad: Tame the poodle. Disable SSLv3.
-
12:40 PM Revision 5ff7f58e: Tame the poodle. Disable SSLv3.
-
12:18 PM Bug #3842: Verdana font from the Linux package ttf-mscorefonts-installer causes rendering issues with pfSense WebGUI
- Jared put fixes into 2.2 ( commit:6817c18afa737e83756516a7b7c14ff5e5d85814 and commit:2300ee35e94bc49dff99f64133fe98c...
-
11:51 AM Bug #3842: Verdana font from the Linux package ttf-mscorefonts-installer causes rendering issues with pfSense WebGUI
- Assigned back to JimP, because Jared is no longer with us.
-
12:15 PM Bug #3666 (Feedback): PMTUD is broken for NATed traffic
- Did you try to send an tcp/udp packet rather than icmp one?
-
11:11 AM Bug #3666: PMTUD is broken for NATed traffic
- Actually try out a next coming snapshot i found a quick hack that will help even for icmp case.
-
11:51 AM Bug #3932: Captive portal with greater than 9000 permanent MAC addresses causes timeout in loading CP
- Ermal suggests that if /cf/conf/use_xmlreader exists, that a faster parser will be used in 2.2.
Please re-test. E... -
09:43 AM Bug #3938 (Resolved): Captive Portal PHP Error at bootup on current snapshots
- At boot on a current snapshot with captive portal enabled there is a PHP error displayed:
PHP Errors:
[15-Oct-201... -
09:15 AM Bug #3918 (Resolved): On 2.2, mounting read-only after mounting read-write can be very slow on certain media NanoBSD
- 08:41 AM Revision 466aae83: Manage dhcpleaseinlocaltime consistently
- dhcpleaseinlocaltime is actually a global setting, but the setting is stored per-DHCP-enabled-interface.
The display ... -
08:03 AM Bug #3931 (Resolved): Using international characters in IPsec PSK causes invalid XML
- Confirmed fixed for IPsec P1, PSK tab, and User PSK fields. Invalid characters are now properly rejected.
-
07:48 AM Bug #3937 (Resolved): Interfaces Dashboard Widget - Font to big and scaling wrong
- The changes in this commit ( https://github.com/pfsense/pfsense/commit/607e15dbdf942483154887fea278bf54c64ae6ce ) hav...
- 06:41 AM Revision 73a96698: Provide an edit button for static mapped entries
- As suggested in forum https://forum.pfsense.org/index.php?topic=82883.msg0#new
Instead of a non-functioning red plus ... - 05:47 AM Revision fff9ee45: Whitespace in status_dhcp_leases.php
-
05:37 AM Bug #3784: Cannot enter hostname with a dot
- Owen Gerrard wrote:
> Buster de wrote:
> > Why you can't put only "server" into the hostname and "sub.domain.com" i... - 04:19 AM Revision 5d49ceac: Fix #3935 Properly allow WAN without LAN
- Was broken by https://github.com/pfsense/pfsense/commit/bd0b5d2dc7a279d3473a65a11d67efb5e39392be
10/14/2014
-
11:39 PM Revision 8ff85c39: rename interfaces_carp_setup to interfaces_sync_setup and call it during bootup since it does not only relate to carp interfaces.
-
11:27 PM pfSense Packages Bug #3936 (Resolved): Proxy state tab of lightsquid
- In the proxy state tab of lightsquid I get the following ...
-
11:17 PM Bug #3935: Unable to complete NIC assignment with only one NIC
- It was broken a week ago, I'm sure accidentally :)
This code works: https://github.com/pfsense/pfsense/pull/1309
... -
08:47 PM Bug #3935: Unable to complete NIC assignment with only one NIC
- Also, if I add a NIC to finish startup then try to unassign from the menu, it doesn't say anything but returns to the...
-
08:42 PM Bug #3935 (Resolved): Unable to complete NIC assignment with only one NIC
- Running a VM with one NIC.
Boot to the latest snapshot ISO:
pfSense-LiveCD-2.2-BETA-amd64-20141014-1737
No VLANs... -
10:59 PM Revision 4703c007: Fixes #3727 Do not unset ondemand for ppp type interfaces since it is controlled here only for pppoe/l2tp
-
10:55 PM Revision 664adf38: Ticket #3789. Put a start at using the proxyurl/proxyport from system configured settings for bogons. It still does not consider the user/pass configured
-
10:36 PM Revision e02ea742: Fixes #3213. Allow up to 2900 limiters. This was set to 30 since limiters are to be controlled by mask and not created manually!
-
09:21 PM Revision febe0112: Make proper check here
-
09:10 PM Bug #3876 (Feedback): pfsync is not synchronizing states on 2.2
- It is fixed for me with new snapshots.
-
08:14 PM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
- Whoops - Submitted that last update too early and couldn't figure out how to remove it.
The version I am currently... -
08:08 PM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
- Can I just check, should I be using the pre-compiled snapshot from here:
https://snapshots.pfsense.org/FreeBSD_relen... -
01:39 PM Bug #3760: reply-to with TCP and IPv6 generates broken checksums
- More testing needed after another change have been merged.
-
07:30 PM Revision 7c4c77ee: Teach the certificate generation code how to make a self-signed certificate, and change the GUI cert generation code to use it. Also, move the GUI cert generation code to its own function so we can add a GUI option to regenerate it later.
- Also use some more sane defaults for the contents of the default self-signed certificate's fields so it will be more ...
- 06:44 PM Revision 1f4ad8f4: update comment to reflect breakage caused here and reference associated redmine ticket, not high priority, can be fixed later
- 06:21 PM Revision eb71461c: block IPv4 link-local. Per RFC 3927, hosts "MUST NOT send the packet to
- any router for forwarding", and "any network device receiving such a
packet MUST NOT forward it". FreeBSD won't route... -
06:00 PM Bug #3727 (Feedback): PPP config loses "on-demand" setting when configured via interfaces tab
- Applied in changeset commit:4703c007ef8b5cef28ab9650b28ea807cc7611f6.
-
05:50 PM Bug #3789 (Feedback): rc.update_bogons.sh and login shell ignore http proxy settings
- A patch for proxy support without username/password configured on system->settings will be considered now.
-
05:50 PM Bug #3213: Error creating more than 30 limiters
- Applied in changeset commit:e02ea742a546513eedcef1f4049a90e998951b78.
-
05:32 PM Bug #3213 (Feedback): Error creating more than 30 limiters
-
05:32 PM Bug #3213: Error creating more than 30 limiters
- Bumped to 2900. The only reason left to 30 was for speed ones.
Normally having 30 limiters is a bit.... unusual sinc... - 05:41 PM Revision 69b79ff0: Fix PSK for non-ascii also here, ticket #3917
-
05:40 PM Feature #1836: RFC 5006 support for DNS from RAs
- This should be working afaik!
-
05:36 PM Bug #729: if_bridge unpredictable filter interface selection
- This should work better on pfSense 2.2 as of 1 week ago!
-
05:23 PM Bug #3891 (Feedback): ipfw, on pfSense 2.2 kernel dump caused by: ipfw zone 4096 create
- It should not do this anymore on newer snapshots.
- 05:23 PM Revision 5a42d9ef: Fix initial console menu layout, it fixes #3884
-
05:10 PM Bug #3918 (Feedback): On 2.2, mounting read-only after mounting read-write can be very slow on certain media NanoBSD
- Patch merged for 2.2 from 2.1
-
04:52 PM Feature #3933: Limiter burst doesn't have any effect
- It will take effect only when the queue if full as normal with other shaping implementations.
If your queue is not f... - 04:50 PM Revision b907136c: Improve IPsec status page for mobile. It fixes #3917
- 04:46 PM Revision ca1fdcce: Add missing gettext call
- 04:40 PM Revision d6c9dcf9: Add missing gettext calls
- 04:23 PM Revision 6795e0da: Fix indent and spaces
- 03:50 PM Revision 123d8700: Does not accept non-ascii characters on IPsec PSK. It fiixes #3931
- 03:48 PM Revision a4c1fff2: Close this form early since there is another form below
-
01:49 PM Bug #3709 (Confirmed): Disabled static route entries trigger 'route delete' error at boot
-
01:20 PM Bug #2056 (Resolved): Display error in captive portal admin screen
- works
-
01:19 PM Bug #2073 (Resolved): APIPA broadcasts forwarded by route-to
- fixed by implementing the appropriate behavior per RFC 3927 - block it.
-
12:37 PM Bug #3931 (Feedback): Using international characters in IPsec PSK causes invalid XML
-
12:28 PM Bug #3931 (New): Using international characters in IPsec PSK causes invalid XML
- Seems to still allow some characters that can break XML (like à )
-
12:09 PM Bug #3931 (Feedback): Using international characters in IPsec PSK causes invalid XML
- Pushed a fix commit:123d870060
-
12:30 PM Bug #3884 (Feedback): Restarting Web GUI does not restart PHP-FPM
- Applied in changeset commit:5a42d9ef426a05cbd64559bbe2b75a355dc0d821.
-
12:00 PM Bug #3917 (Feedback): Mobile IPsec status page issues
- Applied in changeset commit:b907136c28defe8b45da3ae4a17a5e23f07a7e4a.
-
11:21 AM Bug #3419 (Closed): Traffic shaper wizard doesn't properly populate download speed
- several wizard fixes in 2.2, and no issues like this outstanding. Though this one in particular doesn't sound legit a...
-
11:18 AM Bug #1839 (Closed): No Quality RRD Graph w/ Non-Default Frequency Probe
- I can't find any frequency that doesn't work, this has been fixed at some point in the mean time.
-
11:16 AM Bug #3929: Port Forwarding with an association Filter
- Of course. Nothing that simple is broken. Block private networks is my guess. This isn't the place to discuss, please...
-
11:12 AM Bug #3929: Port Forwarding with an association Filter
- i completly reinstalled pfsense, with default configuration.
then i configured the port forwarding.
are u sure, t... -
11:09 AM Bug #3929: Port Forwarding with an association Filter
- Because you have something misconfigured. There isn't anything wrong with port forwards or associated rules.
-
11:07 AM Bug #3929: Port Forwarding with an association Filter
- Hi,
how could this be not a bug?
I set all things by documentation.
Have a look at https://doc.pfsense.org/ind... -
11:03 AM Bug #3929 (Rejected): Port Forwarding with an association Filter
- not a bug, please use one of our available support resources for assistance. https://pfsense.org/support
-
11:15 AM Bug #3678 (Resolved): Kernel panic: "Bogus interrupt trigger mode" on Intel J1900
- this was since fixed in 9 and 10 stable FreeBSD, current 2.2 should work here
-
11:07 AM Bug #3930 (Rejected): Browser Page Refresh After CA Creation Creates Duplicate CA
- This could be summarized as "I forced my browser to create multiple CAs and it created multiple CAs." Yes, it does.
-
11:00 AM Bug #3777 (Resolved): User with "WebCfg - Help pages " permission listed first gets a bogus redirect
- fixed
-
06:21 AM Bug #3735: No default route when using WAN static IPv6 address
- This issue has already been discussed on the forum :
https://forum.pfsense.org/index.php?topic=65964.0
The way to s... - 04:07 AM Revision dc4a8b9e: update input_error description after changes for ticket #3491
10/13/2014
-
11:27 PM Feature #3933 (Closed): Limiter burst doesn't have any effect
- No matter what you put in the burst field, the limiter behaves exactly the same as if it's 0 or null. Re-tested on th...
-
11:08 PM pfSense Packages Bug #3772 (Resolved): Broken openbgpd config generation logic in 2.2
- fixed
-
11:07 PM Todo #3880 (Resolved): Write upgrade code for unbound
-
11:06 PM Feature #983 (Resolved): Improve/Enhance IP Alias VIP handling in GUI
- works, nice improvement for ease of use.
-
11:02 PM Bug #3491 (Resolved): Improper input validation on firewall rules when using a numerical alias name
- fixed
-
10:48 PM Bug #3542 (Resolved): cert_get_issuer() in certs.inc doesn't always return the full Distinguished Name
-
09:50 PM Bug #3932: Captive portal with greater than 9000 permanent MAC addresses causes timeout in loading CP
- How big are the resulting configs there? I'm not running PHP out of memory after throwing 9000 randomly-generated MAC...
-
12:09 PM Bug #3932 (Closed): Captive portal with greater than 9000 permanent MAC addresses causes timeout in loading CP
- When using captive portal, with all users become permanently learned after enough users have authenticated the system...
-
08:32 PM Bug #3769 (Resolved): Only the first phase 2 entry is used when multiple entries are present for an IPsec tunnel in 2.2
- fixed
-
08:30 PM Todo #3795 (Resolved): Update hostapd to support 802.11n
- fixed
-
08:29 PM Bug #2665 (Resolved): 'pass out' on gif matches inbound traffic
- fixed
-
08:15 PM Bug #3922 (Resolved): jumbo frames on lagg not working
- fixed
-
12:50 PM Bug #3922 (Feedback): jumbo frames on lagg not working
- Applied in changeset commit:71c26c22209e22c37d437077da6c69b0fb09627f.
- 05:36 PM Revision 71c26c22: Properly set MTU for lagg interface, it fixes #3922
- 04:09 PM Revision 5c2e6873: Make sentence more accurate as pointed out by phil-davis
- 03:42 PM Revision 1c764a3a: GIF interfaces MTU must be something between 1280 and 8192, make the correct check. It fixes #3927
-
03:39 PM Bug #3191 (New): Quality RRD inaccuracies and failure to update status in some circumstances
- The first issue as noted originally is still a problem as described. Throw a limiter on an upstream system that drops...
-
12:46 PM Feature #3365: Implement package signing
- After deploying hardware key storage, we need to distribute access keys to users that will be logging into builders t...
-
12:23 PM Bug #3790 (Resolved): Input validation is too strict for IPv6 Prefix ID for Track Interface
-
12:10 PM Bug #3927 (Resolved): Unable to set gif MTU
- fixed
-
10:50 AM Bug #3927 (Feedback): Unable to set gif MTU
- Applied in changeset commit:1c764a3a50d4eb732e7c96eb9351e7b35c2051d4.
-
10:20 AM Bug #3927 (New): Unable to set gif MTU
- Back to new, we should provide a validation on GUI
-
10:20 AM Bug #3927 (Rejected): Unable to set gif MTU
- According src code https://github.com/freebsd/freebsd/blob/releng/10.1/sys/net/if_gif.h#L91 minimum valid MTU for gif...
-
12:08 PM Bug #3822 (Resolved): 2.2 boot hangs at "Synchronizing user settings"
- Several upgrades later on systems that used to have this issue, and we're still good. Others on forum have also confi...
- 11:54 AM Revision 07c24bf1: Merge pull request #1308 from phil-davis/patch-4
-
11:41 AM Feature #1965 (Resolved): Support Multiple IPsec Peers
-
11:39 AM Bug #3931: Using international characters in IPsec PSK causes invalid XML
- #3431 and #3636 are effectively the same, closed those in favor of this.
-
11:35 AM Bug #3931 (Resolved): Using international characters in IPsec PSK causes invalid XML
- If an international character, such as à is added to an IPsec PSK, it will cause the configuration to contain invalid...
-
11:39 AM Bug #3636 (Closed): IPssec Pre-Shared Key error
- closing in favor of #3931
-
11:38 AM Bug #3431 (Closed): IPSec PSK Characters Error
- closing in favor of #3931
10/12/2014
-
11:21 PM Bug #3620 (Resolved): Saving unbound settings twice in a row yields incorrect interface selection validation errors
-
11:21 PM Todo #3399 (Resolved): Implement a replacement for base nsupdate command for RFC2136 Dynamic DNS
-
04:46 AM Bug #3568 (Resolved): DynDNS: Hostname '@' not accepted for Namecheap
10/11/2014
-
11:44 PM Bug #3568: DynDNS: Hostname '@' not accepted for Namecheap
- Works great now, thanks Renato! Feel free to mark this one as resolved.
-
11:23 PM pfSense Packages Bug #3805: enable-http-violation are not compiled in Squid
- In squid, yes, but *not* in the FreeBSD port from which we build the package. It'll come eventually once the package ...
-
11:16 PM pfSense Packages Bug #3805: enable-http-violation are not compiled in Squid
- This option is available in: 2.7 / 2.6 http://www.squid-cache.org/Doc/config/header_access/
-
09:29 AM pfSense Packages Bug #3805 (Rejected): enable-http-violation are not compiled in Squid
- That wasn't an option in the squid 2.7.x FreeBSD port, it was hardcoded. That port is gone from FreeBSD now, eventual...
-
06:27 PM Feature #1032 (Resolved): Add all interfaces to Packet Capture drop-down
- this has been addressed since then, I can't think of any common scenario that isn't covered.
-
03:25 PM Feature #852 (Needs Patch): Add Captive Portal default realm
-
03:20 PM Feature #3490 (Resolved): Update DHCP options for network booting with UEFI
-
03:20 PM Feature #3515 (Resolved): Windows OpenVPN clients require register-dns to properly use a DNS server set by Pfsense
-
11:29 AM Bug #3930 (Rejected): Browser Page Refresh After CA Creation Creates Duplicate CA
- +*Issue*+: After creating an internal CA, refreshing/reloading the browser page immediately after creation causes the...
-
10:12 AM Bug #3929 (Rejected): Port Forwarding with an association Filter
- Hello,
using Port Forwarding with an association Filter rule isnt working.
I have a WAN (em2) and a LAN (em0). ... -
10:10 AM Bug #3770: Some drivers not being built with altq support
- But "bridge"?
- 03:17 AM Revision 3b5b437b: fix text
- 02:54 AM Revision 0c4cd13f: fix up text on sys_adv_misc
- 02:10 AM Revision 5046435d: fix text and descriptions in GRE edit page
-
01:11 AM Bug #3735 (Rejected): No default route when using WAN static IPv6 address
- there isn't a bug described there, post to the forum or mailing list to discuss further.
-
01:09 AM Bug #3727: PPP config loses "on-demand" setting when configured via interfaces tab
- confirmed
-
01:01 AM Bug #3928 (Duplicate): lagg and its VLANs must have same MAC address
- Take a test system with lagg0 and lagg0_vlan5 both assigned. Specify a MAC address for lagg0 on interfaces.php, and i...
-
12:50 AM Bug #3798 (Resolved): IPsec phase 2 pinghost is not used if the source IP should be a virtual IP address
- fixed
-
12:50 AM Bug #3780 (Closed): VLAN on LAGG may loose their MAC addresses if the LAGG membership is changed.
- This is true, but it doesn't matter in most circumstances. For those where you need the MAC to not change, you need t...
-
12:24 AM Bug #3774 (Closed): MTU Interface Settings Ignored when Assigned to LAGG Ports
- closing in favor of #3922
-
12:23 AM Bug #3890: Aliases multiple CIDR ranges show error message
- Phil's pull request to fix this still pending, some reason that hasn't been accepted?
-
12:20 AM Bug #3856 (Resolved): Delete a user, edit another one and going back... delete the edited user
- This seems to be fixed, and fixed a similar but different issue I'd run into but not opened a ticket for yet.
-
12:19 AM Feature #3832 (Resolved): change default update URL to https
- fixed
-
12:17 AM Bug #3613 (Resolved): Remote syslog server gets added to " DHCP service events" without being checked.
- fixed
-
12:16 AM Bug #3237 (Resolved): "Revoked" status is incorrect for certificates that are different but share the same descriptive name.
- fixed
-
12:14 AM Bug #3080 (Resolved): 2.1-RC0 (i386) - GRE Interface not getting correct/configured MTU at boot time
- works in 2.2 (and probably newer 2.1x versions than this referenced, but didn't test those)
- 12:09 AM Revision b22f436a: s/removing/omitting/g for gateway monitor log entires. "Removing" is not necessarily correct, there are many circumstances where this runs where it wasn't there to begin with, and is potentially misleading.
10/10/2014
-
11:04 PM Bug #3540 (Resolved): 100% CPU-Issue when IPv6 DHCP with stateless addresses is active
- haven't seen this in 2.2
-
11:03 PM Feature #3365 (New): Implement package signing
- back to new for Jeremy to finalize production implementation.
-
11:02 PM Bug #3361 (New): DHCP6 WAN is not obtaining a default gateway
- seems this is still an issue in at least one circumstance. Where WAN is set to DHCP6, and no DHCP6 server is availabl...
-
10:17 PM Bug #1621 (Closed): Switching WAN from type PPP to other leaves former port assigned
-
10:15 PM Feature #484 (Resolved): Add a warning if users are using non-official package repo
- ...
-
10:06 PM Bug #3562 (Resolved): Wireless Radius Setup Fails - partially due to empty config strings
-
10:04 PM Bug #2124 (Resolved): Package system updates for FreeBSD 10.x
- complete
-
10:04 PM Todo #2109 (Resolved): pfSense on FreeBSD 10.x
- this as a whole is resolved and can be gotten out of the list, some individual tickets under this still outstanding
-
10:02 PM Bug #3612 (Resolved): Packages through proxy doesn't work since change to HTTPS
- fixed
-
09:23 PM Bug #3775 (Resolved): Installer installs incorrect gettytab/ttys
- fixed
-
09:21 PM Bug #3920 (Rejected): Backup of CA files broken
- as described isn't true. I added a reply in the linked forum thread as to what appears to be happening here, from peo...
-
09:07 PM Bug #3281 (Resolved): In certain cases, GRE interfaces are missing the "RUNNING" flag at bootup and will not function
- Every scenario I'm aware of where that wasn't working now is on 2.2.
-
09:06 PM Bug #3182 (Resolved): VMware vmxnet interfaces are not detected as VLAN capable
-
08:39 PM pfSense Packages Bug #3645 (Resolved): Many Call-time Pass-by-reference instances in packages need fixed for PHP 5.5
- Should be covered. If there are any remaining, specific tickets can be opened.
-
08:37 PM Bug #3537 (Resolved): Bandwidth values are forced by the Traffic Shaper Wizard but are not required nor used for PRIQ
- fixed
-
08:34 PM Feature #2151 (Resolved): Add IPv6 support to the pfSense module
- generally speaking, what's there is fine. if there are some specific things it's lacking, new tickets can be opened f...
-
08:32 PM Bug #3575 (Resolved): OPT interfaces on GRE tunnels do not accept IPv6 or IPv4 addresses to be set.
-
08:32 PM Bug #3664 (Resolved): "IPsec" not displayed in firewall log interface column
- fixed
-
08:30 PM Bug #3909 (Resolved): carp_status.php shows disabled after initial config when it really isn't
- fixed
-
08:27 PM Bug #3666 (New): PMTUD is broken for NATed traffic
- no change in behavior
-
06:13 PM Bug #3854: pf on 2.2 should not have an upper table entry limit, but generates errors with large datasets
- This is an issue that needs to be addressed before 2.2 is released. This problem does not exist in 2.1.4.
-
05:39 PM Bug #1399 (Resolved): rrdtool respawning too fast
-
05:38 PM Bug #3770 (Resolved): Some drivers not being built with altq support
- fixed on everything I have handy to try
-
04:15 PM Bug #3822 (Feedback): 2.2 boot hangs at "Synchronizing user settings"
- this seems to have been fixed within the last day or two, at least the systems I had where it was replicable no longe...
-
04:13 PM Bug #3702 (Resolved): gif interface assignment removes tunnel's inside IPv6 IPs
- fixed
-
04:13 PM Bug #3927 (Resolved): Unable to set gif MTU
- If you set MTU on interfaces.php for a gif interface, it's not actually changed. For instance, see 22vpntest (info in...
-
04:00 PM Bug #1047 (New): Disable TSO, hardware checksum don't work for unassigned but active interfaces
- This is an issue on 2.2. Example at 172.27.32.125, see its igb1 where igb1_vlan10 is assigned but igb1 isn't.
- 02:17 PM Revision 1f237bb4: Fix pf syntax s/divert/divert-to/. It should fix #3921
-
02:09 PM Bug #3925 (Rejected): dnsmasq refuses non-standard port for domain overrides
- you can manually configure the domain overrides instead, or use a port forward to rewrite the target port for that de...
-
12:50 PM Bug #3925 (Rejected): dnsmasq refuses non-standard port for domain overrides
- According to the dnsmasq documentation, the syntax for a domain override is --server=[/[<domain>]/[domain/]][<ipaddr>...
-
02:07 PM Bug #3524 (Rejected): [IPv6] SSDP and LLMNR multicast traffic blocked on LANs
- not a bug
-
02:06 PM Bug #3926 (Resolved): clearing MTU field on interface doesn't set back to default
- If you set an interface's MTU on interfaces.php, save and apply changes, then clear the MTU field so there is nothing...
-
12:17 PM Bug #3924 (Resolved): Renaming limiters removes them from firewall rules
- Hello,
* Created two bandwidth limiters "OutLimit" and "InLimit".
* Selected then as In/Out in a firewall WAN rul... -
11:31 AM Bug #3921 (New): max-packets option missing from pfctl
-
11:08 AM Bug #3921: max-packets option missing from pfctl
- This seems to have corrected the syntax issues. There appears to be some performance issues now. I understand some pe...
-
09:48 AM Bug #3921: max-packets option missing from pfctl
- Steven Selph wrote:
> This change seems to only address half the issue. The max-packets option still seems to be mis... -
09:41 AM Bug #3921: max-packets option missing from pfctl
- This change seems to only address half the issue. The max-packets option still seems to be missing or is that somethi...
-
09:30 AM Bug #3921 (Feedback): max-packets option missing from pfctl
- Applied in changeset commit:1f237bb460b8ae7a8803adfb3a8b21b485131ab4.
-
08:40 AM Bug #3921: max-packets option missing from pfctl
- max-packets option is missing from pfctl parser. I'm working on a fix
-
08:34 AM Bug #3911: VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
- I'm sorry i was not clear, IP alias on CARP ip is *not* what i want, i want "ifconfig wan_vip2 vhid 2 alias 1.2.3.2",...
-
05:47 AM Feature #3923 (Rejected): Rules MAC Block
- I think pfsense need native feature to block MAC ADDRESS via rules. Today should use ipguard or dhcpd to achieve.
-
05:00 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
- Here are logs from clean start with only one ovpn instance enabled. Obviously, "2nd" instance is being detached, beca...
-
02:24 AM Bug #3922 (Resolved): jumbo frames on lagg not working
- Setting a MTU on a lagg interface greater than the Ethernet interface MTU fails in 2.2. To replicate:
- create a la...
10/09/2014
-
11:55 PM Bug #3440 (Resolved): Aliases, Networks and the vanishing subnets inside of Google Chrome
- fixed a while back
-
11:46 PM Bug #2755 (Closed): PFSense fail to upgrade if using VMXNet cards under Vmware
- resolves itself, as Ermal noted
-
10:57 PM Bug #2038 (Closed): Some 3G WANs on 2.0.x do not come up on cold boot
- This needs to be re-tested from scratch on 2.2 by someone who has the affected hardware. There's a good chance it's f...
-
05:31 PM Bug #3860: Selection of Enable STARTTLS disapears after clicking TEST SMTP on system_advanced_notifications.php
- The pull request you mention indeed fixes the problem for me on 2.1. Thank you.
-
12:13 PM Bug #3860: Selection of Enable STARTTLS disapears after clicking TEST SMTP on system_advanced_notifications.php
- This is fixed in 2.1 branch by https://github.com/pfsense/pfsense/pull/1308
Then I saw that it got re-engineered in ... -
05:01 AM Bug #3860: Selection of Enable STARTTLS disapears after clicking TEST SMTP on system_advanced_notifications.php
- I can confirm this bug on pfSense 2.1.5-RELEASE. This also happens if instead of "Enable STARTTLS" you are using "Ena...
-
04:55 AM Bug #3860: Selection of Enable STARTTLS disapears after clicking TEST SMTP on system_advanced_notifications.php
- I can confirm this bug on pfSense 2.1.5-RELEASE. This also happens if instead of "Enable STARTTLS" you are using "Ena...
-
05:08 PM Bug #3921: max-packets option missing from pfctl
- Attached my config.xml. The l7 portion results in the following /tmp/rules.debug line:
pass in log quick on $GUES... -
03:38 PM Bug #3921: max-packets option missing from pfctl
- Could you share your config.xml sanitized?
-
03:36 PM Bug #3921: max-packets option missing from pfctl
- Sorry copy and paste issues meant to say
Rules are generated using "divert port (max-packets 8)" -
03:35 PM Bug #3921 (Resolved): max-packets option missing from pfctl
- using "divert port (max-packets 8)"
This causes pf to throw a syntax error since divert and max-packets don't appe... - 04:42 PM Revision cce09d94: Ticket #3860 Correctly display SMTP SSL TLS boxes
- After using the "Test" button, $_POST['smtpssl'] and $_POST['smtptls'] was 'on' or null - this got blindly copied bac...
-
03:15 PM Feature #1833: PPTP type WAN IPv6 support
- not important for 2.2
-
03:08 PM Bug #3911: VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
- It has to be an IP alias on top of the CARP IP. Please use one of our support resources for further assistance. https...
-
05:25 AM Bug #3911: VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
- So, what's the story? I've wasted way too much time on this. Am i really supposed to edit /cf/conf/config.xml to make...
-
01:34 PM Bug #3920 (Rejected): Backup of CA files broken
- Using the Backup/Restore feature, CA sections seem to be interrupted in the long lines. See forum post:
https://f... -
12:35 PM Bug #3919 (Resolved): carp vhid=255
- When a carp vhid=255 is used, the CARP interface fails to sync correctly and logs errors such as:
VRRPv2, Advertisem... -
08:35 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
- Error code 61 means "Connection refused".
-
08:07 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
- After some research I've found out that system can't connect to "detached" ovpn instance socket.
I've added some l... -
06:36 AM Bug #3314: Traffic graph shows 2X the actual traffic on VLAN interfaces.
- I'm experiencing the same issue with 2.1.5 i386. But with my LAN (em) interface. I guess this is a bug with FreeBSD i...
-
12:38 AM Bug #2753 (Closed): RRD Graphs failes after pfSense upgrade (2.0.1 -> 2.0.2)
-
12:24 AM Bug #3213: Error creating more than 30 limiters
- config snippet with 30 limiters attached if you want to just paste something in ready to test (add one after pasting ...
-
12:19 AM Bug #3061 (Closed): Updating 2.1 snapshots nukes the bogons lists
- not sure if this was true at that point, it's not now.
-
12:03 AM Bug #2748 (Closed): Route53 DynDNS Updater does not work
- I know there are a number of people using this
-
12:02 AM Bug #2713 (Resolved): missing input validation for mobile IPsec P2 to prevent transport
-
12:02 AM Bug #2582 (Closed): OpenVPN service won't start after changing the IP of interface
- this works as it should in 2.1.5 and 2.2
-
12:01 AM Bug #2374 (Resolved): When entering values in firewall rules leading and trailing spaces are not deleted
-
12:00 AM Bug #1851 (Closed): ECC-Cert breaks the webconfigurator
10/08/2014
-
11:59 PM Bug #1959 (Resolved): openssl does not accept ECC-certificates
-
11:58 PM Bug #1969 (Resolved): IPsec refuses connection after first Cisco Client connection
- these scenarios were fixed a while back for at least the significant majority. Any outstanding issue in racoon is no ...
-
11:54 PM Bug #3213: Error creating more than 30 limiters
- Thinking this is trivially easy to fix, just a matter of fixing the input validation it appears.
Ermal, any techn... -
11:33 PM Bug #3256 (Rejected): dnsmasq replying with incorrect address
- nothing to go on here, need a replicable scenario of where it's not working. It works fine in general.
-
11:29 PM Bug #3317 (Rejected): ntpd sets stratum 16 (unsynced) when selected to listen on multiple interfaces
- I don't think there's a general issue here. There are tons of systems out there that run ntpd selected on multiple in...
-
11:26 PM Bug #3561 (Resolved): PPTP VPN broken without RADIUS - always requires RADIUS server configuration.
- the original issue here was the result of a config upgrade issue that's since been fixed at some point. I tested rest...
-
10:57 PM Bug #3866 (Resolved): firewall log filtering
- fixed
-
10:48 PM Bug #3389: GUI allows to configure ICMPv4 types for ICMPv6 firewall rules
- still an issue in 2.2
-
04:25 PM Bug #3884: Restarting Web GUI does not restart PHP-FPM
- True, yeah php-fpm should handle those scenarios on its own.
Let's leave it as is, but fix the menu layout. 8 sho... -
07:26 AM Bug #3884: Restarting Web GUI does not restart PHP-FPM
- In 2.2 there are many things using php-fpm.
While before php would get stuck and probably for other reasons php-fpm ... - 11:54 AM Revision 9da083fc: Fix an error introduced in bd0b5d2dc7 that makes system believe interfaces always mismatch
-
08:08 AM Bug #3918 (Resolved): On 2.2, mounting read-only after mounting read-write can be very slow on certain media NanoBSD
- Same issue as #2401 but it's happening again on 2.2:
Mounting read-only after mounting read-write can be very slow... - 04:33 AM Revision bd0b5d2d: Remove the minimum NIC warning, this dates back to when minimum 2 NICs were supported and it made sense to throw this message at people. It's obvious a network appliance requires at least one NIC.
-
01:19 AM Bug #3891: ipfw, on pfSense 2.2 kernel dump caused by: ipfw zone 4096 create
- Confirmed, simply running "ipfw zone 4096 create" will reproduce.
-
01:17 AM Bug #3864 (Resolved): /diag_dump_states.php has duplicate <form> element
-
01:17 AM Bug #3817 (Resolved): Missing call to preg_quote at pkg-utils.inc:295
-
01:17 AM Bug #3789: rc.update_bogons.sh and login shell ignore http proxy settings
- this is really annoying in proxy scenarios and should be trivially easy to fix. Just a matter of setting ftp_proxy, h...
-
12:56 AM Bug #3677 (Closed): packages.pfsense.org fails on IPv6
- there is another ticket for v6 to v4 fallback in general
-
12:53 AM Bug #3397 (Needs Patch): Cannot load builtin or external firmware for mwl driver
- what JimP has there is as good as anything will get for that driver. It's likely better behaved in 2.2 with the impro...
-
12:44 AM Bug #3665 (Resolved): IPsec tunnel description not displayed on status output
- fixed
-
12:43 AM Todo #34 (Needs Patch): PPTP users integration with user manager
- not worth the effort at this point, PPTP is dead.
-
12:42 AM Bug #3917 (Resolved): Mobile IPsec status page issues
- When viewing diag_ipsec.php with mobile IPsec configured, there are a couple issues.
1) if there are no clients c... -
12:36 AM Feature #3916 (Closed): IPsec status Overview tab no longer an overview
- diag_ipsec.php is way too noisy in 2.2. Those are good details to have, but what you want as an overview is a quick g...
-
12:28 AM Bug #3535 (Resolved): Selecting "LAN" as "WAN" in Multi-WAN Traffic Shaper wizard breaks the ruleset
- fixed
10/07/2014
-
11:40 PM Bug #3884 (New): Restarting Web GUI does not restart PHP-FPM
- I'm not sure this should be its own menu item. The vast majority of the time that the web interface gets hung up, it'...
-
07:59 AM Bug #3884 (Feedback): Restarting Web GUI does not restart PHP-FPM
- A new menu entry was added
-
06:17 PM Revision b4bd9c56: Update the URL for snapshots update
- 05:44 PM Revision 86ce2df7: Be more strict when checking if olsrd is enabled, otherwise when package is deinstalled and configuration is kept dhcpd will consider it's always as enabled
-
01:50 PM Bug #3911: VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
- What aliases? The dialog only accepts IP address. That's why i wondered if i was supposed to try the "IP aliases" tab...
-
01:36 PM Bug #1345 (Closed): Static routes to DNS on local subnet should not be added
- not sure if this behaved differently in earlier base OS versions, but it doesn't hurt anything in 8.3 and 10.x base v...
-
01:25 PM Bug #3915 (Feedback): DHCP server static mapped clients do not receive custom DNS servers
- also works fine here. Suspect client-side issue, will leave for feedback from Phil.
-
10:35 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
- Oh dear - I was thinking this was going to be a nice clear bug, since I noticed it on my test 2.2 system, then did si...
-
07:58 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
- I tried it on 2.2 and 2.1.5 and both worked as expected, my test config is similar to the one you posted.
-
06:28 AM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
- In 2.2 and using DNS Resolver it seems other way around. If you don't config custom DNS on DHCP client don't pic DNS ...
-
01:17 PM Bug #3853 (Resolved): DHCP Server failover_peerip is not synchronized on 2.2 with CARP
- works
- 02:00 AM Revision 3b5707db: Support up to 4 DNS Servers in DHCP
- 01:59 AM Revision 81af6a08: Support up to 4 DNS Servers in DHCP
- 01:57 AM Revision 3d88ea11: Support up to 4 DNS Servers in DHCP
- 01:55 AM Revision 6190312f: Support up to 4 DNS Servers in DHCP
- 01:52 AM Revision 8cbb140a: Support up to 4 DNS Servers in DHCP
10/06/2014
-
10:24 PM Bug #3915: DHCP server static mapped clients do not receive custom DNS servers
- And here is the dhcpd.conf I forgot to attach.
-
10:11 PM Bug #3915 (Resolved): DHCP server static mapped clients do not receive custom DNS servers
- When I add a static mapped DHCP client, then put 2 custom DNS servers for that client (e.g. 8.8.8.8 and 8.8.4.4 to ov...
-
10:01 PM Bug #3822: 2.2 boot hangs at "Synchronizing user settings"
- If I halt the system then they will hang at "Synch user settings" ?? But if I pull the plug they seem to finish the...
-
09:59 PM Bug #3822: 2.2 boot hangs at "Synchronizing user settings"
- I have two machines on the latest 2.2 that hang every first boot but come alive after a re-boot. I can provide config...
-
07:06 PM Bug #3822: 2.2 boot hangs at "Synchronizing user settings"
- I updated the above mentioned redmine-3822.xml config file. I can reliably reproduce this hang by just restoring this...
-
04:05 PM Revision a3cc8dcc: Add an option to restart php-fpm from console
-
03:47 PM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
- Here is a video http://rghost.net/private/58388261/44e5fb12a48d08550c2bb5cd6c676bd3
Bug is 100% reproducible. My g... -
05:29 AM Bug #3894: OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
- Normally openvpn instances are restarted on interface up event!
Can you back this claim with proper information as... -
02:29 PM Bug #3846 (Resolved): Adding interface for new VLAN selects active WAN VIP address breaking connectivity
- fixed
-
12:54 PM Feature #3914: Support up to 4 DNS Servers in DHCP
- That's reasonable Phil, feel free to submit that as a merge request to master.
-
11:01 AM Feature #3914: Support up to 4 DNS Servers in DHCP
- and OpenVPN server GUI has boxes to provide up to 4 DNS servers to clients, so it seems reasonable/consistent to have...
-
10:55 AM Feature #3914 (Resolved): Support up to 4 DNS Servers in DHCP
- System->General Setup already supports 4 DNS servers, which get passed to DHCP clients if DNS Forwarder is not enable...
-
11:08 AM Bug #3911: VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
- Our recommendation for that is to use ip aliases.
Since you have already configured a VIP(carp) why you want to ad... -
07:15 AM Bug #3911: VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
- maybe my formulation is wrong, but shouldn't it be possible to add multiple IP addresses/aliases to same VHID? ifconf...
-
10:31 AM Revision 9c296826: Fixes #3909 Properly report and detect carp_status
-
08:22 AM Revision 2d5fd3c2: Remove function that is not implemented properly. Nothing seems to use it.
-
08:21 AM Revision 4aa7f542: Merge pull request #1303 from PiBa-NL/carp_without_matching_subnet
-
08:16 AM Revision 042f0d12: Merge pull request #1304 from sselph/powerd_normal_mode
-
08:15 AM Revision 78aadc14: Merge pull request #1305 from phil-davis/patch-2
-
05:50 AM Bug #3909 (Feedback): carp_status.php shows disabled after initial config when it really isn't
- Applied in changeset commit:9c2968266996b21bb4e3754ae7ae4d6100970563.
- 04:48 AM Revision fb0a4e7a: Fix not rules for OPTn network case
- Reported in forum https://forum.pfsense.org/index.php?topic=82319.0
The "if (is_subnet($src)) ... filter_address_add_...
10/05/2014
-
10:35 PM Revision 3d77cc35: Add powerd normal mode flag (-n)
-
04:05 PM Bug #3913 (Resolved): if_bridge missing ALTQ support
- Hello,
I just upgraded my pfSense 2.1.5 install to the latest 2.2 beta release.
Once the update completed, i coul... -
02:33 AM Bug #3737: Incoming VLAN traffic fails to reach VLAN interface if PCP not 0
- I encounter the same issue, with the patch PCP is working fine.
Can you push this patch so it can be included in the...
10/04/2014
-
12:48 AM Feature #3328 (Resolved): Allow reordering of IPsec Phase 1 and Phase 2 entries
- works
-
12:31 AM Bug #1107 (Resolved): mpd on AMD64 generates invalid checksums with NAT
- fixed
-
12:24 AM Bug #3807 (Resolved): Unable to edit existing Virtual IPs
- fixed
-
12:22 AM Bug #3760 (New): reply-to with TCP and IPv6 generates broken checksums
- still doesn't work on: ...
-
12:13 AM Bug #3661 (Resolved): xauth user is not displayed in IPsec status
- works
-
12:00 AM Bug #3826 (Resolved): 2.2 diag_ipsec.php issues
- these issues are fixed. The page as a whole needs some design work so "Overview" isn't a huge wall of text, will cove...
10/03/2014
-
11:30 PM Bug #3823 (Resolved): diag_ipsec.php fails with PSK+Xauth mobile client connected
- fixed
-
10:34 PM Bug #3912 (Resolved): Dynamic DNS disallows valid character in username
- OpenDNS allows a username (email) in the format of example+email@gmail.com, however the + sign trips up the services_...
-
10:21 PM Bug #3822 (New): 2.2 boot hangs at "Synchronizing user settings"
- still an issue in some particular edge case I haven't quantified yet.
-
04:21 PM Bug #3911 (Rejected): VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
- That forum thread has no relation. The scenario as described doesn't exist in 2.1.5 or 2.2. The input error "VHID ......
-
07:25 AM Bug #3911 (Rejected): VHID 3 is already in use on interface WAN. Pick a unique number on this interface.
- This happens when trying to add more IPs to a VHID, as discussed in https://forum.pfsense.org/index.php?topic=54885.0...
- 03:15 PM Revision 4665dbdd: Make proper check if IP address is configured on another interfaces and ignore current one. It fixes #3807
-
10:20 AM Bug #3807 (Feedback): Unable to edit existing Virtual IPs
- Applied in changeset commit:4665dbdd51ea845a4b84d5068b4ecf31cd9dce4b.
-
07:06 AM Feature #3228: Please add an "Interface Down" Trigger Level for Gateway Group members
- Chris Buechler wrote:
> Interface link down will trigger "interface down" from monitoring, so I fail to see a point.... -
05:53 AM Bug #3831: VPN PPTP, RADIUS issued IPs and secondary RADIUS server
- Found that problem in MPD (and libradius library). (http://sourceforge.net/p/mpd/discussion/44693/thread/e738def4)
-
03:21 AM Bug #2366: Error in User Manager - Privileges are not being enforced
- You should follow setup procedures for AD.
Search the net and you will find them.
10/02/2014
-
09:52 PM Bug #3822 (Resolved): 2.2 boot hangs at "Synchronizing user settings"
- Edit: scratch that, still an issue in some particular edge case I haven't quantified yet.
- 09:19 PM Revision 3c4fc30b: get back to our standard RFC-defined capitalization of IPsec
-
08:56 PM Revision 80a261a2: CARP, allow carp ip to be outside interface and alias subnets (FreeBSD10 feature)
- 08:09 PM Revision 3258d442: Merge pull request #1300 from jean-m-cyr/master
- 08:09 PM Revision 90a430c7: Merge pull request #1298 from PiBa-NL/vips_sort
-
08:01 PM Revision 8d3c338e: firewall_virtual_ip make the table sortable remove double tfoot, but use 2 tr inside.
-
07:18 PM Bug #3383: Web GUI becomes slow or unusable if the LDAP server used for GUI auth is unreachable
- Another option would be to add an authentication realm drop down to the login page, like you would get on a windows m...
-
06:51 PM Bug #3383: Web GUI becomes slow or unusable if the LDAP server used for GUI auth is unreachable
- It would also be nice if it supported multiple LDAP servers. In an AD environment there are multiple directory serve...
-
06:28 PM Bug #2366: Error in User Manager - Privileges are not being enforced
- I have also experienced this bug. When pfsense is set to use LDAP as the authentication server (specifically Active ...
-
06:04 PM Bug #2889 (Closed): ACK Traffic Put in Normal Queues. Normal Traffic Put in ACK Queues
- haven't seen that elsewhere, and can't replicate on current versions
-
06:03 PM Bug #2173 (Closed): pfsync errors
-
06:01 PM Bug #1721 (Closed): uPnP issue with STATIC ip addresses
-
06:00 PM Bug #1304 (Resolved): Quick option ignored for "Queue" action rules on floating tab
-
05:59 PM Bug #731 (Resolved): Shaper: p2p catch all bandwidth allows various selections but only % usable
-
05:56 PM Feature #2847 (Resolved): Add a checkbox to flag a gateway as "down"
-
05:55 PM Feature #2295 (Resolved): Allow multiple OpenVPN compression settings (disable, yes, no, adaptive)
-
05:54 PM Todo #3632 (Resolved): Move to sqlite3 php module
-
05:53 PM Feature #73 (Resolved): Log failed PPTP vpn logins to PPTP log
- fixed ages ago
-
05:52 PM Feature #262 (Resolved): Add NAT-PMP support to miniupnpd
-
05:52 PM Feature #403 (Resolved): tinydns/dnscache drop in replacement for dnsmasq in pfSense
-
05:51 PM Bug #1333 (Resolved): Rate causes high CPU usage
- fixed quite some time ago.
-
05:51 PM Feature #1807 (Resolved): Button needed for '-add a new one-' on the static IP configuration
-
05:49 PM Bug #1909 (Resolved): dhcp dies after reboot
-
05:46 PM Feature #2281 (Closed): NAT reflection of UDP using "socat"
- reflection of UDP works fine in pure NAT mode.
-
05:46 PM Feature #2637 (Closed): Add ability to define dnsmasq cache size
- dnsmasq no longer used
-
05:45 PM Feature #2715 (Resolved): Don't reactivate CARP until I manually do it
- feature exists in 2.2
-
05:44 PM Feature #2986 (Resolved): Turkish Language Import For Next Snapshots
-
05:43 PM Bug #2860 (Closed): packages don't get restored
- as described is not a general issue, and good chance any edge case has been fixed in the years since.
-
05:41 PM Feature #2834 (Needs Patch): carp+pfsync: add ability to prefer one node as master
-
05:40 PM Bug #2819 (Resolved): Unconstrained memory growth of tcpdump
- this hasn't happened in 2.1x and newer versions
-
05:39 PM Bug #3207 (Resolved): bug/feature expansion: ufslabels.sh doesn't account for gmirror systems.
-
05:37 PM Bug #3910: Cannot set advskew back to 0
- This seems to me to be a FreeBSD bug, setting advskew to 0 never works.. Setting it to 1 is possible though. Perhaps ...
-
05:30 PM Bug #3910 (Resolved): Cannot set advskew back to 0
- When leaving persistent CARP maintenance mode, the advskew is left at 254 on the running system, so it retains backup...
-
05:33 PM Bug #3595 (Resolved): OpenVPN TAP/TUN <--> interface bridge not working after reeboot
-
05:32 PM Bug #3066 (Rejected): Proxy ARP failing with kernel error
- issue as described doesn't exist.
-
05:30 PM Feature #3522 (Resolved): Option to set CARP interfaces to 'maintenance mode', persisting through a reboot so the primary machines stays as backup/inactive
- feature is implemented. There is still an outstanding problem with it not dropping back to the configured advskew, th...
-
05:24 PM Bug #1983 (Resolved): Cancel Button generates a Confirm Form Resubmission message
- fixed
-
05:23 PM Bug #3635 (Rejected): Apinger does't start after upgrade to 2.1.3-RELEASE
- there is no general bug here. Upgrades don't delete any groups, and of tens of thousands of systems that have upgrade...
-
05:20 PM Bug #3604 (Rejected): Traffic shaper wizard rules can't be deleted
- no outstanding bugs here, the wizard history has no functional impact and is retained for convenience. The lacking in...
-
04:56 PM Feature #3228 (Rejected): Please add an "Interface Down" Trigger Level for Gateway Group members
- Interface link down will trigger "interface down" from monitoring, so I fail to see a point.
-
04:53 PM Feature #3186 (Resolved): Firewall: NAT: 1:1: Edit
- I added a note to the documentation re: destination, which is the only legit issue here.
-
04:44 PM Todo #3893 (Resolved): Alias -> IP
-
04:43 PM Bug #3876: pfsync is not synchronizing states on 2.2
- Confirmed as described, whether multicast or unicast, no pfsync traffic is ever seen on the wire.
-
04:03 PM Bug #3807 (New): Unable to edit existing Virtual IPs
- original issue still exists
-
04:02 PM Bug #3825 (Resolved): Rejected traffic shown as blocked in firewall log
- fixed
-
03:59 PM Bug #3909 (Resolved): carp_status.php shows disabled after initial config when it really isn't
- To replicate:
Take a clean default config, and add a CARP IP. Apply changes. Go to Status>CARP. It shows disabled... -
07:51 AM Bug #3450: DHCPv6 Lease Status shows no Leases
- @pfSense used in notes #4 was i386/32bit.@
-
07:46 AM Feature #3908 (Rejected): Set gateway outside the range of wan address
- Duplicate of #972
-
07:38 AM Feature #3908 (Rejected): Set gateway outside the range of wan address
- For example:
An ISP give you an IP: 5.30.2.24/32 and give you a gateway with an address in an other range : 217.13...
10/01/2014
-
05:06 PM Revision d4f4ebc7: Remove stray 'i'.
- Reported-by: https://forum.pfsense.org/index.php?topic=82393.0
-
04:18 PM Bug #3450: DHCPv6 Lease Status shows no Leases
- *Manual Action is Needed!*
* pfSense's "DHCPv6 Leases" page can show the hosts after that.... -
03:58 AM Bug #3771: Webinterface and dhcpdcrashes with 500+ static leases
- It's easy to reproduce, setup an HA setup with dhcpd failover and create about 500 leases.
If I deactivate the dhc... -
12:37 AM Feature #3907 (Resolved): OpenVPN widget connected client count display
- Hello,
It would be nice to know how much openvpn clients are connected.
The Dashboard widget's title is "Server TC...
09/30/2014
-
06:14 PM Bug #3906 (Rejected): Menu bar wraps, System menu hard to access
- Duplicate of #3842
-
05:55 PM Bug #3906: Menu bar wraps, System menu hard to access
- I've just realised this is a duplicate of https://redmine.pfsense.org/issues/3842
Sorry. -
05:48 PM Bug #3906 (Rejected): Menu bar wraps, System menu hard to access
- From a debian and a fedora linux client, I have problems accessing the System menu in the webgui. The HELP menu is ...
-
09:48 AM pfSense Packages Bug #3905 (Closed): Upgrade from 2.1.3 to 2.1.5 broken Net/SNMP.pm path
- This results in issues with some plugins of Nagios. e.g.
/usr/pbi/nrpe-amd64/libexec/nagios/check_ifoperstatus
... -
07:31 AM Bug #3904 (Resolved): Firewall Log widget generates a load of HTML code when Reverse DNS resolution is clicked
- As per this forum report by chpalmer:
https://forum.pfsense.org/index.php?topic=82254.0
The version from 2.1 bran... -
07:07 AM Todo #3903: Disable NTPD server
- In addition to being a duplicate ticket, that's not a valid reason for wanting to disable ntpd.
Free tip: Bind Ope... -
06:47 AM Todo #3903 (Rejected): Disable NTPD server
- Duplicate of #3567
-
05:09 AM Todo #3903 (Rejected): Disable NTPD server
- I've my Openvpn servers runs on port 123 UDP, when the firewall rebooting NTPD or OpenVPN service is down... ( same p...
-
06:49 AM Todo #3893 (Feedback): Alias -> IP
- Pull request has been merged
09/29/2014
-
06:49 PM Bug #3634 (Rejected): Default gateway not restored after it comes back online
- duplicate of #1837 and/or #1705
-
06:46 PM Bug #3875 (Feedback): interface reporting dscrepancy
- Hey Ike,
Sounds like some general known issues in 8.x base with certain NICs in certain circumstances, the underl... -
06:32 PM Bug #3865 (Rejected): With explicit block-everything rule in firewall it incorrectly blocks LAN to LAN DHCP broadcast 0.0.0.0 and 255.255.255.255
- no bug here.
-
05:20 PM Feature #3633 (Resolved): OpenVPN client's "Client Certificate" should be optional
- works
-
05:01 PM Bug #3849 (Rejected): Compex WLE200NX wireless card stops responding
- driver issue that's outside our control, and is almost certainly fixed in 2.2's base OS.
-
04:59 PM Bug #3877 (Rejected): OpenVPN Client Connection routing Internettraffic
- config issue, not a bug. Please use one of our support resources for assistance. https://pfsense.org/support
-
04:58 PM Feature #3897 (Rejected): recurring schedules
- this has been possible for years
-
04:58 PM Bug #3867 (Rejected): Fatal error: Allowed memory size of 134217728 bytes exhausted (tried to allocate 71 bytes) on diag_states_summary.php version 2.1.5
- duplicate of #3796
- 03:35 AM Revision c7fa58ac: Fix up NTP status page formatting
- Number of columns is not the same for all table rows
09/28/2014
-
11:00 PM Feature #3453: Management GUI (lighttpd) interface binding control
- Well, just had to do another pfSense update, and then had to go through the ritual of patching files to make it work....
-
08:56 PM Revision 547d7641: firewall_virtual_ip make the table sortable
-
07:28 PM Bug #3902 (Resolved): dhcp6c can't handle Server Unicast Option
- Hi
My ISPs DHCP6 server uses the Unicast Option (http://tools.ietf.org/html/rfc3315#section-22.12) which seemingly... -
05:36 PM Bug #3901 (Rejected): DynDNS is not forcefully updated after powerup
- Hi
I was playing around with two instances of pfSense (with the same config).
pfSense1 had IP a.b.c.x (via DHCP) ... - 03:23 PM Revision 762a7b89: Spelling
-
03:16 PM Bug #3900: DynamicDNS should allow "@" at hostname
- BTW, where these configs are stored? Could I change them directly via Diagnostics / Edit File? It would be a good wor...
-
03:11 PM Bug #3900 (Resolved): DynamicDNS should allow "@" at hostname
- No-ip has the ability to update one of several IP addresses of a round-robin DNS A record. This is done adding a "@<l...
09/27/2014
- 07:17 PM Revision e7b03bc1: Merge pull request #1295 from phil-davis/patch-21
- 05:19 PM Revision 6b18c66b: Clarify bracketing
- to minimize risk of a problem when adding code here in the future.
- 05:10 PM Revision 055a43d2: Allow extended alias inputs #3890
- Currently if you enter a space-separated list of subnets in the IP address box when entering an alias, the code repor...
-
04:40 PM Feature #3899 (New): Add feature to allow reordering of <package> items in config.xml
- Would it be possible to add a new page that would allow an admin/user to change the order in which packages are order...
-
12:36 PM Bug #3890: Aliases multiple CIDR ranges show error message
- The version for 2.2 was not so difficult to integrate:
https://github.com/pfsense/pfsense/pull/1297 -
11:26 AM Bug #3890: Aliases multiple CIDR ranges show error message
- It was kind-of a feature:) It fills out all the rows when you press Save the first time but tells you that the data i...
- 12:08 PM Revision da7f6588: Spelling
- 12:04 PM Revision ff5fa759: Spelling
- 12:02 PM Revision 3c4cddc7: Spelling
- 11:59 AM Revision 0a97a7bb: Spelling
- 11:51 AM Revision 51dc66c9: Spelling
- 11:49 AM Revision ec074a86: Spelling
- 11:47 AM Revision f64b0b8e: Spelling
- 11:45 AM Revision 15c58806: Spelling
- 11:38 AM Revision abe63176: Spelling
- 11:37 AM Revision fb3b7640: Spelling
- 11:35 AM Revision 4304dd97: Spelling
- 11:34 AM Revision 8913533d: Spelling
- 11:26 AM Revision 47e1f0d4: Spelling
-
04:14 AM Bug #3896: ipv6 pppoe ISP with static adress
- I am trying with 2.2-BETA (i386) built on Fri Sep 26 14:06:31 CDT 2014
Pareil mais pas mieux. similar but not better
09/26/2014
-
06:17 PM Bug #3898: Traffic Graph webpage freezes up after some time
- my pfsense is:
2.1.5-RELEASE (i386)
built on Mon Aug 25 07:44:26 EDT 2014
FreeBSD 8.3-RELEASE-p16
You are on ... -
06:17 PM Bug #3898 (Closed): Traffic Graph webpage freezes up after some time
- Anytime I leave the page up 'Status-->Traffic Graph' on my Mac 10.9.5 Safari 7.1 browser, eventually the whole page w...
- 04:56 PM Revision adab585d: Merge pull request #1294 from phil-davis/patch-19
- 04:56 PM Revision 45cd176a: Merge pull request #1293 from phil-davis/patch-20
- 04:18 PM Revision bbd1f783: firewall_aliases_edit UI text changes
- If type URL Table then the heading "Description" on the 3rd column gets suppressed (I am not really sure why that is,...
- 04:01 PM Revision c5cfa06b: Minor fixes to firewall_aliases_edit
- for 2.1 branch
-
03:41 PM pfSense Packages Feature #3685: haproxy listener ip from alias
- Hi Atıf are you using the haproxy-devel 1.5.x package?
If so could you share the <haproxy> part of a configfile yo... -
03:11 PM pfSense Packages Bug #3892: Critical bash vulnerability CVE-2014-6271
- Security Announcement posted:
https://www.pfsense.org/security/advisories/pfSense-SA-14_18.packages.asc -
07:36 AM pfSense Packages Bug #3892 (Feedback): Critical bash vulnerability CVE-2014-6271
- Affected packages have been either updated or removed.
* FreeRADIUS2: Package updated with a patched version of ba... -
11:31 AM Feature #3897: recurring schedules
- You can already make these, IMHO. e.g. I have one called OfficeTime that looks like:
OfficeTime
Mon - Thur 14:0... -
08:49 AM Feature #3897 (Rejected): recurring schedules
- it would be great to have the possibility to create recurring schedules such as "working hours", ...
-
11:22 AM Todo #3893: Alias -> IP
- See https://github.com/pfsense/pfsense/pull/1293 for my suggested change, which also fixes up a little issue with the...
-
03:17 AM Todo #3893 (Resolved): Alias -> IP
- Hi !
In the Web-GUI under Alias - IP - Hosts only IP is shown when addng a new entry.
Perhaps there should also be ... - 10:13 AM Revision ace5483e: Merge pull request #1292 from phil-davis/patch-18
-
07:20 AM pfSense Packages Bug #3816 (Feedback): Bump FreeRADIUS to fix libssl version mismatch error
- Please try latest version.
-
06:21 AM Bug #3877: OpenVPN Client Connection routing Internettraffic
- 1. There is no need to set *IPv4 Configuration Type* to "DHCP" at all. Ovpn client interfaces are autoconfigurable. S...
-
06:12 AM Bug #3896 (Resolved): ipv6 pppoe ISP with static adress
- Hi all,
Funny case In France Nerim provider doesn't affect IPV6 address in adsl PPPOE.
It is dual IPV4 / IPV6 acc... -
06:11 AM Feature #3895 (New): Timeout for "Apply change"
- It would be nice to have a timeout when you applied changes to make it possible to revert changes back if no cofirmat...
-
05:48 AM Bug #3894 (Resolved): OpenVPN client started multiple times when connecting to FQDN where connectivity to server is delayed
- Requirements:
1. WAN connection should not be Static/DHCP!
Steps to reproduce:
1. Create an ovpn client instance... -
03:51 AM Bug #3205: Partial system freeze when disconnecting USB 3G stick
- any fix for this as its still troubling me
- 02:40 AM Revision 62218b4d: Remove useless check for alias description matching an interface description
- While looking at other checks in the code I noticed this check. It was not effective anyway, because the first line i...
-
02:18 AM Bug #3312: Gateway on IPsec rules is not functional in pf
- hello,
I installed 2.1.5 and when I put a getaway on ipsec rules, traffic goes to the default.
Is it a bug?
09/25/2014
-
07:39 PM pfSense Packages Bug #3892: Critical bash vulnerability CVE-2014-6271
- Checking further: git, avahi, and ntopng use bash during the build but do not include it in the PBI for installation....
-
07:29 PM pfSense Packages Bug #3892: Critical bash vulnerability CVE-2014-6271
- Update again:
More affected packages, full list is now:
git, avahi, freeradius2, ntopng, mailscanner -
05:49 PM pfSense Packages Bug #3892: Critical bash vulnerability CVE-2014-6271
- Also: The mailscanner package appears to be affected along with FreeRADIUS2
-
05:37 PM pfSense Packages Bug #3892: Critical bash vulnerability CVE-2014-6271
- [2.2-ALPHA][admin@apu.localdomain]/root(1): which bash
bash: Command not found.
[2.2-ALPHA][admin@apu.localdomain]/... -
05:36 PM pfSense Packages Bug #3892: Critical bash vulnerability CVE-2014-6271
- 2.2 does not include bash. No base install includes bash. If you added it manually, it came from FreeBSD, or perhaps ...
-
05:31 PM pfSense Packages Bug #3892 (Resolved): Critical bash vulnerability CVE-2014-6271
- 2.2-beta appears vulnerable:...
-
03:37 PM Bug #3891 (Resolved): ipfw, on pfSense 2.2 kernel dump caused by: ipfw zone 4096 create
- ipfw is used by captive portal, and uses a cpzoneid to create a zone in ipfw using mwexec("/sbin/ipfw zone {$cpzonei...
-
01:04 PM Bug #3890 (Resolved): Aliases multiple CIDR ranges show error message
- Hi
If you create a new IP alias for network white-listing with any CIDR ranges separated by a space, pfsense WILL ... - 12:55 PM Revision 7ea27b0d: Be more strict on removing groups checking group id and group name, it avoids issues like happened to users on ticket #3856. While I'm here, replace GET by POST
- 12:29 PM Revision fbe0d698: Be more strict on user removal checking array id and also username to avoid removing wrong users when browser back button is used. It should fix #3856
- 11:18 AM Revision e45e3bf4: Merge pull request #1290 from jean-m-cyr/master
- 11:13 AM Revision b4db2d0e: Remove also old unbound startup script
-
07:41 AM Bug #3849: Compex WLE200NX wireless card stops responding
- I had the same issue, with nearly the same setup (APU 1D4 engine).
What really helped me, was to set the Wireless ... -
07:30 AM Bug #3856 (Feedback): Delete a user, edit another one and going back... delete the edited user
- Applied in changeset commit:fbe0d6986aef1ce933f91ad34ba9393344693180.
- 01:26 AM Revision 31377265: Support IPV6 in unbound.conf
- IPv6 addresses are not included in unbound config and access list
09/24/2014
- 11:58 PM Revision 78244277: Merge pull request #1289 from jean-m-cyr/master
- 11:10 PM Revision 806bf882: outgoing ip incorrectly set in unbound.conf
- DNS resolver outgoing IP interface IP address is incorrectly set to the
last inbound interface IP address... fix it. - 09:43 PM Revision c11b7ffe: Remove unbound files, menu and service during config upgrade, otherwise things can go really bad with functions redeclared un base and package unbound.inc and config corrupted when upgrading from 2.1.x with unbound installed to 2.2. PBI and package section are both removed later during package upgrade
- 06:28 PM Revision 90a95930: Merge pull request #1288 from brunostein/fix_button_close_info_box
-
06:20 PM Revision 370b4666: Fix close button in the info box
-
12:41 PM Bug #3883: Changing SNMP Bind Interface does not change actual bind interface of SNMP service.
- At a minimum, upgrade to 2.1.5. If you still have a problem, post on the forum.
-
12:31 PM Bug #3883: Changing SNMP Bind Interface does not change actual bind interface of SNMP service.
- There are six interfaces on this system. This is the output for binding to interface All, LAN, two other interfaces,...
- 10:10 AM Revision abf2e0f1: Merge pull request #1287 from jean-m-cyr/master
-
09:53 AM Revision a99547e4: Provide a toggle for apinger debug messages to be logged to syslog. To help with roubleshooting issues
-
05:52 AM Bug #3889 (Confirmed): Non relevant changes in config.xml
- Version 2.1.5:
I push the configs to git for QA.
I have a lot of changes in empty tags (from short to long format... - 02:09 AM Revision 3be4caf9: NTP Service GPS page always reverts to 'Custom' GPS type
- Remember and correctly display GPS type setting
Also available in: Atom