Activity
From 07/12/2016 to 08/10/2016
08/10/2016
-
07:10 PM Revision 470fddb1: Ticket #3734: Replace etc/inc/IPv6.inc by pear-Net_IPv6 port
-
04:27 PM Revision 6989a7c5: Remove copy of pear-Crypt_CHAP from repo and use ports
-
04:27 PM Revision 1bdfe40a: Fix path to require pear-Crypt_CHAP installed file. Ticket #3734
-
04:26 PM Revision ea0e22ee: Add pear directory to PHP include_path. Ticket #3734
-
02:34 PM pfSense Packages Bug #6690 (Closed): SURICATA IPS Issue - Kills VLANS & Traffic Shaper
- Strips 802.1q tagged traffic from an interface when running inline IPS mode.
Traffic shapper no longer works as one ... -
12:26 PM Todo #6689 (Resolved): Add enable link to Status > UPnP & NAT-PMP error message if disabled
- Adding a "Go here to enable" link to the error message seems like it would be helpful.
If I'm not mistaken, then l... -
11:28 AM Todo #3734: Remove PHP static pear modules from repo and use ports
- CHAP.inc removed in commit:6989a7c
-
08:59 AM pfSense Packages Bug #6305: Quagga problems updating routes / mistakenly showing "kernel"-routes while they are not
- Someone who can reproduce it reliably needs to get the details of how to reproduce it reported to the Quagga project ...
-
08:46 AM pfSense Packages Bug #6305: Quagga problems updating routes / mistakenly showing "kernel"-routes while they are not
- Any update on the topic?
-
08:33 AM Feature #6546: pfSense should support logging to e.g. ELK stacks
- I now have that Python code wrapped up as a class, for use with Python logging. A current limitation is that logging ...
-
07:34 AM Bug #6688: Special characters in a password cause problems
- If that example you posted is the one that didn't work, I can see why. Looks like ">" was changed to ">" twice...
08/09/2016
-
08:57 PM Bug #6688 (Resolved): Special characters in a password cause problems
- With the following config snippet (some info redacted), pfsense reports:
php-fpm[71756]: /services_dyndns_edit... -
06:55 PM Bug #6687 (Duplicate): Secure email fails with private CA
- If a private CA such as a self signed enterprise CA is in use, the CA is not recognized when establishing SMTP connec...
-
06:26 PM Revision 212596c4: Fix bind options and add them for 9.10 as well
-
06:26 PM Revision 3bd18cab: Fix bind options and add them for 9.10 as well
-
05:17 PM Revision bdcdd6e3: Fix wording of the "Reject leases from" option for a DHCP interface.
-
05:17 PM Revision 3c36d8ce: Fix wording of the "Reject leases from" option for a DHCP interface.
-
05:17 PM Revision d3225265: Fix wording of the "Reject leases from" option for a DHCP interface.
-
03:55 PM pfSense Packages Bug #5749: OpenVPN Export Certs with password, password doesn't open .pk12 container.
- I tried using "@" and "." in the password and both worked fine.
Looking at the JS code, it's using the escape() fu... -
12:44 PM pfSense Packages Bug #5749: OpenVPN Export Certs with password, password doesn't open .pk12 container.
- Is it only "+" that causes a problem or have you tried other special characters as well?
The way the password is s... -
02:07 PM Revision 495527b1: Remove workarounds to sort extensions.ini since ports tree now has a better solution in place to track PHP modules dependencies
-
01:52 PM Bug #6686: PHP extensions.ini cannot be read by non root users
- This file is being removed in 2.4.
If a 2.3.3 is issued, it would be desirable to add a chmod to 644 following cre... -
01:29 PM Bug #6686 (Resolved): PHP extensions.ini cannot be read by non root users
- /usr/local/etc/php/extensions.ini is owned by root and created with 600 permissions. This prevents proper initializat...
-
12:28 PM Revision 02fe4964: Re-enable mosh, fixed
-
09:40 AM Bug #1629: invalid state table entries after WAN IP change
- I have observed that executing the following code does not seem to actually change anything in config.xml -- so I thi...
-
02:45 AM pfSense Packages Bug #6129: zabbix agent/proxy 2.4 not ported to pfSense 2.3
- I would also like to see it come back. As we can't upgrade all our boxes to pf2.3 in one day we have a problem. 2.3 D...
08/08/2016
-
11:45 PM Revision e2912fc2: Disable build of znc and mosh, both broken
-
10:37 PM Bug #5993: dhcp6c not started until an RA received
- I looked into the gateway status issue. After pfsense boots with PR #3092 installed, the status of WAN_DHCP6 is unkno...
-
10:31 PM Bug #5993: dhcp6c not started until an RA received
- Phillip Davis wrote:
> The text typo was in existing code, so I made a separate pull request to tidy that up:
> htt... -
03:19 PM Bug #5993: dhcp6c not started until an RA received
- Phillip Davis wrote:
> The text typo was in existing code, so I made a separate pull request to tidy that up:
> htt... -
07:04 PM Revision e7ab83cc: Enable apcupsd build
-
07:04 PM Revision 1f57dd8e: Enable apcupsd build
-
04:51 PM Feature #6674: Custom widget preference settings per user
- This will need a target version set so that it will appear in release notes some time. Not sure what you guys are goi...
-
09:14 AM Feature #6674 (Resolved): Custom widget preference settings per user
- PRs tested and merged. Thanks Phil.
- 12:49 PM Revision 96d2f02e: Text typo
- Noted by Daryl Morse in comment on Redmine bug 6637.
(cherry picked from commit bf6ae0ad277710ffa64ee0967c5d4f717c2bc... - 12:49 PM Revision 32916e5c: Text typo
- Noted by Daryl Morse in comment on Redmine bug 6637.
(cherry picked from commit bf6ae0ad277710ffa64ee0967c5d4f717c2bc... - 12:49 PM Revision 72aa662b: Merge pull request #3094 from phil-davis/patch-1
-
11:19 AM pfSense Packages Bug #5749: OpenVPN Export Certs with password, password doesn't open .pk12 container.
- Any update on this? I'm having the same issue on 2.3.2. Using openvpn-client-export 1.3.8 (just reinstalled it as wel...
-
11:00 AM Bug #6685 (Feedback): LAGG groups get stuck with an unconfigurable 1400MTU with em NICs.
- We don't have anything that would be forcing that to 1400 that I can see. I have a local setup here with LAGG and VLA...
-
10:54 AM Bug #6685 (Closed): LAGG groups get stuck with an unconfigurable 1400MTU with em NICs.
- I'm not sure of the exact scope of this issue, but I can at least say it happens when reproducing my environment.
... -
09:15 AM Bug #6676 (Resolved): Delete NAT rule with associated firewall rule does not update firewall separators position
- Fixed by https://github.com/pfsense/pfsense/pull/3089
-
09:12 AM Bug #6669 (Resolved): index.php: Adding a new widget corrupts the settings for existing widgets
-
08:21 AM pfSense Packages Bug #6681 (Resolved): Squid local auth password handling is weak and only accepting short passwords
- Tested and working here as well
-
08:18 AM pfSense Packages Bug #6681: Squid local auth password handling is weak and only accepting short passwords
- Tested this with a long password that failed in 0.4.21.
Works as expected in 0.4.22. Rejects incorrect password. R... -
05:02 AM Bug #6528: The captive portal cannot be used on interface lan since it is part of a bridge but works anyway
- Orsiris de Jong wrote:
> Screamed horray to quick !
> When the interface the CP is binded to is bridged, everything... - 03:56 AM Revision bf6ae0ad: Text typo
- Noted by Daryl Morse in comment on Redmine bug 6637.
08/07/2016
-
10:57 PM Bug #5993: dhcp6c not started until an RA received
- The text typo was in existing code, so I made a separate pull request to tidy that up:
https://github.com/pfsense/pf... -
06:07 PM Bug #5993: dhcp6c not started until an RA received
- I'm currently testing the latest development snapshot (as of the time of this post) with the latest patch from (DHCP6...
-
01:44 PM pfSense Packages Bug #6684 (Resolved): Setting IKEv2 Phase 2 in Mobile Config appears to generate invalid Apple Profile
- Setting "Phase2 PFS Group - Provide the Phase2 PFS group to clients (overrides all mobile phase2 settings)" in Mobile...
08/06/2016
-
02:28 PM Bug #6675: Port Forward on LAN does not work in 2.3.x
- Only you correcting what you said above in pfSense own documentation just finding something interesting, he recommend...
-
12:32 PM Bug #5993: dhcp6c not started until an RA received
- Daryl Morse wrote:
> I'm currently testing the latest development snapshot (as of the time of this post) with the ... -
06:14 AM Feature #2358: NAT64 support
- UPVOTE. I'd love to be able to set up an IPv6-only network and just use NAT64 to redirect old requests.
08/05/2016
-
10:30 PM Revision eea35b99: Improve the wording to make clear the legal restrictions for the use of the pfSense trademark.
- Reviewed by: jimt
(cherry picked from commit d689bc7df5601d1a50aaccc3d75472099cd942b7) -
10:27 PM Revision d689bc7d: Improve the wording to make clear the legal restrictions for the use of the pfSense trademark.
- Reviewed by: jimt
-
06:13 PM Revision 88871e26: Ignore linkup eventos for interfaces that are member of bridges and have no IP address configured
-
06:13 PM Revision d9eac320: Ignore linkup eventos for interfaces that are member of bridges and have no IP address configured
-
02:59 PM Revision 8dc90525: Verify if interface is active gw for gw group before update dynamic DNS
-
02:58 PM Revision 05741e45: Verify if interface is active gw for gw group before update dynamic DNS
-
02:58 PM Revision e8382f7f: Verify if interface is active gw for gw group before update dynamic DNS
-
10:21 AM Bug #6683: Empty page 'Firewall: NAT: Port Forward' when Read-Only rights
- OK, sorry Jim. But why no delete the right "WebCfg - Firewall: NAT: Port Forward page" if it does not work ?
-
10:14 AM Bug #6683 (Not a Bug): Empty page 'Firewall: NAT: Port Forward' when Read-Only rights
- To create a read-only user, give them the "Deny Config Write" privilege.
-
10:09 AM Bug #6683 (Not a Bug): Empty page 'Firewall: NAT: Port Forward' when Read-Only rights
- Hi,
To reproduce the issue :
* add a NAT Port Forward rule with admin account
* add a new user "john" (no group ... -
08:31 AM Bug #6682 (Not a Bug): OpenVPN Client does not use "interface" configured. Connection always established through default gateway.
- The state table is fibbing to you a little bit in that case. pf is sending the traffic out the correct WAN, but the i...
-
06:50 AM Bug #6682 (Not a Bug): OpenVPN Client does not use "interface" configured. Connection always established through default gateway.
- Tested with 2.3, 2.3.1 and 2.3.2
Test scenario: configure multiple WANs, use WAN1 as default gateway, configure Open... -
12:59 AM Bug #5993: dhcp6c not started until an RA received
- I still haven't had a chance to switch my LAN over to this software, but I'm aware of three other Telus users who are...
08/04/2016
- 10:04 PM Revision 72f91833: pfSense.css: Fix sortable tables' font
- 10:04 PM Revision 98ea394a: Experiment using the OS' native font stack
- Following the steps of bfbfa4dd254c110db4122925d0a3716a34d4c664,
experiment using the OS' native font stack.
Obtaine... - 10:03 PM Revision 802029ce: pfSense.css: Fix sortable tables' font
- 10:03 PM Revision 4310baaa: Experiment using the OS' native font stack
- Following the steps of bfbfa4dd254c110db4122925d0a3716a34d4c664,
experiment using the OS' native font stack.
Obtaine... -
10:02 PM Revision 77413c25: Merge pull request #3084 from jlduran/native-font-stack
-
09:48 PM Revision 6ab43547: Update pfSense.pot
- (cherry picked from commit 51c5313df8b9a9470cad9031b3e93594a4728c9e)
-
09:48 PM Revision 8a4cc539: Allow URLs for TFTP Server (Bug #6634)
- The setPattern() thing ain't usable for this and just causes regressions.
(cherry picked from commit c411661a8e8f9f9e... -
09:48 PM Revision 8b125927: Allow URLs for TFTP Server (Bug #6634)
- is_URL() from util.inc is way too limited for this purpose.
(cherry picked from commit 8ff248d6a3f31dba42c4c64b529092... -
09:47 PM Revision b6843da7: Typo fix
- (cherry picked from commit 4b79a9d443c4e16d6ffa304775aec79938d2988c)
-
09:47 PM Revision 2e5a481c: Allow URLs for TFTP Server (Bug #6634)
- is_URL() from util.inc is way too limited for this purpose.
(cherry picked from commit 483816313924f87707bca0aa983c73... -
09:46 PM Revision 3691302f: Merge pull request #3083 from doktornotor/patch-2
- 09:36 PM Revision db392e36: Fix a redundant HTTP "User-Agent" string.
- CURLOPT_USERAGENT expect the value to the user-agent string, not the entire key-value pair.
Before this fix, HTTP hea... - 09:36 PM Revision 2d8770b2: Fix a redundant HTTP "User-Agent" string.
- CURLOPT_USERAGENT expect the value to the user-agent string, not the entire key-value pair.
Before this fix, HTTP hea... -
09:36 PM Revision 03ff3448: Merge pull request #3082 from philipsoeberg/fix-redundant-http-user-agent-string
-
09:33 PM Revision c22ddfe7: Merge pull request #3066 from phil-davis/notifychannelupdown
-
09:31 PM Revision a035b77c: Merge pull request #3065 from phil-davis/radius-openvpn
-
09:26 PM Bug #6675: Port Forward on LAN does not work in 2.3.x
- If I need is more of the same as Squid is to work with the transparent proxy, redirecting only port 80 and not all tr...
- 09:25 PM Revision 0b95ff4c: services_dhcp: Ignore BOOTP queries
- BOOTP leases do not have a maximum lease time by default, this could
potentially lead to a DHCP address pool exhausti... -
09:25 PM Revision b0478d98: Merge pull request #3086 from jlduran/ignore-bootp-queries
-
04:48 PM Bug #6634 (Feedback): DHCP Server "TFTP Server" field should allow URLs
- PR has been merged, thanks!
-
04:26 PM Feature #4351 (Feedback): Allow to disable BOOTP in DHCP server
- Pull request has been merged. Thanks
-
01:25 PM pfSense Packages Bug #6511: In some circumstances the HAProxy clone front-end button can add blank list entries to the front end being cloned resulting in a config that cannot be applied.
- @Pi Ba
I agree that it should not be possible to end up with empty entries in the config but in the case that someho... -
12:54 PM pfSense Packages Bug #6511: In some circumstances the HAProxy clone front-end button can add blank list entries to the front end being cloned resulting in a config that cannot be applied.
- @Steve, the first issue of empty items being added when duplicating should be fixed in next version..
https://github... -
12:12 PM Revision 353c8d2b: Add /etc/rc and /etc/pfSense-rc.shutdown to pfSense-rc package
-
12:04 PM pfSense Packages Feature #6445 (Rejected): Request: Zabbix 3.0 LTS proxy
- Zabbix agent and proxy 3.0 is available on pfSense 2.3. If you see only Zabbix agent or proxy 2.2 or 2.4, you must st...
-
11:56 AM pfSense Packages Feature #6445: Request: Zabbix 3.0 LTS proxy
- Uhm... 3.0.x LTS is in fact the only version available in pfSense 2.3.x packages.
-
09:45 AM pfSense Packages Bug #6681 (Feedback): Squid local auth password handling is weak and only accepting short passwords
- I just pushed a fix to change this to SHA512, which is working well even with long passwords (I only tried up to 32 c...
-
09:34 AM pfSense Packages Bug #6681 (Resolved): Squid local auth password handling is weak and only accepting short passwords
- The password handling in squid for local auth is using crypt() with default settings and cutting off passwords short ...
-
09:25 AM Bug #6680 (Not a Bug): pfSense web ui freezes after clicking on Diagnostics->ARP Table
- Please post on the forum or mailing list for assistance with your issue. It's highly unlikely to be a bug, but if it ...
-
08:42 AM Bug #6680 (Not a Bug): pfSense web ui freezes after clicking on Diagnostics->ARP Table
- For some reason, when I try to list the arp table, pfsense freezes and I need to restart PHP-FPM via console.
2.3.... -
07:07 AM pfSense Packages Bug #6571 (Resolved): NUT service can not start sometimes after boot when SNMP UPS interface is down
-
12:13 AM pfSense Packages Bug #6571: NUT service can not start sometimes after boot when SNMP UPS interface is down
- This is resolved with version 2.7.4_1 of the nut package.
-
07:04 AM Bug #6679 (Not a Bug): No config option for "limited" parameter in Default/Custom Access Restrictions in NTP
-
06:30 AM Bug #6679: No config option for "limited" parameter in Default/Custom Access Restrictions in NTP
- KOD flag also toggles limited.
Sorry for opening this ticket. -
06:17 AM Bug #6679 (Not a Bug): No config option for "limited" parameter in Default/Custom Access Restrictions in NTP
- Now limited parameter is always included in restrict config lines.
Older Netapp filer uses sntp and sends 3 ntp qu...
08/03/2016
-
11:31 PM Bug #6678: Virtual IPv6 IP (IP Alias) on a DHCPv6-PD tracked interface causes inconsistencies
- In addition, this messes up the snort default pass list, adding the VIP instead of the actual interface IP.
-
10:09 PM Bug #6678 (Duplicate): Virtual IPv6 IP (IP Alias) on a DHCPv6-PD tracked interface causes inconsistencies
- 2.3.2-RELEASE (amd64)
WAN interface gets a IPv6 /60 prefix delegation from my ISP. (example: 2001:1:2:30/60) My... -
08:42 PM Revision e366c806: Add a variable to control if pkg repo should be signed or not
-
08:41 PM Revision 94f7df8f: Add a variable to control if pkg repo should be signed or not
-
06:37 PM Revision 6ebd280c: Stop removing FreeBSD src, new clone script can detect if it's necessary
-
03:23 PM Bug #6665: Upgrading packages when pfSense upgrade is available breaks package manager
- +1, tested and working, thanks. ;)
-
03:13 PM Bug #6665 (Resolved): Upgrading packages when pfSense upgrade is available breaks package manager
- Fix works fine, the older release is no longer broken by the newer pkg.
If you have a system stuck in the older st... -
06:29 AM Bug #6665 (Feedback): Upgrading packages when pfSense upgrade is available breaks package manager
- I've pushed a fix for that, it's in pkg-1.8.7_1
-
02:48 PM Revision b8332deb: Add a field to CA/Cert pages for OU, which is required by some external CAs and users. Fixes #6672
-
02:48 PM Revision da0f70ed: Add a field to CA/Cert pages for OU, which is required by some external CAs and users. Fixes #6672
-
02:47 PM Revision 1ea1b228: Add a field to CA/Cert pages for OU, which is required by some external CAs and users. Fixes #6672
-
02:16 PM Revision 00dc6b2a: Fix a reverse check
-
01:33 PM Revision f41f9c0c: Remove unnecessary code and select default kernel for installation media
-
01:28 PM Revision f6dcb7f5: Use already defined variable
-
01:24 PM Revision 49de5a2e: Revert "Make sure we have kernel installed in installation media"
- This reverts commit ebc5576c4f6f1afd228b6d8c66c1af0599e990c3.
-
01:02 PM Bug #6677 (New): CARP VIPs are configured on disabled interfaces at boot time
- OK, that I can reproduce. I have adjusted the subject and description to be a more clear/accurate representation of t...
-
09:14 AM Bug #6677: CARP VIPs are configured on disabled interfaces at boot time
- Did little more testing.
It seems that if there is an carp address assigned to interface the interface will come u... -
08:27 AM Bug #6677 (Feedback): CARP VIPs are configured on disabled interfaces at boot time
- An interface can show as "up" as long as it has a link. A VLAN will exist at the OS level if a tag is defined. The di...
-
08:23 AM Bug #6677 (Resolved): CARP VIPs are configured on disabled interfaces at boot time
- When a CARP VIP is configured for a disabled interface, it is still configured by pfSense during the boot process eve...
-
12:33 PM Revision ebc5576c: Make sure we have kernel installed in installation media
- 11:53 AM Revision 4e5477ea: Display local DHCP lease times in 24-hour clock
- It seems odd to me that when the times are displayed in UTC they have
24-hour clock, but when displayed in local time... - 11:53 AM Revision e7dc4d04: Merge pull request #3080 from phil-davis/local24
-
11:47 AM Revision 4de9a6fa: Update firewall rules separators when NAT associated rule is deleted.
- Bug: https://redmine.pfsense.org/issues/6676
(cherry picked from commit 7475d7b337c0a08dc4d6636f33b0998067f26008) - 11:47 AM Revision ebdf2532: Merge pull request #3089 from NOYB/NAT_Delete_Associated_Firewall_Separators
- 11:46 AM Revision be59d667: Save widget settings per user
- For users that have "custom settings" enabled, save the "tool" settings
of their widgets on a per-user basis.
User th... - 11:46 AM Revision b5123dfc: Merge pull request #3088 from phil-davis/widgetconfig
- 11:43 AM Revision 21915c63: Some tweaks to improve alignment in table with checkbox
- 1) If a checkbox does not have a description (even if it is empty), layout will be broken as checkbox won't be aligne...
- 11:43 AM Revision 440f621a: Merge pull request #3056 from NewEraCracker/design-tweaks
-
10:37 AM Bug #6672 (Resolved): CSR missing OU, same with internal certs missing OU
- Works for me, also works for the original reporter on the forum. Closing out.
-
10:00 AM Bug #6672 (Feedback): CSR missing OU, same with internal certs missing OU
- Applied in changeset commit:1ea1b228285dfa60da6732eba54dc03b932eb92f.
-
09:46 AM Bug #6672 (Assigned): CSR missing OU, same with internal certs missing OU
- Looks like an easy fix for this missing field. I have a patch I'm testing that adds an optional OU field, works OK to...
-
10:37 AM Revision 102e7265: Add missing -b parameter to mkisoimages.sh
-
10:34 AM Revision eac7a83c: Do not include rescue on installation media
-
09:33 AM Revision 122afc75: Change order arguments are validated to make more sense
-
09:29 AM Revision 963c399b: Do not call realpath for a possible non-existent directory
-
08:45 AM Bug #6673 (Duplicate): Missing "Organizational Unit" when generating CSR for external CA
- Duplicate of #6672
-
08:43 AM Bug #6675 (Not a Bug): Port Forward on LAN does not work in 2.3.x
- Reflection wouldn't come into play for a rule such as that. If the client and server are on the same subnet, you need...
-
05:17 AM Revision 7475d7b3: Update firewall rules separators when NAT associated rule is deleted.
- Bug: https://redmine.pfsense.org/issues/6676
-
12:23 AM Bug #6676: Delete NAT rule with associated firewall rule does not update firewall separators position
-
Fix: https://github.com/pfsense/pfsense/pull/3089
-
12:06 AM Bug #6676 (Resolved): Delete NAT rule with associated firewall rule does not update firewall separators position
-
2.3.2 - Delete NAT rule - bug?
https://forum.pfsense.org/index.php?topic=116099.0
08/02/2016
-
10:17 PM Bug #6675 (Not a Bug): Port Forward on LAN does not work in 2.3.x
- Good evening everyone, updated my pfSense from 2.2.6 to 2.3.2 this week and 2 rules Port Forward on the LAN, one to r...
-
07:36 PM Revision 9077654d: Remove defunct link to the devwiki site. Everything is on doc.pfsense.org now.
-
07:35 PM Revision af18691b: Remove defunct link to the devwiki site. Everything is on doc.pfsense.org now.
-
07:35 PM Revision deda621a: Remove defunct link to the devwiki site. Everything is on doc.pfsense.org now.
-
07:19 PM Revision 1787ae43: Enable ISO during snapshots
-
07:02 PM Revision 22ba6bf2: Force removal of temporary directory and disable trap
-
07:02 PM Revision a07126aa: Remove redundant attribution
-
06:55 PM Feature #6674 (Resolved): Custom widget preference settings per user
- The ability to save custom dashboard widget layout and various other custom GUI preferences on a per user basis was a...
-
05:33 PM Revision f680e46c: Fix typo, LT2P->L2TP
-
04:56 PM Revision ba84d2fc: Do not scp log files
-
04:55 PM Revision 160d285a: Fix typo, LT2P->L2TP
-
04:55 PM Revision 6471512c: Fix typo, LT2P->L2TP
-
04:36 PM Revision 5925de17: Retire snapshots_rotate_logfile()
-
04:16 PM Revision 77074d55: Read output line by line
-
04:16 PM Revision acf4481f: Read output line by line
-
04:16 PM Revision b34d81ce: Show files in subdirectories too
-
03:55 PM Bug #6673 (Duplicate): Missing "Organizational Unit" when generating CSR for external CA
- Hello,
I use a paied wildcard certificate *.domain.com and I need to generate a CSR (Certificat Signing Request) a... -
03:43 PM Bug #6672 (Resolved): CSR missing OU, same with internal certs missing OU
- Seems Org is there but Org Unit is missing. This is required by many CAs
See thread here
https://forum.pfsense.o... -
02:47 PM Revision 88a14469: Do not remove destdir where system is going to be installed
-
12:45 PM Revision 044ff383: Make sure images were built
-
12:43 PM Revision 5df6d76a: Use mkisoimages.sh to build ISO
-
12:17 PM Revision 044cf5bd: Fix messages
-
12:09 PM Revision 0d67c726: Stop using CORE_PKG_TMP
-
11:23 AM Revision 582f023e: Remove wrong call to dirname
-
10:52 AM Revision 0adc9314: Add missing /
-
08:07 AM Bug #6665: Upgrading packages when pfSense upgrade is available breaks package manager
- I'm not sure that would be viable but Renato would know better than I. You have to upgrade pkg to the new version to ...
-
08:03 AM Bug #6665: Upgrading packages when pfSense upgrade is available breaks package manager
- Noticed a lot of complaints on the forums as well in many different threads. Wouldn't locking the pkg package itself ...
-
07:24 AM Bug #6665: Upgrading packages when pfSense upgrade is available breaks package manager
- In this case it actually turns out that the problem is the new version of 'pkg' needs a different command line parame...
-
07:49 AM Bug #6670 (Not a Bug): XMLRPC failure after setting proxy settings
- None of the XML_RPC_Client() calls we have specify a proxy, and I can't reproduce a problem here. When I specify a pr...
-
04:22 AM Bug #6670 (Not a Bug): XMLRPC failure after setting proxy settings
- Hi,
environment : It's a pfsense HA for internal LAN firewalling. It does not have direct access to internet. In o... -
07:36 AM Bug #6671 (Duplicate): Package manager is unable to list installed packages after installing zabbix agent
- Duplicate of #6665
-
06:23 AM Bug #6671: Package manager is unable to list installed packages after installing zabbix agent
- See https://redmine.pfsense.org/issues/6665; you need to upgrade to 2.3.2 to get the package manager GUI back.
-
04:29 AM Bug #6671 (Duplicate): Package manager is unable to list installed packages after installing zabbix agent
- Hi,
After installing zabbix agent the package manager is unable to list installed packages and say :
Unable to ... - 05:19 AM Revision 2b7d0520: Save widget settings per user
- For users that have "custom settings" enabled, save the "tool" settings
of their widgets on a per-user basis.
User th... -
04:49 AM Bug #6634: DHCP Server "TFTP Server" field should allow URLs
- It works!
- 02:51 AM Revision cc10b474: Fixed #6669
- Read widget config before adding a new one. (Was starting a new array)
(cherry picked from commit 236e6a54e9a93284ca... -
01:08 AM Revision 9979487e: Service Running Status Indicator Icon (fa-play)
- Perhaps static play icon would be better perceived as the contrast to static stop icon for for services status indica...
- 12:07 AM Revision c8faf384: Fixed #6669
- Read widget config before adding a new one. (Was starting a new array)
(cherry picked from commit 236e6a54e9a93284ca... - 12:06 AM Revision 236e6a54: Fixed #6669
- Read widget config before adding a new one. (Was starting a new array)
08/01/2016
-
09:46 PM Revision 5240e071: Merge pull request #3074 from phil-davis/gwredir
-
09:42 PM Revision 9543affb: dpinger: fixed check for pidfile length #6505
- (cherry picked from commit 4aaf38742563c427b42a813387d84246ff20a2f2)
-
09:42 PM Revision 090fcccc: Merge pull request #3077 from dhoffend/ticket-6505-fix
-
09:41 PM Revision 7fa32308: replace attribute 'name' to 'id' in openvpn status
- (cherry picked from commit 5a5a11cd489bbf15e868c1607c74824c128d693f)
-
09:41 PM Revision 72693cbe: Merge pull request #3075 from brunostein/replace_attribute_name_to_id
-
09:37 PM Revision 3bc22054: Merge pull request #3073 from phil-davis/certs
-
09:36 PM Revision 94e3fc64: Merge pull request #3070 from phil-davis/input_errors2Ajax
-
09:36 PM Revision b40e1c00: Merge pull request #3069 from phil-davis/LAGG-MTU
-
09:35 PM Revision 3d3afbff: Merge pull request #3068 from phil-davis/subnet_size
-
09:34 PM Revision 52342bc4: Merge pull request #3067 from phil-davis/useallcerts
-
09:33 PM Revision 69176bed: Merge pull request #3064 from phil-davis/cloudflare
- 08:56 PM Revision ad73ced6: Remove '-x' flag from dhcpwithoutra launch of dhcp6c
- This is the equivalent fix for the RELENG_2_3 branch to pull request #3078
-
08:56 PM Revision f2a230d9: Merge pull request #3062 from phil-davis/patch-1
-
08:54 PM Revision 317a06f2: Merge pull request #3063 from phil-davis/dhcpinitbeforera3055_23
-
08:40 PM Revision 8928c119: Do not check for src versus host osversion, let FreeBSD src take care of it
-
08:38 PM Revision 5fa6aecc: Only point log error instead of tail it, it creates confusion
-
08:35 PM Revision 80c76b0c: err() expects a single parameter
-
08:31 PM Revision 06efbd3b: Add missing /
-
08:29 PM Revision adf2b358: Add missing options
-
08:29 PM Revision 81fe0b70: Remove unnecessary messages
-
08:27 PM Revision cdf2b5f8: Fix variable name
-
08:14 PM Revision 1217cd7a: Add create_core_pkg.sh and start using it
-
07:49 PM Revision 6c0329cb: Remove unused variables
-
07:49 PM Revision 468f236d: Add install_freebsd.sh and use it
-
07:31 PM Revision 29cdd776: Add build_freebsd.sh and start using it
-
07:20 PM Bug #6669: index.php: Adding a new widget corrupts the settings for existing widgets
- Applied in changeset commit:236e6a54e9a93284ca170b68aa1188dfaa195c3d.
-
07:10 PM Bug #6669 (Feedback): index.php: Adding a new widget corrupts the settings for existing widgets
- Was adding configuration for a new widget to a new config array instead of reading the existing config.
-
07:03 PM Bug #6669 (Resolved): index.php: Adding a new widget corrupts the settings for existing widgets
- See: https://forum.pfsense.org/index.php?topic=115934.msg644220#msg644220
-
05:51 PM Revision f2dd0a55: Remove outdated XXX message
-
05:02 PM Revision a10a0e70: Add git_checkout.sh and common.subr
- This is the first of a set commits to start replacing big
builder_common.sh by smaller and specific scripts to do nec... -
04:44 PM Bug #6505 (Feedback): dpinger - socket name too large
- PR has been merged, thanks!
-
04:34 PM Revision 7da93794: Remove script used during bootstrap conversion
-
03:45 PM Revision f003f8db: Some small improvements to OpenVPN server handling when using CARP VIPs in Gateway Groups. Might help with issue #6607
-
03:43 PM Revision 51d2e735: Some small improvements to OpenVPN server handling when using CARP VIPs in Gateway Groups. Might help with issue #6607
-
03:42 PM Bug #6667: DHCP DUID file not preserved across reboots when "Use RAM Disks" is enabled
- Well, you're running it, so I won't argue (too much.) ;)
-
02:58 PM Bug #6667: DHCP DUID file not preserved across reboots when "Use RAM Disks" is enabled
- This is a symptom/byproduct of the other missing feature, so it is definitely a duplicate. Solve the other, and this ...
-
02:53 PM Bug #6667: DHCP DUID file not preserved across reboots when "Use RAM Disks" is enabled
- This is NOT a duplicate. While 3971 might resolve this bug as a side effect, a fix for this bug might not fulfill th...
- 03:36 PM Revision f720117b: Experiment using the OS' native font stack
- Following the steps of bfbfa4dd254c110db4122925d0a3716a34d4c664,
experiment using the OS' native font stack.
Obtaine... - 03:36 PM Revision 4372f8a4: pfSense.css: Fix sortable tables' font
-
01:04 PM Feature #6644: Add console shutdown option along with reboot at end of installation
- Xander Venterus wrote:
> If its locked, then you just need to set it to none, and have your mouse over the apply but... -
12:22 PM Bug #5993: dhcp6c not started until an RA received
- Daryl Morse wrote:
> Chris Buechler wrote:
> > merged this for 2.4 as it needs more baking time in snapshots than w... -
11:52 AM Bug #6448: Mousing over aliases on disabled rules makes hint difficult to read
- The opacity of the popover is inherited from the parent element. AFAIK there is no easy way to avoid inheritence of o...
-
10:41 AM Bug #6657: Unable to add network in the source section of a LAN firewall rule
- Chris Anderson wrote:
> I have the same issue with the latest BETA version of Chrome. It works in the latest stable ... -
10:31 AM Bug #6657: Unable to add network in the source section of a LAN firewall rule
- I have the same issue with the latest BETA version of Chrome. It works in the latest stable release, and in other bro...
07/31/2016
-
04:53 PM Bug #6668: IPSec tunnel + L2TP/IPSec VPN - wrong PSK chosen by pfSense
- ERRATUM:
@ipsec.secrets@ (mistyped) should be:... -
04:22 PM Bug #6668 (Closed): IPSec tunnel + L2TP/IPSec VPN - wrong PSK chosen by pfSense
- Setup:
1. IPSec, IKEv1 site to site tunnel, PSK, Main mode. FQDN identifier - talking to a Mac OS server (racoon)
... - 12:49 PM Revision 6d53301b: services_dhcp: Ignore BOOTP queries
- BOOTP leases do not have a maximum lease time by default, this could
potentially lead to a DHCP address pool exhausti... -
11:47 AM Bug #6481: loading EAP_RADIUS method failed
- I wanted to jump in to say I just had this same issue on 2.3.2 today. Same log message and everything. Confirming y...
-
09:49 AM Revision 51c5313d: Update pfSense.pot
-
09:27 AM Revision c411661a: Allow URLs for TFTP Server (Bug #6634)
- The setPattern() thing ain't usable for this and just causes regressions.
-
09:23 AM Feature #5112: LDAP support for Captive Portal
- I'm interested to this feature. It will be officially implemented?
-
08:38 AM Revision 8ff248d6: Allow URLs for TFTP Server (Bug #6634)
- is_URL() from util.inc is way too limited for this purpose.
-
08:35 AM Revision ef726c3e: Update pfSense.pot
-
08:25 AM Revision 4b79a9d4: Typo fix
-
08:21 AM Revision 48381631: Allow URLs for TFTP Server (Bug #6634)
- is_URL() from util.inc is way too limited for this purpose.
-
07:59 AM Feature #3971: IPv6 - Preserve the DUID used for WAN DHCP-PD in the configuration file
- As mentioned in #6667, this also negatively impacts those with /var in RAM
-
07:59 AM Bug #6667 (Duplicate): DHCP DUID file not preserved across reboots when "Use RAM Disks" is enabled
- Duplicate of #3971
-
02:27 AM Bug #6667: DHCP DUID file not preserved across reboots when "Use RAM Disks" is enabled
- Duplicate of https://redmine.pfsense.org/issues/3971 (this is a more generic problem, even without tmpfs-based /var, ...
-
07:52 AM Feature #4351: Allow to disable BOOTP in DHCP server
- https://github.com/pfsense/pfsense/pull/3086
-
01:47 AM Feature #4351: Allow to disable BOOTP in DHCP server
- I am also seeing BOOTP queries being served for captive portal users. The problem is that BOOTP leases do not have a ...
-
07:45 AM pfSense Packages Bug #6632: siproxd hosts_allow_reg should be configurable
- Chris Buechler wrote:
> if you open siproxd on WAN in firewall rules, you get what you're asking for security-wise. ... -
03:23 AM Bug #6634: DHCP Server "TFTP Server" field should allow URLs
- @Rene: Try https://github.com/pfsense/pfsense/pull/3083
-
12:23 AM Bug #6666: IPV6 Log Spam?
- Sorry:
Version: 2.3.2
Priority: Low
Spelling mistake on last line, should be DHCPv6 daemon
07/30/2016
-
09:18 PM Bug #6667 (Duplicate): DHCP DUID file not preserved across reboots when "Use RAM Disks" is enabled
- The file "/var/db/dhcp6c_duid" contains a DHCP Unique Identifier (DUID) that a host uses to uniquely identify itself ...
-
07:08 PM Bug #6666 (Duplicate): IPV6 Log Spam?
- I have a fully functioning dual stack IPv4 static and Prefix Delegated /56 IPv6 DHCPv6 network running over PPPOE. Th...
-
05:44 PM Bug #6665: Upgrading packages when pfSense upgrade is available breaks package manager
- (Same goes for merely installing a package, not just upgrading.)
-
05:39 PM Bug #6665 (Resolved): Upgrading packages when pfSense upgrade is available breaks package manager
- As described here: https://forum.pfsense.org/index.php?topic=116026.0 - when you upgrade some package before upgradin...
-
05:16 AM Bug #6664: It's impossible to use HE.NET tunnel iface as a parent for OpenVPN instances
- Yet another workaround: Specify a local port instead of empty/0. Looks like *$iface_ip* is not properly initialized w...
-
04:58 AM Bug #6664 (Resolved): It's impossible to use HE.NET tunnel iface as a parent for OpenVPN instances
- Setup:
* HE.NET tunnel iface [for example, WAN_HE]
Steps to reproduce:
* Create an IPv6 OpenVPN instance on pare... -
04:45 AM Bug #6663 (Resolved): IPv6 OpenVPN client is down after reboot
- Setup:
# WAN PPPoE WAN
# HE.NET tunnel on WAN
# Static IPv6 on LAN
Steps to reproduce:
* Create a UDP6 TAP Ope...
07/29/2016
-
11:39 PM Feature #6661 (Rejected): Show # of packages available for update on dashboard
- The "Installed Packages" widget exists for those who want to know what packages are installed and which have availabl...
-
07:13 PM Feature #6661 (Rejected): Show # of packages available for update on dashboard
- The ability to show the number of packages that need updating under the system update status on the System Informatio...
-
08:53 PM Bug #6662 (Resolved): pkg_edit.php checkbox alignment issue when using the sethelp xml tag
- When using pkg_edit.php, the checkbox alignment is off when using the <sethelp> XML tags.
See attached pic.
Can... - 02:55 PM Revision ce9a9572: Fix a redundant HTTP "User-Agent" string.
- CURLOPT_USERAGENT expect the value to the user-agent string, not the entire key-value pair.
Before this fix, HTTP hea... -
10:44 AM Bug #6659 (Confirmed): Default routes are not being removed after deletion
- Confirmed, but it's not a regression. As far as I can see, default routes are never removed except by ppp-linkdown an...
-
08:14 AM Bug #6659 (Resolved): Default routes are not being removed after deletion
- I have noticed that when a default route is deleted via GUI, they are not removed from the system, only from the scre...
-
09:53 AM Bug #6657 (Not a Bug): Unable to add network in the source section of a LAN firewall rule
- I can't reproduce it using the settings you show. Make sure there are no extra spaces or anything else non-printable ...
-
05:58 AM Bug #6657: Unable to add network in the source section of a LAN firewall rule
- Destination host should be 8.8.8.8, but the error is the same.
-
05:56 AM Bug #6657: Unable to add network in the source section of a LAN firewall rule
- Phillip Davis wrote:
> That works fine for me - give more information about the data you enter and exactly which fie... -
05:49 AM Bug #6657: Unable to add network in the source section of a LAN firewall rule
- That works fine for me - give more information about the data you enter and exactly which field the "Please match the...
-
05:37 AM Bug #6657 (Not a Bug): Unable to add network in the source section of a LAN firewall rule
- Since 2.3.2-RELEASE, the following causes an "Please match the request format" error:
1. Go to Firewall / Rules / LA... -
09:38 AM Todo #6660: Rename "admin" to "root" in GUI, because in fact it is "root" on BSD level.
- Thanks Jim, for clarification.
-
09:36 AM Todo #6660 (Rejected): Rename "admin" to "root" in GUI, because in fact it is "root" on BSD level.
- Both admin and root exist at the OS level but they each work in different ways. While the password for both accounts ...
-
09:32 AM Todo #6660 (Rejected): Rename "admin" to "root" in GUI, because in fact it is "root" on BSD level.
- I think it will be more clear for new users and won't cause any misunderstandings.
-
06:39 AM Bug #6658 (Resolved): DHCP Relay not working on 2.3.2
- The DHCP Relay Service cannot be started on 2.3.2 with ath0, clients do not receive an IP address....
-
12:23 AM Revision 3085b390: experiment with tighter styling
-
12:23 AM Revision 40742134: Fixes #6601 clean up installed packages html
-
12:23 AM Revision aebf6dad: clean up Installed Packages widget by removing category
-
12:19 AM Revision 13b2db87: experiment with tighter styling
-
12:19 AM Revision 5068d239: Fixes #6601 clean up installed packages html
-
12:19 AM Revision 0673b5ed: clean up Installed Packages widget by removing category
-
12:17 AM Revision bfbfa4dd: experiment with tighter styling
-
12:17 AM Revision 1cba7db4: Fixes #6601 clean up installed packages html
-
12:17 AM Revision 13b03802: clean up Installed Packages widget by removing category
07/28/2016
-
08:35 PM Bug #6435: Unable to edit PPTP using interfaces_ppps_edit.php
- reassigned
-
07:20 PM Bug #6601 (Feedback): Horizontal scroll bar on Installed Packages
- Applied in changeset commit:1cba7db475b142e8c1dd5edeb71b294ae01347d3.
-
04:35 PM Bug #3334: Status/Traffic Graph isn't IPv6 ready
- IPv6 issue still present in 2.3.2
-
03:43 PM Bug #6656 (Not a Bug): /rc.newwanip - Excessive Usage
- Something is triggering it, usually a gateway outage. Post on the forum or mailing list for help diagnosing the actua...
-
03:38 PM Bug #6656 (Not a Bug): /rc.newwanip - Excessive Usage
- Currently having the following problem:
According to the systemlogs /rc.newwanip is executed every 3 minutes or so a... -
01:58 PM Revision b7e1b323: Increase filtering tail limit for logging, fixes #6652
-
01:58 PM Revision 6eb2dbe0: Whitespace fixes
-
01:58 PM Revision 363c7d41: Increase filtering tail limit for logging, fixes #6652
-
01:58 PM Revision f26a81c9: Whitespace fixes
-
01:57 PM Revision f1773759: Increase filtering tail limit for logging, fixes #6652
-
01:56 PM Revision cad2272f: Whitespace fixes
-
12:08 PM pfSense Packages Bug #6655 (Not a Bug): Installing sudo package breaks webGUI system update capabilities and Package Manager on 2.3.1-RELEASE-p1
- The problem isn't the sudo package at all. It's that pkg was upgraded and the GUI doesn't understand the output of th...
-
11:57 AM pfSense Packages Bug #6655: Installing sudo package breaks webGUI system update capabilities and Package Manager on 2.3.1-RELEASE-p1
- I forgot to mention that removing the sudo package via ssh had no change aside from removing the package, the bugs st...
-
11:56 AM pfSense Packages Bug #6655 (Not a Bug): Installing sudo package breaks webGUI system update capabilities and Package Manager on 2.3.1-RELEASE-p1
- After installing the *sudo* package through the System > Package Manager menu, our firewalls are no longer able to ch...
-
11:56 AM Bug #5652: Radius IETF Class Group Assignment - Incorrect Standard
- Phillip Hernandez wrote:
> I disagree with using Cisco-AV:Pair and believe that using Filter-Id is a better option. ... -
11:28 AM Bug #5652: Radius IETF Class Group Assignment - Incorrect Standard
- I disagree with using Cisco-AV:Pair and believe that using Filter-Id is a better option.
Thanks
-
11:51 AM Bug #6640: DHCPv6 Server Time Format Change Reversed
- Deleted.
-
11:50 AM Bug #6640: DHCPv6 Server Time Format Change Reversed
- Phillip Davis wrote:
> That looks like a bug that has been around for a while - it is not reversed, it is doubled.
... -
11:24 AM pfSense Packages Bug #6654: siproxyd Table issue
- System: Netgate SG-2440 (amd64)
-
11:20 AM pfSense Packages Bug #6654 (Resolved): siproxyd Table issue
- Under services-> siproxyd -> Registered phones
Table is not aligned correctly and not showing correct number of re... -
09:10 AM Bug #6652 (Feedback): Filtering system logs doesn't include all log entries
- Applied in changeset commit:f1773759e286fa7dfcaa10965fc7909b7abf560f.
-
12:08 AM Bug #6652 (Resolved): Filtering system logs doesn't include all log entries
-
https://forum.pfsense.org/index.php?topic=115753.0
Log entries to be included in the filtering is capped/restr... -
05:57 AM Bug #6528: The captive portal cannot be used on interface lan since it is part of a bridge but works anyway
- Screamed horray to quick !
When the interface the CP is binded to is bridged, everything works except for the downlo... -
01:33 AM Bug #6637 (Confirmed): pfSense blocks return traffic (mostly TCP) on 2.3.1-RELEASE-p5
- There is a known fix for this on PR 207598 that should be easy to import.
all FreeBSD 10.x base versions affected -
12:47 AM Bug #6653 (Not a Bug): DNS Forvarder dont worked Host Overrides
- that's not true, they work fine. Please post to the forum for assistance.
-
12:17 AM Bug #6653 (Not a Bug): DNS Forvarder dont worked Host Overrides
- DNS Forvarder ignored all Host Overrides records.
-
12:20 AM pfSense Packages Feature #6651: Loopback interfaces
- For dynamic routing protocol.
As example border router supply originate option ( default gateway ) and use of lo* to...
07/27/2016
-
11:51 PM Bug #6650: Option needed to disable HSTS
-
A potential workaround may be to use a different host name for other NAT'ed ports.
-
05:51 PM Bug #6650: Option needed to disable HSTS
- Hint: Use haproxy with SNI and forget the ports. See https://github.com/PiBa-NL/pfsense-haproxy-package-doc/wiki (and...
-
05:04 PM Bug #6650 (Resolved): Option needed to disable HSTS
- HSTS is based solely on hosts, and not port numbers. As a result, any HTTPS devices behind the pfSense are unreachabl...
-
10:50 PM pfSense Packages Feature #6651: Loopback interfaces
- I'm curious, what use case do you have for additional lo* interfaces?
-
10:31 PM pfSense Packages Feature #6651: Loopback interfaces
- major think is create additional lo* interface as right now we can define LAN or WAN.
-
10:10 PM pfSense Packages Feature #6651: Loopback interfaces
- you can already do that with virtual IPs on localhost. That doesn't allow cloning lo0 to lo1, though I don't think an...
-
09:44 PM pfSense Packages Feature #6651: Loopback interfaces
- Assign additional ip addresses like...
-
09:11 PM pfSense Packages Feature #6651: Loopback interfaces
- manipulate loopback interfaces in what way? You can already set static routes to lo0 to null route, and add VIPs on l...
-
08:59 PM pfSense Packages Feature #6651 (Resolved): Loopback interfaces
- Hello Everyone,
I would like place request add ability manipulate loopback interfaces through web ui.
Use cases wh... -
08:50 PM Bug #6648: pf V2.3.1 - Enabling captive portal failed to create captive portal security group
- For support assistance of that nature, use the forum or mailing lists.
-
08:33 PM Bug #6648: pf V2.3.1 - Enabling captive portal failed to create captive portal security group
- Thank you for the reply, and please pardon my ignorance. Could you please tell me how to assign privileges to a group...
-
06:54 AM Bug #6648 (Not a Bug): pf V2.3.1 - Enabling captive portal failed to create captive portal security group
- That is exactly how it is supposed to work. It is up to the firewall admin to create a group or add the privilege dir...
-
01:07 AM Bug #6648 (Not a Bug): pf V2.3.1 - Enabling captive portal failed to create captive portal security group
- on a fresh install, enabling Captive Portal failed to create the captive portal security group. could not assign user...
-
04:17 PM Feature #3718: radvd - enhancement proposal: ability to advertise routes and some fixes - patches attached
- Updated the patch for version 2.3.2.
-
12:53 PM Revision 198f0578: Build ova by default for releases
-
12:52 PM Revision 3b6a57ae: Build ova by default for releases
-
12:52 PM Revision 7731df41: Build ova by default for releases
-
06:58 AM Bug #6649 (Not a Bug): pf v2.3.1 - gateway grouping failed to detect a member with no route to the internet - DNS problems also
- Your gateway monitoring for that WAN must not have been correct. For example, pfSense may have been pinging the modem...
-
05:14 AM Bug #6649: pf v2.3.1 - gateway grouping failed to detect a member with no route to the internet - DNS problems also
- In this situation you need to specify an alternate monitor IP for the router/gateway. If you let it use the default, ...
-
01:29 AM Bug #6649 (Not a Bug): pf v2.3.1 - gateway grouping failed to detect a member with no route to the internet - DNS problems also
- there are two internet router members added to a Gateway Group. one router (4G wireless modem) became unregistered fr...
07/26/2016
-
08:30 PM Todo #6647 (New): Enable Additional Security Headers
- The nginx instance for the web GUI should enable CSP. Just adding the following works: ...
-
07:21 PM Revision 54b84a3b: Fix pkg repo name for tags
-
07:21 PM Revision defa7cab: Fix pkg repo name for tags
-
07:21 PM Revision 2a9df2be: Fix pkg repo name for tags
-
06:59 PM Revision aa26bdd2: Remove stray 'i'
-
06:59 PM Revision 3437fab0: Remove stray 'i'
-
06:59 PM Revision 42eda751: Remove stray 'i'
-
05:03 PM Bug #6646 (Resolved): "Reject leases from" on interfaces.php only accepts IPs
- "Reject leases from" on interfaces.php only accepts IP addresses. It should also accept subnets in CIDR notation.
-
04:43 PM Feature #6644: Add console shutdown option along with reboot at end of installation
- If its locked, then you just need to set it to none, and have your mouse over the apply button, and dont click it unt...
-
03:21 PM Feature #6644: Add console shutdown option along with reboot at end of installation
- Xander Venterus wrote:
> I do believe as you said it, this is more of a microsoft issue.
>
> HOWEVER, my HyperV a... -
03:17 PM Feature #6644: Add console shutdown option along with reboot at end of installation
- I do believe as you said it, this is more of a microsoft issue.
HOWEVER, my HyperV allows me to eject virtual CDs ... -
01:20 PM Feature #6644 (Closed): Add console shutdown option along with reboot at end of installation
- In windows 2012R2 hyper-v, there is no way to change boot order, dismount a CD or "eject" virtual media while a vm is...
-
04:08 PM Revision c08625fb: Rename directory where product tarball lies to /distrib. It should fix #6643
-
04:08 PM Revision 78e9b001: Rename directory where product tarball lies to /distrib. It should fix #6643
-
01:39 PM Todo #6645 (Closed): More reliable update system
- Today when 2.3.2 released to public, some peoples got troubles with update.
The main problem is that when update fai... -
12:56 PM Feature #6641: Please add DHCPv4 Server Time Format Change Setting
- Chris Buechler wrote:
> it's already there, has been for a long time.
Noted. Sorry for the false alarm. Not sure ... -
11:35 AM Bug #6031: Anti-Lockoug Rule Not Effective Against Canned Interface Block Rules
- Actually, that would be an easy thing for me to do: my entire LAN has public IPs, so in essence, that should be turne...
-
11:20 AM Bug #6643 (Feedback): /usr/bin/install missing from new 2.3.2 installations
- Applied in changeset commit:78e9b001e9c7f7995a9b79d831d8c33f95aeff3c.
-
10:26 AM Bug #6643 (Resolved): /usr/bin/install missing from new 2.3.2 installations
- The /usr/bin/install binary is needed by some packages (such as squid) during their installation procedures, but it i...
-
09:55 AM Feature #1019: Lagg Failover Mode Master Interface
- Is this on a roadmap for any future release? I just ran into this issue today myself and found this feature request.
-
09:42 AM Bug #6642 (Closed): Cant access certain IP's
- I use pfSense with multiple LAN NICs:
10GWAN holds our 10G public /22 ip scope
1GWAN holds our 1G public /26 ip sco... - 04:58 AM Revision ede53465: Display local DHCP lease times in 24-hour clock
- It seems odd to me that when the times are displayed in UTC they have
24-hour clock, but when displayed in local time... - 04:04 AM Revision a0d06968: Fix redmine #6640 DHCPv6 server time format
- The original code here ended up always applying the time zone offset once, and if you had set dhcpv6leaseinlocaltime ...
- 04:04 AM Revision 78415e07: Fix redmine #6640 DHCPv6 server time format
- The original code here ended up always applying the time zone offset once, and if you had set dhcpv6leaseinlocaltime ...
- 04:03 AM Revision 011a15a0: Merge pull request #3079 from phil-davis/patch-2
- 03:42 AM Revision ffe1a068: Fix redmine #6640 DHCPv6 server time format
- The original code here ended up always applying the time zone offset once, and if you had set dhcpv6leaseinlocaltime ...
-
03:09 AM Bug #6634: DHCP Server "TFTP Server" field should allow URLs
- see: https://forum.pfsense.org/index.php?topic=114085.0
-
03:08 AM Bug #6512: Upgrade to 2.3.1 causes network performance degradation (with High CPU usage by NIC kernel tasks)
- Hi,
I also has the problem of the performance degration!
We have a setup of a small hardware box (N3150 Mini-ITX ... -
01:54 AM Bug #4981: Remote logging not active after reboot
- Any news on this? Still an issue in the latest 2.3.1_p5 release. I'm also logging to a Nagios Log Server now, and bot...
- 01:28 AM Revision efd07e5e: Remove '-x' flag from dhcpwithoutra launch of dhcp6c
- This is the equivalent fix for the RELENG_2_3 branch to pull request #3078
07/25/2016
-
11:05 PM Bug #6640 (Feedback): DHCPv6 Server Time Format Change Reversed
- merged, thanks Phil
-
10:46 PM Bug #6640: DHCPv6 Server Time Format Change Reversed
- That looks like a bug that has been around for a while - it is not reversed, it is doubled.
If you have the checkbox... -
09:14 PM Bug #6640 (Resolved): DHCPv6 Server Time Format Change Reversed
- The DHCPv6 Server Time Format Change setting "Change DHCPv6 display lease time from UTC to local time" is reversed. W...
-
10:43 PM Feature #6641 (Closed): Please add DHCPv4 Server Time Format Change Setting
- it's already there, has been for a long time.
-
09:16 PM Feature #6641 (Closed): Please add DHCPv4 Server Time Format Change Setting
- The DHCPv6 server has a Time Format Change setting to allow display of leases in local time or UTC. Please add a simi...
-
08:26 PM Bug #5993: dhcp6c not started until an RA received
- Chris Buechler wrote:
> merged this for 2.4 as it needs more baking time in snapshots than we're going to have for 2... -
01:38 PM Feature #6639 (Resolved): Utilize nextboot to control the behavior of the next firewall reboot
- Now that we include nextboot, we can use it to control the properties of the next firewall boot sequence.
Two idea... -
10:24 AM pfSense Packages Feature #5434: Let's Encrypt pfSense support
- Sory, but now it's working via some simple manual steps...
https://thedevops.party/lets-encrypt-ssl-certificate-on... -
01:44 AM Bug #6637: pfSense blocks return traffic (mostly TCP) on 2.3.1-RELEASE-p5
- Chris Buechler wrote:
> this seems like it's probably the issue here?
> https://bugs.freebsd.org/bugzilla/show_bug...
07/24/2016
-
06:16 PM pfSense Packages Feature #6196 (Closed): APU2 Thermal sensor
- patch is already upstream (by us, not OPNsense).
-
01:19 AM pfSense Packages Feature #6196: APU2 Thermal sensor
- This has already been committed upstream:
https://github.com/freebsd/freebsd/commit/cf2857955cc43bf478bbb4716641d1... -
05:26 PM Bug #6422: PHP Fatal error: Call to undefined function gettext() in /etc/inc/rrd.inc on line 60
- I've been getting this consistently on two new installs that are both dual-WAN load balanced (Gateway Groups).
Mos...
07/23/2016
-
10:15 PM Revision 4aaf3874: dpinger: fixed check for pidfile length #6505
-
05:18 PM Bug #6505: dpinger - socket name too large
- I've pushed a hotfix for this commit. Somehow i checked the wrong variable ... Please check
https://github.com/pfs... -
03:44 PM Bug #6507: GRE and GIF tunnels on dynamic IPv6 interface are not brought up during boot
- IMO this function should be combined with the ipsec tunnel reload. This way you can combine point2point ipsec connect...
-
09:26 AM Feature #3718: radvd - enhancement proposal: ability to advertise routes and some fixes - patches attached
- Hi,
I have upgraded my pfsense box to 2.3.1 finally, since I have seen that there were major changes in the web in...
07/22/2016
-
11:27 PM Bug #6635 (Not a Bug): Dyndns not updating for no-ip
- It works fine as-is. Their old API apparently accepts either hostname or h[] there, since it worked before, and it st...
-
12:24 PM Bug #6635: Dyndns not updating for no-ip
My updates on several boxes are working fine. 2.3.1 p5 (I use noip for my primary server dns also so have the ...-
02:56 AM Bug #6635: Dyndns not updating for no-ip
- Could have sworn I'd used my no-ip account for testing since that commit. Though my account isn't working either way ...
-
11:23 PM Todo #6638 (Resolved): Update no-ip DDNS to new API
- no-ip's API has changed (sometime in 2011 apparently), though they still accept updates using the old URL, it should ...
- 07:24 PM Revision b8e4f5ff: Section title was wrong, discovered by mfine
- 06:16 PM Revision a869a931: Section title was wrong, discovered by mfine
-
03:20 PM Bug #6637: pfSense blocks return traffic (mostly TCP) on 2.3.1-RELEASE-p5
- this seems like it's probably the issue here?
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=207598
we haven'... -
03:25 AM Bug #6637: pfSense blocks return traffic (mostly TCP) on 2.3.1-RELEASE-p5
- I can narrow this down to the 'block out' rule. (And I believe there is no configurable option, perhaps except on the...
-
03:19 AM Bug #6637 (Resolved): pfSense blocks return traffic (mostly TCP) on 2.3.1-RELEASE-p5
- Dear people,
I am setting up a host where I have my AP's connecting to the pfSense box over IPSEC.
I use the "tra... -
09:25 AM Bug #6433: "TFTP Server" field on DHCP server page does not allow hyphen character.
New ticket now open.
See TICKET #6634-
03:03 AM Bug #6634 (Confirmed): DHCP Server "TFTP Server" field should allow URLs
- different issue, we'll keep this here.
-
02:47 AM Bug #4723: Can't forward UDP fragmented packets with scrubbing enabled.
- Chris Buechler wrote:
> I hit this issue with a customer last week. Worked fine after disabling scrub. I have pcaps ...
07/21/2016
-
09:50 PM pfSense Packages Bug #6636 (Resolved): Squid Reverse Proxy with Additional IP and compatibility="Intermediate" writes bad squid.conf
- I use a CARP config, actual IP on this box is x.x.x.135, Virtual IP x.x.x.133. When compatibility="Intermediate" the...
-
08:38 PM Bug #6635: Dyndns not updating for no-ip
- It was "&hostname=" for many years up until 30 Jan 2016, when this commit changed it for some reason:
https://github... -
07:51 PM Bug #6635 (Not a Bug): Dyndns not updating for no-ip
- There's a typo on line 431 of dyndns.class where '&h[]=' should be '&hostname='. As is, it doesn't update and logs a...
-
02:42 PM Bug #6572: Config sync hangs php-fpm on secondary
- Hi Chris,
I have the same problem. I do 1-2 config changes and everything works just fine. If I do a couple more I... -
02:04 PM Bug #6634 (Resolved): DHCP Server "TFTP Server" field should allow URLs
- Please reopen bug #6433. Not familiar with system here or I would try.
The filter on the web interface is not allo... -
01:58 PM Revision 5a5a11cd: replace attribute 'name' to 'id' in openvpn status
-
01:55 PM Bug #6433: "TFTP Server" field on DHCP server page does not allow hyphen character.
- This still does not have the necessary functionality as it did on 2.2.x as of 2.3.1-5. I need to be able to populate ...
-
07:07 AM Bug #6631: vesa_configure error on boot
- In that case we'll get the change automatically when we switch to a FreeBSD 11 base for pfSense 2.4, which is only a ...
-
02:25 AM Bug #6631: vesa_configure error on boot
- I've verified that it's already fixed. Not that the bug still persists. This means that the pfSense kernel should be ...
-
03:56 AM Bug #6558: Pf-sense 2.3 doesn't detect shutdow event with em driver and Intel Chipset 82574L
- Chris Buechler wrote:
> No, it's not a bug in our code and doesn't affect any of the hardware we sell or have sold, ... - 02:24 AM Revision f39ea4c4: Backport openvpn_add_dhcpopts already sets redirect-gateway
- Ticket 6633
Original commit to master was
https://github.com/pfsense/pfsense/commit/f8038899f250c656b1ef03fe351fb9cfd... - 01:29 AM Revision dbcc45d1: Backport Add missing recommended key lengths/digest to Cert system
- Original pull request to master was #2944
- 12:56 AM Revision f8038899: openvpn_add_dhcpopts already sets redirect-gateway, don't add it a second time. Ticket #6633
07/20/2016
-
07:59 PM Bug #6633 (Feedback): redirect-gateway duplicated in client specific overrides
- fix pushed
-
07:58 PM Bug #6633 (Resolved): redirect-gateway duplicated in client specific overrides
- as reported here.
https://forum.pfsense.org/index.php?topic=115429.0 -
07:55 PM pfSense Packages Bug #6632 (Confirmed): siproxd hosts_allow_reg should be configurable
- if you open siproxd on WAN in firewall rules, you get what you're asking for security-wise. No shortage of potential ...
-
05:09 PM pfSense Packages Bug #6632 (Resolved): siproxd hosts_allow_reg should be configurable
- siproxd is providing a configuration option "hosts_allow_reg" which
implements a positive access control list for ho... -
02:48 PM Bug #4326: Limiters on firewall rules where NAT applies drop all traffic
- this is from the use of dummynet in pf, which doesn't exist in stock FreeBSD. And the implementation apparently leave...
-
02:23 PM Bug #4326: Limiters on firewall rules where NAT applies drop all traffic
- Chris Buechler wrote:
> There isn't one because the code/feature in question doesn't exist there.
Now I'm confuse... -
01:55 PM Bug #4326: Limiters on firewall rules where NAT applies drop all traffic
- Andrew Maslin wrote:
> Can someone share the FreeBSD bug # so we can track the progress of the root of the issue? L... -
11:29 AM Bug #4326: Limiters on firewall rules where NAT applies drop all traffic
- Can someone share the FreeBSD bug # so we can track the progress of the root of the issue? Like Luke, I would like t...
-
06:48 AM Bug #4326: Limiters on firewall rules where NAT applies drop all traffic
- Have you guys tried using a queue inside the limiter instead of the limiter itself? It could make a difference since ...
-
02:47 PM Bug #6558: Pf-sense 2.3 doesn't detect shutdow event with em driver and Intel Chipset 82574L
- No, it's not a bug in our code and doesn't affect any of the hardware we sell or have sold, so not something we'll ad...
-
06:15 AM Bug #6558: Pf-sense 2.3 doesn't detect shutdow event with em driver and Intel Chipset 82574L
- Atlante Informatica wrote:
> Chris Buechler wrote:
> > subject isn't true in general, 82574L in the FW-7541 correc... -
01:56 PM Bug #6629: Can't update to "update" update (e.g. 2.3.1_5)
- which is correct, guessing it's no longer showing as described? As that output would give you 2.3.1_5 as an update av...
-
08:13 AM Bug #6629: Can't update to "update" update (e.g. 2.3.1_5)
- Chris Buechler wrote:
> not replicable. Those two pages use the same function to obtain their data, so no apparent m... -
01:54 PM Bug #6631 (Closed): vesa_configure error on boot
- The change that's in reference to was only in 11, what you're seeing there isn't the same thing. Not a bug in our cod...
-
01:03 PM Bug #6631 (Closed): vesa_configure error on boot
- I have the same issue as this FreeBSD Mailing List thread: http://markmail.org/message/aoq6ub636ainxcxe#query:+page:1...
-
10:44 AM pfSense Packages Todo #6443 (Resolved): Add ntopng package back into pfSense 2.3.x
- ntopng will be in the pfSense 2.3.2 release. New tickets should be opened if there are issues with the package upon r...
- 10:37 AM Revision b89bc607: Backport Check IP Services
- Original pull request to master was #3037
- 10:15 AM Revision 30505ba6: Backport Remove input_errors2Ajax calls
- Original commit to master was
https://github.com/pfsense/pfsense/commit/86d431a89d920f64dda5e7e1821f720daf6e067b - 10:01 AM Revision 9cf9f30f: Backport Fix issue with QinQ on LAGG interfaces where MTU doesn't apply to parent
- Original pull request to master was #2905
- 09:50 AM Revision f24e175e: Backport simplify subnet_size()
- Original pull request to master was #3007
- 08:02 AM Revision eafd9cfb: Backport Use all certificates in the chain when creating the ca-file for server-side OpenVPN configuration
- Original pull request to master was #2966
- 07:55 AM Revision 197cd6c0: Backport notify by email and in syslog when a channel goes up or down
- Original pull request to master was #2847
- 07:39 AM Revision 10d4fe2e: Backport Radius auth server to detect openVPN
- Original pull request to master was #3057
- 07:11 AM Revision b18e885c: Backport IPv6 support for CloudFlare
- Original code for master in pull request #3061
- 06:54 AM Revision f50f74a4: Backport DHCP6 init before RA
- Original PR to master was #3055
- 06:37 AM Revision 1cdf2c91: Formatting tidy of interfaces.inc
- After #3055
07/19/2016
-
08:51 PM Bug #5993: dhcp6c not started until an RA received
- Chris Buechler wrote:
> merged this for 2.4 as it needs more baking time in snapshots than we're going to have for 2... -
08:12 PM Bug #6629: Can't update to "update" update (e.g. 2.3.1_5)
- I observed the same thing about a week ago. Performing an update from the console resolved the issue.
-
07:27 PM Bug #6629 (Feedback): Can't update to "update" update (e.g. 2.3.1_5)
- not replicable. Those two pages use the same function to obtain their data, so no apparent means for one to show an u...
-
05:31 PM Bug #6629 (Resolved): Can't update to "update" update (e.g. 2.3.1_5)
- It appears that there is an update available, but when I try to install it, pfSense says it's up-to-date.
I just i... -
08:01 PM Revision eeddd261: Fix variable name
-
08:01 PM Revision c9d6b915: Fix variable name
-
08:01 PM Revision 2e1ebfdd: Fix variable name
-
07:13 PM Revision f3553ac9: Remove immutable flag before delete directory
-
07:13 PM Revision e4de9720: Remove immutable flag before delete directory
-
07:13 PM Revision a034c5bd: Remove immutable flag before delete directory
-
06:00 PM Bug #6630 (Assigned): Set Defaults for Graphs - Traffic/WAN + Packets/WAN doesn't work
-
05:39 PM Bug #6630 (Resolved): Set Defaults for Graphs - Traffic/WAN + Packets/WAN doesn't work
- Tested on two installations.
2.3.2-DEVELOPMENT (amd64)
built on Mon Jul 18 13:42:01 CDT 2016
FreeBSD 10.3-RELE... -
03:55 PM Bug #6628 (Resolved): extensions.ini can end up missing required items
- In some currently-unknown edge case, extensions.ini can end up missing lines, breaking things.
One example post-2... -
03:51 PM Bug #6578: Filter reload hangs with IPsec hostnames that don't resolve configured
- This gets very ugly in circumstances where DNS servers aren't reachable at all. resolve_retry takes extremely long in...
-
02:20 PM Revision 446ed60e: Move RELENG_2_3 to 2.3.3-DEVELOPMENT and point stable to 2.3.2
-
02:18 PM Revision a3cba833: Welcome 2.3.2-RELEASE
-
07:05 AM Bug #4326: Limiters on firewall rules where NAT applies drop all traffic
- Now that the target version bumped to 2.4 (FREEBSD-11) can anyone at least say whether the bug has been fixed in Free...
-
04:27 AM Bug #5990: AES-GCM should be an allowed encryption algorithm for IKEv2 in P1
- Confirmed that it works with IKEv2 PSK mobile client using:
ike = aes256gcm128-sha512-ecp512bp!
esp = aes256gcm... -
02:11 AM Bug #6625: firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- Chris Buechler wrote:
> Hi Remko,
> This seems like a duplicate of #1136, is the VPN in this case reachable via a s... -
12:25 AM Bug #6625 (Feedback): firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- Hi Remko,
This seems like a duplicate of #1136, is the VPN in this case reachable via a static route? -
12:50 AM Bug #6437 (Resolved): CBQ queues are not displaying options for bandwidth or borrowing
- works, thanks Steve
07/18/2016
-
07:44 PM pfSense Packages Bug #6571: NUT service can not start sometimes after boot when SNMP UPS interface is down
- The new NUT package allows for a nut supported way to retry the startup of the driver.
-
06:41 PM Revision d5906132: Set HTTP_PROXY to empty as recommended at https://httpoxy.org/#fix-now
-
06:40 PM Revision 2039a3c1: Set HTTP_PROXY to empty as recommended at https://httpoxy.org/#fix-now
-
06:29 PM Revision d29bdf01: Make sure licenses dir is removed to avoid duplicate it in the wrong package
-
06:29 PM Revision 7147142e: Make sure licenses dir is removed to avoid duplicate it in the wrong package
-
03:52 PM Bug #5990: AES-GCM should be an allowed encryption algorithm for IKEv2 in P1
- Jose Luis Duran wrote:
> Is this going to be backported?
>
> As this was a breaking change from 2.2 to 2.3 (not a... -
03:35 PM Bug #5990 (Resolved): AES-GCM should be an allowed encryption algorithm for IKEv2 in P1
- fixed
Nothing to back port it to, 2.3.2 is the next release. -
03:16 PM Bug #5990: AES-GCM should be an allowed encryption algorithm for IKEv2 in P1
- Is this going to be backported?
As this was a breaking change from 2.2 to 2.3 (not appearing in the Change log). -
02:59 PM Bug #5990: AES-GCM should be an allowed encryption algorithm for IKEv2 in P1
- Lars Pedersen wrote:
> Chris Buechler wrote:
> > fix pushed
>
> Looks good. Will verify it when the next snapsho... -
03:46 AM Bug #5990: AES-GCM should be an allowed encryption algorithm for IKEv2 in P1
- Chris Buechler wrote:
> fix pushed
Looks good. Will verify it when the next snapshot is being build. - 03:44 PM Revision fe179ed6: Allow section header to be omitted by specifying "NOTITLE" as the section title.
- (cherry picked from commit 9ce54773be5e02235e3be7d2b970f61fbb27ba86)
- 03:43 PM Revision 9ce54773: Allow section header to be omitted by specifying "NOTITLE" as the section title.
- 03:11 PM Revision 2e2ffafc: Fixed #6437
- (cherry picked from commit 7bba13e8d53adfe4beb03c8444e60848ae6e25e9)
- 03:09 PM Revision 7bba13e8: Fixed #6437
- 03:07 PM Revision 5be7a5bf: Show "cannot delete alias" message as error
- If I try to delete an alias that is in use, the "cannot delete alias" message was being displayed as the "success" co...
- 03:06 PM Revision b6bd4012: Show "cannot delete alias" message as error
- If I try to delete an alias that is in use, the "cannot delete alias" message was being displayed as the "success" co...
-
11:45 AM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- And now I've had gpsmon SIGSEGV on me. It doesn't happen often, but it has happened from time to time.
gpsd itself... -
09:28 AM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- I think there may also be (benign) bugs in the gpsmon monitor for UBX in gpsd.
I just swapped out a car antenna (S... -
10:20 AM Bug #6437: CBQ queues are not displaying options for bandwidth or borrowing
- Applied in changeset commit:2e2ffafc35f73282f0a40132de4949cae2dbf4bf.
-
10:13 AM Bug #6437: CBQ queues are not displaying options for bandwidth or borrowing
- Form section containing bandwidth and borrow was not being added to the composed form.
-
10:10 AM Bug #6437 (Feedback): CBQ queues are not displaying options for bandwidth or borrowing
- Applied in changeset commit:7bba13e8d53adfe4beb03c8444e60848ae6e25e9.
-
09:15 AM Bug #1629: invalid state table entries after WAN IP change
- I posted "over on the forum":https://forum.pfsense.org/index.php?topic=108895.msg639527#msg639527 but I am not sure w...
-
08:22 AM Bug #6627 (New): floating tab match rules ignore quick action so should be removed
- i noticed since queue rules in floating tab was removed and just match in list or maybe queue renamed to match, the q...
-
07:51 AM Feature #6626 (Closed): Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- When using an ISP with dynamic prefix delegation, the prefix may change at any time, resulting in a change of the IP ...
-
06:44 AM Bug #6625 (Duplicate): firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- We have setup a new pfSense box that will route our VPN traffic between endpoints.
That goes out on our WAN interfac... -
06:02 AM Bug #6487: PfSense crashes during boot at configuring LAGG interfacess
- Possibly related:
* https://forum.pfsense.org/index.php?topic=112042.msg623929#msg623929
* https://forum.pfsense.or... - 04:19 AM Revision 76a0eecb: Allow AES-GCM for P1 where using IKEv2. Ticket #5990
- 04:18 AM Revision a46e0d74: Allow AES-GCM for P1 where using IKEv2. Ticket #5990
- 02:25 AM Revision cadcc898: Clarify that HMAC-MD5 key is required. Ticket #6622
- 02:24 AM Revision 4d55ef96: Clarify that HMAC-MD5 key is required. Ticket #6622
- 02:20 AM Revision 6061a7a9: Merge pull request #3061 from thoughtpolice/cloudflarev6
- 02:15 AM Revision 655fb9df: Merge pull request #3055 from marjohn56/master
-
12:24 AM Bug #4268 (Closed): changes in strongswan config don't apply to SAD or SPD
- when this started, it was a much bigger issue. The worst of it was fixed, but the remaining part with the SAD is stil...
-
12:22 AM Bug #6624 (Confirmed): changes in IPsec config should down the connection
- The fact that strongswan doesn't take down an established connection after changing the config has lead to a number o...
07/17/2016
-
11:19 PM Bug #5990 (Feedback): AES-GCM should be an allowed encryption algorithm for IKEv2 in P1
- fix pushed
-
09:28 PM Bug #6622 (Resolved): DHCP Server: Dynamic DNS required fields are ambiguous
- Thanks, committed clarification to description.
-
01:10 PM Bug #6622 (Resolved): DHCP Server: Dynamic DNS required fields are ambiguous
- This is a screenshot of the current DHCP Server's advanced Dynamic DNS options, as of 2.3.1-p5:
!http://i.imgur.co... -
09:21 PM Feature #6623 (Resolved): Cloudflare DDNS IPv6 support
- merged to master from PR 3061.
https://github.com/pfsense/pfsense/pull/3061
-
09:16 PM Bug #5993 (Feedback): dhcp6c not started until an RA received
- merged this for 2.4 as it needs more baking time in snapshots than we're going to have for 2.3.2.
-
09:10 PM Bug #6355 (Resolved): DHCP relay listens for dhcp requests on the upstream interface.
- works
-
09:00 PM Bug #6589 (Resolved): dhcpd.leases missing hostnames in some cases
- works
-
08:37 PM Bug #6619 (Not a Bug): NAT - Outbound - Edit/Add: Can't enter alias in source/destination network field
- the stable version of Opera works fine. They broke something in the development release, report it there.
-
10:16 AM Bug #6619: NAT - Outbound - Edit/Add: Can't enter alias in source/destination network field
- This happens in Opera 40. In Edge everything works fine.
-
09:57 AM Bug #6619: NAT - Outbound - Edit/Add: Can't enter alias in source/destination network field
- The same "bug" goes for Firewall rule Add/Edit page: There is no way to use an alias.
Looks like a certain commit... -
09:38 AM Bug #6619 (Not a Bug): NAT - Outbound - Edit/Add: Can't enter alias in source/destination network field
- Mayday mayday: There is no way to use network(s) alias in network field on the Outbound NAT Add/Edit page.
Tested... -
08:32 PM Bug #6617 (Resolved): "UNKNOWN" links in package manager
- fixed
-
01:11 PM Feature #6621: Permit DHCP Server Dynamic DNS server key algorithm type selection and use
- Related bug report on the ambiguity of the algorithm currently needed for the DNS secret key: #6622 (https://redmine....
-
01:10 PM Feature #6621 (Resolved): Permit DHCP Server Dynamic DNS server key algorithm type selection and use
- Under the DHCP Server page, you are able to do advanced configuration of Dynamic DNS with an internal nameserver (not...
-
10:01 AM Feature #6620 (Resolved): CoDel, FQ-CoDel, PIE and FQ-PIE AQMs
- Patches for new AQMs CoDel, FQ-CoDel, PIE and FQ-PIE were submitted to CURRENT a few months ago and are now in 10-STA...
- 09:41 AM Revision 3a05e4c3: dyndns: add IPv6 support for CloudFlare
- Signed-off-by: Austin Seipp <aseipp@pobox.com>
-
09:37 AM Bug #6437: CBQ queues are not displaying options for bandwidth or borrowing
- well i hit into this today
07/16/2016
-
05:28 PM Feature #6618 (Duplicate): Alert when reboot required for updates
- duplicate of #6411
-
04:41 PM Feature #6618 (Duplicate): Alert when reboot required for updates
- Hi,
When new updates, the user is not notified if the reboot is required to complete the update.
Why not add a ... -
11:11 AM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- An apparently identical uBlox5 MiniPCIe module (on site at a client's0 stops responding after CFG-PRT to UBX only.
... -
05:29 AM Revision 47de3b06: Fix "http://pf.sense/UNKNOWN" links in Pkg Manager
- I noticed recently that many packages do not have the 'www' field in the database filled, or have it set to UNKNOWN ...
- 05:29 AM Revision 8f70ba67: Merge pull request #3060 from lukehamburg/patch-2
-
01:25 AM Revision 7940050b: Fix "http://pf.sense/UNKNOWN" links in Pkg Manager
- I noticed recently that many packages do not have the 'www' field in the database filled, or have it set to UNKNOWN ...
-
01:04 AM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- It's still the package reinstall that gets hung up, regardless of whether or not you have packages installed. It sets...
-
12:30 AM Bug #6617 (Resolved): "UNKNOWN" links in package manager
- From Luke Hamburg on PR 3060:
"I noticed recently that many packages do not have the 'www' field in the database f... -
12:25 AM Bug #6139 (Resolved): vpn_openvpn_server.php - When saving a server, all CSCs should be resynced
- fixed
-
12:06 AM Bug #6613 (Resolved): Interface mismatch allows applying changes without saving them
- works, now doesn't allow applying until after you save, so people can't get confused.
This same bug actually goes...
07/15/2016
- 11:28 PM Revision 4e0f1a1e: fix typo
- 11:27 PM Revision 1d653e86: fix typo
-
10:56 PM Bug #4639 (Resolved): NAT fails to correctly translate udp port numbers embedded in certain ICMP error packets
- Pretty sure this overlaps with PR 201519, which is confirmed fixed.
Daniel: if you're still seeing issues on 2.3.... -
09:50 PM Bug #6450 (Resolved): Deleting yourself in User Manager results in an empty user tag in the config
- Thanks Phil, setting the target was overlooked after the merge. Just double checked 2.3.2 and it's good.
-
08:33 PM Bug #6450: Deleting yourself in User Manager results in an empty user tag in the config
- This was committed to master, RELENG_2_3 and RELENG_2_3_1 around 23 June 2016.
That looks like it is later than the ... -
08:18 PM Revision 0f743680: Fix license.php to show correct text
-
08:05 PM Revision 1b7647bd: Revert wrong conversion in license.php
-
07:42 PM Revision a06db880: Update pot
-
07:41 PM Revision ef65be16: Move remaining ESF license file to APACHE20
- 07:38 PM Revision cbf5f75e: Fix xml syntax after license update
- (cherry picked from commit f7057140af3a98af925f76b6b0bb544dc7bfc418)
-
07:38 PM Revision 7b24d53b: Merge pull request #3059 from NewEraCracker/xml-syntax-fix
-
07:30 PM Revision b12ea3fb: Move to Apache License 2.0
-
07:19 PM Revision 0eef97aa: Make a function to resync all OpenVPN CSCs and use it when saving an OpenVPN server. Fixes #6139
- 07:14 PM Revision f7057140: Fix xml syntax after license update
-
07:09 PM Revision 1f954318: Make a function to resync all OpenVPN CSCs and use it when saving an OpenVPN server. Fixes #6139
- 06:53 PM Revision 64bac84e: dse was under contract with BSDP for all the work he did, we own (c)
- 06:49 PM Revision f0314a2a: dse was under contract with BSDP for all the work he did, we own (c)
-
06:32 PM Revision aaec5634: Review license / copyright on all files (final round)
-
06:30 PM Revision c5d81585: Review license / copyright on all files (final round)
- 06:14 PM Revision 318e0383: Set dhcp-cache-threshold to 0 to avoid a bug in dhcpd 4.3.x where it omits client-hostname where the cache threshold is reached. Ticket #6589
- 06:13 PM Revision 9dacff7f: Set dhcp-cache-threshold to 0 to avoid a bug in dhcpd 4.3.x where it omits client-hostname where the cache threshold is reached. Ticket #6589
-
05:50 PM pfSense Packages Feature #6204: Integrate ntopng with pfSense - assistance required by ntopng developer
- Wow, this would be incredible (being able to mark traffic based on ntop filters) - did not even know that was theoret...
-
02:20 PM Bug #6139: vpn_openvpn_server.php - When saving a server, all CSCs should be resynced
- Applied in changeset commit:1f954318266fc0da7ee41bb532da969ec9da8b95.
-
01:15 PM Bug #6589 (Feedback): dhcpd.leases missing hostnames in some cases
- this is a bug with the dhcp-cache-threshold feature.
https://lists.isc.org/pipermail/dhcp-users/2016-July/020183.ht... -
11:18 AM Bug #6495: No default route on PPPoE after reconnect or IP change in some cases
- Hi Chris,
> I brought back the behavior of 2.2.6 and earlier here, as the root cause isn't readily apparent. The rou... -
12:15 AM Bug #6495: No default route on PPPoE after reconnect or IP change in some cases
- I brought back the behavior of 2.2.6 and earlier here, as the root cause isn't readily apparent. The router file ends...
- 05:09 AM Revision 5bd2dd83: Bring back the "set iface route default" used in 2.2.6 and earlier versions, which works around the root problem in Ticket #6495
- 05:08 AM Revision 258f1f11: Bring back the "set iface route default" used in 2.2.6 and earlier versions, which works around the root problem in Ticket #6495
-
05:04 AM pfSense Packages Bug #6616 (Duplicate): Client Export list empty when using intermediate CA
- Certificate setup:
A Root CA which has signed a VPN CA certificate.
This VPN CA signed the VPN server certificate... -
04:29 AM pfSense Packages Bug #6571: NUT service can not start sometimes after boot when SNMP UPS interface is down
- I think the reason why this feature is not implemented by NUT team is because it should be implemented on the OS side...
-
03:50 AM Feature #6615 (New): new DHCP server option
- Some hardware can't receive a dhcp lease until they has been configured with a valid IP address.
In that circumstanc... - 03:24 AM Revision 42f47efc: Fix #6613 Do not show Aply Changes button when Save needed
- I got a bit carried away in the fix for #6460 https://github.com/pfsense/pfsense/commit/21c18c3df11547aba172c10f95872...
- 03:24 AM Revision 47e3809d: Merge pull request #3058 from phil-davis/patch-1
07/14/2016
-
11:54 PM Bug #6613: Interface mismatch allows applying changes without saving them
- "The way it worked in 2.2.X was when you hit apply changes it saved and rebooted the pfsense at the same time."
Hm... -
10:30 PM Bug #6613: Interface mismatch allows applying changes without saving them
- Applied in changeset commit:1602106bf511e91c8d8f371ff8d5a92cfa70879a.
-
10:25 PM Bug #6613 (Feedback): Interface mismatch allows applying changes without saving them
- merged, thanks Phil.
-
09:17 PM Bug #6613: Interface mismatch allows applying changes without saving them
- Phillip Davis wrote:
> The Apply Changes button is being shown too early in the workflow.
> PR https://github.com/p... -
06:17 PM Bug #6613: Interface mismatch allows applying changes without saving them
- The Apply Changes button is being shown too early in the workflow.
PR https://github.com/pfsense/pfsense/pull/3058 s... -
10:19 AM Bug #6613 (Resolved): Interface mismatch allows applying changes without saving them
- When selecting Apply Changes after fixing a interface mismatch. The button does not save the changes, and asks again ...
-
11:27 PM pfSense Packages Bug #6571: NUT service can not start sometimes after boot when SNMP UPS interface is down
- I've taken a look at this, and this behavior appears to be an intentional choice on the part of the NUT team. I agree...
- 11:14 PM Revision 1602106b: Fix #6613 Do not show Aply Changes button when Save needed
- I got a bit carried away in the fix for #6460 https://github.com/pfsense/pfsense/commit/21c18c3df11547aba172c10f95872...
-
10:42 PM Feature #3254 (Closed): Add DNS controls for radvd on tracking interfaces
- this was addressed in 2.3
-
10:38 PM Feature #3366 (Duplicate): Diagnostics: DNS Lookup does not return AAAA records
- this was implemented in 2.3.2 on a diff ticket
-
10:38 PM pfSense Packages Feature #3685 (Resolved): haproxy listener ip from alias
-
10:30 PM Todo #1934 (Resolved): Add input validation for interface addresses in GUI and console
- this was done quite some time ago
-
09:36 PM Revision 8acd654a: Review license / copyright on all files (1st round)
-
09:34 PM Revision fdd09cbd: Retire deactivated widgets
-
09:34 PM Revision 368adf79: chmod 0644 php web pages
-
09:34 PM Revision fc91ddca: Retire copyright-master.txt
-
09:34 PM Revision 3f757bb2: chmod 0644 php web pages
-
09:34 PM Revision 483fef7e: Retire /usr/local/bin/slowdownpipe.sh
-
09:33 PM Revision ac24dc24: Review license / copyright on all files (1st round)
-
09:10 PM Revision 30b94997: Retire deactivated widgets
-
08:51 PM Revision e7b8ee69: chmod 0644 php web pages
-
08:50 PM Revision e15252dc: Retire copyright-master.txt
-
08:49 PM Revision 0d21a99e: chmod 0644 php web pages
-
08:33 PM Revision 38f54fec: Retire /usr/local/bin/slowdownpipe.sh
-
07:41 PM Bug #6481: loading EAP_RADIUS method failed
- happened to encounter this with a support customer today. It appears a reload of strongswan doesn't correctly enable ...
-
03:30 PM Revision f1750639: Ignore cp result for cases when files are the same. Ticket #6557
-
03:17 PM Bug #6494 (Resolved): Hang during bootup on lock('filter.lock')
- thanks for the feedback
-
11:57 AM Bug #6494: Hang during bootup on lock('filter.lock')
- I've never tried a 'snapshot' before this.
So... here goes.... While I'm waiting for 2.3.2.a.20160714.0044:
T... -
03:15 PM Revision e18eadcc: Ignore cp result for cases when files are the same. Ticket #6557
-
03:04 PM Bug #6614 (Confirmed): Dashboard high CPU usage
- the number of things that dynamically update is significantly higher than it was in 2.2.x and prior. Still, something...
-
01:16 PM Bug #6614: Dashboard high CPU usage
- I visit the package manager listing, loads hover around 1, processor 98% idle. Back to the dashboard: wait 20 sec fo...
-
12:32 PM Bug #6614 (Confirmed): Dashboard high CPU usage
- In a very low traffic sandbox environment, the new 2.3.2 snapshot of today hums along with a load average of 0.48 or ...
-
02:11 PM pfSense Packages Todo #6443: Add ntopng package back into pfSense 2.3.x
- Rich Murphey wrote:
> I've installed snapshot 2.3.2.a.20160606.1543, and ntopng via the web UI package manager.
>
... -
10:03 AM Bug #6610: Restore Config Interface Mismatch asks again on boot.
- Once i fix the interface mismatch, and hit *apply changes* it reboots, and asks again at boot. Apply changes is not s...
- 05:09 AM Revision a90d497d: Merge pull request #3057 from wokis/master
-
03:48 AM Bug #6607: OpenVPN server won't start after reboot, when set to a Gateway Group specifing CARP VIPs
- See: VPA-15570
-
03:14 AM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- Using gpsctl to initialize the GPS is rather slow, due to the repeated auto-detection (even when the device type is f...
-
03:09 AM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- uBlox5 1PPS modifications. From memory, I believe green is TX data (at 3.3V level), grey is 1PPS (also 3.3V; configur...
-
02:21 AM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- Woops. Forgot to update the comment about 1PPS. We need it to supply only UTC seconds, and that's what the blob does....
-
02:10 AM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- This !ublox5-boot.sh! is a bit ugly to embed in Shellcmd, but good enough to copy to /root and invoke from there.
-
01:19 AM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- I now have a fix. I traced this back to an error in the NAVX5 message.
There is a 2-byte version (0000) in front wh... -
12:20 AM Bug #4544: PD not requested if no interfaces set to track6
- The code here is at fault.
https://github.com/pfsense/pfsense/blob/master/src/etc/inc/interfaces.inc#L3927
It sh... -
12:09 AM Bug #6609 (Feedback): OpenVPN Radius auth doesn't send NAS attributes and is not consistent with how strongSwan does it
- Thanks, merged to master for 2.4.
07/13/2016
-
11:43 PM Bug #6223: IPsec + OpenBGPD fails with "PF_KEY socket: No buffer space available"
- bumping net.inet.raw.maxdgram, net.inet.raw.recvspace, net.raw.recvspace and net.raw.sendspace even further seems to ...
-
11:39 PM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- Success pushing uBlox5 into binary mode; but don't let gpsd write to
the GPS (-b switch) just in case. I got NMEA a... -
10:17 PM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- I hate little endian. Endian little hate I. This is the endian-fixed CFG-PRT packet. I get only UBX now, but I don't ...
-
10:04 PM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- According to Pg. 10 of [[http://www.pcengines.ch/schema/alix6b.pdf]], there is no way to power-cycle the MiniPCIe USB...
-
09:37 PM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- Indeed, UBX messages are little-endian by definition. I'll have to revisit this -- being dragged into other things at...
-
09:07 PM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- OK. I'm having trouble with the uBlox5. Specifically, it is difficult to force the unit into a binary-only mode; it d...
-
11:40 AM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- Picture of modified u-Blox5 unit -- pictures of modification (on lower side PCB) to follow !P1010540.jpeg!
-
09:29 AM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- I am pivoting back to working on u-Blox 5 with GPSD, now that the SUT for Rockwell Jupiter is being soak-tested with ...
-
11:23 PM Bug #6548 (Resolved): Enclosed delimiters not protected in DHCP client advanced options
- works
-
02:57 PM Bug #6548 (Feedback): Enclosed delimiters not protected in DHCP client advanced options
- PR #3020 merged, thanks!
-
02:05 PM Bug #6548: Enclosed delimiters not protected in DHCP client advanced options
- I'll handle this
-
10:09 PM Bug #6494: Hang during bootup on lock('filter.lock')
- That seems to work.
Harry: could you please try the latest 2.3.2 snapshot ASAP (we're looking to build release on... -
03:30 PM Bug #6494 (Feedback): Hang during bootup on lock('filter.lock')
- Yes, this looks correct. In addition to this fix I would like to open the files with FD_CLOEXEC set, but I could not ...
- 10:01 PM Revision c323224d: Fix #6050 DHCP - provide Network Booting display/hide advanced button
- This one moves the "Network Booting" above the "Additional BOOTP/DHCP Options". That allows "Network Booting" to be a...
-
10:01 PM Revision 0666f04e: Merge pull request #3052 from phil-davis/patch-3
-
09:18 PM Revision a409a857: Added and modified functions to send correct Radius attributes to the Radius authenticator.
- 07:56 PM Revision c34b069e: simplify DHCP_Config_Option_Split, no loop needed for returning option array
- (cherry picked from commit 264ca54e406eee7c01b01f748aabd4a29e9c4872)
- 07:56 PM Revision 489091dc: Allow passing comma in string quoted DHCP client options
- (cherry picked from commit 332a64d0c8a6486d40c6295351ca3068a77a216a)
-
07:55 PM Revision 9da88ef5: Merge pull request #3020 from shieldwed/Allow_comma_in_DHCP_option_string
-
07:43 PM pfSense Packages Bug #6612: squid Multi segmented downloading is broken
- likely an issue in squid itself that should be reported there. They don't seem fond of download managers
-
07:22 PM pfSense Packages Bug #6612 (Closed): squid Multi segmented downloading is broken
- it looks like that squid Multi segmented downloading is broken again in squid.
TCP_MISS_ABORTED/206
It was fixe... -
07:43 PM Bug #6607 (Not a Bug): OpenVPN server won't start after reboot, when set to a Gateway Group specifing CARP VIPs
- subject isn't true. That was all fully verified in 2.3.1, and just checked again to verify on 2.3.1_5 and 2.3.2, and ...
-
02:17 AM Bug #6607: OpenVPN server won't start after reboot, when set to a Gateway Group specifing CARP VIPs
- Affected version is 2.3.1-RELEASE-p1. I am using SG-4860 hardware.
-
02:14 AM Bug #6607 (Not a Bug): OpenVPN server won't start after reboot, when set to a Gateway Group specifing CARP VIPs
- No problem for OpenVPN clients.
When OpenVPN server is set to a simple CARP VIP, it will start after reboot.
Wh... -
07:02 PM Bug #6611: Kernel panic when running PPPoE Server on tun/tap interface
- Setting it to ovpn interface was just an attempt to see the result.
-
06:57 PM Bug #6611 (Confirmed): Kernel panic when running PPPoE Server on tun/tap interface
- also makes no sense to run on OpenVPN. That should be prohibited. other ticket is #4510
-
06:45 PM Bug #6611: Kernel panic when running PPPoE Server on tun/tap interface
- I've seen the other ticket. The first attempt was on wan interface, which has a fixed ip (no PPPoE client). The secon...
-
06:10 PM Bug #6611 (Feedback): Kernel panic when running PPPoE Server on tun/tap interface
- what's the parent interface of the PPPoE? only way I know of doing something like this is making a PPPoE server inter...
-
06:01 PM Bug #6611 (Closed): Kernel panic when running PPPoE Server on tun/tap interface
- 2.3.1-RELEASE-p5, running in 64 bit kvm vm.
After updating PPPoE settings and confirmation by clicking the green s... -
06:22 PM Bug #6050 (Resolved): services_dhcp.php: "Network booting" section default style is confusing/easy to overlook
- Looks good, thanks Phil
-
05:02 PM Bug #6050 (Feedback): services_dhcp.php: "Network booting" section default style is confusing/easy to overlook
- Merged, thanks Phil!
-
04:32 PM Bug #6609: OpenVPN Radius auth doesn't send NAS attributes and is not consistent with how strongSwan does it
- I fixed the lines that reverted the recent changes. My bad for committing things that really aren't part of the patch...
-
04:08 PM Bug #6609: OpenVPN Radius auth doesn't send NAS attributes and is not consistent with how strongSwan does it
- Thanks Kacper. Looks reasonable, outside the one line I left a comment on where a recent change was reverted, but som...
-
03:57 PM Bug #6609: OpenVPN Radius auth doesn't send NAS attributes and is not consistent with how strongSwan does it
- I've submitted a github pull request (#3057) fixing this issue.
-
03:53 PM Bug #6609 (Confirmed): OpenVPN Radius auth doesn't send NAS attributes and is not consistent with how strongSwan does it
-
11:31 AM Bug #6609 (Resolved): OpenVPN Radius auth doesn't send NAS attributes and is not consistent with how strongSwan does it
- OpenVPN Radius auth doesn't send NAS Port-Type (which should be "Virtual") and NAS Port (which preferably should be t...
-
04:09 PM Bug #4804 (Closed): PPPoE Restart won't update IPv6 routing table with gif
-
11:06 AM Bug #4804: PPPoE Restart won't update IPv6 routing table with gif
- Chris,
no, I''m afraid as I don't use pfSense anymore! -
03:51 PM Bug #6610 (Not a Bug): Restore Config Interface Mismatch asks again on boot.
- only if you didn't correct the interface mismatch and save that change. That only comes up when there are assigned in...
-
12:04 PM Bug #6610 (Not a Bug): Restore Config Interface Mismatch asks again on boot.
- When restoring a config with a interface mismatch, it prompts to fix the mismatch, after this it reboots the system. ...
-
03:21 PM Bug #6315 (Resolved): tftp-proxy is not functioning properly through xinetd
- works
-
02:59 PM Bug #6315 (Feedback): tftp-proxy is not functioning properly through xinetd
- Luiz pushed a fix fot xinetd - https://github.com/pfsense/FreeBSD-ports/commit/eeb3abaa71905ccaec35b0bee7bc4dcc40cfc306
-
12:00 PM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- This happens even without packages installed. I restored a config without any package information in it. Even selecte...
-
11:41 AM Bug #6074 (Resolved): Odd wrap behavior on sortable tables
- works
-
10:02 AM Bug #4031: Notifications mail bomb in some gateway failure circumstances
- I too have seen this I shut off emails cause it makes gui inaccessible when it starts bombing no coding skills here b...
-
09:47 AM Bug #4031: Notifications mail bomb in some gateway failure circumstances
- Luke Hamburg wrote:
> I noticed the target version was bumped to 2.4.0 and the assignee is still cmb — this one bit ... -
07:58 AM Bug #4031: Notifications mail bomb in some gateway failure circumstances
- I noticed the target version was bumped to 2.4.0 and the assignee is still cmb — this one bit me again this morning s...
- 07:53 AM Revision 1a8e5f2f: Some tweaks to improve alignment in table with checkbox
- 1) If a checkbox does not have a description (even if it is empty), layout will be broken as checkbox won't be aligne...
-
05:52 AM Feature #6608 (New): backup and restore dhcp
- good morning people,
I'm with a problem in dhcp backup restoration, I will explain the case.
My client has 3 ... -
01:49 AM pfSense Packages Todo #6443: Add ntopng package back into pfSense 2.3.x
- I'm still having the issue with ntopng not restarting after a reboot, with the following errors in the log.
Jul 13... -
01:40 AM pfSense Packages Feature #6204: Integrate ntopng with pfSense - assistance required by ntopng developer
- Hi
I think this ticket is different to #6443.
#6443 is simply about getting ntopng back into pfSense 2.3, follo... - 01:18 AM Revision 0d9fc91c: Merge pull request #2847 from jazzl0ver/patch-1
- 01:14 AM Revision 9046c581: Merge pull request #2966 from scipiojr/master
- 01:11 AM Revision 6c947c1d: Merge pull request #3007 from stilez/patch-34
07/12/2016
-
11:10 PM Revision a8f24429: style sortable tables
-
11:10 PM Revision f78b316a: clean up captive poral widget
-
11:10 PM Revision ff24fa40: change order of css files in head element
-
11:08 PM pfSense Packages Bug #4634 (Resolved): Still broken openbgpd config generation logic in 2.2
- fixed last year
-
11:08 PM Revision b9212b15: style sortable tables
-
11:08 PM Revision c6310cf4: clean up captive poral widget
-
11:07 PM Revision 79c50872: change order of css files in head element
-
11:07 PM pfSense Packages Bug #3605 (Closed): Dansguardian not saving groups config files with correct PICS paths.
- package no longer exists, and Dansguardian itself is not maintained
-
11:07 PM pfSense Packages Bug #3439 (Closed): TFTP - cannot start or restart from Status -> Services
- package no longer exists
-
11:00 PM pfSense Packages Bug #2920 (Not a Bug): OSPF on interfaces with IP Alias and carp unpredictable
-
10:54 PM Bug #4500 (Confirmed): UPnP/NAT-PMP status page does not display all port mappings
-
10:53 PM Feature #4495 (Duplicate): IPv6 support for DynDNS client
- duplicate of #1825
-
10:53 PM pfSense Packages Feature #6204 (Duplicate): Integrate ntopng with pfSense - assistance required by ntopng developer
- duplicate of #6443
-
08:15 PM Bug #2800 (Feedback): OpenVPN doesn't work properly with intermediate/chained CAs
- Merged PR 2966 for 2.4 to address this.
https://github.com/pfsense/pfsense/pull/2966
If OpenVPN Client Export ne... - 08:12 PM Revision e1f0ea2e: Merge pull request #2905 from Chrisc-c-c/LAGG-MTU
-
08:03 PM Todo #6606 (Resolved): Adapt captive portal to work without multi-instance ipfw
- Captive portal needs to be adapted to work minus the multi-instance ipfw capabilities.
-
07:46 PM Bug #6605 (Confirmed): rc.linkup logic issues with actions taken
- The actions taken by rc.linkup differ depending on whether the interface has a static or no IPv4 and IPv6 IP, and eve...
-
06:14 PM Bug #6074 (Feedback): Odd wrap behavior on sortable tables
- I added a CSS nowrap property and a "table-responsive" div to the captive portal widget as well as styled the sortabl...
-
03:12 PM Bug #6227 (Feedback): LAGG MTU not set correctly when it has child QinQ interfaces
- PR merged
-
03:06 PM Bug #6507: GRE and GIF tunnels on dynamic IPv6 interface are not brought up during boot
- Any idea? Is there any hook we can bind to? Like change of interface ip addresses? Which could get our tunnels reconf...
-
01:17 PM Bug #6044: system>monitoring tooltip unit "null" for some graphs
- works
-
01:16 PM Bug #6044 (Resolved): system>monitoring tooltip unit "null" for some graphs
- fixed
-
01:13 PM Bug #6181 (Resolved): Updating url alias tables fails when remote server returns empty document.
- works
-
12:51 PM Bug #6291 (Resolved): Serial console data fields not displayed on nanobsd VGA
- works
-
11:24 AM Bug #6315: tftp-proxy is not functioning properly through xinetd
- I reproduced it on stock FreeBSD and opened a ticket on FreeBSD's bugzilla - https://bugs.freebsd.org/bugzilla/show_b...
-
09:30 AM Bug #4754 (Resolved): enabling net.inet.ipsec.directdispatch on 32 bit results in kernel panics
-
09:16 AM Bug #6402 (Resolved): Monitoring won't save default configuration of 8 hours with 1 minute resolution, resets resolution to 5 minutes when switching from 1 hour, 1 minute resolution
- works
-
05:23 AM pfSense Packages Bug #6603: pfblockerng's Unbound modifications leave system broken post-config restore
- Oh, and - the original problem is much worse on nanobsd - no config restore needed. This breaks on every system upgra...
-
05:17 AM pfSense Packages Bug #6603: pfblockerng's Unbound modifications leave system broken post-config restore
- Rather than such ad hoc hacks - cannot we get something like the sanity checking from pfBNG to Unbound itself? Like, ...
-
03:57 AM Bug #6572: Config sync hangs php-fpm on secondary
- Hi Chris,
Any updates please? Kindly ask should you require further information if needed from our end, thanks.
... - 02:57 AM Revision d368b298: write_config before openvpn_resync here as well. Ticket #6139
- 02:57 AM Revision 5a9c3449: write_config before openvpn_resync here as well. Ticket #6139
Also available in: Atom