Activity
From 07/18/2016 to 08/16/2016
08/16/2016
-
10:50 PM Bug #6722: ntp sync
- Aug 17 09:46:11 ntpd 30668 ntpd 4.2.8p8@1.3265-o Tue Jul 19 16:25:02 UTC 2016 (1): Starting
Aug 17 09:46:11 ntpd 306... -
09:50 PM Bug #6722 (Not a Bug): ntp sync
- im newu ser of pfsense im having problem with ntp unable to snyc after update pfsense 2.2.6 to 2.3.2
thats my sys... - 10:22 PM Revision beae03f9: Fix messup caused by 9d3e872
- (cherry picked from commit d5b993fc310147d68bc3c3654a512b0ac981ecd2)
- 10:21 PM Revision 2320796c: Fix messup caused by 9d3e872
- (cherry picked from commit d5b993fc310147d68bc3c3654a512b0ac981ecd2)
-
10:21 PM Revision 4d5df679: Merge pull request #3113 from NewEraCracker/patch-11
-
10:12 PM Revision 200728c9: Ticket #3734: Convert remaining xmlrpc_client.inc consumers to use XML_RPC2
-
08:34 PM Revision 80f38d81: Retire /etc/rc.filter_configure_xmlrpc
-
08:26 PM Revision 81891d1d: Remove unused functions
- 08:18 PM Revision d5b993fc: Fix messup caused by 9d3e872
-
06:20 PM Revision b885c8cf: Silence pgrep stderr when pidfile contains an invalid PID
-
06:03 PM Revision ffd2056a: Ticket: #3734: Convert rc.filter_synchronize to use pear-XML_RPC2
-
06:03 PM Revision 3c982605: Fix indent
- 04:31 PM Revision c8d15b4b: Tidy up filenames
- Make sure the filenames represent the actual file
(cherry picked from commit 6173d1f5a5ed50b8c8a8523b1eb6824f7c9c1ae6) - 04:31 PM Revision 4ae5b96f: Tidy up filenames
- Make sure the filenames represent the actual file
(cherry picked from commit 6173d1f5a5ed50b8c8a8523b1eb6824f7c9c1ae6) - 04:31 PM Revision 9795c89e: Merge pull request #3111 from ExolonDX/master
- 03:45 PM Revision 7edcc54b: Uniformize memory limits and remove old code (revised)
- 1) Allow setting a memory_limit up to 768M (Suhosin)
2) Remove old workarounds. Memory limits on config.inc will be n... - 02:53 PM Revision 28598720: Fix #6720 DHCP options by pool
- It is a little bit tricky having to generate the unique "option custom-if-n-m code ..." lines at first where n = pool...
- 02:50 PM Revision 6173d1f5: Tidy up filenames
- Make sure the filenames represent the actual file
- 01:31 PM Revision beb9321f: Fix double domain-name-servers for pool
- Add a pool and specify something in 1 or more of the DNS servers boxes for the pool.
The "option domain-name-servers ... - 01:24 PM Revision a6412d53: Fix DDNS domain for static map DHCP entries
- If you specify DDNS Domain in a DHCP static map entry, it does not make its way through to dhcpd.conf
This is because... - 01:23 PM Revision 4c62f9e6: Fix DDNS domain for static map DHCP entries
- If you specify DDNS Domain in a DHCP static map entry, it does not make its way through to dhcpd.conf
This is because... - 01:23 PM Revision ea8e683a: Merge pull request #3109 from phil-davis/patch-1
- 01:22 PM Revision 323fb3ca: Merge branch 'RELENG_2_3_2' of git.pfmechanics.com:pfsense/pfsense into RELENG_2_3_2
- 01:22 PM Revision 3896b732: Code style and comments
- No functional change - just making style consistent
(cherry picked from commit 9d3e8723171c727cf43338bd8e95ab2bb7e6a... - 01:21 PM Revision 9488f42b: Code style and comments
- No functional change - just making style consistent
(cherry picked from commit 9d3e8723171c727cf43338bd8e95ab2bb7e6a... - 01:21 PM Revision 43d68f65: Merge pull request #3108 from phil-davis/codestyle
- 01:18 PM Revision a5a55231: Fix DDNS domain for static map DHCP entries
- If you specify DDNS Domain in a DHCP static map entry, it does not make its way through to dhcpd.conf
This is because... -
01:18 PM pfSense Packages Bug #6721: Incorrect OpenBGPd package scripts prevent use of both IPv4 and IPv6
- Steps to reproduce:
1. Install the latest OpenBGPd package;
2. Enter the needed settings, adding both IPv4 and IP... -
12:50 PM pfSense Packages Bug #6721: Incorrect OpenBGPd package scripts prevent use of both IPv4 and IPv6
- Please read the title as: Incorrect OpenBGPd package scripts prevent use of both IPv4 and IPv6 - at the same time.
-
12:40 PM pfSense Packages Bug #6721 (Needs Patch): Incorrect OpenBGPd package scripts prevent use of both IPv4 and IPv6
- Symtoms of this bug can be seen in the post below:
[[https://forum.pfsense.org/index.php?topic=116900.0]]
To co... -
12:38 PM Revision 0448b4d5: Add 2nd server to the list of places to submit files
-
12:38 PM Revision c9cd556b: Add 2nd server to the list of places to submit files
-
12:38 PM Revision 1d2eda73: Add 2nd server to the list of places to submit files
-
11:39 AM Bug #6719: OpenVPN DNS Leak Windows 10
- I use mullvad vpn on one of my PCs which is running windows 10. As long as you are using openvpn 2.3.9 or newer, it h...
-
09:22 AM Bug #6719 (Assigned): OpenVPN DNS Leak Windows 10
- Ran some quick tests and both ways work so long as the client is current. With the option present, DNS queries only g...
-
07:49 AM Bug #6719: OpenVPN DNS Leak Windows 10
- All we could do is push the setting or add it to the config. Beyond that it's a Windows problem that isn't anything w...
-
07:40 AM Bug #6719: OpenVPN DNS Leak Windows 10
- I tried
*push block-outside-dns* @ pfSense & *setenv opt block-outside-dns* @ openVPN-Client
nslookup still tr... -
07:08 AM Bug #6719: OpenVPN DNS Leak Windows 10
- Did you try the suggested fix on the ticket you linked? Put this in your advanced server config box:...
-
02:51 AM Bug #6719 (Resolved): OpenVPN DNS Leak Windows 10
- Windows 10 DNS resolver always uses local DNS server, which defeats the point of --redirect-gateway / Road-Warrior sc...
-
10:10 AM Bug #6718: openvpn server exits if client has explicit-exit-notify 2 specified
- OK I can reproduce that. From reading OpenVPN's docs and forum, explicit-exit-notify is *not* intended for use with S...
-
09:14 AM Bug #6718: openvpn server exits if client has explicit-exit-notify 2 specified
- server config as below:
shared key
udp
tun
1104 port
BF-CBC
SHA1
ipv4 tunnel entwork - 10.10.10.0/24
do not f... -
08:44 AM Bug #6718 (Not a Bug): openvpn server exits if client has explicit-exit-notify 2 specified
- I can't reproduce this at all. I added that directive to a client and the server keeps running afterward, no problems...
-
12:43 AM Bug #6718 (Not a Bug): openvpn server exits if client has explicit-exit-notify 2 specified
- i have 2 pfsense boxes where 1 is a openvpn server and the other a client, if the client config has explicit-exit-not...
-
09:55 AM Bug #6720: DHCPD Options in "Sub-"Pools ignored, dhcpd.conf does not contain informations, dhcpd therefore not serving
- Please try the code at pull request https://github.com/pfsense/pfsense/pull/3112 - /etc/inc/services.inc - and report...
-
08:45 AM Bug #6720: DHCPD Options in "Sub-"Pools ignored, dhcpd.conf does not contain informations, dhcpd therefore not serving
- Looking in the code I found a couple of other things when I did some first looking:
1) A problem when specifying DDN... -
03:33 AM Bug #6720 (Resolved): DHCPD Options in "Sub-"Pools ignored, dhcpd.conf does not contain informations, dhcpd therefore not serving
- Dear Maintainers,
we have recently discovered that pfsense 2.3.2-RELEASE does not treat Options in DHCP "Sub-"Pool... - 04:45 AM Revision 9d3e8723: Code style and comments
- No functional change - just making style consistent
08/15/2016
-
11:44 PM Bug #6717 (Resolved): Status / DHCPv6 Leases Issues
- I'm running 2.3.3.a.20160815.2144 with PR 3102/1, 3102/2, 3103, 3105, 3106 and 3107, testing the fix for https://redm...
-
07:37 PM Feature #3377: OAuth2 authentication in captive portal
- Thomas NOEL wrote:
> In Captive Portal we have native, ldap and radius authentication. Today, a lot of authenticatio... - 07:31 PM Revision ad4ed096: Improved solution to #6716
- (cherry picked from commit 0ed3b15981b4451efb11839d6ee7b9acf1ed1d84)
- 07:31 PM Revision 4c1c9e52: Improved solution to #6716
- (cherry picked from commit 0ed3b15981b4451efb11839d6ee7b9acf1ed1d84)
- 07:30 PM Revision 0ed3b159: Improved solution to #6716
- 06:54 PM Revision 913a3ea7: Fixed #6716
- (cherry picked from commit 4d4782fcd7213b5f279cb372853f5fedb07f6178)
- 06:54 PM Revision eb53e873: Fixed #6716
- (cherry picked from commit 4d4782fcd7213b5f279cb372853f5fedb07f6178)
- 06:48 PM Revision 4d4782fc: Fixed #6716
-
04:49 PM Bug #5993: dhcp6c not started until an RA received
- Correction:
I did another test. After around 30 minutes after releasing the WAN interface, both gateways were offl... -
04:31 PM Bug #5993: dhcp6c not started until an RA received
- A lot of progress made on this bug and other issues. Currently, I'm running the latest snapshot with the following PR...
-
04:29 PM Revision b2bc6981: Remove more unnecessary ports for ARM
-
04:17 PM Revision 855d9774: Fix filename
-
04:14 PM Revision a394951a: Define which packages will be build for ARM using a exclusion list
-
04:11 PM Revision f72d162f: Make it possible to create a exclude list for each architecture for poudriere bulk list
-
03:07 PM Bug #6712: services_unbound.php Host Overrides don't change any unbound configuration
- Thanks to PiBa-NL on IRC who helped me troubleshoot this down to:
/etc/inc/system.inc
339 // prefer dnsma... - 02:56 PM Revision 571139c0: Fixed #6700
- (cherry picked from commit 40eca7e3a8abdff768e29e310ba945e74fdcfe17)
- 02:56 PM Revision 0e063307: Fixed #6700
- (cherry picked from commit 40eca7e3a8abdff768e29e310ba945e74fdcfe17)
- 02:55 PM Revision 40eca7e3: Fixed #6700
- 02:28 PM Revision dba59021: Fixed #6710
- (cherry picked from commit 13b92290e0fa367a76016a15ccf5e76ff77b0706)
- 02:28 PM Revision 247c0d9a: Fixed #6710
- (cherry picked from commit 13b92290e0fa367a76016a15ccf5e76ff77b0706)
- 02:27 PM Revision 13b92290: Fixed #6710
-
02:03 PM Bug #6716 (Resolved): services_unbound_acls: Network "Delete" button is not hidden if only on network listed
-
02:00 PM Bug #6716 (Feedback): services_unbound_acls: Network "Delete" button is not hidden if only on network listed
- Applied in changeset commit:4d4782fcd7213b5f279cb372853f5fedb07f6178.
-
01:46 PM Bug #6716 (Resolved): services_unbound_acls: Network "Delete" button is not hidden if only on network listed
- Also help text in a repeatable section is duplicated if the last row is deleted
- 01:53 PM Revision 64941233: Fixed #6709
- (cherry picked from commit 3726918df1dc4744bb7ea694ec5c8f40de59d856)
- 01:53 PM Revision df57a1cf: Fixed #6709
- (cherry picked from commit 3726918df1dc4744bb7ea694ec5c8f40de59d856)
- 01:53 PM Revision 3726918d: Fixed #6709
- 01:46 PM Revision e0eadf80: Fixed #6703
- (cherry picked from commit e5343844c6de78feafae9e601b25bdf31f114a50)
- 01:45 PM Revision 5a30887e: Fixed #6703
- (cherry picked from commit e5343844c6de78feafae9e601b25bdf31f114a50)
- 01:45 PM Revision e5343844: Fixed #6703
- 01:39 PM Revision f7f0f1c5: Fixed #6706
- (cherry picked from commit b86938e7e19a09a5b1f3f54825193b57f7c73131)
- 01:39 PM Revision 5e40e7af: Fixed #6706
- (cherry picked from commit b86938e7e19a09a5b1f3f54825193b57f7c73131)
- 01:38 PM Revision b86938e7: Fixed #6706
- 01:34 PM Revision 1aa05d2b: Fixed #6705
- (cherry picked from commit d526fc2d2acc87af2ca829dfe01f0037e3368051)
- 01:34 PM Revision 089d1e3f: Fixed #6705
- (cherry picked from commit d526fc2d2acc87af2ca829dfe01f0037e3368051)
- 01:33 PM Revision d526fc2d: Fixed #6705
- 01:21 PM Revision e800783e: Fixed #6701
- (cherry picked from commit 03fd538eefd641771b6302370b901fe4ace3ab4f)
- 01:20 PM Revision d8d64a57: Fixed #6701
- (cherry picked from commit 03fd538eefd641771b6302370b901fe4ace3ab4f)
- 01:19 PM Revision 03fd538e: Fixed #6701
- 01:00 PM Revision d11cdca7: Fixed #6704
- (cherry picked from commit fd778d8bef8ea3b0e5dcc8007de242b6e2ac6d5a)
- 01:00 PM Revision d4879244: Fixed #6704
- (cherry picked from commit fd778d8bef8ea3b0e5dcc8007de242b6e2ac6d5a)
- 12:59 PM Revision fd778d8b: Fixed #6704
-
09:57 AM Bug #6700 (Resolved): dhcp6 Related log entries
-
09:49 AM Bug #6705 (Resolved): diag_routes "Rows to display" is off by one
-
08:40 AM Bug #6705 (Feedback): diag_routes "Rows to display" is off by one
- Applied in changeset commit:d526fc2d2acc87af2ca829dfe01f0037e3368051.
-
09:48 AM Bug #6704 (Resolved): diag_edit.php Go to Line limits
-
08:10 AM Bug #6704 (Feedback): diag_edit.php Go to Line limits
- Applied in changeset commit:fd778d8bef8ea3b0e5dcc8007de242b6e2ac6d5a.
-
09:33 AM Bug #6710 (Resolved): diag_resetstate.php confirmation prompt even if checkboxes unchecked
-
08:54 AM Bug #6709 (Resolved): diag_resetstate select or all?
-
08:46 AM Feature #6703 (Resolved): diag_edit.php suggestion
-
08:40 AM Bug #6706 (Resolved): diag_routes Use a regular expression description or use
-
08:22 AM Bug #6701 (Resolved): diag_authentication.php related status link
-
03:19 AM Todo #6697: White squares around the numeric values in the Status / Queues page
- Also just noticed the queue name could do with a little more space between it and the left edge of the table.
08/14/2016
- 10:03 PM Revision 6756052b: Call services_dhcpd_configure with the right parameter
- Previously code segment for v4 would call both v4 and v6. Fixed to call v4 and v6 where appropriate.
-
02:04 PM Bug #6687: Secure email fails with private CA
- The concept of an option to ignore certificate validation is completely unrelated to this issue.
-
05:35 AM Bug #6687: Secure email fails with private CA
- Any attempts to do certificate validation here should be completely optional here (as in, a separate checkbox). *Way*...
-
12:21 PM Bug #5993: dhcp6c not started until an RA received
- I spent a while doing some testing with pfsense and 4 clients. Your latest fix definitely seems to have fixed the pro...
-
01:19 AM Bug #5993: dhcp6c not started until an RA received
- I backed out of the previous changes (PR plus edits) and installed the updated PR. I tested it on a hyper-v server wi...
-
04:58 AM Bug #6712: services_unbound.php Host Overrides don't change any unbound configuration
- This certainly works. Would suggest using the forums for help.
08/13/2016
-
09:42 PM Bug #6715 (Resolved): diag_traceroute.php suggestions
- 1) diag_traceroute.php the IPv4 traceroute when
resolving IPs to hostnames outputs both,
but the IPv6 traceroute6 o... -
09:26 PM pfSense Packages Bug #6714 (Rejected): diag_testport suggestions and issues
- I hope you don't mind that I place multiple things in a single ticket here about diag_testport:
1) can output erro... -
09:17 PM Bug #6701: diag_authentication.php related status link
- This is also related:
diag_tables has "Related status" shortcut for "aliases" that
goes to same diag_tables page.... -
05:38 PM Bug #6701: diag_authentication.php related status link
- Thanks Jeremy,
I'll look at this (and the rest of your list) on the next couple of days. -
05:23 PM Bug #6701 (Resolved): diag_authentication.php related status link
- The diag_authentication "related status" icon links to same page :)
$shortcuts['authentication']['status'] = "diag... -
09:12 PM Bug #6713 (Resolved): diag_tables table or alias or database?
- be consistent in naming or add more doc details
to the diag_tables page as custom tables are called "aliases" elsewh... -
08:56 PM Bug #6712 (Resolved): services_unbound.php Host Overrides don't change any unbound configuration
- services_unbound.php
I cannot get any Host Override to be configured with unbound.
/var/unbound/host_entries.conf ... -
08:22 PM Bug #6711 (Resolved): diag_states_summary # States and # States twice (explain one is per protocol)
- diag_states_summary is not intuitive as each table has two columns
with same "# States" header.
first is for $ipinf... -
07:46 PM Bug #5993: dhcp6c not started until an RA received
- I've updated my PR with another commit (almost the same I sent you via PM a few hours ago):
https://github.com/pfsen... -
07:22 PM Bug #5993: dhcp6c not started until an RA received
- From my reply to your PM, based on a discussion with an engineer at my ISP, my understanding is the following:
> T... -
04:42 PM Bug #5993: dhcp6c not started until an RA received
- Copying the info I shared on my reply to your PM on the forum.
> From my understanding, the whole point to setting... -
01:38 AM Bug #5993: dhcp6c not started until an RA received
- I was holding off on upgrading to the latest snapshot because PR 3092 wouldn't install. However, I noticed today that...
-
05:58 PM Bug #6698 (Rejected): Hostname updates in Alias didn't work
- Unable to reproduce. Loaded up pfSense-CE-2.3.2-RELEASE-4g-i386-nanobsd-vga.img and hostnames in aliases worked fine....
-
08:18 AM Bug #6698 (Rejected): Hostname updates in Alias didn't work
- I have a fresh 2.3.2 install on i386 on a 4gb cf card (nano version). Hostnames in Alias didn't work. On the firewall...
-
05:58 PM Bug #6699 (Rejected): Filter reload didn't work
- Unable to reproduce. Loaded up pfSense-CE-2.3.2-RELEASE-4g-i386-nanobsd-vga.img and filter reload worked fine.
Ple... -
08:21 AM Bug #6699 (Rejected): Filter reload didn't work
- I have a fresh 2.3.2 install on i386 on a 4gb cf card (nano version). New rules didn't apply automatically. I have to...
-
05:54 PM Bug #6393: SMART service handling is incomplete/missing
- See also #6707
-
05:54 PM pfSense Packages Bug #6707 (Duplicate): diag_smart is broken
- Duplicate of #6393
That page needs significant work. -
05:33 PM pfSense Packages Bug #6707 (Duplicate): diag_smart is broken
- it appears the diag_smart is broken.
For example, its has
$start_script = "/usr/local/etc/rc.d/smartd.sh";
and ... -
05:46 PM Bug #6710 (Resolved): diag_resetstate.php confirmation prompt even if checkboxes unchecked
- diag_resetstate.php if the checkbox is UNchecked,
clicking "Reset" still prompts "Are you sure you wish to Reset?"
... -
05:41 PM Bug #6709 (Resolved): diag_resetstate select or all?
- diag_resetstate.php header says "Select States to Reset"
but the docs there says "will remove all entries from the
... -
05:35 PM Bug #6708 (Resolved): diag_sockets wrong info
- the diag_sockets.php info says sockstat uses capital -L
when using the lowercase -l.
It does not use -L and it does... -
05:31 PM Bug #6706 (Resolved): diag_routes Use a regular expression description or use
- diag_routes "Use a regular expression to filter IP address or hostna
mes" actually works to match any field like fla... -
05:29 PM Bug #6705 (Resolved): diag_routes "Rows to display" is off by one
- the diag_routes "Rows to display" is off by one as it includes
the header line too. If you choose 10 you would want... -
05:28 PM Bug #6704 (Resolved): diag_edit.php Go to Line limits
- Edit File "Go to Line" selection box allows negative numbers and
line numbers longer than the file contains -
05:26 PM Feature #6703 (Resolved): diag_edit.php suggestion
- suggestion for the Edit File have the input box have some
description or label like "Path name" or "File name or di... -
05:25 PM Bug #6702 (Resolved): Command Prompt syntax error and crash detection report
- syntax error in the PHP execution in Command Prompt menu
should not cause a crash detection to suggest reporting to ... -
05:19 PM Bug #6700 (Resolved): dhcp6 Related log entries
- icon for Related log entries for the DHCPv6 Server (and relay) is
for logfile=dhcp but that doesn't match anything s... -
07:46 AM Todo #6697 (New): White squares around the numeric values in the Status / Queues page
- White squares around the numeric values in the Status / Queues page, I've tried Safari & Firefox, both show the same....
08/12/2016
-
05:42 PM Revision 65d08bad: Change hostname to send pkg repos
-
05:42 PM Revision f92fa4da: Change hostname to send pkg repos
-
05:42 PM Revision 945b0306: Change hostname to send pkg repos
-
05:41 PM Revision 4fc091b2: Change build scripts to make it possible to rsync files to multiple locations
-
05:41 PM Revision 07f759fe: Remove bwlimit from rsync
-
05:41 PM Revision 22ce6dac: Do not scp log files
-
05:41 PM Revision 1f9a4b54: Retire snapshots_rotate_logfile()
-
05:16 PM Revision 5163c3ca: Change build scripts to make it possible to rsync files to multiple locations
-
05:11 PM Revision cdacfec8: Change build scripts to make it possible to rsync files to multiple locations
-
05:03 PM Revision 820b17e1: Remove bwlimit from rsync
-
05:03 PM Revision ece2a8bc: Remove bwlimit from rsync
-
05:02 PM Revision 09361dcd: Do not scp log files
-
05:02 PM Revision 1577befd: Retire snapshots_rotate_logfile()
-
04:42 PM Revision 8b46747e: Merge pull request #3099 from NewEraCracker/patch-3
- 04:41 PM Revision acfbc960: Protect package_reinstall_all()
- If one restores a config.xml without packages, there will be a warning about invalid argument supplied for foreach()....
-
04:41 PM Revision ebf83322: Merge pull request #3098 from NewEraCracker/patch-2
- 04:40 PM Revision 62630ddc: Be sure that user_settings for widgets is an array
- (cherry picked from commit 5aad73235c1965e9f4c000244ca657ac9d1e4f68)
-
04:40 PM Revision 42481352: Merge pull request #3097 from NewEraCracker/patch-1
- 04:38 PM Revision 1707b6c6: Fixed to properly save configs in PPPs interfaces
- (cherry picked from commit 545a7850ea37cd8c379cc75428353ad0089f2bd3)
- 04:38 PM Revision 2ee79571: Fixed to properly save configs in PPPs interfaces
- (cherry picked from commit 545a7850ea37cd8c379cc75428353ad0089f2bd3)
-
04:35 PM Revision f59c3243: Merge pull request #3096 from ch1c4um/fixed_to_save_ppp_interface_configs
-
04:34 PM Revision 7f9a6162: Merge pull request #3095 from NewEraCracker/redmine-6686
-
04:33 PM Revision 56798d9d: Retire extensions.ini
- 02:59 PM Revision f97cd756: Fix typo leading to syntax error
- 02:55 PM Revision 5eda5816: Protect package_reinstall_all()
- If one restores a config.xml without packages, there will be a warning about invalid argument supplied for foreach()....
- 02:27 PM Revision 5aad7323: Be sure that user_settings for widgets is an array
-
12:20 PM Bug #6696 (New): Add configure link to Status > Queues error message if traffic shaping not configured
- If I'm not mistaken it should link here: ...
-
07:08 AM Bug #6695: issues LAGG and openvpn TAP
- it works in 2.1.5 and 2.2.5.
But I understand that you would not supported this configuration -
06:50 AM Bug #6695 (Rejected): issues LAGG and openvpn TAP
- That is not, and has never been, a supported configuration.
-
06:35 AM Bug #6695 (Rejected): issues LAGG and openvpn TAP
- I have 2 LAGG openvpn TAP mode.
If I disable and enable a VPN, then the VPN is down (dasboard: 'Unable to Contact se...
08/11/2016
- 07:44 PM Revision 545a7850: Fixed to properly save configs in PPPs interfaces
-
07:36 PM Revision 07c208ff: Ticket #3734: Retire growl.class
-
07:36 PM Revision e7cf30eb: Ticket #3734: Convert growl related code to use pear-Net_Growl port
-
05:59 PM Revision 2c67bef9: Be more verbose and let user know results of SMTP settings test
-
05:59 PM Revision 50950d06: Be more verbose and let user know results of SMTP settings test
-
05:53 PM Revision 79925b87: Pass along send_smtp_message() return, otherwise message will not be shown when testing SMTP settings
-
05:53 PM Revision 8293937f: Pass along send_smtp_message() return, otherwise message will not be shown when testing SMTP settings
-
05:53 PM Revision f2b0bf18: Pass along send_smtp_message() return, otherwise message will not be shown when testing SMTP settings
-
05:38 PM Revision c8c46e5a: Ticket #3734:
- - Added timeout parameter for SMTP configuration
- Removed STARTTLS option, it's enabled automatically by pear-Mail w... -
02:41 PM Revision 626ff13a: Ticket #3734: Retire smtp.inc, sasl.inc and *sasl_client.inc in favor of pear-Mail port
-
02:41 PM Revision d4c5ada9: Ticket #3734: Convert notify_via_smtp() to use pear-Mail
- 02:21 PM Revision 79581554: Ensure extensions.ini is readable by non root users
- https://redmine.pfsense.org/issues/6686
-
01:41 PM Revision 238603f5: Ticket #3734: Retire PEAR.inc and use PEAR.php from ports
-
12:44 PM Bug #6694 (Resolved): Change setting at interfaces_ppps_edit.php not working
- When changing the settings at the page interfaces_ppps_edit.php there is always the following error:...
-
11:55 AM Revision 24a7aba2: Enable SMTP support for pear-Mail
-
11:02 AM Feature #6546: pfSense should support logging to e.g. ELK stacks
- Parsing syslog input is indeed dog simple in Python with asyncore. I should be able to just glue this together to my ...
-
10:04 AM Bug #6692: APU1D crashes on boot with pfSense 2.3.2 on the APU1D
- We run 64-bit images exclusively on ours, never 32-bit.
-
09:56 AM Bug #6692: APU1D crashes on boot with pfSense 2.3.2 on the APU1D
- Apparently i386 works, and this flaw is only with the 64-bit port.
-
09:16 AM Bug #6692 (Not a Bug): APU1D crashes on boot with pfSense 2.3.2 on the APU1D
- We regularly test on the APU hardware we have and there are no problems we have found. Please post on the forum first...
-
08:59 AM Bug #6692 (Not a Bug): APU1D crashes on boot with pfSense 2.3.2 on the APU1D
- I upgraded from pfsense 2.3.1_r5 to 2.3.2, and the pfSense crashes on boot, the reboots endlessly on loop.
The liv... -
09:38 AM Feature #6693 (Rejected): Security Groups
- Users and groups already have privileges to control page access. Post on the forum for assistance or read the documen...
-
09:29 AM Feature #6693 (Rejected): Security Groups
- Would it be possible or is it already possible to create security and select what the user/group has access to and wh...
-
07:54 AM Bug #6678: Virtual IPv6 IP (IP Alias) on a DHCPv6-PD tracked interface causes inconsistencies
- agreed on it being a dupe. Not sure how I missed 5999 when I searched initially.
-
05:55 AM Bug #6678: Virtual IPv6 IP (IP Alias) on a DHCPv6-PD tracked interface causes inconsistencies
- This looks like it might be a duplicate of https://redmine.pfsense.org/issues/5999.
-
06:20 AM Bug #6691 (New): dhcp6c quits after only two tries if no response was received
- Last night my ISP connection went down for a few hours, presumably for maintenance on their end. A few minutes into ...
08/10/2016
-
07:10 PM Revision 470fddb1: Ticket #3734: Replace etc/inc/IPv6.inc by pear-Net_IPv6 port
-
04:27 PM Revision 6989a7c5: Remove copy of pear-Crypt_CHAP from repo and use ports
-
04:27 PM Revision 1bdfe40a: Fix path to require pear-Crypt_CHAP installed file. Ticket #3734
-
04:26 PM Revision ea0e22ee: Add pear directory to PHP include_path. Ticket #3734
-
02:34 PM pfSense Packages Bug #6690 (Closed): SURICATA IPS Issue - Kills VLANS & Traffic Shaper
- Strips 802.1q tagged traffic from an interface when running inline IPS mode.
Traffic shapper no longer works as one ... -
12:26 PM Todo #6689 (Resolved): Add enable link to Status > UPnP & NAT-PMP error message if disabled
- Adding a "Go here to enable" link to the error message seems like it would be helpful.
If I'm not mistaken, then l... -
11:28 AM Todo #3734: Remove PHP static pear modules from repo and use ports
- CHAP.inc removed in commit:6989a7c
-
08:59 AM pfSense Packages Bug #6305: Quagga problems updating routes / mistakenly showing "kernel"-routes while they are not
- Someone who can reproduce it reliably needs to get the details of how to reproduce it reported to the Quagga project ...
-
08:46 AM pfSense Packages Bug #6305: Quagga problems updating routes / mistakenly showing "kernel"-routes while they are not
- Any update on the topic?
-
08:33 AM Feature #6546: pfSense should support logging to e.g. ELK stacks
- I now have that Python code wrapped up as a class, for use with Python logging. A current limitation is that logging ...
-
07:34 AM Bug #6688: Special characters in a password cause problems
- If that example you posted is the one that didn't work, I can see why. Looks like ">" was changed to ">" twice...
08/09/2016
-
08:57 PM Bug #6688 (Resolved): Special characters in a password cause problems
- With the following config snippet (some info redacted), pfsense reports:
php-fpm[71756]: /services_dyndns_edit... -
06:55 PM Bug #6687 (Duplicate): Secure email fails with private CA
- If a private CA such as a self signed enterprise CA is in use, the CA is not recognized when establishing SMTP connec...
-
06:26 PM Revision 212596c4: Fix bind options and add them for 9.10 as well
-
06:26 PM Revision 3bd18cab: Fix bind options and add them for 9.10 as well
-
05:17 PM Revision bdcdd6e3: Fix wording of the "Reject leases from" option for a DHCP interface.
-
05:17 PM Revision 3c36d8ce: Fix wording of the "Reject leases from" option for a DHCP interface.
-
05:17 PM Revision d3225265: Fix wording of the "Reject leases from" option for a DHCP interface.
-
03:55 PM pfSense Packages Bug #5749: OpenVPN Export Certs with password, password doesn't open .pk12 container.
- I tried using "@" and "." in the password and both worked fine.
Looking at the JS code, it's using the escape() fu... -
12:44 PM pfSense Packages Bug #5749: OpenVPN Export Certs with password, password doesn't open .pk12 container.
- Is it only "+" that causes a problem or have you tried other special characters as well?
The way the password is s... -
02:07 PM Revision 495527b1: Remove workarounds to sort extensions.ini since ports tree now has a better solution in place to track PHP modules dependencies
-
01:52 PM Bug #6686: PHP extensions.ini cannot be read by non root users
- This file is being removed in 2.4.
If a 2.3.3 is issued, it would be desirable to add a chmod to 644 following cre... -
01:29 PM Bug #6686 (Resolved): PHP extensions.ini cannot be read by non root users
- /usr/local/etc/php/extensions.ini is owned by root and created with 600 permissions. This prevents proper initializat...
-
12:28 PM Revision 02fe4964: Re-enable mosh, fixed
-
09:40 AM Bug #1629: invalid state table entries after WAN IP change
- I have observed that executing the following code does not seem to actually change anything in config.xml -- so I thi...
-
02:45 AM pfSense Packages Bug #6129: zabbix agent/proxy 2.4 not ported to pfSense 2.3
- I would also like to see it come back. As we can't upgrade all our boxes to pf2.3 in one day we have a problem. 2.3 D...
08/08/2016
-
11:45 PM Revision e2912fc2: Disable build of znc and mosh, both broken
-
10:37 PM Bug #5993: dhcp6c not started until an RA received
- I looked into the gateway status issue. After pfsense boots with PR #3092 installed, the status of WAN_DHCP6 is unkno...
-
10:31 PM Bug #5993: dhcp6c not started until an RA received
- Phillip Davis wrote:
> The text typo was in existing code, so I made a separate pull request to tidy that up:
> htt... -
03:19 PM Bug #5993: dhcp6c not started until an RA received
- Phillip Davis wrote:
> The text typo was in existing code, so I made a separate pull request to tidy that up:
> htt... -
07:04 PM Revision e7ab83cc: Enable apcupsd build
-
07:04 PM Revision 1f57dd8e: Enable apcupsd build
-
04:51 PM Feature #6674: Custom widget preference settings per user
- This will need a target version set so that it will appear in release notes some time. Not sure what you guys are goi...
-
09:14 AM Feature #6674 (Resolved): Custom widget preference settings per user
- PRs tested and merged. Thanks Phil.
- 12:49 PM Revision 96d2f02e: Text typo
- Noted by Daryl Morse in comment on Redmine bug 6637.
(cherry picked from commit bf6ae0ad277710ffa64ee0967c5d4f717c2bc... - 12:49 PM Revision 32916e5c: Text typo
- Noted by Daryl Morse in comment on Redmine bug 6637.
(cherry picked from commit bf6ae0ad277710ffa64ee0967c5d4f717c2bc... - 12:49 PM Revision 72aa662b: Merge pull request #3094 from phil-davis/patch-1
-
11:19 AM pfSense Packages Bug #5749: OpenVPN Export Certs with password, password doesn't open .pk12 container.
- Any update on this? I'm having the same issue on 2.3.2. Using openvpn-client-export 1.3.8 (just reinstalled it as wel...
-
11:00 AM Bug #6685 (Feedback): LAGG groups get stuck with an unconfigurable 1400MTU with em NICs.
- We don't have anything that would be forcing that to 1400 that I can see. I have a local setup here with LAGG and VLA...
-
10:54 AM Bug #6685 (Closed): LAGG groups get stuck with an unconfigurable 1400MTU with em NICs.
- I'm not sure of the exact scope of this issue, but I can at least say it happens when reproducing my environment.
... -
09:15 AM Bug #6676 (Resolved): Delete NAT rule with associated firewall rule does not update firewall separators position
- Fixed by https://github.com/pfsense/pfsense/pull/3089
-
09:12 AM Bug #6669 (Resolved): index.php: Adding a new widget corrupts the settings for existing widgets
-
08:21 AM pfSense Packages Bug #6681 (Resolved): Squid local auth password handling is weak and only accepting short passwords
- Tested and working here as well
-
08:18 AM pfSense Packages Bug #6681: Squid local auth password handling is weak and only accepting short passwords
- Tested this with a long password that failed in 0.4.21.
Works as expected in 0.4.22. Rejects incorrect password. R... -
05:02 AM Bug #6528: The captive portal cannot be used on interface lan since it is part of a bridge but works anyway
- Orsiris de Jong wrote:
> Screamed horray to quick !
> When the interface the CP is binded to is bridged, everything... - 03:56 AM Revision bf6ae0ad: Text typo
- Noted by Daryl Morse in comment on Redmine bug 6637.
08/07/2016
-
10:57 PM Bug #5993: dhcp6c not started until an RA received
- The text typo was in existing code, so I made a separate pull request to tidy that up:
https://github.com/pfsense/pf... -
06:07 PM Bug #5993: dhcp6c not started until an RA received
- I'm currently testing the latest development snapshot (as of the time of this post) with the latest patch from (DHCP6...
-
01:44 PM pfSense Packages Bug #6684 (Resolved): Setting IKEv2 Phase 2 in Mobile Config appears to generate invalid Apple Profile
- Setting "Phase2 PFS Group - Provide the Phase2 PFS group to clients (overrides all mobile phase2 settings)" in Mobile...
08/06/2016
-
02:28 PM Bug #6675: Port Forward on LAN does not work in 2.3.x
- Only you correcting what you said above in pfSense own documentation just finding something interesting, he recommend...
-
12:32 PM Bug #5993: dhcp6c not started until an RA received
- Daryl Morse wrote:
> I'm currently testing the latest development snapshot (as of the time of this post) with the ... -
06:14 AM Feature #2358: NAT64 support
- UPVOTE. I'd love to be able to set up an IPv6-only network and just use NAT64 to redirect old requests.
08/05/2016
-
10:30 PM Revision eea35b99: Improve the wording to make clear the legal restrictions for the use of the pfSense trademark.
- Reviewed by: jimt
(cherry picked from commit d689bc7df5601d1a50aaccc3d75472099cd942b7) -
10:27 PM Revision d689bc7d: Improve the wording to make clear the legal restrictions for the use of the pfSense trademark.
- Reviewed by: jimt
-
06:13 PM Revision 88871e26: Ignore linkup eventos for interfaces that are member of bridges and have no IP address configured
-
06:13 PM Revision d9eac320: Ignore linkup eventos for interfaces that are member of bridges and have no IP address configured
-
02:59 PM Revision 8dc90525: Verify if interface is active gw for gw group before update dynamic DNS
-
02:58 PM Revision 05741e45: Verify if interface is active gw for gw group before update dynamic DNS
-
02:58 PM Revision e8382f7f: Verify if interface is active gw for gw group before update dynamic DNS
-
10:21 AM Bug #6683: Empty page 'Firewall: NAT: Port Forward' when Read-Only rights
- OK, sorry Jim. But why no delete the right "WebCfg - Firewall: NAT: Port Forward page" if it does not work ?
-
10:14 AM Bug #6683 (Not a Bug): Empty page 'Firewall: NAT: Port Forward' when Read-Only rights
- To create a read-only user, give them the "Deny Config Write" privilege.
-
10:09 AM Bug #6683 (Not a Bug): Empty page 'Firewall: NAT: Port Forward' when Read-Only rights
- Hi,
To reproduce the issue :
* add a NAT Port Forward rule with admin account
* add a new user "john" (no group ... -
08:31 AM Bug #6682 (Not a Bug): OpenVPN Client does not use "interface" configured. Connection always established through default gateway.
- The state table is fibbing to you a little bit in that case. pf is sending the traffic out the correct WAN, but the i...
-
06:50 AM Bug #6682 (Not a Bug): OpenVPN Client does not use "interface" configured. Connection always established through default gateway.
- Tested with 2.3, 2.3.1 and 2.3.2
Test scenario: configure multiple WANs, use WAN1 as default gateway, configure Open... -
12:59 AM Bug #5993: dhcp6c not started until an RA received
- I still haven't had a chance to switch my LAN over to this software, but I'm aware of three other Telus users who are...
08/04/2016
- 10:04 PM Revision 72f91833: pfSense.css: Fix sortable tables' font
- 10:04 PM Revision 98ea394a: Experiment using the OS' native font stack
- Following the steps of bfbfa4dd254c110db4122925d0a3716a34d4c664,
experiment using the OS' native font stack.
Obtaine... - 10:03 PM Revision 802029ce: pfSense.css: Fix sortable tables' font
- 10:03 PM Revision 4310baaa: Experiment using the OS' native font stack
- Following the steps of bfbfa4dd254c110db4122925d0a3716a34d4c664,
experiment using the OS' native font stack.
Obtaine... -
10:02 PM Revision 77413c25: Merge pull request #3084 from jlduran/native-font-stack
-
09:48 PM Revision 6ab43547: Update pfSense.pot
- (cherry picked from commit 51c5313df8b9a9470cad9031b3e93594a4728c9e)
-
09:48 PM Revision 8a4cc539: Allow URLs for TFTP Server (Bug #6634)
- The setPattern() thing ain't usable for this and just causes regressions.
(cherry picked from commit c411661a8e8f9f9e... -
09:48 PM Revision 8b125927: Allow URLs for TFTP Server (Bug #6634)
- is_URL() from util.inc is way too limited for this purpose.
(cherry picked from commit 8ff248d6a3f31dba42c4c64b529092... -
09:47 PM Revision b6843da7: Typo fix
- (cherry picked from commit 4b79a9d443c4e16d6ffa304775aec79938d2988c)
-
09:47 PM Revision 2e5a481c: Allow URLs for TFTP Server (Bug #6634)
- is_URL() from util.inc is way too limited for this purpose.
(cherry picked from commit 483816313924f87707bca0aa983c73... -
09:46 PM Revision 3691302f: Merge pull request #3083 from doktornotor/patch-2
- 09:36 PM Revision db392e36: Fix a redundant HTTP "User-Agent" string.
- CURLOPT_USERAGENT expect the value to the user-agent string, not the entire key-value pair.
Before this fix, HTTP hea... - 09:36 PM Revision 2d8770b2: Fix a redundant HTTP "User-Agent" string.
- CURLOPT_USERAGENT expect the value to the user-agent string, not the entire key-value pair.
Before this fix, HTTP hea... -
09:36 PM Revision 03ff3448: Merge pull request #3082 from philipsoeberg/fix-redundant-http-user-agent-string
-
09:33 PM Revision c22ddfe7: Merge pull request #3066 from phil-davis/notifychannelupdown
-
09:31 PM Revision a035b77c: Merge pull request #3065 from phil-davis/radius-openvpn
-
09:26 PM Bug #6675: Port Forward on LAN does not work in 2.3.x
- If I need is more of the same as Squid is to work with the transparent proxy, redirecting only port 80 and not all tr...
- 09:25 PM Revision 0b95ff4c: services_dhcp: Ignore BOOTP queries
- BOOTP leases do not have a maximum lease time by default, this could
potentially lead to a DHCP address pool exhausti... -
09:25 PM Revision b0478d98: Merge pull request #3086 from jlduran/ignore-bootp-queries
-
04:48 PM Bug #6634 (Feedback): DHCP Server "TFTP Server" field should allow URLs
- PR has been merged, thanks!
-
04:26 PM Feature #4351 (Feedback): Allow to disable BOOTP in DHCP server
- Pull request has been merged. Thanks
-
01:25 PM pfSense Packages Bug #6511: In some circumstances the HAProxy clone front-end button can add blank list entries to the front end being cloned resulting in a config that cannot be applied.
- @Pi Ba
I agree that it should not be possible to end up with empty entries in the config but in the case that someho... -
12:54 PM pfSense Packages Bug #6511: In some circumstances the HAProxy clone front-end button can add blank list entries to the front end being cloned resulting in a config that cannot be applied.
- @Steve, the first issue of empty items being added when duplicating should be fixed in next version..
https://github... -
12:12 PM Revision 353c8d2b: Add /etc/rc and /etc/pfSense-rc.shutdown to pfSense-rc package
-
12:04 PM pfSense Packages Feature #6445 (Rejected): Request: Zabbix 3.0 LTS proxy
- Zabbix agent and proxy 3.0 is available on pfSense 2.3. If you see only Zabbix agent or proxy 2.2 or 2.4, you must st...
-
11:56 AM pfSense Packages Feature #6445: Request: Zabbix 3.0 LTS proxy
- Uhm... 3.0.x LTS is in fact the only version available in pfSense 2.3.x packages.
-
09:45 AM pfSense Packages Bug #6681 (Feedback): Squid local auth password handling is weak and only accepting short passwords
- I just pushed a fix to change this to SHA512, which is working well even with long passwords (I only tried up to 32 c...
-
09:34 AM pfSense Packages Bug #6681 (Resolved): Squid local auth password handling is weak and only accepting short passwords
- The password handling in squid for local auth is using crypt() with default settings and cutting off passwords short ...
-
09:25 AM Bug #6680 (Not a Bug): pfSense web ui freezes after clicking on Diagnostics->ARP Table
- Please post on the forum or mailing list for assistance with your issue. It's highly unlikely to be a bug, but if it ...
-
08:42 AM Bug #6680 (Not a Bug): pfSense web ui freezes after clicking on Diagnostics->ARP Table
- For some reason, when I try to list the arp table, pfsense freezes and I need to restart PHP-FPM via console.
2.3.... -
07:07 AM pfSense Packages Bug #6571 (Resolved): NUT service can not start sometimes after boot when SNMP UPS interface is down
-
12:13 AM pfSense Packages Bug #6571: NUT service can not start sometimes after boot when SNMP UPS interface is down
- This is resolved with version 2.7.4_1 of the nut package.
-
07:04 AM Bug #6679 (Not a Bug): No config option for "limited" parameter in Default/Custom Access Restrictions in NTP
-
06:30 AM Bug #6679: No config option for "limited" parameter in Default/Custom Access Restrictions in NTP
- KOD flag also toggles limited.
Sorry for opening this ticket. -
06:17 AM Bug #6679 (Not a Bug): No config option for "limited" parameter in Default/Custom Access Restrictions in NTP
- Now limited parameter is always included in restrict config lines.
Older Netapp filer uses sntp and sends 3 ntp qu...
08/03/2016
-
11:31 PM Bug #6678: Virtual IPv6 IP (IP Alias) on a DHCPv6-PD tracked interface causes inconsistencies
- In addition, this messes up the snort default pass list, adding the VIP instead of the actual interface IP.
-
10:09 PM Bug #6678 (Duplicate): Virtual IPv6 IP (IP Alias) on a DHCPv6-PD tracked interface causes inconsistencies
- 2.3.2-RELEASE (amd64)
WAN interface gets a IPv6 /60 prefix delegation from my ISP. (example: 2001:1:2:30/60) My... -
08:42 PM Revision e366c806: Add a variable to control if pkg repo should be signed or not
-
08:41 PM Revision 94f7df8f: Add a variable to control if pkg repo should be signed or not
-
06:37 PM Revision 6ebd280c: Stop removing FreeBSD src, new clone script can detect if it's necessary
-
03:23 PM Bug #6665: Upgrading packages when pfSense upgrade is available breaks package manager
- +1, tested and working, thanks. ;)
-
03:13 PM Bug #6665 (Resolved): Upgrading packages when pfSense upgrade is available breaks package manager
- Fix works fine, the older release is no longer broken by the newer pkg.
If you have a system stuck in the older st... -
06:29 AM Bug #6665 (Feedback): Upgrading packages when pfSense upgrade is available breaks package manager
- I've pushed a fix for that, it's in pkg-1.8.7_1
-
02:48 PM Revision b8332deb: Add a field to CA/Cert pages for OU, which is required by some external CAs and users. Fixes #6672
-
02:48 PM Revision da0f70ed: Add a field to CA/Cert pages for OU, which is required by some external CAs and users. Fixes #6672
-
02:47 PM Revision 1ea1b228: Add a field to CA/Cert pages for OU, which is required by some external CAs and users. Fixes #6672
-
02:16 PM Revision 00dc6b2a: Fix a reverse check
-
01:33 PM Revision f41f9c0c: Remove unnecessary code and select default kernel for installation media
-
01:28 PM Revision f6dcb7f5: Use already defined variable
-
01:24 PM Revision 49de5a2e: Revert "Make sure we have kernel installed in installation media"
- This reverts commit ebc5576c4f6f1afd228b6d8c66c1af0599e990c3.
-
01:02 PM Bug #6677 (New): CARP VIPs are configured on disabled interfaces at boot time
- OK, that I can reproduce. I have adjusted the subject and description to be a more clear/accurate representation of t...
-
09:14 AM Bug #6677: CARP VIPs are configured on disabled interfaces at boot time
- Did little more testing.
It seems that if there is an carp address assigned to interface the interface will come u... -
08:27 AM Bug #6677 (Feedback): CARP VIPs are configured on disabled interfaces at boot time
- An interface can show as "up" as long as it has a link. A VLAN will exist at the OS level if a tag is defined. The di...
-
08:23 AM Bug #6677 (Resolved): CARP VIPs are configured on disabled interfaces at boot time
- When a CARP VIP is configured for a disabled interface, it is still configured by pfSense during the boot process eve...
-
12:33 PM Revision ebc5576c: Make sure we have kernel installed in installation media
- 11:53 AM Revision 4e5477ea: Display local DHCP lease times in 24-hour clock
- It seems odd to me that when the times are displayed in UTC they have
24-hour clock, but when displayed in local time... - 11:53 AM Revision e7dc4d04: Merge pull request #3080 from phil-davis/local24
-
11:47 AM Revision 4de9a6fa: Update firewall rules separators when NAT associated rule is deleted.
- Bug: https://redmine.pfsense.org/issues/6676
(cherry picked from commit 7475d7b337c0a08dc4d6636f33b0998067f26008) - 11:47 AM Revision ebdf2532: Merge pull request #3089 from NOYB/NAT_Delete_Associated_Firewall_Separators
- 11:46 AM Revision be59d667: Save widget settings per user
- For users that have "custom settings" enabled, save the "tool" settings
of their widgets on a per-user basis.
User th... - 11:46 AM Revision b5123dfc: Merge pull request #3088 from phil-davis/widgetconfig
- 11:43 AM Revision 21915c63: Some tweaks to improve alignment in table with checkbox
- 1) If a checkbox does not have a description (even if it is empty), layout will be broken as checkbox won't be aligne...
- 11:43 AM Revision 440f621a: Merge pull request #3056 from NewEraCracker/design-tweaks
-
10:37 AM Bug #6672 (Resolved): CSR missing OU, same with internal certs missing OU
- Works for me, also works for the original reporter on the forum. Closing out.
-
10:00 AM Bug #6672 (Feedback): CSR missing OU, same with internal certs missing OU
- Applied in changeset commit:1ea1b228285dfa60da6732eba54dc03b932eb92f.
-
09:46 AM Bug #6672 (Assigned): CSR missing OU, same with internal certs missing OU
- Looks like an easy fix for this missing field. I have a patch I'm testing that adds an optional OU field, works OK to...
-
10:37 AM Revision 102e7265: Add missing -b parameter to mkisoimages.sh
-
10:34 AM Revision eac7a83c: Do not include rescue on installation media
-
09:33 AM Revision 122afc75: Change order arguments are validated to make more sense
-
09:29 AM Revision 963c399b: Do not call realpath for a possible non-existent directory
-
08:45 AM Bug #6673 (Duplicate): Missing "Organizational Unit" when generating CSR for external CA
- Duplicate of #6672
-
08:43 AM Bug #6675 (Not a Bug): Port Forward on LAN does not work in 2.3.x
- Reflection wouldn't come into play for a rule such as that. If the client and server are on the same subnet, you need...
-
05:17 AM Revision 7475d7b3: Update firewall rules separators when NAT associated rule is deleted.
- Bug: https://redmine.pfsense.org/issues/6676
-
12:23 AM Bug #6676: Delete NAT rule with associated firewall rule does not update firewall separators position
-
Fix: https://github.com/pfsense/pfsense/pull/3089
-
12:06 AM Bug #6676 (Resolved): Delete NAT rule with associated firewall rule does not update firewall separators position
-
2.3.2 - Delete NAT rule - bug?
https://forum.pfsense.org/index.php?topic=116099.0
08/02/2016
-
10:17 PM Bug #6675 (Not a Bug): Port Forward on LAN does not work in 2.3.x
- Good evening everyone, updated my pfSense from 2.2.6 to 2.3.2 this week and 2 rules Port Forward on the LAN, one to r...
-
07:36 PM Revision 9077654d: Remove defunct link to the devwiki site. Everything is on doc.pfsense.org now.
-
07:35 PM Revision af18691b: Remove defunct link to the devwiki site. Everything is on doc.pfsense.org now.
-
07:35 PM Revision deda621a: Remove defunct link to the devwiki site. Everything is on doc.pfsense.org now.
-
07:19 PM Revision 1787ae43: Enable ISO during snapshots
-
07:02 PM Revision 22ba6bf2: Force removal of temporary directory and disable trap
-
07:02 PM Revision a07126aa: Remove redundant attribution
-
06:55 PM Feature #6674 (Resolved): Custom widget preference settings per user
- The ability to save custom dashboard widget layout and various other custom GUI preferences on a per user basis was a...
-
05:33 PM Revision f680e46c: Fix typo, LT2P->L2TP
-
04:56 PM Revision ba84d2fc: Do not scp log files
-
04:55 PM Revision 160d285a: Fix typo, LT2P->L2TP
-
04:55 PM Revision 6471512c: Fix typo, LT2P->L2TP
-
04:36 PM Revision 5925de17: Retire snapshots_rotate_logfile()
-
04:16 PM Revision 77074d55: Read output line by line
-
04:16 PM Revision acf4481f: Read output line by line
-
04:16 PM Revision b34d81ce: Show files in subdirectories too
-
03:55 PM Bug #6673 (Duplicate): Missing "Organizational Unit" when generating CSR for external CA
- Hello,
I use a paied wildcard certificate *.domain.com and I need to generate a CSR (Certificat Signing Request) a... -
03:43 PM Bug #6672 (Resolved): CSR missing OU, same with internal certs missing OU
- Seems Org is there but Org Unit is missing. This is required by many CAs
See thread here
https://forum.pfsense.o... -
02:47 PM Revision 88a14469: Do not remove destdir where system is going to be installed
-
12:45 PM Revision 044ff383: Make sure images were built
-
12:43 PM Revision 5df6d76a: Use mkisoimages.sh to build ISO
-
12:17 PM Revision 044cf5bd: Fix messages
-
12:09 PM Revision 0d67c726: Stop using CORE_PKG_TMP
-
11:23 AM Revision 582f023e: Remove wrong call to dirname
-
10:52 AM Revision 0adc9314: Add missing /
-
08:07 AM Bug #6665: Upgrading packages when pfSense upgrade is available breaks package manager
- I'm not sure that would be viable but Renato would know better than I. You have to upgrade pkg to the new version to ...
-
08:03 AM Bug #6665: Upgrading packages when pfSense upgrade is available breaks package manager
- Noticed a lot of complaints on the forums as well in many different threads. Wouldn't locking the pkg package itself ...
-
07:24 AM Bug #6665: Upgrading packages when pfSense upgrade is available breaks package manager
- In this case it actually turns out that the problem is the new version of 'pkg' needs a different command line parame...
-
07:49 AM Bug #6670 (Not a Bug): XMLRPC failure after setting proxy settings
- None of the XML_RPC_Client() calls we have specify a proxy, and I can't reproduce a problem here. When I specify a pr...
-
04:22 AM Bug #6670 (Not a Bug): XMLRPC failure after setting proxy settings
- Hi,
environment : It's a pfsense HA for internal LAN firewalling. It does not have direct access to internet. In o... -
07:36 AM Bug #6671 (Duplicate): Package manager is unable to list installed packages after installing zabbix agent
- Duplicate of #6665
-
06:23 AM Bug #6671: Package manager is unable to list installed packages after installing zabbix agent
- See https://redmine.pfsense.org/issues/6665; you need to upgrade to 2.3.2 to get the package manager GUI back.
-
04:29 AM Bug #6671 (Duplicate): Package manager is unable to list installed packages after installing zabbix agent
- Hi,
After installing zabbix agent the package manager is unable to list installed packages and say :
Unable to ... - 05:19 AM Revision 2b7d0520: Save widget settings per user
- For users that have "custom settings" enabled, save the "tool" settings
of their widgets on a per-user basis.
User th... -
04:49 AM Bug #6634: DHCP Server "TFTP Server" field should allow URLs
- It works!
- 02:51 AM Revision cc10b474: Fixed #6669
- Read widget config before adding a new one. (Was starting a new array)
(cherry picked from commit 236e6a54e9a93284ca... -
01:08 AM Revision 9979487e: Service Running Status Indicator Icon (fa-play)
- Perhaps static play icon would be better perceived as the contrast to static stop icon for for services status indica...
- 12:07 AM Revision c8faf384: Fixed #6669
- Read widget config before adding a new one. (Was starting a new array)
(cherry picked from commit 236e6a54e9a93284ca... - 12:06 AM Revision 236e6a54: Fixed #6669
- Read widget config before adding a new one. (Was starting a new array)
08/01/2016
-
09:46 PM Revision 5240e071: Merge pull request #3074 from phil-davis/gwredir
-
09:42 PM Revision 9543affb: dpinger: fixed check for pidfile length #6505
- (cherry picked from commit 4aaf38742563c427b42a813387d84246ff20a2f2)
-
09:42 PM Revision 090fcccc: Merge pull request #3077 from dhoffend/ticket-6505-fix
-
09:41 PM Revision 7fa32308: replace attribute 'name' to 'id' in openvpn status
- (cherry picked from commit 5a5a11cd489bbf15e868c1607c74824c128d693f)
-
09:41 PM Revision 72693cbe: Merge pull request #3075 from brunostein/replace_attribute_name_to_id
-
09:37 PM Revision 3bc22054: Merge pull request #3073 from phil-davis/certs
-
09:36 PM Revision 94e3fc64: Merge pull request #3070 from phil-davis/input_errors2Ajax
-
09:36 PM Revision b40e1c00: Merge pull request #3069 from phil-davis/LAGG-MTU
-
09:35 PM Revision 3d3afbff: Merge pull request #3068 from phil-davis/subnet_size
-
09:34 PM Revision 52342bc4: Merge pull request #3067 from phil-davis/useallcerts
-
09:33 PM Revision 69176bed: Merge pull request #3064 from phil-davis/cloudflare
- 08:56 PM Revision ad73ced6: Remove '-x' flag from dhcpwithoutra launch of dhcp6c
- This is the equivalent fix for the RELENG_2_3 branch to pull request #3078
-
08:56 PM Revision f2a230d9: Merge pull request #3062 from phil-davis/patch-1
-
08:54 PM Revision 317a06f2: Merge pull request #3063 from phil-davis/dhcpinitbeforera3055_23
-
08:40 PM Revision 8928c119: Do not check for src versus host osversion, let FreeBSD src take care of it
-
08:38 PM Revision 5fa6aecc: Only point log error instead of tail it, it creates confusion
-
08:35 PM Revision 80c76b0c: err() expects a single parameter
-
08:31 PM Revision 06efbd3b: Add missing /
-
08:29 PM Revision adf2b358: Add missing options
-
08:29 PM Revision 81fe0b70: Remove unnecessary messages
-
08:27 PM Revision cdf2b5f8: Fix variable name
-
08:14 PM Revision 1217cd7a: Add create_core_pkg.sh and start using it
-
07:49 PM Revision 6c0329cb: Remove unused variables
-
07:49 PM Revision 468f236d: Add install_freebsd.sh and use it
-
07:31 PM Revision 29cdd776: Add build_freebsd.sh and start using it
-
07:20 PM Bug #6669: index.php: Adding a new widget corrupts the settings for existing widgets
- Applied in changeset commit:236e6a54e9a93284ca170b68aa1188dfaa195c3d.
-
07:10 PM Bug #6669 (Feedback): index.php: Adding a new widget corrupts the settings for existing widgets
- Was adding configuration for a new widget to a new config array instead of reading the existing config.
-
07:03 PM Bug #6669 (Resolved): index.php: Adding a new widget corrupts the settings for existing widgets
- See: https://forum.pfsense.org/index.php?topic=115934.msg644220#msg644220
-
05:51 PM Revision f2dd0a55: Remove outdated XXX message
-
05:02 PM Revision a10a0e70: Add git_checkout.sh and common.subr
- This is the first of a set commits to start replacing big
builder_common.sh by smaller and specific scripts to do nec... -
04:44 PM Bug #6505 (Feedback): dpinger - socket name too large
- PR has been merged, thanks!
-
04:34 PM Revision 7da93794: Remove script used during bootstrap conversion
-
03:45 PM Revision f003f8db: Some small improvements to OpenVPN server handling when using CARP VIPs in Gateway Groups. Might help with issue #6607
-
03:43 PM Revision 51d2e735: Some small improvements to OpenVPN server handling when using CARP VIPs in Gateway Groups. Might help with issue #6607
-
03:42 PM Bug #6667: DHCP DUID file not preserved across reboots when "Use RAM Disks" is enabled
- Well, you're running it, so I won't argue (too much.) ;)
-
02:58 PM Bug #6667: DHCP DUID file not preserved across reboots when "Use RAM Disks" is enabled
- This is a symptom/byproduct of the other missing feature, so it is definitely a duplicate. Solve the other, and this ...
-
02:53 PM Bug #6667: DHCP DUID file not preserved across reboots when "Use RAM Disks" is enabled
- This is NOT a duplicate. While 3971 might resolve this bug as a side effect, a fix for this bug might not fulfill th...
- 03:36 PM Revision f720117b: Experiment using the OS' native font stack
- Following the steps of bfbfa4dd254c110db4122925d0a3716a34d4c664,
experiment using the OS' native font stack.
Obtaine... - 03:36 PM Revision 4372f8a4: pfSense.css: Fix sortable tables' font
-
01:04 PM Feature #6644: Add console shutdown option along with reboot at end of installation
- Xander Venterus wrote:
> If its locked, then you just need to set it to none, and have your mouse over the apply but... -
12:22 PM Bug #5993: dhcp6c not started until an RA received
- Daryl Morse wrote:
> Chris Buechler wrote:
> > merged this for 2.4 as it needs more baking time in snapshots than w... -
11:52 AM Bug #6448: Mousing over aliases on disabled rules makes hint difficult to read
- The opacity of the popover is inherited from the parent element. AFAIK there is no easy way to avoid inheritence of o...
-
10:41 AM Bug #6657: Unable to add network in the source section of a LAN firewall rule
- Chris Anderson wrote:
> I have the same issue with the latest BETA version of Chrome. It works in the latest stable ... -
10:31 AM Bug #6657: Unable to add network in the source section of a LAN firewall rule
- I have the same issue with the latest BETA version of Chrome. It works in the latest stable release, and in other bro...
07/31/2016
-
04:53 PM Bug #6668: IPSec tunnel + L2TP/IPSec VPN - wrong PSK chosen by pfSense
- ERRATUM:
@ipsec.secrets@ (mistyped) should be:... -
04:22 PM Bug #6668 (Closed): IPSec tunnel + L2TP/IPSec VPN - wrong PSK chosen by pfSense
- Setup:
1. IPSec, IKEv1 site to site tunnel, PSK, Main mode. FQDN identifier - talking to a Mac OS server (racoon)
... - 12:49 PM Revision 6d53301b: services_dhcp: Ignore BOOTP queries
- BOOTP leases do not have a maximum lease time by default, this could
potentially lead to a DHCP address pool exhausti... -
11:47 AM Bug #6481: loading EAP_RADIUS method failed
- I wanted to jump in to say I just had this same issue on 2.3.2 today. Same log message and everything. Confirming y...
-
09:49 AM Revision 51c5313d: Update pfSense.pot
-
09:27 AM Revision c411661a: Allow URLs for TFTP Server (Bug #6634)
- The setPattern() thing ain't usable for this and just causes regressions.
-
09:23 AM Feature #5112: LDAP support for Captive Portal
- I'm interested to this feature. It will be officially implemented?
-
08:38 AM Revision 8ff248d6: Allow URLs for TFTP Server (Bug #6634)
- is_URL() from util.inc is way too limited for this purpose.
-
08:35 AM Revision ef726c3e: Update pfSense.pot
-
08:25 AM Revision 4b79a9d4: Typo fix
-
08:21 AM Revision 48381631: Allow URLs for TFTP Server (Bug #6634)
- is_URL() from util.inc is way too limited for this purpose.
-
07:59 AM Feature #3971: IPv6 - Preserve the DUID used for WAN DHCP-PD in the configuration file
- As mentioned in #6667, this also negatively impacts those with /var in RAM
-
07:59 AM Bug #6667 (Duplicate): DHCP DUID file not preserved across reboots when "Use RAM Disks" is enabled
- Duplicate of #3971
-
02:27 AM Bug #6667: DHCP DUID file not preserved across reboots when "Use RAM Disks" is enabled
- Duplicate of https://redmine.pfsense.org/issues/3971 (this is a more generic problem, even without tmpfs-based /var, ...
-
07:52 AM Feature #4351: Allow to disable BOOTP in DHCP server
- https://github.com/pfsense/pfsense/pull/3086
-
01:47 AM Feature #4351: Allow to disable BOOTP in DHCP server
- I am also seeing BOOTP queries being served for captive portal users. The problem is that BOOTP leases do not have a ...
-
07:45 AM pfSense Packages Bug #6632: siproxd hosts_allow_reg should be configurable
- Chris Buechler wrote:
> if you open siproxd on WAN in firewall rules, you get what you're asking for security-wise. ... -
03:23 AM Bug #6634: DHCP Server "TFTP Server" field should allow URLs
- @Rene: Try https://github.com/pfsense/pfsense/pull/3083
-
12:23 AM Bug #6666: IPV6 Log Spam?
- Sorry:
Version: 2.3.2
Priority: Low
Spelling mistake on last line, should be DHCPv6 daemon
07/30/2016
-
09:18 PM Bug #6667 (Duplicate): DHCP DUID file not preserved across reboots when "Use RAM Disks" is enabled
- The file "/var/db/dhcp6c_duid" contains a DHCP Unique Identifier (DUID) that a host uses to uniquely identify itself ...
-
07:08 PM Bug #6666 (Duplicate): IPV6 Log Spam?
- I have a fully functioning dual stack IPv4 static and Prefix Delegated /56 IPv6 DHCPv6 network running over PPPOE. Th...
-
05:44 PM Bug #6665: Upgrading packages when pfSense upgrade is available breaks package manager
- (Same goes for merely installing a package, not just upgrading.)
-
05:39 PM Bug #6665 (Resolved): Upgrading packages when pfSense upgrade is available breaks package manager
- As described here: https://forum.pfsense.org/index.php?topic=116026.0 - when you upgrade some package before upgradin...
-
05:16 AM Bug #6664: It's impossible to use HE.NET tunnel iface as a parent for OpenVPN instances
- Yet another workaround: Specify a local port instead of empty/0. Looks like *$iface_ip* is not properly initialized w...
-
04:58 AM Bug #6664 (Resolved): It's impossible to use HE.NET tunnel iface as a parent for OpenVPN instances
- Setup:
* HE.NET tunnel iface [for example, WAN_HE]
Steps to reproduce:
* Create an IPv6 OpenVPN instance on pare... -
04:45 AM Bug #6663 (Resolved): IPv6 OpenVPN client is down after reboot
- Setup:
# WAN PPPoE WAN
# HE.NET tunnel on WAN
# Static IPv6 on LAN
Steps to reproduce:
* Create a UDP6 TAP Ope...
07/29/2016
-
11:39 PM Feature #6661 (Rejected): Show # of packages available for update on dashboard
- The "Installed Packages" widget exists for those who want to know what packages are installed and which have availabl...
-
07:13 PM Feature #6661 (Rejected): Show # of packages available for update on dashboard
- The ability to show the number of packages that need updating under the system update status on the System Informatio...
-
08:53 PM Bug #6662 (Resolved): pkg_edit.php checkbox alignment issue when using the sethelp xml tag
- When using pkg_edit.php, the checkbox alignment is off when using the <sethelp> XML tags.
See attached pic.
Can... - 02:55 PM Revision ce9a9572: Fix a redundant HTTP "User-Agent" string.
- CURLOPT_USERAGENT expect the value to the user-agent string, not the entire key-value pair.
Before this fix, HTTP hea... -
10:44 AM Bug #6659 (Confirmed): Default routes are not being removed after deletion
- Confirmed, but it's not a regression. As far as I can see, default routes are never removed except by ppp-linkdown an...
-
08:14 AM Bug #6659 (Resolved): Default routes are not being removed after deletion
- I have noticed that when a default route is deleted via GUI, they are not removed from the system, only from the scre...
-
09:53 AM Bug #6657 (Not a Bug): Unable to add network in the source section of a LAN firewall rule
- I can't reproduce it using the settings you show. Make sure there are no extra spaces or anything else non-printable ...
-
05:58 AM Bug #6657: Unable to add network in the source section of a LAN firewall rule
- Destination host should be 8.8.8.8, but the error is the same.
-
05:56 AM Bug #6657: Unable to add network in the source section of a LAN firewall rule
- Phillip Davis wrote:
> That works fine for me - give more information about the data you enter and exactly which fie... -
05:49 AM Bug #6657: Unable to add network in the source section of a LAN firewall rule
- That works fine for me - give more information about the data you enter and exactly which field the "Please match the...
-
05:37 AM Bug #6657 (Not a Bug): Unable to add network in the source section of a LAN firewall rule
- Since 2.3.2-RELEASE, the following causes an "Please match the request format" error:
1. Go to Firewall / Rules / LA... -
09:38 AM Todo #6660: Rename "admin" to "root" in GUI, because in fact it is "root" on BSD level.
- Thanks Jim, for clarification.
-
09:36 AM Todo #6660 (Rejected): Rename "admin" to "root" in GUI, because in fact it is "root" on BSD level.
- Both admin and root exist at the OS level but they each work in different ways. While the password for both accounts ...
-
09:32 AM Todo #6660 (Rejected): Rename "admin" to "root" in GUI, because in fact it is "root" on BSD level.
- I think it will be more clear for new users and won't cause any misunderstandings.
-
06:39 AM Bug #6658 (Resolved): DHCP Relay not working on 2.3.2
- The DHCP Relay Service cannot be started on 2.3.2 with ath0, clients do not receive an IP address....
-
12:23 AM Revision 3085b390: experiment with tighter styling
-
12:23 AM Revision 40742134: Fixes #6601 clean up installed packages html
-
12:23 AM Revision aebf6dad: clean up Installed Packages widget by removing category
-
12:19 AM Revision 13b2db87: experiment with tighter styling
-
12:19 AM Revision 5068d239: Fixes #6601 clean up installed packages html
-
12:19 AM Revision 0673b5ed: clean up Installed Packages widget by removing category
-
12:17 AM Revision bfbfa4dd: experiment with tighter styling
-
12:17 AM Revision 1cba7db4: Fixes #6601 clean up installed packages html
-
12:17 AM Revision 13b03802: clean up Installed Packages widget by removing category
07/28/2016
-
08:35 PM Bug #6435: Unable to edit PPTP using interfaces_ppps_edit.php
- reassigned
-
07:20 PM Bug #6601 (Feedback): Horizontal scroll bar on Installed Packages
- Applied in changeset commit:1cba7db475b142e8c1dd5edeb71b294ae01347d3.
-
04:35 PM Bug #3334: Status/Traffic Graph isn't IPv6 ready
- IPv6 issue still present in 2.3.2
-
03:43 PM Bug #6656 (Not a Bug): /rc.newwanip - Excessive Usage
- Something is triggering it, usually a gateway outage. Post on the forum or mailing list for help diagnosing the actua...
-
03:38 PM Bug #6656 (Not a Bug): /rc.newwanip - Excessive Usage
- Currently having the following problem:
According to the systemlogs /rc.newwanip is executed every 3 minutes or so a... -
01:58 PM Revision b7e1b323: Increase filtering tail limit for logging, fixes #6652
-
01:58 PM Revision 6eb2dbe0: Whitespace fixes
-
01:58 PM Revision 363c7d41: Increase filtering tail limit for logging, fixes #6652
-
01:58 PM Revision f26a81c9: Whitespace fixes
-
01:57 PM Revision f1773759: Increase filtering tail limit for logging, fixes #6652
-
01:56 PM Revision cad2272f: Whitespace fixes
-
12:08 PM pfSense Packages Bug #6655 (Not a Bug): Installing sudo package breaks webGUI system update capabilities and Package Manager on 2.3.1-RELEASE-p1
- The problem isn't the sudo package at all. It's that pkg was upgraded and the GUI doesn't understand the output of th...
-
11:57 AM pfSense Packages Bug #6655: Installing sudo package breaks webGUI system update capabilities and Package Manager on 2.3.1-RELEASE-p1
- I forgot to mention that removing the sudo package via ssh had no change aside from removing the package, the bugs st...
-
11:56 AM pfSense Packages Bug #6655 (Not a Bug): Installing sudo package breaks webGUI system update capabilities and Package Manager on 2.3.1-RELEASE-p1
- After installing the *sudo* package through the System > Package Manager menu, our firewalls are no longer able to ch...
-
11:56 AM Bug #5652: Radius IETF Class Group Assignment - Incorrect Standard
- Phillip Hernandez wrote:
> I disagree with using Cisco-AV:Pair and believe that using Filter-Id is a better option. ... -
11:28 AM Bug #5652: Radius IETF Class Group Assignment - Incorrect Standard
- I disagree with using Cisco-AV:Pair and believe that using Filter-Id is a better option.
Thanks
-
11:51 AM Bug #6640: DHCPv6 Server Time Format Change Reversed
- Deleted.
-
11:50 AM Bug #6640: DHCPv6 Server Time Format Change Reversed
- Phillip Davis wrote:
> That looks like a bug that has been around for a while - it is not reversed, it is doubled.
... -
11:24 AM pfSense Packages Bug #6654: siproxyd Table issue
- System: Netgate SG-2440 (amd64)
-
11:20 AM pfSense Packages Bug #6654 (Resolved): siproxyd Table issue
- Under services-> siproxyd -> Registered phones
Table is not aligned correctly and not showing correct number of re... -
09:10 AM Bug #6652 (Feedback): Filtering system logs doesn't include all log entries
- Applied in changeset commit:f1773759e286fa7dfcaa10965fc7909b7abf560f.
-
12:08 AM Bug #6652 (Resolved): Filtering system logs doesn't include all log entries
-
https://forum.pfsense.org/index.php?topic=115753.0
Log entries to be included in the filtering is capped/restr... -
05:57 AM Bug #6528: The captive portal cannot be used on interface lan since it is part of a bridge but works anyway
- Screamed horray to quick !
When the interface the CP is binded to is bridged, everything works except for the downlo... -
01:33 AM Bug #6637 (Confirmed): pfSense blocks return traffic (mostly TCP) on 2.3.1-RELEASE-p5
- There is a known fix for this on PR 207598 that should be easy to import.
all FreeBSD 10.x base versions affected -
12:47 AM Bug #6653 (Not a Bug): DNS Forvarder dont worked Host Overrides
- that's not true, they work fine. Please post to the forum for assistance.
-
12:17 AM Bug #6653 (Not a Bug): DNS Forvarder dont worked Host Overrides
- DNS Forvarder ignored all Host Overrides records.
-
12:20 AM pfSense Packages Feature #6651: Loopback interfaces
- For dynamic routing protocol.
As example border router supply originate option ( default gateway ) and use of lo* to...
07/27/2016
-
11:51 PM Bug #6650: Option needed to disable HSTS
-
A potential workaround may be to use a different host name for other NAT'ed ports.
-
05:51 PM Bug #6650: Option needed to disable HSTS
- Hint: Use haproxy with SNI and forget the ports. See https://github.com/PiBa-NL/pfsense-haproxy-package-doc/wiki (and...
-
05:04 PM Bug #6650 (Resolved): Option needed to disable HSTS
- HSTS is based solely on hosts, and not port numbers. As a result, any HTTPS devices behind the pfSense are unreachabl...
-
10:50 PM pfSense Packages Feature #6651: Loopback interfaces
- I'm curious, what use case do you have for additional lo* interfaces?
-
10:31 PM pfSense Packages Feature #6651: Loopback interfaces
- major think is create additional lo* interface as right now we can define LAN or WAN.
-
10:10 PM pfSense Packages Feature #6651: Loopback interfaces
- you can already do that with virtual IPs on localhost. That doesn't allow cloning lo0 to lo1, though I don't think an...
-
09:44 PM pfSense Packages Feature #6651: Loopback interfaces
- Assign additional ip addresses like...
-
09:11 PM pfSense Packages Feature #6651: Loopback interfaces
- manipulate loopback interfaces in what way? You can already set static routes to lo0 to null route, and add VIPs on l...
-
08:59 PM pfSense Packages Feature #6651 (Resolved): Loopback interfaces
- Hello Everyone,
I would like place request add ability manipulate loopback interfaces through web ui.
Use cases wh... -
08:50 PM Bug #6648: pf V2.3.1 - Enabling captive portal failed to create captive portal security group
- For support assistance of that nature, use the forum or mailing lists.
-
08:33 PM Bug #6648: pf V2.3.1 - Enabling captive portal failed to create captive portal security group
- Thank you for the reply, and please pardon my ignorance. Could you please tell me how to assign privileges to a group...
-
06:54 AM Bug #6648 (Not a Bug): pf V2.3.1 - Enabling captive portal failed to create captive portal security group
- That is exactly how it is supposed to work. It is up to the firewall admin to create a group or add the privilege dir...
-
01:07 AM Bug #6648 (Not a Bug): pf V2.3.1 - Enabling captive portal failed to create captive portal security group
- on a fresh install, enabling Captive Portal failed to create the captive portal security group. could not assign user...
-
04:17 PM Feature #3718: radvd - enhancement proposal: ability to advertise routes and some fixes - patches attached
- Updated the patch for version 2.3.2.
-
12:53 PM Revision 198f0578: Build ova by default for releases
-
12:52 PM Revision 3b6a57ae: Build ova by default for releases
-
12:52 PM Revision 7731df41: Build ova by default for releases
-
06:58 AM Bug #6649 (Not a Bug): pf v2.3.1 - gateway grouping failed to detect a member with no route to the internet - DNS problems also
- Your gateway monitoring for that WAN must not have been correct. For example, pfSense may have been pinging the modem...
-
05:14 AM Bug #6649: pf v2.3.1 - gateway grouping failed to detect a member with no route to the internet - DNS problems also
- In this situation you need to specify an alternate monitor IP for the router/gateway. If you let it use the default, ...
-
01:29 AM Bug #6649 (Not a Bug): pf v2.3.1 - gateway grouping failed to detect a member with no route to the internet - DNS problems also
- there are two internet router members added to a Gateway Group. one router (4G wireless modem) became unregistered fr...
07/26/2016
-
08:30 PM Todo #6647 (New): Enable Additional Security Headers
- The nginx instance for the web GUI should enable CSP. Just adding the following works: ...
-
07:21 PM Revision 54b84a3b: Fix pkg repo name for tags
-
07:21 PM Revision defa7cab: Fix pkg repo name for tags
-
07:21 PM Revision 2a9df2be: Fix pkg repo name for tags
-
06:59 PM Revision aa26bdd2: Remove stray 'i'
-
06:59 PM Revision 3437fab0: Remove stray 'i'
-
06:59 PM Revision 42eda751: Remove stray 'i'
-
05:03 PM Bug #6646 (Resolved): "Reject leases from" on interfaces.php only accepts IPs
- "Reject leases from" on interfaces.php only accepts IP addresses. It should also accept subnets in CIDR notation.
-
04:43 PM Feature #6644: Add console shutdown option along with reboot at end of installation
- If its locked, then you just need to set it to none, and have your mouse over the apply button, and dont click it unt...
-
03:21 PM Feature #6644: Add console shutdown option along with reboot at end of installation
- Xander Venterus wrote:
> I do believe as you said it, this is more of a microsoft issue.
>
> HOWEVER, my HyperV a... -
03:17 PM Feature #6644: Add console shutdown option along with reboot at end of installation
- I do believe as you said it, this is more of a microsoft issue.
HOWEVER, my HyperV allows me to eject virtual CDs ... -
01:20 PM Feature #6644 (Closed): Add console shutdown option along with reboot at end of installation
- In windows 2012R2 hyper-v, there is no way to change boot order, dismount a CD or "eject" virtual media while a vm is...
-
04:08 PM Revision c08625fb: Rename directory where product tarball lies to /distrib. It should fix #6643
-
04:08 PM Revision 78e9b001: Rename directory where product tarball lies to /distrib. It should fix #6643
-
01:39 PM Todo #6645 (Closed): More reliable update system
- Today when 2.3.2 released to public, some peoples got troubles with update.
The main problem is that when update fai... -
12:56 PM Feature #6641: Please add DHCPv4 Server Time Format Change Setting
- Chris Buechler wrote:
> it's already there, has been for a long time.
Noted. Sorry for the false alarm. Not sure ... -
11:35 AM Bug #6031: Anti-Lockoug Rule Not Effective Against Canned Interface Block Rules
- Actually, that would be an easy thing for me to do: my entire LAN has public IPs, so in essence, that should be turne...
-
11:20 AM Bug #6643 (Feedback): /usr/bin/install missing from new 2.3.2 installations
- Applied in changeset commit:78e9b001e9c7f7995a9b79d831d8c33f95aeff3c.
-
10:26 AM Bug #6643 (Resolved): /usr/bin/install missing from new 2.3.2 installations
- The /usr/bin/install binary is needed by some packages (such as squid) during their installation procedures, but it i...
-
09:55 AM Feature #1019: Lagg Failover Mode Master Interface
- Is this on a roadmap for any future release? I just ran into this issue today myself and found this feature request.
-
09:42 AM Bug #6642 (Closed): Cant access certain IP's
- I use pfSense with multiple LAN NICs:
10GWAN holds our 10G public /22 ip scope
1GWAN holds our 1G public /26 ip sco... - 04:58 AM Revision ede53465: Display local DHCP lease times in 24-hour clock
- It seems odd to me that when the times are displayed in UTC they have
24-hour clock, but when displayed in local time... - 04:04 AM Revision a0d06968: Fix redmine #6640 DHCPv6 server time format
- The original code here ended up always applying the time zone offset once, and if you had set dhcpv6leaseinlocaltime ...
- 04:04 AM Revision 78415e07: Fix redmine #6640 DHCPv6 server time format
- The original code here ended up always applying the time zone offset once, and if you had set dhcpv6leaseinlocaltime ...
- 04:03 AM Revision 011a15a0: Merge pull request #3079 from phil-davis/patch-2
- 03:42 AM Revision ffe1a068: Fix redmine #6640 DHCPv6 server time format
- The original code here ended up always applying the time zone offset once, and if you had set dhcpv6leaseinlocaltime ...
-
03:09 AM Bug #6634: DHCP Server "TFTP Server" field should allow URLs
- see: https://forum.pfsense.org/index.php?topic=114085.0
-
03:08 AM Bug #6512: Upgrade to 2.3.1 causes network performance degradation (with High CPU usage by NIC kernel tasks)
- Hi,
I also has the problem of the performance degration!
We have a setup of a small hardware box (N3150 Mini-ITX ... -
01:54 AM Bug #4981: Remote logging not active after reboot
- Any news on this? Still an issue in the latest 2.3.1_p5 release. I'm also logging to a Nagios Log Server now, and bot...
- 01:28 AM Revision efd07e5e: Remove '-x' flag from dhcpwithoutra launch of dhcp6c
- This is the equivalent fix for the RELENG_2_3 branch to pull request #3078
07/25/2016
-
11:05 PM Bug #6640 (Feedback): DHCPv6 Server Time Format Change Reversed
- merged, thanks Phil
-
10:46 PM Bug #6640: DHCPv6 Server Time Format Change Reversed
- That looks like a bug that has been around for a while - it is not reversed, it is doubled.
If you have the checkbox... -
09:14 PM Bug #6640 (Resolved): DHCPv6 Server Time Format Change Reversed
- The DHCPv6 Server Time Format Change setting "Change DHCPv6 display lease time from UTC to local time" is reversed. W...
-
10:43 PM Feature #6641 (Closed): Please add DHCPv4 Server Time Format Change Setting
- it's already there, has been for a long time.
-
09:16 PM Feature #6641 (Closed): Please add DHCPv4 Server Time Format Change Setting
- The DHCPv6 server has a Time Format Change setting to allow display of leases in local time or UTC. Please add a simi...
-
08:26 PM Bug #5993: dhcp6c not started until an RA received
- Chris Buechler wrote:
> merged this for 2.4 as it needs more baking time in snapshots than we're going to have for 2... -
01:38 PM Feature #6639 (Resolved): Utilize nextboot to control the behavior of the next firewall reboot
- Now that we include nextboot, we can use it to control the properties of the next firewall boot sequence.
Two idea... -
10:24 AM pfSense Packages Feature #5434: Let's Encrypt pfSense support
- Sory, but now it's working via some simple manual steps...
https://thedevops.party/lets-encrypt-ssl-certificate-on... -
01:44 AM Bug #6637: pfSense blocks return traffic (mostly TCP) on 2.3.1-RELEASE-p5
- Chris Buechler wrote:
> this seems like it's probably the issue here?
> https://bugs.freebsd.org/bugzilla/show_bug...
07/24/2016
-
06:16 PM pfSense Packages Feature #6196 (Closed): APU2 Thermal sensor
- patch is already upstream (by us, not OPNsense).
-
01:19 AM pfSense Packages Feature #6196: APU2 Thermal sensor
- This has already been committed upstream:
https://github.com/freebsd/freebsd/commit/cf2857955cc43bf478bbb4716641d1... -
05:26 PM Bug #6422: PHP Fatal error: Call to undefined function gettext() in /etc/inc/rrd.inc on line 60
- I've been getting this consistently on two new installs that are both dual-WAN load balanced (Gateway Groups).
Mos...
07/23/2016
-
10:15 PM Revision 4aaf3874: dpinger: fixed check for pidfile length #6505
-
05:18 PM Bug #6505: dpinger - socket name too large
- I've pushed a hotfix for this commit. Somehow i checked the wrong variable ... Please check
https://github.com/pfs... -
03:44 PM Bug #6507: GRE and GIF tunnels on dynamic IPv6 interface are not brought up during boot
- IMO this function should be combined with the ipsec tunnel reload. This way you can combine point2point ipsec connect...
-
09:26 AM Feature #3718: radvd - enhancement proposal: ability to advertise routes and some fixes - patches attached
- Hi,
I have upgraded my pfsense box to 2.3.1 finally, since I have seen that there were major changes in the web in...
07/22/2016
-
11:27 PM Bug #6635 (Not a Bug): Dyndns not updating for no-ip
- It works fine as-is. Their old API apparently accepts either hostname or h[] there, since it worked before, and it st...
-
12:24 PM Bug #6635: Dyndns not updating for no-ip
My updates on several boxes are working fine. 2.3.1 p5 (I use noip for my primary server dns also so have the ...-
02:56 AM Bug #6635: Dyndns not updating for no-ip
- Could have sworn I'd used my no-ip account for testing since that commit. Though my account isn't working either way ...
-
11:23 PM Todo #6638 (Resolved): Update no-ip DDNS to new API
- no-ip's API has changed (sometime in 2011 apparently), though they still accept updates using the old URL, it should ...
- 07:24 PM Revision b8e4f5ff: Section title was wrong, discovered by mfine
- 06:16 PM Revision a869a931: Section title was wrong, discovered by mfine
-
03:20 PM Bug #6637: pfSense blocks return traffic (mostly TCP) on 2.3.1-RELEASE-p5
- this seems like it's probably the issue here?
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=207598
we haven'... -
03:25 AM Bug #6637: pfSense blocks return traffic (mostly TCP) on 2.3.1-RELEASE-p5
- I can narrow this down to the 'block out' rule. (And I believe there is no configurable option, perhaps except on the...
-
03:19 AM Bug #6637 (Resolved): pfSense blocks return traffic (mostly TCP) on 2.3.1-RELEASE-p5
- Dear people,
I am setting up a host where I have my AP's connecting to the pfSense box over IPSEC.
I use the "tra... -
09:25 AM Bug #6433: "TFTP Server" field on DHCP server page does not allow hyphen character.
New ticket now open.
See TICKET #6634-
03:03 AM Bug #6634 (Confirmed): DHCP Server "TFTP Server" field should allow URLs
- different issue, we'll keep this here.
-
02:47 AM Bug #4723: Can't forward UDP fragmented packets with scrubbing enabled.
- Chris Buechler wrote:
> I hit this issue with a customer last week. Worked fine after disabling scrub. I have pcaps ...
07/21/2016
-
09:50 PM pfSense Packages Bug #6636 (Resolved): Squid Reverse Proxy with Additional IP and compatibility="Intermediate" writes bad squid.conf
- I use a CARP config, actual IP on this box is x.x.x.135, Virtual IP x.x.x.133. When compatibility="Intermediate" the...
-
08:38 PM Bug #6635: Dyndns not updating for no-ip
- It was "&hostname=" for many years up until 30 Jan 2016, when this commit changed it for some reason:
https://github... -
07:51 PM Bug #6635 (Not a Bug): Dyndns not updating for no-ip
- There's a typo on line 431 of dyndns.class where '&h[]=' should be '&hostname='. As is, it doesn't update and logs a...
-
02:42 PM Bug #6572: Config sync hangs php-fpm on secondary
- Hi Chris,
I have the same problem. I do 1-2 config changes and everything works just fine. If I do a couple more I... -
02:04 PM Bug #6634 (Resolved): DHCP Server "TFTP Server" field should allow URLs
- Please reopen bug #6433. Not familiar with system here or I would try.
The filter on the web interface is not allo... -
01:58 PM Revision 5a5a11cd: replace attribute 'name' to 'id' in openvpn status
-
01:55 PM Bug #6433: "TFTP Server" field on DHCP server page does not allow hyphen character.
- This still does not have the necessary functionality as it did on 2.2.x as of 2.3.1-5. I need to be able to populate ...
-
07:07 AM Bug #6631: vesa_configure error on boot
- In that case we'll get the change automatically when we switch to a FreeBSD 11 base for pfSense 2.4, which is only a ...
-
02:25 AM Bug #6631: vesa_configure error on boot
- I've verified that it's already fixed. Not that the bug still persists. This means that the pfSense kernel should be ...
-
03:56 AM Bug #6558: Pf-sense 2.3 doesn't detect shutdow event with em driver and Intel Chipset 82574L
- Chris Buechler wrote:
> No, it's not a bug in our code and doesn't affect any of the hardware we sell or have sold, ... - 02:24 AM Revision f39ea4c4: Backport openvpn_add_dhcpopts already sets redirect-gateway
- Ticket 6633
Original commit to master was
https://github.com/pfsense/pfsense/commit/f8038899f250c656b1ef03fe351fb9cfd... - 01:29 AM Revision dbcc45d1: Backport Add missing recommended key lengths/digest to Cert system
- Original pull request to master was #2944
- 12:56 AM Revision f8038899: openvpn_add_dhcpopts already sets redirect-gateway, don't add it a second time. Ticket #6633
07/20/2016
-
07:59 PM Bug #6633 (Feedback): redirect-gateway duplicated in client specific overrides
- fix pushed
-
07:58 PM Bug #6633 (Resolved): redirect-gateway duplicated in client specific overrides
- as reported here.
https://forum.pfsense.org/index.php?topic=115429.0 -
07:55 PM pfSense Packages Bug #6632 (Confirmed): siproxd hosts_allow_reg should be configurable
- if you open siproxd on WAN in firewall rules, you get what you're asking for security-wise. No shortage of potential ...
-
05:09 PM pfSense Packages Bug #6632 (Resolved): siproxd hosts_allow_reg should be configurable
- siproxd is providing a configuration option "hosts_allow_reg" which
implements a positive access control list for ho... -
02:48 PM Bug #4326: Limiters on firewall rules where NAT applies drop all traffic
- this is from the use of dummynet in pf, which doesn't exist in stock FreeBSD. And the implementation apparently leave...
-
02:23 PM Bug #4326: Limiters on firewall rules where NAT applies drop all traffic
- Chris Buechler wrote:
> There isn't one because the code/feature in question doesn't exist there.
Now I'm confuse... -
01:55 PM Bug #4326: Limiters on firewall rules where NAT applies drop all traffic
- Andrew Maslin wrote:
> Can someone share the FreeBSD bug # so we can track the progress of the root of the issue? L... -
11:29 AM Bug #4326: Limiters on firewall rules where NAT applies drop all traffic
- Can someone share the FreeBSD bug # so we can track the progress of the root of the issue? Like Luke, I would like t...
-
06:48 AM Bug #4326: Limiters on firewall rules where NAT applies drop all traffic
- Have you guys tried using a queue inside the limiter instead of the limiter itself? It could make a difference since ...
-
02:47 PM Bug #6558: Pf-sense 2.3 doesn't detect shutdow event with em driver and Intel Chipset 82574L
- No, it's not a bug in our code and doesn't affect any of the hardware we sell or have sold, so not something we'll ad...
-
06:15 AM Bug #6558: Pf-sense 2.3 doesn't detect shutdow event with em driver and Intel Chipset 82574L
- Atlante Informatica wrote:
> Chris Buechler wrote:
> > subject isn't true in general, 82574L in the FW-7541 correc... -
01:56 PM Bug #6629: Can't update to "update" update (e.g. 2.3.1_5)
- which is correct, guessing it's no longer showing as described? As that output would give you 2.3.1_5 as an update av...
-
08:13 AM Bug #6629: Can't update to "update" update (e.g. 2.3.1_5)
- Chris Buechler wrote:
> not replicable. Those two pages use the same function to obtain their data, so no apparent m... -
01:54 PM Bug #6631 (Closed): vesa_configure error on boot
- The change that's in reference to was only in 11, what you're seeing there isn't the same thing. Not a bug in our cod...
-
01:03 PM Bug #6631 (Closed): vesa_configure error on boot
- I have the same issue as this FreeBSD Mailing List thread: http://markmail.org/message/aoq6ub636ainxcxe#query:+page:1...
-
10:44 AM pfSense Packages Todo #6443 (Resolved): Add ntopng package back into pfSense 2.3.x
- ntopng will be in the pfSense 2.3.2 release. New tickets should be opened if there are issues with the package upon r...
- 10:37 AM Revision b89bc607: Backport Check IP Services
- Original pull request to master was #3037
- 10:15 AM Revision 30505ba6: Backport Remove input_errors2Ajax calls
- Original commit to master was
https://github.com/pfsense/pfsense/commit/86d431a89d920f64dda5e7e1821f720daf6e067b - 10:01 AM Revision 9cf9f30f: Backport Fix issue with QinQ on LAGG interfaces where MTU doesn't apply to parent
- Original pull request to master was #2905
- 09:50 AM Revision f24e175e: Backport simplify subnet_size()
- Original pull request to master was #3007
- 08:02 AM Revision eafd9cfb: Backport Use all certificates in the chain when creating the ca-file for server-side OpenVPN configuration
- Original pull request to master was #2966
- 07:55 AM Revision 197cd6c0: Backport notify by email and in syslog when a channel goes up or down
- Original pull request to master was #2847
- 07:39 AM Revision 10d4fe2e: Backport Radius auth server to detect openVPN
- Original pull request to master was #3057
- 07:11 AM Revision b18e885c: Backport IPv6 support for CloudFlare
- Original code for master in pull request #3061
- 06:54 AM Revision f50f74a4: Backport DHCP6 init before RA
- Original PR to master was #3055
- 06:37 AM Revision 1cdf2c91: Formatting tidy of interfaces.inc
- After #3055
07/19/2016
-
08:51 PM Bug #5993: dhcp6c not started until an RA received
- Chris Buechler wrote:
> merged this for 2.4 as it needs more baking time in snapshots than we're going to have for 2... -
08:12 PM Bug #6629: Can't update to "update" update (e.g. 2.3.1_5)
- I observed the same thing about a week ago. Performing an update from the console resolved the issue.
-
07:27 PM Bug #6629 (Feedback): Can't update to "update" update (e.g. 2.3.1_5)
- not replicable. Those two pages use the same function to obtain their data, so no apparent means for one to show an u...
-
05:31 PM Bug #6629 (Resolved): Can't update to "update" update (e.g. 2.3.1_5)
- It appears that there is an update available, but when I try to install it, pfSense says it's up-to-date.
I just i... -
08:01 PM Revision eeddd261: Fix variable name
-
08:01 PM Revision c9d6b915: Fix variable name
-
08:01 PM Revision 2e1ebfdd: Fix variable name
-
07:13 PM Revision f3553ac9: Remove immutable flag before delete directory
-
07:13 PM Revision e4de9720: Remove immutable flag before delete directory
-
07:13 PM Revision a034c5bd: Remove immutable flag before delete directory
-
06:00 PM Bug #6630 (Assigned): Set Defaults for Graphs - Traffic/WAN + Packets/WAN doesn't work
-
05:39 PM Bug #6630 (Resolved): Set Defaults for Graphs - Traffic/WAN + Packets/WAN doesn't work
- Tested on two installations.
2.3.2-DEVELOPMENT (amd64)
built on Mon Jul 18 13:42:01 CDT 2016
FreeBSD 10.3-RELE... -
03:55 PM Bug #6628 (Resolved): extensions.ini can end up missing required items
- In some currently-unknown edge case, extensions.ini can end up missing lines, breaking things.
One example post-2... -
03:51 PM Bug #6578: Filter reload hangs with IPsec hostnames that don't resolve configured
- This gets very ugly in circumstances where DNS servers aren't reachable at all. resolve_retry takes extremely long in...
-
02:20 PM Revision 446ed60e: Move RELENG_2_3 to 2.3.3-DEVELOPMENT and point stable to 2.3.2
-
02:18 PM Revision a3cba833: Welcome 2.3.2-RELEASE
-
07:05 AM Bug #4326: Limiters on firewall rules where NAT applies drop all traffic
- Now that the target version bumped to 2.4 (FREEBSD-11) can anyone at least say whether the bug has been fixed in Free...
-
04:27 AM Bug #5990: AES-GCM should be an allowed encryption algorithm for IKEv2 in P1
- Confirmed that it works with IKEv2 PSK mobile client using:
ike = aes256gcm128-sha512-ecp512bp!
esp = aes256gcm... -
02:11 AM Bug #6625: firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- Chris Buechler wrote:
> Hi Remko,
> This seems like a duplicate of #1136, is the VPN in this case reachable via a s... -
12:25 AM Bug #6625 (Feedback): firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- Hi Remko,
This seems like a duplicate of #1136, is the VPN in this case reachable via a static route? -
12:50 AM Bug #6437 (Resolved): CBQ queues are not displaying options for bandwidth or borrowing
- works, thanks Steve
07/18/2016
-
07:44 PM pfSense Packages Bug #6571: NUT service can not start sometimes after boot when SNMP UPS interface is down
- The new NUT package allows for a nut supported way to retry the startup of the driver.
-
06:41 PM Revision d5906132: Set HTTP_PROXY to empty as recommended at https://httpoxy.org/#fix-now
-
06:40 PM Revision 2039a3c1: Set HTTP_PROXY to empty as recommended at https://httpoxy.org/#fix-now
-
06:29 PM Revision d29bdf01: Make sure licenses dir is removed to avoid duplicate it in the wrong package
-
06:29 PM Revision 7147142e: Make sure licenses dir is removed to avoid duplicate it in the wrong package
-
03:52 PM Bug #5990: AES-GCM should be an allowed encryption algorithm for IKEv2 in P1
- Jose Luis Duran wrote:
> Is this going to be backported?
>
> As this was a breaking change from 2.2 to 2.3 (not a... -
03:35 PM Bug #5990 (Resolved): AES-GCM should be an allowed encryption algorithm for IKEv2 in P1
- fixed
Nothing to back port it to, 2.3.2 is the next release. -
03:16 PM Bug #5990: AES-GCM should be an allowed encryption algorithm for IKEv2 in P1
- Is this going to be backported?
As this was a breaking change from 2.2 to 2.3 (not appearing in the Change log). -
02:59 PM Bug #5990: AES-GCM should be an allowed encryption algorithm for IKEv2 in P1
- Lars Pedersen wrote:
> Chris Buechler wrote:
> > fix pushed
>
> Looks good. Will verify it when the next snapsho... -
03:46 AM Bug #5990: AES-GCM should be an allowed encryption algorithm for IKEv2 in P1
- Chris Buechler wrote:
> fix pushed
Looks good. Will verify it when the next snapshot is being build. - 03:44 PM Revision fe179ed6: Allow section header to be omitted by specifying "NOTITLE" as the section title.
- (cherry picked from commit 9ce54773be5e02235e3be7d2b970f61fbb27ba86)
- 03:43 PM Revision 9ce54773: Allow section header to be omitted by specifying "NOTITLE" as the section title.
- 03:11 PM Revision 2e2ffafc: Fixed #6437
- (cherry picked from commit 7bba13e8d53adfe4beb03c8444e60848ae6e25e9)
- 03:09 PM Revision 7bba13e8: Fixed #6437
- 03:07 PM Revision 5be7a5bf: Show "cannot delete alias" message as error
- If I try to delete an alias that is in use, the "cannot delete alias" message was being displayed as the "success" co...
- 03:06 PM Revision b6bd4012: Show "cannot delete alias" message as error
- If I try to delete an alias that is in use, the "cannot delete alias" message was being displayed as the "success" co...
-
11:45 AM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- And now I've had gpsmon SIGSEGV on me. It doesn't happen often, but it has happened from time to time.
gpsd itself... -
09:28 AM Feature #6569: Support Rockwell ZODIAC binary protocol (Jupiter receiver) for high precision
- I think there may also be (benign) bugs in the gpsmon monitor for UBX in gpsd.
I just swapped out a car antenna (S... -
10:20 AM Bug #6437: CBQ queues are not displaying options for bandwidth or borrowing
- Applied in changeset commit:2e2ffafc35f73282f0a40132de4949cae2dbf4bf.
-
10:13 AM Bug #6437: CBQ queues are not displaying options for bandwidth or borrowing
- Form section containing bandwidth and borrow was not being added to the composed form.
-
10:10 AM Bug #6437 (Feedback): CBQ queues are not displaying options for bandwidth or borrowing
- Applied in changeset commit:7bba13e8d53adfe4beb03c8444e60848ae6e25e9.
-
09:15 AM Bug #1629: invalid state table entries after WAN IP change
- I posted "over on the forum":https://forum.pfsense.org/index.php?topic=108895.msg639527#msg639527 but I am not sure w...
-
08:22 AM Bug #6627 (New): floating tab match rules ignore quick action so should be removed
- i noticed since queue rules in floating tab was removed and just match in list or maybe queue renamed to match, the q...
-
07:51 AM Feature #6626 (Closed): Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- When using an ISP with dynamic prefix delegation, the prefix may change at any time, resulting in a change of the IP ...
-
06:44 AM Bug #6625 (Duplicate): firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- We have setup a new pfSense box that will route our VPN traffic between endpoints.
That goes out on our WAN interfac... -
06:02 AM Bug #6487: PfSense crashes during boot at configuring LAGG interfacess
- Possibly related:
* https://forum.pfsense.org/index.php?topic=112042.msg623929#msg623929
* https://forum.pfsense.or... - 04:19 AM Revision 76a0eecb: Allow AES-GCM for P1 where using IKEv2. Ticket #5990
- 04:18 AM Revision a46e0d74: Allow AES-GCM for P1 where using IKEv2. Ticket #5990
- 02:25 AM Revision cadcc898: Clarify that HMAC-MD5 key is required. Ticket #6622
- 02:24 AM Revision 4d55ef96: Clarify that HMAC-MD5 key is required. Ticket #6622
- 02:20 AM Revision 6061a7a9: Merge pull request #3061 from thoughtpolice/cloudflarev6
- 02:15 AM Revision 655fb9df: Merge pull request #3055 from marjohn56/master
-
12:24 AM Bug #4268 (Closed): changes in strongswan config don't apply to SAD or SPD
- when this started, it was a much bigger issue. The worst of it was fixed, but the remaining part with the SAD is stil...
-
12:22 AM Bug #6624 (Confirmed): changes in IPsec config should down the connection
- The fact that strongswan doesn't take down an established connection after changing the config has lead to a number o...
Also available in: Atom