Activity
From 12/16/2016 to 01/14/2017
01/14/2017
-
09:53 PM Bug #7123: Kernel panic when setting TCP MD5 Password in OpenBGP
- Rolf Sommerhalder wrote:
> Setting a TCP6 MD5 password in OpenBGP package triggers a panic in pfSense-2.4 amd64 snap... -
08:50 AM Bug #7123 (Resolved): Kernel panic when setting TCP MD5 Password in OpenBGP
- Setting a TCP6 MD5 password in OpenBGP package triggers a panic in pfSense-2.4 amd64 snapshot from yesterday (Fri 13....
-
04:33 PM Revision 63586f71: Merge pull request #3383 from doktornotor/patch-1
-
04:30 PM Bug #6896: unbound root.key file corruption possibly related to full file system
- I just had the same issue. /var/ was at 100%. After trying to recreate the root.key, and noticing that dhcpd.conf cou...
-
03:43 PM Revision 4aefa6f2: Restart unbound after clearing logs (Bug #6915)
- Handle clearing the individual log as well.
-
03:35 PM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- ok already had manually added staic route for 8.8.8.8 and 8.8.4.4 causes failure in error checking
-
03:08 PM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- that error happens re-saving current setup with 4 dns servers
-
03:06 PM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- getting this error whe trying to add more dns servers
A gateway can not be assigned to DNS '8.8.8.8' server which ... -
01:07 AM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- Note: I kept this in the General Setup page where it has been since eternity. Just made it so a variable number of DN...
-
11:00 AM pfSense Packages Feature #556: siproxd: add carp virtual IPs as interface candidates
- Good catch, thanks.
-
09:42 AM pfSense Packages Feature #556: siproxd: add carp virtual IPs as interface candidates
- The PR was close but it needed some backend changes as well, otherwise it was putting blank values in the configurati...
-
10:48 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- safebrowsing was never enabled in my setup. I also didn't investigate further.
-
10:37 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- Alexander Berkes wrote:
> That really makes no sense in the minute crontab column and it definitely leads to multipl... -
10:27 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- Thanks for the git link. That makes things more clear.
Sorry I couldn't remember the exact value of the crontab en... -
07:36 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- This hopefully makes things more obvious: https://github.com/pfsense/FreeBSD-ports/pull/254
@OP: No, the above PR ... -
06:52 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- "Checks" in freshclam.conf is not using/configuring cron, at all. Switching to manual config and changing freshclam.c...
-
05:35 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- Yeah you are right, I am talking about the squid package, but especially the freshclam component. Freshclam is execut...
-
02:27 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- Assuming you are talking about Squid, it's not supposed to do anything with cron. You are totally on your own, this f...
-
10:34 AM Bug #6915 (Feedback): unbound logging not working after reboot or "Reset log files"
- PR merged, works fine. Will wait for it to be in snaps before one last test.
-
09:44 AM Bug #6915: unbound logging not working after reboot or "Reset log files"
- Jim Pingle wrote:
> It works from the Settings tab if you reset all log files, but it doesn't work if you clear the ... -
10:11 AM pfSense Packages Feature #3303 (Resolved): Allow quagga ospf stub, not so stub and totally stub areas
- Seems to work
-
09:20 AM pfSense Packages Feature #7000: ntopng historical data needs to be reworked
- PR to hide this defunct stuff from GUI meanwhile: https://github.com/pfsense/FreeBSD-ports/pull/255
-
08:57 AM pfSense Packages Bug #4736 (Resolved): ladvd crashes, dumps core
- Problem on the ticket no longer happens, anything else belongs on a new ticket. Closing.
-
08:57 AM pfSense Packages Bug #6346 (Rejected): Squid Proxy Server Service randomly stops
-
08:56 AM pfSense Packages Bug #5534 (Resolved): Captive Portal stop sending accounting updates to free radius
- Unable to reproduce, lack of feedback, closing.
-
08:55 AM pfSense Packages Bug #5614 (Resolved): mailreport - emails are going out when manually triggered, but not via cron
- Unable to reproduce, lack of feedback, closing.
-
08:31 AM Bug #6927 (Resolved): 1 to 1 NAT allows entry of mixed IP addresses
- Yes, this should have a 2.4 target. And it's already been tested, but I tested it again on a current snapshot and it'...
-
01:45 AM Bug #6927: 1 to 1 NAT allows entry of mixed IP addresses
- Target version could be set to 2.4.0 and then some independent person test.
-
08:09 AM pfSense Packages Feature #4752 (Feedback): SQUID. Exception for speed limits
-
08:03 AM pfSense Packages Feature #4752: SQUID. Exception for speed limits
- Merged; test please and report back.
-
08:08 AM pfSense Packages Feature #6965 (Resolved): suricata + snort - making custom passlist additive to the default one
-
08:05 AM pfSense Packages Feature #6965: suricata + snort - making custom passlist additive to the default one
- Apparently the issue was not with the package, nested aliases now work. Close please.
- 06:25 AM Revision 8ad8e9ab: Format of username in Logout
-
01:42 AM pfSense Packages Feature #5052: Avahi Proxy Package: Add option to disable/control cache size.
- This has a target version of 2.4.0 - is that really intended?
-
01:37 AM Bug #6864: Error checking rejects IPv6 addresses with upper case A-F.
- interfaces.php also has addrtolower()
-
01:28 AM Bug #7031: Cannot configure OpenVPN on a DHCP interface that has not received an IP address
- This just needs an independent person to test it.
-
01:24 AM Feature #7122: Add filters to various dashboard widgets
- The following are completed:
Services Widget UI changes: https://github.com/pfsense/pfsense/pull/3370
Interfaces Wi... -
01:14 AM Feature #7122 (Resolved): Add filters to various dashboard widgets
- Some dashboard widgets can end up with a lot of rows or columns of data to display on bigger systems. It would be nic...
01/13/2017
- 08:59 PM Revision 64f1fef3: Add filter to Interfaces Widget
- (cherry picked from commit 35310a493f19d6758747cbc8e9961c2ca3395246)
-
08:59 PM Revision eab2d5fd: Merge pull request #3374 from phil-davis/interfaces_widget
- 08:59 PM Revision 0f8edf14: Add filter to Interface Statistics widget
- (cherry picked from commit 84a7e840eac8f62a95ccb900089faf14a9a9fc65)
-
08:59 PM Revision 372b3a4b: Merge pull request #3379 from phil-davis/iface_stats
- 08:58 PM Revision 2392e876: Add filter to WoL widget
- (cherry picked from commit d82c5cbf4f693d70e55b5a484a34ea84f88fa250)
-
08:58 PM Revision b8449e41: Merge pull request #3381 from phil-davis/wol_filter
- 08:50 PM Revision d88f26df: Redmine #5549 Allow variable number of DNS Servers
- (cherry picked from commit a2d23e88596deab6bbed2818385a0b72c913843a)
-
08:50 PM Revision dc8ef94b: Merge pull request #3376 from phil-davis/multi_dns_servers
- 08:49 PM Revision 848ace91: Check for duplicate Wake on LAN entries
- Currently it is posible to enter an interface+MAC combination that is already in the WoL list. That seems silly.
(che... -
08:49 PM Revision 7fbef010: Merge pull request #3380 from phil-davis/patch-3
-
08:47 PM Bug #7121 (Resolved): freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- When configuring clamav advanced options, changing the value of "Checks" has no effect on the crontab entry of freshclam
- 08:45 PM Revision e296b399: Tidy up "<script>" tags
- Tidy up <script> tags by adding TYPE attribute
(https://doc.pfsense.org/index.php/Developer_Style_Guide#HTML_Specifi... -
08:45 PM Revision aaad291d: Merge pull request #3382 from ExolonDX/master
- 08:44 PM Revision 7492e420: Display Dyn DNS type if description not found
- (cherry picked from commit 7b3d8a4b8cee0588ed2ccd272588026002369433)
- 08:44 PM Revision c8e0a211: Remove excess loops in DynDNS Widget
- (cherry picked from commit b84126b5e74473b1e6a576f38da2149a95ab03fc)
-
08:44 PM Revision 49058d34: Merge pull request #3375 from phil-davis/dyndns_widget
-
08:31 PM Bug #7120 (Resolved): Wrong file permissions on /var/tmp and missing sticky bit when using /var as RAM disk
- When pfsense (full install) is configured to use /var as RAM disk, the directory permissions of /var/tmp are set to 7...
-
05:50 PM Revision b42ccf15: Also check IPv6 when determining if we should use nobind or lport.
-
03:26 PM Bug #6920 (Resolved): Upgrading to 2.4 with a stale package .inc file can prevent the system from fully booting after upgrade
- Seems to be fixed now. I put a file in /usr/local/pkg/ that would work on 2.3.3 and break on 2.4, and it did not affe...
-
03:03 PM Bug #6915 (Assigned): unbound logging not working after reboot or "Reset log files"
- It works from the Settings tab if you reset all log files, but it doesn't work if you clear the log specifically whil...
-
02:53 PM Bug #7003 (Assigned): autoboot_delay on 2.4.0
- It's still missing after installing from a current snapshot. /boot/loader.conf contains only:...
-
02:51 PM Feature #5549 (Feedback): Additional DNS entries in General Setup would be good for 3 or more WAN's
- PR has been merged, thanks!
- 02:19 PM Revision 46345696: Tidy up "<script>" tags
- Tidy up <script> tags by adding TYPE attribute
(https://doc.pfsense.org/index.php/Developer_Style_Guide#HTML_Specifi... -
02:15 PM Bug #3560 (Resolved): Disabled Static Route not fully disabled
- Works
-
12:41 PM pfSense Packages Bug #5524 (Resolved): bind package is patching /etc/inc/system.inc (syslog configuration)
-
12:39 PM Bug #6840 (Resolved): Upgrade ISC dhcpd to 4.3.5 to address missing hostname workaround
- New version is there, workarounds are gone. Seems fine.
-
12:24 PM Revision 441d2870: Merge pull request #3377 from phil-davis/patch-1
-
12:17 PM Bug #6984 (Resolved): NTP/ACLs - Delete button partially invisible + rowhelper handling broken
- Seems fine now, the behavior is correct and the button has space around it.
-
12:16 PM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- do you want me to update my snapshot and test?
-
08:46 AM Bug #7102 (Resolved): This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- Fixed
-
12:14 PM pfSense Packages Bug #6527 (Resolved): Squid 3.5 - Deprecated "ssl_bump server-first all" don't allow SNI in transparent mode with HTTPS/SSL Interception
-
12:14 PM pfSense Packages Feature #6593 (Resolved): squid: allow user to configure DH key size, SINGLE_DH_USE, NO-SSLv3, Cipher-Suites - performance improvement hint
-
12:14 PM pfSense Packages Bug #6592 (Resolved): squid does NOT use EDH and EECDH cipher suites because "tls-dh" is not configured and so these ciphers are silently dropped - see squid documentation
-
12:12 PM Bug #6357 (Resolved): Dynamic DNS (RFC2136) updates always considered successful
- Seems to work all around. It logs correctly when it is updating, and if it fails that is also logged. It is checking ...
-
11:42 AM Bug #6717: Status / DHCPv6 Leases Issues
- I'm not able to comment on item 2 in the original list due to a dhcpv6 bug in windows 10, but it appears that the lea...
-
09:04 AM Bug #6717 (Resolved): Status / DHCPv6 Leases Issues
- Seems to be fine. No errors on the page with or without leases, with or without RAM disks enabled.
- 11:07 AM Revision d82c5cbf: Add filter to WoL widget
-
10:46 AM Feature #7069 (Resolved): Provide knob to disable state display in Diagnostics > States until a filter has been submitted.
- Works
-
10:46 AM Todo #7084 (Resolved): Intel IEEE 802.11ac wireless network driver
-
10:44 AM Bug #7118 (Resolved): ICMP rule with ICMP type "any" fails to load
- OK, nevermind, I ran it again and it's fine. The sync didn't pick that up.
github has been spazzing out today, the... -
10:41 AM Bug #7118 (New): ICMP rule with ICMP type "any" fails to load
- This still fails for me after a gitsync.
There were error(s) loading the rules: /tmp/rules.debug:189: syntax err... -
06:30 AM Bug #7118 (Feedback): ICMP rule with ICMP type "any" fails to load
- Applied in changeset commit:007cfb6ab6d7733c7a98d8fc5baae59028753107.
-
01:16 AM Bug #7118: ICMP rule with ICMP type "any" fails to load
- Works fine now. Many thanks, Phil!
-
12:55 AM Bug #7118: ICMP rule with ICMP type "any" fails to load
- Pull request to fix: https://github.com/pfsense/pfsense/pull/3377
-
12:33 AM Bug #7118 (Resolved): ICMP rule with ICMP type "any" fails to load
- Creating a pass rule with ICMP and ICMP type any prevents the ruleset from being loaded.
The following rule is gener... -
10:33 AM Feature #7051 (Resolved): Allow control of what users can view and/or clear notices
- Works well now as far as I can see.
-
10:32 AM Bug #7043 (Resolved): If user does not have crash_reporter page access the crash reported link is useless
- Works fine, a user without access doesn't get the link.
- 10:28 AM Revision 257dd207: Check for duplicate Wake on LAN entries
- Currently it is posible to enter an interface+MAC combination that is already in the WoL list. That seems silly.
-
10:26 AM Bug #7119 (Resolved): Changing LAGG attributes results in a panic/crash
- On 2.4, when changing attributes of an assigned LAGG such as the mode or membership, the firewall panics and reboots....
-
10:19 AM Feature #7111 (Resolved): Add protocol selection to radius server configuration
- Works well
-
10:16 AM Feature #7097 (Resolved): Authentication cache for LDAP and RADIUS
- Works well for LDAP. RADIUS already caches the groups in $_SESSION so don't be surprised if you don't see re-auth req...
-
10:07 AM Bug #7015: IPsec not working behind NAT
- Also seeing this after upgrading to 2.4.
Initially unable to ping across the tunnel but a packet capture showed pi... - 09:58 AM Revision 84a7e840: Add filter to Interface Statistics widget
-
09:48 AM Bug #7089 (Resolved): Opposite of + or - is occurring when selecting time zone
- New descriptions are more clear, options are labeled in a way that is hopefully obvious.
- 09:26 AM Revision 3bbe2efe: Add username to logout menu and icon
- I find it difficult to work out who I am logged in as. Other software often provides some indication of who is the cu...
-
09:18 AM Bug #7042 (Resolved): DHCP client configures wrong address in some circumstances (setfirst support missing from ifconfig)
- Seems to be solid all-around.
-
09:16 AM Bug #6930 (Resolved): DHCP server should be disabled for /31 and /32
- Seems to be good here.
-
09:08 AM Feature #6793 (Resolved): Add pound package to the pfSense repository
- It's been available in the repo for a while. Closing.
-
09:07 AM Feature #6746 (Resolved): Option to select dark or misc background for Traffic Graphs when a dark theme is selected.
- All graphs look fine now with the dark theme (widget, graph page, and monitoring), they do respect theme colors.
-
09:06 AM pfSense Packages Todo #7055: Update OpenVPN Client Export package with OpenVPN 2.4
- If you checked "push compression to the client" then the server will push the setting to the client and it shouldn't ...
-
09:03 AM pfSense Packages Todo #7055: Update OpenVPN Client Export package with OpenVPN 2.4
- Jim - unknown if this is expected behavior, but the Client Export does not put compression settings in the client fil...
-
08:49 AM pfSense Packages Todo #7055 (Resolved): Update OpenVPN Client Export package with OpenVPN 2.4
- Works fine.
-
08:56 AM Bug #4418: IPsec mobile clients - bogus "p" appended to search domain
- This still happens in 2.3.2-RELEASE-p1. Had to add a dummy second domain to fix it like the others.
resolver #3
... -
08:48 AM Bug #6778 (Resolved): CloudFlare Dynamic DNS fails when domain name uses a Second Level TLD
- No confirmation, but no complaints. Other posts on the forum indicate CloudFlare is working in general on 2.4 now.
-
08:37 AM Bug #7088 (Resolved): DHCP does not accept input into MAC Control Fields.
- Works
-
08:32 AM Bug #7081 (Resolved): Search Domains not populating from RA using SLAAC
- Works
- 06:54 AM Revision 007cfb6a: Fix #7118 icmp-type any
- When 'any' is selected as the ICMP type, do not write 'icmp-type any' in the rule, just leave it out.
-
05:01 AM Feature #4632: Support for Multipath TCP (MPTCP)
- I also would like to see it in PfSense.
I'm using MPTCP to bond my three connections (2x VDSL + LTE). It works per... - 02:53 AM Revision 7b3d8a4b: Display Dyn DNS type if description not found
-
02:12 AM Revision e09556b2: Add IPsec to the state table interface list.
-
02:10 AM Revision 4c2976b5: Add IPsec to the state table interface list.
-
02:09 AM Revision c1f1072e: Add IPsec to the state table interface list.
-
12:44 AM Revision ce3a92c0: Hide/deactivate the reroot option when ZFS is active. Ticket #6045
01/12/2017
-
09:26 PM Revision e2a059e2: Fix #6153
- Initialize cached IP and Time on loop for RFC2136 items, without this
the items used on last loop iteration will be u... -
09:23 PM Revision ed680fda: Fix #6153
- Initialize cached IP and Time on loop for RFC2136 items, without this
the items used on last loop iteration will be u... -
08:49 PM Bug #6153 (Resolved): RFC 2136 Client fails to update more than 1 record
- Works for me. Two RFC2136 entries on WAN both get updated now. I wiped the cache files and tested using /etc/rc.dyndn...
-
03:34 PM Bug #6153: RFC 2136 Client fails to update more than 1 record
- Pingle has a way to validate the changes
-
03:30 PM Bug #6153 (Feedback): RFC 2136 Client fails to update more than 1 record
- Applied in changeset commit:ed680fda05f2d2d17a59d2893a6ae45e0cbef164.
-
08:30 PM Bug #6991 (Resolved): IPv6 traffic hitting a rule with policy routing and NPt fails/disappears
- Seems to work fine. Rules that resulted in no traffic passing before now pass traffic as expected.
-
11:12 AM Bug #6991 (Feedback): IPv6 traffic hitting a rule with policy routing and NPt fails/disappears
- Fixed by: https://github.com/pfsense/FreeBSD-src/commit/65e7874e6faa4fdfd1fb6893d75d8db196a2f599
-
07:03 PM Revision c80b16b7: Enable net-snmpd for experimentation
-
07:02 PM Revision 44e938b3: Enable net-snmpd for experimentation
-
06:55 PM Feature #6045 (Resolved): Updates that do not require a reboot should run reroot
- Seems OK for now.
-
08:16 AM Feature #6045 (Feedback): Updates that do not require a reboot should run reroot
- pfSense-upgrade 0.12 will not reroot on ZFS systems
-
06:30 PM Bug #7105 (Resolved): ICMP type selection is assuming IPv6 when it should assume IPv4
- Works
-
08:50 AM Bug #7105 (Feedback): ICMP type selection is assuming IPv6 when it should assume IPv4
- Applied in changeset commit:da2a39e2961d22a403df464534b52bf6dbf9cf01.
-
04:34 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- I confirm this behaviour.
-
02:46 PM Bug #7116 (Resolved): a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue.
Using Virtua... - 03:59 PM Revision a2d23e88: Redmine #5549 Allow variable number of DNS Servers
- 03:29 PM Revision b84126b5: Remove excess loops in DynDNS Widget
-
02:59 PM Bug #7117 (Resolved): Bump sched buckets limiter log spam in console
- When a limiter is used with source mask, it creates a lot of system log entries over time when active and applied to ...
-
02:40 PM Revision da2a39e2: Fix #7105: Old rules may not have ipprotocol defined, consider it icmp6-type only when ipprotocol is inet6
- 02:22 PM Revision c898bd19: Display client id in DHCP Mapping list
- (cherry picked from commit 6e3e95a538c4dda9c9f14b2ab78435eec0debf46)
-
02:22 PM Revision 1bb54570: Merge pull request #3372 from phil-davis/dhcp_client_id
-
01:43 PM Revision cbafa84f: Ticket #6340:
- - Stop misusing fsck -F parameter, it's supposed to be used when you
plan to run background fsck after filesystems ... -
01:37 PM Revision cc82c328: Ticket #6340:
- - Stop misusing fsck -F parameter, it's supposed to be used when you
plan to run background fsck after filesystems ... - 10:34 AM Revision 35310a49: Add filter to Interfaces Widget
-
10:11 AM Bug #6937: Inbound traffic on enc0 is not creating a state with mobile IPsec
- Please read this https://forum.pfsense.org/index.php?topic=117827
-
08:30 AM Feature #7115 (Rejected): Firewall logs duration
- Use remote syslog to retain logs. Or look into the syslog-ng package.
-
08:27 AM Feature #7115 (Rejected): Firewall logs duration
- It would be nice if the firewall log records are archived in the new version
-
08:05 AM Todo #7084 (Feedback): Intel IEEE 802.11ac wireless network driver
- pfSense kernel already has all intel wireless cards / firmwares built-in as you can see at:
https://github.com/pfs... -
07:54 AM Bug #6340 (Feedback): fsck hangs boot in background, fails to produce any action, resulting in broken firewall
- We were misusing fsck -F option. It's supposed to be used when you plan to run background fsck after filesystems are ...
01/11/2017
-
10:42 PM Bug #6937: Inbound traffic on enc0 is not creating a state with mobile IPsec
- Found the same problem on a 2 weeks old SG-1000. Kinda annoying since mobile ipsec is the reason I bought it.
-
08:21 PM Bug #7110 (Resolved): Empty custom NTP ACL produces syntax error in /var/etc/ntpd.conf
-
08:05 PM Bug #7110: Empty custom NTP ACL produces syntax error in /var/etc/ntpd.conf
- Can confirm that fix works on current 2.3.3 snapshot. Thanks, Jim!
-
08:00 AM Bug #7110 (Feedback): Empty custom NTP ACL produces syntax error in /var/etc/ntpd.conf
- Applied in changeset commit:d90beba66f545af414f00124ba32a9ae087a29d2.
-
08:18 PM pfSense Packages Bug #7114: OpenBGP - remote syslog output incomplete
- Thanks, Jim.
Confirmed with WireShark to be a limitation of free Kiwi syslog server.
-
07:49 PM pfSense Packages Bug #7114 (Rejected): OpenBGP - remote syslog output incomplete
- Remote syslog server data is sent immediately as the log entries happen. There are no limits imposed on the data, it ...
-
07:33 PM pfSense Packages Bug #7114 (Rejected): OpenBGP - remote syslog output incomplete
- 2.3.2-RELEASE-p1 (full install).
I have a table which is updated via OpenBGP and currently contains more than 90... -
05:56 PM Revision ad9548b2: Enable TLS option for net-snmp
-
05:15 PM Revision 71e53a40: Simplify logic
-
05:15 PM Revision 8c305c80: Simplify logic
-
04:47 PM Revision 983c4c6c: Fix #6712
- Use system_hosts_entries to generate unbound host_entries.conf
-
04:47 PM Revision 82897042: Ticket #6712: Create system_hosts_entries()
- This function will return an array all items to be added to /etc/hosts.
-
04:46 PM Revision 829f3ca3: Ticket #6712: Create system_hosts_dhcpd_entries()
- This function will return an array with dhcpd and dhcpdv6 items to be added to
/etc/hosts. -
04:46 PM Revision 470efdfc: Ticket #6712: Create system_hosts_override_entries()
- This function will return an array with dnsmasq or unbound items to be added to
/etc/hosts -
04:46 PM Revision 881ebd59: Ticket #6712: Deprecate read_hosts()
- Read local items from system_hosts_local_entries()
-
04:46 PM Revision e0696aa4: Ticket #6712: Create system_hosts_local_entries()
- This function will return an array with 127.0.0.1, ::1 and LAN (or
first interface with no gateway when LAN is not th... -
04:46 PM Revision 6f7e852f: Kill dhcpleases after we are sure we can write /etc/hosts
-
04:46 PM Bug #6712 (Resolved): services_unbound.php Host Overrides don't change any unbound configuration
- Looks good now. Forwarder hosts go in /etc/hosts, Resolver hosts go in /var/unbound/host_entries.conf and they appear...
-
10:51 AM Bug #6712: services_unbound.php Host Overrides don't change any unbound configuration
- Assigning to Jim Pingle for testing
-
10:50 AM Bug #6712 (Feedback): services_unbound.php Host Overrides don't change any unbound configuration
- Applied in changeset commit:ac446eac051c4514666f9904bbdd0609468f2fc5.
-
04:45 PM Revision 2354cc09: Fix style
-
04:45 PM Revision 9c276201: Make sure IP address is v4 before create /etc/hosts entry
- 04:45 PM Revision 8d058e79: Exclude non-qualified hostnames from hosts file. Ticket #6064
-
04:40 PM Revision ac446eac: Fix #6712
- Use system_hosts_entries to generate unbound host_entries.conf
-
04:40 PM Revision 878b7736: Ticket #6712: Create system_hosts_entries()
- This function will return an array all items to be added to /etc/hosts.
-
04:39 PM Revision 236d5816: Ticket #6712: Create system_hosts_dhcpd_entries()
- This function will return an array with dhcpd and dhcpdv6 items to be added to
/etc/hosts. -
04:38 PM Revision 46ff0dee: Ticket #6712: Create system_hosts_override_entries()
- This function will return an array with dnsmasq or unbound items to be added to
/etc/hosts -
04:38 PM Revision 3d146b13: Ticket #6712: Deprecate read_hosts()
- Read local items from system_hosts_local_entries()
-
04:36 PM Revision 2da0fc77: Ticket #6712: Create system_hosts_local_entries()
- This function will return an array with 127.0.0.1, ::1 and LAN (or
first interface with no gateway when LAN is not th... -
04:36 PM Revision 8cf97db3: Kill dhcpleases after we are sure we can write /etc/hosts
-
04:36 PM Revision d015d543: Fix style
-
04:35 PM Bug #6422 (Duplicate): PHP Fatal error: Call to undefined function gettext() in /etc/inc/rrd.inc on line 60
- Duplicate of #6758
-
04:30 PM Bug #6422: PHP Fatal error: Call to undefined function gettext() in /etc/inc/rrd.inc on line 60
- Seems to be caused by a file permissions issue.
See https://redmine.pfsense.org/issues/6758
To fix this:
<pr... -
04:35 PM Revision 3453b727: Make sure IP address is v4 before create /etc/hosts entry
-
01:54 PM Revision 59c6b72e: Do not write a 'restrict' line to the NTP config if it will be empty. Fixes #7110
-
01:54 PM Revision 6ca5c3ca: Do not write a 'restrict' line to the NTP config if it will be empty. Fixes #7110
-
01:53 PM Revision d90beba6: Do not write a 'restrict' line to the NTP config if it will be empty. Fixes #7110
- 01:41 PM Revision 6e3e95a5: Display client id in DHCP Mapping list
-
12:00 PM Revision 7cdb1ff9: Merge pull request #3369 from phil-davis/breadcrumbs_detail
-
11:54 AM Revision 00a9abb9: Only include files that ends with .inc
-
11:54 AM Revision 9bec85af: Only include files that ends with .inc
-
11:46 AM Revision 913a04ae: Merge pull request #3341 from phil-davis/sysprvwarn2
- 11:36 AM Revision e95b87be: Add requirestatefilter. Implements #7069.
- (cherry picked from commit 88081ea257fa683ed28b588c4c35260589604741)
- 11:35 AM Revision 05a13eba: Add requirestatefilter. Implements #7069.
- (cherry picked from commit 0a3150896bc412868cfb79473293ed81c87a50a7)
-
11:35 AM Revision b38e0fbd: Merge pull request #3367 from derelict-pf/require_state_filter
-
11:32 AM Revision 4c4cd8a7: Captive portal: make captiveportal_disconnect_all() faster
- captiveportal_disconnect_all() removes the users one at a time and in some cases, when many hundreds of users are con...
-
11:31 AM Revision 92838b02: Merge pull request #3360 from plumbeo/faster-disconnect-all
-
11:30 AM Revision 68ee58ed: openvpn, check for valid pid using isvalidpid()
- (cherry picked from commit a1b39e949ab3a0e53ac4c1837f5d2c02b28142f3)
-
11:30 AM Revision 1b03abe3: openvpn, make sure config is written and not overwritten while starting openvpn, and wait for pid of child process to be written before exiting function
- (cherry picked from commit 8845e137b630497d47a8ce93fb072e47419f8af5)
-
11:30 AM Revision f06f9dab: Merge pull request #3361 from PiBa-NL/openvpn_waitforpid_20170107
- 11:28 AM Revision ee8d47c7: Services widget filter checkboxes
- (cherry picked from commit ada6bfa7ca68169408b80af6325afe3948ee85f7)
-
11:28 AM Revision 7da0ef4c: Merge pull request #3370 from phil-davis/services_widget
-
11:24 AM Revision 9da4a575: Add protocol selection to Radius server configuration
- It should fix #7111
Submitted by @ubawurinna at https://github.com/pfsense/pfsense/pull/2687 -
08:49 AM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- PR https://github.com/pfsense/pfsense/pull/3373
It seems to work too easily, what have I forgotten? -
05:59 AM Bug #7113 (New): Interface name in Traffic Graphs
- The interface name is not displayed in the traffic graphs, only the real interface name is displayed, lan, wan, opt1,...
-
05:58 AM Bug #7112 (Resolved): Traffic Graphs resets graph when browser tab changes
- The new traffic graphs resets graphs when the actual browser tab is changed, so the graphs starts from the right axis...
-
05:38 AM Feature #7069 (Feedback): Provide knob to disable state display in Diagnostics > States until a filter has been submitted.
- PR has been merged, thanks!
-
05:30 AM Feature #7111 (Feedback): Add protocol selection to radius server configuration
- Applied in changeset commit:9da4a575f8ff670f4d79bb0b6c19e8ca3f3a3cdc.
-
05:19 AM Feature #7111: Add protocol selection to radius server configuration
- Submitted at https://github.com/pfsense/pfsense/pull/2687
-
05:19 AM Feature #7111 (Resolved): Add protocol selection to radius server configuration
- Add the hability to select protocol (PAP, MD5-CHAP, MS-CHAPv1 and MS-CHAPv2) on Radius server configuration.
-
03:02 AM Feature #7099: Make breadcrumbs clickable
- Yes, for packages with XML the pkg.php and pkg_edit.php try to put some reasonable breadcrumb links in (try the Notes...
-
02:50 AM Feature #7099: Make breadcrumbs clickable
- Phil: That looks great, thanks! I guess the same can be used for packages (the PHP files I mean, not XML), right?
-
01:03 AM Feature #7099: Make breadcrumbs clickable
- Proposed solution is out for review/test https://github.com/pfsense/pfsense/pull/3369
- 01:39 AM Revision 753280bb: Merge branch 'master' into sysprvwarn2
01/10/2017
-
08:29 PM Bug #4310: Limiters + HA results in hangs on secondary
- I would agree with Vladimir. Just would like to know if this will be definitely be fixed in 2.4 or pushed out furthe...
-
08:27 PM Revision 6a9a7595: Merge pull request #3343 from phil-davis/retval1
-
08:21 PM Bug #7110 (Resolved): Empty custom NTP ACL produces syntax error in /var/etc/ntpd.conf
- On the NTPD ACL tab [Services/NTP/ACLs] the blank default entry under Custom Access Restrictions results in addition ...
-
07:59 PM Bug #6986 (Resolved): reply-to is not functioning on pfSense 2.4
- I tested this on two systems that previously reproduced the problem 100% of the time, and now they both work. Looks g...
-
07:22 PM Bug #6986 (Feedback): reply-to is not functioning on pfSense 2.4
- Fixed by https://github.com/pfsense/FreeBSD-src/commit/114dc4a89011a560c32421ca842ca73f5b29d449
-
05:03 PM Revision a271ed3d: Make sure file exists before try to open it
-
05:03 PM Revision 4f3fc80d: Fix style
- 04:30 PM Revision ada6bfa7: Services widget filter checkboxes
- 02:48 PM Revision edcd7535: Breadcrumb links
- 02:46 PM Revision 3870dcb7: Move checkbox styling to the beta file since it produces results that are not consistent across browsers and OS
-
11:04 AM Revision 155769f2: Revert "get_pkg_info() fallback using pkg info if no local copy of repo catalog"
- This reverts commit 46237e23f35db70a917939609061dce7b7f955f9.
-
11:04 AM Revision 1e85a9ed: Revert "get_pkg_info() fallback using pkg info if no local copy of repo catalog"
- This reverts commit e47af756de79d4e8b0356cf22f72f62f09e9ad7d.
-
09:17 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- definitely like the idea of adding a decision layer the would then open options to create a daemon for other method...
-
06:48 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- I posted a bounty: https://forum.pfsense.org/index.php?topic=123741.0
-
08:56 AM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- Jim if you want to test these new findings up to you but here is an update.
I have discovered the match rules crea... -
08:23 AM Feature #7098 (Resolved): RAM Disk Management
- Seems to work alright on a couple test boxes here.
-
06:57 AM pfSense Packages Bug #7109: Squid 0.4.29_1 not Exist
- Tank you,
now all is ok -
06:52 AM pfSense Packages Bug #7109 (Rejected): Squid 0.4.29_1 not Exist
- This sort of error will clear up on its own after a few moments, or run "pkg update -f" if it keeps happening.
Whe... -
06:45 AM pfSense Packages Bug #7109 (Rejected): Squid 0.4.29_1 not Exist
- If tray to install Squid 0.4.29_1 I have this error:...
-
06:50 AM pfSense Packages Bug #6878: how to use snort, squid and squid_guard with a ram disk
- The thinking was: Without NanoBSD, more people will be running a full install on unreliable media like CF/SD, so we n...
-
04:24 AM pfSense Packages Bug #6878: how to use snort, squid and squid_guard with a ram disk
- Jim Pingle wrote:
> Seems to be working.
Yeah, this seems to be working, except that noone is getting the fixes. ... -
06:30 AM Bug #5993: dhcp6c not started until an RA received
- Richard Patterson asked me by email to explain in more detail why I want to make these changes, here is my email to h...
-
05:22 AM Bug #5993: dhcp6c not started until an RA received
- OK, it seems we have a solution. It involves a change to dhcp6c, another new flag is added!
The flag, currently 'x...
01/09/2017
-
10:21 PM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- I agree that the "right" way to handle this would be to have dpinger remain dumb (for lack of a better term) and simp...
-
08:28 PM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- I agree with this analysis. To make this happen, there needs to be a layer between groups of dpinger process(es) and ...
-
07:42 PM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- Luke opened an issue with dpinger. For reference, I've copied the response here.
-----
Hey Luke,
I understan... -
10:06 PM pfSense Packages Bug #6305: Quagga problems updating routes / mistakenly showing "kernel"-routes while they are not
- Affected me too. I tried settings with OpenVPN server + OpenVPN client.
Both:
Pfsense 2.3.2-RELEASE-p1
Quagga_OS... -
09:37 PM Revision a1b39e94: openvpn, check for valid pid using isvalidpid()
-
09:22 PM Feature #7098: RAM Disk Management
- Upgraded RAM disk enabled system. Working fine.
Thanks -
08:01 AM Feature #7098 (Feedback): RAM Disk Management
- PR has been merged, thanks!
-
09:17 PM Bug #7108: ntp does not keep time on virtualized pfsense
- Trying with TSC-low now. That seems to have done the trick! The time offset is staying relatively stable now. Tha...
-
07:50 PM Bug #7108 (Not a Bug): ntp does not keep time on virtualized pfsense
- OpenNTPD isn't better, it's worse.
-
06:53 PM Bug #7108: ntp does not keep time on virtualized pfsense
- Try with TSC or TSC-low. Anyway, this ain't a pfSense bug, needs to go upstream.
-
05:45 PM Bug #7108: ntp does not keep time on virtualized pfsense
- Relevant logs:...
-
05:40 PM Bug #7108 (Not a Bug): ntp does not keep time on virtualized pfsense
- I run pfsense virtualized under FreeBSD bhyve. I've read all of the normal advice and have implemented the usual wor...
-
07:55 PM pfSense Packages Bug #7107: IPv6 blocklists generate IPv4 auto-rules
- I'll wait for a confirmed fix for the 'vtype' bug. The aliases are working fine for me, especially since I really on...
-
07:44 PM pfSense Packages Bug #7107: IPv6 blocklists generate IPv4 auto-rules
- *Update:* Its going to be a little more involved to fix this issue... Best to use "Alias type" rules, until the next...
-
07:22 PM pfSense Packages Bug #7107: IPv6 blocklists generate IPv4 auto-rules
- Thanks for the report... I can confirm that there is a bug for the IPv6 Tab. The GeoIP tab doesn't have this issue th...
-
06:32 PM pfSense Packages Bug #7107: IPv6 blocklists generate IPv4 auto-rules
- Yes. I configured the list in the IPv6 tab of pfBlockerNG. When "List Action" is set to "Deny Both" the firewall ru...
-
06:21 PM pfSense Packages Bug #7107: IPv6 blocklists generate IPv4 auto-rules
- Did you add these Lists in the IPv6 pfBlockerNG Tab?
-
05:35 PM pfSense Packages Bug #7107 (Resolved): IPv6 blocklists generate IPv4 auto-rules
- I set up some IPv6 blocklists with pfblocker and noticed that the autorules it created were created as IPv4 protocol ...
-
06:54 PM Bug #6257: Kernel panic with ALTQ
- Also experiencing a very similar crash every few days in the igb driver queue thread after updating to 2.4.0 as long ...
-
06:34 PM Revision fc47d47a: Fix a case where the ALTQ capability warning was showing incorrectly. Fixes #7102
-
05:25 PM Bug #7106 (Not a Bug): TLS SMTP notification messages fail with expired certificate
- Am using pfsense 2.3.3 development snapshot 2017-01-08.
When configuring SMTP notifications using STARTTLS over tc... - 04:50 PM Revision 09744f3a: Merge branch 'RELENG_2_3' of git.netgate.com:pfsense/pfsense into RELENG_2_3
- 04:49 PM Revision 2813a467: Further refine checkbox styling
-
03:11 PM Bug #7105 (Resolved): ICMP type selection is assuming IPv6 when it should assume IPv4
- I had an older rule which did not have an ipprotocol type set inside, which is quite common with configurations that ...
-
02:46 PM Bug #6986: reply-to is not functioning on pfSense 2.4
- It's still not working here. Port forwards only work on the WAN with the default gateway. Configuration is unchanged ...
-
02:15 PM Bug #6986: reply-to is not functioning on pfSense 2.4
- JimP, I cannot reproduce this bug with todays snapshot. This is a fresh install with two WANs (DHCP) and two port fo...
-
02:18 PM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- ok thanks for taking the time to find the cause.
I respect you want to sort of filter things out on the forum firs... -
12:40 PM Bug #7102 (Feedback): This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- Applied in changeset commit:fc47d47ae50e6b549b2ac38ded2576106be66504.
-
12:34 PM Bug #7102 (Assigned): This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- I found a way to reproduce this one, it's a different problem. If all of the ALTQ-capable interfaces were assigned an...
-
02:00 PM Revision 6a004f6f: Merge pull request #2902 from NOYB/RAM_Disk_Management
- 01:56 PM Revision eaa55106: Crash Reporter report when no data found
- The glob for $crash_files always returns an array - an empty one in the case when there are no matching crash files. ...
-
01:56 PM Revision af469a9f: Merge pull request #3368 from phil-davis/patch-2
-
01:54 PM Revision 376c71bc: Merge pull request #3365 from phil-davis/format_duid
- 01:52 PM Revision fd2e503a: format_DUID array_walk
- 01:42 PM Revision 5bd45966: format_DUID use str_pad
- 01:22 PM Revision febfd592: format_DUID review
-
12:35 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- OK I put that back on #7102, it's all unrelated to this ticket. This ticket is now (again) only for vmx(4) lacking AL...
-
12:26 PM Revision 66dba4d7: clarify type of firewall rule needed
- A comment on the original PR says that it's not clear if the rule for this needs to be IPv6 or IPv4 with protocol IPv...
-
12:26 PM Revision 2f93ba9e: change as commented and remove redundant help text
- (cherry picked from commit 16fbe9b7ee1abfb8b9504a8d1e90dcd7592f9fe2)
-
12:26 PM Revision b11927df: left label as comment above
- (cherry picked from commit a0052ea3a5fe74246795d90bcacadd025801134a)
-
12:26 PM Revision efeea350: Various wording changes
- (cherry picked from commit a075265e0a076419813622e0d69556915b6f40f2)
-
12:26 PM Revision df82227e: Improve labels + help text for IPv6 tunneling options
- * Move the help message to be on the group as a whole not just the IP input field
* Clarify the IP field (label state... -
12:26 PM Revision cfa4a410: Merge pull request #3330 from stilez/patch-54
- 12:24 PM Revision bf68dc41: Remove unusued $heading in genhtmltitle()
- It came into use in https://github.com/pfsense/pfsense/commit/45eebe10a93fa1e2399c6cdf133ad88dc21ee6e7 but genhtmlti...
-
12:24 PM Revision 0d2e7de8: Merge pull request #3363 from phil-davis/patch-1
-
10:38 AM Bug #7050 (Resolved): Limiter with PFsense 2.4 transparent proxy
-
10:25 AM Bug #7050: Limiter with PFsense 2.4 transparent proxy
- Luiz Otavio O Souza wrote:
> Fixed in the latest snapshot.
>
> https://github.com/pfsense/FreeBSD-src/commit/994e... -
10:30 AM Bug #6882 (Needs Patch): bsnmpd uses all available CPU with hostres module active in some cases
- The workaround is present and prevents the problem case from causing harm.
Rather than close this out, I'll leave... -
10:09 AM Bug #6835 (Resolved): firewall_nat_out_edit.php Translation section hidden
-
10:09 AM Bug #6711 (Resolved): diag_states_summary # States and # States twice (explain one is per protocol)
-
09:54 AM Bug #6949 (Resolved): username/password not used by proxy support
- Works on the latest snap including the patch.
-
05:49 AM Bug #6949 (Feedback): username/password not used by proxy support
- Done. Last commit was cherry-picked
-
08:34 AM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- I did not explain how they work because this is not a support system, nor is it a discussion platform. All of this be...
-
08:32 AM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- Jim Pingle wrote:
> The forum is the best place to discuss this until a real bug is identified. It is not about keep... - 04:35 AM Revision cb6b7189: Crash Reporter report when no data found
- The glob for $crash_files always returns an array - an empty one in the case when there are no matching crash files. ...
-
03:14 AM Revision ef5c0a3e: RAM Disk Management - Config Upgrade
-
03:14 AM Revision 029d6129: RAM Disk Management - Update II - Restore RAM Disk Soon as it is Created and Include Logs
- Restoring the RAM disk as soon as it is available will make it easier to include additional content that needs to per...
-
03:14 AM Revision 08696051: RAM Disk Management - Update I - Eliminate RRD XML Dump/Restore & Alias Tables Backup Age Logic
- Eliminate rrd dump/restore to/from xlm file. Backup and restore the entire /var/db/rrd/ to/from the RAM Disk Store.
... -
03:14 AM Revision 257d2fd6: RAM Disk Management
- 1) Treat the RAM disk more like a permanent storage device with content managed/restored by the system and made avail...
- 02:40 AM Revision c50f228a: Breadcrumb links support
- 02:39 AM Revision 70719baf: Add requirestatefilter. Implements #7069.
- 02:36 AM Revision 88081ea2: Add requirestatefilter. Implements #7069.
- 02:03 AM Revision 0a315089: Add requirestatefilter. Implements #7069.
01/08/2017
-
11:35 PM Bug #6990: DDNS IPs not updating after a system restart
- Hi,
yesterday, January 8, my customers router shut down due to a power loss.
When the power returned the router boo... -
09:01 PM Feature #7069: Provide knob to disable state display in Diagnostics > States until a filter has been submitted.
- New pull request: https://github.com/pfsense/pfsense/pull/3367
-
08:02 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Firewall-Traffic Shaper-By Interface. I didn't check the others. If I see traffic in the queues then AltQ should be ...
-
07:50 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- What page does the error show on, exactly? I can't replicate any problem where that error shows up on a firewall that...
-
07:13 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Jim Pingle wrote:
> If there is any issue with igb, I can't replicate it here. On an SG-8860 with igb running 2.4, I... -
10:36 AM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- If there is any issue with igb, I can't replicate it here. On an SG-8860 with igb running 2.4, I can use ALTQ and it ...
-
09:18 AM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Chris Collins wrote:
> Jim ALTQ does looks its on the a downward path but still pfSense uses it and the traffic shap... -
04:57 PM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- Yeah exactly, this is to file bug reports. Not "ooops something somehow won't work for me, definitely must be a bug" ...
-
04:54 PM pfSense Packages Bug #7104 (Rejected): Rules created by traffic shaper wizard dont do anything
- The forum is the best place to discuss this until a real bug is identified. It is not about keeping ticket counts dow...
-
04:43 PM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- Kill Bill wrote:
> May I suggest using https://forum.pfsense.org/index.php?board=26.0 until you have a *real* bug? '... -
04:42 PM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- I see match mentioned on this page https://home.nuug.no/~peter/pf/en/altqintro.html
But FreeBSD never updated PF t... -
04:38 PM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- May I suggest using https://forum.pfsense.org/index.php?board=26.0 until you have a *real* bug? 'cos this one ain't a...
-
04:26 PM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- Ok some more information. Step by step of my diagnostics.
1 - Run the wizard and choose the first option, keep as... -
04:12 PM pfSense Packages Bug #7104 (Rejected): Rules created by traffic shaper wizard dont do anything
- The rules are created as match rules which is not passing them onto the specific queue.
I am talking about the rul... -
03:20 PM Bug #7050 (Feedback): Limiter with PFsense 2.4 transparent proxy
- Fixed in the latest snapshot.
https://github.com/pfsense/FreeBSD-src/commit/994e779f035e9ed49909936d5773f930adfc40... - 03:08 PM Revision f4bbec8b: Helper format_duid() for DUID input
-
03:05 PM pfSense Packages Feature #4752: SQUID. Exception for speed limits
- This is what 'Unrestricted IPs' on the ACLs tab was intended for; except that it never worked due a wrong check. Fixe...
-
02:36 PM Revision 286ed246: Fix typo. Ticket #7007
-
01:21 PM Bug #7093: "Outgoing Network Interfaces" is broken in dns resolver settings
- The configuration is not enough on its own because your interfaces are DHCP. We need to see the addresses on the inte...
-
12:53 PM Bug #7093: "Outgoing Network Interfaces" is broken in dns resolver settings
- is it sufficient to do a backup of the config and send you that backup?
The setup is this.
Dns resolver enabled... -
12:53 PM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- The ticket was rejected because I attempted the same configuration and found no problem on current 2.4 snapshots. I h...
-
12:43 PM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- It is a bit of a wow that you have rejected a clear report telling you that there is a misleading message in the GUI....
-
10:19 AM Bug #7102 (Rejected): This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- Then you'll need to provide a lot more detail about your NICs & the drivers they use (dmesg, ifconfig output, GUI ass...
-
10:17 AM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- I can confirm 100% now ALTQ is working.
1 - if I apply the rules on cli is no error, if altq was broken it would s... -
09:03 AM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- The only place I see this message appear is when a NIC is in use that does NOT have ALTQ support (e.g. lagg, cpsw, et...
-
11:06 AM pfSense Packages Bug #7103 (Rejected): Security issue regarding traffic shaper created by wizard
- There is no security issue except the one you made by changing the rules. If there is a problem with the shaper rules...
-
11:04 AM pfSense Packages Bug #7103 (Rejected): Security issue regarding traffic shaper created by wizard
- So take this into consideration
The default dns resolver settings listen on "all" interfaces.
If I follow the... -
10:53 AM Feature #7007 (Resolved): Change default IPsec/strongswan log levels
- Works
-
09:25 AM Bug #6836: Wrong queue length on "/status_queues.php" page under heavy traffic
- So show me what is applied here and please remove all not applicable redmine "Ts & Cs" links from this site also.
-
09:21 AM Bug #6836: Wrong queue length on "/status_queues.php" page under heavy traffic
- The Ts & Cs of the redmine project don't apply here
-
01:50 AM Revision e470f721: Rework how IPsec log settings are stored/retreived, adjust the default values. Implements #7007
01/07/2017
-
11:57 PM Revision 43de8397: Don't allow SNMP hostres module to be selected or used with VMware VMs that have a CD/DVD Drive device. Fixes #6882
-
11:55 PM Revision 9a548240: Add VMware detection to system_identify_specific_platform(). Ticket #6882
-
11:10 PM Bug #6836: Wrong queue length on "/status_queues.php" page under heavy traffic
- Please point me to the some redmine EULA or law, why I can not use this name anymore like it was used for the 5 last ...
-
12:26 PM Bug #6836 (Assigned): Wrong queue length on "/status_queues.php" page under heavy traffic
- please close and reopen this as someone other than "Vladimir Putin".
not kidding. -
10:55 PM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- Jim seems it is working, and its a GUI bug.
the command line doesnt give any errors, however I am not 100% sure as... -
10:11 PM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- Possibly yes as it seems also broken on realtek.
I tried to move both cables to the reX ports but it seems my re1 ... -
09:05 PM Bug #7102 (Duplicate): This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- Probably a duplicate of #7066 which appears to be a more general issue.
-
09:04 PM Bug #7102 (Resolved): This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- Is intel i350 interface
According to this url it can be patched to work. Can the patches please be made on the pf... -
10:28 PM Bug #7093 (Rejected): "Outgoing Network Interfaces" is broken in dns resolver settings
- I cannot reproduce this on current 2.4 snapshots. I have tried a variety of outgoing and other interface configuratio...
-
10:18 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Jim ALTQ does looks its on the a downward path but still pfSense uses it and the traffic shaper is an established key...
-
12:13 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Personally, I think ALTQ is dead.
-
10:02 PM Bug #7037: CPU frequency in System Information
- The info might well be redundant, but dynamic resizing from different values is poor design.
-
08:55 PM Revision 3509ad4f: clarify type of firewall rule needed
- A comment on the original PR says that it's not clear if the rule for this needs to be IPv6 or IPv4 with protocol IPv...
-
08:00 PM Feature #7007 (Feedback): Change default IPsec/strongswan log levels
- Applied in changeset commit:e470f72139ed54972465e653e27536687ce58b23.
-
12:12 PM Feature #7007: Change default IPsec/strongswan log levels
- assigned to Pingle for resolution.
- 06:48 PM Revision 877b5e10: Merge branch 'RELENG_2_3' of git.netgate.com:pfsense/pfsense into RELENG_2_3
- 06:45 PM Revision ba61a00b: Fix #7100
- 06:44 PM Revision 6d55e876: Fix #7100
-
06:09 PM Bug #6949: username/password not used by proxy support
- Looks like the patch on the FreeBSD bug entry was committed. We should be able to pull it in from there.
-
06:00 PM Bug #6882 (Feedback): bsnmpd uses all available CPU with hostres module active in some cases
- Applied in changeset commit:43de83978ed93c9a4886e2844e341af0f3fe9a05.
- 02:26 PM Revision f93e9098: Remove unusued $heading in genhtmltitle()
- It came into use in https://github.com/pfsense/pfsense/commit/45eebe10a93fa1e2399c6cdf133ad88dc21ee6e7 but genhtmlti...
-
01:15 PM Bug #7100 (Resolved): pkg_edit.php - $("#showadv").prop('value') not working
-
01:01 PM Bug #7100: pkg_edit.php - $("#showadv").prop('value') not working
- Works! ;) Thanks.
-
12:50 PM Bug #7100 (Feedback): pkg_edit.php - $("#showadv").prop('value') not working
- Applied in changeset commit:6d55e876755d422e97bacb336f52f577087aa71c.
-
08:36 AM Bug #7100 (Resolved): pkg_edit.php - $("#showadv").prop('value') not working
- This code somehow does not work: https://github.com/pfsense/pfsense/blob/master/src/usr/local/www/pkg_edit.php#L1521 ...
- 12:35 PM Revision 7e33d908: Further internationalization
-
12:23 PM Bug #6974: radvd enabled on a disconnected interface kills RA completely on all interfaces
There is code in radvd to stop sending on interfaces that are no longer transmitting.
I don't know how difficult...-
12:10 PM Bug #7013: Changing group scope to remote does not remove it from group file
- you would have to teach each affected process to re-run initgroups(3); setgroups(2); in order for them all to have a ...
- 12:08 PM Revision 0a6273e2: Add missing internationalization
-
12:05 PM Todo #7084: Intel IEEE 802.11ac wireless network driver
- I don't think we have any hardware to test this with.
-
11:06 AM Bug #7101: services_dyndns.php not updating via gateway group, ok with the interface
- Sorry, a mistake in line 1...
"with 2 PPPoE connection I have defined 3 DDNS: DDNS1.selfip.net for WADSL, DDNS2.se... -
11:03 AM Bug #7101 (Duplicate): services_dyndns.php not updating via gateway group, ok with the interface
- Hi,
with 2 connection I have defined 3 DDNS: DDNS1.selfip.net for WADSL, DDNS2.selfip.net for VDSL and DDNS.selfip... -
09:10 AM Feature #7099: Make breadcrumbs clickable
- I wondered about that also, at the time of the bootstrap conversion, but there was enough going on that I never follo...
-
06:54 AM Feature #7099 (Resolved): Make breadcrumbs clickable
- Dunno if it's just me, but the entire feature is very much pointless when it's unusable for navigation. Seems pretty ...
-
08:40 AM Feature #7077: Display negotiated data encryption algorithm in OpenVPN connection status
- Great news!
We'll keep an eye out for it -
08:27 AM Feature #7077: Display negotiated data encryption algorithm in OpenVPN connection status
- The proposal to add the info to status 2 / 3 has been accepted, and may make it into OVPN 2.4.1. I'll update this whe...
-
06:30 AM Bug #7096: Unbound fails to start on boot if specific network devices are configured in the "Network Interfaces"
- I have a proposal which should make it easier for development.
I suggest removing the interface selection as is (f... -
05:46 AM Feature #7098 (Resolved): RAM Disk Management
- RAM Disk Management
https://github.com/pfsense/pfsense/pull/2902
1) Treat the RAM disk more like a permanent stor... -
05:14 AM Revision c7df3de8: Merge pull request #3346 from scherma/reverting
-
05:14 AM Revision 1a86beff: Merge pull request #3359 from phil-davis/admin_notices
- 02:26 AM Revision a5d486e9: Revise gateway widget config form
- Make non-checked checkboxes more visible by adding an outline
- 02:24 AM Revision b2daca76: Fix username reference
-
01:20 AM Bug #5993: dhcp6c not started until an RA received
- The removal of the extra dhc6c_interface_script call does cause a problem for some, those who use dhcpwithoutra and w...
01/06/2017
-
11:20 PM Feature #7097 (Feedback): Authentication cache for LDAP and RADIUS
- PR merged
-
02:41 PM Feature #7097 (Resolved): Authentication cache for LDAP and RADIUS
- Currently PFSense does not remember LDAP or RADIUS authentication to the admin portal between requests. This results ...
-
11:17 PM Revision 8845e137: openvpn, make sure config is written and not overwritten while starting openvpn, and wait for pid of child process to be written before exiting function
-
11:16 PM Feature #7051 (Feedback): Allow control of what users can view and/or clear notices
- PR merged
-
11:54 AM Feature #7051: Allow control of what users can view and/or clear notices
- This should fix it:
https://github.com/pfsense/pfsense/pull/3359
assuming it should be "fixed" -
11:23 AM Feature #7051: Allow control of what users can view and/or clear notices
- Ditto, but that VM had apparently been broken in that way for some time and I never noticed until this morning when I...
-
11:17 AM Feature #7051: Allow control of what users can view and/or clear notices
- The code checks for having the specific new privs to view/clear notices or the "all pages" access. If the "root" user...
-
11:05 AM Feature #7051: Allow control of what users can view and/or clear notices
- More info: This appears to have happened because the 'admin' user on that VM was somehow not a member of the 'admins'...
-
11:02 AM Feature #7051 (Assigned): Allow control of what users can view and/or clear notices
- The notice alert/bell isn't displayed to the admin user when this code is in place. If I revert it, they show up.
- 05:42 PM Revision fce3edc0: Allow admin to clear notices
- 04:51 PM Revision 0fa3348b: Merge branch 'master' of git.netgate.com:pfsense/pfsense
- 04:11 PM Revision 49683e45: Etc/GMT timezone text using ngettext()
- (cherry picked from commit 88de4ab06c8a330a3cedf474b3e218a941f6db66)
-
04:11 PM Revision b31208c1: Merge pull request #3358 from phil-davis/timezone_ngettext
- 02:48 PM Revision 88de4ab0: Etc/GMT timezone text using ngettext()
-
02:28 PM Feature #6045: Updates that do not require a reboot should run reroot
- Looks like reroot doesn't work with ZFS without changing vfs.root.mountfrom
https://bugs.freebsd.org/bugzilla/show... -
12:56 PM Feature #6045 (Assigned): Updates that do not require a reboot should run reroot
- reroot crashes with ZFS. We will have to detect that case and fall back to a traditional reboot (or see if we can get...
- 01:49 PM Revision d4fbcb9f: Merge pull request #3356 from phil-davis/gw_widget_filter
-
01:43 PM Bug #7096 (Resolved): Unbound fails to start on boot if specific network devices are configured in the "Network Interfaces"
- It starts fine if default ALL is selected.
But if specific interfaces are selected instead it prints bind errors a... -
01:32 PM Revision 0612d7ca: Make the emphasis stronger when encouraging use of a geographic location time zone.
-
11:59 AM Revision c9911976: Ticket #7089 Enhance Etc/GMT timezone descriptions
- These work opposite to the way mere mortals expect.
Read: https://github.com/eggert/tz/blob/master/etcetera
Based on... -
11:58 AM Revision e5f4c829: Ticket #7089 Enhance Etc/GMT timezone descriptions
- These work opposite to the way mere mortals expect.
Read: https://github.com/eggert/tz/blob/master/etcetera
Based on... -
11:51 AM pfSense Packages Todo #7055 (Feedback): Update OpenVPN Client Export package with OpenVPN 2.4
- This is now live for 2.3.2_1 users as well. What little feedback I received was positive. We'll move forward from her...
- 11:46 AM Revision 50af3592: Redmine #7089 Add extra help about timezone
- We could also add some text like this to encourage users to choose the "Continent/City" time zones.
(cherry picked fr... -
11:46 AM Revision 84adeb8c: Merge pull request #3355 from phil-davis/patch-1
-
11:35 AM Feature #7095 (Resolved): Improve Remote Gateway field description for IPSec VPN Phase 1
- I think it would be nice if it would be mentioned that 0.0.0.0 is a valid value for that field
So... -
11:33 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- Luke Hamburg wrote:
> _"8.8.8.8 is not a good target"_ huhhh? Then why does https://doc.pfsense.org/index.php/Multi-... -
10:29 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- this is from the manual
Connection Health Check: Uses the following methods to check if the WAN interfaces are stil... -
10:20 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- let me add to this talk past experiences (as i have a couple of maybe the worst isps anywhere ) I had a old dual wan ...
-
10:05 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- Luiz:
_"If you monitor a couple of IPs and one of them is really down, the one you really need access, how you are... -
09:45 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- Phillip Davis wrote:
> I would like to see something like this also. I had been meaning to look at it a long time ag... -
09:24 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- "excess traffic" -- a 0 byte payload ICMP? I don't think we can call that excess traffic :)
"too much time before... -
09:23 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- I would like to see something like this also. I had been meaning to look at it a long time ago! Maybe I will play wit...
-
09:19 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- No matter how multiple targets are handled, it is worse off in some way (excess traffic, too much time before an outa...
-
08:35 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- Can we get this one re-opened? This "bit" me badly yesterday at a customer site. Monitor IP of 8.8.8.8 started "flap...
-
11:30 AM Bug #7034 (Resolved): NTP Orphan Mode stratum setting is not displayed in input field
-
11:22 AM Bug #7034: NTP Orphan Mode stratum setting is not displayed in input field
- Just tested again with @2.4.0-BETA (amd64) built on Fri Jan 06 01:41:07 CST 2017, FreeBSD 11.0-RELEASE-p5@ and it's w...
-
11:09 AM Bug #7094 (Duplicate): Unbound startup syntax is incorrect
- This one is perhaps complicated to fix.
Currently if a unbound-control reload is issued then unbound will shutdown... -
11:05 AM Bug #7093 (Rejected): "Outgoing Network Interfaces" is broken in dns resolver settings
- The "Outgoing Network Interfaces" incorrectly applies the WAN ipv6 link-local when ALL is not selected and also when ...
-
10:59 AM Feature #7092 (Closed): Kernel modules for alternate congestion control algorithms
- These are provided via kernel modules cc_cubic and cc_htcp
I am aware pfsense when its not the endpoint these are ... -
10:38 AM Todo #7091 (Not a Bug): Write upgrade code to rename igb devices to em
- As announced at [1] igb devices will become em devices on FreeBSD 12. We need to have some upgrade code ready to dete...
- 10:27 AM Revision d2b1c52f: Allow hiding of gateways in Gateways Widget
- Sometimes there are gateways that I do not care about, so it is handy to
be able to save some space on the dashboard ... -
10:17 AM Bug #6837: Gateway Failover does not failback
- Wait, _what?_ Default gateway switching is an experimental feature? That checkbox has been there since at least 2.0....
-
09:12 AM Bug #7089: Opposite of + or - is occurring when selecting time zone
- The thing needs to be kept in-line with what the "standard" tz-database distribution is doing. Otherwise, as Jim says...
-
08:49 AM Bug #7089: Opposite of + or - is occurring when selecting time zone
- pfSense is not other products. And the Etc zones are NOT what you want, likely ever. We have been tempted to remove o...
-
08:37 AM Bug #7089: Opposite of + or - is occurring when selecting time zone
- In every other environment I've worked in that I can think of, you can pick the -5 and it's correct. Why is this any ...
-
07:52 AM Bug #7089: Opposite of + or - is occurring when selecting time zone
- You should not be picking what you think is an offset (but is really a special-use time zone). Pick a geographic zone...
-
07:51 AM Bug #7089: Opposite of + or - is occurring when selecting time zone
- Just so I can be clear, you're saying the intended behavior is that - is + and + is minus? Every other device I've ev...
-
06:01 AM Bug #7089 (Feedback): Opposite of + or - is occurring when selecting time zone
- Changes were added to let user know about how it works, as proposed by Phil.
-
12:59 AM Bug #7089: Opposite of + or - is occurring when selecting time zone
- Suggested enhancement to UI:
https://github.com/pfsense/pfsense/pull/3354 -
08:51 AM Bug #6936: OpenVPN client boot race causes intermittent dependent rule failure.
- There is a good chance this has been fixed by #6132 so it's worth trying on a current 2.4 snapshot.
-
08:43 AM Bug #6936: OpenVPN client boot race causes intermittent dependent rule failure.
- Gavin
Have you retested on a recent 2.4 snap? - 07:20 AM Revision 0436b9a5: Redmine #7089 Add extra help about timezone
- We could also add some text like this to encourage users to choose the "Continent/City" time zones.
-
06:32 AM Bug #7090 (Not a Bug): Firewall rule is ignored when action is pass
- Configuration error. Post on the forum for discussion.
-
12:17 AM Revision 1794ecbb: Handle the RA Search Domain List when writing out the RADVD config. Fixes #7081
01/05/2017
-
11:38 PM Bug #7089: Opposite of + or - is occurring when selecting time zone
- Also, 99.9% of users should be selecting a timezone based on a continent/city in their area. This makes summer time c...
-
11:21 PM Bug #7089: Opposite of + or - is occurring when selecting time zone
- https://en.wikipedia.org/wiki/Tz_database#Area
"The special area of "Etc" is used for some administrative zones, par... -
08:22 PM Bug #7089: Opposite of + or - is occurring when selecting time zone
- Oh and Yes, the time is also incorrect not just the + and the -
-
08:09 PM Bug #7089 (Resolved): Opposite of + or - is occurring when selecting time zone
- I select ETC/GMT-5 on the web interface, and typing 'date' in shell shows the opposite, +5. I changed to -4, it went ...
-
11:21 PM Bug #7090 (Not a Bug): Firewall rule is ignored when action is pass
- Hi,
I've got a firewall rule that reads:
States Protocol Source Port Destination Port Gateway Queue Schedule De... -
11:18 PM Revision 80e7011f: Return partial MAC address matching support to is_macaddr(). Fixes #7088
-
06:30 PM Bug #7081 (Feedback): Search Domains not populating from RA using SLAAC
- Applied in changeset commit:1794ecbb8b37fc97bd1d2fe6ab7ecc19d87a9a68.
-
10:45 AM Bug #7081: Search Domains not populating from RA using SLAAC
- The field "radomainsearchlist" in the GUI is not referenced anywhere in the backend. Needs some research/testing
-
10:40 AM Bug #7081 (Resolved): Search Domains not populating from RA using SLAAC
- When I enter nameservers in the DNS list for Router Advertisements in unmanaged mode the client will populate with th...
-
05:30 PM Bug #7088 (Feedback): DHCP does not accept input into MAC Control Fields.
- Applied in changeset commit:80e7011fddd29a387c4c84b68c8c49dce4494729.
-
05:19 PM Bug #7088: DHCP does not accept input into MAC Control Fields.
- This affects the main DHCP settings page not just the pools
is_macaddr() lost its $partial parameter/support require... -
04:15 PM Bug #7088 (Confirmed): DHCP does not accept input into MAC Control Fields.
-
04:03 PM Bug #7088 (Resolved): DHCP does not accept input into MAC Control Fields.
- "If a mac allow list is specified, it must contain only valid partial MAC addresses."
Attempted input (I also trie... -
05:21 PM Revision 1d3fbcc7: Remove redundancy, more indentation cleanup
-
05:19 PM Revision 47f96785: Captive portal: make captiveportal_disconnect_all() faster
- captiveportal_disconnect_all() removes the users one at a time and in some cases, when many hundreds of users are con...
-
04:35 PM Revision bbb28670: Corrected indentation style
-
04:09 PM pfSense Packages Bug #7087 (Rejected): DNSBL service does not start
- Is pfBlocker actually installed, enabled, and properly configured?
Please post on the forum in the pfBlockerNG boa... -
03:51 PM pfSense Packages Bug #7087: DNSBL service does not start
- Other errors:...
-
03:48 PM pfSense Packages Bug #7087 (Rejected): DNSBL service does not start
- Noticed this while configuring 2.4. dnsbl service does not start, and the .pid file has no value.
- 02:14 PM Revision ea02e3cf: Completes fix for #6972
-
01:10 PM Bug #7053 (Resolved): OpenVPN Client Specific Overrides - GUI Omissions and Errors
- 12:47 PM Revision e551eed0: Correctly report unmonitored gateway status
- If an alternate monitor IP has been entered and saved, then the user
checks "Disable Gateway Monitoring" and saves, t... -
12:47 PM Revision b6a107ac: Merge pull request #3353 from phil-davis/gw_status_umonitored
-
12:44 PM Revision 46237e23: get_pkg_info() fallback using pkg info if no local copy of repo catalog
- *Current behaviour*
At the moment, get_pkg_info() is used to get all information on packages. The parameter _$local... -
12:44 PM Revision e47af756: get_pkg_info() fallback using pkg info if no local copy of repo catalog
- *Current behaviour*
At the moment, get_pkg_info() is used to get all information on packages. The parameter _$local... -
12:37 PM Bug #7086 (Resolved): stale zfs file systems
- I am not sure if this is a bug or a feature. Seems the 'Auto install'-values are used from the native FreeBSD while p...
-
12:29 PM Feature #7085 (New): Edit Firewall Rules Seperator
- Once a Firewall Rule Separator is added you cannot edit it. You have to delete and add it again to make any changes.
-
12:02 PM Todo #7084 (Resolved): Intel IEEE 802.11ac wireless network driver
- Hey folks,
I wonder if it would be possible to include the if_iwm.ko and related firmware .kos. They are new as of... -
11:35 AM Bug #7083 (Resolved): Put back some visual hint for required fields
- Pretty sure the convention was that the @<fielddescr>@ for a @<required/>@ field was shown in bold in pfSense before ...
-
11:15 AM Bug #7082: pkg_edit.php - impossible to use default_value with rowhelperfield
- I'm kinda unsure that the <default_value> works like that even for non-rowhelperfield fields. :-) What I see in packa...
-
11:04 AM Bug #7082: pkg_edit.php - impossible to use default_value with rowhelperfield
- I will investigate.
I presume the desired functionality is that if the element has no current (stored) value, the ... -
11:00 AM Bug #7082 (New): pkg_edit.php - impossible to use default_value with rowhelperfield
- I mean, things like:...
-
10:52 AM Bug #5673: pkg_edit - Rowhelper descriptions are not printing
- So, is it possible to have the @<description>@ tag printed somehow? (As a hover on the @<fielddescr>@ or whatever?) W...
-
10:48 AM Bug #6972 (Resolved): "Are you sure you wish to?" prompts and other issues with deleting networks from network-type aliases
-
10:34 AM Bug #6972: "Are you sure you wish to?" prompts and other issues with deleting networks from network-type aliases
- Looks all good here. Thanks. ;)
-
08:15 AM Bug #6972: "Are you sure you wish to?" prompts and other issues with deleting networks from network-type aliases
- Fixed. Please retest.
-
10:45 AM Bug #7080 (Resolved): pkg_edit.php - rowhelper fielddescr disappears when last row is deleted
-
10:38 AM Bug #7080: pkg_edit.php - rowhelper fielddescr disappears when last row is deleted
- Well, this was apparently another manifestation of Bug #6972. The issue seems gone with ea02e3cf5d54c9f1ebbe09d9fa552...
-
08:25 AM Bug #7080 (Feedback): pkg_edit.php - rowhelper fielddescr disappears when last row is deleted
- Unable to reproduce with Safari, Firefox or Chrome. Am I doing something wrong?
!rowhelper.gif! -
08:10 AM Bug #7080 (Resolved): pkg_edit.php - rowhelper fielddescr disappears when last row is deleted
- An example: https://github.com/pfsense/FreeBSD-ports/blob/devel/www/pfSense-pkg-squid/files/usr/local/pkg/squid_rever...
-
10:38 AM Bug #7050: Limiter with PFsense 2.4 transparent proxy
- yeah, sort of. this is a fallout of 4326 not being properly tested under all conditions (nat, binat and rdr) - they ...
-
08:00 AM Feature #7077: Display negotiated data encryption algorithm in OpenVPN connection status
- "verbosity 4"? As in the system logs? Sure, it's in the logs, sure, but scraping logs isn't proper status output. It ...
-
07:52 AM Feature #7077: Display negotiated data encryption algorithm in OpenVPN connection status
- Their initial reply is that it's available if you use verbosity 4... which is correct, but not entirely useful. I'm a...
- 07:57 AM Revision 0c5d4e8d: Correctly report unmonitored gateway status
- If an alternate monitor IP has been entered and saved, then the user
checks "Disable Gateway Monitoring" and saves, t... -
07:49 AM pfSense Packages Bug #6950 (Resolved): Auto Config Backup always reports success
-
04:04 AM pfSense Packages Bug #6950: Auto Config Backup always reports success
- Works (at least for cases where write_config() returns false, and there's not really much else that could be done here.)
-
07:20 AM Bug #7033: Hidden rule break the policy routing
- Jim Pingle wrote:
> Duplicate of #1136
>
> If you must have a second gateway on WAN, add floating rules to match ... -
06:17 AM pfSense Packages Feature #6951 (Resolved): Disable Auto Config Backup without uninstalling
-
04:01 AM pfSense Packages Feature #6951: Disable Auto Config Backup without uninstalling
- Merged and works, can be closed.
-
03:09 AM Revision cd45956e: Fix label for consistency.
-
03:04 AM Revision 09b2a4ce: Merge pull request #3351 from phil-davis/patch-2
- 03:03 AM Revision 383bbc17: vpn_openvpn_client comment typo
- Same stuff was copied here
-
03:01 AM Revision 531c3486: Correct the method used for input validation of NTP Orphan mode. Fixes #7034
- 02:55 AM Revision c6945de7: Merge pull request #3350 from phil-davis/patch-1
- 02:52 AM Revision 20fb094c: vpn_openvpn_server comment typo
-
01:51 AM Revision b6dd335e: Fix up OpenVPN CSC page help text, add IPv6 tunnel network. Fixes #7053
01/04/2017
-
11:16 PM pfSense Packages Todo #7055: Update OpenVPN Client Export package with OpenVPN 2.4
- I just pushed this to 2.3.3 as well for more testing.
-
07:58 AM pfSense Packages Todo #7055: Update OpenVPN Client Export package with OpenVPN 2.4
- A new version of OpenVPN client export for pfSense 2.4 with OpenVPN 2.4 is up now for testing.
Key changes:
* Ope... -
10:50 PM Bug #6962 (Resolved): GUI allows selecting missing diffe-helman Paremeters for OpenVPN
- I fixed this up among the other OpenVPN improvements this week.
-
09:15 PM Revision d31a02b8: Fix a probably copy/paste error
-
09:14 PM Revision a1650bb7: Fix a probably copy/paste error
-
09:14 PM Revision 5fbb0cd7: As done on OpenVPN Server, delete tunnel when dev_mode changes so new device is created accordingly
-
09:14 PM Revision 21504a52: As done on OpenVPN Server, delete tunnel when dev_mode changes so new device is created accordingly
-
09:11 PM Revision 16fbe9b7: change as commented and remove redundant help text
-
09:10 PM Todo #7054 (Resolved): Update OpenVPN to 2.4.0
-
09:10 PM Bug #7034 (Feedback): NTP Orphan Mode stratum setting is not displayed in input field
- Applied in changeset commit:531c348639adb8b7e7d190e8fdab709fea61f61a.
-
09:00 PM Bug #7034 (Confirmed): NTP Orphan Mode stratum setting is not displayed in input field
- Yep, something isn't quite right with how it's doing validation.
-
03:45 PM Bug #7034: NTP Orphan Mode stratum setting is not displayed in input field
- I just tested it with the current nightly (@2.4.0-BETA (amd64) built on Wed Jan 04 13:38:53 CST 2017; FreeBSD 11.0-RE...
-
09:06 PM Revision 3b1642ff: Destroy tun/tap device when delete OpenVPN tunnel
-
09:06 PM Revision 9272a448: Remove unnecessary reference
-
09:06 PM Revision d37d7c3a: Fix conditional to work as expected when $id == 0
-
09:06 PM Revision 65bb2289: Remove unnecessary reference
-
09:06 PM Revision 99969821: Fix conditional to work as expected when $id == 0
- 08:57 PM Revision b191e31e: No longer add "null" to the selector when clicking a blank area
- 08:57 PM Revision 54c90c35: Minor help text change
-
08:55 PM Revision a0052ea3: left label as comment above
-
08:53 PM Revision 636a410c: Remove direct calls to /sbin/ifconfig destroy by pfSense_interface_destroy()
-
08:53 PM Revision 414aa359: Remove direct calls to /sbin/ifconfig destroy by pfSense_interface_destroy()
-
08:52 PM Revision ef703804: Revert "Destroy tun/tap device when delete OpenVPN tunnel"
- This reverts commit 0a07be0287189cda229fab27ad733e9de3dc12f5.
-
08:52 PM Revision a075265e: Various wording changes
-
08:38 PM Revision 0a07be02: Destroy tun/tap device when delete OpenVPN tunnel
-
08:35 PM Revision 625b688c: Fix NCP breaking save on a new server/client. Ticket #7072
-
08:28 PM Revision e2f0ad13: Some improvements to the NCP validation. Ticket #7072
-
08:00 PM Bug #7053 (Feedback): OpenVPN Client Specific Overrides - GUI Omissions and Errors
- Applied in changeset commit:b6dd335e6b81c89f2e4dd63cbd638853ebe2a275.
-
07:51 PM Feature #7061 (Resolved): OpenVPN 2.4 supports pushing IPv6, allow the GUI to define IPv6 OpenVPN DNS servers to push to clients.
-
07:45 PM Revision fa351dd3: Add NCP options to OpenVPN client. Fixes #7072
-
07:45 PM Revision 9423ff32: Whitespace fixes. Ticket #7072
-
07:34 PM Bug #6099: igmpproxy does not recognize upstream interface
- Is the change also available to 2.3.3 branch ?
-
09:00 AM Bug #6099: igmpproxy does not recognize upstream interface
- Luiz Otavio O Souza wrote:
> Ooops. Sorry for the breakage.
>
> Fixed in the latest version.
>
> Thanks for t... -
05:51 AM Bug #6099 (Resolved): igmpproxy does not recognize upstream interface
-
07:14 PM Feature #7077: Display negotiated data encryption algorithm in OpenVPN connection status
- I'll see what I can do and report back.
-
07:09 PM Feature #7077: Display negotiated data encryption algorithm in OpenVPN connection status
- Nothing in particular comes to mind, it would be nice to see all of the known parameters for connecting clients/serve...
-
06:45 PM Feature #7077: Display negotiated data encryption algorithm in OpenVPN connection status
- Will do. Is there something specific I can ask for over there that would make it easier for you?
-
05:31 PM Feature #7077 (Needs Patch): Display negotiated data encryption algorithm in OpenVPN connection status
- We have no way to detect that currently. OpenVPN does not report that in any of their status output. Open a feature r...
-
03:59 PM Feature #7077 (Resolved): Display negotiated data encryption algorithm in OpenVPN connection status
- NCP is great. Not knowing what cipher NCP negotiated is less great.
It would be excellent to add something on the... -
07:13 PM Revision a095e8b2: Load current saved value to display in GUI
-
07:10 PM Revision d66cfa3d: Validate the submitted Encryption Algorithm and NCP Algorithm list. Ticket #7072
-
06:58 PM Revision a5978b9a: Server side validation and description amendment
-
06:57 PM Revision c73367d2: Add backend support to OpenVPN for NCP. Ticket #7072
-
06:55 PM Revision 280f0009: Set default in 'else' of if block
-
06:48 PM Bug #7079 (Closed): ClamAV C-ICAP causing Kernel Panic and System Crash
- Running ClamAV causes sporadic kernel panics and resets with the following syntax:...
-
06:44 PM Feature #7078: Allow reordering of client specific overrides in OpenVPN
- Organization, primarily. I have about 100 of them which are are generally speaking associated with different sites. I...
-
05:27 PM Feature #7078: Allow reordering of client specific overrides in OpenVPN
- For what purpose? They are all mutually exclusive.
-
05:02 PM Feature #7078 (New): Allow reordering of client specific overrides in OpenVPN
- It would be useful to rearrange the client specific overrides in OpenVPN.
-
06:36 PM Revision 9d773c17: Fix NCP defaults when editing an OpenVPN server, some help changes/fixes for NCP as well.
-
06:22 PM Feature #7072 (Resolved): vpn_openvpn_server.php / vpn_openvpn_client.php : Add controls to OpenVPN for Negotiable Crypto Parameters
- Looks good
-
04:26 PM Feature #7072 (Feedback): vpn_openvpn_server.php / vpn_openvpn_client.php : Add controls to OpenVPN for Negotiable Crypto Parameters
- Fixed
-
03:38 PM Feature #7072 (Assigned): vpn_openvpn_server.php / vpn_openvpn_client.php : Add controls to OpenVPN for Negotiable Crypto Parameters
- There's one little problem left with the NCP list control. Clicking in empty area on the right side adds a "null" ent...
-
01:50 PM Feature #7072 (Feedback): vpn_openvpn_server.php / vpn_openvpn_client.php : Add controls to OpenVPN for Negotiable Crypto Parameters
- Applied in changeset commit:fa351dd3c13e65dfabfb0f2ac2ed72b332276892.
-
01:12 PM Feature #7072: vpn_openvpn_server.php / vpn_openvpn_client.php : Add controls to OpenVPN for Negotiable Crypto Parameters
- See also:
* commit:bd07fbdb4b81fc358b8fa55b06469dde7a3870df
* commit:6c00adf3316d2c5214f7e9cf2e5f138c32845d58
* co... -
06:17 PM Revision 6c00adf3: Fix copy/paste error
-
06:16 PM Revision d6c4d9a0: Fix ntp gps status
- - trim sat in use
- gps ok for GPGLL
- lat & lon direction for GPGGA & GPGLL
- sat in use text position fixed
(cherr... -
06:16 PM Revision 03faed2b: Merge pull request #3326 from jskyboo/master
- 06:12 PM Revision bd07fbdb: Partial solution to #7072
- Requires "Back-end" stuff to actually use this, and should be copied to the client page too
-
04:37 PM Revision 414d2720: Captive portal: rework logging and RADIUS accounting when disabling a zone or rebooting
- Make captiveportal_radius_stop_all() log the disconnections in the system log and fix it so that it works with the zo...
-
04:36 PM Revision 364d473b: Merge pull request #3315 from plumbeo/accounting-on-disable-reboot
-
04:25 PM Revision 8ebf7ce7: Captive portal: use locking to avoid race conditions between rc.prunecaptiveportal and captiveportal_disconnect_all()
- Convert rc.prunecaptiveportal to lock()/unlock()/try_lock() and use the lock to ensure that there aren't race conditi...
-
04:25 PM Revision 2795722b: Captive portal: work around race condition between captiveportal_disconnect_all() and captiveportal_prune_old()
- Captiveportal_disconnect_all() loops through the active users and disconnects them immediately but doesn't remove the...
-
04:24 PM Revision 91ba532c: Merge pull request #3316 from plumbeo/fix-disconnect-all
- 04:17 PM Revision 7f799b0b: Make appropriate success or danger boxes in system_crlmanager
- When there is a problem, the messages should be in a "danger" box.
Note: It is a bit difficult to actual get the dang... -
04:17 PM Revision 9622df3f: Merge pull request #3348 from phil-davis/patch-2
- 04:15 PM Revision 0349ebaa: Remove unused print_info_box($savemsg)
- These are files that make no use of $savemsg.
May as well remove the print_info_box($savemsg) to avoid future
confusi... -
04:15 PM Revision 65c02630: Merge pull request #3349 from phil-davis/unused_savemsg
-
04:08 PM Revision 6b680dac: dyndns.class, fix json curl body parsing for Cloudflare by not including headers
- (cherry picked from commit 15dcf1320c08eb9339eda3e6fdf04599c51694b7)
-
04:08 PM Revision b628775d: Merge pull request #3342 from PiBa-NL/dyndns.class_json_body
-
04:07 PM Revision 8323e1d7: Change wording
- (cherry picked from commit 6c1e85e544814d336b47fbc782a6aff77ea7301f)
-
04:07 PM Revision ff2c0021: Update format
- (cherry picked from commit 3d116b5c8d5c6474821d3a6607f9fa929df2f481)
-
04:07 PM Revision 1d0322b5: Improve Unbound forwarding mode description
- Make this consistent with System - General Setup - DNS Server Settings.
(cherry picked from commit 58523c575f9d075f0a... -
04:07 PM Revision 9e0fab88: Improve - System - General - DNS Server Settings descriptions
- - Add missing DNS Resolver references
- Nuke PPTP VPN mentions
- Use letter case consistently.
The "Disable DNS Forw... -
04:07 PM Revision c1510eda: Merge pull request #3338 from doktornotor/patch-1
- 04:05 PM Revision 930b2110: firewall_rules_edit stop Floating field displaying
- Seems to fix https://redmine.pfsense.org/issues/7057
But I have not looked underneath the hood - just copied the way ... -
04:05 PM Revision 956be41c: Merge pull request #3329 from phil-davis/patch-1
- 03:48 PM Revision 23bd0f9d: Added support for CloudFlares Proxy.
- Included a checkbox to enable and disable this feature when CloudeFlare
type is selected.
Included proxied variable i... -
03:48 PM Revision 901acd1f: Merge pull request #3132 from WorldTech-Solutions/master
-
02:37 PM Bug #6972: "Are you sure you wish to?" prompts and other issues with deleting networks from network-type aliases
- To reproduce:
1/ Edit some alias
*2/ Add some rows*
3/ Now, try to delete them (or the previously existing rows)... -
02:33 PM Bug #6972: "Are you sure you wish to?" prompts and other issues with deleting networks from network-type aliases
- I am unable to reproduce this in the updated version. Clicking the trash can icon previously did not delete for me, b...
-
02:08 PM Bug #6972 (Assigned): "Are you sure you wish to?" prompts and other issues with deleting networks from network-type aliases
-
01:35 PM Bug #6972: "Are you sure you wish to?" prompts and other issues with deleting networks from network-type aliases
- OK, got to testing. As a good news, the annoying prompt is gone. The second symptom (unable to delete added rows when...
-
01:53 PM Revision f69e098f: Fix #7074: Fix automatic port number guessing
- Rework openvpn_port_used() to take care of following conflicts after
ticket #7062 was committed:
* "UDP" is dual sta... -
01:40 PM Revision feec858c: Remove this extra comma. It's not causing a syntax error but it's also not necessary.
-
01:07 PM Revision 32771b5a: Rework openvpn_vpnid_next() and remove duplicated code
-
01:07 PM Revision 65d0277d: Rework openvpn_vpnid_next() and remove duplicated code
-
12:14 PM Bug #7074 (Resolved): Due to OpenVPN protocol selection changes, automatic port number guessing/adjustment is not working
- I tried a few combinations and it all worked. Creating a new instance or using the wizard properly guessed the next h...
-
08:00 AM Bug #7074 (Feedback): Due to OpenVPN protocol selection changes, automatic port number guessing/adjustment is not working
- Applied in changeset commit:f69e098f41bb3937b244b557969009535a911ef4.
-
06:48 AM Bug #7074: Due to OpenVPN protocol selection changes, automatic port number guessing/adjustment is not working
- I'll work on it
-
12:13 PM pfSense Packages Bug #6527 (Feedback): Squid 3.5 - Deprecated "ssl_bump server-first all" don't allow SNI in transparent mode with HTTPS/SSL Interception
- PR has been merged to 2.4.0 and 2.3.3 snapshots
-
11:32 AM Feature #7071 (Resolved): Add TLS Encryption (--tls-crypt) as an optional TLS Key usage type for OpenVPN 2.4
- Works
-
11:24 AM Revision c6aca57d: Remove duplicated if block
-
10:54 AM Bug #7076 (Duplicate): Packets accepted by IP but rejected because "Allow IP options" is disabled are not logged
- Hi,
I added a rule to allow multicast traffic by IP without "Allow IP options" enabled (because I did not yet know... -
10:46 AM Bug #6906 (Resolved): Issues with /tmp and /var in RAM on 2.4
- Works fine on two different systems here, thanks!
-
08:13 AM Bug #6906 (Feedback): Issues with /tmp and /var in RAM on 2.4
- The issue was happening on ZFS and should be fixed after commit:b712dd529e2445fc20e983815a80a4e8ea109760
-
10:19 AM Bug #5993: dhcp6c not started until an RA received
- OK, had a look around that bit of code. This is what I have found:
1. RTSOLD still launches multiple dhcp6c client... -
02:41 AM Bug #5993: dhcp6c not started until an RA received
- The dhcpc before RA was originally my fix for an issue we have with Sky ISP in the U.K. I got very busy with work and...
-
09:55 AM Bug #6856 (Duplicate): "Force Config Settings" buton on master causes slave to loss IP alises on lo0
- Duplicate of #7010 which is already fixed.
- 09:52 AM Revision 24a4f2ef: Remove unused print_info_box($savemsg)
- These are files that make no use of $savemsg.
May as well remove the print_info_box($savemsg) to avoid future
confusi... - 09:45 AM Revision 61d1ca3e: Make appropriate success or danger boxes in system_crlmanager
- When there is a problem, the messages should be in a "danger" box.
Note: It is a bit difficult to actual get the dang... -
02:35 AM Revision b743ea87: Add some more help text to OpenVPN pages.
-
01:14 AM Bug #4310: Limiters + HA results in hangs on secondary
- Dear Luiz! Can we expect real fix in 2.4? We are waiting for it too long, and this is a really critical problem, sinc...
-
12:42 AM Revision cc38ae2d: Build net-snmp for experimentation purposes.
01/03/2017
-
11:31 PM Revision 4034876f: Fix indentation
-
11:30 PM Bug #7050: Limiter with PFsense 2.4 transparent proxy
- Luiz Otavio O Souza wrote:
> The issue here is limiter (dummynet) and pf redir on the same interface.
> The transpa... -
05:45 PM Bug #7050 (Confirmed): Limiter with PFsense 2.4 transparent proxy
- The issue here is limiter (dummynet) and pf redir on the same interface.
The transparent proxy adds a rdr rule to ... -
11:24 PM Revision 79e18c9f: Merge branch 'master' into reverting
-
11:23 PM Revision 47ec605d: Enable setting auth refresh time in GUI
-
11:16 PM Revision 457c4151: GUI auth refresh timer preference
-
11:06 PM Revision 6240c8fe: Override default timer if set in system config
-
10:26 PM Revision 02b8b883: Cache authentication for a short time
- Currently there is an authentication lookup for every GET; a single page load can cause dozens of lookups and hundred...
-
10:18 PM Revision 745b8095: Cache authentication for a short time
- Currently there is an authentication lookup for every GET; a single page load can cause dozens of lookups and hundred...
-
09:23 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- I also see this on Hyper-V virtual NICs (not legacy). Perhaps this is a more generalized issue?
-
05:14 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- This appears to be caused by r263259 in FreeBSD 11 - Add Tx/Rx multiqueue support to vmx(4).
I believe that ALTQ d... -
08:59 PM Revision 9416a5a3: SESSION remembers authentication instead of checking for every HTTP request
-
08:52 PM Revision b399d623: SESSION remembers authentication instead of checking for every HTTP request
-
05:46 PM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- I was just hit by this as well. In my case I am preparing to replace a device at a remote site. I used pfsense's rest...
-
04:47 PM Revision 4cfd15a9: Replace "client-cert-not-required" with "verify-client-cert none". Fixes #7073
-
04:44 PM Bug #6099: igmpproxy does not recognize upstream interface
- No problem, sh** happens ;-)
I updated my box today to version 2.4.0.b.20170103.0147.
Checked igmpproxy for new b... -
03:39 PM Revision b8b6a303: Add some help text to OpenVPN client/server for encryption and auth digest.
-
03:29 PM Revision c854afcc: Add --tls-crypt support for OpenVPN servers and clients. Implements #7071
-
02:27 PM Revision b712dd52: Make sure ZFS partiion is mounted read-write before try to change items in filesystem
-
01:50 PM Revision 23adb26d: Break some long lines, no functional changes
-
01:39 PM Revision 858e0d8d: Rework logic and reduce indent levels. No functional changes
-
01:34 PM Revision 3a92e10c: Fix #6357: Validate if RFC2136 dyndns updates succeeded
-
01:34 PM Revision 3bfb38f9: Fix #6357: Validate if RFC2136 dyndns updates succeeded
-
01:03 PM pfSense Packages Bug #6987: ntopng needs Google API key for GeoIP map
- It is working on 2.3.3 snapshots as well.
-
11:21 AM pfSense Packages Bug #6987: ntopng needs Google API key for GeoIP map
- Thanks, that's the information I was missing.
-
08:29 AM pfSense Packages Bug #6987: ntopng needs Google API key for GeoIP map
- ntopng 2.4 is available on pfSense 2.4, and it works there. If/when the package is updated on other branches it will ...
-
08:16 AM pfSense Packages Bug #6987: ntopng needs Google API key for GeoIP map
- The bug referenced the need for ntopng version 2.4 to resolve the problem, so why is it being closed when version 2.2...
-
05:28 AM pfSense Packages Bug #6987 (Closed): ntopng needs Google API key for GeoIP map
-
03:46 AM pfSense Packages Bug #6987: ntopng needs Google API key for GeoIP map
- Apparently no patching required with ntopng-2.4.2016.10.14 - you can configure the API key in Preferences - Users - G...
-
11:53 AM Bug #7075 (Resolved): firewall states show negative value for total bytes processed
- As seen in the screenshot, the "Firewall >> Rules >> LAN" page shows a negative number for total bytes processed by a...
-
11:42 AM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- According to this
https://lists.freebsd.org/pipermail/freebsd-net/2013-May/035564.html
Script that can solve CPU 1... -
11:10 AM Bug #7073 (Resolved): OpenVPN 2.4: client-cert-not-required is deprecated, replace with "verify-client-cert none"
- Works
-
11:10 AM Bug #7073 (Feedback): OpenVPN 2.4: client-cert-not-required is deprecated, replace with "verify-client-cert none"
- Applied in changeset commit:4cfd15a94a97445d1334ad87bddf0c3700f74bf2.
-
10:38 AM Bug #7073 (Resolved): OpenVPN 2.4: client-cert-not-required is deprecated, replace with "verify-client-cert none"
- In OpenVPN 2.4 "client-cert-not-required" is deprecated, the new functional equivalent directive is "verify-client-ce...
-
11:10 AM Bug #7068 (Resolved): Prevent GCM encryption from being selected for Shared Key modes in OpenVPN
- Works
-
11:09 AM Feature #7064 (Resolved): Add LZO4 options for OpenVPN 2.4
- Seems to work in every combination I've thrown at it.
-
10:58 AM Bug #7074 (Resolved): Due to OpenVPN protocol selection changes, automatic port number guessing/adjustment is not working
- After the protocol selection changes needed for #7062, the OpenVPN server page is not adjusting the port numbers like...
-
09:56 AM Feature #7072 (Resolved): vpn_openvpn_server.php / vpn_openvpn_client.php : Add controls to OpenVPN for Negotiable Crypto Parameters
- OpenVPN 2.4 automatically attempts to negotiate crypto between the client and server, due to this, the tunnel can end...
-
09:40 AM Feature #7071 (Feedback): Add TLS Encryption (--tls-crypt) as an optional TLS Key usage type for OpenVPN 2.4
- Applied in changeset commit:c854afcc3d7830414a2514a640248a5b239569a3.
-
09:27 AM Feature #7071 (Resolved): Add TLS Encryption (--tls-crypt) as an optional TLS Key usage type for OpenVPN 2.4
- OpenVPN 2.4 added --tls-crypt which works similar to --tls-auth, but also encrypts the control channel. It does not r...
- 08:20 AM Revision 3cb0c7c3: vpn_ipsec_settings - do not redirect on save
- When the user presses save, and there are no input errors, the data is
saved - good. But the page redirects away to i... - 08:16 AM Revision 32973108: Ignore return from system_syslogd_start
- system_syslogd_start returns the retrn value from mwexec_bg, which is
the PID of the background process. It is not an... -
08:00 AM Bug #6357 (Feedback): Dynamic DNS (RFC2136) updates always considered successful
- Applied in changeset commit:3bfb38f99cd1c15b5d502b3dbabc913226550d9c.
-
07:24 AM Bug #6357 (Assigned): Dynamic DNS (RFC2136) updates always considered successful
-
05:30 AM Todo #7054 (Feedback): Update OpenVPN to 2.4.0
- Basic updates are complete, now dealing with specific changes in separate tickets
-
05:26 AM Bug #7070 (Duplicate): Sync username for xmlrmc seems considerate
- Already fixed on 2.4.0 - see #809
-
05:01 AM Bug #7070 (Duplicate): Sync username for xmlrmc seems considerate
- On master I do the folowing configuration:
!pfsense.png!
I have the folowing log on master :
@/rc.filter_sync... - 05:05 AM Revision 44c42356: Report problems applying changes
- 1) Strictly keep track of the accumulating $retval from calls to various
functions that apply changes.
2) Use new fun... -
03:49 AM pfSense Packages Bug #7067: usbhid-ups - no such file or directory
- There is no such thing needed, simply reboot after installing the package.
-
03:35 AM Revision 46c06ade: Fix typo. Ticket #7068
-
03:29 AM Feature #7069: Provide knob to disable state display in Diagnostics > States until a filter has been submitted.
- https://github.com/pfsense/pfsense/pull/3344
-
12:53 AM Feature #7069 (Resolved): Provide knob to disable state display in Diagnostics > States until a filter has been submitted.
- Diagnostics > States becomes cumbersome on systems with large state tables. Provide a mechanism to suppress the displ...
-
03:18 AM Revision c13c0fd0: Reject the invalid OpenVPN combination of static key + GCM. Fixes #7068
-
02:24 AM Revision a4b36246: Bring compression options in line with OpenVPN 2.4. Note that the old style options are deprecated/legacy but don't remove yet, for compatibility. Implements #7064
-
12:10 AM Feature #2358: NAT64 support
- UPVOTE!
First of all, thank you for the great open source firewall product. As Apple starts to require all the new...
01/02/2017
-
09:48 PM Bug #6906 (Assigned): Issues with /tmp and /var in RAM on 2.4
- On a freshly installed VM I activated the option and when it rebooted, it came up all the way but it shows no package...
-
09:20 AM Bug #6906 (Feedback): Issues with /tmp and /var in RAM on 2.4
- I've used wrong ticket # in commit log. Relevant commits are:
commit:9bf6cdc135ddf108bc08f048687130c09cd09f4b and ... -
09:20 PM Bug #7068 (Feedback): Prevent GCM encryption from being selected for Shared Key modes in OpenVPN
- Applied in changeset commit:c13c0fd0fe547fa8e35997d7ede7f8a6b33088fa.
-
09:18 PM Bug #7068 (Resolved): Prevent GCM encryption from being selected for Shared Key modes in OpenVPN
- OpenVPN 2.4 supports GCM encryption but it cannot be used in Shared Key mode. If you attempt to activate it, OpenVPN ...
-
08:30 PM Feature #7064 (Feedback): Add LZO4 options for OpenVPN 2.4
- Applied in changeset commit:a4b3624650aa46c9dc4a20afc5b522c6b9191904.
-
08:11 PM Bug #1994 (Rejected): Remove priority on HFSC
- HFSC support priorities just as any other scheduler:
hfsc Hierarchical Fair Service Curve. Queues attached ... -
09:20 AM Bug #1994: Remove priority on HFSC
- Is there any possibility to change the target to 2.4.1?
Or... just fix it somebody, please :) -
06:52 PM Revision c66990a8: Fix up and enchance the help text for DH parameters, point to the doc wiki for info on how to generate new ones. Also add help text for ECDH Curve. #7063
- 05:28 PM Revision 9187d6f7: Change "privilege" to "access"
- in various text to make it read better
-
05:17 PM Revision 2906d139: Fix printing of local/remote host in OpenVPN status for Client Instances. If the client was not connected it was printing a ":" and nothing else in the field which was odd/confusing. Ticket #2766
- 04:36 PM Revision d9f1170e: Fixed #6972
- I was only able to reproduce tis issue using Chrome, but it should now be resolved
- 04:34 PM Revision fab3c245: Fixed #6972
- I was only able to reproduce tis issue using Chrome, but it should now be resolved
- 03:56 PM Revision 21312954: Use admin rather than root in UI text
-
03:28 PM Revision 6c1e85e5: Change wording
-
03:27 PM Revision 3d116b5c: Update format
- 03:16 PM Revision 24318185: Revert "Theoretical fix for #6972"
- This reverts commit 335e63d66ce8af690d1a144d4ec6b385cbe39af4.
- 03:10 PM Revision 8ccb89f5: Theoretical fix for #6972
-
02:58 PM Revision 3705d263: Ticket #6096: Add PKG_DBDIR and PKG_CACHEDIR to user environment
-
02:57 PM Revision 1494b4fa: Ticket #6096: Remove target before try to move, also use mv -f to avoid human interaction
-
02:55 PM Revision 550a7f4b: Pass specific filename to tar and rm during rrd backup
-
02:55 PM Revision 47158cfa: Check if array key exist before read its value
-
02:55 PM Revision b11f80ae: Fix indent
-
02:54 PM Revision f09aede6: Ticket #6096: Add PKG_DBDIR and PKG_CACHEDIR to user environment
-
02:54 PM Revision 9bf6cdc1: Ticket #6096: Remove target before try to move, also use mv -f to avoid human interaction
-
02:54 PM Revision 64f16544: Pass specific filename to tar and rm during rrd backup
-
02:54 PM Revision dc6d4775: Check if array key exist before read its value
-
02:54 PM Revision cee543b7: Fix indent
-
02:50 PM Revision c3372809: Fix up wording of the DUID option.
-
02:34 PM Revision a5d56253: Merge pull request #3304 from marjohn56/master
-
02:34 PM Bug #7062 (Resolved): OpenVPN 2.4 treats "udp" and "tcp" as dual stack now, move old preference to udp4/tcp4
- OpenVPN's man page and docs say it should work but it tosses an error on the bind directive.
It appears to do the ... -
11:25 AM Bug #7062 (Assigned): OpenVPN 2.4 treats "udp" and "tcp" as dual stack now, move old preference to udp4/tcp4
- This apparently still needs one more change. The IPv6 only modes need:...
-
01:34 PM Revision 80d3effa: Make sure $openvpn_dh_lengths is declared global. Ticket #7065
-
01:29 PM Bug #7057 (Resolved): Hidden field displays in browser
-
01:09 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- For what it's worth, I saw the same behavior with igb interfaces after restoring a 2.3 config with a shaper.
-
09:49 AM Bug #7066 (Resolved): vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Attempting to configure traffic shaping on a pfSense 2.4 VMware VM with vmx NICs results in an error:...
-
12:57 PM Revision af997ff7: Merge pull request #3339 from phil-davis/ovpn
-
12:54 PM Feature #7063 (Resolved): Add OpenVPN 2.4 ECDH options
- I pushed a change with help text for DH & ECDH and also updated the doc wiki a bit: https://doc.pfsense.org/index.php...
-
01:52 AM Feature #7063: Add OpenVPN 2.4 ECDH options
- A little fix in https://github.com/pfsense/pfsense/pull/3340
- 12:00 PM Revision 57188e47: Add security notes for privilege assignment pages
- Suggested solution for Redmine 2247
-
11:39 AM Bug #6099: igmpproxy does not recognize upstream interface
- Ooops. Sorry for the breakage.
Fixed in the latest version.
Thanks for the report. -
11:24 AM Feature #7061: OpenVPN 2.4 supports pushing IPv6, allow the GUI to define IPv6 OpenVPN DNS servers to push to clients.
- Works fine. Client receives IPv6 DNS servers if they are configured.
-
11:19 AM Feature #2766 (Resolved): status_openvpn.php needs IPv6 support
- Works!
- 10:50 AM Revision fafdd8f0: Fix #7059 Set expected icmptypes format
- icmptype is a comma-separated list in the config. When attempting to save, the array in $_POST['icmptype'] needs to b...
-
10:50 AM Revision 8db81fbc: Merge pull request #3334 from phil-davis/patch-2
- 10:45 AM Revision b961bc23: Remove redundant gettext() in firewall_rules_edit
- The 'helpmsg' here is already translated with gettext() when the 'helpmsg' array entries are set up, so IMHO there is...
-
10:45 AM Revision 43d72226: Merge pull request #3336 from phil-davis/patch-4
- 10:44 AM Revision c603ead7: firewall_rules_edit whitespace
- (cherry picked from commit da391430080cb0e1b2054c6f676c9c678164f957)
-
10:44 AM Revision 6c536f39: Merge pull request #3335 from phil-davis/patch-3
-
10:42 AM pfSense Packages Bug #7067 (Closed): usbhid-ups - no such file or directory
- After installing NUT and connecting a generic (Costco) CyberPower UPS, I receive the following error in the log:
u... - 10:42 AM Revision 2025ba8c: Standardize privilege name capitalization
- While looking at some privilege stuff, I noticed that various
capitlization looked inconsistent down the list. This m... -
10:42 AM Revision 797ca4c7: Merge pull request #3322 from phil-davis/pagenames
-
10:40 AM Bug #6972: "Are you sure you wish to?" prompts and other issues with deleting networks from network-type aliases
- Applied in changeset commit:fab3c245cfb52964cebdab2ea47dddb21731352a.
-
10:37 AM Bug #6972 (Feedback): "Are you sure you wish to?" prompts and other issues with deleting networks from network-type aliases
- I am only able to reproduce this with Chrome but it should now be resolved.
-
10:38 AM Revision bc26d887: Merge pull request #3340 from phil-davis/patch-6
-
09:58 AM Bug #5976 (Assigned): Load cryptodev as a kernel module
- reopening since crypto is not cryptodev. Pointy hat to me
-
09:37 AM Bug #7065 (Resolved): OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
-
08:54 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- Working now.
Thanks again for the quick turnaround.
-
08:27 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- Now it˛`s all good.
Thanks again! -
08:00 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- Yes it's building right now, we restarted the snapshot builds to make sure it gets picked up.
-
07:57 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- Thanks for the quick response on this Jim. I assume another snapshot will hit later this morning or early afternoon?
-
07:50 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- That was probably from before the sync. Clear the error and check again. If you can, reboot and see if the error is g...
-
07:45 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- I just have this now...
Crash report begins. Anonymous machine information:
amd64
11.0-RELEASE-p5
FreeB... -
07:44 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- OK. We will wait for it to show up in snapshots and re-test and then if it's OK there, this can be closed.
-
07:43 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- Yep, all works now.
Thanks! -
07:36 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- I just pushed another change that should help, give it ~5-10 mins to show up on github and then gitsync or apply that...
-
07:34 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- Greg M wrote:
> Ummm I`m on: 2.4.0.b.20170102.0439
> Issue persists.
Try to gitsync with master or wait next sna... -
07:32 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- Ummm I`m on: 2.4.0.b.20170102.0439
Issue persists. -
07:29 AM Bug #7065 (Feedback): OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- This should be fixed by the PR that was merged a short while ago and is already in the latest snapshot. Update to the...
-
07:26 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- I am seeing the same errors as Greg, though I'm using a DH of 4096 instead of 2048.
Problem is still occurring on... -
07:24 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- Forgot to add...
If I use ECDH only it works... -
07:23 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- Hi!
I`m also affected.
First thing:
Crash report begins. Anonymous machine information:
amd64
11.0... -
07:05 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- The only error that could cause the settings to not be written is if you have selected DH parameters that do not have...
-
01:12 AM Bug #7065: OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- First problem I found is if you edit/save a client, it writes the protocol description to the config, rather than the...
-
08:05 AM Bug #7059 (Resolved): firewall_rules_edit.php - strlen error when there are input errors
- Looks good, no more strlen error.
-
04:51 AM Bug #7059 (Feedback): firewall_rules_edit.php - strlen error when there are input errors
- PR has been merged
- 07:48 AM Revision c6668aba: Fix var name cut-paste error in openvpn.inc
- 07:08 AM Revision 128b93e0: OpenVPN Client 2.4 save correct protocol
- This needs to be fixed the same as vpn_openvpn_server.php
-
04:15 AM Bug #5218: CSRF magic modifies content in pfSense interface
- No, it's back again on my installation (2.3.2), in my case while editing php files with embedded html
-
12:24 AM Revision f888c35a: Add OpenVPN ECDH options. Implements #7063
01/01/2017
-
11:34 PM Bug #7065 (Resolved): OpenVPN Server conf files not created in /var/etc after upgrading to 2017.01.01.1906 release
- After upgrading to the latest release (20170101.1906), OpenVPN server conf files are not populated in the /var/etc di...
-
11:09 PM Revision 58523c57: Improve Unbound forwarding mode description
- Make this consistent with System - General Setup - DNS Server Settings.
-
10:42 PM Revision a56e37ca: Improve - System - General - DNS Server Settings descriptions
- - Add missing DNS Resolver references
- Nuke PPTP VPN mentions
- Use letter case consistently.
The "Disable DNS Forw... -
09:47 PM Revision ca366676: Update OpenVPN protocol preferences to match the new behavior of OpenVPN 2.4. Fixes #7062
-
07:31 PM Revision 6a638752: Allow OpenVPN DNS servers for clients to be IPv6 as well as IPv4. Implements #7061
-
06:58 PM Feature #7064 (Resolved): Add LZO4 options for OpenVPN 2.4
- OpenVPN 2.4 added support for LZO4 which gets better performance and consumes less CPU...
-
06:30 PM Feature #7063 (Feedback): Add OpenVPN 2.4 ECDH options
- Applied in changeset commit:f888c35aa25b38cdf5b1a73fc65ed6959451bfe0.
-
06:23 PM Feature #7063 (Resolved): Add OpenVPN 2.4 ECDH options
- OpenVPN 2.4 added two ECDH-related options:
1. Settings "dh" to "none" tells OpenVPN to use only ECDH and not DH
... -
06:03 PM Bug #7057: Hidden field displays in browser
- Using the addGlobal() method is the best way to do this as Phil has demonstrated. That creates a simple input without...
-
05:49 PM Revision 9b3518d0: Print IPv6 addresses in the widget, too. Ticket #2766
-
05:23 PM Revision bffa3185: Show IPv6 for static key servers, too. Fixes #2766
-
04:59 PM Revision cbfd0754: Add IPv6 virtual address to SSL/TLS client output, formatting corrections/enhancement for SSL/TLS client and server. Ticket #2766
-
04:49 PM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- Yup. It'd be awesome if those settings were moved to the relevant place (i.e., DNS forwarder/resolver settings). This...
-
03:29 PM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- That's for the host resolver itself -- dnsmasq and unbound in forwarding mode will pick up more.
-
03:01 PM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- Maybe someone could instead fix/nuke the misleading note from the GUI, instead of putting in more DNS servers that wi...
-
01:00 PM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- this is true add ipv6 and it has even more need
-
04:03 PM Revision 6f17547a: Update OpenVPN SSL/TLS server status to reflect changes in OpenVPN 2.4. Ticket #2766
-
04:00 PM Bug #7062 (Feedback): OpenVPN 2.4 treats "udp" and "tcp" as dual stack now, move old preference to udp4/tcp4
- Applied in changeset commit:ca3666766588538934bedc6933934fbadb9249ef.
-
03:47 PM Bug #7062 (Resolved): OpenVPN 2.4 treats "udp" and "tcp" as dual stack now, move old preference to udp4/tcp4
- OpenVPN 2.4 changed the meaning of "udp" and "tcp" to be dual stack, listening on IPv6 on all interfaces at once. "lo...
-
01:40 PM Feature #7061 (Feedback): OpenVPN 2.4 supports pushing IPv6, allow the GUI to define IPv6 OpenVPN DNS servers to push to clients.
- Applied in changeset commit:6a638752c8a3861a3309c3dc8d557c8904ff84d6.
-
01:31 PM Feature #7061 (Resolved): OpenVPN 2.4 supports pushing IPv6, allow the GUI to define IPv6 OpenVPN DNS servers to push to clients.
- OpenVPN 2.4 supports pushing IPv6, allow the GUI to define IPv6 OpenVPN DNS servers to push to clients.
To me, I h... -
11:58 AM Bug #7036: 2.4 ZFS on RCC-VE 2440 hangs
- I also have the same issue on my RCC-VE 2440. I've tried with both Bios 06 and 08, same issue. It takes 15-20 minut...
-
11:30 AM Feature #2766 (Feedback): status_openvpn.php needs IPv6 support
- Applied in changeset commit:bffa3185a63cbdd727701704d3b82abd7c61a78c.
-
09:16 AM Feature #2766: status_openvpn.php needs IPv6 support
- It's finally there in OpenVPN 2.4!
And since it's caused the status page to report fields incorrectly, it needs to... -
10:31 AM Bug #6340: fsck hangs boot in background, fails to produce any action, resulting in broken firewall
Turn off sync mode.
On a clean system, before an issue crops up. It will let UFS do what it does, and not genera...-
08:00 AM Todo #7060 (Rejected): Logically organise various backup/restore functions?
- We don't like to move things just to move them, unless it's worth updating all of the documentation and other related...
-
07:13 AM Todo #7060 (Rejected): Logically organise various backup/restore functions?
- I'd like to do a quick reorganise of the various backup and restore functions in the GUI. While not a huge problem it...
-
05:32 AM Feature #4632: Support for Multipath TCP (MPTCP)
- Hello,
Could you please add this feature on 2.4.0 version? - 05:16 AM Revision cffe1271: Remove redundant gettext() in firewall_rules_edit
- The 'helpmsg' here is already translated with gettext() when the 'helpmsg' array entries are set up, so IMHO there is...
-
05:11 AM Bug #2247: Misleading security permission
- Next round of possibilities in PR https://github.com/pfsense/pfsense/pull/3337
- 05:09 AM Revision da391430: firewall_rules_edit whitespace
- 04:32 AM Revision 23057964: Fix #7059 Set expected icmptypes format
- icmptype is a comma-separated list in the config. When attempting to save, the array in $_POST['icmptype'] needs to b...
12/31/2016
-
10:33 PM Bug #7059: firewall_rules_edit.php - strlen error when there are input errors
- Try PR https://github.com/pfsense/pfsense/pull/3334
-
09:31 AM Bug #7059 (Resolved): firewall_rules_edit.php - strlen error when there are input errors
- Craft an invalid firewall rule, such as one set for IPv4 with an IPv6 src/dst, and when the input errors are displaye...
- 01:42 PM Revision 48157a04: Standardize privilege name capitalization
- While looking at some privilege stuff, I noticed that various
capitlization looked inconsistent down the list. This m... -
11:42 AM Revision 5e391e58: Improve labels + help text for IPv6 tunneling options
- * Move the help message to be on the group as a whole not just the IP input field
* Clarify the IP field (label state... - 11:25 AM Revision 76895c7f: firewall_rules_edit stop Floating field displaying
- Seems to fix https://redmine.pfsense.org/issues/7057
But I have not looked underneath the hood - just copied the way ... -
07:45 AM Bug #7058: Alias type-checking issues
- You cannot specify either one in the rule directly because it doesn't make sense. Use an alias with mixed contents in...
-
07:31 AM Bug #7058: Alias type-checking issues
- In which case flip the question on-end, why does the code (_firewall_rules_edit.php_) seem to disallow IPv4 and IPv6 ...
-
07:01 AM Bug #7058 (Not a Bug): Alias type-checking issues
- What's the bug here?
pf allows mixed aliases and only uses appropriate addresses when matching. We allow it becaus... -
04:50 AM Bug #7058 (Not a Bug): Alias type-checking issues
- pfSense really needs a more strongly type-checked alias system/API/library.
Current example: often these days a s... -
07:25 AM Bug #6099: igmpproxy does not recognize upstream interface
- edit: 31-12-2016
I've established a working setup, using the develop version, already on theh box.
When I disable... -
05:04 AM Bug #6099: igmpproxy does not recognize upstream interface
- Philipp Haefelfinger wrote:
> Is this commit in the latest build applied? If yes, there seems to be something buggy ... -
07:23 AM Bug #2247: Misleading security permission
- See "PR 3331":https://github.com/pfsense/pfsense/pull/3331 . Note added to assignment pages, probably suffices?
-
05:50 AM Bug #2247: Misleading security permission
- And as soon as you have "Diagnostics->Edit File" you can change whatever code you like, so you can add/modify code to...
-
05:07 AM Bug #2247: Misleading security permission
- I suppose that "WebCfg - All pages" includes shell command prompt, so it's clearly on reflection going to have shell ...
-
05:27 AM Bug #7057: Hidden field displays in browser
- PR https://github.com/pfsense/pfsense/pull/3329
I made the "Floating" field be created with the same construction as... -
03:40 AM Bug #7057 (Resolved): Hidden field displays in browser
- _firewall_rules_edit.php_ on Firefox 50.1, see attached screenshot
Html looks correct (contains "hidden" parameter... -
05:11 AM Bug #2873: IPv6 rules, filter by protocol
- As of 2.3.x the original issue is resolved (it's now allowed/valid) so this issue can be closed as resolved
12/30/2016
-
08:51 PM Bug #6911: no network on hyperv-v 2012 R1
- This is not so easy, there are a lot more relevant commits to MFC, a lot.
-
05:17 AM Bug #6911: no network on hyperv-v 2012 R1
- This seems to be relevant commit - https://svnweb.freebsd.org/base?view=revision&revision=306433
Assign to Luiz for ... -
06:43 PM Bug #7053: OpenVPN Client Specific Overrides - GUI Omissions and Errors
- I think I understand why the text under Remote networks is written the way it is now. Apologies for the misunderstan...
-
06:20 PM Bug #7053: OpenVPN Client Specific Overrides - GUI Omissions and Errors
- All of the settings are from the perspective of the server, even the override. The descriptions reflect this, they do...
-
05:25 PM Bug #7053: OpenVPN Client Specific Overrides - GUI Omissions and Errors
- Jim Pingle wrote:
> The wording of IPv4 Remote Networks is correct. The box defines a client-side network ("routed _... -
10:10 AM Bug #7053: OpenVPN Client Specific Overrides - GUI Omissions and Errors
- OpenVPN 2.4 makes it more obvious that you can't mix static IPv4 in an override with dynamic IPv6, so there is a grea...
-
07:16 AM Bug #7053: OpenVPN Client Specific Overrides - GUI Omissions and Errors
- The wording of IPv4 Remote Networks is correct. The box defines a client-side network ("routed _to_ this client") for...
-
01:59 AM Bug #7053 (Resolved): OpenVPN Client Specific Overrides - GUI Omissions and Errors
- The OpenVPN Client Specific Overrides page under OpenVPN settings only has a single Tunnel Network field. In fact t...
-
02:37 PM Bug #6981: IPv6, rc.newwanipv6, flooding log and resets connection periodically
- Happy to helped. Last good action for 2016.
Happy new year^^ -
12:02 PM Bug #6981: IPv6, rc.newwanipv6, flooding log and resets connection periodically
- It does work for me now - Marcel's hint to check "Request only an IPv6 prefix" was indeed correct. After two more reb...
-
02:17 PM Revision 56110c72: Ticket #7054: Remove tun-ipv6 option, deprecated on OpenVPN 2.4.0 and related GUI knobs
-
02:02 PM Revision 55e0a1a0: Fix IPv4/IPv6 copy paste error in OpenVPN client-specific overrides. Ticket #7053
-
02:02 PM Revision 6bb91e08: Fix IPv4/IPv6 copy paste error in OpenVPN client-specific overrides. Ticket #7053
-
01:54 PM Revision e10a9781: Fix IPv4/IPv6 copy paste error in OpenVPN client-specific overrides. Ticket #7053
-
12:06 PM Revision db058e30: capitalise "Any"
- (cherry picked from commit b1cff5815344220340a218938cd7f3df64687203)
-
12:06 PM Revision 059571c6: "Any" moved to top of list in new blank rules
- @jim-p wanted this split out from PR 3159 as it wasn't related to that PR.
Puts "any" at the logical place people lo... -
12:06 PM Revision 59dc8b6f: Merge pull request #3325 from stilez/patch-51
-
11:54 AM Revision ee781eaa: Remove and replace white spaces
- Safari doesn't seem to have editing issues (or else they very quickly fixed it). Removed all white spaces and re-ent...
-
11:54 AM Revision 3283a412: Put back "any" in same place it came from in dropdown
- (cherry picked from commit 43a0cf73f2c2f951b9a1c5e777551de1b82c25f2)
-
11:54 AM Revision b66bb3ef: revert protocol order change (unrelated to PR)
- Will pu in separate PR afterwards as requested
(cherry picked from commit 86554b5aecb1d219e2f72c97b14de8b5fef495aa) -
11:54 AM Revision a8235a3d: Data sanitation - check IP protocol in form data
- Code doesn't seem to check that IP protocol is valid (IPv4/6/4+6) or report via $input_errors[] if not. Simple fix. O...
-
11:54 AM Revision f2aeaff9: Alternate fix for jim-p's point that seems to resolve everything neatly
- @jim-p commented on the PR that:
> This change is unwarranted. The protocol default should remain TCP, it is set tha... -
11:54 AM Revision ab2822c8: improve CSS handling for icmp types (overflow/table)
- Minor CSS and formatting improvement to layout for icmp types in rules table. With this change, if several icmp types...
- 11:53 AM Revision 744c5ffc: Fix the Safari issue mentioned by @garga
- https://github.com/pfsense/pfsense/pull/3139#pullrequestreview-156718
I ended up having to remove the select element... -
11:53 AM Revision cc20c205: coding layout fix
- (cherry picked from commit 97eebb23531bc95af2cde686641080851107c42c)
-
11:53 AM Revision 6b82964d: remove gettext() not needed
- (cherry picked from commit c7e31e37c1aa0a8e4154528a99a121c46ebf018d)
-
11:53 AM Revision a42dae51: add gettext() to icmptype descriptions
- (cherry picked from commit fa16b2f9c1162ec90bed0099c0ae25e36d9fd9b0)
-
11:53 AM Revision 15ac04da: move implode() to same line as previous change
- (cherry picked from commit 91822dc6d0b829a34254638c5d15db72fe70932d)
-
11:53 AM Revision 82e6451e: simplify avoiding loop. Also localise with gettext()
- (cherry picked from commit 16b91b19e08e0778522c16e811754c22f03b5150)
-
11:53 AM Revision 6ab670c2: Bugfixes
- 1. On creating a new rule, $pconfig['ipprotocol'] is undefined, rather than defaults to what is seen in GUI (IPv4). F...
-
11:53 AM Revision eb4e0aa0: Improve icmptype input sanitising
- (cherry picked from commit 0e782e9f576aee02d4e2e5147e24bc5def261355)
-
11:53 AM Revision 73c57bf4: Enhance ICMP types in rules
- See main PR for details
(cherry picked from commit cf1aaf9c5afcd34ed6d2bebc577fd527c42c80b4) -
11:53 AM Revision 2b451108: Enhance ICMP type handling in rules
- See main PR for details
(cherry picked from commit 7a4b11b6a495ddc747db5e44f5a62891ef86398c) -
11:53 AM Revision 5b39fb10: typo
- (cherry picked from commit 58aa4d7ce3d0c602516e8d7691fc0137b593262c)
-
11:53 AM Revision 02ffc582: Enhance ICMP rules
- See main PR details
(cherry picked from commit 4784d8cef74bac4d1397fbfd7312c08912d8890a) -
11:53 AM Revision ffc4c4a3: Merge pull request #3139 from stilez/patch-38
- 11:48 AM Revision 04665e78: Add privs to control display of notices
- This is a suggested way to allow control of the display and clearing of
notices. The use case is:
1) A user with mini... -
11:48 AM Revision 8d379f23: Merge pull request #3322 from phil-davis/viewclearnotices
-
11:42 AM Revision b88518df: Fix #6982: Remove wrong global definition of use_filterdns and pass it as reference
-
11:42 AM Revision 631217f4: Fix #6982: Remove wrong global definition of use_filterdns and pass it as reference
-
11:00 AM Bug #7050: Limiter with PFsense 2.4 transparent proxy
- Luiz good afternoon, I have two files as you requested, one working perfectly, which is called BKP_2.1.5_Functionando...
-
09:36 AM Todo #7054 (Assigned): Update OpenVPN to 2.4.0
- Package was updated as well
-
07:33 AM Todo #7054 (Resolved): Update OpenVPN to 2.4.0
- Update OpenVPN to 2.4.0 and make necessary adjustments. Noted after a quick look:
* Remove tun-ipv6 from config si... -
08:08 AM Bug #7056: Add gpg keys to repo for proper iso download verification method
- Ah, I had assumed it was simply two httpd's on the same box as they had an adjacent IP address.
Still however, if ... -
07:59 AM Bug #7056 (Duplicate): Add gpg keys to repo for proper iso download verification method
- Duplicate of #4472
That said, a _copy_ of the hash is on the same server as the files, but the hash is also availa... -
07:49 AM Bug #7056 (Duplicate): Add gpg keys to repo for proper iso download verification method
- Currently there is no legitimate way to properly verify the .iso download has not been tampered with.
The sha256 f... -
07:40 AM pfSense Packages Todo #7055 (Resolved): Update OpenVPN Client Export package with OpenVPN 2.4
- OpenVPN 2.4 has made a few changes to the Windows installer that may need accounting for. See https://community.openv...
-
07:07 AM Bug #6982: Nested Aliases with FQDNs do not populate parent table in some cases
- Port aliases work again with that last commit. Will leave it open waiting for feedback to make sure the original issu...
-
05:50 AM Bug #6982 (Feedback): Nested Aliases with FQDNs do not populate parent table in some cases
- Applied in changeset commit:631217f488c682ce4ffa8af5d0c54b03c016af46.
-
05:49 AM Feature #7051 (Feedback): Allow control of what users can view and/or clear notices
- PR has been merged, thanks!
-
02:55 AM Revision da4d341e: Remove the now unnecessary and commented code.
- Ticket #7042
12/29/2016
-
10:44 PM Revision e9de838d: Implement a different method to obtain the 'main' IP (v4) for the interface.
- The last interface IP is always saved in /var/db/${interface}_ip. Use that file, if it exist, to find the main inter...
-
09:52 PM Revision fdb04797: Fix ntp gps status
- - trim sat in use
- gps ok for GPGLL
- lat & lon direction for GPGGA & GPGLL
- sat in use text position fixed -
08:28 PM Bug #6982 (Assigned): Nested Aliases with FQDNs do not populate parent table in some cases
- This fix broke port aliases.
With this commit, port aliases are empty:... -
08:23 PM Revision 6522505c: Ticket #6920: Use filter_rule_function tag to detect function name
-
08:12 PM Revision e1b3d6f2: Revert "Fix #6920: Do not include stale .inc files"
- It's 2.4 only, merged accidentally
This reverts commit 87913c3053c83c5d8473d6e24f39c38833d75b47. -
08:03 PM Bug #6852: Commit 8f86722 breaks DHCPv6 leases status page
- were the files I uploaded any help or is something more needed?
-
08:02 PM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- I'm running into this right now. Not a big network guy, just trying to replace our small business' router with a SG-4...
-
07:42 PM Revision fef29f5a: Fix #6920: Do not include stale .inc files
- Packages can declare a function called $pkgname_generate_rules() and it
will be executed during filter reload process... -
07:42 PM Revision 87913c30: Fix #6920: Do not include stale .inc files
- Packages can declare a function called $pkgname_generate_rules() and it
will be executed during filter reload process... -
07:37 PM Revision 9bf81d66: Revert "Instead of ignoring the IP, add it to interface even if we cannot do it with setfirst."
- This reverts commit af6248407bae4d476b483dcb3a388744fb74b465.
Not necessary at all.
Pointy hat to: me
Ticket #7042 -
06:59 PM Revision b1cff581: capitalise "Any"
-
06:38 PM Revision af624840: Instead of ignoring the IP, add it to interface even if we cannot do it with setfirst.
- Ticket #7042
-
05:45 PM Revision 3ece6d54: Captive portal: rework logging and RADIUS accounting when disabling a zone or rebooting
- Make captiveportal_radius_stop_all() log the disconnections in the system log and fix it so that it works with the zo...
-
05:05 PM Bug #6972: "Are you sure you wish to?" prompts and other issues with deleting networks from network-type aliases
- I'll take care of it :)
-
04:52 PM Bug #6972: "Are you sure you wish to?" prompts and other issues with deleting networks from network-type aliases
- Renato Botelho wrote:
> It happens when you click on fa-trash icon. If you click on other areas of the button confir... -
12:28 PM Bug #6972 (Confirmed): "Are you sure you wish to?" prompts and other issues with deleting networks from network-type aliases
- I've found the way to reproduce it. It happens when you click on fa-trash icon. If you click on other areas of the bu...
-
04:59 PM Bug #7042 (Feedback): DHCP client configures wrong address in some circumstances (setfirst support missing from ifconfig)
-
04:04 PM Revision a1035bd8: Remove obsolete console menu option that was a remnant of the livecd which was removed some time ago.
-
03:21 PM Revision 387dbe43: Only fetch ZFS status if ZFS is loaded. Otherwise it can load it unintentionally on a system that doesn't need it.
-
03:20 PM Revision a2c453fd: Add reroot support to system_reboot_sync() and to the /etc/rc.initial.reboot menu. Ticket #6045
-
03:19 PM Bug #6099: igmpproxy does not recognize upstream interface
- Is this commit in the latest build applied? If yes, there seems to be something buggy with the fix.
I just updated m... -
02:15 PM Revision b34c29cb: Teach /etc/rc.reboot to reroot when -r parameter is specified
-
02:13 PM Revision 016a0b25: Remove old hacks used to upgrade from 2.1 to 2.2
-
01:50 PM Bug #6920 (Feedback): Upgrading to 2.4 with a stale package .inc file can prevent the system from fully booting after upgrade
- Applied in changeset commit:fef29f5aee32899b72886f8a0c00205bf0f2fc09.
-
01:01 PM Bug #7052 (Rejected): Fails to monitor ipv6 gateway
- From log...
-
12:48 PM Feature #6746 (Feedback): Option to select dark or misc background for Traffic Graphs when a dark theme is selected.
- New traffic graphs respect theme colors. Should be OK now
-
12:33 PM pfSense Packages Feature #6831: Snort does not support aliases containing FQDN
- Keeping it opened for reference but I'm not sure if Bill Meeks will implement it based on his comments on the forum t...
- 12:20 PM Revision 1ca5d09f: Put print_info_box severity class in quotes
- These should be strings in quotes, otherwise PHP looks for them to be
constants and would be issuing notice level "er... -
12:20 PM Revision b9e0e420: Merge pull request #3323 from phil-davis/print_info_box
-
10:55 AM Revision d793617e: Captive portal: use locking to avoid race conditions between rc.prunecaptiveportal and captiveportal_disconnect_all()
- Convert rc.prunecaptiveportal to lock()/unlock()/try_lock() and use the lock to ensure that there aren't race conditi...
-
10:55 AM Revision 025ec94a: Captive portal: work around race condition between captiveportal_disconnect_all() and captiveportal_prune_old()
- Captiveportal_disconnect_all() loops through the active users and disconnects them immediately but doesn't remove the...
-
09:44 AM Feature #6045: Updates that do not require a reboot should run reroot
- Jim Pingle wrote:
> Doing a reroot style restart works nicely on its own, need to test it during an upgrade to know ... -
09:27 AM Feature #6045: Updates that do not require a reboot should run reroot
- Doing a reroot style restart works nicely on its own, need to test it during an upgrade to know for sure how it handl...
-
08:53 AM Feature #6045 (Feedback): Updates that do not require a reboot should run reroot
- Done. pfSense-upgrade 0.11 on recent 2.4.0 system will do the trick
-
09:40 AM Bug #7050: Limiter with PFsense 2.4 transparent proxy
- Nelson, can you submit (even privately if you prefer) a copy of your working settings for the 2.1.x version and also ...
-
07:06 AM Bug #7050: Limiter with PFsense 2.4 transparent proxy
- Not sure what's special about 2.4 here; this has _never_ worked since the hidden rules created by the package when se...
-
06:58 AM Bug #7050 (Resolved): Limiter with PFsense 2.4 transparent proxy
- Good morning Luiz, is as follows, transparent proxy use with the limiter by ip, what happens is that when setada the ...
-
09:16 AM Revision 416322ee: Changes whuch to which... fat fingers
-
08:22 AM Revision e9b3d2c3: "Any" moved to top of list in new blank rules
- @jim-p wanted this split out from PR 3159 as it wasn't related to that PR.
Puts "any" at the logical place people lo... -
07:53 AM Todo #7047 (Resolved): Update status.php with new info helpful to support staff
- Seems to all be working and sufficient. Can add more later if needed.
-
07:53 AM Bug #3454 (Resolved): Acknowledge all notices is presented to users who do not have privilege
-
07:19 AM Bug #3454: Acknowledge all notices is presented to users who do not have privilege
- The changes here fix this bug report.
For a followon feature request to implement control of view/clear notices see:... -
07:53 AM Feature #7046 (Resolved): Bring back a method of viewing the gateway status from the shell and status output
- Works great
-
07:48 AM Bug #7045 (Resolved): PHP Shell outputs startup message when running a playback script
- Fixed
-
07:21 AM Feature #7051: Allow control of what users can view and/or clear notices
- Proposed code in PR https://github.com/pfsense/pfsense/pull/3322
-
07:16 AM Feature #7051 (Resolved): Allow control of what users can view and/or clear notices
- Use case:
A user with minimal page privs (e.g. can just change their password, or access a few status pages or...) s... - 06:28 AM Revision 499adf73: Put print_info_box severity class in quotes
- These should be strings in quotes, otherwise PHP looks for them to be
constants and would be issuing notice level "er... -
05:58 AM pfSense Packages Bug #7049 (Rejected): Problema No Limiter Com Proxy Transparente 2.4 Beta
- After talk with Nelson on facebook he agreed to open a new ticket in english
-
04:20 AM Revision c7fd8cd0: Fix variable reference. Ticket #7047
12/28/2016
-
10:56 PM Revision d4b2ebae: Remove and replace white spaces
- Safari doesn't seem to have editing issues (or else they very quickly fixed it). Removed all white spaces and re-ent...
-
10:51 PM Revision 43a0cf73: Put back "any" in same place it came from in dropdown
-
10:46 PM Revision 86554b5a: revert protocol order change (unrelated to PR)
- Will pu in separate PR afterwards as requested
-
09:16 PM Revision 15dcf132: dyndns.class, fix json curl body parsing for Cloudflare by not including headers
-
08:11 PM Revision a2da1706: Add version and build data to status output. Ticket #7047
-
07:43 PM Revision b7b2cb7f: Add playback scripts to drill into pf tables and anchors to list their contents.
-
07:42 PM Revision 524b631f: Fix license for gatewaystatus playback script
-
07:05 PM Revision 84fe48d4: Bring status.php up-to-date and add a number of new items as listed on redmine. Fixes #7047
- Added:
The firewall platform and serial number
ARP Table
NDP Table
Gateway status (See #7046)
ZFS... -
06:52 PM Revision f88743cb: Add a pfSense php shell playback script to show the gateway status. Ticket #7046
-
06:51 PM Revision a4867a30: Add a function to format and return plain text output showing the gateway status, for use by a shell script and status.php. Ticket #7046
-
06:47 PM Revision 337822a3: Do not output PHP shell starup message unless it is run interactively. Fixes #7045
-
06:43 PM pfSense Packages Bug #7049 (Rejected): Problema No Limiter Com Proxy Transparente 2.4 Beta
- boa noite, estou tendo problemas no limiter funcionando com proxy transparente, nas versões acima da 2.1.5, todas tes...
- 03:41 PM Revision 5280f021: Add privs to control display of notices
- This is a suggested way to allow control of the display and clearing of
notices. The use case is:
1) A user with mini... - 03:36 PM Revision 3b56806e: Refactor to use notify_all_remote
- While looking at notices.inc I noticed (pardon the pun) that notify_all_remote did exactly the same as these 2 lines ...
-
03:36 PM Revision 8128464b: Merge pull request #3317 from phil-davis/patch-1
-
03:33 PM Revision 0434fb77: Merge pull request #3320 from phil-davis/patch-4
-
03:31 PM Revision 1eaf9684: Merge pull request #3318 from phil-davis/patch-2
- 03:31 PM Revision ea4f5252: Fix #3454 Do not show Mark All as Read button when no priv
- If the user does not have access to index.php then the "Mark All as Read" button for the notices popup does not work ...
-
03:31 PM Revision fdb4c19e: Merge pull request #3319 from phil-davis/patch-3
- 03:29 PM Revision 063c02c9: Change system admin to firewall admin
- (cherry picked from commit 6f4323f3d3cc7066e833f8a898f0608e6527871d)
- 03:29 PM Revision bc2b824d: Fix #7043 Do not display crash reporter link when no crash_reporter access
- (cherry picked from commit c87eeb08acc6d5d0fd642e50990b93b7137657ee)
-
03:28 PM Revision 3314e3e1: Merge pull request #3321 from phil-davis/patch-5
- 03:17 PM Revision 6f4323f3: Change system admin to firewall admin
- 02:14 PM Revision 46886273: Remove unused get_notices() from xmlrpc.php
-
01:40 PM pfSense Packages Bug #7048: Add IPv6 support to squid
- Squid's own capabilities mean nothing here. You need support in the underlying OS to work with. Even if I made all th...
-
01:32 PM pfSense Packages Bug #7048: Add IPv6 support to squid
- Regarding the comment, "The NAT used for transparent IPv4 proxy won't work, and there's nothing to hook into regardin...
-
01:25 PM pfSense Packages Bug #7048: Add IPv6 support to squid
- A couple of notes on this: The only part of Squid working with IPv6 is the reverse proxy (though, that's not advertis...
-
01:11 PM pfSense Packages Bug #7048: Add IPv6 support to squid
- Corrected subject - This is not a "bypass" in the way that is stated. The squid package only supports IPv4 currently....
-
01:03 PM pfSense Packages Bug #7048 (Resolved): Add IPv6 support to squid
- Missing IPv6 support in the squid package allows traffic to escape intended inspection and apparently also the firewa...
-
01:13 PM Feature #7046 (Feedback): Bring back a method of viewing the gateway status from the shell and status output
- Last part of this was implemented by #7046
-
12:50 PM Feature #7046 (Resolved): Bring back a method of viewing the gateway status from the shell and status output
- Since the switch to dpinger, there is no easy way to view the gateway status from the shell. Having the gateway statu...
-
01:10 PM Todo #7047 (Feedback): Update status.php with new info helpful to support staff
- Applied in changeset commit:84fe48d414dc59ffd236b072000f07ea7423380e.
-
01:02 PM Todo #7047 (Resolved): Update status.php with new info helpful to support staff
- Items to add:
* The firewall platform and serial number
* ARP Table
* NDP Table
* Gateway status (See #7046)
* Z... -
01:10 PM Bug #7045 (Feedback): PHP Shell outputs startup message when running a playback script
- Applied in changeset commit:337822a39bfd89c011cfda4092a6e5e409a7dbcf.
-
12:49 PM Bug #7045 (Resolved): PHP Shell outputs startup message when running a playback script
- When running a playback script, there is extra output from pfSsh.php that is unnecessary:...
-
11:34 AM Feature #7044 (Duplicate): Gateway Monitoring - Add More IPs
-
11:18 AM Feature #7044: Gateway Monitoring - Add More IPs
- See #6989
-
10:31 AM Feature #7044 (Duplicate): Gateway Monitoring - Add More IPs
- I would like to request that it be possible to add more than one ip to monitor the gateway (s), today we have the pos...
-
11:33 AM Revision bf60bf20: Remove unused variable
-
09:40 AM Bug #3454 (Feedback): Acknowledge all notices is presented to users who do not have privilege
- Applied in changeset commit:fe80b3aac6ddd661c7a2daf52ad54f1722915590.
-
12:45 AM Bug #3454: Acknowledge all notices is presented to users who do not have privilege
- Bug fix PR https://github.com/pfsense/pfsense/pull/3319
I will raise another feature issue to discuss what could b... -
09:30 AM Bug #7043 (Feedback): If user does not have crash_reporter page access the crash reported link is useless
- Applied in changeset commit:c87eeb08acc6d5d0fd642e50990b93b7137657ee.
-
02:00 AM Bug #7043: If user does not have crash_reporter page access the crash reported link is useless
- PR https://github.com/pfsense/pfsense/pull/3321
-
01:59 AM Bug #7043 (Resolved): If user does not have crash_reporter page access the crash reported link is useless
- When the user clicks "here" for more information, nothing happens, because they do not have carsh_reporter page acces...
- 07:59 AM Revision c87eeb08: Fix #7043 Do not display crash reporter link when no crash_reporter access
-
07:58 AM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- Steve Beaver wrote:
> Right. It is not "A new bug", it is the original bug that has just been fixed.
https://gith... -
07:56 AM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- Right. It is not "A new bug", it is the original bug that has just been fixed.
-
07:49 AM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- None of those fixes are in 2.3.2 so it's just pointless to test anything there.
-
07:36 AM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- A new bug is revelead, see:
!http://i.imgur.com/U6Ggy4d.png!
The syntax is duplicated.
New installation from... - 06:24 AM Revision 76a13ab1: Remove unused print_noices and print_notice_box
- When looking into how the notices features work these days, I found that these functions are no longer used anywhere....
- 06:16 AM Revision fe80b3aa: Fix #3454 Do not show Mark All as Read button when no priv
- If the user does not have access to index.php then the "Mark All as Read" button for the notices popup does not work ...
- 05:45 AM Revision ee5d140e: Fix get_notices parameter in xmlrpc.php
- This looks to me like the var name here should be $category
Note: I don't see where this get_notices() inside class p... - 05:35 AM Revision a2e35163: Refactor to use notify_all_remote
- While looking at notices.inc I noticed (pardon the pun) that notify_all_remote did exactly the same as these 2 lines ...
-
05:22 AM Bug #6982 (Resolved): Nested Aliases with FQDNs do not populate parent table in some cases
12/27/2016
-
11:04 PM Revision 151b4e35: Allow capturing based on MAC address as well.
-
09:32 PM Revision 378574a3: Disable "setfirst" line in pfSense-dhclient-script for now. Ticket #7042
-
07:59 PM Revision 3033c93f: Changes as requested
-
07:57 PM Revision 2acedbbf: Changes as requested
-
07:39 PM Bug #6982: Nested Aliases with FQDNs do not populate parent table in some cases
- This is working well for me with changeset applied using system patches on 2.3.2_1 that I was using in my initial tes...
-
01:30 PM Bug #6982 (Feedback): Nested Aliases with FQDNs do not populate parent table in some cases
- Applied in changeset commit:5d1cf6f5cf85c6371078e288172da1e05df1380c.
-
07:39 PM Revision 3c2c034d: Captive portal: add button to disconnect all users
- Add a function to disconnect all logged in users and a button to call it in the captive portal status page.
(cherry ... -
07:39 PM Revision 15aac11e: Merge pull request #3300 from plumbeo/disconnect-all
-
07:38 PM Revision c729f32a: Add new "Ignore client identifiers" DHCP feature
- Exposes the underlying dhcpd configuration option "ignore-client-uids"
in the pfSense "Services / DHCP Server" GUI by... -
07:37 PM Revision 5ae621d8: Merge pull request #3307 from blkeller/ignore-client-uids
- 07:36 PM Revision 145105bb: Add case for 59 to prefix functions
- Maybe these functions should have a case added for prefix length 59?
(cherry picked from commit 231fe9543c696bb2dcdc7... -
07:36 PM Revision c6fa0501: IPv6, allow DHCP6 client to use a prefix size of /59
- (cherry picked from commit 260f60a9b60d42be7a274b29a8c217c2b4b53507)
-
07:36 PM Revision de508134: IPv6, allow DHCP6 server to use a prefix size of /59 and /61 like dhcp client does
- (cherry picked from commit 19d905bcaecfed47abdf5e3854f54684d19c3b8f)
-
07:36 PM Revision 17a6140d: Merge pull request #3266 from PiBa-NL/IPv6-prefixdelegation-size59
- 07:34 PM Revision 25e5d826: Fix #3560 correctly handle disabled static routes
- 1) util.inc - add parameter to get_staticroutes() so the caller can
choose to see all static routes or only the ones ... -
07:32 PM Revision 56b8ace0: Merge pull request #3312 from phil-davis/staticroutes
-
07:25 PM Revision 639cfc1b: Fix nested aliases with FQDN (Fixes #6982)
- Make $use_filterdns a parameter. It needs to be persistent across
recursive calls otherwise it ends up not adding nec... -
07:24 PM Revision 5d1cf6f5: Fix nested aliases with FQDN (Fixes #6982)
- Make $use_filterdns a parameter. It needs to be persistent across
recursive calls otherwise it ends up not adding nec... -
06:27 PM Revision a1e7d048: Remove unused variable
-
06:21 PM pfSense Packages Bug #6527: Squid 3.5 - Deprecated "ssl_bump server-first all" don't allow SNI in transparent mode with HTTPS/SSL Interception
- https://github.com/pfsense/FreeBSD-ports/pull/242
Kindly test and report back either here, and/or @ https://forum.... -
03:44 PM Bug #7042: DHCP client configures wrong address in some circumstances (setfirst support missing from ifconfig)
- Simplest way to reproduce this is to use a DNS Resolver override for "setfirst" and the firewall's domain, set to an ...
-
03:31 PM Bug #7042 (Resolved): DHCP client configures wrong address in some circumstances (setfirst support missing from ifconfig)
- In certain circumstances a DHCP client interface gets configured with an incorrect address. The address that should b...
-
02:47 PM pfSense Packages Bug #7017 (Resolved): Squid NT Domain authentication is broken
-
02:19 PM pfSense Packages Bug #7017: Squid NT Domain authentication is broken
- Broken feature gone -> can be closed. Thanks.
-
06:35 AM pfSense Packages Bug #7017 (Feedback): Squid NT Domain authentication is broken
- PR has been merged, thanks!
- 02:21 PM Revision 4a673efc: PPTP Remote IP is host or V4
- Now that Form_IpAddress() supports a range of types of input, this can be specified as HOSTV4.
(cherry picked from co... -
02:21 PM Revision 82b2eb65: Merge pull request #3314 from phil-davis/patch-1
- 01:44 PM Revision 4890b6ec: PPTP Remote IP is host or V4
- Now that Form_IpAddress() supports a range of types of input, this can be specified as HOSTV4.
-
01:35 PM Bug #3560 (Feedback): Disabled Static Route not fully disabled
- PR has been merged, thanks!
-
06:04 AM Bug #3560: Disabled Static Route not fully disabled
- See PR https://github.com/pfsense/pfsense/pull/3312
- 12:47 PM Revision 4a1a2050: Form_IpAddress add types remove patterns
- 1) Add alias and host types to Form_IpAddress with the appropriate hover
text.
2) Remove the patterns - the UI of tho... -
12:47 PM Revision ac4e656a: Merge pull request #3248 from phil-davis/ipaddressnopattern
-
12:42 PM Revision 914ddfa2: Captive portal: add popup with session details to the active sessions list in the status page
- (cherry picked from commit 081a46fe3bc2393778c4e270cd8388230d39b38c)
-
12:42 PM Revision 58b5c957: Merge pull request #3308 from plumbeo/details-popup
- 12:41 PM Revision 29069aed: Fix DNS Server Gateway Check
- If I enter a DNS server IP address that is on a locally connected network, and choose a gateway for it, this code was...
-
12:41 PM Revision c80bf53b: Merge pull request #3311 from phil-davis/patch-1
- 11:09 AM Revision cf08b49e: Fix #3560 correctly handle disabled static routes
- 1) util.inc - add parameter to get_staticroutes() so the caller can
choose to see all static routes or only the ones ... -
10:13 AM Feature #3151 (Resolved): Disable gateway monitoring actions without disabling gateway monitoring
- Works here, too. Gateway status shows it going up/down but no actions are taken when it transitions.
-
01:52 AM Feature #3151: Disable gateway monitoring actions without disabling gateway monitoring
- Been working for me, but it would be good to get some feedback from anyone else who has tried/tested this.
- 09:43 AM Revision d8587952: Fix DNS Server Gateway Check
- If I enter a DNS server IP address that is on a locally connected network, and choose a gateway for it, this code was...
-
06:36 AM pfSense Packages Feature #6593 (Feedback): squid: allow user to configure DH key size, SINGLE_DH_USE, NO-SSLv3, Cipher-Suites - performance improvement hint
- PR has been merged, thanks!
-
06:36 AM pfSense Packages Bug #6592 (Feedback): squid does NOT use EDH and EECDH cipher suites because "tls-dh" is not configured and so these ciphers are silently dropped - see squid documentation
- PR has been merged, thanks!
-
02:11 AM Revision 202e23a8: Data sanitation - check IP protocol in form data
- Code doesn't seem to check that IP protocol is valid (IPv4/6/4+6) or report via $input_errors[] if not. Simple fix. O...
-
01:31 AM Revision 8afd8c04: Alternate fix for jim-p's point that seems to resolve everything neatly
- @jim-p commented on the PR that:
> This change is unwarranted. The protocol default should remain TCP, it is set tha... -
01:15 AM Revision 675c9e59: improve CSS handling for icmp types (overflow/table)
- Minor CSS and formatting improvement to layout for icmp types in rules table. With this change, if several icmp types...
12/26/2016
-
11:07 PM Revision 081a46fe: Captive portal: add popup with session details to the active sessions list in the status page
-
09:36 PM Bug #7036: 2.4 ZFS on RCC-VE 2440 hangs
- Running bios version 08 (ADI_RCCVE-01.00.00.08-nodebug) with no change. pfSense-CE-memstick-ADI-2.4.0-BETA-amd64-2016...
-
11:26 AM Bug #7036 (Feedback): 2.4 ZFS on RCC-VE 2440 hangs
- Follow the procedure at http://netgate.com/docs/reference/adi-bios-flash.html#adi-bios-flash-procedure and update to ...
-
08:54 PM Revision 7faa9379: Add case for 59 to prefix functions merge_ipv6_delegated_prefix / dhcpv6_pd_str_help
- Add case for 59 to prefix functions merge_ipv6_delegated_prefix / dhcpv6_pd_str_help
-
07:36 PM Bug #7041 (Rejected): Not all mobile IPsec phase 2 entries pass traffic through the correct interface
- Most likely a configuration error. Please post on the forum for discussion before opening a bug report.
-
07:24 PM Bug #7041 (Rejected): Not all mobile IPsec phase 2 entries pass traffic through the correct interface
- My phase 2 configuration is as follows:
VLAN 10 [Home]- 192.168.1.0/24
VLAN 12 [VMs] - 10.1.2.0/24
VLAN 13 [Lega... -
06:53 PM Revision c01bdca9: Exclude /var/empty from tar extract and make sure its permissions are respected when it's created
-
05:05 PM pfSense Packages Feature #2133 (Closed): Add ET's SidReporter to snort package
-
04:55 PM pfSense Packages Feature #2133: Add ET's SidReporter to snort package
- Cannot be downloaded anywhere, another thing killed by Proofpoint.
Close please. - 02:37 PM Revision 9080e20d: Modify DHCP Server messages
- (cherry picked from commit 12e08722bd9264f649e76030dce24259430f2832)
- 02:37 PM Revision 1d52ceac: Customize DHCP Server on interfaces message
- (cherry picked from commit b70904493917a5213ee4b752c5466b7d36f884b8)
-
02:37 PM Revision cded235b: Merge pull request #3309 from phil-davis/dhcp31msg
-
02:32 PM Revision c90bf891: Captive portal: hide empty MAC column in status page
- When MAC filtering is disabled the client MAC address isn't recorded and the relative column is empty. In this case, ...
-
02:32 PM Revision bebb4b8a: Merge pull request #3310 from plumbeo/hide-mac-column
-
10:29 AM Revision d08f68e2: Captive portal: hide empty MAC column in status page
- When MAC filtering is disabled the client MAC address isn't recorded and the relative column is empty. In this case, ...
-
09:59 AM Bug #7038 (Confirmed): SG-1000 Quagga zebra service fails to start with signal 6 abort
- Confirmed, happens even with a very basic config (one interface, dummy password, standard router ID and area filled i...
-
07:54 AM pfSense Packages Bug #6592: squid does NOT use EDH and EECDH cipher suites because "tls-dh" is not configured and so these ciphers are silently dropped - see squid documentation
- https://github.com/pfsense/FreeBSD-ports/pull/241
-
07:54 AM pfSense Packages Feature #6593: squid: allow user to configure DH key size, SINGLE_DH_USE, NO-SSLv3, Cipher-Suites - performance improvement hint
- https://github.com/pfsense/FreeBSD-ports/pull/241
Added options matching the reverse proxy options (modern/interme... -
06:50 AM pfSense Packages Bug #6636 (Resolved): Squid Reverse Proxy with Additional IP and compatibility="Intermediate" writes bad squid.conf
-
05:23 AM pfSense Packages Bug #6636: Squid Reverse Proxy with Additional IP and compatibility="Intermediate" writes bad squid.conf
- Works.
-
02:56 AM Bug #7040 (Resolved): Issue when disabling an interface
- I am using the interfaces like this :
ix0
ix0_vlan1
ix0_vlan35
I just want to disable only ix0, but still h... -
02:38 AM pfSense Packages Bug #7039 (Feedback): HAProxy backend configuration does not handle intermediate CAs properly
- In HAProxy backend settings, when configuring a server, there is the option to have it validate SSL certificates agai...
-
02:33 AM Bug #6981: IPv6, rc.newwanipv6, flooding log and resets connection periodically
- I'm confused as to why they would issue a /64 PD on the wan.
dhcp6c does ask for renew, as shown in the attached i...
12/25/2016
-
11:47 PM Bug #7027: Dynamic DNS dyndns.org no longer updates
- Tony Mace wrote:
> Kill Bill wrote:
> > Try with 2.3.3 snapshots.
>
> Am using "2.3.3.a.20161220.0605" right now... -
10:31 PM Bug #7038: SG-1000 Quagga zebra service fails to start with signal 6 abort
- Relevant logs (system.log):...
-
10:24 PM Bug #7038 (Resolved): SG-1000 Quagga zebra service fails to start with signal 6 abort
- Quagga_OSPF 0.6.16 package installed from package manager. Using config pasted below (raw, not assisted). OSPFd servi...
-
08:45 AM Bug #7037 (Not a Bug): CPU frequency in System Information
- If the frequency is at maximum, the information is redundant and thus hidden. There isn't any reason to think it isn'...
-
04:48 AM Bug #7037: CPU frequency in System Information
- That seems reasonable, but resizing the column on refresh is not pretty. I don't see any reason to why it should't sh...
-
04:00 AM Bug #7037: CPU frequency in System Information
- This only shows when the actual CPU freq is lower than max. By taxing the CPU with reloading the dashboard every 5 se...
-
12:09 AM Bug #7037 (Not a Bug): CPU frequency in System Information
- On dashboard under "CPU Type" the "Current" frequency rarely appears. Maybe 1 in 10 refreshes? This is with refresh i...
12/24/2016
-
10:37 PM Revision feab4e54: Captive portal: add button to disconnect all users
- Add a function to disconnect all logged in users and a button to call it in the captive portal status page.
-
07:44 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- I would like to add that I am also experiencing this issue. I would love to see this fixed in pfSense 2.4 if possible...
- 03:02 PM Revision 12e08722: Modify DHCP Server messages
-
02:17 PM Revision a3f671ec: This should be a regular input form since it is no longer using an IP address class input type.
- 07:01 AM Revision b7090449: Customize DHCP Server on interfaces message
-
03:16 AM Bug #6930: DHCP server should be disabled for /31 and /32
- Yup looks much better looking at the error message in the source code.
-
01:13 AM Bug #6930: DHCP server should be disabled for /31 and /32
- Something like https://github.com/pfsense/pfsense/pull/3309 ?
12/23/2016
-
08:32 PM Revision a51dd381: Save the igmpproxy configuration in /var/etc and not on /tmp.
-
07:32 PM Bug #7036 (Not a Bug): 2.4 ZFS on RCC-VE 2440 hangs
- RCC-VE 2440, bios version 6
Downloaded 2.4.0.b.20161223.0723 and did a clean install. Auto ZFS, default values, se... -
06:47 PM Feature #7035: Make webgui authentication logs less invasive
- I don't want to disable them, I feel knowing that is very useful, I just don't want them spilling out on my shell, es...
-
06:45 PM Feature #7035 (Rejected): Make webgui authentication logs less invasive
- Login events are always logged that way for security reasons. If you want to disable those messages, use the "Disable...
-
06:33 PM Feature #7035: Make webgui authentication logs less invasive
- Just a note, I've only had the SG-1000 a few days so I haven't updated the DNS on the syslog box yet, so it shows the...
-
06:16 PM Feature #7035 (Rejected): Make webgui authentication logs less invasive
- I'm not sure why, I'm guessing intentional, but webgui events, such as logins to the webgui, when they are logged can...
-
03:29 PM Revision 35d393f0: Change type of L2TP/PPTP WAN remote address to 'text' as it supports hostnames now, and the 'V4' type rejects them. Fixes #6899
-
03:03 PM Bug #7003: autoboot_delay on 2.4.0
- Ok thank you :)
-
12:52 PM Bug #7003: autoboot_delay on 2.4.0
- Ken Sim wrote:
> Am I correct that this is only set during install and we have to set it manually if already install... -
02:41 PM Bug #6099 (Feedback): igmpproxy does not recognize upstream interface
- Fix committed.
Thanks! -
02:14 PM Revision d35a22d7: Fix field type for TFTP in DHCP server settings
-
02:14 PM Revision 0675eadb: Fix field type for TFTP in DHCP server settings
-
02:13 PM Revision 9d9736d7: Fix field type for TFTP in DHCP server settings
-
02:07 PM Bug #6930: DHCP server should be disabled for /31 and /32
- It now doesn't enable dhcp on a /31 or /32 subnet, IMO the message "The DHCP Server can only be enabled on interfaces...
-
01:22 PM Revision 708dd35c: Fix variable name used to pre-fill the NTP orphan mode field, add placeholder with the default while I'm here. Fixes #7034
-
01:22 PM Revision 1a5982d9: Fix variable name used to pre-fill the NTP orphan mode field, add placeholder with the default while I'm here. Fixes #7034
-
01:21 PM Revision d0db0f9b: Fix variable name used to pre-fill the NTP orphan mode field, add placeholder with the default while I'm here. Fixes #7034
-
10:48 AM Bug #6981: IPv6, rc.newwanipv6, flooding log and resets connection periodically
- The Address given to the WAN interface is more or less irrelevant, cause it's not realy necessary for your firewall r...
-
08:52 AM Bug #6981: IPv6, rc.newwanipv6, flooding log and resets connection periodically
- When I check "Request only an IPv6 prefix" the WAN interface uses the first /64 prefix (prefix ID 0) out of the /56 p...
-
05:04 AM Bug #6981: IPv6, rc.newwanipv6, flooding log and resets connection periodically
- In my opinion we are not talking about a bug any more.
The problem seems to be a missconfiguration ...
For DTAG "... -
04:33 AM Bug #6981: IPv6, rc.newwanipv6, flooding log and resets connection periodically
- The ISP (Deutsche Telekom) doesn't supply a router, so I can't do any Wireshark capture there. The German Telekom use...
-
10:14 AM Bug #6857 (Resolved): local_sync_accounts fails during boot when using ldap on a non-local network or hostname
- Works, no failures or delays when booting with a remote LDAP server.
-
10:13 AM Bug #6367 (Resolved): Long delays with LDAP enabled w/local users during boot at "Synchronizing user settings..."
- Works, no delay on boot with LDAP enabled when local accounts sync
-
09:52 AM Bug #6761 (Not a Bug): Limiter doesn't limit at correct bandwidth
- No response from the OP here or on Reddit. I can't reproduce this on a current 2.4 snapshot (also on vmware with vmxn...
-
09:44 AM Feature #6899 (Resolved): Can't specify PPTP/L2TP gateway as FQDN
- Works as expected with that last commit, when the client can resolve the hostname it connects.
-
09:40 AM Feature #6899 (Feedback): Can't specify PPTP/L2TP gateway as FQDN
- Applied in changeset commit:35d393f04add76d7f5ac55fb33aaa955f354b5b8.
-
09:18 AM Feature #6899 (Assigned): Can't specify PPTP/L2TP gateway as FQDN
- The JS input validation still rejects hostnames on the page. I'll push a fix shortly.
-
09:24 AM Bug #6659 (Resolved): Default routes are not being removed after deletion
- Works as expected now.
-
09:14 AM Bug #6980 (Resolved): L2TP WAN gateway is missing the type at the end of its dynamic name
- Works
-
09:10 AM Bug #7005 (Resolved): IPsec mss clamping not working for mobile clients
- Works
-
09:06 AM Bug #6879 (Resolved): GUI doesn't show rebooting notification after upgrading
- I've been keeping an eye on this and haven't seen it fail in quite some time. Every update I've run on any platform (...
-
09:05 AM Bug #6869 (Resolved): Diagnostics / Routes Truncates Destination and Gateway Names
- Works
-
09:02 AM Bug #6668: IPSec tunnel + L2TP/IPSec VPN - wrong PSK chosen by pfSense
- No response from the OP, can't seem to reproduce it.
If someone can reproduce it and test a potential fix, please ... -
08:55 AM Bug #6224 (Resolved): Firewall NAT Edit forgets dst type selection after reporting input errors
- Works as expected now
-
08:53 AM Bug #6094 (Resolved): VIP Other subnet does not expand into NAT entries
- Works
-
08:45 AM Bug #6976 (Resolved): Interface group and alias with same name creates firewall syntax error
- All of the problem cases work as expected now. Names are rejected as being in use, I was not able to make a conflict.
-
08:43 AM Bug #6892 (Resolved): CARP VIPs Deleted entering CARP Maintenance Mode
- Works, VIPs are still there and their skews are raised as expected. Secondary takes over like it should. Comes out of...
-
08:42 AM Bug #7034: NTP Orphan Mode stratum setting is not displayed in input field
- Wow, that was fast :)
Thanks, and happy holidays! -
07:30 AM Bug #7034 (Feedback): NTP Orphan Mode stratum setting is not displayed in input field
- Applied in changeset commit:d0db0f9bcae3d368c2d83cc7bc4b888fd07eade3.
-
07:23 AM Bug #7034 (Confirmed): NTP Orphan Mode stratum setting is not displayed in input field
-
03:59 AM Bug #7034 (Resolved): NTP Orphan Mode stratum setting is not displayed in input field
- The "Orphan Mode" setting in the NTP config is not displayed in the input form field.
It is used, though. I checke... -
08:39 AM Revision 8212a765: tidy
-
08:35 AM Bug #4815 (Resolved): NTP status widget shows truncated IPv6 address
- Works
-
08:24 AM Todo #7032 (Resolved): Make a lack of ALTQ-capable interfaces more obvious to the user
- Looks much more obvious, hopefully it's clear to users now.
-
08:23 AM Bug #7019 (Resolved): XSS issues in captive portal status pages
- Seems fine now, and the sorting on the CP status page that was affected was also ripped out & replaced (see commit:e1...
-
08:21 AM Todo #7021 (Resolved): system_advanced_network.php Deprecate/remove Device Polling on 2.4
- It's all gone.
-
08:20 AM Revision 1b17a4c9: changed to text to reflect standard text in other options.
-
08:20 AM Bug #7008 (Resolved): OpenVPN sever unable to authenticate users on 2.4
- Works
-
08:20 AM Bug #7002 (Resolved): OpenVPN unable to use authentication server with ampersand in descriptive name
- Works
-
08:19 AM Bug #7001 (Resolved): Certificate manager requiring private key when importing CA certificate authority
- Works
-
08:17 AM Bug #6838 (Resolved): bsnmpd logs errors when /etc/printcap is missing
- Seems to be fine now, no more log spam and the dummy printcap file is there as expected.
-
08:16 AM Bug #6741 (Resolved): /etc/rc.initial does not trap CTRL-C back to console menu but rather to # prompt.
- Works well. I went into several console menu options and confirmed ^C returned to the menu from all of them rather th...
-
08:15 AM Bug #6634 (Resolved): DHCP Server "TFTP Server" field should allow URLs
- Works fine.
The TFTP field itself had a different issue as well, see commit:9d9736d7bf456a441e3cb95421cfed429502e220 -
08:10 AM Bug #6472 (Resolved): Disabling NAT (port forward) rule does not disable the associated firewall rule
- Works, associated rules are toggled together with the NAT rule when the NAT rule is changed.
-
08:09 AM Bug #6391 (Resolved): View Current Portal Page goes to wrong URL
- Works correctly now
-
08:08 AM Bug #6016: ovpn-linkup not populating IPv6 gateways
- Great! Thank you!
-
08:07 AM Bug #6016 (Resolved): ovpn-linkup not populating IPv6 gateways
- Works
-
07:45 AM Bug #7025 (Resolved): wizard.php?xml=setup_wizard.xml - Setup wizard is flagging valid LAN IP addresses as invalid
-
06:33 AM Bug #7033 (Duplicate): Hidden rule break the policy routing
- Duplicate of #1136
If you must have a second gateway on WAN, add floating rules to match the outbound traffic to o... -
02:41 AM Bug #7033 (Duplicate): Hidden rule break the policy routing
- Hello
I found a hidden rule who break the policy routing.
The rule :
pass out route-to ( lagg0_vlan2000 192.1...
12/22/2016
-
08:03 PM Revision e8165036: format correction
-
08:00 PM Revision 9e08a2bd: Added get_duid_from_file() function
- Used in System->Advanced->Networking to display the current DUID in the placeholder for setting the DUID.
-
07:56 PM Revision c0a3864e: Added real DUID placeholder, new text and call to new get_duid_from_file() function.
- 07:10 PM Revision e55ea79d: Refactor interface_has_dhcp
- to reduce nesting
(cherry picked from commit 5e22050335c939572a43fd7b3e161d7ede5ff5a0) - 07:10 PM Revision df84832c: Fix #7031 Allow interfaces that use DHCP for OpenVPN
- even though the interface (or gateway group) has not yet actually
received an IP address.
This is useful when setting... -
07:09 PM Revision ad230803: Merge pull request #3306 from phil-davis/ovpndhcp
-
07:02 PM Bug #7003: autoboot_delay on 2.4.0
- Am I correct that this is only set during install and we have to set it manually if already installed? Wouldn't it ge...
-
06:27 PM Revision 11ee0c6d: Add new "Ignore client identifiers" DHCP feature
- Exposes the underlying dhcpd configuration option "ignore-client-uids"
in the pfSense "Services / DHCP Server" GUI by... -
06:07 PM pfSense Packages Bug #7017: Squid NT Domain authentication is broken
- Just removed this deprecated stuff in https://github.com/pfsense/FreeBSD-ports/pull/241. People should use LDAP for A...
-
05:14 PM Bug #7026 (Resolved): filter_logs.inc: parse_firewall_log_line(): Filter logs do not display
- Thanks you Luiz.
- 04:48 PM Revision 5e220503: Refactor interface_has_dhcp
- to reduce nesting
-
04:43 PM Bug #6981: IPv6, rc.newwanipv6, flooding log and resets connection periodically
- Don't delete the DUID mid session, its pointless, dhcp6c will generate a new one, which means that your ISP then sees...
-
09:18 AM Bug #6981: IPv6, rc.newwanipv6, flooding log and resets connection periodically
- And I think it's important that this seems to be a problem with dhcp6c and NOT dhcp6d.
-
08:46 AM Bug #6981: IPv6, rc.newwanipv6, flooding log and resets connection periodically
- I still have this issue. I am not sure whether this has to do with the watchdog at all. When I enable IPv6 from the w...
-
03:20 PM Revision aa64bb65: Be more forthcoming with errors about ALTQ interfaces in relevant areas of the GUI. In particular, note when there are no capable interfaces assigned. Implements #7032
-
02:47 PM Bug #6318: IPsec dashboard widget causes GUI failure
- This also affects Status > IPsec
We have access to a customer system that has 70 tunnels defined, and it happens e... -
02:42 PM pfSense Packages Bug #7028 (Resolved): Squid - all javascript broken by bootstrap conversion
-
02:41 PM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- Yeah, 0.4.28 behaves like it used to works on pfSense 2.2.x, all weirdness gone. Very cool. Thanks!!!
-
01:50 PM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- Can you describe"the weird behaviour" please? I don't see anything untoward. Also what Browser/OS are you using?
T... -
01:43 PM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- Well, that's kinda difficult to see with the package as is. :) What I did for testing was nuking all the "advanced" t...
-
01:27 PM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- I think that happens now. The XML fragment ...
-
08:44 AM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- Steve Beaver wrote:
> Yep. Revised that yesterday. The Antivirus stuff appears to work as designed, but that design ... -
07:14 AM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- Yep. Revised that yesterday. The Antivirus stuff appears to work as designed, but that design may not be ideal. It's ...
-
01:44 PM Revision 016b7b5d: Typo correct
-
01:11 PM Bug #7031 (Feedback): Cannot configure OpenVPN on a DHCP interface that has not received an IP address
- PR has been merged, thanks!
-
06:00 AM Bug #7031: Cannot configure OpenVPN on a DHCP interface that has not received an IP address
- A suggested solution in PR https://github.com/pfsense/pfsense/pull/3306
-
05:54 AM Bug #7031 (Resolved): Cannot configure OpenVPN on a DHCP interface that has not received an IP address
- If the interface that an OpenVPN server or client is being configured on uses DHCP and has not yet received an IP add...
-
01:09 PM Revision 5e866e12: Update obsoleted files list for 2.4
-
01:05 PM Revision 8a308280: Do not include debug files in base pkg
-
12:55 PM Revision 19ef4922: Remove rescue from installation media
- 11:57 AM Revision 0f2cf2a1: Fix #7031 Allow interfaces that use DHCP for OpenVPN
- even though the interface (or gateway group) has not yet actually
received an IP address.
This is useful when setting... -
09:30 AM Todo #7032 (Feedback): Make a lack of ALTQ-capable interfaces more obvious to the user
- Applied in changeset commit:aa64bb6565db2f788846eee9a62bccde280a605a.
-
09:18 AM Todo #7032 (Resolved): Make a lack of ALTQ-capable interfaces more obvious to the user
- On systems that do not have any assigned interfaces capable of using ALTQ, that fact is not make obvious enough to th...
-
07:26 AM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- It still happens on 2.4, actually it's a little worse since it doesn't appear to transmit on the additional queues li...
- 01:51 AM Revision e2923158: Fix typo in grouping/$grouping
- 01:50 AM Revision 1c937bdc: Fix typo in grouping/$grouping
-
01:50 AM Revision 1f40cc7d: Captive portal: convert tables to sortable tables
- Convert the used vouchers table from the old GET order method to a sortable table, and make the other tables (allowed...
12/21/2016
-
09:48 PM Revision 5c2cfdbd: Captive portal: convert tables to sortable tables
- Convert the used vouchers table from the old GET order method to a sortable table, and make the other tables (allowed...
-
09:39 PM Revision aff01dbd: Text change
-
08:38 PM Revision 3dc2d0f1: Silence realpath errors when /dev/dumpdev does not exist.
- 07:19 PM Revision 3e2678ac: Fix "<onchange>" tag processing in package XML handling
- 07:18 PM Revision a038b816: Fix "<onchange>" tag processing in package XML handling
-
07:06 PM Revision 1ac0c535: Use sprintf()
- (cherry picked from commit ea0a3f9ced58ab872e8cf83fb3c6200a5409bdb8)
-
07:05 PM Revision f27fcac6: gettext-ize this while here
- (cherry picked from commit 2f7cd36737b4e1b1ba02061c6c25f538bf9ed2b3)
-
07:05 PM Revision 5017cb9a: Add enable link to Status > UPnP & NAT-PMP error message if disabled (Todo #6689)
- (cherry picked from commit cbe5405f70c8f1443b90d35a16890bcd9dc22714)
-
07:05 PM Revision caee8fc9: Merge pull request #3290 from doktornotor/patch-3
-
06:52 PM Revision b67b143b: Move the Growl section down to the end of the page, SMTP is the most commonly used section.
-
06:42 PM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- OK, tested. The authentication tab works great. The antivirus stuff is quirky, will need to play with it. Most issues...
-
04:45 PM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- Should be there already
-
04:41 PM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- Steve Beaver wrote:
> There was a bug in pkg_edit.php that was causing the \<onchange\> XML tag to be rendered incor... -
04:30 PM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- Remember to update BOTH Squid from the package manager, AND the base system from the Update manager.
-
04:21 PM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- Thanks, much appreciated! Will test with a new snapshot ASAP.
-
03:08 PM pfSense Packages Bug #7028 (Feedback): Squid - all javascript broken by bootstrap conversion
- There were two issues: There was a bug in pkg_edit.php that was causing the \<onchange\> XML tag to be rendered incor...
-
02:26 PM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- Thanks. Yours truly Santa. :-P
-
07:31 AM pfSense Packages Bug #7028: Squid - all javascript broken by bootstrap conversion
- And a merry frickin' Christmas to you too :)
Looking at this now. -
03:58 AM pfSense Packages Bug #7028 (Resolved): Squid - all javascript broken by bootstrap conversion
- Guys, there's this @squid_js.inc@ thing that used to do a lot of useful GUI work. It's completely no-op since the boo...
-
06:05 PM Bug #7027: Dynamic DNS dyndns.org no longer updates
- Kill Bill wrote:
> Try with 2.3.3 snapshots.
Am using "2.3.3.a.20161220.0605" right now with same problems -
04:15 AM Bug #7027: Dynamic DNS dyndns.org no longer updates
- Try with 2.3.3 snapshots.
-
05:42 PM Bug #7026 (Feedback): filter_logs.inc: parse_firewall_log_line(): Filter logs do not display
- It was broken only on 32bits platforms (ARM).
Fixed by: https://github.com/pfsense/FreeBSD-src/commit/aa25003286b4... -
11:15 AM Bug #7026 (Confirmed): filter_logs.inc: parse_firewall_log_line(): Filter logs do not display
- That's right JimP, but seems like we have a regression...
-
10:18 AM Bug #7026: filter_logs.inc: parse_firewall_log_line(): Filter logs do not display
- Looks the same as #6919
-
04:53 PM Revision 57baf45f: Fix the download of files over https when the server uses a self signed certificate.
- Submitted by: Marcelo Matos
Ticket #4766 -
04:53 PM Revision f763ca6e: Print an error when the given URL cannot be fetched instead of just ignoring it.
- Fix an use of an uninitialized variable.
Ticket #4766 -
04:53 PM Revision 426522b3: Add a warning to notify the use why nothing happens when it tries to click on maintenance mode with the CARP disabled.
-
04:32 PM Revision c8d9654b: Fix missed reference to the pfSense-dhclient-script move.
-
03:26 PM Revision 7be23d53: User Defined DUID
- User may define a DUID to use in System->Advanced->Networking. The
entered DUID is validated for composition and leng... -
01:17 PM pfSense Packages Feature #5434: Let's Encrypt pfSense support
- Remove target. When PR is done and merged it's going to be available to stable versions
-
01:16 PM Bug #5976 (Rejected): Load cryptodev as a kernel module
- IPsec is builtin GENERIC kernel even in FreeBSD and it depends of crypto. This change doesn't make sense anymore
-
12:55 PM pfSense Packages Bug #6983 (Resolved): pfBlockerNG-2.1.1_4 requires xmlrpc.inc which is removed or moved
-
12:46 PM pfSense Packages Bug #6983: pfBlockerNG-2.1.1_4 requires xmlrpc.inc which is removed or moved
- Confirm: Fixed.
-
12:45 PM Feature #7030 (New): New Feature Load Balance Per Amount Of GB
- https://forum.pfsense.org/index.php?topic=122752.0
-
11:59 AM Revision 2b86d221: Use empty()
- (cherry picked from commit 605a9e6c1f1fae786468b81bf7c911a874048fad)
-
11:59 AM Revision 87a5d383: Fix CPU update period in System Information widget
- This only updates after the refresh period set in System - General Setup - Dashboard update period; should not be har...
-
11:58 AM Revision d6df09d0: Merge pull request #3301 from doktornotor/patch-1
-
11:55 AM Revision 605a9e6c: Use empty()
-
11:47 AM Revision 9e0e2b61: Fix display of the number of states in the firewall rules page
- For numbers greater than 1000 format_number() returns strings formatted like N.NNN K/M/G/T, that get cut to only the ...
-
11:46 AM Revision 6520f6c0: Fix display of the number of states in the firewall rules page
- For numbers greater than 1000 format_number() returns strings formatted like N.NNN K/M/G/T, that get cut to only the ...
-
11:46 AM Revision 49eed363: Merge pull request #3302 from plumbeo/number-of-states
-
11:17 AM Feature #7029: GRE interfaces not available as SPAN port
- It may be valid on Cisco but does it actually function on FreeBSD? That would be the real question. GRE doesn't handl...
-
11:13 AM Feature #7029 (Closed): GRE interfaces not available as SPAN port
- GRE interfaces are removed from all bridge port lists. It is valid to select a GRE port as a SPAN port destination (...
-
11:12 AM Bug #4766 (Feedback): "URL Table (IPs)" and "URL (IPs)" do not work when text file is hosted on a fresh install of pfSense
- Fix committed.
Thanks! -
10:09 AM Bug #6882: bsnmpd uses all available CPU with hostres module active in some cases
- Reproduced it on a stock FreeBSD 11 system.
Opened a bug report upstream: https://bugs.freebsd.org/bugzilla/show_b... -
08:10 AM Bug #6978 (Not a Bug): Squidguard error page crashing after activating WebGUI PFSENSE https security
- squidGuard can't redirect to https that way, the user will get a nasty cert error and/or it won't work.
Setup an e... -
07:59 AM Bug #6978: Squidguard error page crashing after activating WebGUI PFSENSE https security
- sry, squidguard instead dansguardian.
Squid uses port 3128 and webgui 8989.
12/20/2016
-
10:08 PM Revision aaddb090: Revert manual changes
-
10:06 PM Revision ef0e956e: Fix display of the number of states in the firewall rules page
- For numbers greater than 1000 format_number() returns strings formatted like N.NNN K/M/G/T, that get cut to only the ...
-
09:57 PM Revision ea0a3f9c: Use sprintf()
-
09:41 PM Revision 827c3f1e: Fix CPU update period in System Information widget
- This only updates after the refresh period set in System - General Setup - Dashboard update period; should not be har...
-
09:30 PM Bug #7027 (Resolved): Dynamic DNS dyndns.org no longer updates
- Have paid DynDNS.org service - used to work - do not know exactly when it quit but now get following error in system ...
-
09:21 PM Bug #7026: filter_logs.inc: parse_firewall_log_line(): Filter logs do not display
- I'll take this one, this happens because of a change on a struct size.
-
09:18 PM Bug #7026: filter_logs.inc: parse_firewall_log_line(): Filter logs do not display
- 2.4 logs:
Dec 1 16:34:41 pfSense filterlog: 61,16777216,,12000,cpsw0,match,block,in,0,bad-hlen=0),0
Dec 1 16:39:1... -
07:11 PM Bug #7026 (Resolved): filter_logs.inc: parse_firewall_log_line(): Filter logs do not display
- There is a problem with the format of the filter logs which is causing src/etc/inc/filter_logs.inc: parse_firewall_lo...
-
09:13 PM Bug #6892 (Feedback): CARP VIPs Deleted entering CARP Maintenance Mode
- v6 CARP addresses now works too: https://github.com/pfsense/FreeBSD-src/commit/580e1b6a1155103292e67771940801d8fe896f45
-
07:12 PM Bug #6892: CARP VIPs Deleted entering CARP Maintenance Mode
- IPv4 was fixed by this commit: https://github.com/pfsense/FreeBSD-src/commit/77805aa5fa51dbd2ed0b6c363c6235c892caee76...
- 08:15 PM Revision 58dfe945: Allow "DHCP" in upper or lower case when adding LAN IP to setup wizard
- 08:14 PM Revision 1ef8d68c: Allow "DHCP" in upper or lower case when adding LAN IP to setup wizard
-
07:55 PM Revision 3575058b: Do not enter or leave the persistent maintenance mode if the CARP is temporary disabled.
- While here update the CARP status check.
- 07:55 PM Revision 34a5feac: Test fix for #6762
-
05:51 PM Revision 403dad2a: Disable DHCP server on interfaces with subnet >= 31. Fixes #6930
-
05:51 PM Revision e6650368: Disable DHCP server on interfaces with subnet >= 31. Fixes #6930
- 05:07 PM Revision f75f0ef7: Fix #6927 1:1 NAT validate address family
- Ensure that all the manually-entered addresses come from the same
address family - i.e. they are all either IPv4 or I... - 05:06 PM Revision c3a35c5d: NAT 1:1 use constant name when checking validateipaddr return value
- (cherry picked from commit 13cf61ba2c7ab5c9029ba40606e27e71075ef8ac)
- 05:05 PM Revision ec38ba8b: Merge pull request #3299 from phil-davis/patch-8
- 05:04 PM Revision 42db415e: Fix #6927 1:1 NAT validate address family
- Ensure that all the manually-entered addresses come from the same
address family - i.e. they are all either IPv4 or I... - 05:03 PM Revision 13cf61ba: NAT 1:1 use constant name when checking validateipaddr return value
- 05:02 PM Revision 809ff7c8: validateipaddr update return value comments
- (cherry picked from commit 74999ad8c4cd2ae5e96c4ae21ee09a246b0a029b)
- 05:02 PM Revision ca834146: validateipaddr use constants from globals.inc
- (cherry picked from commit dc9388397301912340b34398307936b5c9dc3fd6)
- 05:02 PM Revision 40ba600b: validateipaddr return address family
- Enhanced the return values from validateipaddr() so the caller can know if the validated address is IPv4 or IPv6 (or ...
- 05:01 PM Revision 3d4c51e4: Merge pull request #3299 from phil-davis/patch-8
- 05:01 PM Revision 0ded76a6: Merge pull request #3298 from phil-davis/patch-7
- 04:57 PM Revision 74999ad8: validateipaddr update return value comments
-
04:56 PM Revision dc5edc6e: Fix #7021: Deprecate device polling
- 04:55 PM Revision dc938839: validateipaddr use constants from globals.inc
- 04:35 PM Revision 0f026668: Revise define values for address types to allow an easier transition in validateipaddr()
- 04:33 PM Revision ca86de04: Revise define values for address types to allow an easier transition in validateipaddr()
-
04:30 PM Revision 0ecbaa0e: Revert "ctrl-c is handy in the shell. Do not lock out."
- This doesn't seem to be a problem these days. Fixes #6741
This reverts commit e8b82b8191356d50a2f210067d7a9f32976d4075. -
04:29 PM Revision 533f3160: Revert "ctrl-c is handy in the shell. Do not lock out."
- This doesn't seem to be a problem these days. Fixes #6741
This reverts commit e8b82b8191356d50a2f210067d7a9f32976d4075. - 04:26 PM Revision bcdf4534: Fix #6927 1:1 NAT validate address family
- Ensure that all the manually-entered addresses come from the same
address family - i.e. they are all either IPv4 or I... - 04:22 PM Revision 24eb39e2: validateipaddr return address family
- Enhanced the return values from validateipaddr() so the caller can know if the validated address is IPv4 or IPv6 (or ...
-
03:45 PM Revision a6a158e9: Captive Portal: convert active sessions table to a sortable table
- Convert the active sessions table in the captive portal status page to a sortable table and remove the old sorting co...
- 03:44 PM Revision cf9e9e84: Merge pull request #3287 from plumbeo/fix-order-by-lastact
-
03:40 PM Revision e12b438b: Captive Portal: convert active sessions table to a sortable table
- Convert the active sessions table in the captive portal status page to a sortable table and remove the old sorting co...
-
01:31 PM Bug #7025: wizard.php?xml=setup_wizard.xml - Setup wizard is flagging valid LAN IP addresses as invalid
- It happens to me on Firefox (50.1.0 on Linux) but I was using an SG-1000 when I confirmed it, as that's what the repo...
-
01:26 PM Bug #7025 (Confirmed): wizard.php?xml=setup_wizard.xml - Setup wizard is flagging valid LAN IP addresses as invalid
- This appears to be Chrome related. No problem on Safari or Firefox. Probably the Chrome pattern matching bug. Checkin...
-
01:19 PM Bug #7025 (Resolved): wizard.php?xml=setup_wizard.xml - Setup wizard is flagging valid LAN IP addresses as invalid
- Go through the setup wizard to the LAN configuration page, enter a valid IP address, click or tab out of the field an...
- 12:49 PM Revision 5d16bc84: "Internationalize" help text in router advertisements
- 12:48 PM Revision e9650eeb: "Internationalize" help text in router advertisements
-
12:41 PM Revision 4bc059ef: Unbound - add support for "deny_non_local" and "refuse_non_local" ACLs (Feature #6914)
- (cherry picked from commit 6ff48cf16b4264f6554feffcf35ec2eaea4bce16)
-
12:41 PM Revision 77b7b90b: Unbound - add support for "deny_non_local" and "refuse_non_local" ACLs (Feature #6914)
- (cherry picked from commit 6a827f6959fc34972e532516a6a414e1cdf87714)
-
12:41 PM Revision 2c84c28a: Merge pull request #3291 from doktornotor/patch-4
-
12:03 PM Revision 26ec7e01: dhcp6c no release
- Script changes to allow no-release option of dhcp6c. These changes to be
used in conjunction with pfSense/FreeBSD-por... -
12:02 PM Revision fd67dcd4: Merge pull request #3295 from marjohn56/No-Release
-
12:00 PM Bug #6930 (Feedback): DHCP server should be disabled for /31 and /32
- Applied in changeset commit:e66503688e06a8ce19875863ee87356bb4ce3cf8.
-
11:10 AM Bug #6927 (Feedback): 1 to 1 NAT allows entry of mixed IP addresses
- Applied in changeset commit:bcdf453402a2f742b2656cd59602250f062896ee.
-
11:00 AM Todo #7021 (Feedback): system_advanced_network.php Deprecate/remove Device Polling on 2.4
- Applied in changeset commit:dc5edc6e9840a53e6c7153414c1d0e1066efd058.
-
10:40 AM Bug #6741 (Feedback): /etc/rc.initial does not trap CTRL-C back to console menu but rather to # prompt.
- Applied in changeset commit:533f3160a46672e3cf74f6fd1af952f966ae5b06.
-
10:35 AM Feature #6728 (Needs Patch): Route53 API mod and Geolocation
- Target to future while we wait for the patch
-
10:31 AM Todo #6998: Create a port for simplepie to keep it updated and use modular version
- Convert code to use modular version of simplepie instead of static file
-
10:22 AM Bug #4766: "URL Table (IPs)" and "URL (IPs)" do not work when text file is hosted on a fresh install of pfSense
- https://192.168.1.1/firewall_aliases.php?tab=all
In URL you must to use same hostname on self-signed certificate. ... -
10:08 AM Todo #3734 (Resolved): Remove PHP static pear modules from repo and use ports
- Moving radius.inc change to a new ticket (#7024)
-
10:07 AM Todo #7024 (Resolved): Replace copy of radius.inc by pear-Auth_RADIUS
- Replace copy of radius.inc, with a good number of modifications, by pear-Auth_RADIUS provided by ports
-
10:04 AM Bug #7023 (Rejected): dhclient
- You are probably talking about this forum thread - https://forum.pfsense.org/index.php?topic=116487.0
I post an an... -
06:20 AM Bug #7023 (Rejected): dhclient
- One of my testers has a site in France, the dhclient needs to send extra options ( Orange France ). Apparently there ...
-
07:29 AM pfSense Packages Bug #7022 (Not a Bug): HAproxy action sequence bug
-
06:22 AM pfSense Packages Bug #7022: HAproxy action sequence bug
- Yes, it is supposed to be always below the actions, I even linked the code and stated it explicitly. Dunno which part...
-
05:41 AM pfSense Packages Bug #7022: HAproxy action sequence bug
- Kill Bill wrote:
> Actually, no, there is no such bug. The redirect rules are ordered perfectly fine as declared. An... -
05:00 AM pfSense Packages Bug #7022: HAproxy action sequence bug
- Actually, no, there is no such bug. The redirect rules are ordered perfectly fine as declared. And there's nothing to...
-
04:16 AM pfSense Packages Bug #7022: HAproxy action sequence bug
- Kill Bill wrote:
> Fix the "tes" typo to "test" perhaps? Use https://forum.pfsense.org/index.php?board=60.0 for help... -
03:49 AM pfSense Packages Bug #7022: HAproxy action sequence bug
- Fix the "tes" typo to "test" perhaps? Use https://forum.pfsense.org/index.php?board=60.0 for help, Redmine is for bugs.
-
03:11 AM pfSense Packages Bug #7022 (Not a Bug): HAproxy action sequence bug
- Web interface generate wrong action sequence in HAproxy config. See screenshots
-
05:45 AM pfSense Packages Bug #6950 (Feedback): Auto Config Backup always reports success
- PR has been merged. Thanks!
-
05:39 AM pfSense Packages Bug #6983 (Feedback): pfBlockerNG-2.1.1_4 requires xmlrpc.inc which is removed or moved
- 2.1.1_5 should address this
12/19/2016
-
09:32 PM Revision 50563530: dhcp6c no release
- Script changes to allow no-release option of dhcp6c. These changes to be
used in conjunction with pfSense/FreeBSD-por... - 09:04 PM Revision e0c32322: Revised #6889 to use formatted list syntax
- 09:03 PM Revision 652ce2b5: Revised #6889 to use formatted list syntax
- 08:52 PM Revision 8bba3339: COmpleted #6889 by re-formatting help text
- 08:50 PM Revision 297190ed: COmpleted #6889 by re-formatting help text
-
08:27 PM Revision 3eaf25aa: Fix capitalization of confirmation messages for btn-danger buttons and fa-trash icons
- Value and title were converted to lower case but not textContent. Consequently some pop-up messages included capitali...
-
08:26 PM Revision 806a202a: Merge pull request #3286 from plumbeo/danger-lower-case
-
07:39 PM Revision 1d87a144: Reset the $icon variable (otherwise it can keep the last value - in a few broken cases)
-
06:37 PM pfSense Packages Bug #6356 (Resolved): Snort - missing protocol in port scan detection
-
06:03 PM pfSense Packages Bug #6356: Snort - missing protocol in port scan detection
- Been merged/fixed long time ago. Can be closed.
-
06:36 PM Bug #6997 (Resolved): DHCP/DHCPv6 server GUI should be accessible even if DHCP relay is enabled
-
05:52 PM Bug #6997: DHCP/DHCPv6 server GUI should be accessible even if DHCP relay is enabled
- Works, thanks! 8-)
-
03:24 PM Revision e93e2b68: Update pot
-
03:22 PM Revision 7145bb56: Improve RADVD router mode help text (Todo #6889)
- (cherry picked from commit 69bfc8ede81fb28b6eceb7f1343d94c68073c706)
-
03:22 PM Revision 0e95f736: Merge pull request #3289 from doktornotor/patch-2
-
03:21 PM Revision 91650d98: Update pot
-
02:53 PM Todo #6889 (Resolved): Improve router mode help text
- Kill Bill text reformatted to take up less screen space. Thanks KB.
- 02:32 PM Revision 12f15f47: Validate IP addresses using validateipaddr() function
-
01:07 PM Todo #7021 (Resolved): system_advanced_network.php Deprecate/remove Device Polling on 2.4
- Given the other changes on 2.4 (e.g. dropping i386), it may also be time to remove the polling option from /usr/local...
-
12:00 PM Revision fe81d18f: Add missing include
- (cherry picked from commit 12094fd551055c40b3d0da8d27a5fcaabed0ae54)
-
12:00 PM Revision 2f15609c: Restart unbound after clearing logs (Bug #6915)
- (cherry picked from commit ef72cd5c2d36ff300de8de5971c05e19d1c9443c)
-
11:59 AM Revision 3d048d1b: Merge pull request #3284 from doktornotor/patch-1
-
11:57 AM Revision 7d25750f: status_queues.php - remove redundant escaping
- (cherry picked from commit c69a1a745045cbb7feef216ee97fcb72a00558ec)
-
11:57 AM Revision 539beb9f: Merge pull request #3292 from doktornotor/patch-5
-
11:21 AM Revision c69a1a74: status_queues.php - remove redundant escaping
-
10:56 AM Bug #6959 (Resolved): Remove or rename "LiveCD" option in the 2.4 installer
- Done
-
09:44 AM Bug #7020 (Duplicate): <Hostname> is omitted when sending logs on syslog
- When sending "filterlog" over syslog the standard defined in https://doc.pfsense.org/index.php/Filter_Log_Format_for_...
-
08:48 AM pfSense Packages Bug #4034 (Resolved): AutoConfigBackup - user-config-readonly priv still does backup
- Confirmed as fixed. A user with the Deny Config Write privilege won't trigger a new ACB entry on save.
-
08:39 AM Bug #6990: DDNS IPs not updating after a system restart
- Jim Pingle wrote:
> Nothing unusual in the settings, look for anything related to Dynamic DNS in the main system log... -
07:48 AM Bug #6990: DDNS IPs not updating after a system restart
- Nothing unusual in the settings, look for anything related to Dynamic DNS in the main system log, are there any error...
-
06:18 AM Bug #6990: DDNS IPs not updating after a system restart
- Jim Pingle wrote:
> Not nearly enough detail.
>
> What are the exact types and services used in your Dynamic DNS ... -
06:00 AM Bug #6915 (Feedback): unbound logging not working after reboot or "Reset log files"
- PR has been merged
-
05:55 AM pfSense Packages Feature #3303 (Feedback): Allow quagga ospf stub, not so stub and totally stub areas
- PR has been merged
-
05:49 AM pfSense Packages Feature #556 (Feedback): siproxd: add carp virtual IPs as interface candidates
- PR merged
12/18/2016
-
03:18 PM pfSense Packages Feature #556: siproxd: add carp virtual IPs as interface candidates
- In case you are still waiting... https://github.com/pfsense/FreeBSD-ports/pull/235
LOLz. -
02:22 PM Revision 53ceab5d: Update pfSense.pot
-
02:12 PM Revision 6ff48cf1: Unbound - add support for "deny_non_local" and "refuse_non_local" ACLs (Feature #6914)
-
02:04 PM Revision 6a827f69: Unbound - add support for "deny_non_local" and "refuse_non_local" ACLs (Feature #6914)
-
11:59 AM Revision 9d6d437b: Update pfSense.pot
-
11:53 AM Revision 2f7cd367: gettext-ize this while here
-
11:45 AM Revision cbe5405f: Add enable link to Status > UPnP & NAT-PMP error message if disabled (Todo #6689)
-
11:02 AM Revision 66fa78b6: Update pfSense.pot
-
10:33 AM Revision 69bfc8ed: Improve RADVD router mode help text (Todo #6889)
-
08:24 AM Feature #6914: unbound access-control lists
- https://github.com/pfsense/pfsense/pull/3291
-
05:45 AM Todo #6689: Add enable link to Status > UPnP & NAT-PMP error message if disabled
- https://github.com/pfsense/pfsense/pull/3290
-
04:34 AM Todo #6889: Improve router mode help text
- I got annoyed once again by having to look up what the modes do in the PHP code, so did a PR:
https://github.com/p... -
04:08 AM Revision 1992d9f9: Fix up validation and encoding on Captive Portal status pages. Fixes #7019
-
04:08 AM Revision c31fb7b0: Fix up validation and encoding on Captive Portal status pages. Fixes #7019
-
04:01 AM Revision ac90c901: Fix up validation and encoding on Captive Portal status pages. Fixes #7019
12/17/2016
-
10:10 PM Bug #7019 (Feedback): XSS issues in captive portal status pages
- Applied in changeset commit:ac90c9012453c7e81ff0d0b472a55b116866c56e.
-
10:07 PM Bug #7019 (Resolved): XSS issues in captive portal status pages
- The zone parameter needs better validation/encoding on the captive portal status pages, and the 'order' parameter on ...
-
09:59 PM Revision 19d905bc: IPv6, allow DHCP6 server to use a prefix size of /59 and /61 like dhcp client does
-
06:57 PM pfSense Packages Bug #3380 (Not a Bug): FreeRadius-User-Option "Expiration Date" kills the FreeRadius-Server
-
06:10 PM pfSense Packages Bug #3380: FreeRadius-User-Option "Expiration Date" kills the FreeRadius-Server
- Did you read the field description and the error message?
> Enter the date when this account should expire. *Forma... -
05:58 PM pfSense Packages Bug #6805 (Duplicate): Freeradius + OTP sometimes auth failed when auth openvpn.
- Probably fixed with #6900 anyhow. Closing.
-
12:06 PM pfSense Packages Bug #6805: Freeradius + OTP sometimes auth failed when auth openvpn.
- Not even remotely enough info here to debug anything. Please, move to https://forum.pfsense.org/ until you have a con...
-
05:52 PM Revision 4db8128c: Fix capitalization of confirmation messages for btn-danger buttons and fa-trash icons
- Value and title were converted to lower case but not textContent. Consequently some pop-up messages included capitali...
-
05:37 PM pfSense Packages Bug #6456: vm-bhyve not correctly detecting the modules in kernel
- Jose Luis Duran wrote:
> This was fixed in vm-bhyve v0.12.3.
>
> (https://github.com/churchers/vm-bhyve/commit/a7... -
03:45 PM Bug #7018: DHCP packets replicated on non-DHCP relay interface
- No idea what's the bug here (the requests are relayed from the configured interfaces to the network where's the confi...
-
01:53 PM Bug #7018 (Closed): DHCP packets replicated on non-DHCP relay interface
- When enabling DHCP relay for the following networks:
LAN: 192.168.2.0
PUBLIC: 192.168.4.0
But not on:
Se... -
09:07 AM pfSense Packages Bug #6950: Auto Config Backup always reports success
- Well, actually there's _some_ output needed no matter what, to provide some indication that the Backup button works. ...
-
08:31 AM pfSense Packages Bug #6950: Auto Config Backup always reports success
- I just removed the misleading "success" noise as part of https://github.com/pfsense/FreeBSD-ports/pull/234 - as noted...
-
07:54 AM pfSense Packages Bug #4034: AutoConfigBackup - user-config-readonly priv still does backup
- Well I think this bug is gone since this commit (which disabled the unwanted duplicated backups as well) - https://gi...
-
07:48 AM pfSense Packages Feature #4055 (Rejected): Enable area authentication from GUI
-
04:53 AM pfSense Packages Feature #4055: Enable area authentication from GUI
- Works just fine with the GUI as well, cf. https://github.com/pfsense/FreeBSD-ports/blob/devel/net/pfSense-pkg-Quagga_...
-
07:16 AM pfSense Packages Feature #6951: Disable Auto Config Backup without uninstalling
- https://github.com/pfsense/FreeBSD-ports/pull/234
-
06:16 AM Bug #6852: Commit 8f86722 breaks DHCPv6 leases status page
- only ipv6 that i get to show up is static mappings so I attached requested file currently on 2.3.3-DEVELOPMENT (amd6...
-
04:31 AM pfSense Packages Bug #5732: Qagga: Different output in ospfd.conf based on order of interfaces.
- The description here makes no sense. I'd suggest to post some configuration screenshots with the interfaces configura...
-
03:33 AM pfSense Packages Feature #3303: Allow quagga ospf stub, not so stub and totally stub areas
- Renato Botelho wrote:
> Please send it as using github pull request on https://github.com/pfsense/pfsense-packages r... -
12:39 AM Revision 12094fd5: Add missing include
-
12:11 AM Revision ef72cd5c: Restart unbound after clearing logs (Bug #6915)
12/16/2016
-
10:46 PM Revision 07c812a5: Merge pull request #3283 from doktornotor/patch-1
-
09:44 PM Revision f84d7989: Merge pull request #1 from stilez/jdillard-patch-1
- Fix the Safari issue mentioned by @rbgarga. Taking RBG + Jared's word this fixes it :)
-
06:45 PM pfSense Packages Bug #6616 (Duplicate): Client Export list empty when using intermediate CA
-
06:26 PM pfSense Packages Bug #6616: Client Export list empty when using intermediate CA
- This works just fine here with 2.3.3, sounds like duplicate of Bug #2800.
- 06:33 PM Revision 18d8ab35: validateipaddr enhance flexibility for translation
- By using sprintf() we can allow for some language where the label text does not fit at the start of the sentence.
(ch... -
06:33 PM Revision 2a3d27a6: Merge pull request #3281 from phil-davis/patch-7
- 06:32 PM Revision c22a908d: validateipaddr code format
- (cherry picked from commit aa2b8133b3cdb90791b577a90361842cd97bb16b)
-
06:32 PM Revision 4a725adc: Merge pull request #3280 from phil-davis/patch-2
-
06:12 PM Bug #6915: unbound logging not working after reboot or "Reset log files"
- The "reset log files" issue should be fixed by https://github.com/pfsense/pfsense/pull/3284
As for unbound logging... -
06:07 PM pfSense Packages Bug #6061 (Closed): stunnel package update request
-
05:33 PM pfSense Packages Bug #6061: stunnel package update request
- 2.2.x packages are not maintained. PR for stunnel package on 2.3+ is @ https://github.com/pfsense/FreeBSD-ports/pull/...
-
06:07 PM pfSense Packages Bug #6060 (Closed): stunnel certs tab does update cert tab
-
05:33 PM pfSense Packages Bug #6060: stunnel certs tab does update cert tab
- 2.2.x packages are not maintained. PR for stunnel package on 2.3+ is @ https://github.com/pfsense/FreeBSD-ports/pull/...
-
05:48 PM pfSense Packages Feature #6436: Add Stunnel binaries to the pfSense repository
- Adding the PR for reference: https://github.com/pfsense/FreeBSD-ports/pull/135
-
05:46 PM Bug #6363: AutoConfigBackup Restore Actions column missing due to long XMLRPC sync merge strings in the configuration description
- Hmmm, wraps into multiple lines just fine here.
!https://s29.postimg.org/8064c051j/Screenshot_ACB.png! -
03:53 PM Revision 647db6bb: Ensure that the more secure option is used if both user-copy-files and user-copy-files-chroot is granted
-
02:42 PM pfSense Packages Bug #7017 (Resolved): Squid NT Domain authentication is broken
- Relevant forum thread: https://forum.pfsense.org/index.php?topic=113667.0; the method used for Squid 3.3 does no long...
-
02:26 PM Bug #6982: Nested Aliases with FQDNs do not populate parent table in some cases
- I'll work on it
-
02:23 PM Revision d1aa3bba: Suppress error logging for Diag > Command Prompt so an error in user-entered code doesn't offer to submit a crash report. A notice is still generated since PHP <7 doesn't yet have error_clear_last(). Fixes #6702
-
02:23 PM Revision fb2f904c: Suppress error logging for Diag > Command Prompt so an error in user-entered code doesn't offer to submit a crash report. A notice is still generated since PHP <7 doesn't yet have error_clear_last(). Fixes #6702
-
02:20 PM Revision 45bcbee9: Suppress error logging for Diag > Command Prompt so an error in user-entered code doesn't offer to submit a crash report. A notice is still generated since PHP <7 doesn't yet have error_clear_last(). Fixes #6702
-
01:44 PM Feature #7016 (Resolved): system_information_widget.php - Indicate adaptive state timeout status when active
- It would be helpful to show the user that pf has enabled adaptive state timeout scaling when it kicks in.
Some sam... -
01:04 PM Revision 4f48a261: Update pfSense.pot
-
12:53 PM Revision 8dd0a7da: Add support for chrooted SCP
-
12:33 PM Revision 74fd2299: Add support for chrooted SCP
-
11:43 AM Bug #7015 (Resolved): IPsec not working behind NAT
- @luiz has the details, looks like a ESP fragment but it creates odd state with unknown IP address like:
enc0 icmp ... -
11:14 AM Bug #7013: Changing group scope to remote does not remove it from group file
- Well, there's obviously much more wrong here, this actually requires a reboot to take effect. Also, adding/removing u...
-
09:06 AM Bug #6702 (Resolved): Command Prompt syntax error and crash detection report
- Yeah that's part is good to stay, what still annoys me is that you get a notice from it (alert bell, e-mail notificat...
-
08:48 AM Bug #6702: Command Prompt syntax error and crash detection report
- Yup, works. (As for the error being shown in "PHP Response", I think that's OK and should actually stay, it's useful.)
-
08:30 AM Bug #6702: Command Prompt syntax error and crash detection report
- Applied in changeset commit:45bcbee917920238248a2486a2742e3ff327b309.
-
08:28 AM Bug #6702: Command Prompt syntax error and crash detection report
- Pushed a small change so that it will at least not offer to submit a crash report.
-
05:16 AM Bug #6702: Command Prompt syntax error and crash detection report
- Well I think what was meant here is that pasting random potentially broken junk to Diagnostics - Command Prompt for t...
-
08:28 AM pfSense Packages Bug #1620: Can't use transparent proxy when using bridge.
- I have no intention setting up bridges to test with transparent Squid. My understanding is that when the interface is...
-
08:06 AM pfSense Packages Bug #6182: HAProxy not supporting ALPN
- Pi Ba wrote:
> Is it possible to make changes to existing ports makefiles?
See this and replace with < 1100000?
... -
07:32 AM Bug #7014: inbound connections do not get through whilst using openvpn
- Thanks posted on forum few weeks back but got no response
thanks for the detailed bug that does sound similar wel... -
06:45 AM Bug #7014 (Rejected): inbound connections do not get through whilst using openvpn
- Not enough usable info here. Please "post on the forum":https://forum.pfsense.org/index.php?board=69.0 with much more...
-
06:15 AM Bug #7014: inbound connections do not get through whilst using openvpn
- openvpn not opendns
-
04:29 AM Bug #7014 (Rejected): inbound connections do not get through whilst using openvpn
- when using openvpn, inbound traffic is not received and do not get passed to the intended device,
when you turn o... -
07:11 AM Bug #7012: scponly shipped with pfSense does not work with Linux scp
- Jim Pingle wrote:
> Yeah it would need some extra bits but that can all be done by hand if the user really wants it,... -
06:42 AM pfSense Packages Bug #6489 (Not a Bug): Squid Reverse Proxy: Deleting an entry on the "Redirects" tab does not reload config
-
05:34 AM pfSense Packages Bug #6489: Squid Reverse Proxy: Deleting an entry on the "Redirects" tab does not reload config
- No idea how to reproduce. On save, squid_resync() is called [1] which in turn calls squid_resync_reverse() [2] which ...
-
06:41 AM pfSense Packages Bug #6632 (Resolved): siproxd hosts_allow_reg should be configurable
-
05:04 AM pfSense Packages Bug #6632: siproxd hosts_allow_reg should be configurable
- Done with 1.1.3 (https://github.com/pfsense/FreeBSD-ports/pull/147), can be closed.
-
06:40 AM pfSense Packages Bug #6654 (Resolved): siproxyd Table issue
-
05:01 AM pfSense Packages Bug #6654: siproxyd Table issue
- Fixed with 1.1.3 (https://github.com/pfsense/FreeBSD-ports/pull/147), can be closed.
-
06:38 AM pfSense Packages Bug #6999 (Resolved): ntopng missing preferences menu
-
04:54 AM pfSense Packages Bug #6999: ntopng missing preferences menu
- Works.
- 03:12 AM Revision bb9747b2: validateipaddr enhance flexibility for translation
- By using sprintf() we can allow for some language where the label text does not fit at the start of the sentence.
- 03:02 AM Revision aa2b8133: validateipaddr code format
Also available in: Atom