Activity
From 01/08/2017 to 02/06/2017
02/06/2017
-
05:59 PM pfSense Packages Bug #7211: DNS Made Easy ACME script not parsing domain IDs properly
- I tried applying that patch to the script on my pfSense install, and the ACME challenge process worked just fine afte...
-
04:34 PM pfSense Packages Feature #7221: ACME package : add standalone mode & specify port used
- In acme.sh there are several options:
*Standalone mode:*
@acme.sh --issue -d aa.com --standalone --httpport 8... -
04:30 PM pfSense Packages Feature #7221 (Resolved): ACME package : add standalone mode & specify port used
- Added the standalone mode, to be able to specify port used for the challenge and the possibility to automatically ope...
-
03:27 PM Bug #6937: Inbound traffic on enc0 is not creating a state with mobile IPsec
- No change on the latest snap built after that commit.
-
02:07 PM Bug #6937 (Feedback): Inbound traffic on enc0 is not creating a state with mobile IPsec
- Jimp, can you check the latest build ?
Relevant commit: https://github.com/pfsense/FreeBSD-src/commit/5d8a65f506d8... -
02:04 PM Feature #7199 (Feedback): SG-1000 cpsw nics don't support ALTQ
- Should work now: https://github.com/pfsense/FreeBSD-src/commit/b95dbdb097fd2d5b148098bcc68e1f57b7dab544
-
01:58 PM pfSense Packages Bug #7205 (Feedback): ACME package ignores DNS-Manual method, defaults to http-01
- Fixed in acme pkg version 0.1.8 which will be available shortly
-
01:25 PM pfSense Packages Bug #7208 (Feedback): ACME ftpwebroot doesn't work
- Pushed a fix for this in acme pkg version 0.1.7, will be available shortly.
-
08:37 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- * System > Advanced > Firewall & NAT
* Services > DNS Resolver > Advanced
Tested, no PHP errors displayed in b... -
08:21 AM Feature #7182: Break up System Widget on the Dashboard
- Stage1 done - PR 3456 has been merged. So users can cut down the amount of content in the existing widget.
Now to th... -
08:14 AM Bug #7219 (Confirmed): vlan(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- The problem, as stated, was incorrect. It's a problem with vlan(4) ALTQ support in general, not specific to any hardw...
-
03:40 AM Bug #7219: vlan(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- What version of pfSense - 2.3.2-p1, 2.3.3-DEVELOPMENT or 2.4-BETA?
-
03:10 AM Bug #7219 (Resolved): vlan(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Adding a VLAN interface on the Traffic Shaper doesn't work.
rc.filter_configure_sync: New alert found: There were... -
07:34 AM pfSense Packages Feature #7220: ACME client port and service config
- Jim Pingle wrote:
> That's a security limitation of Let's Encrypt. Nothing we can do about it.
>
> https://commun... -
07:32 AM pfSense Packages Feature #7220 (Rejected): ACME client port and service config
- That's a security limitation of Let's Encrypt. Nothing we can do about it.
https://community.letsencrypt.org/t/let... -
07:20 AM pfSense Packages Feature #7220 (Rejected): ACME client port and service config
- Hi, any way to configure a port of the http server, i dont use 80 or 443 and is not possible to active letsencrypt.
-
07:31 AM pfSense Packages Bug #1620: Can't use transparent proxy when using bridge.
- I ran some tests with this and was unable to make it work. Adding 'route-to lo0' to the pass rule did not allow this ...
-
06:43 AM pfSense Packages Bug #7218 (Confirmed): acme_inc.sh hard codes 'HMAC-MD5.SIG-ALG.REG.INT' for nsupdate key types
- There are several assumptions that had to be made there for the time being to get it working in a basic fashion (key ...
-
04:55 AM pfSense Packages Bug #7197 (Resolved): Freeradius ldap authentication failed after update 1.7.5 to 1.7.6
-
12:34 AM Bug #7167 (Feedback): Error creating higher VLAN ID on SG-1000
- Fixed in the latest snapshot.
-
12:31 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- This may be the tradeoff of the fix, in reality won't disable the multiple queues but only one is going to be used an...
-
12:11 AM Bug #6257 (Resolved): Kernel panic with ALTQ
- Fixed in 2.4.
02/05/2017
-
11:49 PM pfSense Packages Bug #7218: acme_inc.sh hard codes 'HMAC-MD5.SIG-ALG.REG.INT' for nsupdate key types
- The file is acme_sh.inc not acme_inc.sh.
-
11:47 PM pfSense Packages Bug #7218 (Resolved): acme_inc.sh hard codes 'HMAC-MD5.SIG-ALG.REG.INT' for nsupdate key types
- 'HMAC-MD5.SIG-ALG.REG.INT' is hardcoded in acme_inc.sh so that is the only type of key that can be used for dns-nsupd...
-
07:45 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Got it. Thanks.
-
07:28 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- I just did a click through every page that my device has and found one more for which I couldn't find an existing rep...
-
06:55 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- System -> Advanced -> Firewall & NAT has already been fixes and will be in the next snap
The two Squid warnings were... -
06:23 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- SG-1000
2.4.0.b.20170204.2301
I was getting this issue on the Status Page. Can confirm that it is now resolved.
... -
02:09 PM pfSense Packages Feature #7217 (Rejected): x hrs per day total
- That isn't possible in pf. If you need time quotas, you'll have to use something that can hook into RADIUS for accoun...
-
02:06 PM pfSense Packages Feature #7217 (Rejected): x hrs per day total
- Currently there is a schedule feature in pfsense, where you can allow an IP from 4pm to 5:59pm for example, Mo-Su
... -
11:39 AM Bug #7214: OpenVPN dh parameters above 4096 are not in /etc/
- Duplicate of Bug #6962 and fixed in 2.4 as noted above. Move on.
-
11:11 AM Bug #7214: OpenVPN dh parameters above 4096 are not in /etc/
- Sorry if I wasn't clear, and this very well could have been fixed already in 2.4.
The main issue on 2.3 is not tha... -
09:28 AM Bug #7149: igb driver queue related crashes
- After completely removing the queues entry in loader.conf.local and more than 5 days uptime, I think this issue is re...
-
09:23 AM pfSense Packages Bug #6511: In some circumstances the HAProxy clone front-end button can add blank list entries to the front end being cloned resulting in a config that cannot be applied.
- Works fine here with pfSense-pkg-haproxy-0.52_4.
-
08:18 AM pfSense Packages Bug #7215 (Not a Bug): ACME challenge fails
-
05:49 AM pfSense Packages Bug #7215: ACME challenge fails
- This is not a bug. The webroot method assumes you have a webserver already running. It won't run any webserver on its...
-
03:57 AM pfSense Packages Bug #7215 (Not a Bug): ACME challenge fails
- ACME challenge fails for "webroot local folder" method because no web server is listening on HTTP 80.
Setup:
1. p... -
07:15 AM pfSense Packages Bug #7211: DNS Made Easy ACME script not parsing domain IDs properly
- Has been fixed upstream for a while:
https://github.com/Neilpang/acme.sh/commit/3cf85634ebb955ecee7616e88f4e1cef4458... -
07:11 AM Feature #7216: Allow user to choose date display format
- Comments please, if there is more/different flexibility that would be useful.
-
07:10 AM Feature #7216 (New): Allow user to choose date display format
- In various places dates and times are displayed, e.g. rule creation and update date/time stamp.
It would be nice if ...
02/04/2017
-
08:54 PM Bug #7214 (Not a Bug): OpenVPN dh parameters above 4096 are not in /etc/
- You have to make them yourself if you want to use the larger ones.
Non-existing entries are hidden on 3.Here is wh... -
08:17 PM Bug #7214 (Not a Bug): OpenVPN dh parameters above 4096 are not in /etc/
- In 2.3.2 (didn't check earlier versions) there is an option to select the dh parameter length when configuring a new ...
-
07:13 PM Bug #7213 (Resolved): Hyper-V install, no disk found
- *Issue:* When installing 2.4 on Hyper-V 2012R2 Gen1 VM, the installer does not see any drives.
*Workaround:* From ... -
06:10 PM Bug #7210: Unable to set a Alias with FQDN's for IPv6 networks
- I know that it doesn't mean that it is www.google.com, that wasn't the point we are talking about networks here not o...
-
02:28 PM Bug #7210: Unable to set a Alias with FQDN's for IPv6 networks
- Well that's an interesting idea but not exactly valid. If @2a00:1450:401b:803::2004@ is www.google.com, it doesn't me...
-
10:29 AM Bug #7210: Unable to set a Alias with FQDN's for IPv6 networks
- You are right /128 is not reasonable, but /64 would be nice.
Example:
www.google.com AAAA record is 2a00:1450:400... -
10:24 AM Bug #7210 (Not a Bug): Unable to set a Alias with FQDN's for IPv6 networks
- The hint could maybe be more clear. Network aliases can contain single hosts, and FQDN entries are always assumed to ...
-
10:16 AM Bug #7210: Unable to set a Alias with FQDN's for IPv6 networks
- And what exactly do you imagine to happen with a thing like www.google.com/128? Yeah, the hint is piece of crap, the ...
-
09:47 AM Bug #7210: Unable to set a Alias with FQDN's for IPv6 networks
- I am using the right place. I want to create a alias for an ipv6 network not for a ipv6 host. It shoud be possible, i...
-
09:21 AM Bug #7210: Unable to set a Alias with FQDN's for IPv6 networks
- 1/ The mask is absolutely irrelevant for hostname.
2/ You are using the wrong place to do the job, select 'Hosts' fr... -
08:51 AM Bug #7210 (Not a Bug): Unable to set a Alias with FQDN's for IPv6 networks
- As soon as a FQDN is entered, the CIDR mask changes to /32, therefore it's impossible to create a alias for IPv6 netw...
-
04:57 PM Feature #7212 (New): Provide Driver for SG-1000 Crypto Accelerator
- As per this thread, there is no FREEBSD driver available for the SG-1000 crypto accelerator:
https://forum.pfsense... -
04:24 PM pfSense Packages Bug #7211 (Resolved): DNS Made Easy ACME script not parsing domain IDs properly
- I'm currently running pfSense 2.3.2_1, and I tried the new ACME package (0.1.5) with DNS Made Easy verification. How...
-
02:10 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Fixed. Thanks for finding those. Embedded '%' that needed to be escaped.
-
01:30 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Seeing the same issue as Dustin on System > Advanced > Firewall. Tested with 2.4.0.b.20170203.2002.
-
12:20 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- Also, wanted to note that the use of v4 signing enables newer regions that didn't support the legacy authentication t...
-
12:17 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- I've tested changes and created a pull request to resolve this issue: https://github.com/pfsense/pfsense/pull/3473.
... -
11:36 AM Bug #7185: DHCP6c SIGTERM, SIGKILL
- Yes, they are both 'hopefully' put to sleep with the changes done in the script patch I sent you and with dhcp6c chan...
-
10:21 AM Bug #7185: DHCP6c SIGTERM, SIGKILL
- Patch is working well so far!
I think possibly #6944 and #7145 should be merged into this ticket? -
09:48 AM Bug #6848: Do not create an IPv4/6 gateway for an interface without according IPv4/6 address
- Confirmed that affects OpenVPN clients that get assigned interfaces. I am running latest snap 2.4.0.b.20170203.2002.
-
02:44 AM Bug #7187: IPSec IKEv2 additional P2 not written to config
- By enabling _Split connections_ on P1 I was able to make it work, and now _statusall_ shows all the routing.
I don... -
02:11 AM Bug #7209 (Rejected): Something is seriously wrong with firewall aliases
- pfS version is 2.3.2-p1.
Unbound host overrides used in FW aliases:
- server.home 192.168.201.1
-- nas.home ...
02/03/2017
-
11:58 PM pfSense Packages Bug #6875 (Not a Bug): dpinger not switching icmp id automatically
-
11:38 PM pfSense Packages Bug #6875: dpinger not switching icmp id automatically
- I think the report is erroneous. There should be no state association beyond a single ICMP Echo Request and it's Echo...
-
11:37 PM Bug #6913: install on Hyper-v R2
- Broken again.
https://forum.pfsense.org/index.php?topic=124915.0 -
09:26 PM pfSense Packages Bug #7208 (Resolved): ACME ftpwebroot doesn't work
- Below is the output of trying to use ftpwebroot. I redacted some data. As you can see from the log it doesn't appea...
-
07:45 PM Bug #7207 (Closed): Updates and Package Manager broken when pfSense accessed via SSH port forward
- Hello,
i am still setting up my pfSense device, so at this point it is just a client device connected to my netwo... -
07:27 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- Service no longer works in that is receives a signing error even though all details are correct.
-
07:19 PM Bug #7206 (Resolved): Authentication Method Used in Bug 6751 Removed by Amazon
- It appears that Route53 has stopped working with the AWS3-HTTP authentication method sometime in the last month. This...
-
06:00 PM pfSense Packages Bug #7205 (Resolved): ACME package ignores DNS-Manual method, defaults to http-01
- My initial run using DNS-Manual as the method failed with the log suggesting DNS was ignored and http-01 was attempte...
-
03:21 PM pfSense Packages Feature #7189: Letsencrypt acme sync in HA environment
- To confirm, with the latest Let's Encrypt package, you can get by with LE only on the primary node. It can generate t...
-
02:29 PM pfSense Packages Bug #7197: Freeradius ldap authentication failed after update 1.7.5 to 1.7.6
- Thanks it's work fine
-
03:02 AM pfSense Packages Bug #7197 (Feedback): Freeradius ldap authentication failed after update 1.7.5 to 1.7.6
- PR has been merged, thanks!
-
02:12 PM Feature #7204 (Duplicate): Router Advertisements: Option to not advertise default routes
- I'm using a pfSense appliance in a temporary role mainly to enable "proper" IPv6 support on our network, though it wi...
-
02:00 PM Feature #6753: Interfaces list order not consistent
- +1 for making the interfaces list sorted alphabetically by their DESCRIPTION (NAME) defined in /interfaces.php.
T... -
09:13 AM Feature #6753: Interfaces list order not consistent
- The interface order on Interfaces > Assignments is significant for HA purposes but otherwise alphabetical tends to be...
-
07:07 AM Feature #6753: Interfaces list order not consistent
- Can I protest against this change? I upgraded to 2.4 and so far this is the only change that is really causing me a l...
-
01:54 PM Bug #7203 (Resolved): pkg_mgr_installed.php - visually separate the legend
- Some users think that it's related to the last package in the list, instead of being a legend.
https://forum.pfse... -
01:11 PM pfSense Packages Bug #7192 (Feedback): ACME package cannot update more than one nsupdate type domain
- Fixed by https://github.com/pfsense/FreeBSD-ports/commit/73246541879f9256f4241b2a22dc61e6e31e6bd2
-
12:27 PM pfSense Packages Bug #7192 (Assigned): ACME package cannot update more than one nsupdate type domain
- I figured out a way to fix this. It's not pretty but the way the client passes data and processes the api commands do...
-
12:34 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- I am seeing a similar error on System -> Advanced -> Firewall & NAT
Warning: sprintf(): Too few arguments in /usr/... -
09:10 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Applied in changeset commit:4b329613ee7bb2dc85dd72035709853b83061a58.
-
08:59 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Thanks. Looks like there are a few embedded '%' that now need to be escaped, and arguments passed as an array in [ ] ...
-
08:35 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Just double checked it's not my patch. :) Clean snapshot update shows it.
-
08:25 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Posted by one of my testers after patching one of mine for testing, this is what he posted,
Martin if I goto the e... -
08:23 AM Bug #7202 (Feedback): "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
-
08:18 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- I knew there would be some :) Could you attach the call stack or tell me which page you had selected when this occured?
-
08:10 AM Bug #7202 (Resolved): "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Problem with changes to the setHelp function or calls to it.
-
06:11 AM Bug #7200: Diagnostics> DNS Lookup: external links to DNSstuff use wrong parameter
- ok, thanks for checking
-
06:07 AM Bug #7200: Diagnostics> DNS Lookup: external links to DNSstuff use wrong parameter
- I got onto a production 2.3.2-p1 system and yes, it has that bug.
I expect it was fixed for 2.3.3 and 2.4 onwards by... -
05:48 AM Bug #7200: Diagnostics> DNS Lookup: external links to DNSstuff use wrong parameter
- With 2.3.2 whatever hostname I query the urls are appended with _Array_. I'll try to setup a testing VM
-
05:38 AM Bug #7200: Diagnostics> DNS Lookup: external links to DNSstuff use wrong parameter
- I tried on 2.3.3-DEVELOPMENT and 2.4-BETA and cannot reproduce this. If I put a valid name, then it gives me ip=1.2.3...
-
03:47 AM Bug #7200 (Closed): Diagnostics> DNS Lookup: external links to DNSstuff use wrong parameter
- The two links gets the _ip=_ parameter, but the generated url have _Array_ instead of the actual queried IP address
... -
04:50 AM Feature #7011 (Feedback): Retain vendor MAC address at power up
- Fixed by commit:042911d34ab846e7241deeb9fd6469a1460febcf
-
04:10 AM Feature #7201 (New): NTP Support multiple GPS reference clocks
- PR https://github.com/pfsense/pfsense/pull/3468
-
03:44 AM Bug #7183 (Resolved): Interface Groups can be entered with the same name
-
03:36 AM Bug #7183: Interface Groups can be entered with the same name
- In 2.4.0-BETA (arm) built on Thu Feb 02 12:37:50 CST 2017
Validation seems OK now, following description instructio... -
03:20 AM Bug #7120: Wrong file permissions on /var/tmp and missing sticky bit when using /var as RAM disk
- 2.4.0-BETA (arm) built on Thu Feb 02 12:37:50 CST 2017
Still not fixed.
Not using RAM disk:
drwxrwxrwt 4 root ... -
03:11 AM Bug #7128: system_advanced_network.php - fugly IPv6 over IPv4 input field alignment
- Can't see any change, but it would look less silly if the input field was below the Tick box
02/02/2017
-
10:48 PM Bug #7185: DHCP6c SIGTERM, SIGKILL
- Thank you very much. I am testing these now. I got the binaries scp'd onto the test box. I moved the stock binarie...
-
08:29 AM Bug #7185: DHCP6c SIGTERM, SIGKILL
- You cannot patch it Luke, it's an exe. I can send it to you when I am back at my desk.
-
08:22 AM Bug #7185: DHCP6c SIGTERM, SIGKILL
- Martin, could you provide a link to the PR?
-
10:28 PM Feature #7199 (Resolved): SG-1000 cpsw nics don't support ALTQ
- According to this thread and posts from jimp the cpsw NICs in the SG-1000 don't support ALTQ at the moment:
jimp:
... -
07:48 PM Feature #6374: Provide sample server-side logic to report peer's IP address for use with DDNS
- There may potentially be a need to prevent caching too. Even if pfSense doesn't cache it, there could be CDN's such ...
-
12:30 PM Feature #6374 (Feedback): Provide sample server-side logic to report peer's IP address for use with DDNS
- Applied in changeset commit:186c7a6ca49af0d848c1082bfd7f6d9f0cde7046.
-
06:36 PM pfSense Packages Bug #7197: Freeradius ldap authentication failed after update 1.7.5 to 1.7.6
- Given the impressive number of details provided, my crystal ball says that - out of the ~4500 lines of code changed i...
-
12:57 PM pfSense Packages Bug #7197 (Resolved): Freeradius ldap authentication failed after update 1.7.5 to 1.7.6
- Hi
After updating freeradius package from 1.7.4 to 1.7.5 version, it's failed to authenticate via Ldap.
My Con... -
02:28 PM Feature #7011: Retain vendor MAC address at power up
- I'll take it
-
02:21 PM Bug #7198 (Resolved): nginx-error.log is not circular and can fill filesystem
- Unlike almost all of the other log files contained in @/var/log@, nginx-error.log is not circular. Because it grows ...
-
11:33 AM Feature #7196 (Resolved): setHelp method should use more conventiol argument syntax
-
11:33 AM Feature #7196 (Resolved): setHelp method should use more conventiol argument syntax
- The setHelp methods currently use an array to pass position arguments to sprintf. This has caused people to employ sp...
-
11:05 AM Bug #7163: IGMP Proxy does not valid inputs
- In the config for igmpproxy, Network populates altnet and has to be in subnet format. Since the GUI has a drop-down f...
-
10:43 AM Bug #7195 (New): pkg_edit.php - <checkenablefields> tag has no effect on fields other than checkbox/input
- When messing with another piece of JS for Squid, I figured out that I'd rather not be missing with it. :P So, it woul...
-
09:59 AM Bug #7194 (Rejected): CARP/IP Aliases under same subnet not synced correctly
- I can't reproduce this on a current 2.4 snapshot. Additional addresses fail over all at once as expected.
-
09:34 AM Bug #7194 (Rejected): CARP/IP Aliases under same subnet not synced correctly
- If you set a CARP VIP e.g. an address on the WAN subnet xxx.xxx.xxx.xx1/28. Then set another address, be it another C...
-
07:35 AM Feature #7182: Break up System Widget on the Dashboard
- It has come up before, at least on the forum, but I don't see an existing ticket for it yet. I agree it would be nic...
-
07:29 AM Feature #7182: Break up System Widget on the Dashboard
- And I have a feeling that breaking up the System Information widget has been discussed before, so there may be anothe...
-
07:24 AM Feature #7182: Break up System Widget on the Dashboard
- PR https://github.com/pfsense/pfsense/pull/3465 provides a first part of addressing this. It allows the user to choos...
-
04:52 AM Bug #5993: dhcp6c not started until an RA received
- It's not his modem, he's getting a prefix, all is well there. Just looked at the video. Let me think on it...
Go... -
02:45 AM Feature #7193: NTP process PGRMF
- PR https://github.com/pfsense/pfsense/pull/3463
-
02:42 AM Feature #7193 (Resolved): NTP process PGRMF
- The Garmin only NMEA sentence PGRMF can be used by NTP as the time sync. Unlike the other NMEA sentences PGRMF includ...
-
01:16 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- Constantine Kormashev wrote:
> I noticed with new firmware SG4860 uses CPU resources *on 25% more* than on previous ... -
12:55 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- I noticed with new firmware SG4860 uses CPU resources *on 25% more* than on previous version.
Now it is 185% CPU IDL...
02/01/2017
-
10:22 PM Bug #5993: dhcp6c not started until an RA received
- J L wrote:
> Daryl Morse wrote:
> > J L wrote:
> >
> > > Alright. I doubt hardware matters too much, but I'll li... -
07:35 PM Bug #5993: dhcp6c not started until an RA received
- Daryl Morse wrote:
> J L wrote:
>
> > Alright. I doubt hardware matters too much, but I'll list some facts.
> > ... -
06:46 PM Bug #5993: dhcp6c not started until an RA received
- J L wrote:
> Alright. I doubt hardware matters too much, but I'll list some facts.
> WAN gateway: Actiontec V2000... -
04:31 PM Bug #5993: dhcp6c not started until an RA received
- Martin Wasley wrote:
> I'll pm you with my email address.
>
> Edit.. you're not showing yours either.. :)
jtl... -
04:27 PM Bug #5993: dhcp6c not started until an RA received
- Do you have Daryl's pm?
-
04:24 PM Bug #5993: dhcp6c not started until an RA received
- I'll pm you with my email address.
Edit.. you're not showing yours either.. :) -
09:57 PM pfSense Packages Bug #7190: pfSense-pkg-acme Bug - php errors on pages that list certificates when no LE Certs have been created yet (eg Cert. Manager - Certificates, OpenVPN - Servers)
- PR https://github.com/pfsense/FreeBSD-ports/pull/286
-
03:55 PM pfSense Packages Bug #7190 (Resolved): pfSense-pkg-acme Bug - php errors on pages that list certificates when no LE Certs have been created yet (eg Cert. Manager - Certificates, OpenVPN - Servers)
- I just installed pfSense-pkg-acme and went to the Cert. Manager - Certificates Page. I see the following output imme...
-
08:12 PM pfSense Packages Bug #7192 (Resolved): ACME package cannot update more than one nsupdate type domain
- With multiple domains in the "Domain SAN List" set to nsupdate, it only appears to use the last key entered, rather t...
-
07:46 PM pfSense Packages Bug #7191 (Resolved): squid package EN-US grammar errors
- In the Services > Squid Proxy Server > Antivirus > Enable Manual Configuration section, the warning "Warning: Only en...
-
05:11 PM pfSense Packages Feature #7189: Letsencrypt acme sync in HA environment
- There are a couple considerations here to keep straight for GUI use as well.
* One cert with SANs for both hosts i... -
02:13 PM pfSense Packages Feature #7189 (Resolved): Letsencrypt acme sync in HA environment
- Configure the letsencrypt package https://github.com/pfsense/FreeBSD-ports/tree/devel/security/pfSense-pkg-acme to sy...
-
01:50 PM pfSense Packages Feature #4752 (Resolved): SQUID. Exception for speed limits
-
01:36 PM pfSense Packages Feature #4752: SQUID. Exception for speed limits
- Works.
-
01:49 PM pfSense Packages Feature #2825 (Resolved): OpenBGPd: Add options prepend-neighbor and prepend-self
-
01:32 PM pfSense Packages Feature #2825: OpenBGPd: Add options prepend-neighbor and prepend-self
- Fixed with https://github.com/pfsense/FreeBSD-ports/commit/df93449ea55537c48bca4304f72aa7ced243a116 - close please.
-
01:49 PM pfSense Packages Feature #6537 (Rejected): Suricata does not autopopulate IP Reputation list from Emerging Threats on rules update
-
01:12 PM pfSense Packages Feature #6537: Suricata does not autopopulate IP Reputation list from Emerging Threats on rules update
- Can be closed. Feature misunderstanding.
-
01:44 PM pfSense Packages Feature #6022: Consider MLVPN for bonded VPN
- This feature would bring high value to the product and really make it stand out from the crowd. Not many solutions a...
-
01:16 PM Bug #6363: AutoConfigBackup Restore Actions column missing due to long XMLRPC sync merge strings in the configuration description
- Wraps just fine without any CSS, as seen on the screenshot. Close, please.
-
11:55 AM Feature #4405: Traffic shaping doesn't work when applied to a bridge interface
- Any news on this? Issue still exists in 2.3.2. No Traffic shaper on bridge0 even with:
net.link.bridge.pfil_member=0... -
10:31 AM pfSense Packages Bug #7188 (Closed): Squid update issue
- Already fixed
-
10:06 AM pfSense Packages Bug #7188: Squid update issue
- ...
-
09:27 AM pfSense Packages Bug #7188 (Closed): Squid update issue
- Hi, after updating (yesteray) squid my web ui is not working any more! Here is the error:
Parse error: syntax erro... -
09:54 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- PR Pushed upstream as fix needed for dhcp6c PID issue - Redmine #7185.
-
09:47 AM Bug #7066 (Resolved): vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Thanks!
-
07:43 AM Bug #7187: IPSec IKEv2 additional P2 not written to config
- And it does not show in the routed connection of _statusall_...
-
07:30 AM Bug #7187 (Closed): IPSec IKEv2 additional P2 not written to config
- I have a v2 tunnel with a second P2 NATting the OpenVPN subnet to the tunnel which is not working. The traffic from t...
-
05:57 AM Bug #6650: Option needed to disable HSTS
- Bump here. This breaks even things running on pfSense itself, such as the darkstat package (HTTP only). It will break...
-
05:51 AM Bug #6624: changes in IPsec config should down the connection
- As a sidenote: When using IPsec mobile clients with PSK keys it would be preferred not to take the entire IPsec servi...
-
05:00 AM Bug #7186 (Resolved): Unable to use national symbols in password fo ACB package
- While using ACB package it is not possible to use national symbols in crypto password. I was trying to set password w...
-
04:51 AM Bug #7185 (Resolved): DHCP6c SIGTERM, SIGKILL
- I have found that when issuing a SIGTERM to dhcp6c that it immediately deletes the pid file, however, if the WAN inte...
-
04:39 AM Bug #7184 (Rejected): FW limits MTU to 1280 when using VPN tunnel to F5
- If I'm using local network behind pfSense I get a tun0 device with MTU limited to 1280.
When using the tunnel behind... -
03:50 AM Bug #7183 (Feedback): Interface Groups can be entered with the same name
- Applied in changeset commit:89ac71d38a4c49e1537e4afe2b34b2457d9817a7.
-
03:25 AM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- Yeah, I think it should behave like the IPsec/OpenVPN ones, they don't let you mess with those either. :) (Well, exce...
-
02:49 AM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- I guess the package should be responsible for deleting the Interface Group as it uninstalls itself.
So the Interface... -
02:39 AM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- Heh, none that I'd know of ATM except tinc, but it simply needs to be something, so that some checking can be done fo...
01/31/2017
-
11:01 PM Bug #5993: dhcp6c not started until an RA received
- Martin Wasley wrote:
> OK, I can see dhcp6c is doing its job and launching RTSOLD, which is launching rc.newwanipv6.... -
10:39 PM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- What other packages use the "pkg_" prefix to generate names in this namespace?
-
10:39 PM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- PR https://github.com/pfsense/pfsense/pull/3458
To fix validation of Interface, Interface Group and Alias names. -
09:55 AM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- To get this really fixed, it's needed to
1/ revert a bunch of other commits that allowed that stuff specifically ... -
09:30 AM Bug #7173 (Feedback): [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- Applied in changeset commit:b835c2dd77a09ea46b5d6abd8d2271332bf52367.
-
09:17 AM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- PR https://github.com/pfsense/pfsense/pull/3452
The char set allowed should be the same as for Interfaces and Aliases. -
09:58 PM Bug #7183: Interface Groups can be entered with the same name
- Woo-hoo, I got allocated PR https://github.com/pfsense/pfsense/pull/3456
-
09:55 PM Bug #7183 (Resolved): Interface Groups can be entered with the same name
- 1) Add an Interface Group named "abc"
2) Add an Interface Group named "def"
3) Edit Interface Group "def", change i... -
07:33 PM Feature #7182 (New): Break up System Widget on the Dashboard
- The system widget is quite useful, however there is a lot of information in one place (and it is quite tall, so the s...
-
07:20 PM Feature #7181 (New): Add Top and Add Bottom on Seperator
- Currently when separators are in use, to add a rule under the separator, you have to create the rule at the bottom of...
-
06:57 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Luiz Otavio O Souza wrote:
> Should work now: https://github.com/pfsense/FreeBSD-src/commit/91384809a74dc98ef0d2a173... -
06:18 PM Bug #7156: Change in 'Block bogon networks' or 'Block private netowrks' GUI options kills routing entries for OpenVPN interfaces.
- As I've thought about this more, it seems to me that the correct behavior is for "Apply Changes" to trigger a restart...
-
04:08 PM pfSense Packages Bug #7009 (Resolved): syslog_ng Log Viewer page didn't get converted to the new 2.3 bootstrap
-
04:07 PM pfSense Packages Bug #7009: syslog_ng Log Viewer page didn't get converted to the new 2.3 bootstrap
- Works, thanks for help.
-
12:51 PM pfSense Packages Bug #7009 (Feedback): syslog_ng Log Viewer page didn't get converted to the new 2.3 bootstrap
-
02:00 PM Bug #7180: Disabled OpenVPN clients are not shaded in the gui
- Applied in changeset commit:070379bbc0cf84d82f52a0adfe2bdc6014695f7e.
-
01:50 PM Bug #7180 (Feedback): Disabled OpenVPN clients are not shaded in the gui
- Fixed copy/paste error.
Thanks for the report. -
01:19 PM Bug #7180 (Resolved): Disabled OpenVPN clients are not shaded in the gui
- When I disable an openvpn client, it's not indicated in the clients page. All clients appear the same, active.
Lin... -
11:08 AM pfSense Packages Bug #6928 (Feedback): freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
-
09:45 AM Bug #7178 (Feedback): pfSense themes don't handle package XML field without <description> tag properly
- Unable to reproduce using:
Ubuntu Firefox
macOS Firefox, Safari, Chrome
Tried pfSense and Compact red themes. ... -
02:44 AM Bug #7178 (Rejected): pfSense themes don't handle package XML field without <description> tag properly
- See
Compact-Red (working properly): https://forum.pfsense.org/index.php?topic=124759.msg689034#msg689034
pfSense (... -
09:34 AM Todo #7160 (Feedback): Mark Required Fields on GUI Pages
-
09:19 AM Todo #7160: Mark Required Fields on GUI Pages
- PR https://github.com/pfsense/pfsense/pull/3451 is the last set of changes for this.
-
09:21 AM Feature #7122: Add filters to various dashboard widgets
- I think that is it. Unless anyone has another favorite, the dashboard widgets can be given a last test and this can b...
-
08:00 AM pfSense Packages Feature #7179: Package Filer into 2.3
- Also did xmlrpc 2.4 adjustments:
https://github.com/pfsense/FreeBSD-ports/pull/277/commits/8d27c452ce42ca2ef0d65b65b... -
04:57 AM pfSense Packages Feature #7179 (Resolved): Package Filer into 2.3
- Pull Request to include the filer package in pfSense >= 2.3
https://github.com/pfsense/FreeBSD-ports/pull/277 -
03:46 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- Tests repeated as instructed by Constantine - SG4860 did not crash with 2.4 built on Mon Jan 30 22:08:41 CST 2017
-
12:43 AM Bug #7149: igb driver queue related crashes
- Updated to the lastest snapshot (Mon Jan 30 22:08:41 CST 2017), set queues to 2 and tried this on a DMZ host for a fe...
01/30/2017
-
08:34 PM Bug #7177 (Duplicate): IPv6 Monitor IP does not seem to propagate
- Duplicate with #7176. Let's close this one.
-
08:24 PM Bug #7177: IPv6 Monitor IP does not seem to propagate
- Duplicated Issue please close.
-
08:20 PM Bug #7177 (Duplicate): IPv6 Monitor IP does not seem to propagate
- 2.3.3 snaps work. This particular install uses a 6to4 tunnel from the ISP.
Setting "Gateway Monitor IP" in 2.4 sna... -
08:31 PM Bug #7149 (Feedback): igb driver queue related crashes
- This commit fix a few obvious issues in igb: https://github.com/pfsense/FreeBSD-src/commit/215ddb035593bc4cee275b9dbb...
-
08:30 PM Bug #7166 (Feedback): During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- This commit fix a few obvious issues in igb: https://github.com/pfsense/FreeBSD-src/commit/215ddb035593bc4cee275b9dbb...
-
12:28 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- The FreeBSD PR also suggest that disabling the LEGACY_TX support (and ALTQ support altogether) would also fix the cra...
-
12:21 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- Seems like a know bug in FreeBSD (or sort of): https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=208409#c11
Also d... -
08:19 PM Bug #7176 (Resolved): IPv6 Monitor IP does not seem to propagate
- 2.3.3 snaps work. This particular install uses a 6to4 tunnel from the ISP.
Setting "Gateway Monitor IP" in 2.4 sna... -
03:54 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Luiz Otavio O Souza wrote:
> Should work now: https://github.com/pfsense/FreeBSD-src/commit/91384809a74dc98ef0d2a173... -
12:30 AM Bug #7066 (Feedback): vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Should work now: https://github.com/pfsense/FreeBSD-src/commit/91384809a74dc98ef0d2a173718bd79bd77c13bb
-
03:24 PM pfSense Packages Feature #2825: OpenBGPd: Add options prepend-neighbor and prepend-self
- Hello,
I know it's been a long time since this thread was started, but we started using the openBGPd package and not... -
02:21 PM Bug #7157: Traffic graphs cause the tab to crash when run in the background
- Think ive found the source of the background leak in a growing list of timer objects waiting for a 'requestAnimationF...
-
01:20 PM Bug #7174: OpenVPN Server and Client not detecting Hardware Cryto
- Kill Bill wrote:
> I'd hope that is intentional fix, since enabling HW crypto there actually makes performance _sign... -
12:51 PM Bug #7174: OpenVPN Server and Client not detecting Hardware Cryto
- I'd hope that is intentional fix, since enabling HW crypto there actually makes performance _significantly_ worse.
... -
12:48 PM Bug #7174 (Duplicate): OpenVPN Server and Client not detecting Hardware Cryto
- PC Engines APU2C4, AMD GX412TC SOC CPU.
Cryptographic Hardware AES-NI CPU-based Acceleration enabled.
Dashboard sho... -
01:04 PM Bug #7175 (Not a Bug): SIP MESSAGE UDP packets not passed despite rules & pcaps showing otherwise
- I have two pfSense boxes in failover configuration both running NanoBSD 2.3.2-RELEASE (amd64) and a VoIP server on th...
-
12:14 PM Bug #7173 (Resolved): [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- To reproduce:
- Create an interface group named like @prefix-test@
- Try to add some firewall rule there and save.
... -
11:13 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Final version. Changed static chars to pointers for exit script call. As it's possible to have multiple interfaces on...
-
06:52 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Additions and changes to dhcp6c
-
10:05 AM Bug #7172 (New): Sorting by hostname in Services > DHCP Server > LAN should be "natural" (alphanumeric friendly)
- Under "Services > DHCP Server > LAN" if I sort the 'static mappings' table by the hostname column, I get results like...
-
09:35 AM Bug #7171 (Resolved): system_advanced_firewall.php: setHelpText is changing the field label also.
-
09:28 AM Bug #7171: system_advanced_firewall.php: setHelpText is changing the field label also.
- Works, thanks
-
08:10 AM Bug #7171: system_advanced_firewall.php: setHelpText is changing the field label also.
- Applied in changeset commit:678c6a56bce239ac152e3d9fe051ad8508ab3ce3.
-
08:01 AM Bug #7171 (Feedback): system_advanced_firewall.php: setHelpText is changing the field label also.
- Newly added span element accommodated
Function moved to pfSenseHelpers.js -
04:16 AM Bug #7171 (Resolved): system_advanced_firewall.php: setHelpText is changing the field label also.
- I suspect this is a side-effect of the recent changes for marking required fields.
e.g. in system_advanced_firewall.... -
08:37 AM pfSense Packages Bug #6928: freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
- Konstantin Ab wrote:
> Hmmm, it seems to work!
> records appear in Table
Thanks for testing. Added to this monst... -
08:31 AM Bug #7147 (Resolved): pfsense-utils.inc - is_ipaddr_configured() does not work properly with some IPv6 formats
- I'll close this ticket as the original issue was fixed by Phillip's commit.
The whole IPv6 input, store and output... -
03:47 AM Bug #7005: IPsec mss clamping not working for mobile clients
- That was backported to RELENG_2_3 in commit https://github.com/pfsense/pfsense/commit/93ab5b34e4e0b20baaf10fdd52119dd...
-
02:22 AM Bug #7005: IPsec mss clamping not working for mobile clients
- Hi,
You've listed this as resolved in 2.4, what's the current timeframe for the release of 2.4? If it is some way ... -
03:06 AM Bug #5993: dhcp6c not started until an RA received
- OK, I can see dhcp6c is doing its job and launching RTSOLD, which is launching rc.newwanipv6. As no-one else has repo...
-
12:34 AM Bug #7143 (Confirmed): filterdns is triggering every 16 seconds for hosts even when the DNS record has not changed
- Ooops, there is a loop in rc.newipsecdns, which triggers a filterdns reload, which runs rc.newipsecdns again (where y...
01/29/2017
-
10:25 PM Bug #7143: filterdns is triggering every 16 seconds for hosts even when the DNS record has not changed
- I'll take it, something is fishy here.
-
09:46 PM Bug #7119 (Resolved): Changing LAGG attributes results in a panic/crash
-
09:46 PM Bug #7124 (Resolved): Kernel panic when configuring 6to4 on a interface
- Yeah, that's a different issue, can you open a new ticket for it ?
Thanks! -
06:14 PM Bug #7124: Kernel panic when configuring 6to4 on a interface
- Actually just shows "Pending".
Other (2.3) box works. -
06:12 PM Bug #7124: Kernel panic when configuring 6to4 on a interface
- Seems right now I cannot monitor the gateway though if I ping from diagnostics the ping returns fine.
Gateway moni... -
04:51 PM Bug #7124: Kernel panic when configuring 6to4 on a interface
- Confirmed working here as well. Thank You!
-
12:52 PM Bug #7124: Kernel panic when configuring 6to4 on a interface
- Thanks, i can no longer reproduce the panic.
If 6to4 itself works properly now i cant tell, i have not used it bef... -
09:45 PM Bug #7117 (Resolved): Bump sched buckets limiter log spam in console
-
09:27 PM pfSense Packages Bug #6928: freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
- Hmmm, it seems to work!
records appear in Table -
03:46 AM pfSense Packages Bug #6928: freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
- Can you please test this patch? https://github.com/pfsense/FreeBSD-ports/commit/cdf9b05e966f311b8ae83c7a3158479bd5c9e...
-
12:15 AM pfSense Packages Bug #6928: freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
- i tryed diable SQL. No problem.
I'm watching the security problems in this table. -
03:45 PM Bug #5993: dhcp6c not started until an RA received
- Martin Wasley wrote:
> Just post the dropbox link here..
Fair enough. I looked through the pcap and there's nothi... -
08:18 AM Bug #5993: dhcp6c not started until an RA received
- Just post the dropbox link here..
-
08:45 AM Bug #3703: MTU not applied on reboot
- Is it Resolved ?
2.3.2-RELEASE-p1 (amd64)
built on Fri Sep 30 14:36:56 CDT 2016
FreeBSD 10.3-RELEASE-p9
I hav... -
08:38 AM pfSense Packages Feature #6022: Consider MLVPN for bonded VPN
- +1
It's too bad that pfSense do not have this functionality yet
Many of us use multiple WANs please consider MLVP... -
08:23 AM Bug #7169 (Duplicate): MAC address for an interface is not set back to the actual hardware value if a manually entered MAC value in General Configuration under Interfaces is cleared
- Known limitation / Duplicate. See #7011
-
02:16 AM Bug #7169 (Duplicate): MAC address for an interface is not set back to the actual hardware value if a manually entered MAC value in General Configuration under Interfaces is cleared
- Steps to reproduce
1) Set the MAC address to an interface manually in the General Configuration for an Interface
... -
08:16 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- OK, before I do a PR upstream for this, there is one issue left. This only applied in the default mode not dhcp6witho...
-
05:20 AM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- Added a huge deprecation warning to the page as part of https://github.com/pfsense/FreeBSD-ports/pull/272.
-
04:41 AM pfSense Packages Bug #7170 (Resolved): FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- I'd rather nuke this redundant thing altogether, however not sure how to handle the transition for unfortunate users ...
01/28/2017
-
10:30 PM Bug #5993: dhcp6c not started until an RA received
- Martin Wasley wrote:
> Just upload them to a dropbox and send me a link.
Sure thing. Can I email you a private link? -
08:09 AM Bug #5993: dhcp6c not started until an RA received
- Just upload them to a dropbox and send me a link.
-
08:21 PM Bug #7124 (Feedback): Kernel panic when configuring 6to4 on a interface
- Fixed.
Relevant commit: https://github.com/pfsense/FreeBSD-src/commit/c050d42a2646d2e582c46cc6f61531150ffb6cb9 -
05:47 PM pfSense Packages Bug #6928: freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
- Does uncommenting this break things if SQL is *disabled*? The whole thing is a damn complex heap of code, not really ...
-
03:32 PM Bug #7168 (Closed): Vague kernel messages in system log
- I'm running the a recent 2.4 beta snapshot. I'm periodically seeing vague kernel messages in the system log.
Some ... -
08:54 AM Bug #7154: firewall_nat_edit JS function check_for_aliases()
- Yes, the code did nothing effective. I guess that someone had started thinking about what smarts to put in it, had "t...
-
08:50 AM Bug #7154: firewall_nat_edit JS function check_for_aliases()
- Applied in changeset commit:b39cebf6f09b7d110d810e3ccff0136751aa1718.
-
08:44 AM Bug #7154 (Feedback): firewall_nat_edit JS function check_for_aliases()
- Looks like that duplication (several times over) goes back to at least 2.0!
https://github.com/pfsense/pfsense/blo... -
08:12 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Also added an EXIT as when the No-release flag it's useful to know that dhcp has exited. Would it be be useful to hav...
-
07:16 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- Adding "hw.igb.num_queues=1" to /boot/local.conf helps resolving this issue.
_sysctl hw.igb.num_queues
hw.igb.num_q...
01/27/2017
-
09:04 PM Bug #7119: Changing LAGG attributes results in a panic/crash
- Yes, the messages does not seem related with the original bug (crash at ifconfig laggX destroy).
Let's open a new ... -
06:53 PM Bug #7119: Changing LAGG attributes results in a panic/crash
- Seems better now, it doesn't crash. Logs of activity in the log, though:...
-
03:33 PM Bug #7119 (Feedback): Changing LAGG attributes results in a panic/crash
- Fixed in latest snapshot.
Relevant commits:
https://github.com/pfsense/FreeBSD-src/commit/b5996bd8278c710ce6859... -
08:58 PM Bug #6099: igmpproxy does not recognize upstream interface
- I downloaded the 2.3.3 nightly but this fix doesn't appear to be included there, so I built a copy of the proxy from ...
-
07:18 PM Bug #7167 (Resolved): Error creating higher VLAN ID on SG-1000
- SG-1000 connected to an Apple Airport Extreme ac on the LAN interface.
Created a VLAN interface with tag 1003 and as... -
06:48 PM Bug #5993: dhcp6c not started until an RA received
- Martin.
I got a packet capture from the WAN upon bootup (all looks good there), a copy of the system and DHCP logs... -
02:33 PM Bug #6448 (Resolved): Mousing over aliases on disabled rules makes hint difficult to read
-
02:07 PM Bug #6448: Mousing over aliases on disabled rules makes hint difficult to read
- Looks good here. Thanks!
-
12:47 PM Bug #7143 (Feedback): filterdns is triggering every 16 seconds for hosts even when the DNS record has not changed
- I've pushed a fix on filterdns 1.0_16 that will make it to run defined cmd only when IP address changes.
-
09:14 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- I can reproduce this bug.
It happens when I use especial traffic pattern for cisco t-rex which included several pcap... -
06:54 AM Bug #7166 (Resolved): During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- During bandwidth test 4860 on today 2.4 got `Fatal trap 12: page fault while in kernel mode`
FreeBSD pfSense.localdo... -
08:33 AM pfSense Packages Bug #6404: FreeRADIUS Does Not Start After Upgrade
- All merged. Please test with 1.7.5_1 when available; if it still does not work, describe exactly what actions make it...
-
07:25 AM Bug #7164 (Feedback): NTP page allows adding more time server rows than it saves to the configuration
- PR has been merged, thanks!
-
02:47 AM Bug #7116 (New): a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
01/26/2017
-
09:12 PM Bug #7165: NAT: Source: <port - range> -> Destination:<a single port from 'source' range> -> error message
- The message is about Redirect Target Port (as Jim mentions) which is a field further down the page. The message came ...
-
04:47 PM Bug #7165 (Rejected): NAT: Source: <port - range> -> Destination:<a single port from 'source' range> -> error message
- Most likely what you're trying to do is invalid. Post on the forum for setup assistance.
Include the following inf... -
04:34 PM Bug #7165 (Rejected): NAT: Source: <port - range> -> Destination:<a single port from 'source' range> -> error message
- For some reason latest pfSense version (2.3.2-RELEASE-p1) is not allowing me to forward NAT range 1100 - 65000 to the...
-
04:28 PM Bug #6860 (Feedback): Monitoring (RRD) graphs return "unknown" step value
- I added the missing step (43200) to the lookup table.
-
04:27 PM pfSense Packages Bug #6748 (Feedback): rrd_fetch_json.php returns html when user is unauthorized (causes "Error: SyntaxError: Unexpected token <")
- I added a better error message in the case that JSON doesn't get returned, but a hint for the user to check that they...
-
04:26 PM Bug #6138 (Feedback): Long hostnames overlap the "time" title in the Monitoring graphs
- The positions are hard coded at this time so it is hard to account for really long hostnames, but I moved the values ...
-
12:52 PM pfSense Packages Bug #6404: FreeRADIUS Does Not Start After Upgrade
- See
- https://github.com/pfsense/FreeBSD-ports/pull/267
- https://github.com/pfsense/FreeBSD-ports/pull/268 -
12:50 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- Without quick it didn't work either. Only changing it to 'pass' made it work.
-
11:25 AM Bug #7116 (Not a Bug): a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- According to docs you shouldn't use quick on match rules: https://doc.pfsense.org/index.php/What_are_Floating_Rules
... -
11:02 AM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- Have you tried to remove 'quick' from this match rule?
-
12:35 PM Bug #6333: Bootup starts/restarts dpinger multiple times
- Renato Botelho wrote:
> Luiz, when you are touching it, it would be nice to add code on PHP side to deal with interf... -
12:28 PM Feature #6591 (Duplicate): Configurable DDNS check IP services
- This was actually a duplicate of #6373 which had more info. I noted the PR there.
-
12:28 PM Feature #6373 (Resolved): RFC2136 DDNS could be more configurable to improve security
- Items 1 and 2 were completed under #6591 which was resolved by PR https://github.com/pfsense/pfsense/pull/3037
-
12:25 PM Feature #6374: Provide sample server-side logic to report peer's IP address for use with DDNS
- PHP Example:...
-
12:18 PM Todo #6606: Adapt captive portal to work without multi-instance ipfw
- Last I heard from Renato this is still missing some important pieces:
* Missing a mixed table with IP and MAC addr... -
12:13 PM Bug #6664 (Resolved): It's impossible to use HE.NET tunnel iface as a parent for OpenVPN instances
- Between #6663 and commit:b42ccf1504eca5e40bfb49b0afb688fffe293a7a this is fixed.
-
12:06 PM Bug #6833 (Resolved): Wifi channel change applies only on reboot
- PR https://github.com/pfsense/pfsense/pull/3169 was merged back in October.
Tested on a system on 2.4 with wireles... -
11:54 AM Bug #7149: igb driver queue related crashes
- See also:
#7079
#6257
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=148807
https://bugs.freebsd.org/bugzilla/... -
11:50 AM Bug #7079: ClamAV C-ICAP causing Kernel Panic and System Crash
- I suspect this is not actually from clamav but that is what generates enough load in your environment to trigger it.
... -
11:45 AM Bug #7140 (Resolved): User with page-help-all as first priv is redirected to Dashboard Help
- We merged PR for this and tested, should be fine now.
-
11:36 AM Bug #6820 (Resolved): Configure WAN Interface Boot Delay
- I'm also not seeing a long delay any more. I suspect the fix for #7042 might have also fixed this. The previous delay...
-
11:03 AM Bug #7150 (Resolved): shell option before 1st reboot/wizard - can't login
- Works
-
10:35 AM Bug #6938 (Duplicate): DNS with OpenVPN gateway specified is routed through wrong interface. 2.4 regression.
- This is a duplicate of #6883
-
10:25 AM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- Luke Hamburg wrote:
> Thanks. I first checked out master and didn't find that commit... then drank some coffee & re... -
08:08 AM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- Thanks. I first checked out master and didn't find that commit... then drank some coffee & realized it's a PR still ...
-
07:46 AM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- If you update to the latest snapshot then you can try patch ID: cdb6c8ac8e65f98a2ac0fa469c963c055a5c522d
There are... -
10:10 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- This is cool... it works nicely. I'm still messing around with it but I've changed the strings to full reply words su...
-
05:04 AM Bug #6630 (Resolved): Set Defaults for Graphs - Traffic/WAN + Packets/WAN doesn't work
-
05:03 AM Bug #6132 (Resolved): race condition in OpenVPN startup
-
05:01 AM Bug #7151 (Resolved): Interface Group Name hint is misleading
-
02:24 AM Bug #7164: NTP page allows adding more time server rows than it saves to the configuration
- Most likely limited to 10 because historically anything above 10 best servers was discarded as a potential peer [1]. ...
-
12:02 AM Bug #7036: 2.4 ZFS on RCC-VE 2440 hangs
- UFS was mentioned as an issue as well, but wasn't tested?
01/25/2017
-
09:40 PM Bug #7164: NTP page allows adding more time server rows than it saves to the configuration
- I can't answer the question of why other than it is generally not recommended to specify a large number of time serve...
-
09:30 PM Bug #7164: NTP page allows adding more time server rows than it saves to the configuration
- Why is the page limited to 10 servers? Is this limitation enforced elsewhere in the system?
-
09:28 PM Bug #7164: NTP page allows adding more time server rows than it saves to the configuration
- PR https://github.com/pfsense/pfsense/pull/3446
-
09:19 PM Bug #7164 (Resolved): NTP page allows adding more time server rows than it saves to the configuration
- The NTP configuration page has a button to add more time servers to use as a time source. Only 10 servers are saved t...
-
04:56 PM Bug #7149: igb driver queue related crashes
- I also can confirm this issue on my box as well.
I have 6 igb (Intel pro 1000) interfaces (4 on the asus mainboard... -
03:14 PM Bug #7157: Traffic graphs cause the tab to crash when run in the background
- Pretty sure they will crash in the foreground also.. Think ive found a leak in the code though.
The nv.utils.inherit... -
02:40 PM Bug #7075 (Feedback): firewall states show negative value for total bytes processed
- Should be fixed now: https://github.com/pfsense/FreeBSD-ports/commit/2f5f4b5ac53ead4c12761273a3cc332b08806e26
Unfo... -
02:31 PM Bug #6630: Set Defaults for Graphs - Traffic/WAN + Packets/WAN doesn't work
- Not seeing this issue either, Set as Defaults is working fine for me too.
-
02:29 PM Bug #6132: race condition in OpenVPN startup
- Fresh install and one OpenVPN server seems to work fine for me with fresh install from Dec and no probs with latest b...
-
02:25 PM Bug #7151: Interface Group Name hint is misleading
- "Only letters (A-Z), digits (0-9), '-' and '_' are allowed. The group name cannot end with a digit." appears in lates...
-
01:37 PM Bug #6820 (Feedback): Configure WAN Interface Boot Delay
- I was seeing this issue on all my test VMs too but on recent snapshots it seems to be OK, probably some change have f...
-
01:29 PM Bug #6811 (Resolved): pkg_edit.php rowhelper is broken with multiple distinct rowhelpers per page.
- 3 months with no complains is like enough time to consider it fixed
-
01:24 PM Bug #7036 (Not a Bug): 2.4 ZFS on RCC-VE 2440 hangs
- After internal tests, we could install it successfully on 2440 using ZFS. Discussion will continue on forum thread li...
-
01:22 PM Bug #6911 (Rejected): no network on hyperv-v 2012 R1
- There is no much we can do at this point for a release that seems to be unsupported by Microsoft according https://su...
-
01:20 PM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- Ok great, I will definitely try 2.4b then. If you happen to know which commits are relevant to that fix I'd love to l...
-
01:17 PM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- Its not, it's a problem that appears from time to time and is quite intermittent. In 2.4b changes have been made whic...
-
11:08 AM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- I have a dual WAN 2.3.2-p1 system with only one of the WANs configured for DHCP6 (not PPPoE, just Ethernet) and I am ...
-
12:44 PM Feature #7159 (Feedback): Auto correct checksum and missing special characters for NTP GPS initialization commands.
- PR has been merged, thanks!
-
11:08 AM Bug #5993: dhcp6c not started until an RA received
- And the fixes are for dhcp6c the WAN client, not dhcpd the LAN server. Different things.
First, enable dhcp6c debu... -
10:52 AM Bug #7163: IGMP Proxy does not valid inputs
- If someone confirms what the validation requirements are, I can make it so.
-
10:51 AM Bug #7163 (Resolved): IGMP Proxy does not valid inputs
- IGMP Proxy Edit
Threshold: no validation is done, I can put "abc" "-42"... - I think it must be a positive integer... -
08:49 AM Bug #7143: filterdns is triggering every 16 seconds for hosts even when the DNS record has not changed
- This only happens when config file uses the directive 'cmd', in this case, ipsec session is using it:...
-
08:43 AM Bug #5319: Error message "No config named" in charon daemon
- With 2.3.2, in a hub and spoke model of IPsec tunnels, when the hub was restarted, about 10 percent of the spoke mode...
-
07:58 AM pfSense Packages Bug #6988: SNORT Package PHP memory error
- Your logs are way too huge! Configure something sane on Logs Mgmt tab. (You can override the memory limit in https://...
-
07:47 AM Bug #7162 (Rejected): XMLRPC lock in backup node if offline
- That is not a supported configuration, in part due to the issues you have noted. Without connectivity for the seconda...
-
03:45 AM Bug #7162 (Rejected): XMLRPC lock in backup node if offline
- I have 2 Netgate SG-4860 installed with pfsense v. 2.3.2_1, with 1 carp vip on wan. The backup machine, however, rema...
-
07:23 AM Bug #7124 (Confirmed): Kernel panic when configuring 6to4 on a interface
-
05:56 AM Bug #7123 (Resolved): Kernel panic when setting TCP MD5 Password in OpenBGP
-
05:10 AM Bug #7123: Kernel panic when setting TCP MD5 Password in OpenBGP
- Renato Botelho wrote:
> Possible fix was cherry-picked to FreeBSD-src, please try again on next snapshot
Great, t... -
04:31 AM pfSense Packages Bug #6305: Quagga problems updating routes / mistakenly showing "kernel"-routes while they are not
- https://github.com/pfsense/FreeBSD-ports/pull/265 - that's not a real solution obviously, so kindly leave this bug op...
-
01:47 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Use this too, just makes the logging a little tidier. If this is implemented then the dhcp6withoutRA PR I have curren...
-
01:04 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Yes, attached..
As dhcp6c only calls the script function when the above reply states happen you don't get quite as...
01/24/2017
-
10:03 PM Feature #4606: PKI : CA signing external CSR
- I'd also love to see this functionality. Many Ubiquiti devices only support outputting a CSR instead of importing a k...
-
05:18 PM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Got a source patch for that? If I do manage to try it, I am not keen on running binaries from outside sources.
-
02:40 PM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Try this...
These are pulled from the reply state, and are what is displayed in dhcp6c logs, well mine at least. T... -
12:31 PM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- It would probably be good enough if dhcp6c properly populated REASON with what actually happened. If it's a simple re...
-
12:19 PM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- I can have a look at dhcp6c, easy enough to add something. What do you want it do do, set an env stating what trigger...
-
10:21 AM Bug #6448: Mousing over aliases on disabled rules makes hint difficult to read
- This is fixed in the following commit: https://github.com/pfsense/pfsense/commit/d9bad9e8863bb91cb568b3b41470e22a20d9...
-
10:10 AM Bug #6448 (Feedback): Mousing over aliases on disabled rules makes hint difficult to read
- Applied in changeset commit:d9bad9e8863bb91cb568b3b41470e22a20d9fa6e.
-
09:49 AM Bug #7128: system_advanced_network.php - fugly IPv6 over IPv4 input field alignment
- Hmmm? This just broke the vertical alignment altogether and did nothing with the input field?
!https://i.imgsafe.o... -
09:43 AM Bug #7086: stale zfs file systems
- Thank you.
-
05:24 AM Bug #7086: stale zfs file systems
- Vladimir Putin wrote:
> What are the risks to continue using updated versions without reinstall?
There are no ris... -
09:42 AM Bug #6836: Wrong queue length on "/status_queues.php" page under heavy traffic
- Sorry, I see no reason, just outrage and not from my side.
-
05:34 AM Bug #6836 (Rejected): Wrong queue length on "/status_queues.php" page under heavy traffic
- rejected for reasons shown in-thread.
-
09:41 AM Feature #6914: unbound access-control lists
- Merged.
-
08:49 AM pfSense Packages Bug #6490 (Rejected): Squid Reverse Proxy: Disabling an entry on the "Redirects" tab creates duplicate entries for the previous entry in the squid config
-
08:35 AM pfSense Packages Bug #6490: Squid Reverse Proxy: Disabling an entry on the "Redirects" tab creates duplicate entries for the previous entry in the squid config
- Cannot reproduce, plus suspect it's more or less a duplicate of another non-reproducible issue filed by the same user...
-
07:25 AM pfSense Packages Bug #7161 (Resolved): pfSense-pkg-bind9 changelog pointing to non-existent location
- The changelog link should point to https://github.com/pfsense/FreeBSD-ports/tree/devel/dns/pfSense-pkg-bind9 while it...
-
07:11 AM pfSense Packages Feature #3754 (Closed): Add APC Back-UPS CS to NUT
-
07:08 AM pfSense Packages Feature #3754: Add APC Back-UPS CS to NUT
- No feedback, related to ancient package version, plus apparently not a pfSense issue either. Retest with current pack...
-
06:35 AM pfSense Packages Bug #5869: Squid non-functional in transparent mode in 2.3
- Here’s the mail I got recently for my problem
I was not able to get to these sites at the time of my first post but ... -
03:40 AM Bug #7149: igb driver queue related crashes
- Rolf Sommerhalder wrote:
...
> This morning, we have added this potential work around on three systems. No crashes ...
01/23/2017
-
11:28 PM Feature #7159: Auto correct checksum and missing special characters for NTP GPS initialization commands.
- PR https://github.com/pfsense/pfsense/pull/3433
-
09:30 PM Feature #7159 (Resolved): Auto correct checksum and missing special characters for NTP GPS initialization commands.
- The current NTP GPS configuration has a field for users to customize the GPS initialization commands. These NMEA comm...
-
10:05 PM Todo #7160 (Resolved): Mark Required Fields on GUI Pages
- Redmine 7083 provided the infrastructure to mark GUI fields as "required" and the UI implementation underlines fields...
-
07:59 PM Bug #7086: stale zfs file systems
- What are the risks to continue using updated versions without reinstall?
-
05:20 AM Bug #7086: stale zfs file systems
- Tobias Wigand wrote:
> Fresh install worked without problems. Can't say anything about the original problem, not eno... -
04:34 PM Bug #6630 (Feedback): Set Defaults for Graphs - Traffic/WAN + Packets/WAN doesn't work
- This is not longer an issue. It must have been fixed in a previous commit.
-
03:45 PM Feature #7158 (Rejected): Captive Portal should have logs facilities for blocked sites
- Whenever I have problems connecting to sites from client software that does not have proxy settings there is no way t...
-
03:11 PM Bug #7156: Change in 'Block bogon networks' or 'Block private netowrks' GUI options kills routing entries for OpenVPN interfaces.
- It could probably be documented in a way that calls more attention to it, but it is mentioned in the documentation wh...
-
03:06 PM Bug #7156: Change in 'Block bogon networks' or 'Block private netowrks' GUI options kills routing entries for OpenVPN interfaces.
- How is one supposed to know that this is a requirement? It's exactly not self-evident that changing something as sim...
-
02:23 PM Bug #7156 (Rejected): Change in 'Block bogon networks' or 'Block private netowrks' GUI options kills routing entries for OpenVPN interfaces.
- Any time you save/apply changes on an assigned OpenVPN interfaces you have to restart the VPN. It's always been that ...
-
01:57 PM Bug #7156 (Rejected): Change in 'Block bogon networks' or 'Block private netowrks' GUI options kills routing entries for OpenVPN interfaces.
- It appears that toggling in the 'Block bogon networks' and/or 'Block private netowrks' GUI option kills the automatic...
-
03:07 PM Bug #7157 (Resolved): Traffic graphs cause the tab to crash when run in the background
- When the "Keep graphs updated when on inactive tab" option is selected for traffic graphs it can cause the tab to loc...
-
11:14 AM Bug #7155 (Resolved): services_dhcp_relay.php: Section hide/show gets out of synch with enable checkbox
- Replace ->toggle code with jQuery for reliability
-
11:11 AM Bug #5993: dhcp6c not started until an RA received
- Barring unforeseen changes, you should not expect the behaviour to change between now and the release version. I've b...
-
02:20 AM Bug #5993: dhcp6c not started until an RA received
- Thanks.
I'm on the 2.4 snapshot and upon reboot I have to disable and enable the DHCPv6 server for it to properly ... -
12:53 AM Bug #5993: dhcp6c not started until an RA received
- J L wrote:
> Daryl Morse wrote:
> > I installed the additional patch that Martin provided to address the request fo... -
12:29 AM Bug #5993: dhcp6c not started until an RA received
- Daryl Morse wrote:
> I installed the additional patch that Martin provided to address the request for changes. I've ... -
11:00 AM Bug #6958 (Feedback): services_dhcp_relay.php: Needs to be converted to more recent rowhelper standard
- Applied in changeset commit:81fd21019cd0de8300fa0480cff1973d58d28e03.
-
10:22 AM pfSense Packages Bug #6350: Auto Config Backup - Uncaught Exception
- Steve Beaver wrote:
> Fixed by populating version table when info request fails
I don't remember what package ver... -
09:10 AM pfSense Packages Bug #6350 (Feedback): Auto Config Backup - Uncaught Exception
- Fixed by populating version table when info request fails
-
10:00 AM Bug #7128: system_advanced_network.php - fugly IPv6 over IPv4 input field alignment
- Applied in changeset commit:b33d32a500fe722035de3efc6a6d50c8cdae6f16.
-
09:53 AM Bug #7128 (Feedback): system_advanced_network.php - fugly IPv6 over IPv4 input field alignment
-
09:24 AM Bug #6864 (Resolved): Error checking rejects IPv6 addresses with upper case A-F.
-
09:10 AM Bug #7151 (Feedback): Interface Group Name hint is misleading
- Applied in changeset commit:351ef3ef2ac1bbcfb0643a5efc46a3970d06d78c.
-
12:05 AM Bug #7151: Interface Group Name hint is misleading
- Assuming the real requirement is what is in the validation code, I updated the front-end GUI text in:
https://github... -
09:07 AM Bug #7119: Changing LAGG attributes results in a panic/crash
- Here, it still panics + dumps + reboots same as it did originally.
-
01:01 AM Bug #7119: Changing LAGG attributes results in a panic/crash
- To be more precise: pfSense does not exactly "crash", as it is still ping-able. And SSH shells that were open from be...
-
09:06 AM pfSense Packages Bug #6968 (Rejected): Snort VRT Rules Fail to automatically update SSL read error
-
05:09 AM pfSense Packages Bug #6968: Snort VRT Rules Fail to automatically update SSL read error
- Upstream server issue, has nothing to do with pfSense. Close please.
-
08:32 AM Bug #7150 (Feedback): shell option before 1st reboot/wizard - can't login
- It should be fixed on next round of snapshots
-
07:50 AM Bug #6967: DH Groups 22, 23, 24 missing from Phase 2 selection GUI
- Applied in changeset commit:0be9d722226790674bd35c8087286442e5766232.
-
07:48 AM Bug #6967 (Feedback): DH Groups 22, 23, 24 missing from Phase 2 selection GUI
-
05:43 AM Bug #7121 (Resolved): freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
-
05:13 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- All that could be done here is fixed with https://github.com/pfsense/FreeBSD-ports/pull/254 and https://github.com/pf...
-
04:51 AM Bug #7149: igb driver queue related crashes
- On Supermicro SuperServers 5018D-FN8T with X10SDV-TP8F motherboards, that feature six igb and two ix NICs, we experie...
01/22/2017
-
10:33 PM Bug #7154: firewall_nat_edit JS function check_for_aliases()
- I suspect the requirement might be:
If the user enters a port alias in any of destination from/to (dest begin, des... -
10:27 PM Bug #7154 (Resolved): firewall_nat_edit JS function check_for_aliases()
- The code in this function seems to be ineffective. e.g. it has sequences like:
@
if ($('#dstbeginport_cust').val... -
05:26 PM Bug #7153 (Resolved): pkg-utils.inc - register_all_installed_packages() does not handle packages that are missing XML
- After seeing "Running last steps of Status_Traffic_Totals installation" on every reboot, I did some digging into the ...
-
10:57 AM Bug #6852: Commit 8f86722 breaks DHCPv6 leases status page
- does reverting this commit in 2.3.3 with a patch (i dont know how) fix this its really annoying not having this popul...
-
10:01 AM Bug #7147: pfsense-utils.inc - is_ipaddr_configured() does not work properly with some IPv6 formats
- I'll take this one.
-
03:52 AM Bug #7147: pfsense-utils.inc - is_ipaddr_configured() does not work properly with some IPv6 formats
- Yes, option (c) is the most flexible - let users put in whatever format they like (within reason) and deal with it in...
-
03:32 AM Bug #7147: pfsense-utils.inc - is_ipaddr_configured() does not work properly with some IPv6 formats
- I'd rather avoid input validation here. Would just upset users for no good reason.
-
03:17 AM Bug #7147: pfsense-utils.inc - is_ipaddr_configured() does not work properly with some IPv6 formats
- There are a few approaches to a full fix throughout the system:
a) Catch this at input validation, always store a "c... -
03:08 AM Bug #7147: pfsense-utils.inc - is_ipaddr_configured() does not work properly with some IPv6 formats
- PR https://github.com/pfsense/pfsense/pull/3414 should fix the particular bug reported here and make a start on fixin...
-
02:28 AM Bug #7147: pfsense-utils.inc - is_ipaddr_configured() does not work properly with some IPv6 formats
- Yeah, they definitely should be compressed before comparing. I hit this case since I've copied the local LAN IP from ...
-
02:18 AM Bug #7147: pfsense-utils.inc - is_ipaddr_configured() does not work properly with some IPv6 formats
- Net_IPv6 validation allows compressed addresses that are not strictly in the "correct" compressed form.
e.g.
2001:2... -
09:58 AM Bug #7152 (New): Unbound / DNS Resolver issue if "Register DHCP static mappings in the DNS Resolver" set before wildcard DNS custom options
- Tested on:
2.3.2-RELEASE-p1 (amd64)
built on Tue Sep 27 12:13:07 CDT 2016
FreeBSD 10.3-RELEASE-p9
To create ... -
08:04 AM Bug #7151 (Resolved): Interface Group Name hint is misleading
- On the Interface Groups Edit page, Group Name field, it says "No numbers or spaces are allowed. Only characters: a-zA...
-
06:03 AM Bug #7150 (Resolved): shell option before 1st reboot/wizard - can't login
- _(Posted "on forum":https://forum.pfsense.org/index.php?topic=124335.0 and confirmed by another user)_
Default cle... -
02:55 AM Bug #7149 (Resolved): igb driver queue related crashes
- Some 2.4 installations tend to crash out of nowhere related to igb driver queues.
Setting...
01/21/2017
-
05:41 PM Feature #4242: Two Factor or OTP Authentication for Admin Interface
- Ping. I'd love this as a built in feature! I'm using the local database and dont want to get into managing another sy...
-
12:03 PM Bug #5993: dhcp6c not started until an RA received
- I installed the additional patch that Martin provided to address the request for changes. I've tested both patches to...
-
09:38 AM Bug #7086: stale zfs file systems
- Fresh install worked without problems. Can't say anything about the original problem, not enough knowledge in that ar...
-
08:50 AM Bug #7148 (Duplicate): Spoofed mac addresses on VLAN interfaces apply to the same physical interface
- I was replacing a virtual machine with a physical pfSense box. In effort to minimize the change experienced by the ne...
-
04:15 AM Bug #6099: igmpproxy does not recognize upstream interface
- You can find the sources to build the FreeBSD/pfSense package at: https://github.com/pfsense/FreeBSD-ports/tree/devel...
01/20/2017
-
04:54 PM Bug #7147 (Resolved): pfsense-utils.inc - is_ipaddr_configured() does not work properly with some IPv6 formats
- This one is working:...
-
04:28 PM Bug #6099: igmpproxy does not recognize upstream interface
- Greg Myran wrote:
> > Where can I download the latest version of IGMPProxy? Or is the only way to upgrade my pfSense... -
04:20 PM Bug #6099: igmpproxy does not recognize upstream interface
> Where can I download the latest version of IGMPProxy? Or is the only way to upgrade my pfSense to the dev version...-
02:42 PM Bug #5993: dhcp6c not started until an RA received
- Martin Wasley wrote:
> PR #3410
I've been testing this PR since this morning. I've found that pfsense reliably ac... -
12:52 PM Bug #5993: dhcp6c not started until an RA received
- PR #3410
-
02:02 PM Bug #7119: Changing LAGG attributes results in a panic/crash
- Snapshots from this morning still crash with igb hardware NICs.
-
11:18 AM Bug #7119: Changing LAGG attributes results in a panic/crash
- I couldn't reproduce it on a VM using em driver, probably something specific to igb as mentioned
-
11:24 AM Bug #7146: install_cron_job() causes inexplicable issues when saving package configuration
- Saw that, just merged+cherry-picked it all around.
FYI: Uses of install_cron_job in packages:... -
11:06 AM Bug #7146: install_cron_job() causes inexplicable issues when saving package configuration
- Thanks for looking into this. Meanwhile, I did https://github.com/pfsense/FreeBSD-ports/pull/261 since it's generally...
-
10:52 AM Bug #7146: install_cron_job() causes inexplicable issues when saving package configuration
- I don't see anything in the base system that would be affected by removing the write_config() from install_cron_job()...
-
10:50 AM Bug #7146: install_cron_job() causes inexplicable issues when saving package configuration
- The squid issue seems indeed fixed by nuking the @<custom_add_php_command>@ tag. Still would seem desirable to let ju...
-
10:28 AM Bug #7146: install_cron_job() causes inexplicable issues when saving package configuration
- There may yet be a problem with install_cron_job() doing a write the way it does, but the squid problem appears to be...
-
08:50 AM Bug #7146: install_cron_job() causes inexplicable issues when saving package configuration
- I reproduced this on multiple 2.3.3 boxes.Anything but */$minutes * * * * causes the issue. E.g., tried just changing...
-
08:41 AM Bug #7146: install_cron_job() causes inexplicable issues when saving package configuration
- Oddly enough I can't seem to reproduce this, at least on 2.4.
I suspect adding this just after the install_cron_jo... -
05:58 AM Bug #7146 (Closed): install_cron_job() causes inexplicable issues when saving package configuration
- So, this commit https://github.com/pfsense/FreeBSD-ports/pull/254 caused Squid to be unable to save the configuration...
-
09:23 AM Bug #7086 (Feedback): stale zfs file systems
- A fresh install using next round of snapshots is required to validate the fix. Thanks!
-
05:30 AM Bug #7086 (Assigned): stale zfs file systems
- Yes, it broke ZFS install and I see why. I'll push a fix soon
-
02:55 AM Bug #7086: stale zfs file systems
- Tried a fresh install, maybe there is a problem with this change?
It gave me... -
05:56 AM Bug #7083: Put back some visual hint for required fields
- I have added a new function to pfSenseHelpers.js to allow an input to be dynamically set as required (or not). e.g.:
... -
01:06 AM Bug #7083: Put back some visual hint for required fields
- Dependency between Dial On Demand checkbox and Idle Timeout field
-
12:35 AM Bug #7083: Put back some visual hint for required fields
- Sometimes the "required" status of a field is data dependent and needs to be set/cleared as the page loads depending ...
-
05:22 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- The change broke saving General settings in Squid. https://forum.pfsense.org/index.php?topic=124218.0; will get that ...
01/19/2017
-
10:23 PM Bug #7075: firewall states show negative value for total bytes processed
- Yes, that is true. It depends on what "long" does in the environment in which the C is compiled. When compiled in the...
-
05:55 PM Bug #7075: firewall states show negative value for total bytes processed
- This isn't a PHP problem. pfSense_get_pf_rules() is a PHP function written in C as part of php56-pfSense-module. It c...
-
09:06 AM Bug #7075: firewall states show negative value for total bytes processed
- These are both 32-bit installs (i386). So MAXINT will be int(2147483647) (2 gig). The numbers are returned by:
$rule... -
09:20 PM Feature #4606: PKI : CA signing external CSR
- +1 - I would very much like the ability to use the pfSense managed CA for signing my other internal CSRs within my ne...
-
03:36 PM Feature #5549 (Resolved): Additional DNS entries in General Setup would be good for 3 or more WAN's
- This seems to work fine as-is. No need to check/validate someone's unintentional misconfiguration. At least it did er...
-
03:25 PM Feature #6591 (Resolved): Configurable DDNS check IP services
- Works well. I setup my own and tested it out, it queried the script as expected and used the result.
-
03:10 PM Bug #7139 (Resolved): User with some pages plus Help cannot use page help
- Works, thanks!
-
06:30 AM Bug #7139 (Feedback): User with some pages plus Help cannot use page help
- Applied in changeset commit:166540830275318c8dec9199d8a9ee0e605f606a.
-
03:52 AM Bug #7139: User with some pages plus Help cannot use page help
- The "?" or the Help menu item "About this page" point to a URL like:
help.php?page=services_dhcp.php
The code tha... -
03:48 AM Bug #7139 (Resolved): User with some pages plus Help cannot use page help
- 1) Create a new user "u1". Give the user some page privs (e.g. Services-DHCP) plus "Help - all pages".
2) Logout of ... -
03:10 PM Bug #7141 (Resolved): There is no way to grant just access to Services->UPNP
- Works, thanks!
-
06:30 AM Bug #7141 (Feedback): There is no way to grant just access to Services->UPNP
- Applied in changeset commit:a5a899e4388f2737a6d1cdc82c7325c20fb72ee4.
-
05:52 AM Bug #7141: There is no way to grant just access to Services->UPNP
- Mentioned in forum https://forum.pfsense.org/index.php?topic=123520.0
PR https://github.com/pfsense/pfsense/pull/3402 -
05:27 AM Bug #7141 (Resolved): There is no way to grant just access to Services->UPNP
- If you add the privs for pkg.php, pkg_edit.php then all the various package menu items of packages that use package X...
-
03:08 PM Bug #7136 (Resolved): OpenVPN not binding to IP Aliases -> NO LOGS generated
- Failed without the new code, works fine with the fix in place. Looks good.
-
06:30 AM Bug #7136 (Feedback): OpenVPN not binding to IP Aliases -> NO LOGS generated
- Applied in changeset commit:ddf99718d5f1f4545483c39d3759fdfbb788b0fb.
-
12:44 AM Bug #7136: OpenVPN not binding to IP Aliases -> NO LOGS generated
- Yes, the code does not even try to start such an OpenVPN instance, thus there are no logs.
This PR fixes it on my te... -
02:51 PM Bug #7133 (Resolved): services_router_advertisements.php: Interface drop-down is not showing the user-configured interface name
- Works now
-
02:23 PM Bug #7112: Traffic Graphs resets graph when browser tab changes
- https://github.com/pfsense/pfsense/pull/3384
-
01:55 PM Bug #7112: Traffic Graphs resets graph when browser tab changes
- Pablo Trincavelli wrote:
> The new traffic graphs resets graphs when the actual browser tab is changed, so the graph... -
01:32 PM Bug #6099: igmpproxy does not recognize upstream interface
- I have the same issue to IPTV as Alexandre, and have the same version. Is there anyway to update the patch fix for IG...
-
01:19 PM Bug #6099: igmpproxy does not recognize upstream interface
- Alexandre Paradis wrote:
> Is the change also available to 2.3.3 branch ?
I have the same question. Where can I f... -
01:29 PM Bug #2073: APIPA broadcasts forwarded by route-to
- Jim Pingle wrote:
> There is no GUI knob to disable it, but there is a setting. You can set it in the config.xml dir... -
12:59 PM Bug #7086 (Feedback): stale zfs file systems
- I've reviewed which volumes are created during install on ZFS and also made changes on rc script to mount /var and /t...
-
11:55 AM Bug #5993: dhcp6c not started until an RA received
- As they say, this has been an experience.
This whole 5993 started because we needed dhcp6 before RA, and a quick f... -
11:28 AM Bug #7119 (Confirmed): Changing LAGG attributes results in a panic/crash
- Still crashes on the latest factory snapshot: Wed Jan 18 19:49:46 CST 2017
-
11:28 AM Bug #7083 (Resolved): Put back some visual hint for required fields
-
11:02 AM Bug #7083: Put back some visual hint for required fields
- Works nicely (tested with a recent 2.3.3 snapshot and bunch of packages - squid, ntopng, shellcmd, ftpproxy). Thanks.
-
10:51 AM Bug #7083: Put back some visual hint for required fields
- !required.jpg!
-
10:30 AM Bug #7083: Put back some visual hint for required fields
- Applied in changeset commit:57026d17d43a096c3a594a248c183a6889e7956d.
-
10:28 AM Bug #7083: Put back some visual hint for required fields
- pkg_edit.php has been updated to automatically add the '*' if <required> is set
-
10:26 AM Bug #7083 (Feedback): Put back some visual hint for required fields
- Added:
When composing an element with a form.class or via XML, prepend a '*' to the title to indicate a required f... -
11:18 AM Bug #7134 (Resolved): Crash in the gui related to widget
- Your fix looks good, Phil. The system I could replicate this on is no longer producing errors after a gitsync.
Thanks! -
09:32 AM Bug #7145 (Resolved): rc.newwanipv6 running in all cases, even for a renew
- dhcp6c calls its script for every action, a new binding or a renew and so on. The problem is that rc.newwanipv6 is ru...
-
09:23 AM Bug #7144: Intel NIC loosing connection until reboot
- Either way -- driver or hardware (chip or that unit) -- it's not something we can address. It needs replicated in Fre...
-
09:19 AM Bug #7144: Intel NIC loosing connection until reboot
- Jim Pingle wrote:
> On the contrary, this is almost certainly a hardware issue, or at least a driver issue:
> "Jan ... -
09:17 AM Bug #7144 (Rejected): Intel NIC loosing connection until reboot
- On the contrary, this is almost certainly a hardware issue, or at least a driver issue:
"Jan 19 12:09:14 kernel ... -
09:13 AM Bug #7144 (Rejected): Intel NIC loosing connection until reboot
- Hi
I have a pfsense appliance from applianceshop.eu (https://www.applianceshop.eu/security-appliances/19-rack-app... -
08:28 AM Bug #7143 (Closed): filterdns is triggering every 16 seconds for hosts even when the DNS record has not changed
- filterdns is triggering every 16 seconds whether the record has changed or not. It happens for IPsec entries and FQDN...
-
08:15 AM Bug #7142 (Resolved): IPv6: Floating rules on 6rd enabled WAN interfaces doesn't get bound to wan_stf
- Found a bug in the handling of floating rules when they need to be applied to 6rd enabled interfaces (which are split...
-
04:26 AM Bug #7140 (Resolved): User with page-help-all as first priv is redirected to Dashboard Help
- 1) Create a new user.
2) Add "WebCfg - Help pages" priv for the user.
3) Add some other page privs for the user.
4... -
02:47 AM Bug #7138 (Assigned): Pfsense wide dhcpv6 client doesn't recognise ifid statement
- Right now a user cannot set a specific ipv6 address on a tracked interface. The interface id is autogenerated based o...
01/18/2017
-
10:38 PM Bug #7134: Crash in the gui related to widget
- If you have just the Interface Statistics widget on the dashboard (and not the Interfaces widget also) then you still...
-
02:00 PM Bug #7134 (Feedback): Crash in the gui related to widget
- Applied in changeset commit:ffb0c1822875bc0ea1e2b7b73109fa0f97c0b6d2.
-
01:43 PM Bug #7134 (Confirmed): Crash in the gui related to widget
- This also happens on 2.3.3
-
01:41 PM Bug #7134 (Resolved): Crash in the gui related to widget
- From thread : https://forum.pfsense.org/index.php?topic=124155.0
Other people seems to have the same bug.
My ... -
10:26 PM pfSense Packages Bug #7127: Authentication fail in AutoConfigBackup package
- Confirmed. I just installed version 1.47 and it now works just fine with the mixed case ID. Thanks!!!
... um, y... -
08:41 PM Bug #7124: Kernel panic when configuring 6to4 on a interface
- Just want to confirm that this appears to have kept my box from booting. But would restart over and over. No logs to...
-
05:45 PM Feature #7137 (Duplicate): Add support for Sierra MC7455
- pleace add support for Sierra Wireless MC7455 card, thx
Details:
usbconfig -u 1 -a 4 dump_device_desc
ugen1.... -
05:26 PM Bug #7136 (Resolved): OpenVPN not binding to IP Aliases -> NO LOGS generated
- Steps to replicate:
- Create an IP Alias on any interface e.g. 127.0.0.2 on Localhost
- Attempt to bind OpenVPN ser... -
03:32 PM pfSense Packages Bug #7130 (Resolved): Lightsquid 3.0.4_2 HTTP 500
- Works
-
09:51 AM pfSense Packages Bug #7130: Lightsquid 3.0.4_2 HTTP 500
- I'll grab this back for testing once the new package is available
-
09:49 AM pfSense Packages Bug #7130 (Feedback): Lightsquid 3.0.4_2 HTTP 500
- 3.0.4_3 should be fixed
-
09:23 AM pfSense Packages Bug #7130: Lightsquid 3.0.4_2 HTTP 500
- Looks like we're missing the latest change to the Makefile for www/lightsquid from earlier this week, CGI.pm was remo...
-
09:17 AM pfSense Packages Bug #7130 (Confirmed): Lightsquid 3.0.4_2 HTTP 500
-
01:59 AM pfSense Packages Bug #7130 (Resolved): Lightsquid 3.0.4_2 HTTP 500
- As title says, when one clicks on Open Lightsquid HTTP error 500 appers.
-
02:46 PM Bug #2073: APIPA broadcasts forwarded by route-to
- There is no GUI knob to disable it, but there is a setting. You can set it in the config.xml directly or via PHP (e.g...
-
02:40 PM Bug #2073: APIPA broadcasts forwarded by route-to
- Except with no way to disable this rule, this can affect bridged interfaces, and since the rule is processed so far i...
-
02:44 PM Bug #7135: Crash in PHP widget module interface_statistics.widget.php
- My bad, sorry for the duplicate.
-
02:43 PM Bug #7135 (Duplicate): Crash in PHP widget module interface_statistics.widget.php
- Duplicate of #7134 which has a fix already.
-
02:38 PM Bug #7135 (Duplicate): Crash in PHP widget module interface_statistics.widget.php
- When returning to the dashboard page, I frequently receive a PHP error warning:
[17-Jan-2017 14:53:51 America/Chic... -
01:20 PM Bug #7133 (Feedback): services_router_advertisements.php: Interface drop-down is not showing the user-configured interface name
- Applied in changeset commit:790e2a2fad1da3fe6bdd6c858ede2d9e3f34a84a.
-
01:16 PM Bug #7133 (Resolved): services_router_advertisements.php: Interface drop-down is not showing the user-configured interface name
- On services_router_advertisements.php, for the "RA Interface" selection, the internal name (e.g. OPT1) is shown for t...
-
12:57 PM Bug #6992 (Resolved): ZoneEdit DDNS does not update to CARP IP
- I created a zoneedit account (it's free, and you can just make up a domain when testing without actually pointing any...
-
12:43 PM Bug #7123 (Feedback): Kernel panic when setting TCP MD5 Password in OpenBGP
- Possible fix was cherry-picked to FreeBSD-src, please try again on next snapshot
-
12:28 PM Bug #6874 (Resolved): Dynamic DNS w/ DNSimple
- Tested, works. Error and success conditions are logged properly.
-
12:03 PM Bug #6751 (Resolved): Route53 DynDNS Problems / Replace Route53 DynDNS Module
- Tested Route53, it updates records properly now.
-
12:03 PM Bug #5054 (Resolved): Dynamic DNS - Route53 errors should probably be more verbose
- Tested Route53, it updates records properly now.
-
12:02 PM Bug #3973 (Resolved): Route 53 dynamic DNS provider fails to update record
- Tested Route53, it updates records properly now.
-
11:03 AM Bug #7119 (Feedback): Changing LAGG attributes results in a panic/crash
- I've cherry-picked FreeBSD-src patches that should fix it:
https://svnweb.freebsd.org/base?view=revision&revision=... -
10:26 AM Bug #7126 (Resolved): Dynamic DNS Widget links for RFC2136 entries are incorrect
- Works
-
09:42 AM Bug #7132 (Resolved): PPPoE IP Alias
- If you create a new IP Alias on a PPPoE interface, alias address is never added to pppoe0 interface.
-
09:36 AM Bug #7131 (Resolved): DHCP v4&v6 DDNS missing options
- After revision 391d63da the dhcpv6 server settings allows the user to chose between allow, deny or ignore client upda...
-
09:08 AM Bug #7003 (Resolved): autoboot_delay on 2.4.0
- Works fine now, it's there after install
-
05:31 AM Bug #7003: autoboot_delay on 2.4.0
- Confirmed fix on today's snapshot, keeping it as feedback to hear from JimP test results as well
-
07:09 AM Bug #6298 (Duplicate): OpenVPN IPv4/6 Local network(s) initial display state
- I can't reproduce it even on 2.3.x. This appears to have been duplicated by #6482 which has been fixed.
-
07:02 AM Bug #6298 (Feedback): OpenVPN IPv4/6 Local network(s) initial display state
- I've tested it on 2.4.0 and didn't see the issue. Could you please try to replicate it on current snapshots and if yo...
-
06:06 AM Bug #4310: Limiters + HA results in hangs on secondary
- One more here, we always have limiters and HA and we are forced to use the queues. If someone makes a mistake of assi...
-
05:22 AM Feature #7122 (Feedback): Add filters to various dashboard widgets
- All PRs merged, thanks!
-
01:44 AM Feature #7122: Add filters to various dashboard widgets
- Bored enough :) PR https://github.com/pfsense/pfsense/pull/3395
-
04:33 AM Bug #7129 (Resolved): system_advanced_notifications.php - Cannot save settting - growl passwords must match
-
03:10 AM Bug #7129: system_advanced_notifications.php - Cannot save settting - growl passwords must match
- Merged, can be closed. Thanks.
-
02:04 AM Feature #4470: RA page in GUI
- Hello!
It would be great to implement those 2:
AdvRDNSSLifetime
AdvDNSSLLifetime
Thanks!
01/17/2017
-
09:57 PM Bug #7075: firewall states show negative value for total bytes processed
- I'm also seeing this problem in the latest release.
2.3.2-RELEASE-p1 (i386)
built on Tue Sep 27 12:13:32 CDT 2016... -
09:41 PM pfSense Packages Bug #7127 (Resolved): Authentication fail in AutoConfigBackup package
- Had confirmation from others internally that it worked on the new version with mixed case login names.
-
11:04 AM pfSense Packages Bug #7127 (Feedback): Authentication fail in AutoConfigBackup package
- I pushed a fix for this just now. Once version 1.47 shows up for you, reinstall and test it again.
https://github.... -
09:40 PM Bug #6663 (Resolved): IPv6 OpenVPN client is down after reboot
- Updated a VM that had two UPD6 OpenVPN servers on a HE.net GIF WAN and they were both running after the update. On ol...
-
12:45 PM Bug #6663: IPv6 OpenVPN client is down after reboot
- I've mispelled ticket # on commit:5280fd8d21c71c6997e1855f8b96265bd81ccb99
-
12:37 PM Bug #6663 (Feedback): IPv6 OpenVPN client is down after reboot
- It happened in cases where specific IPv6 is selected to bind and interface is in 'tentative' state, as happened in th...
-
01:47 PM Feature #7122: Add filters to various dashboard widgets
- @Phil: In case you are bored, could you do one for SMART Status? Did one originally for 2.2.x (https://github.com/pfs...
-
12:32 AM Feature #7122: Add filters to various dashboard widgets
- OpenVPN Widget filtering in PR https://github.com/pfsense/pfsense/pull/3392
-
01:10 PM Bug #7003 (Feedback): autoboot_delay on 2.4.0
- Fixed installer bits, it should be fine on next round of snapshots
-
12:49 PM pfSense Packages Bug #6603 (Confirmed): pfblockerng's Unbound modifications leave system broken post-config restore
-
12:42 PM pfSense Packages Bug #6603: pfblockerng's Unbound modifications leave system broken post-config restore
- Definitely wrong ticket reference in the above commit.
-
12:40 PM pfSense Packages Bug #6603 (Feedback): pfblockerng's Unbound modifications leave system broken post-config restore
- Applied in changeset pfsense:commit:5280fd8d21c71c6997e1855f8b96265bd81ccb99.
-
11:10 AM Bug #7117 (Feedback): Bump sched buckets limiter log spam in console
- should be fixed in the latest snapshot.
https://github.com/pfsense/FreeBSD-src/commit/c941deabf9dd3d86632ccfdade9d... -
07:21 AM Bug #5993: dhcp6c not started until an RA received
- PR issued, should be the end of this one.
-
03:18 AM Bug #7129: system_advanced_notifications.php - Cannot save settting - growl passwords must match
- Clearly caused by password management in browsers (or password management extensions such as LastPass) helpfully pre-...
-
02:48 AM Bug #7129 (Resolved): system_advanced_notifications.php - Cannot save settting - growl passwords must match
- - I never enabled/configured/touched this (IOW, this should certainly default to disabled, I'd imagine the number of ...
-
02:30 AM Bug #7128 (Resolved): system_advanced_network.php - fugly IPv6 over IPv4 input field alignment
- This really look stupid, is it possible to put it below the checkbox somehow? I'd personally just remove the form gro...
01/16/2017
-
10:57 PM Feature #7122: Add filters to various dashboard widgets
- Dynamic DNS Widget filtering in PR https://github.com/pfsense/pfsense/pull/3386
Commit https://github.com/pfsense/pf... -
07:03 PM Feature #4209: Releasing DHCP on WAN interface should send a release
- PR
Status / Interfaces - Relinquish DHCP Lease
https://github.com/pfsense/pfsense/pull/3390 (2.4)
https://github.c... -
01:55 PM Todo #7125 (Resolved): fullbogons ipv4 list not up to date
- The list on the server was having a problem updating, which we have corrected. The hosted list is current now, shortl...
-
09:44 AM Todo #7125 (Resolved): fullbogons ipv4 list not up to date
- Pfsense bogons list is not up to date:
https://files.pfsense.org/lists/fullbogons-ipv4.txt - Tue Nov 22 04:50:02 ... -
12:50 PM Bug #7126 (Feedback): Dynamic DNS Widget links for RFC2136 entries are incorrect
- Applied in changeset commit:47b35618f025082b5504eae5518d89c772ae8bd5.
-
11:56 AM Bug #7126: Dynamic DNS Widget links for RFC2136 entries are incorrect
- PR https://github.com/pfsense/pfsense/pull/3388
-
11:06 AM Bug #7126 (Resolved): Dynamic DNS Widget links for RFC2136 entries are incorrect
- The Dynamic DNS Widget also displays RFC2136 entries these days. But it has an "ondblclick" for each row that always ...
-
11:54 AM pfSense Packages Bug #7127 (Resolved): Authentication fail in AutoConfigBackup package
- When I sign in to the PFSense Gold web portal, I enter my ID as mix of upper and lower case letters: BrianKDav. To ...
-
08:41 AM Bug #6625: firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- Jim Pingle wrote:
> That doesn't change the situation. You're posting on closed duplicate tickets and the floating r... -
08:35 AM Bug #6625: firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- That doesn't change the situation. You're posting on closed duplicate tickets and the floating rules do solve the pro...
-
08:32 AM Bug #6625: firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- Jim Pingle wrote:
> This is a bug reporting system, not a support or discussion platform. Please post on the forum o... -
08:26 AM Bug #6625: firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- This is a bug reporting system, not a support or discussion platform. Please post on the forum or via some other supp...
-
08:25 AM Bug #6625: firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- Jim Pingle wrote:
> We have, it is.
OK so what would be the solution? Because using floating rules has no effect.... -
08:23 AM Bug #6625: firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- We have, it is.
-
08:22 AM Bug #6625: firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- Jim Pingle wrote:
> Duplicate of #1136
Note sure it is really a duplicate. And the #1136 is very old (and seems n... -
08:20 AM Bug #6625 (Duplicate): firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- Duplicate of #1136
-
08:19 AM Bug #6625: firewall forwards all traffic through wan interface, via default gateway, even if alternative route had been installed
- Remko Lodder wrote:
> We have setup a new pfSense box that will route our VPN traffic between endpoints.
> That goe... -
07:57 AM Bug #7015: IPsec not working behind NAT
- Vladimir Putin wrote:
> Could it be related to https://redmine.pfsense.org/issues/6937 ?
I believe not. We just f... -
07:34 AM Bug #6974: radvd enabled on a disconnected interface kills RA completely on all interfaces
- Not really sure why's this assigned to me. Either it's a bug in radvd or in pfSense. Either way, I won't fix it. Also...
-
06:57 AM Bug #6406: Web process becomes unresponsive producing 502 Bad Gateway nginx
- We upgraded 2 days ago from 2.2.x to 2.3.1p1.
Same issue and no pfB installed.
We have upgraded only one of our t... -
06:40 AM Bug #7120 (Feedback): Wrong file permissions on /var/tmp and missing sticky bit when using /var as RAM disk
- Applied in changeset commit:fc1caa413543c9a616ef08061a5861f57a1c0881.
-
06:33 AM Bug #7033: Hidden rule break the policy routing
- Jim Pingle wrote:
> Duplicate of #1136
>
> If you must have a second gateway on WAN, add floating rules to match ...
01/15/2017
-
10:43 PM pfSense Packages Feature #6022: Consider MLVPN for bonded VPN
- There appears to be a port for MLVPN now:
https://www.freshports.org/net/mlvpn/
This could be used as a basis for... -
03:03 PM Bug #6982 (Resolved): Nested Aliases with FQDNs do not populate parent table in some cases
-
03:01 PM Bug #6982: Nested Aliases with FQDNs do not populate parent table in some cases
- This looks good to me.
Thought there was still an issue but it just turns out one of my test fqdns (www.cnn.com) h... -
02:53 PM pfSense Packages Feature #4461: Squid options too late in squid.conf
- See...
-
02:44 PM pfSense Packages Feature #4461 (Rejected): Squid options too late in squid.conf
-
02:43 PM pfSense Packages Feature #4461: Squid options too late in squid.conf
- No such luck needed, said deficient software is no longer involved, and no loss for me, no-one would have done anythi...
-
02:24 PM pfSense Packages Feature #4461: Squid options too late in squid.conf
- Thanks for "feedback". Pull requests go to https://github.com/pfsense/FreeBSD-ports/, good luck.
-
02:08 PM pfSense Packages Feature #4461: Squid options too late in squid.conf
- Services like plesk control panels do not run on a standard SSL port like 443. Rather than opening several other port...
-
07:41 AM pfSense Packages Feature #4461 (Feedback): Squid options too late in squid.conf
-
02:50 AM pfSense Packages Feature #4461: Squid options too late in squid.conf
- I have hard time understanding what kind of exceptions is being requested here or what's being used by the OP that's ...
-
01:45 PM Bug #7124 (Resolved): Kernel panic when configuring 6to4 on a interface
- Kernel panic when configuring 6to4 on a interface
pfSense on virtualbox: 2.4.0-BETA (amd64) built on Sat Jan 14 10:3... -
11:59 AM Bug #7031 (Resolved): Cannot configure OpenVPN on a DHCP interface that has not received an IP address
- Works
-
11:57 AM Bug #6915 (Resolved): unbound logging not working after reboot or "Reset log files"
- Works
-
10:13 AM Bug #7015: IPsec not working behind NAT
- Could it be related to https://redmine.pfsense.org/issues/6937 ?
-
09:18 AM pfSense Packages Feature #556 (Resolved): siproxd: add carp virtual IPs as interface candidates
- Config looks right now
-
06:54 AM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- So that sort of config should have failed the input validation already prior to his change. The code considers anythi...
-
04:16 AM pfSense Packages Bug #5594: Captive portal patch does not work anymore
- Orsiris de Jong wrote:
> Anyone willing to update the patch ?
Updating the patch is a waste of time. If such func... -
02:18 AM Bug #7119: Changing LAGG attributes results in a panic/crash
- Jim Pingle wrote:
> On 2.4, when changing attributes of an assigned LAGG such as the mode or membership, the firewal...
01/14/2017
-
09:53 PM Bug #7123: Kernel panic when setting TCP MD5 Password in OpenBGP
- Rolf Sommerhalder wrote:
> Setting a TCP6 MD5 password in OpenBGP package triggers a panic in pfSense-2.4 amd64 snap... -
08:50 AM Bug #7123 (Resolved): Kernel panic when setting TCP MD5 Password in OpenBGP
- Setting a TCP6 MD5 password in OpenBGP package triggers a panic in pfSense-2.4 amd64 snapshot from yesterday (Fri 13....
-
04:30 PM Bug #6896: unbound root.key file corruption possibly related to full file system
- I just had the same issue. /var/ was at 100%. After trying to recreate the root.key, and noticing that dhcpd.conf cou...
-
03:35 PM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- ok already had manually added staic route for 8.8.8.8 and 8.8.4.4 causes failure in error checking
-
03:08 PM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- that error happens re-saving current setup with 4 dns servers
-
03:06 PM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- getting this error whe trying to add more dns servers
A gateway can not be assigned to DNS '8.8.8.8' server which ... -
01:07 AM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- Note: I kept this in the General Setup page where it has been since eternity. Just made it so a variable number of DN...
-
11:00 AM pfSense Packages Feature #556: siproxd: add carp virtual IPs as interface candidates
- Good catch, thanks.
-
09:42 AM pfSense Packages Feature #556: siproxd: add carp virtual IPs as interface candidates
- The PR was close but it needed some backend changes as well, otherwise it was putting blank values in the configurati...
-
10:48 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- safebrowsing was never enabled in my setup. I also didn't investigate further.
-
10:37 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- Alexander Berkes wrote:
> That really makes no sense in the minute crontab column and it definitely leads to multipl... -
10:27 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- Thanks for the git link. That makes things more clear.
Sorry I couldn't remember the exact value of the crontab en... -
07:36 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- This hopefully makes things more obvious: https://github.com/pfsense/FreeBSD-ports/pull/254
@OP: No, the above PR ... -
06:52 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- "Checks" in freshclam.conf is not using/configuring cron, at all. Switching to manual config and changing freshclam.c...
-
05:35 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- Yeah you are right, I am talking about the squid package, but especially the freshclam component. Freshclam is execut...
-
02:27 AM Bug #7121: freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- Assuming you are talking about Squid, it's not supposed to do anything with cron. You are totally on your own, this f...
-
10:34 AM Bug #6915 (Feedback): unbound logging not working after reboot or "Reset log files"
- PR merged, works fine. Will wait for it to be in snaps before one last test.
-
09:44 AM Bug #6915: unbound logging not working after reboot or "Reset log files"
- Jim Pingle wrote:
> It works from the Settings tab if you reset all log files, but it doesn't work if you clear the ... -
10:11 AM pfSense Packages Feature #3303 (Resolved): Allow quagga ospf stub, not so stub and totally stub areas
- Seems to work
-
09:20 AM pfSense Packages Feature #7000: ntopng historical data needs to be reworked
- PR to hide this defunct stuff from GUI meanwhile: https://github.com/pfsense/FreeBSD-ports/pull/255
-
08:57 AM pfSense Packages Bug #4736 (Resolved): ladvd crashes, dumps core
- Problem on the ticket no longer happens, anything else belongs on a new ticket. Closing.
-
08:57 AM pfSense Packages Bug #6346 (Rejected): Squid Proxy Server Service randomly stops
-
08:56 AM pfSense Packages Bug #5534 (Resolved): Captive Portal stop sending accounting updates to free radius
- Unable to reproduce, lack of feedback, closing.
-
08:55 AM pfSense Packages Bug #5614 (Resolved): mailreport - emails are going out when manually triggered, but not via cron
- Unable to reproduce, lack of feedback, closing.
-
08:31 AM Bug #6927 (Resolved): 1 to 1 NAT allows entry of mixed IP addresses
- Yes, this should have a 2.4 target. And it's already been tested, but I tested it again on a current snapshot and it'...
-
01:45 AM Bug #6927: 1 to 1 NAT allows entry of mixed IP addresses
- Target version could be set to 2.4.0 and then some independent person test.
-
08:09 AM pfSense Packages Feature #4752 (Feedback): SQUID. Exception for speed limits
-
08:03 AM pfSense Packages Feature #4752: SQUID. Exception for speed limits
- Merged; test please and report back.
-
08:08 AM pfSense Packages Feature #6965 (Resolved): suricata + snort - making custom passlist additive to the default one
-
08:05 AM pfSense Packages Feature #6965: suricata + snort - making custom passlist additive to the default one
- Apparently the issue was not with the package, nested aliases now work. Close please.
-
01:42 AM pfSense Packages Feature #5052: Avahi Proxy Package: Add option to disable/control cache size.
- This has a target version of 2.4.0 - is that really intended?
-
01:37 AM Bug #6864: Error checking rejects IPv6 addresses with upper case A-F.
- interfaces.php also has addrtolower()
-
01:28 AM Bug #7031: Cannot configure OpenVPN on a DHCP interface that has not received an IP address
- This just needs an independent person to test it.
-
01:24 AM Feature #7122: Add filters to various dashboard widgets
- The following are completed:
Services Widget UI changes: https://github.com/pfsense/pfsense/pull/3370
Interfaces Wi... -
01:14 AM Feature #7122 (Resolved): Add filters to various dashboard widgets
- Some dashboard widgets can end up with a lot of rows or columns of data to display on bigger systems. It would be nic...
01/13/2017
-
08:47 PM Bug #7121 (Resolved): freshclam.conf advanced editing, configuring value of "Checks" has no effect on crontab entry
- When configuring clamav advanced options, changing the value of "Checks" has no effect on the crontab entry of freshclam
-
08:31 PM Bug #7120 (Resolved): Wrong file permissions on /var/tmp and missing sticky bit when using /var as RAM disk
- When pfsense (full install) is configured to use /var as RAM disk, the directory permissions of /var/tmp are set to 7...
-
03:26 PM Bug #6920 (Resolved): Upgrading to 2.4 with a stale package .inc file can prevent the system from fully booting after upgrade
- Seems to be fixed now. I put a file in /usr/local/pkg/ that would work on 2.3.3 and break on 2.4, and it did not affe...
-
03:03 PM Bug #6915 (Assigned): unbound logging not working after reboot or "Reset log files"
- It works from the Settings tab if you reset all log files, but it doesn't work if you clear the log specifically whil...
-
02:53 PM Bug #7003 (Assigned): autoboot_delay on 2.4.0
- It's still missing after installing from a current snapshot. /boot/loader.conf contains only:...
-
02:51 PM Feature #5549 (Feedback): Additional DNS entries in General Setup would be good for 3 or more WAN's
- PR has been merged, thanks!
-
02:15 PM Bug #3560 (Resolved): Disabled Static Route not fully disabled
- Works
-
12:41 PM pfSense Packages Bug #5524 (Resolved): bind package is patching /etc/inc/system.inc (syslog configuration)
-
12:39 PM Bug #6840 (Resolved): Upgrade ISC dhcpd to 4.3.5 to address missing hostname workaround
- New version is there, workarounds are gone. Seems fine.
-
12:17 PM Bug #6984 (Resolved): NTP/ACLs - Delete button partially invisible + rowhelper handling broken
- Seems fine now, the behavior is correct and the button has space around it.
-
12:16 PM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- do you want me to update my snapshot and test?
-
08:46 AM Bug #7102 (Resolved): This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- Fixed
-
12:14 PM pfSense Packages Bug #6527 (Resolved): Squid 3.5 - Deprecated "ssl_bump server-first all" don't allow SNI in transparent mode with HTTPS/SSL Interception
-
12:14 PM pfSense Packages Feature #6593 (Resolved): squid: allow user to configure DH key size, SINGLE_DH_USE, NO-SSLv3, Cipher-Suites - performance improvement hint
-
12:14 PM pfSense Packages Bug #6592 (Resolved): squid does NOT use EDH and EECDH cipher suites because "tls-dh" is not configured and so these ciphers are silently dropped - see squid documentation
-
12:12 PM Bug #6357 (Resolved): Dynamic DNS (RFC2136) updates always considered successful
- Seems to work all around. It logs correctly when it is updating, and if it fails that is also logged. It is checking ...
-
11:42 AM Bug #6717: Status / DHCPv6 Leases Issues
- I'm not able to comment on item 2 in the original list due to a dhcpv6 bug in windows 10, but it appears that the lea...
-
09:04 AM Bug #6717 (Resolved): Status / DHCPv6 Leases Issues
- Seems to be fine. No errors on the page with or without leases, with or without RAM disks enabled.
-
10:46 AM Feature #7069 (Resolved): Provide knob to disable state display in Diagnostics > States until a filter has been submitted.
- Works
-
10:46 AM Todo #7084 (Resolved): Intel IEEE 802.11ac wireless network driver
-
10:44 AM Bug #7118 (Resolved): ICMP rule with ICMP type "any" fails to load
- OK, nevermind, I ran it again and it's fine. The sync didn't pick that up.
github has been spazzing out today, the... -
10:41 AM Bug #7118 (New): ICMP rule with ICMP type "any" fails to load
- This still fails for me after a gitsync.
There were error(s) loading the rules: /tmp/rules.debug:189: syntax err... -
06:30 AM Bug #7118 (Feedback): ICMP rule with ICMP type "any" fails to load
- Applied in changeset commit:007cfb6ab6d7733c7a98d8fc5baae59028753107.
-
01:16 AM Bug #7118: ICMP rule with ICMP type "any" fails to load
- Works fine now. Many thanks, Phil!
-
12:55 AM Bug #7118: ICMP rule with ICMP type "any" fails to load
- Pull request to fix: https://github.com/pfsense/pfsense/pull/3377
-
12:33 AM Bug #7118 (Resolved): ICMP rule with ICMP type "any" fails to load
- Creating a pass rule with ICMP and ICMP type any prevents the ruleset from being loaded.
The following rule is gener... -
10:33 AM Feature #7051 (Resolved): Allow control of what users can view and/or clear notices
- Works well now as far as I can see.
-
10:32 AM Bug #7043 (Resolved): If user does not have crash_reporter page access the crash reported link is useless
- Works fine, a user without access doesn't get the link.
-
10:26 AM Bug #7119 (Resolved): Changing LAGG attributes results in a panic/crash
- On 2.4, when changing attributes of an assigned LAGG such as the mode or membership, the firewall panics and reboots....
-
10:19 AM Feature #7111 (Resolved): Add protocol selection to radius server configuration
- Works well
-
10:16 AM Feature #7097 (Resolved): Authentication cache for LDAP and RADIUS
- Works well for LDAP. RADIUS already caches the groups in $_SESSION so don't be surprised if you don't see re-auth req...
-
10:07 AM Bug #7015: IPsec not working behind NAT
- Also seeing this after upgrading to 2.4.
Initially unable to ping across the tunnel but a packet capture showed pi... -
09:48 AM Bug #7089 (Resolved): Opposite of + or - is occurring when selecting time zone
- New descriptions are more clear, options are labeled in a way that is hopefully obvious.
-
09:18 AM Bug #7042 (Resolved): DHCP client configures wrong address in some circumstances (setfirst support missing from ifconfig)
- Seems to be solid all-around.
-
09:16 AM Bug #6930 (Resolved): DHCP server should be disabled for /31 and /32
- Seems to be good here.
-
09:08 AM Feature #6793 (Resolved): Add pound package to the pfSense repository
- It's been available in the repo for a while. Closing.
-
09:07 AM Feature #6746 (Resolved): Option to select dark or misc background for Traffic Graphs when a dark theme is selected.
- All graphs look fine now with the dark theme (widget, graph page, and monitoring), they do respect theme colors.
-
09:06 AM pfSense Packages Todo #7055: Update OpenVPN Client Export package with OpenVPN 2.4
- If you checked "push compression to the client" then the server will push the setting to the client and it shouldn't ...
-
09:03 AM pfSense Packages Todo #7055: Update OpenVPN Client Export package with OpenVPN 2.4
- Jim - unknown if this is expected behavior, but the Client Export does not put compression settings in the client fil...
-
08:49 AM pfSense Packages Todo #7055 (Resolved): Update OpenVPN Client Export package with OpenVPN 2.4
- Works fine.
-
08:56 AM Bug #4418: IPsec mobile clients - bogus "p" appended to search domain
- This still happens in 2.3.2-RELEASE-p1. Had to add a dummy second domain to fix it like the others.
resolver #3
... -
08:48 AM Bug #6778 (Resolved): CloudFlare Dynamic DNS fails when domain name uses a Second Level TLD
- No confirmation, but no complaints. Other posts on the forum indicate CloudFlare is working in general on 2.4 now.
-
08:37 AM Bug #7088 (Resolved): DHCP does not accept input into MAC Control Fields.
- Works
-
08:32 AM Bug #7081 (Resolved): Search Domains not populating from RA using SLAAC
- Works
-
05:01 AM Feature #4632: Support for Multipath TCP (MPTCP)
- I also would like to see it in PfSense.
I'm using MPTCP to bond my three connections (2x VDSL + LTE). It works per...
01/12/2017
-
08:49 PM Bug #6153 (Resolved): RFC 2136 Client fails to update more than 1 record
- Works for me. Two RFC2136 entries on WAN both get updated now. I wiped the cache files and tested using /etc/rc.dyndn...
-
03:34 PM Bug #6153: RFC 2136 Client fails to update more than 1 record
- Pingle has a way to validate the changes
-
03:30 PM Bug #6153 (Feedback): RFC 2136 Client fails to update more than 1 record
- Applied in changeset commit:ed680fda05f2d2d17a59d2893a6ae45e0cbef164.
-
08:30 PM Bug #6991 (Resolved): IPv6 traffic hitting a rule with policy routing and NPt fails/disappears
- Seems to work fine. Rules that resulted in no traffic passing before now pass traffic as expected.
-
11:12 AM Bug #6991 (Feedback): IPv6 traffic hitting a rule with policy routing and NPt fails/disappears
- Fixed by: https://github.com/pfsense/FreeBSD-src/commit/65e7874e6faa4fdfd1fb6893d75d8db196a2f599
-
06:55 PM Feature #6045 (Resolved): Updates that do not require a reboot should run reroot
- Seems OK for now.
-
08:16 AM Feature #6045 (Feedback): Updates that do not require a reboot should run reroot
- pfSense-upgrade 0.12 will not reroot on ZFS systems
-
06:30 PM Bug #7105 (Resolved): ICMP type selection is assuming IPv6 when it should assume IPv4
- Works
-
08:50 AM Bug #7105 (Feedback): ICMP type selection is assuming IPv6 when it should assume IPv4
- Applied in changeset commit:da2a39e2961d22a403df464534b52bf6dbf9cf01.
-
04:34 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- I confirm this behaviour.
-
02:46 PM Bug #7116 (Resolved): a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue.
Using Virtua... -
02:59 PM Bug #7117 (Resolved): Bump sched buckets limiter log spam in console
- When a limiter is used with source mask, it creates a lot of system log entries over time when active and applied to ...
-
10:11 AM Bug #6937: Inbound traffic on enc0 is not creating a state with mobile IPsec
- Please read this https://forum.pfsense.org/index.php?topic=117827
-
08:30 AM Feature #7115 (Rejected): Firewall logs duration
- Use remote syslog to retain logs. Or look into the syslog-ng package.
-
08:27 AM Feature #7115 (Rejected): Firewall logs duration
- It would be nice if the firewall log records are archived in the new version
-
08:05 AM Todo #7084 (Feedback): Intel IEEE 802.11ac wireless network driver
- pfSense kernel already has all intel wireless cards / firmwares built-in as you can see at:
https://github.com/pfs... -
07:54 AM Bug #6340 (Feedback): fsck hangs boot in background, fails to produce any action, resulting in broken firewall
- We were misusing fsck -F option. It's supposed to be used when you plan to run background fsck after filesystems are ...
01/11/2017
-
10:42 PM Bug #6937: Inbound traffic on enc0 is not creating a state with mobile IPsec
- Found the same problem on a 2 weeks old SG-1000. Kinda annoying since mobile ipsec is the reason I bought it.
-
08:21 PM Bug #7110 (Resolved): Empty custom NTP ACL produces syntax error in /var/etc/ntpd.conf
-
08:05 PM Bug #7110: Empty custom NTP ACL produces syntax error in /var/etc/ntpd.conf
- Can confirm that fix works on current 2.3.3 snapshot. Thanks, Jim!
-
08:00 AM Bug #7110 (Feedback): Empty custom NTP ACL produces syntax error in /var/etc/ntpd.conf
- Applied in changeset commit:d90beba66f545af414f00124ba32a9ae087a29d2.
-
08:18 PM pfSense Packages Bug #7114: OpenBGP - remote syslog output incomplete
- Thanks, Jim.
Confirmed with WireShark to be a limitation of free Kiwi syslog server.
-
07:49 PM pfSense Packages Bug #7114 (Rejected): OpenBGP - remote syslog output incomplete
- Remote syslog server data is sent immediately as the log entries happen. There are no limits imposed on the data, it ...
-
07:33 PM pfSense Packages Bug #7114 (Rejected): OpenBGP - remote syslog output incomplete
- 2.3.2-RELEASE-p1 (full install).
I have a table which is updated via OpenBGP and currently contains more than 90... -
04:46 PM Bug #6712 (Resolved): services_unbound.php Host Overrides don't change any unbound configuration
- Looks good now. Forwarder hosts go in /etc/hosts, Resolver hosts go in /var/unbound/host_entries.conf and they appear...
-
10:51 AM Bug #6712: services_unbound.php Host Overrides don't change any unbound configuration
- Assigning to Jim Pingle for testing
-
10:50 AM Bug #6712 (Feedback): services_unbound.php Host Overrides don't change any unbound configuration
- Applied in changeset commit:ac446eac051c4514666f9904bbdd0609468f2fc5.
-
04:35 PM Bug #6422 (Duplicate): PHP Fatal error: Call to undefined function gettext() in /etc/inc/rrd.inc on line 60
- Duplicate of #6758
-
04:30 PM Bug #6422: PHP Fatal error: Call to undefined function gettext() in /etc/inc/rrd.inc on line 60
- Seems to be caused by a file permissions issue.
See https://redmine.pfsense.org/issues/6758
To fix this:
<pr... -
08:49 AM Feature #5549: Additional DNS entries in General Setup would be good for 3 or more WAN's
- PR https://github.com/pfsense/pfsense/pull/3373
It seems to work too easily, what have I forgotten? -
05:59 AM Bug #7113 (New): Interface name in Traffic Graphs
- The interface name is not displayed in the traffic graphs, only the real interface name is displayed, lan, wan, opt1,...
-
05:58 AM Bug #7112 (Resolved): Traffic Graphs resets graph when browser tab changes
- The new traffic graphs resets graphs when the actual browser tab is changed, so the graphs starts from the right axis...
-
05:38 AM Feature #7069 (Feedback): Provide knob to disable state display in Diagnostics > States until a filter has been submitted.
- PR has been merged, thanks!
-
05:30 AM Feature #7111 (Feedback): Add protocol selection to radius server configuration
- Applied in changeset commit:9da4a575f8ff670f4d79bb0b6c19e8ca3f3a3cdc.
-
05:19 AM Feature #7111: Add protocol selection to radius server configuration
- Submitted at https://github.com/pfsense/pfsense/pull/2687
-
05:19 AM Feature #7111 (Resolved): Add protocol selection to radius server configuration
- Add the hability to select protocol (PAP, MD5-CHAP, MS-CHAPv1 and MS-CHAPv2) on Radius server configuration.
-
03:02 AM Feature #7099: Make breadcrumbs clickable
- Yes, for packages with XML the pkg.php and pkg_edit.php try to put some reasonable breadcrumb links in (try the Notes...
-
02:50 AM Feature #7099: Make breadcrumbs clickable
- Phil: That looks great, thanks! I guess the same can be used for packages (the PHP files I mean, not XML), right?
-
01:03 AM Feature #7099: Make breadcrumbs clickable
- Proposed solution is out for review/test https://github.com/pfsense/pfsense/pull/3369
01/10/2017
-
08:29 PM Bug #4310: Limiters + HA results in hangs on secondary
- I would agree with Vladimir. Just would like to know if this will be definitely be fixed in 2.4 or pushed out furthe...
-
08:21 PM Bug #7110 (Resolved): Empty custom NTP ACL produces syntax error in /var/etc/ntpd.conf
- On the NTPD ACL tab [Services/NTP/ACLs] the blank default entry under Custom Access Restrictions results in addition ...
-
07:59 PM Bug #6986 (Resolved): reply-to is not functioning on pfSense 2.4
- I tested this on two systems that previously reproduced the problem 100% of the time, and now they both work. Looks g...
-
07:22 PM Bug #6986 (Feedback): reply-to is not functioning on pfSense 2.4
- Fixed by https://github.com/pfsense/FreeBSD-src/commit/114dc4a89011a560c32421ca842ca73f5b29d449
-
09:17 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- definitely like the idea of adding a decision layer the would then open options to create a daemon for other method...
-
06:48 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- I posted a bounty: https://forum.pfsense.org/index.php?topic=123741.0
-
08:56 AM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- Jim if you want to test these new findings up to you but here is an update.
I have discovered the match rules crea... -
08:23 AM Feature #7098 (Resolved): RAM Disk Management
- Seems to work alright on a couple test boxes here.
-
06:57 AM pfSense Packages Bug #7109: Squid 0.4.29_1 not Exist
- Tank you,
now all is ok -
06:52 AM pfSense Packages Bug #7109 (Rejected): Squid 0.4.29_1 not Exist
- This sort of error will clear up on its own after a few moments, or run "pkg update -f" if it keeps happening.
Whe... -
06:45 AM pfSense Packages Bug #7109 (Rejected): Squid 0.4.29_1 not Exist
- If tray to install Squid 0.4.29_1 I have this error:...
-
06:50 AM pfSense Packages Bug #6878: how to use snort, squid and squid_guard with a ram disk
- The thinking was: Without NanoBSD, more people will be running a full install on unreliable media like CF/SD, so we n...
-
04:24 AM pfSense Packages Bug #6878: how to use snort, squid and squid_guard with a ram disk
- Jim Pingle wrote:
> Seems to be working.
Yeah, this seems to be working, except that noone is getting the fixes. ... -
06:30 AM Bug #5993: dhcp6c not started until an RA received
- Richard Patterson asked me by email to explain in more detail why I want to make these changes, here is my email to h...
-
05:22 AM Bug #5993: dhcp6c not started until an RA received
- OK, it seems we have a solution. It involves a change to dhcp6c, another new flag is added!
The flag, currently 'x...
01/09/2017
-
10:21 PM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- I agree that the "right" way to handle this would be to have dpinger remain dumb (for lack of a better term) and simp...
-
08:28 PM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- I agree with this analysis. To make this happen, there needs to be a layer between groups of dpinger process(es) and ...
-
07:42 PM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
- Luke opened an issue with dpinger. For reference, I've copied the response here.
-----
Hey Luke,
I understan... -
10:06 PM pfSense Packages Bug #6305: Quagga problems updating routes / mistakenly showing "kernel"-routes while they are not
- Affected me too. I tried settings with OpenVPN server + OpenVPN client.
Both:
Pfsense 2.3.2-RELEASE-p1
Quagga_OS... -
09:22 PM Feature #7098: RAM Disk Management
- Upgraded RAM disk enabled system. Working fine.
Thanks -
08:01 AM Feature #7098 (Feedback): RAM Disk Management
- PR has been merged, thanks!
-
09:17 PM Bug #7108: ntp does not keep time on virtualized pfsense
- Trying with TSC-low now. That seems to have done the trick! The time offset is staying relatively stable now. Tha...
-
07:50 PM Bug #7108 (Not a Bug): ntp does not keep time on virtualized pfsense
- OpenNTPD isn't better, it's worse.
-
06:53 PM Bug #7108: ntp does not keep time on virtualized pfsense
- Try with TSC or TSC-low. Anyway, this ain't a pfSense bug, needs to go upstream.
-
05:45 PM Bug #7108: ntp does not keep time on virtualized pfsense
- Relevant logs:...
-
05:40 PM Bug #7108 (Not a Bug): ntp does not keep time on virtualized pfsense
- I run pfsense virtualized under FreeBSD bhyve. I've read all of the normal advice and have implemented the usual wor...
-
07:55 PM pfSense Packages Bug #7107: IPv6 blocklists generate IPv4 auto-rules
- I'll wait for a confirmed fix for the 'vtype' bug. The aliases are working fine for me, especially since I really on...
-
07:44 PM pfSense Packages Bug #7107: IPv6 blocklists generate IPv4 auto-rules
- *Update:* Its going to be a little more involved to fix this issue... Best to use "Alias type" rules, until the next...
-
07:22 PM pfSense Packages Bug #7107: IPv6 blocklists generate IPv4 auto-rules
- Thanks for the report... I can confirm that there is a bug for the IPv6 Tab. The GeoIP tab doesn't have this issue th...
-
06:32 PM pfSense Packages Bug #7107: IPv6 blocklists generate IPv4 auto-rules
- Yes. I configured the list in the IPv6 tab of pfBlockerNG. When "List Action" is set to "Deny Both" the firewall ru...
-
06:21 PM pfSense Packages Bug #7107: IPv6 blocklists generate IPv4 auto-rules
- Did you add these Lists in the IPv6 pfBlockerNG Tab?
-
05:35 PM pfSense Packages Bug #7107 (Resolved): IPv6 blocklists generate IPv4 auto-rules
- I set up some IPv6 blocklists with pfblocker and noticed that the autorules it created were created as IPv4 protocol ...
-
06:54 PM Bug #6257: Kernel panic with ALTQ
- Also experiencing a very similar crash every few days in the igb driver queue thread after updating to 2.4.0 as long ...
-
05:25 PM Bug #7106 (Not a Bug): TLS SMTP notification messages fail with expired certificate
- Am using pfsense 2.3.3 development snapshot 2017-01-08.
When configuring SMTP notifications using STARTTLS over tc... -
03:11 PM Bug #7105 (Resolved): ICMP type selection is assuming IPv6 when it should assume IPv4
- I had an older rule which did not have an ipprotocol type set inside, which is quite common with configurations that ...
-
02:46 PM Bug #6986: reply-to is not functioning on pfSense 2.4
- It's still not working here. Port forwards only work on the WAN with the default gateway. Configuration is unchanged ...
-
02:15 PM Bug #6986: reply-to is not functioning on pfSense 2.4
- JimP, I cannot reproduce this bug with todays snapshot. This is a fresh install with two WANs (DHCP) and two port fo...
-
02:18 PM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- ok thanks for taking the time to find the cause.
I respect you want to sort of filter things out on the forum firs... -
12:40 PM Bug #7102 (Feedback): This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- Applied in changeset commit:fc47d47ae50e6b549b2ac38ded2576106be66504.
-
12:34 PM Bug #7102 (Assigned): This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- I found a way to reproduce this one, it's a different problem. If all of the ALTQ-capable interfaces were assigned an...
-
12:35 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- OK I put that back on #7102, it's all unrelated to this ticket. This ticket is now (again) only for vmx(4) lacking AL...
-
10:38 AM Bug #7050 (Resolved): Limiter with PFsense 2.4 transparent proxy
-
10:25 AM Bug #7050: Limiter with PFsense 2.4 transparent proxy
- Luiz Otavio O Souza wrote:
> Fixed in the latest snapshot.
>
> https://github.com/pfsense/FreeBSD-src/commit/994e... -
10:30 AM Bug #6882 (Needs Patch): bsnmpd uses all available CPU with hostres module active in some cases
- The workaround is present and prevents the problem case from causing harm.
Rather than close this out, I'll leave... -
10:09 AM Bug #6835 (Resolved): firewall_nat_out_edit.php Translation section hidden
-
10:09 AM Bug #6711 (Resolved): diag_states_summary # States and # States twice (explain one is per protocol)
-
09:54 AM Bug #6949 (Resolved): username/password not used by proxy support
- Works on the latest snap including the patch.
-
05:49 AM Bug #6949 (Feedback): username/password not used by proxy support
- Done. Last commit was cherry-picked
-
08:34 AM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- I did not explain how they work because this is not a support system, nor is it a discussion platform. All of this be...
-
08:32 AM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- Jim Pingle wrote:
> The forum is the best place to discuss this until a real bug is identified. It is not about keep...
01/08/2017
-
11:35 PM Bug #6990: DDNS IPs not updating after a system restart
- Hi,
yesterday, January 8, my customers router shut down due to a power loss.
When the power returned the router boo... -
09:01 PM Feature #7069: Provide knob to disable state display in Diagnostics > States until a filter has been submitted.
- New pull request: https://github.com/pfsense/pfsense/pull/3367
-
08:02 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Firewall-Traffic Shaper-By Interface. I didn't check the others. If I see traffic in the queues then AltQ should be ...
-
07:50 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- What page does the error show on, exactly? I can't replicate any problem where that error shows up on a firewall that...
-
07:13 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Jim Pingle wrote:
> If there is any issue with igb, I can't replicate it here. On an SG-8860 with igb running 2.4, I... -
10:36 AM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- If there is any issue with igb, I can't replicate it here. On an SG-8860 with igb running 2.4, I can use ALTQ and it ...
-
09:18 AM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Chris Collins wrote:
> Jim ALTQ does looks its on the a downward path but still pfSense uses it and the traffic shap... -
04:57 PM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- Yeah exactly, this is to file bug reports. Not "ooops something somehow won't work for me, definitely must be a bug" ...
-
04:54 PM pfSense Packages Bug #7104 (Rejected): Rules created by traffic shaper wizard dont do anything
- The forum is the best place to discuss this until a real bug is identified. It is not about keeping ticket counts dow...
-
04:43 PM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- Kill Bill wrote:
> May I suggest using https://forum.pfsense.org/index.php?board=26.0 until you have a *real* bug? '... -
04:42 PM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- I see match mentioned on this page https://home.nuug.no/~peter/pf/en/altqintro.html
But FreeBSD never updated PF t... -
04:38 PM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- May I suggest using https://forum.pfsense.org/index.php?board=26.0 until you have a *real* bug? 'cos this one ain't a...
-
04:26 PM pfSense Packages Bug #7104: Rules created by traffic shaper wizard dont do anything
- Ok some more information. Step by step of my diagnostics.
1 - Run the wizard and choose the first option, keep as... -
04:12 PM pfSense Packages Bug #7104 (Rejected): Rules created by traffic shaper wizard dont do anything
- The rules are created as match rules which is not passing them onto the specific queue.
I am talking about the rul... -
03:20 PM Bug #7050 (Feedback): Limiter with PFsense 2.4 transparent proxy
- Fixed in the latest snapshot.
https://github.com/pfsense/FreeBSD-src/commit/994e779f035e9ed49909936d5773f930adfc40... -
03:05 PM pfSense Packages Feature #4752: SQUID. Exception for speed limits
- This is what 'Unrestricted IPs' on the ACLs tab was intended for; except that it never worked due a wrong check. Fixe...
-
01:21 PM Bug #7093: "Outgoing Network Interfaces" is broken in dns resolver settings
- The configuration is not enough on its own because your interfaces are DHCP. We need to see the addresses on the inte...
-
12:53 PM Bug #7093: "Outgoing Network Interfaces" is broken in dns resolver settings
- is it sufficient to do a backup of the config and send you that backup?
The setup is this.
Dns resolver enabled... -
12:53 PM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- The ticket was rejected because I attempted the same configuration and found no problem on current 2.4 snapshots. I h...
-
12:43 PM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- It is a bit of a wow that you have rejected a clear report telling you that there is a misleading message in the GUI....
-
10:19 AM Bug #7102 (Rejected): This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- Then you'll need to provide a lot more detail about your NICs & the drivers they use (dmesg, ifconfig output, GUI ass...
-
10:17 AM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- I can confirm 100% now ALTQ is working.
1 - if I apply the rules on cli is no error, if altq was broken it would s... -
09:03 AM Bug #7102: This firewall does not have any interfaces assigned that are capable of using ALTQ traffic shaping for igb interface
- The only place I see this message appear is when a NIC is in use that does NOT have ALTQ support (e.g. lagg, cpsw, et...
-
11:06 AM pfSense Packages Bug #7103 (Rejected): Security issue regarding traffic shaper created by wizard
- There is no security issue except the one you made by changing the rules. If there is a problem with the shaper rules...
-
11:04 AM pfSense Packages Bug #7103 (Rejected): Security issue regarding traffic shaper created by wizard
- So take this into consideration
The default dns resolver settings listen on "all" interfaces.
If I follow the... -
10:53 AM Feature #7007 (Resolved): Change default IPsec/strongswan log levels
- Works
-
09:25 AM Bug #6836: Wrong queue length on "/status_queues.php" page under heavy traffic
- So show me what is applied here and please remove all not applicable redmine "Ts & Cs" links from this site also.
-
09:21 AM Bug #6836: Wrong queue length on "/status_queues.php" page under heavy traffic
- The Ts & Cs of the redmine project don't apply here
Also available in: Atom