Activity
From 01/25/2017 to 02/23/2017
02/23/2017
-
11:17 PM pfSense Packages Todo #7311 (Rejected): Lightsquid queries
- Hello All,
i have some query in pf sense
I want to see the user’s website visit log by user base. Currently IP... -
09:36 PM Revision 7038116e: Vendor MAC Retention - Update
- Only write if changed or missing.
Vast majority of reboots will not have a change so don't hit the file system with ... -
09:16 PM Bug #4061: dhcpd doesn't send client-hostname to peer, breaking DHCP lease registrations w/HA
- 4.3.5 is in pfSense 2.3.3 and 2.4. Just update and try it.
-
08:52 PM Bug #4061: dhcpd doesn't send client-hostname to peer, breaking DHCP lease registrations w/HA
- It looks like this may have been fixed upstream in version 4.3.5, is this something that could be easily tested? Hap...
-
05:09 PM Revision 69860ee4: Fix #5976: build cryptodev as a module
- 03:45 PM Revision 27bc5848: Fix #7306 Correctly filter log widget entries by interface description
-
02:17 PM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- Renato Botelho wrote:
> Which version were you upgrading to?
2.3.2 -
11:35 AM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- Pig Monkey wrote:
> I was just hit by this as well. In my case I am preparing to replace a device at a remote site. ... -
11:34 AM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- Kevin Wojniak wrote:
> I'm running into this right now. Not a big network guy, just trying to replace our small busi... -
01:04 PM Revision 117776e0: Add a function to normalize CR and CRLF-style newlines to Unix LF
- See Bug #5306.
-
12:28 PM Feature #6743: Packet Capture - Filter MAC
- Jim Pingle wrote:
> This is already partially done, commit:151b4e35eead8d1b1a9ccd1d1c3b3c4fb0e6620a
>
> Though th... -
11:46 AM Feature #6743: Packet Capture - Filter MAC
- This is already partially done, commit:151b4e35eead8d1b1a9ccd1d1c3b3c4fb0e6620a
Though the calls to is_macaddr() c... -
12:18 PM pfSense Packages Bug #7310: Packages pre-deinstall script removes temporary files used by pkg
- Duplicate of Bug #7229.
-
12:11 PM pfSense Packages Bug #7310 (Resolved): Packages pre-deinstall script removes temporary files used by pkg
- Upgrading from 2.3.3 to 2.4 removes Snort from the drop-down.
During the upgrade process I see this:... -
11:20 AM Bug #5976 (Feedback): Load cryptodev as a kernel module
- Applied in changeset commit:69860ee4f5ff9f1e5b87bc6fdcb6dfea66062726.
-
11:16 AM Bug #7309 (Resolved): ZFS - Can't find zroot, error 5
- Using the latest 2.4 factory ADI image.
When rebooting after installing pfSense with ZFS, the file-system isn't ge... -
11:10 AM Bug #7308 (Resolved): ZFS installer - check storage capabilities
- ZFS installer fails on the SG-2220 due to the small size of the internal storage (4 GB). The default swap size in ZFS...
-
11:05 AM Bug #7307 (Closed): ZFS installer - shuts down instead of rebooting
- Using the following image: pfSense-netgate-memstick-ADI-2.4.0-BETA-amd64-latest.img (downloaded today)
When perfor... -
10:53 AM Bug #6370: IPSEC bound to WAN gateway group and Dynamic DNS doesn't to fail back tunnel to WAN on DDNS update
- I too have this issue in 2.3.2. Internet fails back to primary interface but IPsec does not always fail back to prima...
-
10:00 AM Bug #2896: IPsec failover may not fully attach to new interface address
- Im still seeing this issue in 2.3.2 and the "Force IPsec reload on failover" option under advanced ipsec settings is ...
-
09:49 AM Bug #7306: Log widget filter interface selection does not work when interface description is not the default
- PR https://github.com/pfsense/pfsense/pull/3577
This currently does not work on 2.3.3 and 2.4-BETA and I suppose i... -
09:44 AM Bug #7306 (Resolved): Log widget filter interface selection does not work when interface description is not the default
- 1) Put some rules with logging on an interface(s)
2) Change the description of those interface(s) from LAN, WAN OPT1... - 08:54 AM Revision 81b1b44a: Redmine #7301 Put dot after the word break
- Signed-off-by: Phil Davis <phil.davis@inf.org>
-
08:25 AM Bug #6318: IPsec dashboard widget causes GUI failure
- Nick Wenos wrote:
> We are also having what appears to be the same issue running on version 2.3.2 As a side affect ... -
07:23 AM Bug #3681 (Closed): Email notifications don't work with IPv6-only SMTP servers
- 07:01 AM Revision 138e79d4: Redmine #7301 Provide word-break opportunity for dynamic DNS host names
- Signed-off-by: Phil Davis <phil.davis@inf.org>
- 05:49 AM Revision d0e4f627: Fix #7300 provide default value for ipprotocol for old rules
-
05:47 AM Bug #7305: widget "squid antivirus status"
- /usr/local/share/clamav-db is NOT the path to the ClamAV DB for anything but boxes with the /var ramdisk madness. (An...
-
05:18 AM Bug #7305 (Resolved): widget "squid antivirus status"
- the widget is using the old path for clamav db "/var/db/clamav"
you must modify the file /usr/local/www/widgets/widg... -
05:17 AM Bug #5306: textarea fields should have linebreaks sanitized automatically on save
- Is there any plan to finally do something about this, or should I start filing bugs for individual pages, starting wi...
- 04:56 AM Revision da57defa: Fix #7299 and other stuff
- As far as I can see, filter_generate_user_rule() is always supposed to be called with 'ipprotocol' set to 'inet' or '...
-
04:29 AM Bug #6650: Option needed to disable HSTS
- Another thing, if the pfSense GUI is behind a reverse proxy (in my case Nginx) you can't enable HSTS on Nginx as it w...
-
03:53 AM Bug #7265 (Not a Bug): Service dpinger does not start after upgrade from 2.3.3 to 2.4.0-Beta
-
03:40 AM Feature #7304 (Resolved): DHCP: Enable OMAPI Config
- There's currently no method to configure DHCP OMAPI settings other than modifying dhcpd.conf directly.
-
03:16 AM Bug #7303 (New): ipv6 connectivity lost on pfSense reboot
- We get everything working, start up pingers to ipv4 and ipv6, then reboot pfSense. We expect all connectivity to be r...
-
01:05 AM Bug #7301: Dynamic DNS status widget formatting for medium with browser window.
- PR https://github.com/pfsense/pfsense/pull/3574
-
12:24 AM pfSense Packages Bug #7302 (Resolved): Acme AWS/Route 53 DNS Verification fails
- With the shipping package for acme the acme.sh script for DNS verification with AWS has a bug which is essentially ht...
02/22/2017
-
11:57 PM Bug #7301 (Resolved): Dynamic DNS status widget formatting for medium with browser window.
- Long host/domain names do not line wrap causing IP address to be past margin with horizontal scroll bar. Same will p...
-
11:54 PM Bug #7300: Error displaying selected ICMP types for old rules without ipprotocol
- PR https://github.com/pfsense/pfsense/pull/3573
-
11:46 PM Bug #7300 (Resolved): Error displaying selected ICMP types for old rules without ipprotocol
- 1) Upgrade from a config that has an old rule that:
a) does not have 'ipprotocol' in its config (from the days be... -
11:28 PM Bug #7290: Dynamic DNS Widget, RFC2136 entries show red even when the cached IP address is correct
- On 2.3.3
Vertical bar is being used in the cache files as the delimiter. Dnydns and widget are exploding on colon.
... -
10:59 PM Bug #7299: Error loading rules for old rule with ICMP type specified
- https://github.com/pfsense/pfsense/pull/3572 has a more general fix that should catch any other ways that rules from ...
-
10:41 PM Bug #7299: Error loading rules for old rule with ICMP type specified
- https://github.com/pfsense/pfsense/pull/3571 for minimal fix to this particular problem.
-
10:35 PM Bug #7299 (Resolved): Error loading rules for old rule with ICMP type specified
- 1) Have an old config with a rule that specifies Protocol ICMP and ICMP type "Echo Request" (for example)
The old... - 06:17 PM Revision 27d15a21: Fixed typo in $POST/$_POST
- 06:11 PM Revision e35d7d0e: Fixes #7296
- HTML tags not allowed in selector option values
(cherry picked from commit 57f4327a60c0cabf43161a6cfde98479b42a7092)... - 06:11 PM Revision 8dbde62f: Fixes #7296
- HTML tags not allowed in selector option values
(cherry picked from commit 57f4327a60c0cabf43161a6cfde98479b42a7092) -
06:07 PM Revision 88991880: Remove some unused code from diag_command.php.
- 06:06 PM Revision 57f4327a: Fixes #7296
- HTML tags not allowed in selector option values
-
05:31 PM Revision 12e3e735: Correct variable name. Fixes #7297
-
05:19 PM Bug #7265: Service dpinger does not start after upgrade from 2.3.3 to 2.4.0-Beta
- ok, I found the issue with my system and it seems to work again.
As in my previous post described, the issue had to ... -
04:10 PM Revision 49a9421d: Check that DHCP registration isn't enabled for DNS forwarder/resolver when disabling DHCP server
- (cherry picked from commit e83c9b733c86f39a14a874b115f2b8e0adc952e7)
-
04:10 PM Revision 97517b69: Only allow the DHCP registration options to be enabled when DHCP server is enabled as well
- (cherry picked from commit c6d03f09e035806dca8ac3314b41a3eaf523ab3f)
-
04:09 PM Revision 7ff16d90: Only allow the DHCP registration options to be enabled when DHCP server is enabled as well
- (cherry picked from commit 13fca9bcb3fdecfb6f9707e621b49f89569abfd7)
-
04:07 PM Revision 809022b9: Only start dhcpleases if DHCP server is enabled (Bug #6750)
- (cherry picked from commit 3d8b01e8c6392b4177572d540c8160c7e6e071ca)
-
04:07 PM Revision 7386f8a0: Merge pull request #3568 from doktornotor/patch-7
-
03:38 PM Revision 4be90da5: Merge pull request #3546 from NOYB/Vendor_MAC_Retention_Logic_/_Consolidate
- 03:08 PM Revision 680e15ba: Fix 7294 keep full rule description
- Signed-off-by: Phil Davis <phil.davis@inf.org>
- 02:43 PM Revision 17f622b6: Fixed #7203 by visually separating the legend area
- Make legen area fixed rather than AJAX data
-
01:36 PM Revision f38f83cd: vslb.inc - Add missing include, use sigkillbyname()
-
01:05 PM Bug #6318: IPsec dashboard widget causes GUI failure
- We are also having what appears to be the same issue running on version 2.3.2 As a side affect of php-fpm going down...
-
12:46 PM Bug #7298 (Closed): IPv6 on a second interface doesn't work until the router is pinged
- I'm using 6rd for IPv6 and have two LAN interfaces both of them configured to Track WAN interface and each has a uniq...
-
12:42 PM Bug #7296 (Resolved): system_certmanager.php: HTML tags in certificate description drop-down
-
12:41 PM Bug #7296: system_certmanager.php: HTML tags in certificate description drop-down
- Tested via system patches on 2.3.3-R. Looks good here.
-
12:20 PM Bug #7296: system_certmanager.php: HTML tags in certificate description drop-down
- Applied in changeset commit:8dbde62f220234c8fcfe472b97cdba606779bc22.
-
12:13 PM Bug #7296: system_certmanager.php: HTML tags in certificate description drop-down
- HTML tags are not permitted in selector option values. - Removed and replaced with braces.
-
12:10 PM Bug #7296 (Feedback): system_certmanager.php: HTML tags in certificate description drop-down
- Applied in changeset commit:57f4327a60c0cabf43161a6cfde98479b42a7092.
-
11:32 AM Bug #7296 (Confirmed): system_certmanager.php: HTML tags in certificate description drop-down
- Also affects 2.4, but see #7297 first (can't test it without the fix I just pushed for that ticket).
-
11:00 AM Bug #7296 (Resolved): system_certmanager.php: HTML tags in certificate description drop-down
- If you navigate to the Certificate Manager via the User Manager to add a certificate to a user, and select choose an ...
-
12:38 PM Revision aeaf7ad9: Use sigkillbyname() for relayd
-
11:40 AM Bug #7297 (Feedback): system_certmanager.php: Following a link from a user to add a certificate does not present the "Choose an existing certificate" option
- Applied in changeset commit:12e3e735d8e0f6f0256175ad73f07a9fd196d1e9.
-
11:30 AM Bug #7297 (Resolved): system_certmanager.php: Following a link from a user to add a certificate does not present the "Choose an existing certificate" option
- Edit an existing user and click the + to add a certificate and the browser is taken to system_certmanager.php?act=new...
-
11:35 AM Bug #7276: 2.3.3 upgrade does not upgrade
- It's broken even with snapshots. The goddamn thing reliably bombs out during post-"upgrade" reboot on
@pkg: https:... -
11:13 AM Bug #7203 (Resolved): pkg_mgr_installed.php - visually separate the legend
-
11:02 AM Bug #7203: pkg_mgr_installed.php - visually separate the legend
- Works nicely, thanks.
-
08:50 AM Bug #7203: pkg_mgr_installed.php - visually separate the legend
- Applied in changeset commit:17f622b69c9743f7091864fc9977be14ebfff733.
-
08:46 AM Bug #7203 (Feedback): pkg_mgr_installed.php - visually separate the legend
- Legend area changed to alert-info class to distinguish it from the package list
-
10:57 AM pfSense Packages Bug #7191: squid package EN-US grammar errors
- Fixed in 0.4.36
-
10:16 AM Bug #6750 (Feedback): dhcpleases shouldn't start when DHCP Relay is configured
- PR has been merged, thanks
-
09:14 AM Bug #7294: Lenght of description of firewall rules
- PR https://github.com/pfsense/pfsense/pull/3570
-
07:12 AM Bug #7294: Lenght of description of firewall rules
- That's a pf limitation. We prefix user rules with "USER_RULE: " (11 chars) then the description and the total length ...
-
07:07 AM Bug #7294: Lenght of description of firewall rules
- firewall_rules_edit.php
@strncpy($filterent['descr'], $_POST['descr'], 52);@
I wonder why it limits that to 52?
... -
06:54 AM Bug #7294 (Resolved): Lenght of description of firewall rules
- When adding or modifying a firewall rule, the description field accept more characters than are saved, so the descrip...
-
09:09 AM Feature #7181: Add Top and Add Bottom on Seperator
- While this might add some convenience, the same argument could be made for all of the action buttons, and even for mo...
-
09:03 AM Bug #7295 (Resolved): RFC2136 not updating at boot time
- Tracking pppoe interface, is not updating after IP change/reboot.
In logs, after forcing a manual update:... -
04:10 AM Bug #4674: invalid state table entries after WAN IP change
- SIP behind pfSense with changing WAN IP address is with this bug *impossible*.
I must delete every day the old states. -
02:57 AM Bug #6099: igmpproxy does not recognize upstream interface
- Joao Dinis Neves wrote:
> Do you guys know if this is fixed on version 2.3.3.
>
> Thanks.
Read the comment rig... -
02:12 AM Bug #6099: igmpproxy does not recognize upstream interface
- Do you guys know if this is fixed on version 2.3.3.
Thanks. -
02:30 AM pfSense Packages Bug #7293: dns/bind911 requires TCP_RFC7413 in kernel
- Also filed an upstream bug: https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=217288
-
02:08 AM pfSense Packages Bug #7293 (Resolved): dns/bind911 requires TCP_RFC7413 in kernel
- There's a ton of logspam when this kernel option is disabled.
https://forums.freebsd.org/threads/59348/
https://f... -
02:04 AM Bug #6481: loading EAP_RADIUS method failed
- Smallish update 2.3.2-RELEASE-p1 still suffers from the same problem.
-
01:23 AM Revision e83c9b73: Check that DHCP registration isn't enabled for DNS forwarder/resolver when disabling DHCP server
-
12:03 AM Revision c6d03f09: Only allow the DHCP registration options to be enabled when DHCP server is enabled as well
-
12:02 AM Revision 13fca9bc: Only allow the DHCP registration options to be enabled when DHCP server is enabled as well
-
12:00 AM Revision 3d8b01e8: Only start dhcpleases if DHCP server is enabled (Bug #6750)
02/21/2017
-
11:40 PM Bug #6860: Monitoring (RRD) graphs return "unknown" step value
- Needs step 1800 added: https://forum.pfsense.org/index.php?topic=117036.msg695224#msg695224
-
08:16 PM Revision 7a74d245: Add syslogd shortcuts
-
07:42 PM Revision 726b889b: Fix indentation
-
07:38 PM Revision e3f68ab9: Add syslogd to Status > Services (Feature #4382)
- Sort includes, use full path to pkill and remove openntpd while here.
-
07:13 PM Revision 8d679b24: Captive portal: fix "Disconnect All" button
- (cherry picked from commit 4fb2b17772928f39add5fc0529e94ed07a09de31)
-
07:13 PM Revision 5b102ac5: Merge pull request #3565 from plumbeo/fix-disconnect-all
-
07:10 PM Revision 17d09ce9: User Manager - Status Icon
- Use icon for status rather than textual asterisk to indicate disabled account.
(2.4, 2.3)
(cherry picked from commi... -
07:10 PM Revision aba74883: Merge pull request #3552 from NOYB/User_Manager_-_Status_Icon
-
07:09 PM Revision fe8fdf94: Merge pull request #3528 from phil-davis/system-information-widget-filter-2_3
-
07:08 PM Revision 3715f2ed: Merge pull request #3527 from phil-davis/breadcrumbs-2_3
-
06:04 PM Bug #6750: dhcpleases shouldn't start when DHCP Relay is configured
- https://github.com/pfsense/pfsense/pull/3568
-
05:17 PM Feature #5897 (Resolved): Make Alias url table persistent after reboot without internet
-
04:33 PM Feature #5897: Make Alias url table persistent after reboot without internet
- This is fixed with https://github.com/pfsense/pfsense/pull/2902 on full installs, and nanobsd is indeed dead.
Saf... -
04:56 PM Feature #7292 (New): DynamicDNS configuration does not sync to HA secondary
- If DynamicDNS is configured on the HA primary firewall, it's configuration will not be duplicated to the secondary. ...
-
03:28 PM Bug #4855 (Resolved): GroupManager stops working with LDAP after (something?), /usr/sbin/pw exiting w/error
- That does appear to be what it was. If it can still be reproduced somehow on 2.4 we can dig in more.
-
03:20 PM Bug #4855: GroupManager stops working with LDAP after (something?), /usr/sbin/pw exiting w/error
- OK, so this would seem to be caused by the space in groupname - that appears to be handled by input validation now [1...
-
02:51 PM Bug #4618 (Duplicate): IPv6 "rule expands to no valid combination" when target is IPv4 address
-
02:43 PM Bug #4618: IPv6 "rule expands to no valid combination" when target is IPv4 address
- Duplicate of #6265 and fixed with https://github.com/pfsense/pfsense/commit/776b6190d2f98825e93ddc320c3e99f24ce5b08f
-
02:37 PM Bug #4536 (Duplicate): 1:1 NAT should not allow IPv6 addresses
- Duplicate of #6927 (already resolved)
-
02:33 PM Bug #4536: 1:1 NAT should not allow IPv6 addresses
- This was fixed with https://github.com/pfsense/pfsense/pull/3299, can be closed.
-
01:43 PM Feature #4382: Add syslogd as a service under Status > Services
- https://github.com/pfsense/pfsense/pull/3567
-
01:18 PM pfSense Packages Feature #5434 (Resolved): Let's Encrypt pfSense support
-
01:10 PM pfSense Packages Feature #5434: Let's Encrypt pfSense support
- Merged, done.
-
01:03 PM Feature #3763: GUI: Packages: add 'non supported' or 'experimental' field
- Eh... Broken packages should be fixed or removed. The Status (alpha/beta/rc/stable) column is gone altogether with th...
-
12:42 PM Feature #1455: Voucher manager only user
- Seems like it's been there for a while?
WebCfg - Services: Captive Portal Voucher Rolls
WebCfg - Services: Captiv... -
12:27 PM Revision 4fb2b177: Captive portal: fix "Disconnect All" button
-
11:32 AM Bug #7291 (Resolved): save and force update on rfc 2136
- Must have been factory, that change wasn't synchronized yet. Done now, next snap will be fine. CE was already good.
-
11:31 AM Bug #7291: save and force update on rfc 2136
- Factory
-
11:30 AM Bug #7291: save and force update on rfc 2136
- Factory or CE?
-
11:29 AM Bug #7291: save and force update on rfc 2136
- 2.4.0.b.20170220.1014 Today's build
-
11:24 AM Bug #7291 (Feedback): save and force update on rfc 2136
- Are you on a current snapshot? If so, what date? This is fixed on the latest snapshot already. See commit:d54107b1b16...
-
11:16 AM Bug #7291 (Resolved): save and force update on rfc 2136
- When clicking save and force update no actions happen.
Changing arbitrary fields, click save and force update, no ... -
11:10 AM Feature #4068: CAs present on CERT manager are not trusted from pfSense
- Just submitted a pull request to resolve this issue:
https://github.com/pfsense/pfsense/pull/3558
Working now on ... -
09:13 AM Feature #6753: Interfaces list order not consistent
- Erm, people, it's already done, the sorting is back.
-
08:53 AM Feature #6753: Interfaces list order not consistent
- robi robi wrote:
> +1 for making the interfaces list sorted alphabetically by their DESCRIPTION (NAME) defined in /i... -
08:32 AM Bug #7290 (Resolved): Dynamic DNS Widget, RFC2136 entries show red even when the cached IP address is correct
- The Dynamic DNS Widget reports that RFC2136 entries are not updated (entry is red) even when the cached IP address is...
-
08:30 AM Bug #6884: "Reboot" option should be under "System" menu, not "Diagnostics"
- Here's a mock up of that do to with the orphaned "Logout" button, changing it to an "Actions" menu. https://github.co...
-
08:19 AM Revision f1981374: GitSync - Remove your personalizations
-
07:28 AM Feature #7245 (Resolved): NTP widget shows client time instead of server time
-
07:24 AM Feature #7245: NTP widget shows client time instead of server time
- Fix confirmed on real HW.... Thanks!
-
07:01 AM Bug #7238: Menu layout broken when using "Hostname in Menu" with long hostnames
- Daniel Subert wrote:
> Things to fix this (and make the menu less cluttered) could be:
> - Add an option to change/... -
06:22 AM Bug #7288: The field 'Distinguished name Organization' contains invalid characters
- Kind of duplicate. It's status has been changed to resolv and that's not a solution for this problem! (neither for th...
-
04:55 AM Bug #7288: The field 'Distinguished name Organization' contains invalid characters
- Duplicate of Bug #6432.
-
04:47 AM Bug #7288 (Needs Patch): The field 'Distinguished name Organization' contains invalid characters
- I'd like to create a certificate which "Organizational Unit" contains a german form of organisation, namely @GmbH & C...
-
06:21 AM Bug #6432: Relative distinguished names should accept unicode during CA creation.
- If you look at the associated revisions you'll see, that he only wants @A-Z, a-z, space, underscore, and dash@
Th... -
06:21 AM Bug #7276: 2.3.3 upgrade does not upgrade
- I've already did changes on pfSense-upgrade to force it to upgrade (or even downgrade) pfSense-repo package. Lets tak...
-
04:29 AM Bug #7276: 2.3.3 upgrade does not upgrade
- My workaround for that was switching to development then back to stable.
Procedure at https://forum.pfsense.org/inde... -
04:14 AM Bug #7276: 2.3.3 upgrade does not upgrade
- So now it doesn't even find the final release upgrade... and I'm not alone with that: https://forum.pfsense.org/index...
-
04:51 AM Bug #7289 (New): Generating 4096bit Certificate
- When I try to create a 4096bit Certificate a receive a @504 Gateway Timeout@. Netherless the Certificate will be gene...
02/20/2017
-
10:32 PM Bug #6223: IPsec + OpenBGPD fails with "PF_KEY socket: No buffer space available"
- I'm also seeing this issue over Ovpn site to site tunnels with static keys on 2.3.2-RELEASE-p1 (i386). The remote sit...
-
10:27 PM pfSense Packages Bug #7278: Suricata Service - Advanced Configuration Pass-Through not working
- I will make some time to check into this. I had not realized the Advanced Pass-Through code was missing in Suricata....
-
08:42 PM Feature #7287 (New): NTP add support for ACTS ref clock
- Add support for driver 18 ACTS ref clock.
PR https://github.com/pfsense/pfsense/pull/3562 -
05:58 PM Bug #7286 (Incomplete): OpenVPN client is unreliable when you have multiple tunnels
- I've installed a new pfSense router to route my (Gigabit) WAN connection. My goal was to have it setup such that it b...
- 03:57 PM Revision d54107b1: Fix "Save and Force" action
- 03:28 PM Revision 9267c6c9: Remove newline in error msg
- 03:18 PM Revision 32048df9: Spelling
- 03:16 PM Revision 85ea9d46: Fixed #7231
- This avoids the problem rather than fixing it by requiring the user to remove any queues from the if before deleting
-
01:52 PM Revision 6378ef45: Add Chinese (Taiwan) to the list of available languages
-
01:51 PM Revision b08a1871: Update translation files
-
01:49 PM Revision 11e77c98: Regenerate pot
- 01:42 PM Revision 68b21600: Merge pull request #3533 from phil-davis/fw-rules-iface-selector
-
01:18 PM Revision 1744b805: Merge pull request #3557 from jskyboo/dev
-
01:10 PM Revision c090afd2: Merge pull request #3553 from doktornotor/patch-1
-
11:45 AM Revision a6b610cb: Typo fix
-
09:20 AM Bug #7231 (Feedback): Web UI does not properly remove priq shaping rules when deleting an interface which causes subsequent rule failures without warning in the UI
- Applied in changeset commit:85ea9d468ed5ac21a207554a53d4638f4b7547c9.
-
07:50 AM Bug #7231 (Assigned): Web UI does not properly remove priq shaping rules when deleting an interface which causes subsequent rule failures without warning in the UI
- Traffic shaper queue test has been added to the validation when deleting an interface. The user must now delete any q...
-
07:54 AM Feature #4083 (Resolved): Replace GET by POST
- Marking this as resolved. Any further conversions, or the replacement of anchor tags with buttons tags can be opened ...
-
07:52 AM Bug #6958 (Resolved): services_dhcp_relay.php: Needs to be converted to more recent rowhelper standard
-
07:42 AM Bug #7254 (Feedback): Selection from long tab list that uses dropdown does not POST correctly
- Fixed via Phil D PR
-
07:39 AM Bug #7262 (Closed): pkg_edit.php - Method Form_Group::__toString() exception with rowhelperfields with a total width >10
-
07:11 AM Feature #7245 (Feedback): NTP widget shows client time instead of server time
- PR Merged
-
06:34 AM Bug #7285 (Duplicate): Wrong state with old pppoe WAN IP address (Static Port)
-
02:38 AM Bug #7285: Wrong state with old pppoe WAN IP address (Static Port)
- Duplicate of Bug #4674
-
01:25 AM Bug #7285 (Duplicate): Wrong state with old pppoe WAN IP address (Static Port)
- Firewall / NAT / Outbound -> Hybrid Outbound NAT rule generation.
Static port for Source/Destination udp/5060 interf...
02/19/2017
-
06:10 PM Revision 6e2f015a: Fix nginx certificate permissions (Bug #6862)
-
05:07 PM Bug #7277 (Resolved): Drag/Drop a LAN Rule Followed by Save Makes Unwanted Changes
-
05:01 PM Bug #7277: Drag/Drop a LAN Rule Followed by Save Makes Unwanted Changes
- Ah yes. That's much better. Thanks.
-
05:48 AM Bug #7277: Drag/Drop a LAN Rule Followed by Save Makes Unwanted Changes
- You are right. - Sorry.
Working fix has now been pushed. -
04:51 PM Revision b0837ceb: Request PD even if no interfaces are set to track6 (Bug #4544)
- See https://redmine.pfsense.org/issues/4544#note-4
-
02:11 PM Bug #1916 (Resolved): LDAP Authentication ignores user naming attribute
-
01:48 PM Bug #1916: LDAP Authentication ignores user naming attribute
- Certainly works just fine now.
-
01:30 PM Feature #7204: Router Advertisements: Option to not advertise default routes
- Sounds like another duplicate of Bug #6237
-
01:29 PM Bug #6541: IPv6 RAs always include on-link prefix; clients may not use DHCPv6 managed addresses
- Are you talking about this? Bug #6237
-
01:26 PM Feature #7284 (Resolved): NTPd Autoset GPS device baud rate
- It would be nice to have the option to attempt to auto configure the baud rate for a GPS device.
Useful if you don't... -
01:24 PM Bug #6408 (Duplicate): NTP ACL settings page can't be updated
-
01:21 PM Bug #6408: NTP ACL settings page can't be updated
- Duplicate of Bug #6454 and already fixed.
-
01:23 PM Bug #6418 (Resolved): NTP changes for system.inc
- Yeah that's been correct for a while.
Fixed by commit:daed7646d7e8e5d555676299ce660408b490ef81 from PR https://githu... -
01:15 PM Bug #6418: NTP changes for system.inc
- Jos van de Ven wrote:
> There is a bug in system.inc in generating the custom access restrictions:
>
> [...]
> T... -
01:19 PM pfSense Packages Bug #7283 (Duplicate): Update ntopng to 2.4.2017.01.20
-
01:11 PM pfSense Packages Bug #7283: Update ntopng to 2.4.2017.01.20
- Apologies - I did check, but missed it. This is a duplicate of #7247.
-
01:08 PM pfSense Packages Bug #7283 (Duplicate): Update ntopng to 2.4.2017.01.20
- Hi. There's an updated port of ntopng available - 2.4.2017.01.20_1 - see https://www.freshports.org/net/ntopng
Ple... -
01:18 PM Bug #6666 (Duplicate): IPV6 Log Spam?
-
12:58 PM Bug #6666: IPV6 Log Spam?
- Rick Strangman wrote:
> Does this mean that the DHCVP daemon is restarting every 2 seconds or is it just log file sp... -
12:58 PM Bug #7076 (Duplicate): Packets accepted by IP but rejected because "Allow IP options" is disabled are not logged
- See #4383
-
12:45 PM Bug #7076: Packets accepted by IP but rejected because "Allow IP options" is disabled are not logged
- Sorry, but this is on purpose. See https://redmine.pfsense.org/issues/4383
(Certainly a whole LOT worse the other ... -
12:56 PM Bug #6854 (Rejected): webconfig error with LDAP authenticated users for certmgr
- There isn't any reason that section would act differently. If someone manages to reproduce it, start a forum thread t...
-
12:17 PM Bug #6854: webconfig error with LDAP authenticated users for certmgr
- -1. I've been creating CAs and certs with AD "Administrator" user logged in, for years. Certainly not reproducible as...
-
12:44 PM Revision 472f121b: Allow PGRMF for Custom GPS type.
-
12:11 PM Bug #6862: mode 0444 for /var/etc/cert.crt leads to nginx crit error: 13: Permission denied
- https://github.com/pfsense/pfsense/pull/3560
-
12:07 PM Revision bd74b2ec: Fix ublox parsing.
- 11:46 AM Revision 285aa44d: Save tab value (if) in HTML
-
11:29 AM Bug #7112 (Resolved): Traffic Graphs resets graph when browser tab changes
-
11:27 AM Bug #7112: Traffic Graphs resets graph when browser tab changes
- Merged in 2.3.3 and 2.4, can be closed.
-
11:12 AM Bug #7265: Service dpinger does not start after upgrade from 2.3.3 to 2.4.0-Beta
- Sorry for my delay. I was not at home these days.
I tried restarting the service. If I try to restart the service ... -
11:07 AM Bug #7282 (Closed): ESXi 6.5 SCSI errors on 2.4
- No problems here with ESX 6.5.
Even if there were, that isn't an area we touch. Reproduce it with a stock FreeBSD ... -
10:43 AM Bug #7282 (Closed): ESXi 6.5 SCSI errors on 2.4
- Installed the 20170219044210 build on my ESXi box, using the LSI Parallel driver and a single 8GB drive, and I'm gett...
-
10:53 AM Bug #4544: PD not requested if no interfaces set to track6
- https://github.com/pfsense/pfsense/pull/3559
-
10:42 AM Feature #7251: JavaScript & CSS are cached too aggressively by browsers, add URL fingerprint or other cache control mechanism
- Works here as well. Yay, finally!
-
10:04 AM Feature #5850: Limit "WebCfg - System: User Manager page" privilege to non-admins and non-admin groups
- I guess the system could limit a user1 with "WebCfg - System: User Manager page" privileges to be only able to grant ...
-
07:50 AM Feature #7281 (New): OpenVPN: Add support for IPv6 dynamic prefix selection
- When WAN is obtaining an IPv6 prefix that allows multiple prefix IDs (i.e. smaller than /64), allow selection of an I...
-
12:45 AM Revision 77408e61: Fix net.inet.ip.random_id tunable description (Bug #6087)
02/18/2017
- 10:24 PM Revision 7c40255c: Fixed #7277
-
10:21 PM Bug #7277: Drag/Drop a LAN Rule Followed by Save Makes Unwanted Changes
- Not fixed.
Not sure how $pconfig = $_POST would be expected to fix this. $pconfig is not used anywhere in firewal... -
04:30 PM Bug #7277: Drag/Drop a LAN Rule Followed by Save Makes Unwanted Changes
- Applied in changeset commit:7c40255c3a101e848580b22482d90022683b1c60.
-
04:25 PM Bug #7277 (Feedback): Drag/Drop a LAN Rule Followed by Save Makes Unwanted Changes
- Fixed.
Thanks for reporting. -
03:55 PM Bug #7277 (Resolved): Drag/Drop a LAN Rule Followed by Save Makes Unwanted Changes
- Dragging and dropping a rule on the LAN tab to change order followed by a Save results in rules being duplicated on L...
-
09:50 PM Revision c4a6015b: Disallow IPv6 for RADIUS server.
- See https://redmine.pfsense.org/issues/4154. No need for users to waste their time with debugging packets black hole.
-
08:11 PM pfSense Packages Bug #7278: Suricata Service - Advanced Configuration Pass-Through not working
- Well the above should give you a hint on what to add where. LOL. :-P
This package is actively maintained by https:... -
07:48 PM pfSense Packages Bug #7278: Suricata Service - Advanced Configuration Pass-Through not working
- LMFAO~!
Is there a workaround you can suggest?
Thanks for the update!
-
07:21 PM pfSense Packages Bug #7278: Suricata Service - Advanced Configuration Pass-Through not working
- OK... So, this is the code that's handling that in Snort:
https://github.com/pfsense/FreeBSD-ports/blob/devel/secur... -
06:11 PM pfSense Packages Bug #7278: Suricata Service - Advanced Configuration Pass-Through not working
- > This is just ... mess.
Interesting wording, that's what I thought of the feature.
Description
* Issue: A... -
05:07 PM pfSense Packages Bug #7278: Suricata Service - Advanced Configuration Pass-Through not working
- Please, use the @pre@ button to post code/command output. This is just unreadable mess.
-
04:52 PM pfSense Packages Bug #7278 (Resolved): Suricata Service - Advanced Configuration Pass-Through not working
- * Issue: *Advanced Configuration Pass-Through not working* under pfSense > Services > Suricata > Edit Interface Setti...
-
07:30 PM Bug #7280 (Not a Bug): pfSense-CE-2.4.0 20170218 fails to boot in ESXi 6.5 host.
-
06:54 PM Bug #7280: pfSense-CE-2.4.0 20170218 fails to boot in ESXi 6.5 host.
- Figured it out. It goes into a reboot loop if you set the boot option to boot from EFI instead of BIOS. The looping e...
-
06:44 PM Bug #7280 (Not a Bug): pfSense-CE-2.4.0 20170218 fails to boot in ESXi 6.5 host.
- I just downloaded the latest nightly, pfSense-CE-2.4.0-BETA-amd64-20170218-1625.iso.gz, but attempting to install it ...
-
06:29 PM Bug #7279 (Duplicate): VLAN Trash Icon not working - Cannot delete VLAN entry
- Duplicate of #7270
-
06:27 PM Bug #7279 (Duplicate): VLAN Trash Icon not working - Cannot delete VLAN entry
- Hi,
Upon creating a test VLAN via Interfaces -> Assignments -> VLAN -> Add
I cannot remove the VLAN. I have inspe... -
05:13 PM Feature #5850: Limit "WebCfg - System: User Manager page" privilege to non-admins and non-admin groups
- Timon Esser wrote:
> privilege to manage only non-admins and certain groups.
That wouldn't make any sense as ther... -
05:08 PM Feature #5813: Replacement of layer7 filter
- Perhaps use Snort and OpenAppID.
-
05:03 PM Bug #5539 (Resolved): rc.firmware - cut does not cut it...
-
04:57 PM Bug #5539: rc.firmware - cut does not cut it...
- /etc/rc.firmware and all the related code is gone from 2.4. Irrelevant bug.
-
04:39 PM Feature #5083: Allow bridge members to be hidden from menu
- Duplicate of Feature #2386 (and yeah, it's extremely annoying.)
-
04:26 PM Bug #1629: invalid state table entries after WAN IP change
- Luke Hamburg wrote:
> it's been removed?? Can anyone confirm?
No, not removed. Adding a relevant PR link:
htt... -
04:23 PM Bug #4674: invalid state table entries after WAN IP change
- Can someone look into this? Sounds to me like the ordering here is indeed just wrong.
-
04:12 PM Feature #4399: Expose more of the DNSSEC-related hardening options in the GUI
- Unless someone wants to these to the GUI, this can be closed.
-
04:03 PM Bug #4218: Bridge does not have AUTO_LINKLOCAL flag
- Can someone fix the misleading subject? If does have link-local IPv6 just fine here, what's missing is the AUTO_LINKL...
-
03:51 PM Feature #4154: Support for RADIUS authentication over IPv6
- After wasting my time once again with hitting the same issue and seeing the total ignorance of the issue by PHP devs,...
-
03:45 PM Feature #7259 (Duplicate): Automatic Rollback of Unsucessful changes
-
03:21 PM Feature #7259: Automatic Rollback of Unsucessful changes
- Duplicate of Feature #3895
-
03:45 PM Feature #3393 (Resolved): AS filtering support in aliases
-
03:11 PM Feature #3393: AS filtering support in aliases
- Creating aliases using AS numbers is available in pfBlockerNG.
-
03:44 PM Bug #3210 (Rejected): Upgrade to 2.1 fails: Something went wrong when trying to update the fstab entry
-
03:07 PM Bug #3210: Upgrade to 2.1 fails: Something went wrong when trying to update the fstab entry
- Irrelevant bug, close please.
-
03:44 PM Feature #7242 (Duplicate): SSL Include CA Certs
-
03:34 PM Feature #7242: SSL Include CA Certs
- Yeah, it's indeed a duplicate of Bug #4068 which at least describes the issue in a comprehensible way.
-
03:43 PM Bug #3139 (Closed): pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
-
03:05 PM Bug #3139: pkg-utils function stop_packages causes Syntax error bad fd number with more than one script file.
- Fixed with https://redmine.pfsense.org/projects/pfsense/repository/revisions/6186cdc4be779b37df38e875c76faa5f6d671baa...
-
02:56 PM Feature #2869 (Resolved): LDAP user authentication backend doesn't support membership lookups by querying the group
- Yeah that's been in place for some time now
-
02:55 PM Feature #2869: LDAP user authentication backend doesn't support membership lookups by querying the group
- Not exactly sure what's missing here:
!https://i.imgsafe.org/8b4756c868.png!
-
02:51 PM Feature #2743 (Resolved): Add external interface selector to UPnP Settings
-
02:47 PM Feature #2743: Add external interface selector to UPnP Settings
- Already done for quite some time. Close, please.
-
02:50 PM Feature #2687 (Resolved): Allow GIF interfaces to work with IP aliases
-
02:43 PM Feature #2687: Allow GIF interfaces to work with IP aliases
- GIF can use IP aliases just fine with 2.3+.
-
02:49 PM Feature #2580 (Closed): Include AICCU
-
02:38 PM Feature #2580: Include AICCU
- Can be just safely closed. No new sign-ups with SixXS since 2016.
https://www.sixxs.net/signup/
https://www.sixxs... -
02:32 PM Bug #2247 (Resolved): Misleading security permission
-
02:23 PM Bug #2247: Misleading security permission
- Merged, can be closed.
-
09:25 AM Feature #7275: Add help text for DNS Made Easy
- Mentioning the Pull Request is good enough. I usually paste the whole link to it, like this:
https://github.com/pfse... -
07:52 AM Bug #7276: 2.3.3 upgrade does not upgrade
- After *Round 5* (same output as Round 4 and another reboot later), the next generation thing by some huge miracle act...
-
07:01 AM Bug #7276: 2.3.3 upgrade does not upgrade
- *Third round of pkg idiocy*, now pkg getting more schizo, first wants to reinstall itself, then changes its mind, fir...
-
04:20 AM Bug #7276 (Resolved): 2.3.3 upgrade does not upgrade
- Really starting to lose my patience with pkg. :-X...
- 03:25 AM Revision ff45928a: Added help descriptions for DNSMadeEasy
-
02:00 AM Revision 0b22f1cd: Fix NTP widget to show server time (Issue #7245)
- This is a couple of seconds late depending on how much stuff people have on dashboard, but at least displays the serv...
02/17/2017
-
11:19 PM Bug #7166 (Resolved): During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- Fixed.
-
11:11 PM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- Thank you again Constantine!
I'll upstream this fix. -
05:39 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- I updated 4860 on last firmware and made tests. And I got very good result.
There is not problem with performance an... -
11:19 PM Bug #7149 (Resolved): igb driver queue related crashes
- Fixed.
-
11:16 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
- Please, check #7176 too (probably related)
-
11:57 AM Bug #7272 (Resolved): 6rd not functioning on 2.4.0-BETA
- Currently running on a SG-1000:
2.4.0-BETA (arm)
built on Thu Feb 16 08:46:33 CST 2017
FreeBSD 11.0-RELEASE-p7
... -
10:59 PM Bug #7167: Error creating higher VLAN ID on SG-1000
- Constantine, I cannot reproduce these issues.
I can use VLANs on LAN interface (but need to add the default pass r... -
09:30 PM Feature #7275: Add help text for DNS Made Easy
- I guess I'm not sure what I should do next - do I need to link this to Github pull request 3554 somehow, and/or mark ...
-
09:28 PM Feature #7275: Add help text for DNS Made Easy
- I didn't know if I should directly make a pull request to master, and quite frankly, I'm not all that familiar with g...
-
08:41 PM Feature #7275: Add help text for DNS Made Easy
- @Jeremy, since you know exactly what data should go in the fields, it will be easy if you go to:
https://github.com/... -
08:29 PM Feature #7275 (Resolved): Add help text for DNS Made Easy
- src/usr/local/www/services_dyndns_edit.php
domainname field: Add "DNS Made Easy: Dynamic DNS ID (NOT hostname)"
u... - 09:18 PM Revision 64d53c69: Fixed #7274
-
08:01 PM Feature #7245: NTP widget shows client time instead of server time
- https://github.com/pfsense/pfsense/pull/3553
-
07:56 PM Revision edd88334: User Manager - Status Icon
- Use icon for status rather than textual asterisk to indicate disabled account.
(2.4, 2.3) -
06:25 PM Revision 3057a2ba: Fix handling of 0 for Backup Count. Fixes #7273
-
05:48 PM Revision 4e2d287c: Regenerate pot
-
05:39 PM Revision f30c7697: Update translation files
-
03:23 PM Bug #7274 (Resolved): status_ipsec.php: connect/ikedisconnect/childdisconnect actions still use GET, not POST
- Looks good to me, everything is using POST now
-
03:20 PM Bug #7274 (Feedback): status_ipsec.php: connect/ikedisconnect/childdisconnect actions still use GET, not POST
- Applied in changeset commit:64d53c6939c0e81cc0e53631006a1b2fc4af4b0a.
-
01:52 PM Bug #7274 (Resolved): status_ipsec.php: connect/ikedisconnect/childdisconnect actions still use GET, not POST
- On status_ipsec.php the buttons for connect, ikedisconnect, and childdisconnect actions still use GET, not POST. Addi...
-
01:01 PM Bug #6662 (Resolved): pkg_edit.php checkbox alignment issue when using the sethelp xml tag
-
12:54 PM Bug #6662: pkg_edit.php checkbox alignment issue when using the sethelp xml tag
- Long fixed, close please.
-
12:30 PM Bug #7273 (Feedback): diag_confbak.php: If a user enters 0 for the number of backups to keep, PHP errors occur
- Applied in changeset commit:3057a2ba467c5a4bcda3a004f876a43758d6e129.
-
12:18 PM Bug #7273 (Resolved): diag_confbak.php: If a user enters 0 for the number of backups to keep, PHP errors occur
- On diag_confbak.php the Backup Count text says to use "0" to keep no backups. The form type is 'number' which prevent...
- 11:55 AM Revision 4a03ae0a: Fixed #7270
-
07:04 AM pfSense Packages Bug #7271: Co-existence of unbound and BIND/named
- Agreed. Move the BIND port instead.
-
07:01 AM pfSense Packages Bug #7271: Co-existence of unbound and BIND/named
- Yeah, I'd definitely rather move the BIND control port than mess with default ports for a default pfSense resolver th...
-
05:39 AM pfSense Packages Bug #7271 (Resolved): Co-existence of unbound and BIND/named
- Problem: both packages (want to) use same port 953 on 127.0.0.1 for (remote) control. If BIND is installed and enable...
-
06:47 AM Bug #7270 (Resolved): interfaces_vlan.php: Can't delete VLAN
-
06:15 AM Bug #7270: interfaces_vlan.php: Can't delete VLAN
- thank you
-
06:00 AM Bug #7270: interfaces_vlan.php: Can't delete VLAN
- Applied in changeset commit:4a03ae0a97a58e8526765f8de500edd5ddf7b5a0.
-
05:55 AM Bug #7270 (Feedback): interfaces_vlan.php: Can't delete VLAN
- Fixed.
-
04:50 AM Bug #7270 (Resolved): interfaces_vlan.php: Can't delete VLAN
- "Delete VLAN" button do nothing
-
02:53 AM Bug #7269: syslogd stops logging
- With all log files empty, I get an segfault when running syslogd:...
-
02:50 AM Bug #7269 (Not a Bug): syslogd stops logging
- I am trying to debug #7264 and have the problem that the log files don't recieve any update from syslogd. The last by...
-
02:51 AM Bug #7266: SNMP does not listen on IPv6 interface
- Sorry. I totaly misread your sentence. -I'll close this- as it will be fixed in 2.4 and is not capable in 2.3 [edit] ...
-
02:35 AM Bug #7268: System Info Widget "All" button does not work with "Disable the automatic dashboard auto-update check"
- Note: "Disable the automatic dashboard auto-update check" is often selected on nanoBSD installs, so nanoBSD users mig...
-
02:32 AM Bug #7268 (Resolved): System Info Widget "All" button does not work with "Disable the automatic dashboard auto-update check"
- 1) In System, Update, Settings, select "Disable the automatic dashboard auto-update check"
2) On the dashboard, clic... -
02:15 AM pfSense Packages Bug #4731: softflowd process gets started twice during bootup
- @restart_service_if_running()@ is a completely useless function as designed. The issue is fixed in https://github.com...
-
12:22 AM Bug #7176: IPv6 Monitor IP does not seem to propagate
- The bind address appears to be invalid.
02/16/2017
-
08:27 PM Bug #7176: IPv6 Monitor IP does not seem to propagate
Got to play a little today- This is the error in the log when restarting dpinger.
Feb 16 18:23:01 php-fpm 7...-
06:15 PM Bug #7265: Service dpinger does not start after upgrade from 2.3.3 to 2.4.0-Beta
- The log entry doesn't make any sense to me. Please go to Status / Services and restart the dpinger daemon. Then post ...
-
01:53 PM Bug #7265: Service dpinger does not start after upgrade from 2.3.3 to 2.4.0-Beta
- If I look at Status -> System logs -> gateways I only see the following message:...
-
04:54 PM pfSense Packages Bug #7267 (Resolved): Status Traffic Totals - Stacked Bar - Scale not high enough
- On the Status / Traffic Totals, if you use Bar (Stacked) type, the vertical axis scale is only high enough for the TX...
-
10:47 AM Bug #6099: igmpproxy does not recognize upstream interface
- It seems to be fixed only on devel branch (2.4 only): https://github.com/pfsense/FreeBSD-ports/commits/devel/net/igmp...
- 10:07 AM Revision a597e44f: System Info Widget enable All button when disable firmware check is set
- If system firmware disablecheck is set, then the click event for the filter "All" button is also not included in the ...
-
09:17 AM Bug #7264: Multi-WAN with same Gateways: Gateway Monitor causes strange problems
- This setup worked for a quite long time. I went back to disable Gateway Monitor over all, but the problems still occu...
-
07:11 AM Bug #7262: pkg_edit.php - Method Form_Group::__toString() exception with rowhelperfields with a total width >10
- Steve Beaver wrote:
> The disadvantage is that you have to live within the grid. You can have a maximum of 12 column... -
06:58 AM Bug #7266: SNMP does not listen on IPv6 interface
- The SNMP daemon built into pfSense is bsnmpd, which is not capable of using IPv6 right now.
On 2.4 we have an addi... -
06:47 AM Bug #7266: SNMP does not listen on IPv6 interface
- Are we talking about the same net-snmp package? (http://net-snmp.sourceforge.net/)
"SNMP is a suite of application... -
06:34 AM Bug #7266 (Rejected): SNMP does not listen on IPv6 interface
- It isn't capable.
The net-snmp package, available on pfSense 2.4, does support IPv6 SNMP. -
02:46 AM Bug #7266 (Rejected): SNMP does not listen on IPv6 interface
- $ sockstat -4 -l | grep 161
root bsnmpd 13792 6 udp4 192.168.0.1:161 *:*
$ sockstat -6-l | grep ... -
05:33 AM pfSense Packages Bug #7263: FreeRADIUS - complete lack of input validation
- Hopefully all done.
@Phil: You like to break this kind of things, in case you are bored. :P - 05:14 AM Revision df4c21fc: Update services_dyndns_edit.php
- 05:12 AM Revision 74533d41: Update dyndns.class
- 05:06 AM Revision 1bfa0695: Update services.inc
02/15/2017
-
11:52 PM Revision 12516aad: Vendor MAC Retention File Consolidate
- Use a single file for vendor MAC retention (vendor_mac).
a) Writes only one file during boot up rather than a file f... -
11:52 PM Revision 5fbc719b: Vendor MAC Retention File Relocate
- Relocate the vendor MAC retention file to /var/db directory.
a) It's more at home here with other network interface ... -
11:52 PM Revision 537a2bb0: Vendor MAC Restore Logic
- Only use the vendor MAC retention file for restoring the vendor MAC when not booting.
a) During boot up the current ... -
11:52 PM Revision 2c20f47f: Spoof MAC Var Name
- Rename 'spoof_mac' var to generic 'mac_addr'.
a) It may be the vendor MAC or a spoofed MAC.
b) Update the comment r... -
11:40 PM Bug #7265: Service dpinger does not start after upgrade from 2.3.3 to 2.4.0-Beta
- Is there anything in the system log for dpinger?
-
05:03 PM Bug #7265 (Assigned): Service dpinger does not start after upgrade from 2.3.3 to 2.4.0-Beta
-
03:13 PM Bug #7265 (Not a Bug): Service dpinger does not start after upgrade from 2.3.3 to 2.4.0-Beta
- From the day I upgraded my system to version 2.4.x dpinger did not start anymore and in the list of gateway I only se...
-
08:40 PM Bug #6099: igmpproxy does not recognize upstream interface
- I must be extremely dense. Why's this marked as resolved?! Where's a working version available?
-
09:18 AM Bug #6099: igmpproxy does not recognize upstream interface
- Hello,
Okay guys I recognize that one of my latest patches has messed up the behavior earlier. The version that lo... -
07:30 PM Revision f25c08c9: Check for correct directory
-
07:27 PM Revision d36788b7: Check for correct directory
-
07:27 PM Revision 2c1d42bf: Check for correct directory
-
06:40 PM Revision d50e8445: Fix editing sysctl values.
- 05:53 PM Revision 09ba8bb7: Fixed: #7251
- Force JS and CSS files to reload if hte file mtimes change
-
05:04 PM Bug #7138 (Assigned): Pfsense wide dhcpv6 client doesn't recognise ifid statement
-
05:04 PM Bug #7254 (Assigned): Selection from long tab list that uses dropdown does not POST correctly
-
05:03 PM Bug #6677 (Assigned): CARP VIPs are configured on disabled interfaces at boot time
-
04:24 PM Revision a86246fb: Add missing space
-
04:24 PM Revision dc2a4fd2: Add missing space
-
02:06 PM Revision aa5f397a: Lead users with Stable repo set to 2.3.3-RELEASE
-
02:05 PM Revision e6d09b74: Welcome 2.3.3-RELEASE
-
02:04 PM Revision 869486a0: Revert "Use devel pkg server while in RC"
- Time to RELEASE
This reverts commit 2722f4c257ddd532ad31a4851c4580b3bd667482. -
01:28 PM Feature #4083 (Feedback): Replace GET by POST
- All delete, toggle,disable and similar actions have been converted to POST via Javascript
There are two exceptions... -
01:08 PM Feature #7251 (Resolved): JavaScript & CSS are cached too aggressively by browsers, add URL fingerprint or other cache control mechanism
- Seems to work fine. I upgraded a VM that was on a snapshot from before all of the GET/POST conversion and when upgrad...
-
12:00 PM Feature #7251: JavaScript & CSS are cached too aggressively by browsers, add URL fingerprint or other cache control mechanism
- Applied in changeset commit:09ba8bb752171fe02c67c7983bc8ceeab63f804c.
-
11:55 AM Feature #7251 (Feedback): JavaScript & CSS are cached too aggressively by browsers, add URL fingerprint or other cache control mechanism
-
11:54 AM Feature #7251: JavaScript & CSS are cached too aggressively by browsers, add URL fingerprint or other cache control mechanism
- The above solution seems to work as expected. I have added it to head.inc and foot.inc
-
10:55 AM Revision e3b1ebd2: Make sure OVA_TMP is umounted before start using it
-
10:55 AM Revision bcb6177f: Make sure OVA_TMP is umounted before start using it
-
10:55 AM Revision ca0f9142: Make sure OVA_TMP is umounted before start using it
-
10:20 AM Revision 76dfb0be: Do not try to set old options that were already removed from upstream
-
10:19 AM Revision 5b614dd4: Unset EASYRSA on openvpn23
-
10:19 AM Revision c7408e44: Unset EASYRSA on openvpn23
-
10:19 AM Revision 6eba6abd: Do not try to set old options that were already removed from upstream
-
10:19 AM Revision 5b28306e: Do not try to set old options that were already removed from upstream
-
10:04 AM Bug #7262: pkg_edit.php - Method Form_Group::__toString() exception with rowhelperfields with a total width >10
- Well - pfSense uses the Twitter Bootstrap framework for its GUI. That framework uses a grid system with 12 columns an...
-
02:58 AM Bug #7262 (Closed): pkg_edit.php - Method Form_Group::__toString() exception with rowhelperfields with a total width >10
- To reproduce:
- take e.g. this file - https://github.com/pfsense/FreeBSD-ports/blob/devel/net/pfSense-pkg-freeradius... -
09:47 AM pfSense Packages Bug #7263: FreeRADIUS - complete lack of input validation
- https://github.com/pfsense/FreeBSD-ports/pull/308
(Work in progress ATM.) -
04:45 AM pfSense Packages Bug #7263: FreeRADIUS - complete lack of input validation
- Well, it's not called "free" RADIUS for nothing - validation-free at least.
-
03:20 AM pfSense Packages Bug #7263 (Resolved): FreeRADIUS - complete lack of input validation
- No input validation whatsoever done anywhere. Nothing, zilch, nada...
-
08:10 AM Bug #6836: Wrong queue length on "/status_queues.php" page under heavy traffic
- I'm experiencing the same issue. Is this being tracked somewhere? My search has come up empty so far.
-
06:40 AM Bug #7264 (Not a Bug): Multi-WAN with same Gateways: Gateway Monitor causes strange problems
- Using more than one WAN with the same gateway has never been a supported configuration. You can't have two interfaces...
-
04:40 AM Bug #7264 (Not a Bug): Multi-WAN with same Gateways: Gateway Monitor causes strange problems
- Here is the setup:
Two cable modems from the same provider, one is used for VPN connections, the other one for all... -
05:10 AM Bug #7252 (Resolved): OpenVPN widget, connect time of roadwariors shows a number
- Looks good with OpenVPN 2.3 being back
-
04:34 AM Feature #3474: Openvpn client-specific-overrides ip conflicts
- If we declare ifconfig-pool in custom options, the server doesn't work because of the "server" directive.
We would... -
03:34 AM Bug #7253: LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- Yep, usable again. Thanks.
-
03:27 AM Bug #7253 (Resolved): LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- Seems OK after revert
02/14/2017
- 09:31 PM Revision 8d58ebae: GET/POST conversion
- 09:16 PM Revision 33ebc875: Fix Apply action
- 09:14 PM Revision 7411a41d: Fix Apply action
- 09:06 PM Revision cbb82e6b: GET/POST conversions
-
08:51 PM pfSense Packages Bug #6404 (Resolved): FreeRADIUS Does Not Start After Upgrade
-
06:59 PM pfSense Packages Bug #6404: FreeRADIUS Does Not Start After Upgrade
- Merged and working, can be closed.
- 08:33 PM Revision 9f2bbdb4: GET/POST conversion
- 07:42 PM Revision 13541a81: GET/POST conversions
- 06:11 PM Revision c946d721: GET/POST conversion - services part 1
-
06:00 PM Revision abdb3547: Update translation files
-
05:42 PM Revision 4f5e3278: Regenerate pot
-
05:26 PM Revision 7b85c9ae: fix colspan background on dark theme
- 05:25 PM Revision 8a90abc5: Add "required field" highlighting
-
05:23 PM Revision 1f3a58e7: fix colspan background on dark theme
- 05:21 PM Revision 44f59761: Add "required field" highlighting
-
05:14 PM Revision 17694a10: fix colspan background on dark theme
-
04:53 PM Bug #7261 (Rejected): pfSense serial console appears unresponsive
- Jani,
This is a bug reporter for pfSense in general and it doesn't sound like you have a bug but perhaps an issue ... -
04:38 PM Bug #7261 (Rejected): pfSense serial console appears unresponsive
- Hello!
I'd like to report a problem with a brand new pfSense SG-4860 with factory installed firmware:
2.3.2-R... -
02:44 PM pfSense Packages Bug #6928 (Resolved): freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
-
02:38 PM pfSense Packages Bug #6928: freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
- Merged and working, can be closed.
-
02:44 PM pfSense Packages Bug #6547 (Resolved): syslog-ng log browser only shows the first few lines
-
02:37 PM pfSense Packages Bug #6547: syslog-ng log browser only shows the first few lines
- Works, can be closed.
-
02:28 PM Bug #7257 (Resolved): Use pfSense-upgrade to check if there is a new firmware upgrade
- It works
-
02:25 PM Feature #6374 (Resolved): Provide sample server-side logic to report peer's IP address for use with DDNS
- What's in the GUI is fine for the purpose it serves. No need to get that complicated for an example.
-
11:59 AM Feature #7260 (New): Source OS / p0f Database Missing Modern Operating Systems
- Latest FreeBSD: 5.2
Latest Windows: Vista
Latest MacOS: 9.2
No Android, Mac OS X, iOS, macOS, etc. - 11:25 AM Revision d2e001aa: Only save valid widget locations in config
- Some widgets create extra panels, e.g. the widgets that now have the filter functionality. Those panels are processed...
- 11:24 AM Revision 65bd77d4: Only save valid widget locations in config
- Some widgets create extra panels, e.g. the widgets that now have the filter functionality. Those panels are processed...
-
11:24 AM Revision 40bb19b3: Merge pull request #3545 from phil-davis/patch-6
- 11:22 AM Revision 5952db66: Allow 5 dashboard columns to work
- Selecting 1,2,3,4 or 6 dashboards columns results in an exact integer result here and all is good. But 5 columns resu...
- 11:22 AM Revision 63c0e334: Allow 5 dashboard columns to work
- Selecting 1,2,3,4 or 6 dashboards columns results in an exact integer result here and all is good. But 5 columns resu...
-
11:22 AM Revision 744f5734: Merge pull request #3544 from phil-davis/patch-5
-
10:42 AM Revision 3b07c2b7: Remove $MNT after use
-
10:42 AM Revision cc423d0f: Make sure $MNT is umounted
-
10:42 AM Revision 5371504f: Remove $MNT after use
-
10:41 AM Revision 047620e4: Make sure $MNT is umounted
-
10:37 AM Revision ddd7e7e9: Fix typo in variable name
-
10:37 AM Revision 2f9a3583: Remove schg flag from directories before try to rm them
-
10:36 AM Revision d5b5fd07: Fix typo in variable name
-
10:36 AM Revision 22ab3cb2: Remove schg flag from directories before try to rm them
-
10:27 AM Revision f07da0aa: Fix #7257: Use pfSense-upgrade to look for new versions
-
10:26 AM Revision d7a437ce: Fix #7257: Use pfSense-upgrade to look for new versions
-
10:26 AM Revision ee836314: Fix #7257: Use pfSense-upgrade to look for new versions
- 09:57 AM Revision 621dd536: Only save valid widget locations in config
- Some widgets create extra panels, e.g. the widgets that now have the filter functionality. Those panels are processed...
-
08:09 AM Bug #7243: Openvpn route only first network in IPv4 Remote network(s) to local net
- The Internet service provider used by the many subnets are the same as in my company's offices, so solution adding ru...
-
07:15 AM Bug #7243 (Not a Bug): Openvpn route only first network in IPv4 Remote network(s) to local net
- Please post details on a forum thread for discussion. This appears to be a configuration issue, not a bug.
-
06:52 AM Bug #7243: Openvpn route only first network in IPv4 Remote network(s) to local net
- if server openvpn IPv4 Remote network(s) set to 192.168.0.0/16 оnly after this, routing works on local net to 192.168...
- 07:44 AM Revision d86cff7f: Allow 5 dashboard columns to work
- Selecting 1,2,3,4 or 6 dashboards columns results in an exact integer result here and all is good. But 5 columns resu...
-
05:28 AM Feature #7011: Retain vendor MAC address at power up
- Prefer they be stored in /var/db directory along with some of the other network stuff. Also friendlier for write cyc...
-
05:06 AM Bug #6650: Option needed to disable HSTS
- NOYB NOYB wrote:
> What is so difficult about clearing browser cookies?
Nothing except that it's completely usele... -
04:54 AM Bug #6650: Option needed to disable HSTS
- Kill Bill wrote:
> Most importantly, it makes switching back to HTTP pretty much impossible without stupid browser-s... -
04:45 AM Bug #7249: firewall_rules.php & firewall_nat.php: Replaces underscores with spaces in aliase names
- So what is the actual issue that replacing the underscore with space in the displaying of the rules creates? Is ther...
- 02:28 AM Revision 6a951c86: Merge pull request #3543 from phil-davis/patch-5
- 02:26 AM Revision eb6984fd: Comment typos head.inc
02/13/2017
- 10:46 PM Revision 24fc15e6: Fixed DIVIDER issue caused by the addition of msorts to the menu
- 09:23 PM Revision 1a8b6554: GET/POST conversion for status*
- 08:30 PM Revision 7f4268b6: Revisions to GET/POST conversion limiting POSTs to save, apply, and delete functions - Diagnostics
- 07:29 PM Revision 84147b7b: Revisions to GET/POST conversion limiting POSTs to save, apply, and delete functions - Firewall
-
07:21 PM Bug #6687: Secure email fails with private CA
- The root issue appears to be #4068.
-
07:03 PM Bug #6687: Secure email fails with private CA
- I am interested in implementing a related feature that allows a "private CA" to be installed as a trusted root that i...
-
07:19 PM Feature #7242: SSL Include CA Certs
- This is a duplicate of #4068. I am considering addressing this issue, as it affects our operations using pfSense on a...
- 06:12 PM Revision 4401107f: Revisions to GET/POST conversion limiting POSTs to save, apply, and delete functions - Interfaces
-
05:39 PM Revision 42362856: Fix saving Hybrid RSA + Xauth. Fixes #7258
-
05:38 PM Revision 4289b4c1: Fix saving Hybrid RSA + Xauth. Fixes #7258
-
05:38 PM Revision eb5bc42b: Fix saving Hybrid RSA + Xauth. Fixes #7258
- 05:31 PM Revision 1355f71c: Accommodate locales by testing for $_POST['va'] only
- 05:29 PM Revision eeb68412: Revisions to GET/POST conversion limiting POSTs to save, apply, and delete functions - VPN
-
03:58 PM Revision 80c01e06: Revert "Add privs to control display of notices"
- Fix #7051
This reverts commit 04665e78537906f7375668ca665cba17f95a4864. -
03:58 PM Revision 8b5cf433: Revert "Add privs to control display of notices"
- Fix #7051
This reverts commit 04665e78537906f7375668ca665cba17f95a4864. -
03:56 PM Bug #6711 (Resolved): diag_states_summary # States and # States twice (explain one is per protocol)
-
10:14 AM Bug #6711 (Assigned): diag_states_summary # States and # States twice (explain one is per protocol)
- 03:48 PM Revision 4611e283: Revisions to GET/POST conversion limiting POSTs to save, apply, and delete functions
-
03:38 PM Bug #7168: Vague kernel messages in system log
- Phillip Davis wrote:
> The 'done' and the dots are output by steps of the boot script as it gets to various points i... -
09:15 AM Bug #7168: Vague kernel messages in system log
- The 'done' and the dots are output by steps of the boot script as it gets to various points in the code. That comes o...
-
07:43 AM Bug #7168: Vague kernel messages in system log
- Noticed the same thing - have not seen them before. Running 2.4 snap 2.4.0.b.20170213.0512...
-
03:29 PM Bug #7257 (Feedback): Use pfSense-upgrade to check if there is a new firmware upgrade
- pfSense-upgrade 0.15 should fix it
-
11:04 AM Bug #7257 (Resolved): Use pfSense-upgrade to check if there is a new firmware upgrade
- Today GUI is using it's own logic to detect when a new pfSense version is available. pfSense-upgrade offers this opti...
-
01:30 PM Feature #7259 (Duplicate): Automatic Rollback of Unsucessful changes
- One Critical feature that most professional Routers have that PfSense does not is a "do this, but roll it back if you...
-
11:48 AM Bug #7258 (Resolved): vpn_ipsec_phase1.php: Unable to save Mobile IPsec Phase 1 set for Hybrid RSA + Xauth
- Works
-
11:40 AM Bug #7258 (Feedback): vpn_ipsec_phase1.php: Unable to save Mobile IPsec Phase 1 set for Hybrid RSA + Xauth
- Applied in changeset commit:eb5bc42b04ead009b2e09f3ed002eecded240864.
-
11:19 AM Bug #7258 (Resolved): vpn_ipsec_phase1.php: Unable to save Mobile IPsec Phase 1 set for Hybrid RSA + Xauth
- On vpn_ipsec_phase1.php, when editing a Mobile Phase 1 a user cannot save the settings when Authentication Method is ...
-
11:25 AM Revision 926a7f5c: Revert "Use cached groups in get_user_privileges"
- This reverts commit c7c79905d3e0fd01172d373a15a1d0d77a5728e8.
-
11:25 AM Revision 990c00c4: Revert "Use cached groups in get_user_privileges"
- This reverts commit 855826896509a1a0bec77a51535a8f004b4ca570.
-
11:21 AM Revision ac4fe723: Merge pull request #3541 from phil-davis/getAllowedPages-format
- 11:19 AM Revision c7c79905: Use cached groups in get_user_privileges
- (cherry picked from commit 7abc3f992e5dd5bff53495844ce944163d6d1d9b)
- 11:19 AM Revision 85582689: Use cached groups in get_user_privileges
- (cherry picked from commit 7abc3f992e5dd5bff53495844ce944163d6d1d9b)
-
11:19 AM Revision fc4b59f8: Merge pull request #3540 from phil-davis/get_user_privileges-cache
- 11:16 AM Revision 42a2f7da: Fix ldap_get_groups return value when down
- In some places ldap_get_groups has:
```
return memberof;
```
It should have the "$" in front, so it will return the $... - 11:16 AM Revision fd6a81e1: Fix ldap_get_groups return value when down
- In some places ldap_get_groups has:
```
return memberof;
```
It should have the "$" in front, so it will return the $... -
11:16 AM Revision ae800a34: Merge pull request #3539 from phil-davis/patch-5
- 11:15 AM Revision 3129d3e9: IPv4 Tunnel Network is required for OpenVPN server
- (cherry picked from commit e4488e51cf424907e06ef7cc73370aa0657e5e25)
- 11:15 AM Revision 1a4e4d04: IPv4 Tunnel Network is required for OpenVPN server
- (cherry picked from commit e4488e51cf424907e06ef7cc73370aa0657e5e25)
-
11:14 AM Revision 369e898a: Merge pull request #3536 from phil-davis/tunnel-network-message
- 11:11 AM Revision 3fbee483: Update version string at end of boot RELENG_2_3
- When there is an upgrade, the echo here was outputting a stale value of the version. For example, on first upgrade fr...
-
11:11 AM Revision eba4f2a1: Merge pull request #3530 from phil-davis/patch-2
-
11:10 AM Revision 687dc905: Merge pull request #3531 from phil-davis/version-display-at-boot
-
10:28 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- The next build has a different fix for this issue, it probably has better performance too.
Could you, please, chec... -
09:59 AM Bug #7253: LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- Change reverted from RELENG_2_3 and RELENG_2_3_3
-
06:57 AM Bug #7253: LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- Yes, the easy fix is to revert 3322 from 2.3.3. The extra functionality is not that exciting!
And this issue shoul... -
06:10 AM Bug #7253: LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- Can we just revert https://github.com/pfsense/pfsense/pull/3322 for 2.3.3? This non-issue with displayed notices that...
-
05:26 AM Bug #7253: LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- My bad, I did to revert it because the field that controls cache time is a 2.4.0 only feature. Sorry about the noise.
-
05:20 AM Bug #7253 (Feedback): LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- I've applied both PRs to RELENG_2_3_3. Could you please confirm the fix on next snapshot?
-
09:51 AM Bug #7252 (Feedback): OpenVPN widget, connect time of roadwariors shows a number
- OpenVPN port was downgraded to 2.3.x
-
09:38 AM Bug #7252: OpenVPN widget, connect time of roadwariors shows a number
- No, it will work fine for everyone (Well, 99.999%). OpenVPN won't have any compatibility issues between the two. It w...
-
09:34 AM Bug #7252: OpenVPN widget, connect time of roadwariors shows a number
- so if someones on 2.3.3 with opnvpn 2.4 will change back to 2.3 have ramifications ??
-
09:16 AM Bug #7252: OpenVPN widget, connect time of roadwariors shows a number
- We're moving 2.3.3 back to OpenVPN 2.3 since it appears to be the path of least disruption.
-
09:20 AM Bug #6937 (Assigned): Inbound traffic on enc0 is not creating a state with mobile IPsec
-
07:41 AM pfSense Packages Feature #7189: Letsencrypt acme sync in HA environment
- Since the certs automatically sync between active and passive nodes, I am inclined to agree that acme should not be i...
-
07:21 AM Bug #4474: IP address change triggers reload of all packages
- Just FYI: That's not my patch, see the URL :)
-
07:15 AM Bug #4474: IP address change triggers reload of all packages
- User "Kill Bill" wrote a patch that disables this behaviour for 2.2.2 and linked it in https://redmine.pfsense.org/is...
-
05:48 AM Bug #7256: syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- Here's some more context:...
-
05:16 AM Bug #7256 (Resolved): syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- Suspect it's related to Feature #4898. Last log entry:...
- 05:30 AM Revision 0fafb3cd: getAllowedPages consistent code format
- 05:15 AM Revision 7abc3f99: Use cached groups in get_user_privileges
- 02:56 AM Revision 0241b34f: Fix ldap_get_groups return value when down
- In some places ldap_get_groups has:
```
return memberof;
```
It should have the "$" in front, so it will return the $... -
02:06 AM Bug #6223: IPsec + OpenBGPD fails with "PF_KEY socket: No buffer space available"
- In 2.4 it flaps constantly... I mean every 40 seconds or so, but it varies
startup
rereading config
route decisi...
02/12/2017
-
09:14 PM Bug #7253: LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- I added a commit to https://github.com/pfsense/pfsense/pull/3538 that checks the $allowed_groups actually is an array...
-
09:12 PM Bug #7253: LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- See PR https://github.com/pfsense/pfsense/pull/3539 for a bug in ldap_get_groups() where it can return something that...
-
11:45 AM Bug #7253: LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- Phillip Davis wrote:
> (Code changes needed for 2.3.3 should be similar to what is in the PR for 2.4)
The patch a... -
11:17 AM Bug #7253: LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- I made PR https://github.com/pfsense/pfsense/pull/3538 to cache group/priv information within get_user_privileges() i...
-
02:54 PM Bug #7255 (Resolved): Firewall alias FQDN field rejects IDNs (Internationalized domain names)
- When creating a firewall alias and entering "www.bücher.ch" as the FQDN, pfsense gives an error stating:
"www.büch... -
02:44 PM Bug #6945: Firewall alias naming restrictions are too limiting
- Pillip, yes, using "www.xn--bcher-kva.ch" as the FQDN in the alias works. ex:, with such a rule, a traceroute from my...
- 02:25 PM Revision e8813e51: Allow up to siz dashboard columns
- 01:34 PM Revision e4488e51: IPv4 Tunnel Network is required for OpenVPN server
-
12:44 PM Bug #7252: OpenVPN widget, connect time of roadwariors shows a number
- I didn't notice that OpenVPN 2.4 was on pfSense 2.3.3. That means there are probably more OpenVPN 2.4-isms to account...
-
10:07 AM Bug #7252: OpenVPN widget, connect time of roadwariors shows a number
- I didn't test architecture 'all' but likely yes.. As for priority, its a display issue, actual functionality of the o...
-
09:58 AM Bug #7252: OpenVPN widget, connect time of roadwariors shows a number
- Shouldn't this be architecture All?
-
08:40 AM Bug #7252: OpenVPN widget, connect time of roadwariors shows a number
- At the moment the field is displaying one of the byte counts, so it will be completely misleading to leave it like th...
-
08:37 AM Bug #7252: OpenVPN widget, connect time of roadwariors shows a number
- Pull Request https://github.com/pfsense/pfsense/pull/3537
Actually I think it could be done just by cherry-picking... - 10:18 AM Revision 66a40592: Add GUI entry for ip_change_kill_states in Network/Advanced (See #1629)
- 10:18 AM Revision a84da228: Improve log output when ip_change_kill_states is set.
- 08:42 AM Revision b8ad7df3: Do POST for long tab array dropdown
- 05:18 AM Revision 55f81e30: Update version string at end of boot
- 05:12 AM Revision c0044174: Update version string at end of boot RELENG_2_3
- When there is an upgrade, the echo here was outputting a stale value of the version. For example, on first upgrade fr...
-
03:46 AM Revision 065bd33d: Fix incorrect sorting for various dropdown lists.
-
03:41 AM Feature #4083: Replace GET by POST
- And here is a way to "fix" breadcrumb links: https://github.com/pfsense/pfsense/pull/3534
But of course it does not ... -
02:38 AM Feature #4083: Replace GET by POST
- Note issue https://redmine.pfsense.org/issues/7254
The dropdown list of interface names in Firewall Rules was still ... -
01:29 AM Bug #7254: Selection from long tab list that uses dropdown does not POST correctly
- PR https://github.com/pfsense/pfsense/pull/3533 provides a fix that works for me. It will at least get functionality ...
-
01:23 AM Bug #7254 (Resolved): Selection from long tab list that uses dropdown does not POST correctly
- 1) Have a lot of interfaces with long names.
2) Got to Firewall->Rules
3) Try to access the rules of a different in...
02/11/2017
-
07:57 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- Unlikely
-
07:26 PM Revision e4b2f69f: Point to 2.3.3 branch on devel server while in RC
-
06:54 PM Bug #7253: LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- Nuked the above code, sanity restored. It's evil, get it out of the head.inc please. (Plus, get_user_privileges() obv...
-
06:44 PM Bug #7253: LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- I never set up any timeout anywhere. The point is it tries to look up a *local* user in LDAP, over and over again, ca...
-
06:42 PM Bug #7253: LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- What's your server timeout set to in the LDAP auth server settings? It should be defaulting to 25s, you can lower it ...
-
06:32 PM Bug #7253 (Resolved): LDAP does no longer properly fallback to local auth, obnoxious timeouts, unusable GUI
- No idea when this regressed, but I get this when AD in unreachable:...
-
06:49 PM Feature #7199 (Resolved): SG-1000 cpsw nics don't support ALTQ
-
05:49 PM Feature #7199: SG-1000 cpsw nics don't support ALTQ
- SG-1000
2.4.0.b.20170211.0742
Test and working. Thank you for implementing that! -
06:49 PM Bug #7219 (Resolved): vlan(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
-
05:48 PM Bug #7219: vlan(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- SG-1000
2.4.0.b.20170211.0742
Can confirm that ALTQ with vlans now works.
-
06:00 PM Bug #7252 (Resolved): OpenVPN widget, connect time of roadwariors shows a number
- OpenVPN widget, connect time of roadwariors shows a number
-
01:35 PM Revision 2722f4c2: Use devel pkg server while in RC
-
01:31 PM Revision ea9d2cd3: Set some specific rules for RC during build
-
01:30 PM Revision 26f2e751: Set some specific rules for RC during build
-
01:18 PM Revision 3b9d21e0: Set some specific rules for RC during build
- 12:51 PM Revision af36378e: System Information widget filter gettext()
- (cherry picked from commit f5d762f90924510c097a9065dff135dab01f46f0)
- 12:48 PM Revision 3204c695: System Information Widget Filter
- (cherry picked from commit 718b3b0b1b75de09a87866cb37b5a0752643283a)
- 12:40 PM Revision d99503fb: Fix cut-paste error in Breadcrumb Links
- (cherry picked from commit 0e5ee5ae260c42a05b79edf74fb491fca52bacb4)
- 12:40 PM Revision de02dc29: Breadcrumb links
- (cherry picked from commit edcd75357f0e93b124159314d3306197d5312e6c)
- 12:40 PM Revision 990bc1fb: Breadcrumb links support
- (cherry picked from commit c50f228a1583fe694993778e8576322877a15bba)
-
10:48 AM Feature #4083: Replace GET by POST
- Yes, that is the goal. It isn't only about accidental actions, though, but also CSRF protection.
-
10:41 AM Feature #4083: Replace GET by POST
- Isn't the principle here that anything that changes stuff (makes a config change, stops/starts a service, applies cha...
-
08:24 AM Feature #4083: Replace GET by POST
- Good points. I'll give that some thought.
-
08:07 AM Feature #4083: Replace GET by POST
- The recent work here is excellent, for delete, enable/disable, and other actions that result in a config change or fi...
-
07:46 AM Bug #6340: fsck hangs boot in background, fails to produce any action, resulting in broken firewall
- Graham Collinson wrote:
> yes it was on 2.3.2
It was changed since 2.3.2. New code is on 2.3.3 and 2.4.0 snapshots. -
07:35 AM Bug #6340: fsck hangs boot in background, fails to produce any action, resulting in broken firewall
- yes it was on 2.3.2
-
07:06 AM Feature #7251: JavaScript & CSS are cached too aggressively by browsers, add URL fingerprint or other cache control mechanism
- A simple way to deal with this might be to prevent caching on the login page. That way all the CSS and JS is re-loade...
-
06:13 AM Feature #7251: JavaScript & CSS are cached too aggressively by browsers, add URL fingerprint or other cache control mechanism
- I knew I was forgetting something!
Updated subject/descr
Thanks -
06:10 AM Feature #7251: JavaScript & CSS are cached too aggressively by browsers, add URL fingerprint or other cache control mechanism
- There is the same problem with CSS.
-
02:04 AM Revision 48e4a8c6: Add foot.inc back to status.php
-
02:03 AM Revision c9e18377: Add foot.inc back to status.php
02/10/2017
-
10:14 PM Revision 5bf8ac30: Set _IS_RELEASE for RC in this branch
- 10:07 PM Revision ce437697: logout via POST
-
09:53 PM Feature #7251 (Resolved): JavaScript & CSS are cached too aggressively by browsers, add URL fingerprint or other cache control mechanism
- JavaScript and CSS are cached too aggressively by browsers, so when any significant change happens, users must manual...
-
09:41 PM Bug #7240 (Not a Bug): OpenVPN Client bug
- I can't reproduce this with clients or servers. "Permission denied" implies that a firewall rule is blocking the traf...
-
09:40 PM Revision d13d2426: Use RELEASE server and branch on 2.3.3
-
09:39 PM Revision e8260dcf: Use RELEASE branch and server for now
-
09:34 PM pfSense Packages Bug #7236 (Resolved): ACME - DNS-NSupdate badly misformatted GUI
-
09:34 PM pfSense Packages Feature #7221 (Resolved): ACME package : add standalone mode & specify port used
-
09:34 PM pfSense Packages Bug #7218 (Resolved): acme_inc.sh hard codes 'HMAC-MD5.SIG-ALG.REG.INT' for nsupdate key types
-
09:33 PM pfSense Packages Bug #7208 (Resolved): ACME ftpwebroot doesn't work
-
09:33 PM pfSense Packages Bug #7205 (Resolved): ACME package ignores DNS-Manual method, defaults to http-01
-
09:33 PM pfSense Packages Bug #7192 (Resolved): ACME package cannot update more than one nsupdate type domain
-
09:30 PM pfSense Packages Bug #7190 (Resolved): pfSense-pkg-acme Bug - php errors on pages that list certificates when no LE Certs have been created yet (eg Cert. Manager - Certificates, OpenVPN - Servers)
-
09:30 PM Feature #7239 (Rejected): DNS Resolver enable reverse dns override for single host
- As you see, it already adds the PTR records.
-
09:29 PM Revision 2de2172e: Bump version to 2.3.4-DEVELOPMENT
-
09:28 PM Revision fa0243db: It's time to 2.3.3-RC
- 09:22 PM Revision 4b72f68f: Replace '_' with '_<wbr> when displaying alias names. Allows long alias names with underscores to word-break better.
- 08:49 PM Revision 8b2cb5a4: GET/POST conversion firewall_virtual_ip*
-
08:42 PM Bug #7241 (Not a Bug): OpenVPN CSC Tunnel Network not accepting net30 addresses
- Can't reproduce. It works fine on 2.3.2_1, 2.3.3, and 2.4. The server has to be set for net30 and you have to specify...
- 08:34 PM Revision e3947e77: GET/POST conversion firewall_rules
- guiconfig.php display_top_tabs supports "usepost" as an optional 4th argument
- 07:40 PM Revision a1371557: GET/POST conversion firewall_nat_out*
- 07:33 PM Revision 01b30fa7: GET/POST conversion firewall_nat_npt*
- 07:26 PM Revision b9205559: GET/POST firewall_nat_1to1 bis
- 07:21 PM Revision d0737076: GET/POST conversion
- 07:07 PM Revision 31bdcffb: GET/POST conversion firewall_nat*
- 06:53 PM Revision d1fd8c3b: GET/POST conversion firewall_aliases*
- 06:40 PM Revision c6b6c4bf: GET/POST conversion vpn_ipsec_server
- 06:35 PM Revision cb5a1026: GET/POST conversion vpn_openvpn_csc
- 06:31 PM Revision bae64f1f: GET/POST conversion vpn_openvpn_client
- 06:26 PM Revision 84450372: GET/POST conversion vpn_l2tp*
-
05:57 PM Revision 5eb5856a: 5th try
- - change $do_ping default value to 'true' (which emulates the previous default behavior) to avoid any unexpected resu...
-
05:57 PM Revision f8002180: 4th attempt!
- - Reworked based on recent comments from @rbgarga
(cherry picked from commit c516cb287a78f7b05459e7fcba410f443d8eb8af) -
05:57 PM Revision c2f4b759: 3rd try!
- - incorporate suggestions from @rbgarga with slight modification
(cherry picked from commit 6c2f093000b05285546e81dd... -
05:57 PM Revision 307243e7: 2nd try. . .
- /etc/inc/util.inc:
- arp_get_mac_by_ip() updated to support IPv6
- attempt at code streamline
/usr/local/www/service... -
05:57 PM Revision 9a20d170: enhancements to services_dhcp_edit.php
- - added ndp call to get MAC addr if remote client is connected via IPv6
- automatically hide `Copy MAC` button if arp... -
05:57 PM Revision 726de9fe: Merge pull request #3492 from luckman212/dhcp-edit-patch-2
-
05:46 PM Bug #7249: firewall_rules.php & firewall_nat.php: Replaces underscores with spaces in aliase names
- Cool... This will help pfBlockerNG as all the Auto rules are *pfB_<aliasname>_v4*... Thanks Steve!
-
04:28 PM Bug #7249: firewall_rules.php & firewall_nat.php: Replaces underscores with spaces in aliase names
- Yes. Missed it by an hour :)
-
04:19 PM Bug #7249: firewall_rules.php & firewall_nat.php: Replaces underscores with spaces in aliase names
- Steve Beaver wrote:
> Changed the code to replace '_' with '_<wbr>' (word break opportunity). Allows a long alias n... -
03:25 PM Bug #7249 (Feedback): firewall_rules.php & firewall_nat.php: Replaces underscores with spaces in aliase names
- Changed the code to replace '_' with '_<wbr>' (word break opportunity). Allows a long alias name to word-wrap, but r...
-
03:08 PM Bug #7249: firewall_rules.php & firewall_nat.php: Replaces underscores with spaces in aliase names
- That is not exactly a bug, the underscore is deliberately replaced with a space for display. It seems to have been a ...
-
01:58 PM Bug #7249 (Resolved): firewall_rules.php & firewall_nat.php: Replaces underscores with spaces in aliase names
- I have a number of firewall aliases that contain underscores. The underscore is replaced with a space when viewing a ...
-
05:42 PM Revision 804f6a16: Sync up status.php with master, but keep the 2.3/10.3-specific parts. Fixes #7246
-
05:42 PM Revision 7a755921: Do not output PHP shell starup message unless it is run interactively. Fixes #7045
-
05:42 PM Revision bdc16e26: Add a pfSense php shell playback script to show the gateway status. Ticket #7046
-
05:42 PM Revision 5ab3fb16: Add a function to format and return plain text output showing the gateway status, for use by a shell script and status.php. Ticket #7046
-
05:42 PM Revision 4cdd0103: Add playback scripts to drill into pf tables and anchors to list their contents.
- 05:39 PM Revision 3093b965: Fix for bug 6966 https://redmine.pfsense.org/issues/6966
- Change-Id: I9471c2bbd8941e70965a86d369c8de87be9a4417
(cherry picked from commit 109a304e154a179bd340b06880ce95baec4da... -
05:39 PM Revision dde7eda2: Merge pull request #3522 from graham-collinson/master
- 05:22 PM Revision 7603794b: GET/POST conversion vpn_ipsec*
- 05:06 PM Revision 3312b65f: GET/POST conversion interfaces_assign
- 05:02 PM Revision 8dce7a92: GET/POST conversion interfaces_wireless*
-
05:00 PM Revision e86b541f: Revert "Fixed #6753"
- User feedback suggests the sorted menu was better, despite the lack of consistency elsewhere.
This reverts commit 96f... -
04:59 PM Revision 3b197818: Revert "Fixed #6753"
- User feedback suggests the sorted menu was better, despite the lack of consistency elsewhere.
This reverts commit e5d... - 04:57 PM Revision 965717c4: GET/POST conversion interfaces_vlan_edit
- 04:54 PM Revision 5b075645: GET/POST conversion interfaces_vlan
- 04:45 PM Revision 87b458b5: GET/POST conversion interfaces_qinq*
- 04:40 PM Revision f34455d8: GET/POST conversion interfaces_ppps*
- 04:34 PM Revision 41063bd7: GET/POST conversion interfaces_lagg*
- 04:25 PM Revision e1a5d73c: GET/POST conversion interfaces_groups*
- 04:21 PM Revision 5947395d: GET/POST conversion interfaces_gre*
-
04:21 PM Bug #7250: Subnet is too large to expand into individual host IP addresses
- Thank you! Using Network(s) instead of Host(s) worked.
-
04:17 PM Bug #7250 (Not a Bug): Subnet is too large to expand into individual host IP addresses
- You can't use a host type alias for a masked network like that, use a Network type alias instead.
-
04:10 PM Bug #7250 (Not a Bug): Subnet is too large to expand into individual host IP addresses
- I'm trying to create a IP Alias with a /16 subnet. This fails with the following error.
* Subnet is too large to e... -
04:21 PM Revision c620a9bb: Mark missing parameter as required. It got lost during backport from master as spotted by @phil-davis
- 04:18 PM Revision b591908c: GET/POST conversion interfaces_gif*
- 04:16 PM Revision 2c391a23: Required fields - Alias Type
- should be a required field. And this 1-char change can also be backported to RELENG_2_3. I noticed this while looking...
-
04:16 PM Revision e2d1352e: Merge pull request #3523 from phil-davis/patch-2
-
04:15 PM Revision a166a212: Fix #7157
- trafficgraph: Don't update the on screen visual graph while invisible,
which avoids creating a large queue of pending... - 04:12 PM Revision c5ae2b4d: GET/POST conversion interfaces_bridge*
-
04:11 PM Todo #6767 (Resolved): Change logout from GET to POST request
-
04:11 PM Revision 7790e0df: Fix #7157
- trafficgraph: Don't update the on screen visual graph while invisible,
which avoids creating a large queue of pending... - 04:10 PM Revision 8ea10c11: Required fields - Alias Type
- should be a required field. And this 1-char change can also be backported to RELENG_2_3. I noticed this while looking...
-
04:09 PM Bug #7202 (Resolved): "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
-
04:07 PM Revision ad1e294c: Ticket #7157: Backport upstream fix from https://github.com/novus/nvd3/commit/305cbad96e94f61a3c0bae02d16c28e09249fbc0
-
04:07 PM Revision c674ae38: Ticket #7157: Backport upstream fix from https://github.com/novus/nvd3/commit/305cbad96e94f61a3c0bae02d16c28e09249fbc0
- 04:04 PM Revision edf69b0c: Example of setting required items
- (cherry picked from commit 32a85c63c9411463c98a0605772b3e2c01702971)
- 03:55 PM Revision 85877e3c: Require Name field in Shaper
- (cherry picked from commit 40dcb4b61a2c1213a0b3e213c78fddac845a0117)
- 03:17 PM Revision ddd3ffaf: GET/POST conversion system_routes*
- 02:54 PM Revision 20231404: GET/POST conversion system_groupmanager*
- 02:12 PM Revision ac5e11a7: Revise setHelpText to accommodate required fields
- 02:12 PM Revision 5f6c3712: Provide Javascript set_Required function
- 02:12 PM Revision 5b18b8a4: Provide CSS for required fields
- 02:12 PM Revision cc8783a5: Add "Required field" capability to Groups.class.php
-
02:11 PM Bug #6768 (Resolved): DNS Resolver entry for DHCPv6 static mapping has wrong IP address
- Tested 2.3.3 and 2.4, correct subnet is used.
-
12:53 PM Bug #6768 (Feedback): DNS Resolver entry for DHCPv6 static mapping has wrong IP address
- ops, untested yet
-
12:53 PM Bug #6768 (Resolved): DNS Resolver entry for DHCPv6 static mapping has wrong IP address
- works
-
01:52 PM Bug #6432: Relative distinguished names should accept unicode during CA creation.
- To be clear, what's the fix? Does it merely warn to use only ASCII, or does it now support Unicode properly?
-
01:27 PM Bug #6432 (Resolved): Relative distinguished names should accept unicode during CA creation.
- works
-
01:40 PM Bug #6852: Commit 8f86722 breaks DHCPv6 leases status page
- upgraded hardware due to c2000 restored config and this now works so guess somethin in my dhcp6 leases file had a pro...
-
06:50 AM Bug #6852: Commit 8f86722 breaks DHCPv6 leases status page
- This is a regression
- 01:35 PM Revision a04f6658: GET/POST conversion system_gateways*
-
01:30 PM Bug #6340: fsck hangs boot in background, fails to produce any action, resulting in broken firewall
- I tried to break it again and couldn't after last changes. Instead of closing it without hearing from more people I'l...
-
11:10 AM Bug #6340: fsck hangs boot in background, fails to produce any action, resulting in broken firewall
- Graham Collinson wrote:
> I saw an issue like this on the first power cycle of a new SG-2440.
> manually running fs... -
04:34 AM Bug #6340: fsck hangs boot in background, fails to produce any action, resulting in broken firewall
- I saw an issue like this on the first power cycle of a new SG-2440.
manually running fsck didn't find an issue but e... -
01:24 PM Bug #7083 (Resolved): Put back some visual hint for required fields
- Everything looks OK now. Thanks Phil!
-
11:08 AM Bug #7083 (Feedback): Put back some visual hint for required fields
- I believe it's all done now
-
10:16 AM Bug #7083: Put back some visual hint for required fields
- I have noted on GitHub a couple of commits in master that did not get back-ported. @rbgarga is back-porting them righ...
-
09:22 AM Bug #7083: Put back some visual hint for required fields
- Oh, I see now that you just committed that supporting code to RELENG_2_3. I noticed the issue this morning my time (w...
-
09:16 AM Bug #7083: Put back some visual hint for required fields
- On which page do you see that Phil?
I assumed you synced in the last few minutes? -
09:13 AM Bug #7083: Put back some visual hint for required fields
- Reported in forum: https://forum.pfsense.org/index.php?topic=125403.0
I am seeing the "*" displayed in the (some) pl... -
08:43 AM Bug #7083: Put back some visual hint for required fields
- The mechanism required to do this has been ported to 2.3.3 but it looks like quite a few pages do not yet have the '*...
-
07:25 AM Bug #7083 (Assigned): Put back some visual hint for required fields
- Looks like this was partially merged back to 2.3.3 but not all of it. Fields have the * before the name and are not s...
-
01:23 PM Bug #5321 (Resolved): rxcsum6, txcsum6 not considered by "Disable hardware checksum offload"
- works
- 01:21 PM Revision ba14d48e: GET/POST conversion system_gateway_groups*
- 01:18 PM Revision 109a304e: Fix for bug 6966 https://redmine.pfsense.org/issues/6966
- Change-Id: I9471c2bbd8941e70965a86d369c8de87be9a4417
- 01:05 PM Revision bda120a4: GET/POST conversion system_crlmanger.php bis
- 01:03 PM Revision d565c182: GET/POST conversion system_crlmanger.php
-
12:55 PM Todo #6689 (Resolved): Add enable link to Status > UPnP & NAT-PMP error message if disabled
- works
-
11:07 AM Todo #6689 (Feedback): Add enable link to Status > UPnP & NAT-PMP error message if disabled
- PR has been merged
-
12:54 PM Bug #6806 (Resolved): Form validation for DHCP NTP Servers does not allow hyphens
- works
- 12:52 PM Revision 59d06739: GET/POST conversion system_authservers.php
-
12:50 PM Bug #6966 (Resolved): Display bug in Status / IPsec / Overview
- works
-
11:39 AM Bug #6966 (Feedback): Display bug in Status / IPsec / Overview
- PR has been merged, thanks!
-
07:37 AM Bug #6966 (New): Display bug in Status / IPsec / Overview
-
07:23 AM Bug #6966: Display bug in Status / IPsec / Overview
- pull request for fix on github
https://github.com/pfsense/pfsense/pull/3522 -
06:46 AM Bug #6966: Display bug in Status / IPsec / Overview
- This simple patch appears to work.
Might want to add in further checking or change the way of identifying whether it... -
06:34 AM Bug #6966: Display bug in Status / IPsec / Overview
- Looks like this is caused because there's a mismatch between the ikeid in $config['ipsec']['phase1'] and the ikeid re...
-
06:14 AM Bug #6966: Display bug in Status / IPsec / Overview
- Reproduced issue with two test VMs. Setup a simple IKEv2 between the two with one child sa. When split connections ...
-
04:40 AM Bug #6966: Display bug in Status / IPsec / Overview
- I've seen a similar issue on a production system with IKEv2 and split connections ticked (Enable this to split connec...
-
12:47 PM Bug #7233 (Resolved): Status DHCP Leases can have incorrect index for edit action
- works
-
12:45 PM Todo #7246 (Resolved): Sync up status.php on 2.3.3 with 2.4
- works
-
11:50 AM Todo #7246 (Feedback): Sync up status.php on 2.3.3 with 2.4
- Applied in changeset commit:804f6a165fbb80deac018be43e8d41607fa67594.
-
11:01 AM Todo #7246 (Resolved): Sync up status.php on 2.3.3 with 2.4
- Since 2.3.3 is likely the last 2.3.x release and people may be running it a while, it would be good to pull in the ch...
-
12:34 PM Bug #6751: Route53 DynDNS Problems / Replace Route53 DynDNS Module
- If you are going to backport this to 2.3.3 Bug #7206 is also needed.
-
11:54 AM Feature #4898 (Resolved): Allow packages to request syslogd socket to be created inside chroot
- works (haproxy for instance)
-
11:47 AM Bug #6916 (Resolved): interfaces_vlan.php: Clicking on "Cancel" deletes VLAN
- works
-
11:47 AM Feature #7248 (New): Web UI for IPSec settings should warn about poor security choices
- I've spent several days getting my VPN working and learned a lot in the process.
I've made a little patch here:
h... -
11:46 AM Bug #7120 (Resolved): Wrong file permissions on /var/tmp and missing sticky bit when using /var as RAM disk
- really fixed now!
-
11:45 AM Bug #7164 (Resolved): NTP page allows adding more time server rows than it saves to the configuration
- works
-
11:44 AM Bug #7173 (Resolved): [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- works
-
11:33 AM Bug #5993 (New): dhcp6c not started until an RA received
- Not finished yet
-
11:33 AM pfSense Packages Bug #7247: Update net/ntopng to 2.4.2017.01.20
- Well it the update doesn't fix those, you should submit them upstream (or at least FreeBSD bugzilla).
-
11:26 AM pfSense Packages Bug #7247: Update net/ntopng to 2.4.2017.01.20
- I have 3 recent coredumps saved - are these of any use to anyone for debugging or should I toss them?
-
11:24 AM pfSense Packages Bug #7247 (Closed): Update net/ntopng to 2.4.2017.01.20
- Attempting to fix the never ending core dumps with the current version. (Happens pretty much on any restart.)
-
11:24 AM Revision fb169a1c: Update translation files
-
11:21 AM Revision 9f60fffd: Regenerate pot
-
11:21 AM Revision 5ca44711: Merge pull request #3521 from phil-davis/sethelp-v
-
11:14 AM Feature #6753 (Resolved): Interfaces list order not consistent
- Commit reverted.
-
10:59 AM Feature #6753: Interfaces list order not consistent
- I'll take this, looks like maybe the consistency doesn't weigh up against the inconvenience of the menu being unsorte...
-
10:26 AM Feature #6753 (Assigned): Interfaces list order not consistent
-
11:05 AM Feature #1189: Gateway: Multiple monitor ips
- Don't have a solution (yet) but FYI in case some people are watching this ticket and not the others/forums, I did cre...
-
10:53 AM Feature #1189: Gateway: Multiple monitor ips
- I would also like to see this as a feature. This one has been open for a while now, and many of the hardware solution...
-
10:57 AM Bug #6915: unbound logging not working after reboot or "Reset log files"
- Yep, that's better, thanks!
-
10:48 AM Bug #6915: unbound logging not working after reboot or "Reset log files"
- This one shows up under "pfSense packages". Maybe because the category is set to "Unbound".
Other "modern" unbound i... -
10:41 AM Feature #6786 (Resolved): Sortable Description Captive Portal MACs list
-
10:41 AM Feature #7159 (Resolved): Auto correct checksum and missing special characters for NTP GPS initialization commands.
-
10:39 AM Bug #6064 (Resolved): non-fully qualified hostnames included in hosts file and Unbound local-data
-
10:39 AM Feature #6914 (Resolved): unbound access-control lists
-
10:27 AM Bug #6227 (Resolved): LAGG MTU not set correctly when it has child QinQ interfaces
-
10:24 AM Bug #7180 (Resolved): Disabled OpenVPN clients are not shaded in the gui
-
10:21 AM Bug #6609 (Resolved): OpenVPN Radius auth doesn't send NAS attributes and is not consistent with how strongSwan does it
-
10:20 AM Bug #7157 (Feedback): Traffic graphs cause the tab to crash when run in the background
- Applied in changeset commit:7790e0dfaee5f4f1707a8bb6c6e8abf03b2001c2.
-
08:26 AM Revision 7dabfe79: Fix typo
- 03:50 AM Revision 06f6b161: GET/POST conversion
-
02:37 AM Feature #7245 (Resolved): NTP widget shows client time instead of server time
- The javascript nonsense dating back to Windows 9x/IE5 days actually shows local time on the client, severely confusin...
-
12:51 AM Bug #7219 (Feedback): vlan(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Should work now: https://github.com/pfsense/FreeBSD-src/commit/5c1daa5ea1098b67d4c331d5e21b39178d616031
-
12:35 AM Feature #7244 (New): Publish pfsense as a Vagrant Basebox
- Hello pfsense!
The pfsense project should make it easy to provision pfsense by publishing an official pfsense vagr...
02/09/2017
- 10:35 PM Revision 878d6f72: GET/POST conversion system_advanced_ioctl
- 10:01 PM Revision fe914124: Typo
- 09:53 PM Revision e8afd822: GET/POST conversion for camanager and certmanager
-
05:10 PM Feature #7242: SSL Include CA Certs
- Chris Linstruth wrote:
> Or are you talking about installing a CA in pfSense so connections *it* makes outbound can ... -
04:38 PM Feature #7242: SSL Include CA Certs
- Or are you talking about installing a CA in pfSense so connections *it* makes outbound can be trusted/verified when c...
-
04:35 PM Feature #7242: SSL Include CA Certs
- This looks like another redmine that should be a forum post.
Sending the self-signed CA along with the certificate... -
04:20 PM Feature #7242: SSL Include CA Certs
- Kill Bill wrote:
> Apparently we have a language problem here, so perhaps let's try again in a more simple way: WTH ... -
03:59 PM Feature #7242: SSL Include CA Certs
- Apparently we have a language problem here, so perhaps let's try again in a more simple way: WTH is "included in SSL"...
-
03:46 PM Feature #7242: SSL Include CA Certs
- Kill Bill wrote:
> Am I the only one who cannot make sense of the request? No, self-signed certs will never be seaml... -
05:32 AM Feature #7242: SSL Include CA Certs
- Am I the only one who cannot make sense of the request? No, self-signed certs will never be seamless with browsers, o...
-
05:20 AM Feature #7242 (Duplicate): SSL Include CA Certs
- Option to have an internal or imported CA (such as an imported self-signed CA) included in SSL for verify peer for do...
-
02:20 PM Revision 20cf8d8e: 5th try
- - change $do_ping default value to 'true' (which emulates the previous default behavior) to avoid any unexpected results
-
02:15 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- Hi Jim, just wondering if this is still something that might make it into pfSense 2.4.0? I would love to use the maxi...
- 01:52 PM Revision e04daed0: Allow GET-to-POST js to handle confirmation dialogs on delete (anything)
- 12:54 PM Revision 3e142087: setHelp and gettext format vpn*
-
11:11 AM Revision a48a563d: Update translation files
-
11:00 AM Revision 5521f90a: Regenerate pot
-
10:58 AM Revision 9f242a98: Merge pull request #3512 from phil-davis/patch-3
-
10:57 AM Revision a958ab5b: Merge pull request #3511 from phil-davis/patch-2
-
10:57 AM Revision 6ec9b6ef: Merge pull request #3508 from phil-davis/sethelp-6
-
10:53 AM Revision a962a2d3: Merge pull request #3519 from phil-davis/patch-6
-
10:52 AM Revision 34b4342c: Merge pull request #3520 from phil-davis/sethelp-9
-
10:52 AM Revision 0aaa7bb0: Merge pull request #3518 from phil-davis/patch-5
- 10:51 AM Revision dd23f616: status_upnp remove nested getext()
- I don't think this does anything useful.
(cherry picked from commit 3224663a3759935b47406c789b9f5cea3eb88136) -
10:51 AM Revision c52d6985: Merge pull request #3516 from phil-davis/patch-4
-
10:50 AM Revision 36615eb8: Merge pull request #3517 from phil-davis/sethelp-8
-
10:49 AM Revision e7fc54ac: Merge pull request #3513 from phil-davis/sethelp-7
-
10:48 AM Bug #7232 (Feedback): haproxy_pool_edit.php -- sprintf() too few arguments
- Fixed in 0.52_5
- 10:37 AM Revision 781d9ce4: setHelp and gettext for system*
- 10:31 AM Revision 4dd437e4: Fix keylength.com href in system_usermanager
- The literal <a href=... text was displaying here, not an actual link to keylength.com
While here, reformat to take th... - 09:45 AM Revision 83d31192: Fix system_gateways_edit setHelp sprintf warning
- The code at line 759 emitted a warning because of the bare '%' in the string.
Other changes are to clarify and tidy u... - 07:40 AM Revision 7f0d6ccf: setHelp and getttext format for status*
- 07:34 AM Revision 3224663a: status_upnp remove nested getext()
- I don't think this does anything useful.
-
06:35 AM pfSense Packages Bug #1620: Can't use transparent proxy when using bridge.
- Steve Wheeler wrote:
> I ran some tests with this and was unable to make it work. Adding 'route-to lo0' to the pass ... -
06:05 AM Bug #7243 (Not a Bug): Openvpn route only first network in IPv4 Remote network(s) to local net
- Openvpn Peer to Peer (ssl\tls) 2 client connection
Openvpn route only first network in server openvpn IPv4 Remote ne... -
05:59 AM Revision c516cb28: 4th attempt!
- - Reworked based on recent comments from @rbgarga
-
05:10 AM Bug #7209: Something is seriously wrong with firewall aliases
- 2.4-latest as of today, fresh install - confirmed NOT fixed. Just as I already said in one of my prev posts
>And I d... -
04:40 AM Bug #7241 (Not a Bug): OpenVPN CSC Tunnel Network not accepting net30 addresses
- I'm migrating a client to pfSense, and they have an OpenVPN server which still uses net30 topology, with some client-...
-
04:31 AM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- Pi Ba wrote:
> Without quick it didn't work either. Only changing it to 'pass' made it work.
I'm seeing the same ... - 04:06 AM Revision 046346e0: services_dyndns_edit % needs to be escaped
-
02:44 AM pfSense Packages Feature #7221: ACME package : add standalone mode & specify port used
- Having the package automatically open/close ports 80 and 443 when issuing/renewing certificates would be great. I don...
-
02:04 AM Bug #7167: Error creating higher VLAN ID on SG-1000
- It did not help.
Ok. I restored uFw settings on factory. Assigned VLAN 11 on cpsw0 and chose it as WAN
I can see ... -
01:22 AM Bug #7240: OpenVPN Client bug
Time Process PID Message
Feb 9 17:15:10 openvpn 40490 Initialization Sequence Completed
Feb 9 17:15:10 openvpn 40...-
01:17 AM Bug #7240 (Not a Bug): OpenVPN Client bug
- Latest snapshot has led to the following log entry and failure to utilise the OpenVPN gateway:
Feb 9 17:13:24 open... -
01:18 AM Feature #7239: DNS Resolver enable reverse dns override for single host
- mehh, probably invalid.
Creating a host override already creates a pointer entry as well.
eg /var/unbound/host...
02/08/2017
-
11:56 PM Feature #7239 (Rejected): DNS Resolver enable reverse dns override for single host
- DNS resolver only allows individual host overrides for forward lookups, not reverse.
Use case: (sloppy) ISP doesn'... -
10:32 PM Bug #7238 (New): Menu layout broken when using "Hostname in Menu" with long hostnames
- It is good to have the hostname in the menu for quickly identifying the gateways, however almost all of our hostnames...
-
10:24 PM pfSense Packages Bug #7190: pfSense-pkg-acme Bug - php errors on pages that list certificates when no LE Certs have been created yet (eg Cert. Manager - Certificates, OpenVPN - Servers)
- Jim Pingle wrote:
> PR was merged
Confirm fixed. - 08:23 PM Revision f0136b17: Automatic GET to POST functions moved to pfSenseHelpers.js so they can be used by any page
- 07:22 PM Revision d3f59a8c: Improve comments
- 07:15 PM Revision f5c9c0c7: Experimental method to convert GET calls to POST
- 04:47 PM Revision 71ffc048: Merge branch 'master' into sethelp-7
- 04:43 PM Revision 3fd41815: setHelp strings for services*
-
04:28 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- I navigated in almost all screens previously affected and can confirm everything is fixed with the pages previously a...
-
08:17 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- This problem has now been fixed in a more generic within the Form classes so there should be no other cases, with or ...
-
07:46 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Fixed embedded '%' in squidguard.inc
-
05:36 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- This problem remains with SquidGuard, in several tabs, like this in
Services > SquidGuard Proxy Filter > Common AC... -
03:35 PM Revision 6c2f0930: 3rd try!
- - incorporate suggestions from @rbgarga with slight modification
-
03:35 PM Bug #6406: Web process becomes unresponsive producing 502 Bad Gateway nginx
- I've seen this symptom frequently with pfBlockerNG and large lists. I also don't run the IPsec widget.
The comm... -
12:05 PM Bug #6406: Web process becomes unresponsive producing 502 Bad Gateway nginx
- Just Restarted PHP-FPM on a system with the following (no pfblocker installed):
* System Information
* Traffic Gr... -
11:56 AM Bug #6406: Web process becomes unresponsive producing 502 Bad Gateway nginx
- Jim Pingle wrote:
> Which dashboard widgets do you have visible?
Right now I have the following widgets open:
* ... -
11:52 AM Bug #6406: Web process becomes unresponsive producing 502 Bad Gateway nginx
- Bryan Fehl wrote:
> I just ran into this myself. Strangely, this issue causes all clients who try to connect with O... -
11:48 AM Bug #6406: Web process becomes unresponsive producing 502 Bad Gateway nginx
- Steve Beaver wrote:
> Sorry to re-hash this, but since it has just been assigned to me I need an update.
>
> Some... - 03:34 PM Revision d030ca9c: services_dhcpv6_relay fix setHelp array parameter
- same thing here
- 03:16 PM Revision 13fa32eb: services_dhcp_relay fix setHelp array parameter
- Another one using the old array format.
- 03:02 PM Revision 2241553c: Rever changes escaping '%' chars in help text. No longer required.
-
02:35 PM pfSense Packages Feature #7221 (Feedback): ACME package : add standalone mode & specify port used
- Added standalone HTTP and TLS options with configurable port.
A bind address isn't going to be viable at the momen... - 02:07 PM Revision c74b018d: Only use sprintf in setHelp() if more than one argument is received
- This should eliminate all the issues caused by packages with embedded '%' in their text
-
01:50 PM pfSense Packages Bug #7218 (Feedback): acme_inc.sh hard codes 'HMAC-MD5.SIG-ALG.REG.INT' for nsupdate key types
- Fixed in ACME 0.1.11 which was just pushed, you can now choose the key type and algorithm.
-
12:43 PM Bug #7209: Something is seriously wrong with firewall aliases
- No, I haven't tried it on 2.4 yet, however I digged into sources on 2.3.2_p1 and reproduced it step-by-step while col...
-
10:52 AM Bug #7209: Something is seriously wrong with firewall aliases
- Did you try it on 2.4 as requested?
Either you are leaving out a config state/step or it's not an issue we can rep... -
10:30 AM Bug #7209: Something is seriously wrong with firewall aliases
- What? Rejected based on _assumptions_ that it _possibly_ just me screwed up something on my instance or that it _poss...
-
12:38 PM pfSense Packages Bug #7236: ACME - DNS-NSupdate badly misformatted GUI
- Whole lot better indeed. ;)
!https://i.imgsafe.org/b65eeb532c.png! -
11:24 AM pfSense Packages Bug #7236 (Feedback): ACME - DNS-NSupdate badly misformatted GUI
- Finally figured it out, fix is coming in 0.1.10 that I just pushed. Also made the box take up the whole width.
-
09:45 AM pfSense Packages Bug #7236: ACME - DNS-NSupdate badly misformatted GUI
- That would be a better fit for a separate bug report. This formatting issue is enough of a PITA on its own.
-
09:44 AM pfSense Packages Bug #7236: ACME - DNS-NSupdate badly misformatted GUI
- Yeah, I also failed to find any relevant code fix. LOL.
Also, the first row in the "Table" does not autoexpand the... -
09:39 AM pfSense Packages Bug #7236 (Confirmed): ACME - DNS-NSupdate badly misformatted GUI
- I've been looking at that but not having any luck so far. The code, by all appearances, should be taking up the whole...
-
09:33 AM pfSense Packages Bug #7236 (Resolved): ACME - DNS-NSupdate badly misformatted GUI
- This one's so bad that I have no clue what to enter where.
!https://i.imgsafe.org/b3aab299c4.png! -
11:46 AM pfSense Packages Bug #7237: ACME - first table row on certs tab does not autoexpand the fields
- Well yeah, the thing is not exactly simple readable code :D Being hidden wouldn't really be much of an issue if peopl...
-
11:36 AM pfSense Packages Bug #7237 (Confirmed): ACME - first table row on certs tab does not autoexpand the fields
- The input validation does need work but it's going to be rather complex to pull off. That should probably be a separa...
-
11:23 AM pfSense Packages Bug #7237: ACME - first table row on certs tab does not autoexpand the fields
- Also, apparently there's lack of input validation here (i.e., at least those fields should be required so that people...
-
09:51 AM pfSense Packages Bug #7237 (Resolved): ACME - first table row on certs tab does not autoexpand the fields
- In the Domain SAN list, the first row in the table does not auto-expand the fields with required settings. See screen...
- 09:49 AM Revision 5dd8682c: setHelp format for services_captiveportal
- 09:21 AM Revision 310f4f21: Part fix #7233 keep correct staticmap_array_index
- The index needs to be incremented even for entries that were skipped for display because they (for whatever reason) h...
-
09:21 AM Revision 743c13ce: Merge pull request #3507 from phil-davis/patch-3
- 09:17 AM Revision 9aa3c5e8: Part fix #7233 keep correct staticmap_array_index
- The index needs to be incremented even for entries that were skipped for display because they (for whatever reason) h...
- 09:05 AM Revision c940afee: Part Fix #7233 Allow deletion of empty static map entries
- (cherry picked from commit 2ea70e1a474fd871a007c76841f2a33f34082c58)
-
09:04 AM Revision 7d7dd2cc: Merge pull request #3506 from phil-davis/patch-2
-
08:13 AM Revision dd83f869: 2nd try. . .
- /etc/inc/util.inc:
- arp_get_mac_by_ip() updated to support IPv6
- attempt at code streamline
/usr/local/www/service... -
07:38 AM pfSense Packages Bug #6690: SURICATA IPS Issue - Kills VLANS & Traffic Shaper
- Kill Bill wrote:
> There's already #6023 for netmap + shaping.
"Shaping" is a hack that shouldn't have happened. -
07:37 AM pfSense Packages Bug #6690: SURICATA IPS Issue - Kills VLANS & Traffic Shaper
- Steven Kreitzer wrote:
> Sandeep K V wrote:
> > Hi Steven Kreitzer and Jim Thompson isn't this the expected way the... -
05:41 AM pfSense Packages Bug #6690: SURICATA IPS Issue - Kills VLANS & Traffic Shaper
- In general, I'd say people who wish to use Snort/Suricata as IPS should look into divert sockets instead. The netmap ...
- 04:26 AM Revision 2ea70e1a: Part Fix #7233 Allow deletion of empty static map entries
-
04:05 AM Bug #7164: NTP page allows adding more time server rows than it saves to the configuration
- Build 2.4.0.b.20170207.2344
Test:
* Under Services -> NTP
* Attempt to add 11 server addresses
Result: Er... -
04:05 AM Bug #7226 (Resolved): Package installation message is incomplete
-
03:54 AM Bug #7226: Package installation message is incomplete
- Build 2.4.0.b.20170207.2344
Test actions:
* Install tftpd
* Remove tftpd
The status displays the packag... -
03:59 AM pfSense Packages Bug #7229: Package Manager Update "Suricata" failed
- Actually i copied the failure message from the one i've found in pfsense forum, but mine was very similar. Problem is...
-
03:44 AM Bug #7167: Error creating higher VLAN ID on SG-1000
- Just to be sure, did you put a firewall pass rule onto the interface that is the VLAN? It will need that in order to ...
-
03:40 AM Bug #7167: Error creating higher VLAN ID on SG-1000
I have updated to ...-
03:10 AM Bug #7233 (Feedback): Status DHCP Leases can have incorrect index for edit action
- Applied in changeset commit:2ea70e1a474fd871a007c76841f2a33f34082c58.
-
01:47 AM Bug #7235 (New): 4860 has not got significant IPsec performance rising with enabled HW acceleration
- During IPsec performance tests on 4860 I did not observe significant IPsec performance increasing if HW acceleration ...
-
01:24 AM Bug #7234 (Closed): ntpd overload during IPsec session without HW acceleration
- During performance test 2440 I noticed quite strange behavior of ntpd. One overloads CPU core during IPsec session if...
02/07/2017
-
10:29 PM Bug #7233: Status DHCP Leases can have incorrect index for edit action
- PR https://github.com/pfsense/pfsense/pull/3506 will let people delete an empty entry, if they get one somehow.
-
10:13 PM Bug #7233: Status DHCP Leases can have incorrect index for edit action
- Pull Request https://github.com/pfsense/pfsense/pull/3505 to make sure the index counter in status_dhcp_leases keeps ...
-
10:07 PM Bug #7233 (Resolved): Status DHCP Leases can have incorrect index for edit action
- Forum: https://forum.pfsense.org/index.php?topic=125180.0
In the past, somehow (and I have seen it on systems of m... - 09:35 PM Revision 0f742e51: diag_backup do not use button text for comparisons
- (cherry picked from commit 9a7e1c9580c5779c86bc97d6d82c43401c7a4b12)
-
09:35 PM Revision b0eb674f: Merge pull request #3486 from phil-davis/diag-backup
-
08:34 PM Bug #7230 (Resolved): wizard.php - update_config_field() uses eval to set a value in a way that allows variable protections to be bypassed
- Fixed
-
01:40 PM Bug #7230 (Feedback): wizard.php - update_config_field() uses eval to set a value in a way that allows variable protections to be bypassed
- Applied in changeset commit:5baea4da88fd6c093582d9c3e9b67cce5d6a1013.
-
01:29 PM Bug #7230 (Resolved): wizard.php - update_config_field() uses eval to set a value in a way that allows variable protections to be bypassed
- update_config_field() in wizard.php needs to use eval to construct a variable name that is several array levels deep....
-
08:31 PM Bug #7227 (Resolved): pkg.php - "pkg_filter" is not encoded before output
- Fixed
-
10:50 AM Bug #7227 (Feedback): pkg.php - "pkg_filter" is not encoded before output
- Applied in changeset commit:6ac61204bc9e4cff54c818ecc71d20d2626a02e1.
-
10:45 AM Bug #7227 (Resolved): pkg.php - "pkg_filter" is not encoded before output
- On pkg.php "pkg_filter" is not encoded before output - It requires a package use pkg.php and that it has include_filt...
-
08:26 PM Bug #7228 (Resolved): easyrule.php: Use of GET allows rule to be added without CSRF protection
- Fixed
-
12:40 PM Bug #7228 (Feedback): easyrule.php: Use of GET allows rule to be added without CSRF protection
- Applied in changeset commit:0f026089f65d92328d680443de5f9a90af50115c.
-
12:34 PM Bug #7228 (Resolved): easyrule.php: Use of GET allows rule to be added without CSRF protection
- easyrule.php allows parameters passed by GET without a confirmation step, which makes it possible to add firewall rul...
-
08:26 PM Bug #7225 (Resolved): pkg_mgr_install.php "from" and "to" parameters are not validated or encoded before output
- Fixed
-
10:20 AM Bug #7225 (Feedback): pkg_mgr_install.php "from" and "to" parameters are not validated or encoded before output
- Applied in changeset commit:2c06742d784cb7ec85151327fd753536d98fbcc1.
-
10:14 AM Bug #7225 (Resolved): pkg_mgr_install.php "from" and "to" parameters are not validated or encoded before output
- The "from" and "to" parameters on pkg_mgr_install.php need htmlspecialchars() before output or they can be used as an...
-
07:31 PM Revision d3da9c7d: Rather than setting the value directly, minimize exposure to eval() in update_config_field() from wizard.php by constructing a variable reference, then set the value using the reference rather than passing user input through eval(). Fixes #7230
-
07:31 PM Revision 2c5c799a: Rather than setting the value directly, minimize exposure to eval() in update_config_field() from wizard.php by constructing a variable reference, then set the value using the reference rather than passing user input through eval(). Fixes #7230
-
07:30 PM Revision 5baea4da: Rather than setting the value directly, minimize exposure to eval() in update_config_field() from wizard.php by constructing a variable reference, then set the value using the reference rather than passing user input through eval(). Fixes #7230
-
07:02 PM pfSense Packages Bug #7190 (Feedback): pfSense-pkg-acme Bug - php errors on pages that list certificates when no LE Certs have been created yet (eg Cert. Manager - Certificates, OpenVPN - Servers)
- PR was merged
-
07:01 PM Feature #7193 (Feedback): NTP process PGRMF
- PR merged
-
06:37 PM Revision f0cf40f9: Convert easyrule.php to use a confirmation landing page so that the parameters can be submitted via POST. Also, remove the JavaScript confirmation box since it is now redundant. Fixes #7228
- The confirmation page displays the submitted parameters for an extra user sanity check. Also fixed a bunch of page fo...
-
06:37 PM Revision 4cef56bf: Convert easyrule.php to use a confirmation landing page so that the parameters can be submitted via POST. Also, remove the JavaScript confirmation box since it is now redundant. Fixes #7228
- The confirmation page displays the submitted parameters for an extra user sanity check. Also fixed a bunch of page fo...
-
06:35 PM Revision 0f026089: Convert easyrule.php to use a confirmation landing page so that the parameters can be submitted via POST. Also, remove the JavaScript confirmation box since it is now redundant. Fixes #7228
- The confirmation page displays the submitted parameters for an extra user sanity check. Also fixed a bunch of page fo...
-
06:01 PM Revision 4ebe5abd: Merge pull request #3504 from phil-davis/patch-1
-
05:54 PM Bug #7222: Encryption No Longer Enforced for Email Notifications
- Kill Bill wrote:
> NOYB NOYB wrote:
> > My guess is pear Mail will never be patched to fix this STRIPTLS security h... -
05:14 PM Bug #7222: Encryption No Longer Enforced for Email Notifications
- NOYB NOYB wrote:
> My guess is pear Mail will never be patched to fix this STRIPTLS security hole.
Well, certain... -
04:22 PM Bug #7222: Encryption No Longer Enforced for Email Notifications
- Jim Pingle wrote:
> Lobby to the PEAR crew to import the patch and we'll add support once it's in there. We have mai... -
03:51 PM Bug #7222 (Needs Patch): Encryption No Longer Enforced for Email Notifications
- Lobby to the PEAR crew to import the patch and we'll add support once it's in there. We have maintained a lot of cust...
-
03:43 PM Bug #7222: Encryption No Longer Enforced for Email Notifications
- Kill Bill wrote:
> Well, I'd hazard to say because it's just another thing to maintain with pretty much no gain? Wan... -
03:04 PM Bug #7222: Encryption No Longer Enforced for Email Notifications
- Well, I'd hazard to say because it's just another thing to maintain with pretty much no gain? Want to be sure TLS is ...
-
02:58 PM Bug #7222: Encryption No Longer Enforced for Email Notifications
- Why can't pfSense customization be made to the pear Mail package, like is done for some others packages, to add the r...
-
07:46 AM Bug #7222: Encryption No Longer Enforced for Email Notifications
- We switched over to the Pear Mail package and at the moment I'm not seeing any equivalent option in their code. It wo...
-
05:10 AM Bug #7222: Encryption No Longer Enforced for Email Notifications
- That wasn't worded very well. Strike that first sentence. This has nothing to do with the "Enable SMTP over SSL/TLS...
-
01:51 AM Bug #7222 (Needs Patch): Encryption No Longer Enforced for Email Notifications
- The "Enable SMTP over SSL/TLS" option does not enforce the use of encryption.
Previous versions also had "Enable S... - 05:06 PM Revision 9570449e: interfaces_ppps_edit remove embedded HTML from setHelp string
- There was only one of these remaining to do.
- 04:58 PM Revision dcef6e2d: interfaces_ppps_edit fixes that will work on 2.3.3 also
- 1) Make "The MTU is too big" message actually come out. The code around line 300 was rubbish (maybe from before boots...
-
04:58 PM Revision 1c0e0eae: Merge pull request #3501 from phil-davis/patch-1
- 04:52 PM Revision 36245b2f: Fix #7226 Package installation message is incomplete
- This makes it remember pkgname after the install finishes and the form is re-submitted.
(cherry picked from commit d1... -
04:52 PM Revision bac8e353: Merge pull request #3503 from phil-davis/patch-3
- 04:52 PM Revision c0e46e9a: pkg_mgr_install remove embedded HTML from result strings
- (cherry picked from commit 682008ff758b942d85ed007b485e0b2fa8e3a11c)
-
04:52 PM Revision 71dbe3f2: Merge pull request #3502 from phil-davis/patch-2
-
04:48 PM Revision ed7bfaa4: Encode the contents of pkg_filter before output. Fixes #7227
-
04:48 PM Revision 7100f041: Encode the contents of pkg_filter before output. Fixes #7227
-
04:45 PM Revision 6ac61204: Encode the contents of pkg_filter before output. Fixes #7227
- 04:42 PM Revision d12bc864: Fix #7226 Package installation message is incomplete
- This makes it remember pkgname after the install finishes and the form is re-submitted.
-
04:31 PM Feature #2358: NAT64 support
- Would like to see support for NAT64/DNS64 in pfsense. Deployment of DNS64 outside of the gateway is somewhat convolu...
- 04:29 PM Revision 682008ff: pkg_mgr_install remove embedded HTML from result strings
-
04:15 PM pfSense Packages Bug #7223: IPv4 Rules not working in Inline Mode
- That's very interesting to know that we are having similar issues Joe!
I hope that either this can be resolved or ... -
03:57 PM pfSense Packages Bug #7223: IPv4 Rules not working in Inline Mode
- James Webb wrote:
> James Webb wrote:
> > Kill Bill wrote:
> > > Your own IP as in something from HOME_NET? Not ex... -
01:56 PM pfSense Packages Bug #7223: IPv4 Rules not working in Inline Mode
- James Webb wrote:
> Kill Bill wrote:
> > Your own IP as in something from HOME_NET? Not exactly useful test either.... -
07:56 AM pfSense Packages Bug #7223: IPv4 Rules not working in Inline Mode
- Kill Bill wrote:
> Your own IP as in something from HOME_NET? Not exactly useful test either. In general, taking sim... -
07:52 AM pfSense Packages Bug #7223: IPv4 Rules not working in Inline Mode
- Your own IP as in something from HOME_NET? Not exactly useful test either. In general, taking similar things to the f...
-
07:47 AM pfSense Packages Bug #7223: IPv4 Rules not working in Inline Mode
- Kill Bill wrote:
> Just to be clear here - If you are looking at the Blocks tab, that is NOT the place to look at wi... -
07:37 AM pfSense Packages Bug #7223: IPv4 Rules not working in Inline Mode
- Just to be clear here - If you are looking at the Blocks tab, that is NOT the place to look at with the inline mode.
-
07:00 AM pfSense Packages Bug #7223 (Resolved): IPv4 Rules not working in Inline Mode
- After adding the following rule to custom.rules:
@drop ip [108.74.97.21, 82.132.247.191] any <> $HOME_NET any (msg... -
04:14 PM Revision ede8a953: Encode 'from' and 'to' before output on pkg_mgr_install.php. Fixes #7225
-
04:14 PM Revision 082f3663: Encode 'from' and 'to' before output on pkg_mgr_install.php. Fixes #7225
-
04:14 PM Revision 2c06742d: Encode 'from' and 'to' before output on pkg_mgr_install.php. Fixes #7225
-
04:09 PM Revision db7a10ab: Update translation files
-
04:07 PM pfSense Packages Bug #7229: Package Manager Update "Suricata" failed
- There is no such code in Suricata package. This is pkg(7) bug. Remove and reinstall the package.
-
12:57 PM pfSense Packages Bug #7229 (Duplicate): Package Manager Update "Suricata" failed
- Error message while updating suricata to 3.1.2_2
Also happened from 3.0_7 to 3.0_8 (reported on pfsense forum: [[h... -
04:01 PM Revision fbe1ea61: Regenerate pot
-
04:00 PM Revision edc4fae1: Merge pull request #3494 from lukehamburg/copy-duid-patch-2
-
03:48 PM Bug #7232 (Resolved): haproxy_pool_edit.php -- sprintf() too few arguments
- https://github.com/pfsense/FreeBSD-ports/blob/devel/net/pfSense-pkg-haproxy/files/usr/local/www/haproxy/haproxy_pool_...
-
03:35 PM Bug #7231: Web UI does not properly remove priq shaping rules when deleting an interface which causes subsequent rule failures without warning in the UI
- I think this was accidentally posted in the pkg's section. Could someone move it to the proper area of pfSense?
-
03:32 PM Bug #7231 (Resolved): Web UI does not properly remove priq shaping rules when deleting an interface which causes subsequent rule failures without warning in the UI
- Reproduce:
1. Provision pfSense 2.3.2 with 1 WAN and multiple LAN's.
2. Configure priq traffic shaper to limit... -
02:45 PM Bug #7209 (Rejected): Something is seriously wrong with firewall aliases
- I can't reproduce this, it's possible it's a side effect of something else in your configuration. Even on 2.3.2_1 eve...
-
01:42 PM Revision 5425b872: Add cpsw to ALTQ list now that the driver supports ALTQ. Ticket #7199
- 12:52 PM Revision 3cc22ff2: interfaces_ppps_edit fixes that will work on 2.3.3 also
- 1) Make "The MTU is too big" message actually come out. The code around line 300 was rubbish (maybe from before boots...
-
12:32 PM Revision 661f3896: Merge pull request #3484 from phil-davis/sethelp-empty
-
12:03 PM Revision d30a6181: Merge pull request #3500 from phil-davis/patch-5
-
12:00 PM Revision 795fba9e: Merge pull request #3499 from phil-davis/sethelp-review4
-
12:00 PM Revision 7b4d7779: Merge pull request #3497 from phil-davis/patch-3
-
11:59 AM Revision be9de914: Revert "setHelp formatting for interfaces.php"
- This reverts commit e6068596baf4307fe3eb9866072800e4c23b6840.
- 11:58 AM Revision e6068596: setHelp formatting for interfaces.php
- There was a fair bit of it, so I have put this in its own pull request.
1) Gets HTML out of the strings that go for t... -
11:58 AM Revision 0334f0a4: Merge pull request #3496 from phil-davis/patch-2
- 11:58 AM Revision baae9d9f: fbegin.inc and fend.inc obsolete
- (cherry picked from commit 5af0922d75724e1eac89017173457f57842387f8)
- 11:58 AM Revision bd44e2af: fbegin.inc and fend.inc are no longer used
- (cherry picked from commit c09188a21938f7b1d19fd845fa7e5b0712dd4a83)
-
11:57 AM Revision 852dcf4c: Merge pull request #3495 from phil-davis/fbegin-fend
- 11:40 AM Revision 690db956: Internationalization graph.php
- 1) A few extra strings to be translated.
2) The scale_type code values 'up' and 'follow' need to be kept as those str... -
11:39 AM Revision d2500121: Merge pull request #3487 from phil-davis/patch-1
-
11:35 AM Revision eaa726b5: Update help message for Zone ID for new region requirement
- (cherry picked from commit 49f90f17bfaf2422d56160ad06ef5e2513beb1ba)
-
11:35 AM Revision 3d7921e8: implement AWS API v4 signing
- (cherry picked from commit ac5ee07ee1daef2f43e728895290ca6d11efe0f3)
-
11:35 AM Revision b6461e84: commit initial fix; need to add hooks for region to zone id
- (cherry picked from commit cb5961d1fa64a45cbec5ef5d677b57f8d62f50b5)
-
11:34 AM Revision 7a9e0470: Merge pull request #3473 from jxmx/7206_route53
-
11:23 AM Bug #3681: Email notifications don't work with IPv6-only SMTP servers
- @smtp.inc@ is gone from 2.4, it's using pear-Net_SMTP and other pear stuff. This bug is not really relevant any more.
-
09:49 AM Bug #3681: Email notifications don't work with IPv6-only SMTP servers
- Maybe this could help? (Although it's in norweign, the code itself is pretty easy and simple)
http://www.webforumet.... - 11:14 AM Revision 93eae66f: license.php getext formats and breadcrumbs
- 1) I added a breadcrumb because the "?" "help on this page" icon does not display nicely without the breadcrumbs sect...
-
11:00 AM Bug #7226 (Feedback): Package installation message is incomplete
- Applied in changeset commit:d12bc864ceb5d656fc094bde7cf5ec96e24bdde9.
-
10:43 AM Bug #7226: Package installation message is incomplete
- See PR https://github.com/pfsense/pfsense/pull/3503
-
10:23 AM Bug #7226: Package installation message is incomplete
- I noticed this on 2.4-BETA, and tried 2.3.3-DEVELOPMENT and 2.3.2-p1 and they all do this.
I suspect this is due t... -
10:19 AM Bug #7226 (Resolved): Package installation message is incomplete
- Install, reinstall or delete a package. At successful end of the action a message is given in the GUI like:
'pfSen... - 10:20 AM Revision 7ae1b34f: setHelp and getttext for i*.php files
-
10:07 AM Feature #7224: Abandon rate in favor of iftop
- While it would be nice, the output from iftop is not printed in a way that would be easy to parse programmatically.
... -
09:45 AM Feature #7224 (Duplicate): Abandon rate in favor of iftop
- Due to the lack of ipv6 functionality in rate and also it's development state (not developed since 2011, please corre...
- 08:48 AM Revision 398821c4: interfaces_bridge_edit setHelp and input_errors formatting
- This had enough things to be worth its own pull request.
1) Get embedded HTML out of setHelp etc strings.
2) Fix some... -
07:54 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Installed build 2.4.0.b.20170207-1441 and same errors appears in
* Services > Squid Proxy Server
* Services > Squ... -
07:44 AM Feature #7199: SG-1000 cpsw nics don't support ALTQ
- It loads shaper rules without error, I see traffic in queues. I pushed a commit to is_altq_capable() in interfaces.in...
- 07:39 AM Revision 4d0c9c59: setHelp formatting for interfaces.php
- There was a fair bit of it, so I have put this in its own pull request.
1) Gets HTML out of the strings that go for t... -
05:36 AM Bug #7206 (Feedback): Authentication Method Used in Bug 6751 Removed by Amazon
- PR has been merged, thanks!
- 01:15 AM Revision 5af0922d: fbegin.inc and fend.inc obsolete
02/06/2017
-
05:59 PM pfSense Packages Bug #7211: DNS Made Easy ACME script not parsing domain IDs properly
- I tried applying that patch to the script on my pfSense install, and the ACME challenge process worked just fine afte...
- 04:50 PM Revision c09188a2: fbegin.inc and fend.inc are no longer used
-
04:34 PM pfSense Packages Feature #7221: ACME package : add standalone mode & specify port used
- In acme.sh there are several options:
*Standalone mode:*
@acme.sh --issue -d aa.com --standalone --httpport 8... -
04:30 PM pfSense Packages Feature #7221 (Resolved): ACME package : add standalone mode & specify port used
- Added the standalone mode, to be able to specify port used for the challenge and the possibility to automatically ope...
-
04:08 PM Revision 71c45eca: add Copy DUID convenience button
- - adds `Copy DUID` convenience button/js
- no page refresh or AJAX -
04:01 PM Revision 478e8919: enhancements to services_dhcp_edit.php
- - added ndp call to get MAC addr if remote client is connected via IPv6
- automatically hide `Copy MAC` button if arp... -
03:55 PM Revision c1387957: Add .zanata-cache to .gitignore
-
03:55 PM Revision 328f2789: Revert PERL related default options from net-mgmt/net-snmp
- (cherry picked from commit 282d025d9756ba8ace2bcfa092e87d5ad6d338da)
-
03:55 PM Revision 6b416a15: Revert PERL related default options from net-mgmt/net-snmp
- (cherry picked from commit 282d025d9756ba8ace2bcfa092e87d5ad6d338da)
-
03:54 PM Revision 07850c91: Merge pull request #3488 from dbaio/master
-
03:53 PM Revision 73c8e3e6: Merge pull request #3490 from phil-davis/sethelp-review3
-
03:50 PM Revision ef7cf05a: Merge pull request #3491 from phil-davis/patch-2
- 03:43 PM Revision 21e768ec: Do not attempt to translate '-DIVIDER-'
- '-DIVIDER-' is a keyword here. If someone does translate this, then the divider is going to go missing when in their ...
- 03:38 PM Revision f8a1be56: user/local/www inc file gettext improvements
-
03:27 PM Bug #6937: Inbound traffic on enc0 is not creating a state with mobile IPsec
- No change on the latest snap built after that commit.
-
02:07 PM Bug #6937 (Feedback): Inbound traffic on enc0 is not creating a state with mobile IPsec
- Jimp, can you check the latest build ?
Relevant commit: https://github.com/pfsense/FreeBSD-src/commit/5d8a65f506d8... -
02:04 PM Feature #7199 (Feedback): SG-1000 cpsw nics don't support ALTQ
- Should work now: https://github.com/pfsense/FreeBSD-src/commit/b95dbdb097fd2d5b148098bcc68e1f57b7dab544
-
01:58 PM pfSense Packages Bug #7205 (Feedback): ACME package ignores DNS-Manual method, defaults to http-01
- Fixed in acme pkg version 0.1.8 which will be available shortly
-
01:25 PM pfSense Packages Bug #7208 (Feedback): ACME ftpwebroot doesn't work
- Pushed a fix for this in acme pkg version 0.1.7, will be available shortly.
-
01:17 PM Revision 282d025d: Revert PERL related default options from net-mgmt/net-snmp
- 12:54 PM Revision 678f1131: Internationalization graph.php
- 1) A few extra strings to be translated.
2) The scale_type code values 'up' and 'follow' need to be kept as those str... -
12:40 PM Revision c728ede6: Merge pull request #3465 from phil-davis/system-widget-filter
-
12:16 PM Revision 4ff3ad47: Revert "Commit updates to the locale messages as best I can"
- This reverts commit 7b25b213ee572f9d5471c29a3b3a1cff99cc55d3.
-
12:16 PM Revision d1b8c781: Revert "fix locale as best I can"
- This reverts commit e25261e4e210376e3db382a1ac52b61b9753a79c.
-
11:44 AM Revision f6f86096: Update translation files
-
11:41 AM Revision ca208721: Regenerate pot
-
10:26 AM Revision d414b7eb: certificatemanager, don't show information from previous certificate if no cert or csr is present in the cert
- (cherry picked from commit 1048585a08ac824057eea35c57fe359b9e6a48fe)
-
10:26 AM Revision 3637e667: Merge pull request #3480 from PiBa-NL/certmgr_20170206
- 10:20 AM Revision 85ba2f8b: Use unique var names in Input.class.php
- (cherry picked from commit a66177645191359e5ce854d733e9be40ada3535b)
-
10:20 AM Revision 26bd803a: Merge pull request #3485 from phil-davis/form-var-names
-
10:16 AM Revision c1518def: Merge pull request #3482 from phil-davis/patch-4
-
10:15 AM Revision 17250753: Merge pull request #3478 from phil-davis/sethelp-review2
-
10:14 AM Revision e243bde0: Merge pull request #3477 from phil-davis/patch-2
-
10:14 AM Revision 7b05dc97: Merge pull request #3476 from phil-davis/sethelp-review1
-
10:11 AM Revision 4b10f802: Merge pull request #3475 from phil-davis/patch-1
- 09:15 AM Revision 9a7e1c95: diag_backup do not use button text for comparisons
- 08:58 AM Revision a6617764: Use unique var names in Input.class.php
-
08:37 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- * System > Advanced > Firewall & NAT
* Services > DNS Resolver > Advanced
Tested, no PHP errors displayed in b... -
08:21 AM Feature #7182: Break up System Widget on the Dashboard
- Stage1 done - PR 3456 has been merged. So users can cut down the amount of content in the existing widget.
Now to th... -
08:14 AM Bug #7219 (Confirmed): vlan(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- The problem, as stated, was incorrect. It's a problem with vlan(4) ALTQ support in general, not specific to any hardw...
-
03:40 AM Bug #7219: vlan(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- What version of pfSense - 2.3.2-p1, 2.3.3-DEVELOPMENT or 2.4-BETA?
-
03:10 AM Bug #7219 (Resolved): vlan(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Adding a VLAN interface on the Traffic Shaper doesn't work.
rc.filter_configure_sync: New alert found: There were... -
07:34 AM pfSense Packages Feature #7220: ACME client port and service config
- Jim Pingle wrote:
> That's a security limitation of Let's Encrypt. Nothing we can do about it.
>
> https://commun... -
07:32 AM pfSense Packages Feature #7220 (Rejected): ACME client port and service config
- That's a security limitation of Let's Encrypt. Nothing we can do about it.
https://community.letsencrypt.org/t/let... -
07:20 AM pfSense Packages Feature #7220 (Rejected): ACME client port and service config
- Hi, any way to configure a port of the http server, i dont use 80 or 443 and is not possible to active letsencrypt.
-
07:31 AM pfSense Packages Bug #1620: Can't use transparent proxy when using bridge.
- I ran some tests with this and was unable to make it work. Adding 'route-to lo0' to the pass rule did not allow this ...
-
06:43 AM pfSense Packages Bug #7218 (Confirmed): acme_inc.sh hard codes 'HMAC-MD5.SIG-ALG.REG.INT' for nsupdate key types
- There are several assumptions that had to be made there for the time being to get it working in a basic fashion (key ...
- 06:06 AM Revision 500272bb: Do not pass empty string to gettext
-
04:55 AM pfSense Packages Bug #7197 (Resolved): Freeradius ldap authentication failed after update 1.7.5 to 1.7.6
- 03:55 AM Revision 1e3443df: Remove unused restore_ver from diag_backup
- I cannot see where this is used any more. The functionality seems to now be done in diag_confbak
- 01:44 AM Revision f64a22e8: Escape '%' in help text
-
12:36 AM Revision 1048585a: certificatemanager, don't show information from previous certificate if no cert or csr is present in the cert
-
12:34 AM Bug #7167 (Feedback): Error creating higher VLAN ID on SG-1000
- Fixed in the latest snapshot.
-
12:31 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- This may be the tradeoff of the fix, in reality won't disable the multiple queues but only one is going to be used an...
-
12:11 AM Bug #6257 (Resolved): Kernel panic with ALTQ
- Fixed in 2.4.
02/05/2017
-
11:49 PM pfSense Packages Bug #7218: acme_inc.sh hard codes 'HMAC-MD5.SIG-ALG.REG.INT' for nsupdate key types
- The file is acme_sh.inc not acme_inc.sh.
-
11:47 PM pfSense Packages Bug #7218 (Resolved): acme_inc.sh hard codes 'HMAC-MD5.SIG-ALG.REG.INT' for nsupdate key types
- 'HMAC-MD5.SIG-ALG.REG.INT' is hardcoded in acme_inc.sh so that is the only type of key that can be used for dns-nsupd...
-
07:45 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Got it. Thanks.
-
07:28 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- I just did a click through every page that my device has and found one more for which I couldn't find an existing rep...
-
06:55 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- System -> Advanced -> Firewall & NAT has already been fixes and will be in the next snap
The two Squid warnings were... -
06:23 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- SG-1000
2.4.0.b.20170204.2301
I was getting this issue on the Status Page. Can confirm that it is now resolved.
... -
02:09 PM pfSense Packages Feature #7217 (Rejected): x hrs per day total
- That isn't possible in pf. If you need time quotas, you'll have to use something that can hook into RADIUS for accoun...
-
02:06 PM pfSense Packages Feature #7217 (Rejected): x hrs per day total
- Currently there is a schedule feature in pfsense, where you can allow an IP from 4pm to 5:59pm for example, Mo-Su
... - 12:59 PM Revision 1a147fcd: setHelp and gettext changes for firewall* pages
- 12:37 PM Revision 01b34665: Firewall Rules Edit translate Source and Destination
- These bits were not translating.
Line 1406 could possibly be like:
```
$group = new Form_Group($name . ' ' . gettext... -
11:39 AM Bug #7214: OpenVPN dh parameters above 4096 are not in /etc/
- Duplicate of Bug #6962 and fixed in 2.4 as noted above. Move on.
-
11:11 AM Bug #7214: OpenVPN dh parameters above 4096 are not in /etc/
- Sorry if I wasn't clear, and this very well could have been fixed already in 2.4.
The main issue on 2.3 is not tha... -
09:28 AM Bug #7149: igb driver queue related crashes
- After completely removing the queues entry in loader.conf.local and more than 5 days uptime, I think this issue is re...
-
09:23 AM pfSense Packages Bug #6511: In some circumstances the HAProxy clone front-end button can add blank list entries to the front end being cloned resulting in a config that cannot be applied.
- Works fine here with pfSense-pkg-haproxy-0.52_4.
-
08:18 AM pfSense Packages Bug #7215 (Not a Bug): ACME challenge fails
-
05:49 AM pfSense Packages Bug #7215: ACME challenge fails
- This is not a bug. The webroot method assumes you have a webserver already running. It won't run any webserver on its...
-
03:57 AM pfSense Packages Bug #7215 (Not a Bug): ACME challenge fails
- ACME challenge fails for "webroot local folder" method because no web server is listening on HTTP 80.
Setup:
1. p... - 07:35 AM Revision 5db70796: Remove HTML from strings in diags files
-
07:15 AM pfSense Packages Bug #7211: DNS Made Easy ACME script not parsing domain IDs properly
- Has been fixed upstream for a while:
https://github.com/Neilpang/acme.sh/commit/3cf85634ebb955ecee7616e88f4e1cef4458... -
07:11 AM Feature #7216: Allow user to choose date display format
- Comments please, if there is more/different flexibility that would be useful.
-
07:10 AM Feature #7216 (New): Allow user to choose date display format
- In various places dates and times are displayed, e.g. rule creation and update date/time stamp.
It would be nice if ... - 04:34 AM Revision 08dbe1c5: Remove HTML from translated shaper setHelp
- and sections must not be translated - examples of IP address formats 255.255.255.255 and so on.
- 03:14 AM Revision dfbc9267: Merge pull request #3469 from phil-davis/fw-nat-out-edit-other-subnet
- 03:13 AM Revision 76f23988: Merge pull request #3472 from phil-davis/patch-2
- 03:13 AM Revision c846ce45: Merge pull request #3474 from lukehamburg/lukehamburg-patch-1
- 03:11 AM Revision 772faea6: Merge pull request #3471 from phil-davis/patch-1
02/04/2017
-
08:54 PM Bug #7214 (Not a Bug): OpenVPN dh parameters above 4096 are not in /etc/
- You have to make them yourself if you want to use the larger ones.
Non-existing entries are hidden on 3.Here is wh... -
08:17 PM Bug #7214 (Not a Bug): OpenVPN dh parameters above 4096 are not in /etc/
- In 2.3.2 (didn't check earlier versions) there is an option to select the dh parameter length when configuring a new ...
-
08:40 PM Revision bdeec29d: Add a '.' to the help text for consistency
- 08:21 PM Revision e402b079: Do not sort the list of locales. That way it is easier to get to the language you want afte accidentally selecting something you no longer understand.
- 08:10 PM Revision 1e0c91d3: Fixed embedded '%' that was breaking setText.
-
07:13 PM Bug #7213 (Resolved): Hyper-V install, no disk found
- *Issue:* When installing 2.4 on Hyper-V 2012R2 Gen1 VM, the installer does not see any drives.
*Workaround:* From ... -
06:10 PM Bug #7210: Unable to set a Alias with FQDN's for IPv6 networks
- I know that it doesn't mean that it is www.google.com, that wasn't the point we are talking about networks here not o...
-
02:28 PM Bug #7210: Unable to set a Alias with FQDN's for IPv6 networks
- Well that's an interesting idea but not exactly valid. If @2a00:1450:401b:803::2004@ is www.google.com, it doesn't me...
-
10:29 AM Bug #7210: Unable to set a Alias with FQDN's for IPv6 networks
- You are right /128 is not reasonable, but /64 would be nice.
Example:
www.google.com AAAA record is 2a00:1450:400... -
10:24 AM Bug #7210 (Not a Bug): Unable to set a Alias with FQDN's for IPv6 networks
- The hint could maybe be more clear. Network aliases can contain single hosts, and FQDN entries are always assumed to ...
-
10:16 AM Bug #7210: Unable to set a Alias with FQDN's for IPv6 networks
- And what exactly do you imagine to happen with a thing like www.google.com/128? Yeah, the hint is piece of crap, the ...
-
09:47 AM Bug #7210: Unable to set a Alias with FQDN's for IPv6 networks
- I am using the right place. I want to create a alias for an ipv6 network not for a ipv6 host. It shoud be possible, i...
-
09:21 AM Bug #7210: Unable to set a Alias with FQDN's for IPv6 networks
- 1/ The mask is absolutely irrelevant for hostname.
2/ You are using the wrong place to do the job, select 'Hosts' fr... -
08:51 AM Bug #7210 (Not a Bug): Unable to set a Alias with FQDN's for IPv6 networks
- As soon as a FQDN is entered, the CIDR mask changes to /32, therefore it's impossible to create a alias for IPv6 netw...
-
06:09 PM Revision e25261e4: fix locale as best I can
-
06:08 PM Revision 7b25b213: Commit updates to the locale messages as best I can
-
05:56 PM Revision 49f90f17: Update help message for Zone ID for new region requirement
-
05:49 PM Revision ac5ee07e: implement AWS API v4 signing
- 05:35 PM Revision 1c3608b3: system_advanced_admin remove href from setHelp strings
- I think that giving long strings that contain various HTML tags in-line through for translation is going to be error-...
- 05:09 PM Revision 31d71150: system_advanced_admin remove setHelp array
-
04:57 PM Feature #7212 (New): Provide Driver for SG-1000 Crypto Accelerator
- As per this thread, there is no FREEBSD driver available for the SG-1000 crypto accelerator:
https://forum.pfsense... -
04:24 PM pfSense Packages Bug #7211 (Resolved): DNS Made Easy ACME script not parsing domain IDs properly
- I'm currently running pfSense 2.3.2_1, and I tried the new ACME package (0.1.5) with DNS Made Easy verification. How...
-
02:10 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Fixed. Thanks for finding those. Embedded '%' that needed to be escaped.
-
01:30 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Seeing the same issue as Dustin on System > Advanced > Firewall. Tested with 2.4.0.b.20170203.2002.
- 01:18 PM Revision dd4ecd98: Fix firewall_nat_out_edit dependency on English
-
12:20 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- Also, wanted to note that the use of v4 signing enables newer regions that didn't support the legacy authentication t...
-
12:17 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- I've tested changes and created a pull request to resolve this issue: https://github.com/pfsense/pfsense/pull/3473.
... -
11:36 AM Bug #7185: DHCP6c SIGTERM, SIGKILL
- Yes, they are both 'hopefully' put to sleep with the changes done in the script patch I sent you and with dhcp6c chan...
-
10:21 AM Bug #7185: DHCP6c SIGTERM, SIGKILL
- Patch is working well so far!
I think possibly #6944 and #7145 should be merged into this ticket? -
09:48 AM Bug #6848: Do not create an IPv4/6 gateway for an interface without according IPv4/6 address
- Confirmed that affects OpenVPN clients that get assigned interfaces. I am running latest snap 2.4.0.b.20170203.2002.
-
02:44 AM Bug #7187: IPSec IKEv2 additional P2 not written to config
- By enabling _Split connections_ on P1 I was able to make it work, and now _statusall_ shows all the routing.
I don... - 02:30 AM Revision f5d762f9: System Information widget filter gettext()
-
02:11 AM Bug #7209 (Rejected): Something is seriously wrong with firewall aliases
- pfS version is 2.3.2-p1.
Unbound host overrides used in FW aliases:
- server.home 192.168.201.1
-- nas.home ... -
01:21 AM Revision cb5961d1: commit initial fix; need to add hooks for region to zone id
02/03/2017
-
11:58 PM pfSense Packages Bug #6875 (Not a Bug): dpinger not switching icmp id automatically
-
11:38 PM pfSense Packages Bug #6875: dpinger not switching icmp id automatically
- I think the report is erroneous. There should be no state association beyond a single ICMP Echo Request and it's Echo...
-
11:37 PM Bug #6913: install on Hyper-v R2
- Broken again.
https://forum.pfsense.org/index.php?topic=124915.0 -
09:26 PM pfSense Packages Bug #7208 (Resolved): ACME ftpwebroot doesn't work
- Below is the output of trying to use ftpwebroot. I redacted some data. As you can see from the log it doesn't appea...
-
07:45 PM Bug #7207 (Closed): Updates and Package Manager broken when pfSense accessed via SSH port forward
- Hello,
i am still setting up my pfSense device, so at this point it is just a client device connected to my netwo... -
07:27 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- Service no longer works in that is receives a signing error even though all details are correct.
-
07:19 PM Bug #7206 (Resolved): Authentication Method Used in Bug 6751 Removed by Amazon
- It appears that Route53 has stopped working with the AWS3-HTTP authentication method sometime in the last month. This...
-
06:57 PM Revision ab2e7a2e: Build acme pkg
-
06:00 PM pfSense Packages Bug #7205 (Resolved): ACME package ignores DNS-Manual method, defaults to http-01
- My initial run using DNS-Manual as the method failed with the log suggesting DNS was ignored and http-01 was attempte...
-
05:31 PM Revision 70ada819: Remove infra scripts
-
05:15 PM Revision f21d286d: Add license and copyright
-
04:45 PM Revision 681264e0: Add a script to update translations
-
04:39 PM Revision e64fed52: Update translation files
-
04:34 PM Revision 193515b2: Regenerate pot
- 03:49 PM Revision 4ebcee24: Several more fixes for setHelp to assist with translation
-
03:21 PM pfSense Packages Feature #7189: Letsencrypt acme sync in HA environment
- To confirm, with the latest Let's Encrypt package, you can get by with LE only on the primary node. It can generate t...
- 03:07 PM Revision 4b329613: Fix #7202
- Fix several sprintf errors by escaping '%'s and removing '[ ]' which had been use to pass arguments to setHelp as an ...
-
02:31 PM Revision 4dc9ba9f: Exit when xgettext fails
-
02:29 PM pfSense Packages Bug #7197: Freeradius ldap authentication failed after update 1.7.5 to 1.7.6
- Thanks it's work fine
-
03:02 AM pfSense Packages Bug #7197 (Feedback): Freeradius ldap authentication failed after update 1.7.5 to 1.7.6
- PR has been merged, thanks!
-
02:23 PM Revision 23afee66: Remove \n from gettext strings
-
02:12 PM Feature #7204 (Duplicate): Router Advertisements: Option to not advertise default routes
- I'm using a pfSense appliance in a temporary role mainly to enable "proper" IPv6 support on our network, though it wi...
-
02:00 PM Feature #6753: Interfaces list order not consistent
- +1 for making the interfaces list sorted alphabetically by their DESCRIPTION (NAME) defined in /interfaces.php.
T... -
09:13 AM Feature #6753: Interfaces list order not consistent
- The interface order on Interfaces > Assignments is significant for HA purposes but otherwise alphabetical tends to be...
-
07:07 AM Feature #6753: Interfaces list order not consistent
- Can I protest against this change? I upgraded to 2.4 and so far this is the only change that is really causing me a l...
-
01:54 PM Bug #7203 (Resolved): pkg_mgr_installed.php - visually separate the legend
- Some users think that it's related to the last package in the list, instead of being a legend.
https://forum.pfse... -
01:11 PM pfSense Packages Bug #7192 (Feedback): ACME package cannot update more than one nsupdate type domain
- Fixed by https://github.com/pfsense/FreeBSD-ports/commit/73246541879f9256f4241b2a22dc61e6e31e6bd2
-
12:27 PM pfSense Packages Bug #7192 (Assigned): ACME package cannot update more than one nsupdate type domain
- I figured out a way to fix this. It's not pretty but the way the client passes data and processes the api commands do...
-
12:34 PM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- I am seeing a similar error on System -> Advanced -> Firewall & NAT
Warning: sprintf(): Too few arguments in /usr/... -
09:10 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Applied in changeset commit:4b329613ee7bb2dc85dd72035709853b83061a58.
-
08:59 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Thanks. Looks like there are a few embedded '%' that now need to be escaped, and arguments passed as an array in [ ] ...
-
08:35 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Just double checked it's not my patch. :) Clean snapshot update shows it.
-
08:25 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Posted by one of my testers after patching one of mine for testing, this is what he posted,
Martin if I goto the e... -
08:23 AM Bug #7202 (Feedback): "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
-
08:18 AM Bug #7202: "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- I knew there would be some :) Could you attach the call stack or tell me which page you had selected when this occured?
-
08:10 AM Bug #7202 (Resolved): "Warning: sprintf(): Too few arguments in /usr/local/www/classes/Form/Group.class.php on line 65 Call Stack:
- Problem with changes to the setHelp function or calls to it.
-
10:46 AM Revision 042911d3: Fix #7120: Restore vendor mac address when spoofmac is set to blank
-
10:35 AM Revision 67bc9afc: Simplify logic
-
10:35 AM Revision 77890d7d: Simplify logic
-
09:46 AM Revision bc8eedaa: Really fix #7120 after a bad copy/paste
-
09:03 AM Revision d1fe01d2: Set ntp gps mode for pgrmf even if no other modes are being set.
- (cherry picked from commit 821110e8ff76564c23783c554fc89cd9458683ac)
-
09:03 AM Revision 5476b118: Add to NTP GPS processing of PGRMF sentence
- (cherry picked from commit 6924a2bf34a70cd33284a28ca3575f33f9834375)
-
09:03 AM Revision c126fc79: Merge pull request #3463 from jskyboo/master
-
06:11 AM Bug #7200: Diagnostics> DNS Lookup: external links to DNSstuff use wrong parameter
- ok, thanks for checking
-
06:07 AM Bug #7200: Diagnostics> DNS Lookup: external links to DNSstuff use wrong parameter
- I got onto a production 2.3.2-p1 system and yes, it has that bug.
I expect it was fixed for 2.3.3 and 2.4 onwards by... -
05:48 AM Bug #7200: Diagnostics> DNS Lookup: external links to DNSstuff use wrong parameter
- With 2.3.2 whatever hostname I query the urls are appended with _Array_. I'll try to setup a testing VM
-
05:38 AM Bug #7200: Diagnostics> DNS Lookup: external links to DNSstuff use wrong parameter
- I tried on 2.3.3-DEVELOPMENT and 2.4-BETA and cannot reproduce this. If I put a valid name, then it gives me ip=1.2.3...
-
03:47 AM Bug #7200 (Closed): Diagnostics> DNS Lookup: external links to DNSstuff use wrong parameter
- The two links gets the _ip=_ parameter, but the generated url have _Array_ instead of the actual queried IP address
... -
04:50 AM Feature #7011 (Feedback): Retain vendor MAC address at power up
- Fixed by commit:042911d34ab846e7241deeb9fd6469a1460febcf
-
04:10 AM Feature #7201 (New): NTP Support multiple GPS reference clocks
- PR https://github.com/pfsense/pfsense/pull/3468
-
03:44 AM Bug #7183 (Resolved): Interface Groups can be entered with the same name
-
03:36 AM Bug #7183: Interface Groups can be entered with the same name
- In 2.4.0-BETA (arm) built on Thu Feb 02 12:37:50 CST 2017
Validation seems OK now, following description instructio... - 03:31 AM Revision 430f8fbc: Merge pull request #3466 from phil-davis/sethelp-gettext
- 03:27 AM Revision 314a088a: Remove unneeded sprint and gettext in setHelp
-
03:20 AM Bug #7120: Wrong file permissions on /var/tmp and missing sticky bit when using /var as RAM disk
- 2.4.0-BETA (arm) built on Thu Feb 02 12:37:50 CST 2017
Still not fixed.
Not using RAM disk:
drwxrwxrwt 4 root ... -
03:11 AM Bug #7128: system_advanced_network.php - fugly IPv6 over IPv4 input field alignment
- Can't see any change, but it would look less silly if the input field was below the Tick box
-
02:31 AM Revision 3a710cf9: Build acme pkg
-
02:20 AM Revision 50b9cd38: Provide info on services_checkip.php about what the server must return, and provide two examples of server-side code to return the client address. Fixes #6374
02/02/2017
-
10:48 PM Bug #7185: DHCP6c SIGTERM, SIGKILL
- Thank you very much. I am testing these now. I got the binaries scp'd onto the test box. I moved the stock binarie...
-
08:29 AM Bug #7185: DHCP6c SIGTERM, SIGKILL
- You cannot patch it Luke, it's an exe. I can send it to you when I am back at my desk.
-
08:22 AM Bug #7185: DHCP6c SIGTERM, SIGKILL
- Martin, could you provide a link to the PR?
-
10:28 PM Feature #7199 (Resolved): SG-1000 cpsw nics don't support ALTQ
- According to this thread and posts from jimp the cpsw NICs in the SG-1000 don't support ALTQ at the moment:
jimp:
... -
08:47 PM Revision 5ea71ebd: Add Spanish and Chinese Simplified to the list of available languages
-
08:46 PM Revision 5b780770: Create .mo files for zh_Hans_CN and es
-
08:44 PM Revision 95748672: Update translations from Zanata
-
08:38 PM Revision 10e6f9ea: Regenerate pot
-
08:32 PM Revision 6ca93df3: Retain vendor MAC address for all interfaces during boot. Ticket #7011
-
08:32 PM Revision b17d47b6: Allow to build variant ISO image as done for memstick
-
08:31 PM Revision 40c875d3: Allow to build variant ISO image as done for memstick
-
07:48 PM Feature #6374: Provide sample server-side logic to report peer's IP address for use with DDNS
- There may potentially be a need to prevent caching too. Even if pfSense doesn't cache it, there could be CDN's such ...
-
12:30 PM Feature #6374 (Feedback): Provide sample server-side logic to report peer's IP address for use with DDNS
- Applied in changeset commit:186c7a6ca49af0d848c1082bfd7f6d9f0cde7046.
-
06:36 PM pfSense Packages Bug #7197: Freeradius ldap authentication failed after update 1.7.5 to 1.7.6
- Given the impressive number of details provided, my crystal ball says that - out of the ~4500 lines of code changed i...
-
12:57 PM pfSense Packages Bug #7197 (Resolved): Freeradius ldap authentication failed after update 1.7.5 to 1.7.6
- Hi
After updating freeradius package from 1.7.4 to 1.7.5 version, it's failed to authenticate via Ldap.
My Con... -
06:20 PM Revision 186c7a6c: Provide info on services_checkip.php about what the server must return, and provide two examples of server-side code to return the client address. Fixes #6374
- 05:13 PM Revision d2a2f018: Remove unneeded sprintf from setHelp calls
- 04:56 PM Revision a9a7de59: COnvert the setHelp method(s) to accept conventioanl printf style argument lists. e.g.: setHelp("%d interfaces have been detected", $numIfs);
-
02:28 PM Feature #7011: Retain vendor MAC address at power up
- I'll take it
-
02:21 PM Bug #7198 (Resolved): nginx-error.log is not circular and can fill filesystem
- Unlike almost all of the other log files contained in @/var/log@, nginx-error.log is not circular. Because it grows ...
- 01:14 PM Revision 718b3b0b: System Information Widget Filter
-
11:33 AM Feature #7196 (Resolved): setHelp method should use more conventiol argument syntax
-
11:33 AM Feature #7196 (Resolved): setHelp method should use more conventiol argument syntax
- The setHelp methods currently use an array to pass position arguments to sprintf. This has caused people to employ sp...
-
11:05 AM Bug #7163: IGMP Proxy does not valid inputs
- In the config for igmpproxy, Network populates altnet and has to be in subnet format. Since the GUI has a drop-down f...
-
10:43 AM Bug #7195 (New): pkg_edit.php - <checkenablefields> tag has no effect on fields other than checkbox/input
- When messing with another piece of JS for Squid, I figured out that I'd rather not be missing with it. :P So, it woul...
-
09:59 AM Bug #7194 (Rejected): CARP/IP Aliases under same subnet not synced correctly
- I can't reproduce this on a current 2.4 snapshot. Additional addresses fail over all at once as expected.
-
09:34 AM Bug #7194 (Rejected): CARP/IP Aliases under same subnet not synced correctly
- If you set a CARP VIP e.g. an address on the WAN subnet xxx.xxx.xxx.xx1/28. Then set another address, be it another C...
-
09:03 AM Revision 821110e8: Set ntp gps mode for pgrmf even if no other modes are being set.
-
08:41 AM Revision 6924a2bf: Add to NTP GPS processing of PGRMF sentence
-
07:35 AM Feature #7182: Break up System Widget on the Dashboard
- It has come up before, at least on the forum, but I don't see an existing ticket for it yet. I agree it would be nic...
-
07:29 AM Feature #7182: Break up System Widget on the Dashboard
- And I have a feeling that breaking up the System Information widget has been discussed before, so there may be anothe...
-
07:24 AM Feature #7182: Break up System Widget on the Dashboard
- PR https://github.com/pfsense/pfsense/pull/3465 provides a first part of addressing this. It allows the user to choos...
-
04:52 AM Bug #5993: dhcp6c not started until an RA received
- It's not his modem, he's getting a prefix, all is well there. Just looked at the video. Let me think on it...
Go... -
02:45 AM Feature #7193: NTP process PGRMF
- PR https://github.com/pfsense/pfsense/pull/3463
-
02:42 AM Feature #7193 (Resolved): NTP process PGRMF
- The Garmin only NMEA sentence PGRMF can be used by NTP as the time sync. Unlike the other NMEA sentences PGRMF includ...
-
01:16 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- Constantine Kormashev wrote:
> I noticed with new firmware SG4860 uses CPU resources *on 25% more* than on previous ... -
12:55 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- I noticed with new firmware SG4860 uses CPU resources *on 25% more* than on previous version.
Now it is 185% CPU IDL...
02/01/2017
-
10:22 PM Bug #5993: dhcp6c not started until an RA received
- J L wrote:
> Daryl Morse wrote:
> > J L wrote:
> >
> > > Alright. I doubt hardware matters too much, but I'll li... -
07:35 PM Bug #5993: dhcp6c not started until an RA received
- Daryl Morse wrote:
> J L wrote:
>
> > Alright. I doubt hardware matters too much, but I'll list some facts.
> > ... -
06:46 PM Bug #5993: dhcp6c not started until an RA received
- J L wrote:
> Alright. I doubt hardware matters too much, but I'll list some facts.
> WAN gateway: Actiontec V2000... -
04:31 PM Bug #5993: dhcp6c not started until an RA received
- Martin Wasley wrote:
> I'll pm you with my email address.
>
> Edit.. you're not showing yours either.. :)
jtl... -
04:27 PM Bug #5993: dhcp6c not started until an RA received
- Do you have Daryl's pm?
-
04:24 PM Bug #5993: dhcp6c not started until an RA received
- I'll pm you with my email address.
Edit.. you're not showing yours either.. :) -
09:57 PM pfSense Packages Bug #7190: pfSense-pkg-acme Bug - php errors on pages that list certificates when no LE Certs have been created yet (eg Cert. Manager - Certificates, OpenVPN - Servers)
- PR https://github.com/pfsense/FreeBSD-ports/pull/286
-
03:55 PM pfSense Packages Bug #7190 (Resolved): pfSense-pkg-acme Bug - php errors on pages that list certificates when no LE Certs have been created yet (eg Cert. Manager - Certificates, OpenVPN - Servers)
- I just installed pfSense-pkg-acme and went to the Cert. Manager - Certificates Page. I see the following output imme...
-
08:12 PM pfSense Packages Bug #7192 (Resolved): ACME package cannot update more than one nsupdate type domain
- With multiple domains in the "Domain SAN List" set to nsupdate, it only appears to use the last key entered, rather t...
-
07:46 PM pfSense Packages Bug #7191 (Resolved): squid package EN-US grammar errors
- In the Services > Squid Proxy Server > Antivirus > Enable Manual Configuration section, the warning "Warning: Only en...
-
05:11 PM pfSense Packages Feature #7189: Letsencrypt acme sync in HA environment
- There are a couple considerations here to keep straight for GUI use as well.
* One cert with SANs for both hosts i... -
02:13 PM pfSense Packages Feature #7189 (Resolved): Letsencrypt acme sync in HA environment
- Configure the letsencrypt package https://github.com/pfsense/FreeBSD-ports/tree/devel/security/pfSense-pkg-acme to sy...
-
01:50 PM pfSense Packages Feature #4752 (Resolved): SQUID. Exception for speed limits
-
01:36 PM pfSense Packages Feature #4752: SQUID. Exception for speed limits
- Works.
-
01:49 PM pfSense Packages Feature #2825 (Resolved): OpenBGPd: Add options prepend-neighbor and prepend-self
-
01:32 PM pfSense Packages Feature #2825: OpenBGPd: Add options prepend-neighbor and prepend-self
- Fixed with https://github.com/pfsense/FreeBSD-ports/commit/df93449ea55537c48bca4304f72aa7ced243a116 - close please.
-
01:49 PM pfSense Packages Feature #6537 (Rejected): Suricata does not autopopulate IP Reputation list from Emerging Threats on rules update
-
01:12 PM pfSense Packages Feature #6537: Suricata does not autopopulate IP Reputation list from Emerging Threats on rules update
- Can be closed. Feature misunderstanding.
-
01:44 PM pfSense Packages Feature #6022: Consider MLVPN for bonded VPN
- This feature would bring high value to the product and really make it stand out from the crowd. Not many solutions a...
-
01:16 PM Bug #6363: AutoConfigBackup Restore Actions column missing due to long XMLRPC sync merge strings in the configuration description
- Wraps just fine without any CSS, as seen on the screenshot. Close, please.
-
11:55 AM Feature #4405: Traffic shaping doesn't work when applied to a bridge interface
- Any news on this? Issue still exists in 2.3.2. No Traffic shaper on bridge0 even with:
net.link.bridge.pfil_member=0... -
11:10 AM Revision 121dd971: Regenerate pot
-
11:10 AM Revision af7c08a5: Merge pull request #3462 from phil-davis/percent-s-www
- 10:58 AM Revision 702fa4d0: Code with multiple %s in usr/local/www
-
10:31 AM pfSense Packages Bug #7188 (Closed): Squid update issue
- Already fixed
-
10:06 AM pfSense Packages Bug #7188: Squid update issue
- ...
-
09:27 AM pfSense Packages Bug #7188 (Closed): Squid update issue
- Hi, after updating (yesteray) squid my web ui is not working any more! Here is the error:
Parse error: syntax erro... -
09:54 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- PR Pushed upstream as fix needed for dhcp6c PID issue - Redmine #7185.
- 09:49 AM Revision 8a6aac94: diag_reseststate sourcetablehelp escape of double-quotes not needed
- The backslash escaping of the double-quotes here displays the backslashes literal on the GUI. Escaping is not needed ...
-
09:49 AM Revision 935b826f: Merge pull request #3461 from phil-davis/patch-3
-
09:48 AM Revision 7881b720: Merge pull request #3460 from phil-davis/percent-s
- 09:47 AM Revision ab476790: get_service_status_icon fix description_state format
- If "description_state" is requested here, there are too many "%s" substitutions in the string for sprintf().
Also, t... -
09:47 AM Revision 4d362392: Merge pull request #3459 from phil-davis/patch-2
-
09:47 AM Bug #7066 (Resolved): vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Thanks!
- 09:46 AM Revision cf80bd5f: Redmine #7173 Do not allow pkg_ for If, IfGroup, Alias
- (cherry picked from commit c9d93b62b0cc559d1ed4326212b6385cae2eb398)
-
09:46 AM Revision 98edca82: Merge pull request #3458 from phil-davis/ifname-nopkg
- 09:42 AM Revision 1767e1c6: Fix #7183 Do not allow Interface Groups with the same name
- I should stop trying bad stuff, there seem to be so many holes to find in the validation :)
(cherry picked from commi... -
09:42 AM Revision b9957749: Merge pull request #3456 from phil-davis/patch-1
-
09:40 AM Revision e8942021: Merge pull request #3455 from VPSrv/v2_3-patch-1
-
09:39 AM Revision 4cb6be62: Remove unused broken functions
- Not sure what was the idea here, but these are not used anywhere, do nothing as they immediately call ```return false...
-
09:39 AM Revision 3b90854d: Merge pull request #3454 from doktornotor/patch-1
- 09:31 AM Revision 4ede308c: diag_reseststate sourcetablehelp escape of double-quotes not needed
- The backslash escaping of the double-quotes here displays the backslashes literal on the GUI. Escaping is not needed ...
- 08:33 AM Revision 1579e70f: Code with multiple %s in etc
- 08:07 AM Revision b3119a61: get_service_status_icon fix description_state format
- If "description_state" is requested here, there are too many "%s" substitutions in the string for sprintf().
Also, t... -
07:43 AM Bug #7187: IPSec IKEv2 additional P2 not written to config
- And it does not show in the routed connection of _statusall_...
-
07:30 AM Bug #7187 (Closed): IPSec IKEv2 additional P2 not written to config
- I have a v2 tunnel with a second P2 NATting the OpenVPN subnet to the tunnel which is not working. The traffic from t...
-
05:57 AM Bug #6650: Option needed to disable HSTS
- Bump here. This breaks even things running on pfSense itself, such as the darkstat package (HTTP only). It will break...
-
05:51 AM Bug #6624: changes in IPsec config should down the connection
- As a sidenote: When using IPsec mobile clients with PSK keys it would be preferred not to take the entire IPsec servi...
-
05:00 AM Bug #7186 (Resolved): Unable to use national symbols in password fo ACB package
- While using ACB package it is not possible to use national symbols in crypto password. I was trying to set password w...
-
04:51 AM Bug #7185 (Resolved): DHCP6c SIGTERM, SIGKILL
- I have found that when issuing a SIGTERM to dhcp6c that it immediately deletes the pid file, however, if the WAN inte...
-
04:39 AM Bug #7184 (Rejected): FW limits MTU to 1280 when using VPN tunnel to F5
- If I'm using local network behind pfSense I get a tun0 device with MTU limited to 1280.
When using the tunnel behind... - 04:14 AM Revision c9d93b62: Redmine #7173 Do not allow pkg_ for If, IfGroup, Alias
-
04:14 AM Revision 5f3e94fb: More sanitising of ipprotocol and other input fields
- $_POST['ipprotocol'] needs a bit more sanitising. Some conditions test if it's a zero-length string, other conditions...
- 03:57 AM Revision 89ac71d3: Fix #7183 Do not allow Interface Groups with the same name
- I should stop trying bad stuff, there seem to be so many holes to find in the validation :)
-
03:50 AM Bug #7183 (Feedback): Interface Groups can be entered with the same name
- Applied in changeset commit:89ac71d38a4c49e1537e4afe2b34b2457d9817a7.
-
03:25 AM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- Yeah, I think it should behave like the IPsec/OpenVPN ones, they don't let you mess with those either. :) (Well, exce...
-
02:49 AM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- I guess the package should be responsible for deleting the Interface Group as it uninstalls itself.
So the Interface... -
02:39 AM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- Heh, none that I'd know of ATM except tinc, but it simply needs to be something, so that some checking can be done fo...
01/31/2017
-
11:01 PM Bug #5993: dhcp6c not started until an RA received
- Martin Wasley wrote:
> OK, I can see dhcp6c is doing its job and launching RTSOLD, which is launching rc.newwanipv6.... -
10:39 PM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- What other packages use the "pkg_" prefix to generate names in this namespace?
-
10:39 PM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- PR https://github.com/pfsense/pfsense/pull/3458
To fix validation of Interface, Interface Group and Alias names. -
09:55 AM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- To get this really fixed, it's needed to
1/ revert a bunch of other commits that allowed that stuff specifically ... -
09:30 AM Bug #7173 (Feedback): [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- Applied in changeset commit:b835c2dd77a09ea46b5d6abd8d2271332bf52367.
-
09:17 AM Bug #7173: [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- PR https://github.com/pfsense/pfsense/pull/3452
The char set allowed should be the same as for Interfaces and Aliases. -
09:58 PM Bug #7183: Interface Groups can be entered with the same name
- Woo-hoo, I got allocated PR https://github.com/pfsense/pfsense/pull/3456
-
09:55 PM Bug #7183 (Resolved): Interface Groups can be entered with the same name
- 1) Add an Interface Group named "abc"
2) Add an Interface Group named "def"
3) Edit Interface Group "def", change i... - 09:56 PM Revision 65e15a1a: vpn_openvpn_server: fix missing parameter
- 07:51 PM Revision 413cec31: Fixed #7180
- 07:50 PM Revision 070379bb: Fixed #7180
-
07:33 PM Feature #7182 (New): Break up System Widget on the Dashboard
- The system widget is quite useful, however there is a lot of information in one place (and it is quite tall, so the s...
-
07:30 PM Revision edba33b5: Remove unused broken functions
- Not sure what was the idea here, but these are not used anywhere, do nothing as they immediately call ```return false...
-
07:20 PM Feature #7181 (New): Add Top and Add Bottom on Seperator
- Currently when separators are in use, to add a rule under the separator, you have to create the rule at the bottom of...
-
06:57 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Luiz Otavio O Souza wrote:
> Should work now: https://github.com/pfsense/FreeBSD-src/commit/91384809a74dc98ef0d2a173... -
06:18 PM Bug #7156: Change in 'Block bogon networks' or 'Block private netowrks' GUI options kills routing entries for OpenVPN interfaces.
- As I've thought about this more, it seems to me that the correct behavior is for "Apply Changes" to trigger a restart...
-
04:08 PM pfSense Packages Bug #7009 (Resolved): syslog_ng Log Viewer page didn't get converted to the new 2.3 bootstrap
-
04:07 PM pfSense Packages Bug #7009: syslog_ng Log Viewer page didn't get converted to the new 2.3 bootstrap
- Works, thanks for help.
-
12:51 PM pfSense Packages Bug #7009 (Feedback): syslog_ng Log Viewer page didn't get converted to the new 2.3 bootstrap
- 03:33 PM Revision 4181014a: Required fields for VPN pages
- (cherry picked from commit 1bbdab13e436f5f2b9e381886be4d9c2d1a4e44f)
-
03:30 PM Revision 0a609a57: Merge pull request #3451 from phil-davis/required-fields-vpn
-
03:29 PM Revision 75e18196: Fix #7173 Interface Group Name cannot contain dash
-
03:27 PM Revision e4976ba0: Add .zanata-cache to .gitignore
-
03:26 PM Revision 1c505f17: Merge pull request #3452 from phil-davis/ifgroup-name
- 03:14 PM Revision b835c2dd: Fix #7173 Interface Group Name cannot contain dash
-
02:09 PM Revision 581e88dd: Sync translations from Zanata
-
02:00 PM Bug #7180: Disabled OpenVPN clients are not shaded in the gui
- Applied in changeset commit:070379bbc0cf84d82f52a0adfe2bdc6014695f7e.
-
01:50 PM Bug #7180 (Feedback): Disabled OpenVPN clients are not shaded in the gui
- Fixed copy/paste error.
Thanks for the report. -
01:19 PM Bug #7180 (Resolved): Disabled OpenVPN clients are not shaded in the gui
- When I disable an openvpn client, it's not indicated in the clients page. All clients appear the same, active.
Lin... -
02:00 PM Revision 4c506e60: Remove broken items from japanese translation
- 01:55 PM Revision 1bbdab13: Required fields for VPN pages
-
12:53 PM Revision 464186e3: Add zanata.xml and exclude it from base pkg
-
12:52 PM Revision 37ccf3c0: Update translation files
-
12:45 PM Revision 6d0a122c: Update pot PATH
-
12:44 PM Revision 08025068: Add .zanata-cache to .gitignore
-
12:32 PM Revision 33cf05ac: Move pot file out of locale languages directories
-
12:13 PM Revision 10eaf773: Re-generate pot
-
11:08 AM pfSense Packages Bug #6928 (Feedback): freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
-
09:45 AM Bug #7178 (Feedback): pfSense themes don't handle package XML field without <description> tag properly
- Unable to reproduce using:
Ubuntu Firefox
macOS Firefox, Safari, Chrome
Tried pfSense and Compact red themes. ... -
02:44 AM Bug #7178 (Rejected): pfSense themes don't handle package XML field without <description> tag properly
- See
Compact-Red (working properly): https://forum.pfsense.org/index.php?topic=124759.msg689034#msg689034
pfSense (... -
09:34 AM Todo #7160 (Feedback): Mark Required Fields on GUI Pages
-
09:19 AM Todo #7160: Mark Required Fields on GUI Pages
- PR https://github.com/pfsense/pfsense/pull/3451 is the last set of changes for this.
-
09:21 AM Feature #7122: Add filters to various dashboard widgets
- I think that is it. Unless anyone has another favorite, the dashboard widgets can be given a last test and this can b...
-
08:00 AM pfSense Packages Feature #7179: Package Filer into 2.3
- Also did xmlrpc 2.4 adjustments:
https://github.com/pfsense/FreeBSD-ports/pull/277/commits/8d27c452ce42ca2ef0d65b65b... -
04:57 AM pfSense Packages Feature #7179 (Resolved): Package Filer into 2.3
- Pull Request to include the filer package in pfSense >= 2.3
https://github.com/pfsense/FreeBSD-ports/pull/277 -
03:46 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- Tests repeated as instructed by Constantine - SG4860 did not crash with 2.4 built on Mon Jan 30 22:08:41 CST 2017
-
12:43 AM Bug #7149: igb driver queue related crashes
- Updated to the lastest snapshot (Mon Jan 30 22:08:41 CST 2017), set queues to 2 and tried this on a DMZ host for a fe...
01/30/2017
-
08:34 PM Bug #7177 (Duplicate): IPv6 Monitor IP does not seem to propagate
- Duplicate with #7176. Let's close this one.
-
08:24 PM Bug #7177: IPv6 Monitor IP does not seem to propagate
- Duplicated Issue please close.
-
08:20 PM Bug #7177 (Duplicate): IPv6 Monitor IP does not seem to propagate
- 2.3.3 snaps work. This particular install uses a 6to4 tunnel from the ISP.
Setting "Gateway Monitor IP" in 2.4 sna... -
08:31 PM Bug #7149 (Feedback): igb driver queue related crashes
- This commit fix a few obvious issues in igb: https://github.com/pfsense/FreeBSD-src/commit/215ddb035593bc4cee275b9dbb...
-
08:30 PM Bug #7166 (Feedback): During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- This commit fix a few obvious issues in igb: https://github.com/pfsense/FreeBSD-src/commit/215ddb035593bc4cee275b9dbb...
-
12:28 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- The FreeBSD PR also suggest that disabling the LEGACY_TX support (and ALTQ support altogether) would also fix the cra...
-
12:21 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- Seems like a know bug in FreeBSD (or sort of): https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=208409#c11
Also d... -
08:19 PM Bug #7176 (Resolved): IPv6 Monitor IP does not seem to propagate
- 2.3.3 snaps work. This particular install uses a 6to4 tunnel from the ISP.
Setting "Gateway Monitor IP" in 2.4 sna... -
03:54 PM Bug #7066: vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Luiz Otavio O Souza wrote:
> Should work now: https://github.com/pfsense/FreeBSD-src/commit/91384809a74dc98ef0d2a173... -
12:30 AM Bug #7066 (Feedback): vmx(4) interfaces do not have ALTQ support on pfSense 2.4, they had ALTQ support on 2.3
- Should work now: https://github.com/pfsense/FreeBSD-src/commit/91384809a74dc98ef0d2a173718bd79bd77c13bb
- 03:36 PM Revision 51685157: Required fields for System pages
- (cherry picked from commit 153c3aa61fe65c51d584a57c032a4805048e3062)
-
03:35 PM Revision ac9759a2: Merge pull request #3449 from phil-davis/required-fields-system
-
03:33 PM Revision 7620266f: Misc cleanups at get_pkg_info()
- * rename function args to be clearer what they do ($local_only was quite ambiguous, at first sight it could mean any ...
-
03:33 PM Revision c6995b29: fix copy/paste - I think!
- (cherry picked from commit 2f633b526075b2ed5e0e160ef6f0d025b509bd70)
-
03:33 PM Revision 1f9edebb: use wrapped version of pkg info -e instead
- (cherry picked from commit e5f96a2cb3c0cad0c828148bd7b8d45c130a9b17)
-
03:33 PM Revision 5e446a25: get_pkg_info() fallback using pkg info if no local copy of repo catalog (resubmit)
- Resubmit of PR #3157 with fix.
The issue in #3157 was that `pkg info` and `pkg search`, undocumented in man pages, s... -
03:33 PM Revision 0f7f09f3: Merge pull request #3418 from stilez/patch-38
-
03:24 PM pfSense Packages Feature #2825: OpenBGPd: Add options prepend-neighbor and prepend-self
- Hello,
I know it's been a long time since this thread was started, but we started using the openBGPd package and not... - 02:57 PM Revision 153c3aa6: Required fields for System pages
-
02:21 PM Bug #7157: Traffic graphs cause the tab to crash when run in the background
- Think ive found the source of the background leak in a growing list of timer objects waiting for a 'requestAnimationF...
- 01:59 PM Revision 678c6a56: Fixed #7171
- Moved setHelpText() to helpers file
-
01:20 PM Bug #7174: OpenVPN Server and Client not detecting Hardware Cryto
- Kill Bill wrote:
> I'd hope that is intentional fix, since enabling HW crypto there actually makes performance _sign... -
12:51 PM Bug #7174: OpenVPN Server and Client not detecting Hardware Cryto
- I'd hope that is intentional fix, since enabling HW crypto there actually makes performance _significantly_ worse.
... -
12:48 PM Bug #7174 (Duplicate): OpenVPN Server and Client not detecting Hardware Cryto
- PC Engines APU2C4, AMD GX412TC SOC CPU.
Cryptographic Hardware AES-NI CPU-based Acceleration enabled.
Dashboard sho... -
01:04 PM Bug #7175 (Not a Bug): SIP MESSAGE UDP packets not passed despite rules & pcaps showing otherwise
- I have two pfSense boxes in failover configuration both running NanoBSD 2.3.2-RELEASE (amd64) and a VoIP server on th...
- 12:32 PM Revision 129a4370: More required fields for NAT pages
- (cherry picked from commit 877be5e6205ada2608b364f57150010ba473e66d)
- 12:31 PM Revision 65b8c1ed: Required fields in NAT pages
- (cherry picked from commit f2e58c16307795f572ff443e999c54eb6a9839e7)
- 12:31 PM Revision edfefd7e: Required fields in diagnostics
- (cherry picked from commit 3e2028f4dca359e715058d2c35ae0df5b939657e)
- 12:29 PM Revision f25e48e4: More required fields for Interface pages
- (cherry picked from commit fb572e810abe247c273c27ffafb129430b13be1f)
- 12:27 PM Revision eb75a6be: Use gettext on Username and Password
- (cherry picked from commit e52b5a409faa41222a4ff0c917355eb66d0ff19a)
- 12:27 PM Revision 23f933df: Required fields in Interfaces pages
- (cherry picked from commit 1095b20410963e748fe13268e6fa8f35ccce2319)
- 12:26 PM Revision 5c914c00: Required fields in Status pages
- (cherry picked from commit f311d3ba11572364488ee25ca9df08a33e42a089)
- 12:26 PM Revision 927c0074: Remaining required fields for Diag pages
- (cherry picked from commit fe54f09154f4116ceea6897bff54a624f1eb63bc)
- 12:26 PM Revision 5c9dcd19: Required fields for firewall*.php
- (cherry picked from commit 8a1b5c561f93611b711eb4e7b58ccb4990577d8e)
- 12:26 PM Revision a6caa27e: Required fields for Captive Portal
- (cherry picked from commit c06865be6de6b164d06ee9bb1768dfe6829d783c)
- 12:25 PM Revision 57965f9b: Required fields in Services pages
- (cherry picked from commit 24b82516e0baac87316245427e870a36fbcda4ac)
-
12:14 PM Bug #7173 (Resolved): [2.3.3+] Interface groups with a '-' (dash) in name are not handled correctly, breaking firewall rules
- To reproduce:
- Create an interface group named like @prefix-test@
- Try to add some firewall rule there and save.
... -
11:13 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Final version. Changed static chars to pointers for exit script call. As it's possible to have multiple interfaces on...
-
06:52 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Additions and changes to dhcp6c
-
10:42 AM Revision 30cc3aec: Merge pull request #3448 from phil-davis/required-fields-services
-
10:05 AM Bug #7172 (New): Sorting by hostname in Services > DHCP Server > LAN should be "natural" (alphanumeric friendly)
- Under "Services > DHCP Server > LAN" if I sort the 'static mappings' table by the hostname column, I get results like...
-
09:35 AM Bug #7171 (Resolved): system_advanced_firewall.php: setHelpText is changing the field label also.
-
09:28 AM Bug #7171: system_advanced_firewall.php: setHelpText is changing the field label also.
- Works, thanks
-
08:10 AM Bug #7171: system_advanced_firewall.php: setHelpText is changing the field label also.
- Applied in changeset commit:678c6a56bce239ac152e3d9fe051ad8508ab3ce3.
-
08:01 AM Bug #7171 (Feedback): system_advanced_firewall.php: setHelpText is changing the field label also.
- Newly added span element accommodated
Function moved to pfSenseHelpers.js -
04:16 AM Bug #7171 (Resolved): system_advanced_firewall.php: setHelpText is changing the field label also.
- I suspect this is a side-effect of the recent changes for marking required fields.
e.g. in system_advanced_firewall.... - 09:27 AM Revision 24b82516: Required fields in Services pages
-
08:37 AM pfSense Packages Bug #6928: freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
- Konstantin Ab wrote:
> Hmmm, it seems to work!
> records appear in Table
Thanks for testing. Added to this monst... -
08:31 AM Bug #7147 (Resolved): pfsense-utils.inc - is_ipaddr_configured() does not work properly with some IPv6 formats
- I'll close this ticket as the original issue was fixed by Phillip's commit.
The whole IPv6 input, store and output... -
06:15 AM Revision 04daf8b1: Misc cleanups at get_pkg_info()
- * rename function args to be clearer what they do ($local_only was quite ambiguous, at first sight it could mean any ...
-
03:47 AM Bug #7005: IPsec mss clamping not working for mobile clients
- That was backported to RELENG_2_3 in commit https://github.com/pfsense/pfsense/commit/93ab5b34e4e0b20baaf10fdd52119dd...
-
02:22 AM Bug #7005: IPsec mss clamping not working for mobile clients
- Hi,
You've listed this as resolved in 2.4, what's the current timeframe for the release of 2.4? If it is some way ... -
03:06 AM Bug #5993: dhcp6c not started until an RA received
- OK, I can see dhcp6c is doing its job and launching RTSOLD, which is launching rc.newwanipv6. As no-one else has repo...
-
12:34 AM Bug #7143 (Confirmed): filterdns is triggering every 16 seconds for hosts even when the DNS record has not changed
- Ooops, there is a loop in rc.newipsecdns, which triggers a filterdns reload, which runs rc.newipsecdns again (where y...
01/29/2017
-
10:25 PM Bug #7143: filterdns is triggering every 16 seconds for hosts even when the DNS record has not changed
- I'll take it, something is fishy here.
-
09:46 PM Bug #7119 (Resolved): Changing LAGG attributes results in a panic/crash
-
09:46 PM Bug #7124 (Resolved): Kernel panic when configuring 6to4 on a interface
- Yeah, that's a different issue, can you open a new ticket for it ?
Thanks! -
06:14 PM Bug #7124: Kernel panic when configuring 6to4 on a interface
- Actually just shows "Pending".
Other (2.3) box works. -
06:12 PM Bug #7124: Kernel panic when configuring 6to4 on a interface
- Seems right now I cannot monitor the gateway though if I ping from diagnostics the ping returns fine.
Gateway moni... -
04:51 PM Bug #7124: Kernel panic when configuring 6to4 on a interface
- Confirmed working here as well. Thank You!
-
12:52 PM Bug #7124: Kernel panic when configuring 6to4 on a interface
- Thanks, i can no longer reproduce the panic.
If 6to4 itself works properly now i cant tell, i have not used it bef... -
09:45 PM Bug #7117 (Resolved): Bump sched buckets limiter log spam in console
-
09:27 PM pfSense Packages Bug #6928: freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
- Hmmm, it seems to work!
records appear in Table -
03:46 AM pfSense Packages Bug #6928: freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
- Can you please test this patch? https://github.com/pfsense/FreeBSD-ports/commit/cdf9b05e966f311b8ae83c7a3158479bd5c9e...
-
12:15 AM pfSense Packages Bug #6928: freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
- i tryed diable SQL. No problem.
I'm watching the security problems in this table. -
03:45 PM Bug #5993: dhcp6c not started until an RA received
- Martin Wasley wrote:
> Just post the dropbox link here..
Fair enough. I looked through the pcap and there's nothi... -
08:18 AM Bug #5993: dhcp6c not started until an RA received
- Just post the dropbox link here..
-
08:45 AM Bug #3703: MTU not applied on reboot
- Is it Resolved ?
2.3.2-RELEASE-p1 (amd64)
built on Fri Sep 30 14:36:56 CDT 2016
FreeBSD 10.3-RELEASE-p9
I hav... -
08:38 AM pfSense Packages Feature #6022: Consider MLVPN for bonded VPN
- +1
It's too bad that pfSense do not have this functionality yet
Many of us use multiple WANs please consider MLVP... -
08:23 AM Bug #7169 (Duplicate): MAC address for an interface is not set back to the actual hardware value if a manually entered MAC value in General Configuration under Interfaces is cleared
- Known limitation / Duplicate. See #7011
-
02:16 AM Bug #7169 (Duplicate): MAC address for an interface is not set back to the actual hardware value if a manually entered MAC value in General Configuration under Interfaces is cleared
- Steps to reproduce
1) Set the MAC address to an interface manually in the General Configuration for an Interface
... -
08:16 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- OK, before I do a PR upstream for this, there is one issue left. This only applied in the default mode not dhcp6witho...
-
05:20 AM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- Added a huge deprecation warning to the page as part of https://github.com/pfsense/FreeBSD-ports/pull/272.
-
04:41 AM pfSense Packages Bug #7170 (Resolved): FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- I'd rather nuke this redundant thing altogether, however not sure how to handle the transition for unfortunate users ...
01/28/2017
-
10:30 PM Bug #5993: dhcp6c not started until an RA received
- Martin Wasley wrote:
> Just upload them to a dropbox and send me a link.
Sure thing. Can I email you a private link? -
08:09 AM Bug #5993: dhcp6c not started until an RA received
- Just upload them to a dropbox and send me a link.
-
08:21 PM Bug #7124 (Feedback): Kernel panic when configuring 6to4 on a interface
- Fixed.
Relevant commit: https://github.com/pfsense/FreeBSD-src/commit/c050d42a2646d2e582c46cc6f61531150ffb6cb9 -
05:47 PM pfSense Packages Bug #6928: freeRADIUS, logging with "Access-Reject" not work in mysql table radpostauth
- Does uncommenting this break things if SQL is *disabled*? The whole thing is a damn complex heap of code, not really ...
-
03:32 PM Bug #7168 (Closed): Vague kernel messages in system log
- I'm running the a recent 2.4 beta snapshot. I'm periodically seeing vague kernel messages in the system log.
Some ... - 02:49 PM Revision b39cebf6: Fixed #7154
- Remove duplication in javascript
-
08:54 AM Bug #7154: firewall_nat_edit JS function check_for_aliases()
- Yes, the code did nothing effective. I guess that someone had started thinking about what smarts to put in it, had "t...
-
08:50 AM Bug #7154: firewall_nat_edit JS function check_for_aliases()
- Applied in changeset commit:b39cebf6f09b7d110d810e3ccff0136751aa1718.
-
08:44 AM Bug #7154 (Feedback): firewall_nat_edit JS function check_for_aliases()
- Looks like that duplication (several times over) goes back to at least 2.0!
https://github.com/pfsense/pfsense/blo... -
08:12 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Also added an EXIT as when the No-release flag it's useful to know that dhcp has exited. Would it be be useful to hav...
-
07:16 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- Adding "hw.igb.num_queues=1" to /boot/local.conf helps resolving this issue.
_sysctl hw.igb.num_queues
hw.igb.num_q...
01/27/2017
-
09:04 PM Bug #7119: Changing LAGG attributes results in a panic/crash
- Yes, the messages does not seem related with the original bug (crash at ifconfig laggX destroy).
Let's open a new ... -
06:53 PM Bug #7119: Changing LAGG attributes results in a panic/crash
- Seems better now, it doesn't crash. Logs of activity in the log, though:...
-
03:33 PM Bug #7119 (Feedback): Changing LAGG attributes results in a panic/crash
- Fixed in latest snapshot.
Relevant commits:
https://github.com/pfsense/FreeBSD-src/commit/b5996bd8278c710ce6859... -
08:58 PM Bug #6099: igmpproxy does not recognize upstream interface
- I downloaded the 2.3.3 nightly but this fix doesn't appear to be included there, so I built a copy of the proxy from ...
-
07:18 PM Bug #7167 (Resolved): Error creating higher VLAN ID on SG-1000
- SG-1000 connected to an Apple Airport Extreme ac on the LAN interface.
Created a VLAN interface with tag 1003 and as... -
06:48 PM Bug #5993: dhcp6c not started until an RA received
- Martin.
I got a packet capture from the WAN upon bootup (all looks good there), a copy of the system and DHCP logs... -
02:33 PM Bug #6448 (Resolved): Mousing over aliases on disabled rules makes hint difficult to read
-
02:07 PM Bug #6448: Mousing over aliases on disabled rules makes hint difficult to read
- Looks good here. Thanks!
-
01:24 PM Revision 19c25a53: Fix indentation
- (cherry picked from commit c18d0d12b3e683f07b4bac933240332cd4d95829)
-
01:24 PM Revision d5f0b97e: Changed max repeat alert to use sprintf get text
- (cherry picked from commit 950342400bdc75b35c01442c400bd53a18015818)
-
01:24 PM Revision 7533bdcf: Bug #7164 Limit NTP time source fields to the maximum number saved to configuration.
- (cherry picked from commit 5a1d67b17d485697e19ef49d66e8e5f91e7e884d)
-
01:24 PM Revision 99a49467: Merge pull request #3446 from jskyboo/master
-
12:47 PM Bug #7143 (Feedback): filterdns is triggering every 16 seconds for hosts even when the DNS record has not changed
- I've pushed a fix on filterdns 1.0_16 that will make it to run defined cmd only when IP address changes.
-
09:14 AM Bug #7166: During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- I can reproduce this bug.
It happens when I use especial traffic pattern for cisco t-rex which included several pcap... -
06:54 AM Bug #7166 (Resolved): During bandwidth test 4860 with 2.4 got Fatal trap 12: page fault while in kernel mode
- During bandwidth test 4860 on today 2.4 got `Fatal trap 12: page fault while in kernel mode`
FreeBSD pfSense.localdo... -
08:33 AM pfSense Packages Bug #6404: FreeRADIUS Does Not Start After Upgrade
- All merged. Please test with 1.7.5_1 when available; if it still does not work, describe exactly what actions make it...
-
07:25 AM Bug #7164 (Feedback): NTP page allows adding more time server rows than it saves to the configuration
- PR has been merged, thanks!
-
02:47 AM Bug #7116 (New): a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
01/26/2017
-
09:12 PM Bug #7165: NAT: Source: <port - range> -> Destination:<a single port from 'source' range> -> error message
- The message is about Redirect Target Port (as Jim mentions) which is a field further down the page. The message came ...
-
04:47 PM Bug #7165 (Rejected): NAT: Source: <port - range> -> Destination:<a single port from 'source' range> -> error message
- Most likely what you're trying to do is invalid. Post on the forum for setup assistance.
Include the following inf... -
04:34 PM Bug #7165 (Rejected): NAT: Source: <port - range> -> Destination:<a single port from 'source' range> -> error message
- For some reason latest pfSense version (2.3.2-RELEASE-p1) is not allowing me to forward NAT range 1100 - 65000 to the...
-
04:42 PM Revision c18d0d12: Fix indentation
-
04:28 PM Bug #6860 (Feedback): Monitoring (RRD) graphs return "unknown" step value
- I added the missing step (43200) to the lookup table.
-
04:27 PM pfSense Packages Bug #6748 (Feedback): rrd_fetch_json.php returns html when user is unauthorized (causes "Error: SyntaxError: Unexpected token <")
- I added a better error message in the case that JSON doesn't get returned, but a hint for the user to check that they...
-
04:26 PM Bug #6138 (Feedback): Long hostnames overlap the "time" title in the Monitoring graphs
- The positions are hard coded at this time so it is hard to account for really long hostnames, but I moved the values ...
-
02:36 PM Revision e8256d16: Fix indent and spaces
-
02:35 PM Revision 31677494: Escape $ to avoid replacing it by PHP variables
-
12:52 PM pfSense Packages Bug #6404: FreeRADIUS Does Not Start After Upgrade
- See
- https://github.com/pfsense/FreeBSD-ports/pull/267
- https://github.com/pfsense/FreeBSD-ports/pull/268 -
12:50 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- Without quick it didn't work either. Only changing it to 'pass' made it work.
-
11:25 AM Bug #7116 (Not a Bug): a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- According to docs you shouldn't use quick on match rules: https://doc.pfsense.org/index.php/What_are_Floating_Rules
... -
11:02 AM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- Have you tried to remove 'quick' from this match rule?
-
12:35 PM Bug #6333: Bootup starts/restarts dpinger multiple times
- Renato Botelho wrote:
> Luiz, when you are touching it, it would be nice to add code on PHP side to deal with interf... -
12:28 PM Feature #6591 (Duplicate): Configurable DDNS check IP services
- This was actually a duplicate of #6373 which had more info. I noted the PR there.
-
12:28 PM Feature #6373 (Resolved): RFC2136 DDNS could be more configurable to improve security
- Items 1 and 2 were completed under #6591 which was resolved by PR https://github.com/pfsense/pfsense/pull/3037
-
12:25 PM Feature #6374: Provide sample server-side logic to report peer's IP address for use with DDNS
- PHP Example:...
-
12:18 PM Todo #6606: Adapt captive portal to work without multi-instance ipfw
- Last I heard from Renato this is still missing some important pieces:
* Missing a mixed table with IP and MAC addr... -
12:13 PM Bug #6664 (Resolved): It's impossible to use HE.NET tunnel iface as a parent for OpenVPN instances
- Between #6663 and commit:b42ccf1504eca5e40bfb49b0afb688fffe293a7a this is fixed.
-
12:06 PM Bug #6833 (Resolved): Wifi channel change applies only on reboot
- PR https://github.com/pfsense/pfsense/pull/3169 was merged back in October.
Tested on a system on 2.4 with wireles... -
11:54 AM Bug #7149: igb driver queue related crashes
- See also:
#7079
#6257
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=148807
https://bugs.freebsd.org/bugzilla/... -
11:50 AM Bug #7079: ClamAV C-ICAP causing Kernel Panic and System Crash
- I suspect this is not actually from clamav but that is what generates enough load in your environment to trigger it.
... -
11:45 AM Bug #7140 (Resolved): User with page-help-all as first priv is redirected to Dashboard Help
- We merged PR for this and tested, should be fine now.
-
11:36 AM Bug #6820 (Resolved): Configure WAN Interface Boot Delay
- I'm also not seeing a long delay any more. I suspect the fix for #7042 might have also fixed this. The previous delay...
-
11:35 AM Revision 7ae710d4: Merge pull request #3410 from marjohn56/RTSOLD-lock-creation,-dhcp6c-launch-&-kill-changes-#3
- 11:27 AM Revision 20290428: Typo in pppoe_subnet input error message
- (cherry picked from commit 01799e5bd5f363e21c744752760ab0cc591713da)
-
11:26 AM Revision 6a987342: Merge pull request #3445 from phil-davis/patch-1
-
11:03 AM Bug #7150 (Resolved): shell option before 1st reboot/wizard - can't login
- Works
-
10:35 AM Bug #6938 (Duplicate): DNS with OpenVPN gateway specified is routed through wrong interface. 2.4 regression.
- This is a duplicate of #6883
-
10:25 AM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- Luke Hamburg wrote:
> Thanks. I first checked out master and didn't find that commit... then drank some coffee & re... -
08:08 AM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- Thanks. I first checked out master and didn't find that commit... then drank some coffee & realized it's a PR still ...
-
07:46 AM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- If you update to the latest snapshot then you can try patch ID: cdb6c8ac8e65f98a2ac0fa469c963c055a5c522d
There are... -
10:10 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- This is cool... it works nicely. I'm still messing around with it but I've changed the strings to full reply words su...
-
07:11 AM Revision 2f633b52: fix copy/paste - I think!
-
05:04 AM Bug #6630 (Resolved): Set Defaults for Graphs - Traffic/WAN + Packets/WAN doesn't work
-
05:03 AM Bug #6132 (Resolved): race condition in OpenVPN startup
-
05:01 AM Bug #7151 (Resolved): Interface Group Name hint is misleading
-
03:52 AM Revision 95034240: Changed max repeat alert to use sprintf get text
-
03:22 AM Revision 5a1d67b1: Bug #7164 Limit NTP time source fields to the maximum number saved to configuration.
- 03:19 AM Revision 01799e5b: Typo in pppoe_subnet input error message
-
02:24 AM Bug #7164: NTP page allows adding more time server rows than it saves to the configuration
- Most likely limited to 10 because historically anything above 10 best servers was discarded as a potential peer [1]. ...
-
12:02 AM Bug #7036: 2.4 ZFS on RCC-VE 2440 hangs
- UFS was mentioned as an issue as well, but wasn't tested?
01/25/2017
-
09:40 PM Bug #7164: NTP page allows adding more time server rows than it saves to the configuration
- I can't answer the question of why other than it is generally not recommended to specify a large number of time serve...
-
09:30 PM Bug #7164: NTP page allows adding more time server rows than it saves to the configuration
- Why is the page limited to 10 servers? Is this limitation enforced elsewhere in the system?
-
09:28 PM Bug #7164: NTP page allows adding more time server rows than it saves to the configuration
- PR https://github.com/pfsense/pfsense/pull/3446
-
09:19 PM Bug #7164 (Resolved): NTP page allows adding more time server rows than it saves to the configuration
- The NTP configuration page has a button to add more time servers to use as a time source. Only 10 servers are saved t...
-
06:48 PM Revision 32dcdc7c: Merge pull request #3442 from phil-davis/monitor-reload
-
06:47 PM Revision a634183d: Merge pull request #3441 from phil-davis/required-fields7
- 06:46 PM Revision 7efef9dd: Captive Portal auth method is required
- When creating a new Captive Portal Zone the user can fail to select any of the Authorization Method radio buttons. No...
-
06:46 PM Revision e019f686: Merge pull request #3440 from phil-davis/patch-2
- 06:44 PM Revision c5a174c7: CP HTTPS Forwards setHelp format
- Add full stop and spacing between sentences.
(cherry picked from commit 0046a7da59fb3015512ce181cba6b37516c0b76f) -
06:44 PM Revision 9b70602d: Merge pull request #3439 from phil-davis/patch-1
-
06:43 PM Revision 3607eac5: Changed default state of GPS init command auto correct tool.
- (cherry picked from commit 2559f37539cf37221f8fddd7c0b7928e8e3969a8)
-
06:43 PM Revision c977d6b1: Feature #7159 Add GPS initialization command auto correct tool
- Corrects malformed NMEA sentences by calculating and appending the checksum and adding missing special characters "$"...
-
06:43 PM Revision 99515a18: Merge pull request #3433 from jskyboo/master
-
04:56 PM Bug #7149: igb driver queue related crashes
- I also can confirm this issue on my box as well.
I have 6 igb (Intel pro 1000) interfaces (4 on the asus mainboard... -
03:42 PM Revision 89decc45: Merge pull request #3443 from phil-davis/patch-3
-
03:14 PM Bug #7157: Traffic graphs cause the tab to crash when run in the background
- Pretty sure they will crash in the foreground also.. Think ive found a leak in the code though.
The nv.utils.inherit... -
02:40 PM Bug #7075 (Feedback): firewall states show negative value for total bytes processed
- Should be fixed now: https://github.com/pfsense/FreeBSD-ports/commit/2f5f4b5ac53ead4c12761273a3cc332b08806e26
Unfo... -
02:31 PM Bug #6630: Set Defaults for Graphs - Traffic/WAN + Packets/WAN doesn't work
- Not seeing this issue either, Set as Defaults is working fine for me too.
-
02:29 PM Bug #6132: race condition in OpenVPN startup
- Fresh install and one OpenVPN server seems to work fine for me with fresh install from Dec and no probs with latest b...
-
02:25 PM Bug #7151: Interface Group Name hint is misleading
- "Only letters (A-Z), digits (0-9), '-' and '_' are allowed. The group name cannot end with a digit." appears in lates...
- 01:45 PM Revision 0e5ee5ae: Fix cut-paste error in Breadcrumb Links
-
01:37 PM Bug #6820 (Feedback): Configure WAN Interface Boot Delay
- I was seeing this issue on all my test VMs too but on recent snapshots it seems to be OK, probably some change have f...
-
01:29 PM Bug #6811 (Resolved): pkg_edit.php rowhelper is broken with multiple distinct rowhelpers per page.
- 3 months with no complains is like enough time to consider it fixed
-
01:24 PM Bug #7036 (Not a Bug): 2.4 ZFS on RCC-VE 2440 hangs
- After internal tests, we could install it successfully on 2440 using ZFS. Discussion will continue on forum thread li...
-
01:22 PM Bug #6911 (Rejected): no network on hyperv-v 2012 R1
- There is no much we can do at this point for a release that seems to be unsupported by Microsoft according https://su...
-
01:20 PM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- Ok great, I will definitely try 2.4b then. If you happen to know which commits are relevant to that fix I'd love to l...
-
01:17 PM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- Its not, it's a problem that appears from time to time and is quite intermittent. In 2.4b changes have been made whic...
-
11:08 AM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
- I have a dual WAN 2.3.2-p1 system with only one of the WANs configured for DHCP6 (not PPPoE, just Ethernet) and I am ...
-
12:44 PM Feature #7159 (Feedback): Auto correct checksum and missing special characters for NTP GPS initialization commands.
- PR has been merged, thanks!
-
11:08 AM Bug #5993: dhcp6c not started until an RA received
- And the fixes are for dhcp6c the WAN client, not dhcpd the LAN server. Different things.
First, enable dhcp6c debu... -
10:52 AM Bug #7163: IGMP Proxy does not valid inputs
- If someone confirms what the validation requirements are, I can make it so.
-
10:51 AM Bug #7163 (Resolved): IGMP Proxy does not valid inputs
- IGMP Proxy Edit
Threshold: no validation is done, I can put "abc" "-42"... - I think it must be a positive integer... - 09:05 AM Revision 815398fb: Standardize rules reloading message
-
08:49 AM Bug #7143: filterdns is triggering every 16 seconds for hosts even when the DNS record has not changed
- This only happens when config file uses the directive 'cmd', in this case, ipsec session is using it:...
-
08:43 AM Bug #5319: Error message "No config named" in charon daemon
- With 2.3.2, in a hub and spoke model of IPsec tunnels, when the hub was restarted, about 10 percent of the spoke mode...
-
07:58 AM pfSense Packages Bug #6988: SNORT Package PHP memory error
- Your logs are way too huge! Configure something sane on Logs Mgmt tab. (You can override the memory limit in https://...
-
07:47 AM Bug #7162 (Rejected): XMLRPC lock in backup node if offline
- That is not a supported configuration, in part due to the issues you have noted. Without connectivity for the seconda...
-
03:45 AM Bug #7162 (Rejected): XMLRPC lock in backup node if offline
- I have 2 Netgate SG-4860 installed with pfsense v. 2.3.2_1, with 1 carp vip on wan. The backup machine, however, rema...
-
07:23 AM Bug #7124 (Confirmed): Kernel panic when configuring 6to4 on a interface
- 07:06 AM Revision c06865be: Required fields for Captive Portal
-
06:36 AM Revision e5f96a2c: use wrapped version of pkg info -e instead
- 06:34 AM Revision 0ee22f36: Captive Portal auth method is required
- When creating a new Captive Portal Zone the user can fail to select any of the Authorization Method radio buttons. No...
-
05:56 AM Bug #7123 (Resolved): Kernel panic when setting TCP MD5 Password in OpenBGP
-
05:10 AM Bug #7123: Kernel panic when setting TCP MD5 Password in OpenBGP
- Renato Botelho wrote:
> Possible fix was cherry-picked to FreeBSD-src, please try again on next snapshot
Great, t... - 05:23 AM Revision 0046a7da: CP HTTPS Forwards setHelp format
- Add full stop and spacing between sentences.
-
04:31 AM pfSense Packages Bug #6305: Quagga problems updating routes / mistakenly showing "kernel"-routes while they are not
- https://github.com/pfsense/FreeBSD-ports/pull/265 - that's not a real solution obviously, so kindly leave this bug op...
-
01:47 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Use this too, just makes the logging a little tidier. If this is implemented then the dhcp6withoutRA PR I have curren...
-
01:04 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Yes, attached..
As dhcp6c only calls the script function when the above reply states happen you don't get quite as...
Also available in: Atom