Activity
From 02/22/2017 to 03/23/2017
03/23/2017
-
11:36 PM Bug #7422: Typo in OpenVPN NCP description
- My bad, so I will fix, see PR https://github.com/pfsense/pfsense/pull/3669
-
07:46 PM Bug #7422: Typo in OpenVPN NCP description
- https://github.com/pfsense/pfsense
-
06:22 PM Bug #7422 (Resolved): Typo in OpenVPN NCP description
- Under Enable NCP, when you click on blue info sign you get:
"When both peers support NCP and have it enabled, NCP... -
11:29 PM Bug #6367: Long delays with LDAP enabled w/local users during boot at "Synchronizing user settings..."
- I hate to comment on an old issue but I couldn't find one for the "proper fix" as mentioned above. Today my LDAP serv...
-
11:10 PM Bug #7421: Unresolvable port alias is omitted from rule rather than generating an error
- Test:
a) Add an alias and a rule that uses it
b) Backup config
c) Edit config, delete the alias but leave the rule... -
01:30 PM Bug #7421 (Feedback): Unresolvable port alias is omitted from rule rather than generating an error
- Applied in changeset commit:224e1648174e4a27b7f091fe348a81c74bacf23e.
-
01:20 PM Bug #7421 (Resolved): Unresolvable port alias is omitted from rule rather than generating an error
- GUI validation prevents this from happening, but if a port alias is missing from the firewall configuration, a rule u...
-
06:21 PM Revision bf4440b4: File a notice and omit rule(s) using a missing port alias. Fixes #7421
-
06:21 PM Revision 72040e44: File a notice and omit rule(s) using a missing port alias. Fixes #7421
-
06:21 PM Revision 224e1648: File a notice and omit rule(s) using a missing port alias. Fixes #7421
-
04:31 PM Bug #4310: Limiters + HA results in hangs on secondary
- We are not noticing our secondary (which is also a VM) hang. However, our one limited rule traffic ends overnight, s...
- 04:16 PM Revision 360e4f05: Fix display of BIOS only on Sytem Info widget
- 04:16 PM Revision 90ebc7b1: Fix display of BIOS only on Sytem Info widget
-
04:16 PM Revision 6aee3af6: Merge pull request #3668 from phil-davis/fix-display-bios-only
- 04:09 PM Revision 97450eb7: Fix display of BIOS only on Sytem Info widget
-
03:06 PM Revision 9c437b7e: Show BIOS information in the system info widget, if it exists in kenv.
-
03:06 PM Revision 832535ef: Show BIOS information in the system info widget, if it exists in kenv.
-
03:05 PM Revision 7c48e60e: Show BIOS information in the system info widget, if it exists in kenv.
-
04:51 AM Bug #7420 (Closed): ipsec status freezing
- I upgraded a SG-8860 yesterday from 2.3.2_1 to 2.3.3_1 after I applied the bios upgrade.
Unfortunately, now the IP... - 02:02 AM Revision c47e5003: Merge pull request #3666 from phil-davis/sysinfo-widget-all-button-RELENG_2_3_3
- 02:00 AM Revision 92de7fb6: Merge pull request #3665 from phil-davis/sysinfo-widget-all-button-RELENG_2_3
- 01:59 AM Revision de380bff: Merge pull request #3667 from phil-davis/patch-5
-
01:21 AM Bug #7382: DNS Forwarder does not resolve DNS names on first boot
- I can confirm the same behavior. My problem is with Domain Overrides, but I'm assuming the problem is the same.
T...
03/22/2017
-
04:20 PM Bug #7419 (Duplicate): CloudFlare DDNS Not working for wildcard updates
- It is not possible to update the record for a wildcard domain using Cloudflare DDNS, even if the wildcard checkbox is...
-
04:07 PM Feature #7418: Dynamic dns should be sorted interface name
- well looks like interfaces were fixed across gui I have a bunch of gateway groups due to 3 isps added at different ti...
-
12:00 PM Feature #7418: Dynamic dns should be sorted interface name
- No matter how we choose to sort them someone else will probably want them sorted differently. Making the tables thems...
-
11:53 AM Feature #7418: Dynamic dns should be sorted interface name
- System/Routing/Gateway Groups
should be sorted by group name alphabetically also -
11:47 AM Feature #7418 (New): Dynamic dns should be sorted interface name
- Dynamic dns should be sorted interface name
-
01:21 PM Feature #2358: NAT64 support
I would like to see this important functionality-
01:04 PM Feature #7193: NTP process PGRMF
- I'm sorry, I think I was unclear. In my original config I had selected GGA in the “NMEA Sentences” menu, plus ticked ...
-
12:33 PM Todo #7385: Sanitize PHP includes
- I redid the write_config() stuff as a separate PR. If someone provides some ETA for "next QA run", I'll redo the incl...
-
11:07 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- The warning is for continuing to argue/discuss the issue here on redmine. This is not a discussion platform. I've sai...
-
11:03 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- Jim Pingle wrote:
> Consider this a second warning.
A *WARNING*? For what?
With above attitude, thank you for o... -
10:47 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- Discuss it on the forum. Consider this a second warning.
-
10:41 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- Jim Pingle wrote:
> [...] unless the ISC DHCP daemon behavior is fixed.
Then are you suggesting that the manual f... -
10:32 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- Yes, we know all of that. None of that helps the situation. It doesn't contradict anything, and if you read closer yo...
-
10:29 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- Jim Pingle wrote:
> Static mappings express a preference for address assignment and do not prevent other devices fro... -
10:27 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- If I understand right, wiki claims that ISC DHCP will happily lease a fixed-address definition to anyone in case that...
-
08:48 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- We are not that product. The DHCP daemon we use, the ISC DHCP Daemon does not support reservations. Static mappings e...
-
08:42 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- Jim Pingle wrote:
> You can't static map addresses inside the pool, so this would just confuse users.
There is at... -
10:41 AM Bug #4287: Wrong display for ppp in Interfaces page
- I can't test the patch actually because since then I have changed my 3G usb key to an other huawei one, and there is ...
-
07:11 AM Bug #4287 (Feedback): Wrong display for ppp in Interfaces page
-
10:34 AM Feature #7392: Please allow syncing authorized_keys into config.xml
- Kill Bill wrote:
> What's exactly difficult about CTRL+C, CTRL+V?
it takes more time and it's not just a CTRL-C C... -
07:12 AM Feature #6841 (Feedback): reduce numeric precision in Gateways Widget
-
03:25 AM Feature #6841: reduce numeric precision in Gateways Widget
- Merged.
-
07:12 AM pfSense Packages Bug #7417 (Rejected): Avahi ipv6(disabled) port 5353(local link ipv6) firewall log spam until avahi is stopped for a few secs and then restarted
- Please discuss and diagnose the problem on the forum before opening a bug report with the precise details and specifi...
-
02:40 AM pfSense Packages Bug #7417: Avahi ipv6(disabled) port 5353(local link ipv6) firewall log spam until avahi is stopped for a few secs and then restarted
- This is a bug tracker, use forums for discussions and mystery stories please.
-
07:10 AM Bug #6890 (Feedback): PPP service name error
-
07:09 AM Bug #7399 (Feedback): getserviceproviders.php - lack of sanity checking in foreach()
- 12:44 AM Revision 11daee3f: Bump config rev for widget preference setting changes
- This should have been bumped along with https://github.com/pfsense/pfsense/commit/071d8a610047fe1994c9fa28e339fe93f44...
03/21/2017
-
11:57 PM pfSense Packages Bug #7417: Avahi ipv6(disabled) port 5353(local link ipv6) firewall log spam until avahi is stopped for a few secs and then restarted
- Just a small edit: I just noticed that the spam started again. My guess is its some device on my lan, I will turn off...
-
11:02 PM pfSense Packages Bug #7417 (Rejected): Avahi ipv6(disabled) port 5353(local link ipv6) firewall log spam until avahi is stopped for a few secs and then restarted
- Hi,
I have ipv6 disabled and have not changed anything major changed on my network that has ipv6 enabled. But when ... - 06:01 PM Revision 35481239: System Info Widget enable All button when disable firmware check is set
- If system firmware disablecheck is set, then the click event for the filter "All" button is also not included in the ...
- 05:57 PM Revision a61e8f95: System Info Widget enable All button when disable firmware check is set
- If system firmware disablecheck is set, then the click event for the filter "All" button is also not included in the ...
- 05:43 PM Revision 6a0e66bb: Merge pull request #3664 from phil-davis/gw-widget-RELENG_2_3_3
- 05:30 PM Revision 57a015f9: Fix #7317 Widget Filter All button gateways widget RELENG_2_3
-
05:29 PM Revision 50418f97: Reduce numeric precision in gateways widget to single decimal place (Feature #6841)
- 05:28 PM Revision f3ee7e05: Further internationalization
- 05:28 PM Revision 31a6c8eb: Add missing internationalization
- 05:26 PM Revision 9fcd168b: Revise gateway widget config form
- 05:25 PM Revision 6c067722: Allow hiding of gateways in Gateways Widget
- Sometimes there are gateways that I do not care about, so it is handy to
be able to save some space on the dashboard ... - 05:11 PM Revision 493bdd35: Merge pull request #3663 from doktornotor/patch-7
-
04:48 PM Revision 954de84f: Add reason to write_config() call
-
04:47 PM Revision 2fbc1083: Add reason to write_config() call
-
04:45 PM Revision f832bfe0: Add reason to write_config() call
-
04:44 PM Revision 1c433611: Add reason to write_config() call
-
04:43 PM Revision d3f7f5d5: Add reason to write_config() call
-
04:42 PM Revision 1f372cf0: Add reason to write_config() call
-
04:41 PM Revision d398221a: Add reason to write_config() call
-
04:37 PM Revision 129f3e80: Add reason to write_config() calls
-
04:36 PM Revision 758281f0: Add reason to write_config() calls
-
04:34 PM Revision c90dcce1: Add reason to write_config() calls
-
04:32 PM Revision 2bee7c02: Add reason to write_config() call
-
04:31 PM Revision 3b99e916: Add reason to write_config() call
-
04:29 PM Revision fb1c4986: Add reason to write_config() call
-
04:26 PM Revision 7120557e: Add reason to write_config() calls
-
04:23 PM Revision fbaa7b66: Add reason to write_config() call
-
04:20 PM Revision 68eaa19f: Add reason to write_config() calls
- 02:35 PM Revision 361cb016: Merge pull request #3662 from phil-davis/widget-preferences-upgrade
- 02:34 PM Revision c081000f: Merge pull request #3661 from phil-davis/gw-widget-RELENG_2_3
- 02:34 PM Revision bdaba948: Merge pull request #3660 from phil-davis/patch-5
- 12:35 PM Revision 071d8a61: Upgrade widget settings for multiple copies of widgets
-
12:06 PM Revision d7f9b606: Update translation files
-
11:57 AM Revision 9f1039c2: Regenerate pot
-
10:56 AM Bug #4287: Wrong display for ppp in Interfaces page
- Merged.
-
10:56 AM Bug #6890: PPP service name error
- Merged.
-
10:55 AM Bug #7399: getserviceproviders.php - lack of sanity checking in foreach()
- Merged.
-
10:44 AM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
- This affects both GRE over IPSEC transport and IPSEC tunnel mode carrying a GRE
All traffic exiting the GRE tunnel... - 09:36 AM Revision c8763391: Fix #7317 Widget Filter All button gateways widget RELENG_2_3
-
09:27 AM Revision fdacd72b: Reduce numeric precision in gateways widget to single decimal place (Feature #6841)
- 09:25 AM Revision a3176912: Further internationalization
- 09:24 AM Revision cdfd6c9b: Add missing internationalization
- 09:22 AM Revision faa6d21c: Revise gateway widget config form
-
09:13 AM Feature #7416 (Needs Patch): DHCPv4 client does not support ``supersede`` statement for option 54
- Changes to FreeBSD should first be submitted upstream to FreeBSD.
-
08:55 AM Feature #7416 (Closed): DHCPv4 client does not support ``supersede`` statement for option 54
- The German cable internet provider Unitymedia uses DHCP relays which only answer to broadcasts. Dhclient renews WAN l...
- 08:58 AM Revision f3738015: Allow hiding of gateways in Gateways Widget
- Sometimes there are gateways that I do not care about, so it is handy to
be able to save some space on the dashboard ... -
08:58 AM Bug #7402: Inconsistent use of htmlentities validation checks
- https://github.com/pfsense/pfsense/commit/11800cffd5bd0731596324cd4d26f829bf198174 allows users to put stuff like "&"...
-
08:42 AM Bug #7415 (Resolved): favicon is not correctly implemented
- favicon is implemented as a favicon.ico in the root of the webserver. This is one of the 2 possible methodes and favo...
- 03:22 AM Revision 27d9b6dc: Remove siproxd from globals
- It was accidentally put back by a dodgy merge that missed the commit that removed this line.
03/20/2017
-
10:10 PM Feature #7318: Dashboard widget filters - provide a "None" option
- Above PRs 3652 and 3653 have been merged to master.
- 07:34 PM Revision c6481bdb: Merge pull request #3652 from phil-davis/allow-empty-widgets
- 07:34 PM Revision b3ae18e1: Merge pull request #3653 from phil-davis/widget-filter-none2
- 07:33 PM Revision c3695685: Merge pull request #3658 from phil-davis/multiple-copies-of-widgets-1
- 06:36 PM Revision 9f48e720: Integrate new interfaces widget AJAX
- 05:25 PM Revision 65ff7b82: Merge branch 'master' into multiple-copies-of-widgets-1
- 05:16 PM Revision 6784c0a1: Merge branch 'master' into widget-filter-none2
- 05:13 PM Revision 6432cb56: Merge branch 'master' into allow-empty-widgets
- 04:33 PM Revision 04b80934: Merge pull request #3639 from doktornotor/patch-26
- 04:32 PM Revision ac314828: Merge pull request #3642 from phil-davis/icmp-type-skip-redmine-7372
- 04:30 PM Revision 0cc9d499: Merge pull request #3644 from doktornotor/patch-27
- 04:24 PM Revision 11800cff: Merge pull request #3650 from phil-davis/nat-description
-
02:30 PM pfSense Packages Feature #7414 (New): snort needs automated refresh on ip change
- if pppoe ip changes snort needs refreshed to deal with that ip change would be nice if it happened automatically
-
02:09 PM pfSense Packages Todo #7411: LADVD Devices not wide enough
- Andy Kniveton wrote:
> The output is when run from a shell is fine , but the output is cut off via the web gui in th... -
06:07 AM pfSense Packages Todo #7411 (New): LADVD Devices not wide enough
- The output is when run from a shell is fine , but the output is cut off via the web gui in the top section :-
+GUI... - 02:00 PM Revision 12507f35: Merge pull request #3657 from phil-davis/traffic-graph-widget-filter-none-button
- 02:00 PM Revision 84eb285c: Merge pull request #3656 from phil-davis/traffic-graph-widget-filter-handle-none-to-display
- 01:59 PM Revision 26bb4faf: Merge pull request #3655 from phil-davis/traffic-graph-widget-filter-checkboxes
- 01:53 PM Revision 4c4e7f83: Merge pull request #3649 from doktornotor/patch-31
- 01:53 PM Revision 0d49c912: Merge pull request #3648 from doktornotor/patch-30
- 01:52 PM Revision 44baf803: Merge pull request #3645 from phil-davis/patch-5
- 01:48 PM Revision 9302ff3f: Merge pull request #3643 from phil-davis/disable-alias-popup-in-rules-7381
- 01:41 PM Revision e88ba742: Merge pull request #3634 from doktornotor/patch-23
- 01:40 PM Revision 7dcf0f78: Merge pull request #3633 from doktornotor/patch-22
- 01:37 PM Revision 7452333f: Merge pull request #3563 from NOYB/GitSync_-_Remove_Personalizations
- 01:36 PM Revision 6a3d28f6: Merge pull request #3605 from doktornotor/patch-7
- 01:34 PM Revision 7879c382: Merge pull request #3610 from stilez/patch-57
- 01:32 PM Revision a0259536: Merge pull request #3628 from doktornotor/patch-17
-
01:31 PM Bug #7413 (Resolved): status_dhcpv6_leases.php: Some DHCPv6 leases are not displayed in the GUI
- On status_dhcpv6_leases.php, only about half the leases in my /var/dhcpd/var/db/dhcpd6.leases file are displayed in t...
- 01:31 PM Revision c6ddf837: Merge pull request #3630 from doktornotor/patch-19
- 01:30 PM Revision d07d7ba6: Merge pull request #3632 from doktornotor/patch-21
- 01:28 PM Revision f6585c8a: Merge pull request #3594 from doktornotor/patch-13
- 01:26 PM Revision e471eaaf: Merge pull request #3529 from Chrisc-c-c/Fix-List-Sort-Order
-
12:25 PM Bug #7412 (Resolved): rtsold will not run on VLAN interfaces
- A VLAN interface for a WAN will not pull an IPv6 address via DHCPv6 with a default configuration.
In a default con... -
11:50 AM Revision 95319648: Revert "Lead users with Stable repo set to 2.3.3-RELEASE"
- This reverts commit aa5f397a16e2184d48c7c9cf32580caef735c7b6.
-
11:40 AM Bug #7372 (Feedback): Cannot filter ICMP Type SKIP
- Applied in changeset commit:bea1884125fdd9d8ef58afd97f53516b61adaf29.
- 07:08 AM Revision 0172a197: Redmine 7182 Allow multiple copies of widgets on dashboard
-
06:36 AM Feature #7410: IPSEC multiple dynamic IP remote clients
- If it's possible, it will take some time/thought about how best to handle.
-
01:41 AM Feature #7410 (Closed): IPSEC multiple dynamic IP remote clients
- We are actually running version 2.3.2 using mainly pfsense as a IPSEC VPN server for multiple remote locations.
Remo... -
03:30 AM Bug #4723: Can't forward UDP fragmented packets with scrubbing enabled.
- Luiz Otavio O Souza wrote:
> Richard, which pfSense version are you running ?
Latest 2.3.3_1
03/19/2017
-
10:46 PM Bug #7402: Inconsistent use of htmlentities validation checks
- How about the use of filter_var: http://php.net/manual/en/filter.filters.php
filter_var($value, FILTER_SANIT... -
10:41 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- I think my bug is related too.
https://redmine.pfsense.org/issues/7409 -
09:23 PM Bug #7409: Packets originating from the firewall itself do not enter the proper queue.
- I just posted on the forum now but I believe the rule I am using is sound. I know just because I said I've been usin...
-
09:10 PM Bug #7409 (Rejected): Packets originating from the firewall itself do not enter the proper queue.
- Please post on the forum for discussion. Shaping happens when a packet exits an interface, odds are your floating rul...
-
08:58 PM Bug #7409 (Rejected): Packets originating from the firewall itself do not enter the proper queue.
- I have a 25/10 DSL connection and for well over a year I've been able to setup queues successfully for regular intern...
-
08:16 PM Feature #7406: Ability to clear all dhcp leases at once
- ml 35 wrote:
> Under Status - DHCP Leases I can clear all leases one by one.
> It would be useful if I had a button... -
10:46 AM pfSense Packages Bug #7310: Packages pre-deinstall script removes temporary files used by pkg
- This is not a Snort bug. Beyond already linked #7229, there's another example of pkg being braindead junk here: https...
- 06:51 AM Revision c3b96e93: Redmine #7318 None button for Traffic Graphs Widget filter
- 06:36 AM Revision 575b5c1c: Traffic Graphs Widget handle no items selected for display
- 06:23 AM Revision 6e8777f2: Upgrade code to convert old Traffic Graphs Widget settings
- 06:20 AM Revision 41c9f57e: Convert Traffic Graph Widget to use checkboxes for display selection
- 06:01 AM Revision 605ce9be: Traffic Graphs Widget whitespace
- 05:36 AM Revision fba53b43: Redmine #7318 None button for widget filters
-
04:45 AM Feature #7122: Add filters to various dashboard widgets
- Phillip Davis wrote:
> With the delay in reviewing/merging community-contributed PRs, I have split PR 3602 up into t... -
04:23 AM Feature #7122: Add filters to various dashboard widgets
- With the delay in reviewing/merging community-contributed PRs, I have split PR 3602 up into the various parts that ar...
-
03:58 AM Feature #7318: Dashboard widget filters - provide a "None" option
- Revised code in:
https://github.com/pfsense/pfsense/pull/3652 Handle widgets having no items selected for display
h... - 03:08 AM Revision 405dfaad: Handle widgets having no items selected for display
03/18/2017
-
10:29 PM Feature #7193: NTP process PGRMF
- I also have a Garmin 18x LVC and I've been trying to replicate your setup but I'm not really sure why you needed a fu...
-
02:55 PM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- https://github.com/pfsense/FreeBSD-ports/pull/334
Should be pretty much complete now.
03/17/2017
-
05:48 PM Bug #7380: WAN DHCP Gateway Outside of Subnet Causing Route Issues
- Thanks Jim. Apologies for not linking the diff the first time around.
I've signed the CLA and submitted a pull re... -
03:23 PM Feature #7408 (Duplicate): IGMPPROXY quickleave
-
03:10 PM Feature #7408: IGMPPROXY quickleave
- Duplicate of #3862
-
03:02 PM Feature #7408 (Duplicate): IGMPPROXY quickleave
- Dear pfsense-team,
Can you add the possibility to activate or deactive the quickleave option of the igmpproxy?
ht... -
02:27 PM Feature #7383 (Feedback): system_certmanager.php?act=new: Add new select option to sign a CSR
-
01:08 PM Bug #4723: Can't forward UDP fragmented packets with scrubbing enabled.
- Richard Gate wrote:
> Hi, I've hit this problem with UDP packets for RADIUS authentication when using a pfSense IPSe... -
11:46 AM Bug #4723: Can't forward UDP fragmented packets with scrubbing enabled.
- Hi, I've hit this problem with UDP packets for RADIUS authentication when using a pfSense IPSec tunnel from an AP doi...
-
09:12 AM pfSense Packages Bug #7403: Captive Portal + freeradius2 + MySQL problems with German Umlaut
- https://redmine.pfsense.org/issues/4497
-
09:08 AM pfSense Packages Bug #7403: Captive Portal + freeradius2 + MySQL problems with German Umlaut
- http://lists.freeradius.org/pipermail/freeradius-users/2005-November/004818.html
-
08:36 AM pfSense Packages Bug #7403: Captive Portal + freeradius2 + MySQL problems with German Umlaut
- In the log files it seems all correct:
Mar 17 13:41:05 radiusd 74676 Login incorrect: [guest/müller] (from clie... -
05:02 AM pfSense Packages Bug #7403 (New): Captive Portal + freeradius2 + MySQL problems with German Umlaut
- We have a setup using a Captive Portal and freeradius2 package + MySQL as database for authentication.
The freerad... -
07:40 AM Bug #7396 (Resolved): Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Great, thanks for testing!
-
07:35 AM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Jim Pingle wrote:
> OK, try the later change here on the ticket now ( commit:31b1f1e1 )
This is all good now ! Th... -
06:59 AM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- OK, try the later change here on the ticket now ( commit:31b1f1e1 )
-
07:30 AM Revision 24be73af: review point fixed
-
07:27 AM Revision cfb99f1c: typo
-
07:15 AM Feature #7407 (Rejected): Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- You can't static map addresses inside the pool, so this would just confuse users.
-
07:14 AM Feature #7407 (Rejected): Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- I go to "Status -> DHCP Leases"
I click the "+" sign to "Add static mapping" under the "Actions" column
The page ... -
06:04 AM Feature #7406 (Resolved): Ability to clear all dhcp leases at once
- Under Status - DHCP Leases I can clear all leases one by one.
It would be useful if I had a button to also clear all... -
05:57 AM Feature #7405 (New): Ability to add dhcp host reservations from "Diagnostics -> ARP table"
- It can be very useful when you introduce pfsense into a lan where there are lots of static ip addresses.
This way ... - 05:41 AM Revision f95d6bdc: No need to check for HTML in NAT 1to1 or NAT Out descr
- 05:30 AM Revision 58e8a4fd: No need to check for HTML in NAT descr
-
05:23 AM Feature #7392: Please allow syncing authorized_keys into config.xml
- What's exactly difficult about CTRL+C, CTRL+V?
-
04:42 AM Feature #7392: Please allow syncing authorized_keys into config.xml
- ok, can you instead at least add an option to not clear the authorized_keys at reboot? it is really difficult to have...
-
05:22 AM pfSense Packages Bug #7404 (Not a Bug): OpenVPN Client Export with custom DynDNS not working
- When using the OpenVPN Client Export Utility with a custom DynDNS the Host name resolution combobox-value is empty.
... -
04:14 AM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- Forgot to say: Indeed, *Pass* rule will place packets into related queue but it will break traffic.
-
12:56 AM Bug #7402 (New): Inconsistent use of htmlentities validation checks
- Forum: https://forum.pfsense.org/index.php?topic=127350.0
Various pages have a loop through the input parameters (... -
12:23 AM Feature #4632: Support for Multipath TCP (MPTCP)
- when it's in FreeBSD.
03/16/2017
-
10:23 PM Feature #4632: Support for Multipath TCP (MPTCP)
- Not sure where this is in development but this could really help me
so quick googling
http://blog.multipath-tcp.... -
08:46 PM Revision 0d40b2cb: Don't process empty anchors as it could lead to flushing more than intended when cleaning up after relayd. Fixes #7396
-
08:46 PM Revision 3480105f: Don't process empty anchors as it could lead to flushing more than intended when cleaning up after relayd. Fixes #7396
-
08:44 PM Revision 31b1f1e1: Don't process empty anchors as it could lead to flushing more than intended when cleaning up after relayd. Fixes #7396
-
06:05 PM Revision 32e75b43: Run custom deinstall commands during the deinstall phase instead of post-deinstall, otherwise they will never get run. Fixes #7401
-
06:05 PM Revision 54f87601: Run custom deinstall commands during the deinstall phase instead of post-deinstall, otherwise they will never get run. Fixes #7401
-
06:04 PM Revision 59fada5c: Run custom deinstall commands during the deinstall phase instead of post-deinstall, otherwise they will never get run. Fixes #7401
-
03:48 PM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Note that with your patch, tables are not deleted like before. Only our alias table "Trusted" is emptied. Without you...
-
03:44 PM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- I couldn't reproduce that but it gave me another idea of where to look for problems. I'll have another fix pushed her...
-
03:29 PM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Jim Pingle wrote:
> Nothing else should be required but the changes made in the patch.
>
> I can reproduce the pr... -
02:10 PM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Nothing else should be required but the changes made in the patch.
I can reproduce the problem without that fix ap... -
01:54 PM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Jim Pingle wrote:
> That is not the usual way to operate relayd, however. Normally you would not need to stop/start ... -
01:20 PM Bug #7401 (Feedback): custom_php_deinstall_command isn't being run during pkg post-deinstall because info.xml has already been removed by that step.
- Applied in changeset commit:59fada5c1fb57f2896caae895c70dd10ef5d02da.
-
10:58 AM Bug #7401 (Resolved): custom_php_deinstall_command isn't being run during pkg post-deinstall because info.xml has already been removed by that step.
- A bit of a chicken/egg problem here:
The custom_php_deinstall_command function from a package is supposed to be ru... -
11:48 AM Revision c7471240: replace setHelp() on section with staticText() and textual change requested
-
11:46 AM Revision ce348731: Make sure that array exists before using foreach() (Bug #7399)
-
11:45 AM Bug #5993 (Feedback): dhcp6c not started until an RA received
-
11:43 AM Bug #5993: dhcp6c not started until an RA received
- This issue can be closed. It was fixed in 2.3.3 and 2.4.
-
11:34 AM Revision 6485ffb9: Textual change as requested
-
11:32 AM Revision b9304b9a: Textual changes requested
-
11:12 AM Revision ae18c711: Remove input validation since there is no user input here.
-
10:59 AM pfSense Packages Bug #7319 (Rejected): Tinc uninstall leaves an entry in the firewall rules tab.
- The code in the package is OK. Real problem is here: #7401
-
10:22 AM Bug #7400 (Assigned): Traffic Graphs show bad data on 2.3.3_1
-
07:28 AM Bug #7400 (Assigned): Traffic Graphs show bad data on 2.3.3_1
- Hi!
i updated pfsense to version 2.3.3_1
Now, the traffic graph are showing wrong data. On Status/Traffic Graph... -
10:20 AM Bug #7378 (Feedback): pfctl: ix0: driver does not support altq
- Fix committed to RELENG_2_4, RELENG_2_3 and RELENG_2_3_3: https://github.com/pfsense/FreeBSD-src/commit/f2504b01d55b5...
-
09:18 AM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
- Confirmed still not working on 2.4
-
09:14 AM Bug #7145 (Feedback): rc.newwanipv6 running in all cases, even for a renew
-
09:13 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- This is fixed in 2.4. DHCP6C client modified to give REASONS and only call the update script when needed.
-
04:17 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Having issues with this in 2.3.3
Every 30 minutes, my IPv6 address is refreshed, causing rc.newwanipv6 to fire on al... -
09:12 AM Todo #6944 (Closed): dhcp6c releasing allocation
-
09:12 AM Bug #7185 (Feedback): DHCP6c SIGTERM, SIGKILL
-
09:10 AM Bug #7185: DHCP6c SIGTERM, SIGKILL
- Close this Issue. DHCP6C has been fixed.
-
09:11 AM pfSense Packages Bug #7390 (Feedback): SquidGuard
- Fix pushed. Will show up shortly in pfSense-pkg-squidGuard version 1.16.1.
-
08:54 AM Bug #7330 (Resolved): IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Fixed by PR
-
03:41 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Fixed - Close this one.
-
08:06 AM pfSense Packages Bug #6763: Squid ClamAv wrong redirect URL
- Solution:
when I installed pfSense with all packages I use, I gave it a domain name.
After some while, I changed th... -
07:33 AM pfSense Packages Bug #7263 (Feedback): FreeRADIUS - complete lack of input validation
-
04:09 AM pfSense Packages Bug #7263: FreeRADIUS - complete lack of input validation
- Merged.
-
06:46 AM Bug #7399: getserviceproviders.php - lack of sanity checking in foreach()
- https://github.com/pfsense/pfsense/pull/3649
-
06:45 AM Bug #7399 (Resolved): getserviceproviders.php - lack of sanity checking in foreach()
- To reproduce:
- Go to Interfaces - Assign - PPPs - Add
- Choose PPP as Like Type
- Select country like Åland Isl... -
06:31 AM Feature #7122: Add filters to various dashboard widgets
- Once the PR has been reviewed (and hopefully merged) the new checkbox format (like other widgets) will be available. ...
-
05:13 AM Feature #7122: Add filters to various dashboard widgets
- James Snell wrote:
> Build 2.4.0.b.20170314.2306 showing a multi-select box for interfaces, was expecting checkboxes... -
04:54 AM Feature #7122: Add filters to various dashboard widgets
- Build 2.4.0.b.20170314.2306 showing a multi-select box for interfaces, was expecting checkboxes.
Cropped screensho... -
06:02 AM Bug #6890: PPP service name error
- Yeah, the input validation makes zero sense, there's no user input there in the first place.
https://github.com/pf... -
05:29 AM Bug #6890: PPP service name error
- Sorry for third answer, just found the service name check
/usr/local/www/interfaces_ppps_edit.php
Line 276
if ... -
05:27 AM Bug #6890: PPP service name error
- Problem is in /usr/local/share/mobile-broadband-provider-info/serviceproviders.xml
Line 3150 contains (),-
<name>... -
05:05 AM Bug #6890: PPP service name error
- Having the same problem. cannot add any ppp connection because it's saying "The service name contains invalid charact...
-
02:13 AM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- I pushed a commit for this (not a PR yet because I think there's more to be done) but in case anyone wants to use thi...
-
01:15 AM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- I confirm this bug. In pfSense 2.4 no matter what you with *Match* floating rules do all traffic is being pushed into...
03/15/2017
-
11:49 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- I too am seeing this bug. Fresh setup of traffic shaping using the wizard simply didn't work. All traffic was being p...
-
07:02 PM Revision 9433cda2: Perform a filter reload after starting relayd so it does not leave the firewall without pf tables. Fixes #7396
-
07:02 PM Revision a8014f46: Perform a filter reload after starting relayd so it does not leave the firewall without pf tables. Fixes #7396
-
07:01 PM Revision 803ca43a: Perform a filter reload after starting relayd so it does not leave the firewall without pf tables. Fixes #7396
-
06:07 PM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- Kill Bill wrote:
> And FYI regarding the OpenVPN: https://redmine.pfsense.org/issues/4331 (IOW, it will never be aut... -
03:30 PM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- And FYI regarding the OpenVPN: https://redmine.pfsense.org/issues/4331 (IOW, it will never be auto-added to localnet ...
-
09:39 AM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- No, it's not, noone touched the relevant code for years.
https://github.com/pfsense/FreeBSD-ports/blame/devel/www... -
09:35 AM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- Kill Bill wrote:
> Look, you need either non-empty local interface, or fill in Allowed Subnets on the ACLs tab. Plea... -
09:28 AM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- Look, you need either non-empty local interface, or fill in Allowed Subnets on the ACLs tab. Please, use forums for d...
-
09:25 AM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- Kill Bill wrote:
> Kindly tick "Allow local network(s) on interface(s)" if you want such ACL.
This is already tic... -
09:23 AM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- Additional information: The pfSense box is running OpenVPN so this may be a problem with this version of squid not be...
-
09:23 AM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- Kindly tick "Allow local network(s) on interface(s)" if you want such ACL.
-
08:00 AM pfSense Packages Bug #7391 (Not a Bug): 0.4.36_1 localnet ACL missing
- Version 0.4.36_1 of Squid on pfSense 2.3.3 does not provide the "localnet" acl anymore in /usr/local/etc/squid/squid....
-
06:04 PM Feature #7398 (Assigned): Show average value of bandwidth in/out on Dashboard trafic graph
-
05:33 PM Feature #7398 (Assigned): Show average value of bandwidth in/out on Dashboard trafic graph
- Show like the image in attach.
- 06:00 PM Revision 4594038a: Don't display the "export key" icon if there is no key to export. e.g. If hte cert was created from a pasted-in CSR
-
05:01 PM Bug #6993: OpenVPN status error during CARP state transition
- James Webb wrote:
> Running two devices in HA and have stacked one IP Alias onto the CARP IP. If I bind a OpenVPN se... - 04:51 PM Revision 258e3b02: Base64 encode private key
- 04:30 PM Revision 55047259: Add the ability to save a private key with the newly signed cert
- 03:49 PM Revision d520da31: Revised certificate selectors to use refid rather than index
-
03:45 PM pfSense Packages Bug #7390 (Confirmed): SquidGuard
-
06:44 AM pfSense Packages Bug #7390 (Resolved): SquidGuard
- When a @'@ caracter is inserted in a comment, the "filter config" button in "Log" tab no longer works.
Javascript ca... -
03:17 PM Bug #7397 (Resolved): Backport factory.sh changes to 2.3
- Copy recently added factory.sh functionality to 2.3
- 03:08 PM Revision d6107e1a: Deleted CSR key textarea - No longer required
-
02:18 PM Revision 92005dd1: Merge pull request #3515 from marjohn56/master
-
02:18 PM Revision de79e1c5: Merge pull request #3583 from phil-davis/alias-hover-text
-
02:17 PM Revision 08f92b9f: Merge pull request #3457 from stilez/patch-38
- 02:14 PM Revision b078cd59: Revised error handling for CSR signing
-
02:10 PM Bug #7396 (Feedback): Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Applied in changeset commit:803ca43a02863d2086f4affd8c1048c598475bf9.
-
02:03 PM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- To me, I have a fix pushed.
-
01:54 PM Bug #7396 (Confirmed): Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Also affects 2.4.x.
That is not the usual way to operate relayd, however. Normally you would not need to stop/star... -
01:32 PM Bug #7396 (Resolved): Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Hi there :)
This is reproducible on a brand new 2.3.3 or 2.3.3_1 pfsense 64 bits with following simple load balanc... -
02:05 PM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- You can have multiple WANs with different gateways, yes.
You cannot have multiple WANs with the same gateway. If i... -
02:02 PM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- Jim Pingle wrote:
> Yes. And it works by chance, not by design. It's not a configuration we support.
No it works ... -
01:51 PM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- Yes. And it works by chance, not by design. It's not a configuration we support.
-
01:46 PM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- Error Jim Pingle,my Both WAN are PPPoE link in IPVPN MPLS but there are a same gateway
I have 1 link PPPoE (ADS... -
12:25 PM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- It happens to work, that doesn't make it any more valid than if it were two non-PPPoE lines on the same network, just...
-
12:23 PM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- wait I thought multi pppoe worked via your own comments and tests I just ordered a second pppoe ?
https://redmine.... -
11:54 AM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- Having two interfaces on the same network is not a feature we support, and it is not a valid configuration. The probl...
-
11:32 AM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- Hello Jim Pingle,
it's not a system-level limitation because when I add static route in CLi : /root: route add 192.1... -
10:36 AM Bug #7393 (Rejected): Problem with static route when you have Two WAN with same Gateway
- Having two WANs with the same gateway is not a viable configuration. It's an operating system-level limitation, nothi...
-
10:33 AM Bug #7393 (Rejected): Problem with static route when you have Two WAN with same Gateway
- hello all,
We find a problem on pfsense Nanobsd 2.3.2
Hardware : Motherboard ALIX
we have 2 Wan interface with M... -
01:06 PM Feature #4372: dnscrypt support
- +1
-
12:54 PM Feature #6519: SSD TRIM option via GUI
- Jim Pingle wrote:
> No, it is not. The option cannot be changed while the disk is mounted.
Could you add in the ... -
11:04 AM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- Thanks, can start killing some code now. :)
-
10:38 AM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- FYI- I merged that PR, should be good to continue.
-
10:44 AM Feature #7395 (Duplicate): IPv6: Display prefix assigned by ISP
- *PROBLEM STATEMENT*
When using DHCPv6 PD on the WAN interface, there is no easy way to see what prefix the ISP assig... -
10:36 AM Bug #7394 (Resolved): firewall_aliases_edit.php: Renaming an alias after input errors fails to update references
- When renaming an alias the firewall normally checks for references in firewall/nat rules and updates the alias name w...
-
10:28 AM Feature #2358: NAT64 support
- UPVOTE!
I'd also like to voice my support for this integration
-
10:27 AM Feature #2358: NAT64 support
- Joel Whitehouse wrote:
> Would like to see support for NAT64/DNS64 in pfsense. Deployment of DNS64 outside of the g... -
10:08 AM Feature #7392 (Rejected): Please allow syncing authorized_keys into config.xml
- While I could maybe see a script made to import keys there is no way this would be automated in the way you describe....
-
10:05 AM Feature #7392 (Rejected): Please allow syncing authorized_keys into config.xml
- For me it is a bit inconvenient to copy and paste ssh keys into UI.
I am usually doing this using ssh-copy-id whic... -
09:30 AM Bug #7316 (Feedback): Fail Boostrap format port in
- Applied in changeset commit:57dd76d15c66e5cd60839fe4b376153778de8904.
-
09:29 AM Feature #7383: system_certmanager.php?act=new: Add new select option to sign a CSR
- A fix for the Openssl library error is on the way.
Select Method->Sign a Certificate Signing Request
Use the "C... -
08:54 AM Feature #7383 (Assigned): system_certmanager.php?act=new: Add new select option to sign a CSR
- I also get "openssl library returns: error:0906D06C:PEM routines:PEM_read_bio:no start line" when attempting to sign ...
-
08:52 AM Feature #7383: system_certmanager.php?act=new: Add new select option to sign a CSR
- Current Base System 2.4.0.b.20170315.0313
Option not available. What am I missing? Isn't this a later snapshot? ... -
08:27 AM Feature #7383: system_certmanager.php?act=new: Add new select option to sign a CSR
- Build 2.4.0.b.20170314.2306
The option "Sign a Certificate Signing Request" is now present.
Created a signing r... -
06:10 AM Bug #7389 (In Progress): Limiter does not work with transparent proxy
- Good morning the limiter returned to present problems, identical to the other bug already reported and resolved and r...
-
06:05 AM Bug #7345: nanobsd upgrades still fail bacause of lacking resolv.conf
- Great, thank you very much Brett!
-
05:17 AM pfSense Packages Bug #7388: Suricata does not property recognize MTU for PPPOE interfaces
- See this: https://redmine.openinfosecfoundation.org/issues/1556#note-2
-
04:01 AM Todo #7385: Sanitize PHP includes
- Up to pfSense devs. If you prefer, I can do a single PR for all the write_config() stuff, however that shouldn't rot ...
- 03:06 AM Revision d0a8de18: Spelling fix in help text
03/14/2017
-
11:02 PM Revision 915c934b: Sort the interface names.
- No functional change.
-
09:49 PM Todo #7385: Sanitize PHP includes
- @Kill Bill - there are write_config(gettext()) things mixed together with include_once() changes in these PRs.
Would... -
09:25 PM Todo #7385: Sanitize PHP includes
- Thanks for this. Given that JimP and others have a recollection that there is a reason for the seemingly odd includes...
-
05:13 PM Todo #7385: Sanitize PHP includes
- Hmmm well, I obviously left the filter.inc in places where stuff like @filter_configure()@ is being used (talking abo...
-
03:27 PM Todo #7385: Sanitize PHP includes
- I seem to recall shaper.inc being in unexpected places because running a filter reload action fails without it. But t...
-
03:21 PM Todo #7385: Sanitize PHP includes
- Assigned to Steve Beaver, but this looks like it could be a hairball.
-
04:00 AM Todo #7385: Sanitize PHP includes
- Adding some related PRs here:
- https://github.com/pfsense/pfsense/pull/3624
- https://github.com/pfsense/pfsense... -
03:39 AM Todo #7385 (New): Sanitize PHP includes
- Includes are massively wrong across the entire pfSense code.
Sort of a reminder. Please, review functions used in ... -
09:22 PM Bug #7345: nanobsd upgrades still fail bacause of lacking resolv.conf
- I also ran into this issue, which broke my ability to update my NanoBSD 2.3.2_1 box to 2.3.3_1. The box in question ...
-
09:11 PM pfSense Packages Bug #7388 (New): Suricata does not property recognize MTU for PPPOE interfaces
- Due to path MTU discovery (via ICMPv6) issues with some IPv6 TCP traffic I have to manually set MSS to 1452 in the WA...
- 08:56 PM Revision 65d735f0: Improve error detection in Openssl lib
- 06:43 PM Revision 2052d3e2: Added the ability to sign a CSR
-
06:01 PM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- I left the log message just for testing... Shouldn't be included in final code...
The function is_process_running... -
05:35 PM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- Could probably use @is_process_running()@ from util.inc instead of the @exec()@. That debug stuff should certainly be...
-
05:23 PM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- Its a 30x loop in 1 sec increments and breaks on Unbound being fully shutdown.
for ($i=1; $i <= 30; $i++) { -
05:21 PM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- note on my system it needs a lot more than one second to shutdown, probably around 10 seconds due to the over 1 milli...
-
01:49 PM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- The issue with the way pfSense stops Unbound, is that the Unbound service takes longer to shut down when there are ma...
-
04:01 PM Feature #7383: system_certmanager.php?act=new: Add new select option to sign a CSR
- Use a build from after the time the change was made. Your build was made at 0021 hrs, the new code was added at 1300 ...
-
03:59 PM Feature #7383: system_certmanager.php?act=new: Add new select option to sign a CSR
- Current Base System 2.4.0.b.20170314.0021
Option not displayed in Cert. Manager GUI. Checked CAs, Certificates, a... -
02:16 PM Feature #7383 (Feedback): system_certmanager.php?act=new: Add new select option to sign a CSR
- Functionality has been added as requested
https://github.com/pfsense/pfsense/commit/2052d3e2ae3acf5564a460dad91966... -
03:36 PM Feature #7321: DynDNS - Add DreamHost DNS support
- Whoops... I completely missed that the second red flag "CLA Missing" was a reversal.
-
02:28 PM Feature #7321: DynDNS - Add DreamHost DNS support
- The Pull Request should show that I have already completed the CLA. Is there a separate one that I need to complete?
-
02:01 PM Feature #7321: DynDNS - Add DreamHost DNS support
- will need a signed CLA prior to integration.
-
03:34 PM Bug #7232: haproxy_pool_edit.php -- sprintf() too few arguments
- Seems like these changes should be reverted?
In webgui im seeing:... -
02:25 PM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
- Has anyone managed to test on 2.4 yet? Experiencing this issue in 2.3 latest.
-
02:19 PM Bug #7288 (Needs Patch): The field 'Distinguished name Organization' contains invalid characters
- Looks like it may be possible to use UTF-8 but it would require significant work to ensure everything functions prope...
-
02:02 PM pfSense Packages Bug #7319: Tinc uninstall leaves an entry in the firewall rules tab.
- Assigned to Pingle for tracking.
-
01:39 PM Bug #7380: WAN DHCP Gateway Outside of Subnet Causing Route Issues
Assigned to Renato for evaluation.
Actual diff is here:
https://github.com/doransmestad/pfsense/commit/d79a46...-
12:50 PM Bug #7387 (New): New Traffic Graph in dashboard resets inverted view to normal view
- New Traffic Graph in Dashboard resets inverted view to overlapping view when switching tabs between Status-Monitoring...
-
09:30 AM Bug #7386 (Resolved): IPv6 not disabled in mpd.conf w/ IPv6 GUI option set to 'disabled'
- continuing from:
https://forum.pfsense.org/index.php?topic=126849.0
When my ISP (Fairpoint) apparently added some...
03/13/2017
-
04:29 PM Revision 32c38047: Add missing includes
-
04:28 PM Revision 227f3f2d: Fix missing includes
-
04:22 PM Revision fc0f1121: Fix broken includes
-
02:22 PM Bug #7384 (Resolved): DHCPv6 doesn't merge IPv6 prefix with the input submitted in DNS servers field when using Track Interface IPv6 configuration parameter for the LAN interface.
- When using Track Interface as a IPv6 Configuration Type in the LAN interface, the DHCPv6 server doesn't merge the IA_...
-
11:34 AM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- OK, I'll figure something out and do a PR. Need https://github.com/pfsense/FreeBSD-ports/pull/308 merged first before...
-
08:20 AM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- I agree, it could/should be killed for 2.4.
Not that far out, probably a few weeks. -
05:35 AM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- Guys, any ETA for 2.4 release (not date, but weeks/months, that sort of thing)? Would be a good opportunity to get ri...
- 11:31 AM Revision fcf29c87: Fix comment typo in firewall_rules.php
- while I notice it
-
10:58 AM Revision d2a919c8: Visually separate the package manager legend area (Bug #7203)
-
08:51 AM Feature #7383 (Closed): system_certmanager.php?act=new: Add new select option to sign a CSR
- Certificate Manager -> Certificates -> Add New: There would be a new select option 'Sign a Certificate Signing Reques...
- 08:26 AM Revision d9058974: Redmine #7381 Disable detail in alias popup
-
06:26 AM Feature #7381: Option to disable alias popups in rules
- Well yes, it's already limited to 10K entries (they are all displayed if you have the patience to scroll down...)
... -
06:20 AM Feature #7381: Option to disable alias popups in rules
- In the 2.2.x days we only let the popup display 30 or so entries which seems saner than making an option. A huge alia...
-
03:32 AM Feature #7381: Option to disable alias popups in rules
- It seems a reasonable thing to me (for those running on crud hardware at either server or client end) and is easy to ...
-
03:19 AM Feature #7381: Option to disable alias popups in rules
- Huh, what kind of horrible HW/browser are you using? Takes about a second on a 10 years old laptop with an alias havi...
-
06:03 AM Bug #7203: pkg_mgr_installed.php - visually separate the legend
- RELENG_2_3 backport - https://github.com/pfsense/pfsense/pull/3644
-
04:11 AM Bug #7382 (Closed): DNS Forwarder does not resolve DNS names on first boot
- "DNS Forwarder (dnsmasq)" service is running at first boot but i am get an error : "dhcpleases Could not deliver sign...
03/12/2017
-
11:24 PM Revision 7d316581: Update interfaces.inc
- Not defined pid file on starting choparp. The pfSense may not kill the program to reconfiguration.
-
10:25 PM Revision 72c34055: Fix Vars for Interface naming
-
08:41 PM Feature #7381 (Resolved): Option to disable alias popups in rules
- An option to disable the popup of the aliases in the rules section would be very handy, hovering over a 20k+ list by ...
-
03:15 PM Bug #7379: Virtual IPs/Proxy ARP: Not defined pid file on starting choparp.
- Yeah, it'd help to determine what's the actual bug before attempting to fix it.
P.S. Please, use GitHub for patche... -
03:05 PM Bug #7379: Virtual IPs/Proxy ARP: Not defined pid file on starting choparp.
- New Bug after applying the patch:
There are several PoxyARP VIPs. Open one of them to edit and change the type to an... -
12:44 PM Bug #7379 (Resolved): Virtual IPs/Proxy ARP: Not defined pid file on starting choparp.
- Not defined pid file on starting choparp. The pfSense may not kill the program to reconfiguration.
@--- interfaces... -
01:47 PM Bug #7380 (Resolved): WAN DHCP Gateway Outside of Subnet Causing Route Issues
- When deploying PFSense in OVH's public cloud, they assign a IPv4 address via DHCP in a /32 subnet. Naturally, with s...
-
01:30 PM Bug #6344: Firewall rules being deleted when separators are added
- I'm no longer seeing this behavior. This issue can be closed.
-
01:23 PM Bug #7249: firewall_rules.php & firewall_nat.php: Replaces underscores with spaces in aliase names
- NOYB NOYB wrote:
> So what is the actual issue that replacing the underscore with space in the displaying of the rul... -
11:03 AM Revision 07c304a5: WAN flap loss of IPv6
- Some hardware is taking too long to set ACCEPT_RTADV on the Interface,
this results in RTSOLD exiting and this not se... - 07:21 AM Revision bea18841: Fix #7372 Cannot filter ICMP Type SKIP
-
06:03 AM Bug #6732: interfaces_ppps_edit.php: L2TP and PPTP WAN-type interface editing has broken input validation
- Can you give some detail of what you are entering. I can't (easily) reproduce it, so maybe there is some unusual/spec...
-
05:42 AM Bug #6732: interfaces_ppps_edit.php: L2TP and PPTP WAN-type interface editing has broken input validation
- It seems that it only works partially.
I just tried to paly around with the @interfaces_ppps_edit.php@-Settings on v... -
03:27 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- It's my thread :)
And yeah, PR https://github.com/pfsense/pfsense/pull/3515 will resolve this one...
Thanks again! -
03:13 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Michael Zieher wrote:
> Greg M wrote:
> > Hi!
> >
> > Very similar issue I think it`s connected: https://forum.p...
03/11/2017
-
03:14 PM Bug #5999: IPv6 IP Alias prevents Track Interface from working with DHCPv6 and RA
- Fixing this would help with the problems discussed in this forum post: https://forum.pfsense.org/index.php?topic=1269...
-
02:50 PM Bug #6233: Bootloop with Alix after 2.3 upgrade
- Norm Sevilla wrote:
> I can confirm the issue on my setup as well, a Negate m1n1wall with pfSense 2.3.3_1 and a Hifn... -
12:38 PM Bug #6233: Bootloop with Alix after 2.3 upgrade
- I can confirm the issue on my setup as well, a Negate m1n1wall with pfSense 2.3.3_1 and a Hifn 7955 crypto accelerato...
-
02:12 PM Bug #6138 (Resolved): Long hostnames overlap the "time" title in the Monitoring graphs
- Thanks, Malcolm. I'll mark this resolved.
-
08:56 AM Bug #6138: Long hostnames overlap the "time" title in the Monitoring graphs
- I've got a reasonably long fqdn hostname (32 characters) and it looks OK now and doesn't overlap.
-
12:59 PM Bug #7378 (Resolved): pfctl: ix0: driver does not support altq
- Motherboard: Supermicro X10SDV-4C-TLN2F
using the onboard NIC: 2 RJ45 10GBase-T ports
2.3.3-RELEASE-p1 (amd64)
Fr... -
11:30 AM Feature #3697: New backup/restore area: Certificates
- Ah yeah, blindly replacing a config section is indeed absolutely no problem... Who cares that the GUI, VPNs and other...
-
11:14 AM Feature #3697: New backup/restore area: Certificates
- OPNsense implemented it and it works like a charm. Few days ago I was prepping a replacement box and I though I would...
-
10:58 AM Feature #3697: New backup/restore area: Certificates
- Dmitriy K wrote:
> It would be nice if we could backup / restore all certificates only.
I don't think so. Imagine... -
07:16 AM Bug #7334 (Assigned): SG-1000 Update failure
- The progress bar issue is another matter. We are waiting for a fix from upstream.
-
01:59 AM pfSense Packages Feature #7377 (Resolved): ACME Certificate DNS-Digitalocean Verification Method
- It would be great to have a DNS verification method for DigitalOcean DNS API that is now natively in GitHub for acme....
03/10/2017
-
11:51 PM Bug #7334: SG-1000 Update failure
- Renato Botelho wrote:
> Fixed on pfSense-upgrade 0.18
I'm still seeing 'failures' part way through the script. S... -
07:03 PM pfSense Packages Feature #7376 (Closed): ACME Package - Please add support Namecheap DNS service
- Please add DNS support in the ACME Package for the Namecheap DNS service provider.
Namecheap API documentation
h... -
06:13 PM Bug #7375 (Assigned): User with restricted privileges can still delete all monitoring/graphing data
-
05:47 PM Bug #7375 (Resolved): User with restricted privileges can still delete all monitoring/graphing data
- I attempted to create a "graph-viewing-only" user account that I could hand out to non-admin users so that they could...
-
11:59 AM Bug #6186: race conditions in service startup
- I've run into this issue as well on my pfSense machines that have ovpn client interfaces set as the outgoing interfac...
-
09:46 AM pfSense Packages Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
- You can take it whereever you want. There's no reference to Snort in the config [1], and no useful information here.
... -
09:43 AM pfSense Packages Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
- I'll take it up with Netgate support if this is the attitude I get here.
Easy to be a dick when you don't use your r... -
09:42 AM pfSense Packages Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
- I'll track this and contact Bill Meeks.
"Kill Bill", please find a way to interact with a more professional tone.... -
09:33 AM pfSense Packages Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
- Like, read what? There is zero information here to determine anything and it has nothing to do with the PBI junk on <...
-
09:16 AM pfSense Packages Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
- Maybe you can take a little different attitude and take time to read what I wrote since I took the time to search the...
-
08:50 AM pfSense Packages Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
- Randy Terbush wrote:
> This seems to be possible duplicate of #3756
No, absolutely not, plus completely unclear ... -
08:12 AM pfSense Packages Bug #7374 (Closed): Barnyard2 package has incomplete install when installed as Suricata depedency
- This seems to be possible duplicate of #3756 which was marked resolved 2 years ago, but still appears to be an issue....
-
07:59 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Hi!
I honestly believe that this one deservers a little higher priority than normal... -
06:45 AM Feature #4606: PKI : CA signing external CSR
- +1 for that rather basic feature!
it should be easy to implement, there is already a similar package, that handles... -
02:40 AM Revision c6c55ee7: Add unknown service for Bug #4287
-
02:37 AM Revision 2e4f5048: Do not report misleading 3G service status (Bug #4287)
- If the ^SIMST or ^SRVST info was never received from the device, report missing/unknown states instead.
-
02:04 AM Revision 8fbe2ea4: status_interfaces.php - fix includes
-
12:54 AM Revision cd1ae328: Adds option to skip adding IPv6 entries in /etc/hosts for LANs
- If a LAN interface's IPv6 configuration is set to Track, and the tracked interface loses connectivity, it can cause c...
-
12:18 AM Revision 5ec2eb9b: Add QinQ interfaces to the list of interfaces not to check (Bug #4669)
03/09/2017
-
08:40 PM Bug #4287: Wrong display for ppp in Interfaces page
- https://github.com/pfsense/pfsense/pull/3639
Cannot see what else could be done here. If it's not reported, it's n... -
07:09 PM Revision 0f1a5f2c: Add reason to write_config() call
-
07:07 PM Revision b290e10e: Add reason to write_config() call
-
06:58 PM Revision 8fcbf879: Update system_update_settings.php
-
06:53 PM Revision 9df2adfc: Add reason to write_config() call
-
06:52 PM Revision a29f2ee6: Add reason to write_config() call
-
06:48 PM Revision 4f36a53c: Add reason to write_config() calls
-
06:41 PM Revision 149816cb: Add reason to write_config() call
-
06:32 PM Revision 3bd33bd3: Add reason to write_config() call
-
06:30 PM Revision fb963e2c: Add reason to write_config() call
-
06:28 PM Revision 437d76fe: Add reason to write_config() call
-
06:26 PM Revision 9d43ef89: Add reason to write_config() call
-
06:24 PM Revision 3f533580: Add reason to write_config() calls
-
06:19 PM Bug #4669: QinQ virtual interfaces available for assignment where they shouldn't be
- Timo Nieminen wrote:
> The patch 1. is missing on 2.3.2-RELEASE-p1. Booting system with QinQ interfaces assigned wil... -
03:47 PM Revision 176026af: Add reason to write_config() call
-
03:44 PM Revision e5b8f4ad: Add reason to write_config() call
-
02:20 PM Revision 0baf52bb: Add reason to write_config() calls
- Replace shell-style comments while here.
-
02:03 PM Revision 5a433494: Add reason to write_config() call
-
01:59 PM Revision 9178eadc: Add reason to write_config() calls
-
01:51 PM Revision 85d1b87e: Add reason to write_config() call
-
01:32 PM Bug #7373 (New): Firewall schedules GUI needs to be redone from scratch
- That thing is seriously horrible, the calendar is confusing like hell plus mostly useless - never heard of anyone sch...
-
01:17 PM Revision 2b359eda: Revert "C2758 is VGA only too"
- This reverts commit 3244266fd8a99a66611334b8ae945de61eb9a0da.
-
01:17 PM Revision f962a59a: Revert "C2758 is VGA only too"
- This reverts commit 0a00b197976e638199ab88b823ec6c75ad9a99b2.
-
01:16 PM Revision 5aa1ac92: Revert "C2758 is VGA only too"
- This reverts commit e4324dcebd54bfc498bffd6d02b0afd7d8c674b9.
-
12:52 PM Revision e4324dce: C2758 is VGA only too
-
12:47 PM Revision 3244266f: C2758 is VGA only too
-
12:46 PM Revision 0a00b197: C2758 is VGA only too
-
11:34 AM Bug #7372: Cannot filter ICMP Type SKIP
- An easier way to keep it would be to use the type number (39) instead of the name. The rule loads fine with 39 instea...
-
03:14 AM Bug #7372: Cannot filter ICMP Type SKIP
- If you want to block all "dodgy" ICMP types, then you should probably block ICMP type numbers that do not have a defi...
-
02:50 AM Bug #7372: Cannot filter ICMP Type SKIP
- Phillip Davis wrote:
> SKIP (type 39) has been deprecated:
> Is there a reason you (or anyone) need to particularly...
03/08/2017
-
10:03 PM Revision 5eab8157: Add missing includes to config.console.inc
-
10:01 PM Bug #7372: Cannot filter ICMP Type SKIP
- I figured it was likely a parser issue when I was narrowing it down to SKIP - I initially tried the types with parent...
-
09:53 PM Bug #7372: Cannot filter ICMP Type SKIP
- Hmmm - pf seems to know about "skip":
https://github.com/pfsense/FreeBSD-src/blob/devel/sbin/pfctl/pfctl_parser.c#L8... -
08:48 PM Bug #7372: Cannot filter ICMP Type SKIP
- No reason for me, just found the bug and reporting it.
-
08:43 PM Bug #7372: Cannot filter ICMP Type SKIP
- SKIP (type 39) has been deprecated:
https://www.iana.org/assignments/icmp-parameters/icmp-parameters.xml#icmp-parame... -
04:19 PM Bug #7372 (Resolved): Cannot filter ICMP Type SKIP
- When adding a rule to filter ICMP traffic of type SKIP, the following error shows under Status / System Logs / System...
-
08:27 PM Revision 19b3f5bc: Add a deprecation notice
-
08:07 PM Revision 4b67b75c: Add error handling to AJAX call
-
07:59 PM Revision d149a316: It's time for 2.3.3-RELEASE-p1
-
07:55 PM Revision a97b8740: Add error handling to AJAX call
-
07:10 PM Revision 7da4e896: Add missing include
-
07:09 PM Revision 8d53c0b9: Add missing include
-
07:08 PM Revision 73acc25d: Add missing include
-
07:07 PM Revision 922273bf: Add missing include
-
07:07 PM Revision e22b3080: Add missing include
-
07:06 PM Revision 096ae765: Add missing include
-
07:06 PM Revision 394bb9d4: Add missing include
-
07:05 PM Revision 43e07671: Add missing include
-
07:04 PM Revision 15c74b5b: Add missing include
-
07:04 PM Revision 0661622a: Add missing include
-
07:03 PM Revision fdd8fafc: Add missing include
-
07:02 PM Revision e2f8257d: Add missing include
-
07:02 PM Revision f5e4ee03: Add missing include
-
07:01 PM Revision b4097bca: Add missing include
-
07:00 PM Revision b51cb63f: Add missing include
-
06:59 PM Revision afb7b75e: Add missing include
-
06:57 PM Revision 059e1bd2: Add missing include
-
06:53 PM Revision e1ac4a84: Remove duplicate pfSenseHeader() function
- Sort includes while here.
-
06:46 PM Revision c35d1294: Relocate pfSenseHeader() function to pfsense-utils.inc
-
06:40 PM Revision bbd36e2d: Relocate pfSenseHeader() function to pfsense-utils.inc
- Sort includes while here.
- 06:36 PM Revision 31c0fa8b: Fix #7317 Widget Filter All button
- (cherry picked from commit 7067e174c27a1fe9b23d13806f1e52ce9bc2aaee)
- 06:35 PM Revision f070cc7a: System Information widget filter gettext()
- (cherry picked from commit f5d762f90924510c097a9065dff135dab01f46f0)
- 06:35 PM Revision a1211630: System Information Widget Filter
- (cherry picked from commit 718b3b0b1b75de09a87866cb37b5a0752643283a)
- 06:34 PM Revision 7df63e98: Fix #7317 Widget Filter All button
- (cherry picked from commit 7067e174c27a1fe9b23d13806f1e52ce9bc2aaee)
- 05:40 PM Revision f3de1be0: Fix #7364 Console assigned VLAN disappears after reboot
- (cherry picked from commit 75a1149e0104561446e6f90f98d98c6c13c52996)
- 05:40 PM Revision 25d8c2ce: Fix #7364 Console assigned VLAN disappears after reboot
- (cherry picked from commit 75a1149e0104561446e6f90f98d98c6c13c52996)
-
05:39 PM Revision 209e95d6: Merge pull request #3626 from phil-davis/trigger-initial-wizard-7364
- 04:55 PM Revision 11a0c763: Fix #7306 Correctly filter log widget entries by interface description
- (cherry picked from commit 27bc5848cfea95f97f70a4fe0c30da6319794a9a)
- 04:55 PM Revision 5bc83b28: Fix #7306 Correctly filter log widget entries by interface description
- (cherry picked from commit 27bc5848cfea95f97f70a4fe0c30da6319794a9a)
-
04:54 PM Revision b25977ab: Merge pull request #3577 from phil-davis/patch-10
-
04:42 PM Revision ceb90928: Use the same cache filename pattern for RFC2136 IPv6 items as used by dyndns
-
04:42 PM Revision 458f5aee: Use | to separate dyndns IPv4 fields on cache file as done by rfc2136 items and for all IPv6 items
-
04:41 PM Revision aa3e0749: Setup XG-154x console to VGA only
-
04:40 PM Revision 57c616e2: Setup XG-154x console to VGA only
-
04:40 PM Revision c7300778: Setup XG-154x console to VGA only
-
04:36 PM Feature #2358: NAT64 support
- Google offers a public DNS64 resolver https://developers.google.com/speed/public-dns/docs/dns64 so if we could get NA...
-
03:06 PM Revision a49317dc: Add AJAX to interfaces widget
- Do some whitespace fixes while here.
-
03:05 PM Revision 37f95208: Remove whirlpool from the list of CA/Cert digest algorithms as it does not work properly. OpenSSL claims it's not valid ("unknown signature algorithm"). Fixes #7370
- While I'm here, stop needlessly repeating the algo list, it's a global in certs.inc, so use that single copy of the l...
-
03:05 PM Revision cfc0d396: Remove whirlpool from the list of CA/Cert digest algorithms as it does not work properly. OpenSSL claims it's not valid ("unknown signature algorithm"). Fixes #7370
- While I'm here, stop needlessly repeating the algo list, it's a global in certs.inc, so use that single copy of the l...
-
03:03 PM Revision 84141846: Remove whirlpool from the list of CA/Cert digest algorithms as it does not work properly. OpenSSL claims it's not valid ("unknown signature algorithm"). Fixes #7370
- While I'm here, stop needlessly repeating the algo list, it's a global in certs.inc, so use that single copy of the l...
-
02:58 PM Revision 505c0863: Fix display of openssl errors when working with CA or certificate entries. Found this while looking into ticket #7370
-
02:58 PM Revision ddfa8daa: Fix display of openssl errors when working with CA or certificate entries. Found this while looking into ticket #7370
-
02:57 PM Revision 5ce9bcf5: Fix display of openssl errors when working with CA or certificate entries. Found this while looking into ticket #7370
-
02:53 PM Bug #7343 (Resolved): On 2.3.3, Updater reports that the latest version is 0.18_1
- 02:34 PM Revision 27c86938: Set new blog URL (https://www.netgate.com/blog/) as default for RSS widget
- (cherry picked from commit 294f14f7897f973f1fa2a1506cfdd9117b5daf65)
-
02:11 PM pfSense Packages Bug #7237: ACME - first table row on certs tab does not autoexpand the fields
- Should get fixed/changed with this: https://github.com/pfsense/FreeBSD-ports/pull/329
-
02:09 PM pfSense Packages Bug #7342: Acme Certificates option to change the order of certificates is broken
- @Sam, thanks for clarifying, should get fixed with this: https://github.com/pfsense/FreeBSD-ports/pull/329
-
12:36 AM pfSense Packages Bug #7342: Acme Certificates option to change the order of certificates is broken
- I found what causes it. If I set the name to be the domain name with "."s eg: test.domain.com it won't let me click ...
-
02:09 PM pfSense Packages Bug #7302 (Resolved): Acme AWS/Route 53 DNS Verification fails
-
02:08 PM pfSense Packages Bug #7302: Acme AWS/Route 53 DNS Verification fails
- I can confirm that 0.1.14 works with AWS.
-
02:02 PM pfSense Packages Bug #7302: Acme AWS/Route 53 DNS Verification fails
- Can you check if 0.1.14 fixes this?
-
02:08 PM pfSense Packages Feature #7340: Acme Client nsupdate interface forces a different key-ID for every domain
- The way the code works now the key name/id is the domain name. While you could copy the key to a bunch of names on th...
-
02:06 PM pfSense Packages Feature #7340: Acme Client nsupdate interface forces a different key-ID for every domain
- Seems to me if you can set 1 update key in bind you can reuse that key in acme package for each domain?
p.s. ive nev... -
01:20 PM Bug #7306 (Resolved): Log widget filter interface selection does not work when interface description is not the default
- works
-
10:55 AM Bug #7306 (Feedback): Log widget filter interface selection does not work when interface description is not the default
- PR has been merged, thanks!
-
01:12 PM Bug #7299 (Resolved): Error loading rules for old rule with ICMP type specified
-
01:12 PM Bug #7300 (Resolved): Error displaying selected ICMP types for old rules without ipprotocol
-
12:39 PM Bug #7301 (Resolved): Dynamic DNS status widget formatting for medium with browser window.
- Works
-
10:53 AM Bug #7301 (Feedback): Dynamic DNS status widget formatting for medium with browser window.
- PR has been merged
-
12:37 PM Bug #7317 (Resolved): Widget Filter All button effects all widgets
- Cherry-picked necessary commits to RELENG_2_3 and RELENG_2_3_3
-
12:11 PM Bug #7354 (Resolved): /etc/rc.initial.password: Expiration date for admin user is not removed when resetting the account
-
12:10 PM Bug #7356 (Resolved): pfsense 2.3.4: TCP State Timeout cannot be higher than 3600s within a rule - global configuration allows higher values
- Works
-
12:08 PM Bug #7370 (Resolved): Whirlpool Digest Algorithm on 2.3.3 and 2.4
- Works
-
09:20 AM Bug #7370 (Feedback): Whirlpool Digest Algorithm on 2.3.3 and 2.4
- Applied in changeset commit:841418461212fd2eb985553122642a5cc758246b.
-
09:05 AM Bug #7370 (Confirmed): Whirlpool Digest Algorithm on 2.3.3 and 2.4
-
05:48 AM Bug #7370 (Resolved): Whirlpool Digest Algorithm on 2.3.3 and 2.4
- CA certificate creation fails when using DA: Whirlpool with any key length from 512 to 16384.
No related errors in s... -
11:52 AM Bug #7357 (Resolved): CloudFlare DDNS Not working for domain-only updates (@ record for domain)
- Confirmed fixed
-
11:50 AM Bug #7364 (Resolved): VLAN disappears after reboot - assigned through shell
- Works
-
11:50 AM Bug #7364 (Feedback): VLAN disappears after reboot - assigned through shell
- Applied in changeset commit:75a1149e0104561446e6f90f98d98c6c13c52996.
-
11:34 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- The previous error was due to a CE patch being applied to a factory image. Renato created a factory patch and I was a...
-
11:20 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- patch fails on 2.3.3 and 2.4
2.3:... -
03:17 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- The initial setup wizard has other stuff for setting interface IPs, DNS servers and so on. So if someone sets their i...
-
02:36 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- Should have looked at your patch first. That is why I say IANAProgrammer.
-
02:34 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- Right.
This is probably not the place for this discussion but if a manual assignment is done in the web menu/CLI p... -
02:19 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- I could reproduce after doing a "reset to factory defaults" in the VM
PR https://github.com/pfsense/pfsense/pull/362... -
12:16 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- I can confirm this using an RCC-VE 2440 and both netgate factory and CE 2.3.3 images.
I believe this is due to run... -
11:14 AM Feature #1181: Allow a way to add protocols (such as udp) to a load balancer
- unfortunately, to have working loadbalanced dns nowadays, you need to balance udp + tcp aswell. see http://www.networ...
-
10:46 AM Bug #7358 (Resolved): XG-1540/1 - wrong console type breaks single-user mode
-
10:45 AM Bug #7358: XG-1540/1 - wrong console type breaks single-user mode
- Fix on commit:aa3e0749204a7f80c4717d86a2d44c4825888543 confirmed to work
-
10:45 AM Bug #7371: pfsense load balancer relayd does not load balance dns with udp+tcp
- please see my last comment in #6870
-
10:44 AM Bug #7371 (Closed): pfsense load balancer relayd does not load balance dns with udp+tcp
- i would have reopened https://redmine.pfsense.org/issues/6870 , but unfortunately i can`t
relayd is unusable in it... -
10:44 AM Bug #7290 (Resolved): Dynamic DNS Widget, RFC2136 entries show red even when the cached IP address is correct
- Fixed by commit:5be33f49c5d5d70d9a11822f77eff3a312b43545 and commit:877676ee199a399ae5495543b080527bd34037f7
-
09:40 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Greg M wrote:
> Hi!
>
> Very similar issue I think it`s connected: https://forum.pfsense.org/index.php?topic=1268... -
09:36 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Martin Wasley wrote:
> Michael Zieher wrote:
> > Ah... Sorry!
> > The interesting Logs are all 04:* ... I somehow ... -
08:00 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Michael Zieher wrote:
> Ah... Sorry!
> The interesting Logs are all 04:* ... I somehow missed to truncate the 19:* ... -
04:57 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Hi!
Very similar issue I think it`s connected: https://forum.pfsense.org/index.php?topic=126828.0 -
09:39 AM Bug #7352: pfSense IPv6 static route is dumped after a WAN flap
- What happens if you just open a page (WAN Interface maybe), click 'save' without changing anything and 'apply'?
-
09:34 AM Bug #7079: ClamAV C-ICAP causing Kernel Panic and System Crash
- Yeah, that'd be the one. OT: The ntopng thing is a disaster, can you bump it to 2.4.2017.01.20_1? It keeps crashing o...
-
09:30 AM Bug #7079: ClamAV C-ICAP causing Kernel Panic and System Crash
- Nothing from that address but I see one at the right time that came in over IPv6 (2001:470:6e prefix). That looks to ...
-
05:20 AM Bug #7079: ClamAV C-ICAP causing Kernel Panic and System Crash
- I just submitted a crash dump related to this (IP: 85.70.xx.xx)
-
08:56 AM Bug #7368: PPPoE uptime incorrect on pfSense reboot
- I'll add some Ajax to the widget. https://github.com/pfsense/pfsense/pull/3628
Otherwise, WFM as said above. -
08:13 AM Bug #7368 (Not a Bug): PPPoE uptime incorrect on pfSense reboot
- It works fine here, too. I have a test VM with two PPPoE WANs and an L2TP WAN and the uptime is correct in the widget...
-
07:46 AM Bug #7368: PPPoE uptime incorrect on pfSense reboot
- The comment on widget was that the widget is working as it should, it's showing the interface uptime be it correct wi...
-
07:36 AM Bug #7368: PPPoE uptime incorrect on pfSense reboot
- Cannot reproduce any such issue. In fact, it's working for multiple users, see #6032. (The widgets uses pretty much t...
-
07:29 AM Bug #7368: PPPoE uptime incorrect on pfSense reboot
- Typically a PPPoE connection should have been established during the reboot and be ready by the time one sees the con...
-
08:42 AM Revision 718cbc2d: New dhcp6c features REASONS and signals
- This PR takes advantage of modifications and additions to dhcp6c.
Firstly, a fix has been made to dhcp6c where the p... - 08:12 AM Revision 75a1149e: Fix #7364 Console assigned VLAN disappears after reboot
-
07:30 AM pfSense Packages Bug #6748: rrd_fetch_json.php returns html when user is unauthorized (causes "Error: SyntaxError: Unexpected token <")
- ...
-
07:09 AM Bug #6870: Load balancer DNS (relayd) can't handle fragmented udp, breaks DNSSEC
- notes from my findings:
1. relay can not do udp layer7 relaying besides "special case" dns
2. despite other inf... -
06:53 AM Feature #3567: Option to disable NTP
- -https://github.com/pfsense/pfsense/pull/3627-
(If someone still wishes to have this feature, feel free to recycle... -
04:15 AM Feature #6032 (Resolved): Show PPPoE uptime on the Dashboard - Interfaces Widget
-
01:00 AM Feature #7369 (Duplicate): user privileges - refine users rights to prevent admins to tamper with other admins accounts but still manage to the configuration
- to prevent admins to mess around with other users admins passwords/accounts/access but still have access to the rest ...
03/07/2017
-
10:52 PM Bug #7364: VLAN disappears after reboot - assigned through shell
- I tried exactly this on a 2.3.3 VM and it works fine - I made em1_vlan42 and it got assigned to LAN and came back aft...
-
09:50 AM Bug #7364 (Resolved): VLAN disappears after reboot - assigned through shell
- When a VLAN interface is created and assigned as the LAN interface through the shell menu, it will disappear from con...
-
08:49 PM pfSense Packages Bug #7342: Acme Certificates option to change the order of certificates is broken
- Maybe a browser cache of old JavaScript for the page? Try force refreshing the page (ctrl-F5) to make sure it is runn...
-
06:11 PM pfSense Packages Bug #7342: Acme Certificates option to change the order of certificates is broken
- I just updated from 0.1.12 to 0.1.14 as it had been updated since I submitted this and verified that it still does no...
-
05:53 PM pfSense Packages Bug #7342 (Rejected): Acme Certificates option to change the order of certificates is broken
- Works here, too.
-
05:02 PM pfSense Packages Bug #7342: Acme Certificates option to change the order of certificates is broken
- Works for me.. Check the box on the second certificate, click the anchor on the first one. After which the second cer...
-
06:43 PM Revision 8724b1ad: Some small improvements to help with ticket #7256
- They don't fix the problem but avoid some pitfalls that could contribute to it.
-
06:25 PM Bug #7368: PPPoE uptime incorrect on pfSense reboot
- PPPoE uptime on reboot is zero. Not exactly sure what "proportion" are you expecting.
-
04:45 PM Bug #7368 (Not a Bug): PPPoE uptime incorrect on pfSense reboot
- PPPoE uptime doesn't immediately reflect the actual uptime once pfSense has been rebooted, seems to be proportional t...
- 06:02 PM Revision de34683a: Redmine #7301 Put dot after the word break
- Signed-off-by: Phil Davis <phil.davis@inf.org>
(cherry picked from commit 81b1b44ad7e4d7abc635b08533359b9df45b54b2) - 06:02 PM Revision b77ddf68: Redmine #7301 Provide word-break opportunity for dynamic DNS host names
- Signed-off-by: Phil Davis <phil.davis@inf.org>
(cherry picked from commit 138e79d42cb1771e3b8fcc727270187f5c7ee7db) -
06:01 PM Revision a095b039: Merge pull request #3574 from phil-davis/wrap-host-domain-names
-
06:01 PM Revision 3aa941d0: Merge pull request #3606 from PiBa-NL/igmp_apply-20170303
-
05:59 PM Revision 96d243a5: Merge pull request #3603 from NOYB/RAM_Disk_Settings_GUI
-
05:33 PM Feature #4826: Allow configuration of multiple phase1 proposals
- That would be great, because currently you have to select the lowest common denominator, which generally results in p...
-
05:33 PM Feature #6242: Use local user datebase for IKEv2 EAP-Charpv2
- +1 from me :)
- 04:50 PM Revision 939e4b6a: Set new blog URL (https://www.netgate.com/blog/) as default for RSS widget
- (cherry picked from commit 294f14f7897f973f1fa2a1506cfdd9117b5daf65)
- 04:49 PM Revision 294f14f7: Set new blog URL (https://www.netgate.com/blog/) as default for RSS widget
-
04:28 PM Feature #6032: Show PPPoE uptime on the Dashboard - Interfaces Widget
- Thanks for adding this, upgraded to 2.4 just to test this and all looks good.
-
02:16 PM Feature #6032: Show PPPoE uptime on the Dashboard - Interfaces Widget
- Lovely, showing uptime on my WAN interface on PPPoE!
-
02:50 PM Revision ad401906: Test fix for hanging check_reload_status
- After killing php-fpm (console opt 16) check_reload_status would sometimes hang, consuming 100% of 1 cpu core. I foun...
-
12:35 PM Bug #7256: syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- Worked on this a bit more but still haven't nailed down the reason. It is executing the command to run syslog, it's j...
-
12:04 PM Bug #7366 (Rejected): 2.3.4: Connections (States) with proto "icmp" show a source and a destination port
- Those are not ports. It's the ICMP request ID.
Example:... -
11:40 AM Bug #7366 (Rejected): 2.3.4: Connections (States) with proto "icmp" show a source and a destination port
- Hi,
as you can see in the screenshot the state has a source and a destination port - both are equal.
Should ICMP ... -
12:01 PM pfSense Packages Feature #7367 (New): Wizard for Squid
- I know its easy to install a Proxy Server but is there a way of having a Wizard to set it up.
Using Hardware spec ... -
11:27 AM Revision b268e2f4: Merge pull request #3623 from doktornotor/patch-24
-
11:24 AM Revision 8901d6e7: Add reason to write_config() call
-
11:23 AM Revision 9460a588: Merge pull request #3615 from doktornotor/patch-17
-
11:22 AM Revision 830cafe8: Add reason to write_config() calls
-
11:22 AM Revision 18e2c82c: Merge pull request #3611 from doktornotor/patch-10
-
11:21 AM Revision 0c12cd8f: Merge pull request #3612 from doktornotor/patch-14
-
11:17 AM Revision ca9a1621: Merge pull request #3622 from doktornotor/patch-23
-
11:16 AM Revision 2ff475b7: Add reasons to write_config() calls
- (cherry picked from commit 919a43a7caa551cb14e72a5cd82ec1629b3a9aa5)
-
11:16 AM Revision 7d41bdb8: Remove unused base_packages variable from globals
- (cherry picked from commit 40f5b3e22effc3319afea306a7d691a5e6934c37)
-
11:16 AM Revision 06321cfb: Remove useless add_base_packages_menu_items() function
- Not really sure what was the idea 7+ years ago, but the code just doesn't make sense now.
(cherry picked from commit ... -
11:16 AM Revision e0b5d158: Merge pull request #3616 from doktornotor/patch-18
-
11:15 AM Revision 1eab8134: Add reason to write_config() call
-
11:14 AM Revision 9f1b6537: Add reason to write_config() call
-
11:14 AM Revision 777a9446: Merge pull request #3619 from phil-davis/write_config_openvpn
-
11:13 AM Revision 2d4422d9: Merge pull request #3618 from doktornotor/patch-20
-
11:12 AM Revision 0308b456: Add reason to write_config() call
-
11:12 AM Revision f6e32e2b: Merge pull request #3617 from doktornotor/patch-19
-
11:12 AM Revision 3b179f61: Merge pull request #3620 from doktornotor/patch-21
-
11:10 AM Revision a4ce26c3: Merge pull request #3621 from doktornotor/patch-22
-
11:05 AM Revision 4734cf7f: Add reason to write_config() call
-
11:01 AM Bug #7276 (Resolved): 2.3.3 upgrade does not upgrade
- I've upgraded internal docs and next time a new version is RELEASED this won't happen anymore
-
10:51 AM Bug #7276: 2.3.3 upgrade does not upgrade
- Now I understood what happened here. RC packages were held at beta.pfsense.org instead of pkg.pfSense.org and this ca...
-
10:42 AM Bug #7276: 2.3.3 upgrade does not upgrade
- just upgrade last nite from 2.3.4 snapshot no problem
-
11:00 AM Revision b525d581: Add reason to write_config() call
-
10:52 AM Revision 16922d7c: Add reason to write_config() call
-
10:50 AM Revision 99124e3a: Add reason to write_config() call
-
10:48 AM Revision fb3a8352: Add reason to write_config() calls
-
10:44 AM Feature #7365 (New): Pass firewall/filter rule set through logging for centralized loggers to key on
- Not sure what the best way to go about this would be but it would be nice to put the filter rule set contents (like w...
-
10:44 AM Revision 18278432: Add reason to write_config() calls
-
10:43 AM pfSense Packages Bug #7310: Packages pre-deinstall script removes temporary files used by pkg
- upgrade from 2.3.4 with snort no problem here
-
10:33 AM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- this also affects 2.3.3 and 2.3.4 moved to 2.4 to get limiters fix
-
08:03 AM pfSense Packages Bug #7319: Tinc uninstall leaves an entry in the firewall rules tab.
- Tough cookies, not a package bug.
-
07:13 AM pfSense Packages Bug #7319: Tinc uninstall leaves an entry in the firewall rules tab.
- Still seerms to leave pkg_tinc in the interface groups.
>>> Installing pfSense-pkg-tinc...
Updating pfSense-core... -
07:03 AM pfSense Packages Bug #7319 (Feedback): Tinc uninstall leaves an entry in the firewall rules tab.
-
07:01 AM pfSense Packages Bug #7319: Tinc uninstall leaves an entry in the firewall rules tab.
- Merged, test with 1.0.28_3 please.
-
07:03 AM Bug #7305 (Feedback): widget "squid antivirus status"
-
07:02 AM Bug #7305: widget "squid antivirus status"
- https://github.com/pfsense/FreeBSD-ports/pull/313 merged.
-
06:58 AM pfSense Packages Bug #7363 (Duplicate): pfsense 2.3.4 - Tinc Package - Interface still visible after uninstallation of package.
-
06:49 AM pfSense Packages Bug #7363: pfsense 2.3.4 - Tinc Package - Interface still visible after uninstallation of package.
- Duplicate of Bug #7319
-
06:38 AM pfSense Packages Bug #7363 (Duplicate): pfsense 2.3.4 - Tinc Package - Interface still visible after uninstallation of package.
- Did an installation of tinc and then did an uninstallation and the interface still remains visible in "Firewall --> R...
-
06:32 AM Feature #7362 (Resolved): Add the default values of the TCP and UDP Timeouts on the WebUI depending on the "Firewall Optimization Options"
- Hello,
when you go to System --> Advanced --> Firewall & NAT then you have the possibility to modify the different... -
06:28 AM Feature #7361 (Duplicate): 2.3.4 - Add possibility to modify UDP (First, Single, Multiple) and TCP Timeouts per rule and not only per global parameter
- Hello,
it would be usefull to have the possibility per rule to modify the Timeout of UDP connections (First, Singl... -
05:09 AM Todo #204: All write_config() statements should include a reason of some sort
- Not sure about bounty, but I did a couple more of them since I find the lack of info about what caused the configurat...
-
04:10 AM Bug #6666: IPV6 Log Spam?
- Thanks, Kill Bill
Rgds
Rick -
02:27 AM Bug #7338: ME909u-521 missing serial port
- Jim Pingle wrote:
> Did you read and try what the second to last post on the thread suggested?
>
> We support the...
03/06/2017
-
09:53 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- I too am seeing this bug
-
09:50 PM Feature #7360 (Duplicate): WebGUI Prevent state table from displaying all states at launch
-
09:43 PM Feature #7360: WebGUI Prevent state table from displaying all states at launch
- Duplicate of #7069
This is already implemented and is present in 2.3.3-RELEASE and 2.4 snapshots.
See Also: Sys... -
08:57 PM Feature #7360 (Duplicate): WebGUI Prevent state table from displaying all states at launch
- Sites with very large state tables make the WebGUI hang until it's done loading.
It should not display all the sta... -
06:37 PM Revision 2a988052: Update translation files
-
06:34 PM Revision f8184cd0: Regenerate pot
-
06:34 PM Revision aa4d7205: Deduplicate code
-
06:34 PM Revision 55f9e4b0: Deduplicate code
-
05:47 PM Revision a3d6987e: Allow CloudFlare DDNS entries to use "@" or "@." for the hostname portion of the domain in the GUI to update the domain's @ record. Then in the backend code, remove that from the FQDN since CloudFlare doesn't like that to be sent explicitly. Fixes #7357
- Fix is confirmed to work by two forum users: https://forum.pfsense.org/index.php?topic=122099.msg699763#msg699763
-
05:47 PM Revision f751b20a: Allow CloudFlare DDNS entries to use "@" or "@." for the hostname portion of the domain in the GUI to update the domain's @ record. Then in the backend code, remove that from the FQDN since CloudFlare doesn't like that to be sent explicitly. Fixes #7357
- Fix is confirmed to work by two forum users: https://forum.pfsense.org/index.php?topic=122099.msg699763#msg699763
-
05:45 PM Revision 6534026b: Allow CloudFlare DDNS entries to use "@" or "@." for the hostname portion of the domain in the GUI to update the domain's @ record. Then in the backend code, remove that from the FQDN since CloudFlare doesn't like that to be sent explicitly. Fixes #7357
- Fix is confirmed to work by two forum users: https://forum.pfsense.org/index.php?topic=122099.msg699763#msg699763
-
05:40 PM Revision a1518c96: Do not enforce a max limit on state timeout when editing a firewall rule. Fixes #7356
-
05:40 PM Revision 858c011d: Do not enforce a max limit on state timeout when editing a firewall rule. Fixes #7356
-
05:40 PM Revision 12210bd4: Do not enforce a max limit on state timeout when editing a firewall rule. Fixes #7356
-
04:04 PM Revision 33b1fa56: While I'm here, fix the case when the admin account has been removed.
-
04:04 PM Revision 33d625f1: While I'm here, fix the case when the admin account has been removed.
-
04:04 PM Revision af1e16c2: While I'm here, fix the case when the admin account has been removed.
-
03:58 PM Revision bdde9bb1: When resetting admin account via /etc/rc.initial.password, Check if the admin account is expired and reset if needed. Fixes #7354
-
03:58 PM Revision 41e32578: When resetting admin account via /etc/rc.initial.password, Check if the admin account is expired and reset if needed. Fixes #7354
-
03:57 PM Revision 9c20c034: When resetting admin account via /etc/rc.initial.password, Check if the admin account is expired and reset if needed. Fixes #7354
-
01:45 PM Bug #7359 (Resolved): Status/OpenVPN Page Sorts Incorrectly
- The bytes sent and byte received columns in the OpenVPN status page sort alphabetically and not by size.
Notes:
R... -
01:34 PM Bug #7358 (Resolved): XG-1540/1 - wrong console type breaks single-user mode
- Single-user mode is not accessible on the XG-1540 and XG-1541 because single-user mode is trying to use the first con...
-
11:50 AM Bug #7357 (Feedback): CloudFlare DDNS Not working for domain-only updates (@ record for domain)
- Applied in changeset commit:6534026bc1b0d9dcc9ac8c85b16d2fc2860db1f1.
-
11:45 AM Bug #7357 (Resolved): CloudFlare DDNS Not working for domain-only updates (@ record for domain)
- Since the CloudFlare DDNS code was changed to split hostname and domain, it is not possible to properly update the @ ...
-
11:50 AM Bug #7356 (Feedback): pfsense 2.3.4: TCP State Timeout cannot be higher than 3600s within a rule - global configuration allows higher values
- Applied in changeset commit:12210bd40d60757e09e09f433f7ce5536f686c97.
-
11:39 AM Bug #7356 (Confirmed): pfsense 2.3.4: TCP State Timeout cannot be higher than 3600s within a rule - global configuration allows higher values
You're right, that should not be limited in that way.
It affects 2.4 as well.
Easy fix, I'll push it momentar...-
11:15 AM Bug #7356 (Resolved): pfsense 2.3.4: TCP State Timeout cannot be higher than 3600s within a rule - global configuration allows higher values
- Hi,
whe I am within a firewall rule and change the "TCP State Timeout" under "Advaced options" within that specifi... -
10:55 AM Bug #7338: ME909u-521 missing serial port
- Did you read and try what the second to last post on the thread suggested?
We support the hardware supported by Fr... -
02:19 AM Bug #7338: ME909u-521 missing serial port
- Jim Pingle wrote:
> That's what a proper discussion will determine.
On forum more people have same problem! Is ke... -
10:32 AM Bug #7355: ME909u-521 missing serial port
- Jim Pingle wrote:
> Duplicate of #7338
>
> Please do not open multiple tickets for the same issue.
please can ... -
10:30 AM Bug #7355 (Rejected): ME909u-521 missing serial port
- Duplicate of #7338
Please do not open multiple tickets for the same issue. -
10:26 AM Bug #7355 (Rejected): ME909u-521 missing serial port
- Hi,
before upgrading pfsense I was using properly Huawei ME909u-521.
pFsense was create for modem port (/dev/cuaU0.... -
10:00 AM Bug #7354 (Feedback): /etc/rc.initial.password: Expiration date for admin user is not removed when resetting the account
- Applied in changeset commit:9c20c0344bda14ee89d27e8cab4a5400262c4ee5.
-
09:57 AM Bug #7354 (Resolved): /etc/rc.initial.password: Expiration date for admin user is not removed when resetting the account
- When resetting the admin password, the /etc/rc.initial.password script checks if the account is disabled and resets t...
-
07:39 AM Feature #7353 (Closed): Openvpn Logins page
- Hello,
i would like to monitor per user when he/she connected/disconnected.
in Pfsense 2.1.5 we used the PPTP L... - 07:28 AM Revision 8725f4a5: Add reason to write_config() calls for OpenVPN
-
01:56 AM Todo #204: All write_config() statements should include a reason of some sort
- By doktornotor:
https://github.com/pfsense/pfsense/pull/3617
https://github.com/pfsense/pfsense/pull/3618
By phi...
03/05/2017
-
09:37 PM Revision bb5b7532: Add reason to write_config() call
-
09:32 PM Revision fddb303a: Add reason to write_config() calls
-
09:20 PM Revision b05c860c: Add reason to write_config() call
-
09:04 PM Bug #7352 (New): pfSense IPv6 static route is dumped after a WAN flap
- In our pfSense setup, we receive a /56 prefix delegation (PD) from our ISP on the WAN. Two of our interfaces track t...
-
09:03 PM Revision 919a43a7: Add reasons to write_config() calls
-
08:23 PM Revision 4fe75c8e: Add reason to write_config() call
-
08:18 PM Revision 32fb5ce7: Add reason to write_config() call
-
08:12 PM Revision 1044256f: Add reason to write_config() calls
-
06:52 PM Revision 40f5b3e2: Remove unused base_packages variable from globals
-
06:51 PM Revision 94503103: Remove useless add_base_packages_menu_items() function
- Not really sure what was the idea 7+ years ago, but the code just doesn't make sense now.
-
05:05 PM Revision ba67d223: Remove unused functions
-
04:32 PM Revision d0bb84f7: Remove dummy config_lock() and config_unlock() functions
- Been no-op for ages (https://github.com/pfsense/pfsense/commit/0027de0a544438f146cfc94f005fd6f4ba9f94d7).
-
04:29 PM Revision 9bfb115b: Remove useless config_lock()/config_unlock() calls
-
04:25 PM Bug #7349 (Rejected): Autocomplete seems to have broken in 2.3.3?
- I can't reproduce it either, even with a rule and alias exactly as stated. +1 for dumping the browser cache and tryin...
-
03:45 AM Bug #7349: Autocomplete seems to have broken in 2.3.3?
- 2.3.3-RELEASE (amd64)
built on Thu Feb 16 06:59:53 CST 2017
FreeBSD 10.3-RELEASE-p16
It all works for me:
- add... -
02:39 AM Bug #7349 (Rejected): Autocomplete seems to have broken in 2.3.3?
- Steps:
After upgrading 2.3.2 to 2.3.3 via GUI, I created a new alias "New_boxes" with two hosts, 192.168.1.5 + 192... -
04:22 PM Bug #7348 (Resolved): Import certificate doesn't verify syntax resulting in loss of web gui
- #1685 is something different.
We already protect against importing such bad combinations on 2.4. You can't import ... -
08:18 AM Bug #7348: Import certificate doesn't verify syntax resulting in loss of web gui
- Duplicate of Bug #1685.
(Note - there's no need for manual messing with config.xml, see the other bug.) -
04:22 PM Bug #1685 (Resolved): Web configurator silently fails when "Private key does not match the certificate public key"
- We already protect against importing such bad combinations on 2.4, that's probably sufficient.
-
04:14 PM Bug #7351: Traffic Shaper on VLan, breaks PFSense Completely does not boot correctly.
- On 2.4 it is. Check the closed issues on 2.4. If you have more questions, post them on the forum.
-
04:11 PM Bug #7351: Traffic Shaper on VLan, breaks PFSense Completely does not boot correctly.
- Jim Pingle wrote:
> Looks the same as #6257. If it's not, it's probably your hardware. Try 2.4, if it doesn't work, ... -
03:50 PM Bug #7351 (Duplicate): Traffic Shaper on VLan, breaks PFSense Completely does not boot correctly.
- Looks the same as #6257. If it's not, it's probably your hardware. Try 2.4, if it doesn't work, we can't fix your har...
-
03:26 PM Bug #7351: Traffic Shaper on VLan, breaks PFSense Completely does not boot correctly.
- This is the device I brought which runs PFSense, http://www.qotom.net/goods-129-QOTOM-Q190G4+4+LAN+Mini+PC.html
Do... -
10:36 AM Bug #7351: Traffic Shaper on VLan, breaks PFSense Completely does not boot correctly.
- Traffic Shaping Type I'm trying to use is HSFC
-
10:34 AM Bug #7351 (Duplicate): Traffic Shaper on VLan, breaks PFSense Completely does not boot correctly.
- Hi Guys,
I've had this issue since 2.3.2 but was waiting to 2.3.3 to see if it gets fixed. It still an issue so I ... -
03:41 PM Bug #6913: install on Hyper-v R2
- Kill Bill wrote:
> Broken again.
>
> https://forum.pfsense.org/index.php?topic=124915.0
Here is some further inf... -
03:27 PM Revision f11ac397: Remove no longer needed split() re-implementation
-
02:43 PM Revision fd7e2c0e: Remove deprecated unused function
- Not used anywhere and deprecated for ages (https://github.com/pfsense/pfsense/commit/fe9afce65fc36f278e18edf8959669de...
-
01:47 PM Bug #7343: On 2.3.3, Updater reports that the latest version is 0.18_1
- Yeah, the answer is still the same. Run @pkg upgrade pfSense-upgrade@ from shell.
-
01:20 PM Bug #7343: On 2.3.3, Updater reports that the latest version is 0.18_1
- I have the XG-1540 with 10GB addon NIC and I'm seeing the same thing as Denny Page
System Information page: !https... -
11:27 AM Revision e22ca5a2: v4 or v6
-
11:25 AM Revision 40e21a7f: change "returned" -> "to return"
-
11:20 AM Revision eb267378: better title
-
11:18 AM Revision de55303c: Clearer narrative for domain override on main resolver config page
-
11:11 AM Revision 619d8ac8: Clearer narrative for host override edit page
-
11:05 AM Revision 51deda53: incorrect escape \
-
10:50 AM Revision 1eb759ab: Clearer narrative for domain override on main resolver config page
-
10:42 AM Revision 638a7947: Clearer narrative for domain override edit page
-
06:46 AM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- Renato Botelho wrote:
> Kill Bill wrote:
> > Someone test this, perhaps? https://github.com/pfsense/pfsense/pull/35... -
06:29 AM Feature #7350: Unbound host/domain override needs better IPv4/IPv6 handling?
- Stilez y wrote:
> * Domain Override should allow a list of IPs rather than just one so a mix of IPv4/IPv6/alternativ... -
05:34 AM Feature #7350 (Duplicate): Unbound host/domain override needs better IPv4/IPv6 handling?
- At the moment the IP for a host or lookup server can be entered as IPv4 or IPv6, but not both, nor can multiple/fallb...
-
12:11 AM Bug #7015 (Resolved): IPsec not working behind NAT
- Fixed (also confirmed by JimP on #6937 which was caused by the same issue).
03/04/2017
-
09:46 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- Applied the patch. It works. Thanks!
-
07:45 PM Revision eddb0131: trafficgraphs, divide bandwidth by time when statistics where gathered to smooth out bumps in the graphs
-
05:11 PM Bug #6937 (Resolved): Inbound traffic on enc0 is not creating a state with mobile IPsec
- Works great on the latest snapshot, thanks!
-
03:11 PM Bug #7348 (Resolved): Import certificate doesn't verify syntax resulting in loss of web gui
- Web GUI doesn't check syntax when importing SSL certificates resulting in loss of web gui.
Steps to reproduce:
1.... -
12:31 PM Bug #7347 (Closed): Config Sync - Breaks on null value
- When setting up config sync on a new box. If a config section is selected, in this example Virtual IPs, but nothing i...
-
09:55 AM Bug #7343: On 2.3.3, Updater reports that the latest version is 0.18_1
- I also see an issue on factory 2.3.3. I see "The system is on a later version than the official release" in the syste...
-
01:51 AM Bug #7343: On 2.3.3, Updater reports that the latest version is 0.18_1
- Hi guys,
I don't know if this is related or not, but thought I'd throw it out.
I have a vm running 2.3.3. I ove... -
01:47 AM Revision 56632443: use right var for zoneid
03/03/2017
-
10:53 PM Bug #6937 (Feedback): Inbound traffic on enc0 is not creating a state with mobile IPsec
- New changes were made to handle this issue. Waiting on JimP comments.
-
10:51 PM Bug #7015 (Feedback): IPsec not working behind NAT
- Fixed in latest update.
-
07:57 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
- Hi guys,
I'm just chiming in to ask for this as well. I'm using Charter's 6rd service and was about to open a tick... -
07:56 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- Pull #3608
-
07:53 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- It helps if I completely reverted the items I changed for the region being added to the zone. Just needed to step awa...
-
04:22 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- Okay I've done more testing with this and I'm getting more random errors that don't make any sense to me. The same co...
-
07:24 PM Revision 1cd02ef7: igmp, fix apply button, remove save button
-
03:40 PM Revision adb19456: Adjust fix for ticket #7294 for 2.3.x, it used a setHelp change that was only valid on 2.4.
-
02:17 PM Todo #6944: dhcp6c releasing allocation
- Close this one.
-
01:16 PM Bug #7339: Dyndns RFC2136 client, don't send updates via TCP.
- Tks Jim.. it is clear now...
-
12:56 PM Bug #7339: Dyndns RFC2136 client, don't send updates via TCP.
- You have broken the update by blocking UDP. It performs the _update_ via TCP, but it performs other parts of the acti...
-
12:45 PM Bug #7339: Dyndns RFC2136 client, don't send updates via TCP.
- Jim:
The packets in the filter log (pfsense 167.61.xxx.xx) shows port 53 UDP output packets insteads TCP.
I make ... -
07:16 AM Bug #7339 (Rejected): Dyndns RFC2136 client, don't send updates via TCP.
- That is an error from your DNS server, not the client.
TCP updates work well from here on 2.3.3.
Search for tha... -
10:15 AM Revision 1008f6fd: Sanitize linebreaks for textarea fields in packages on save (Bug #5306)
-
08:19 AM Bug #7334: SG-1000 Update failure
- I still see a failure on update as the PID file is deleted, but it now happens later in the update process....
-
07:20 AM pfSense Packages Bug #7211 (Resolved): DNS Made Easy ACME script not parsing domain IDs properly
-
12:10 AM pfSense Packages Bug #7211: DNS Made Easy ACME script not parsing domain IDs properly
- I got a notification in my install that 0.1.13 was available and saw that those changes were merged into it. After t...
-
06:08 AM Bug #7344: Pfsense should be able to PXE boot directly from ISO file
- Jim Pingle wrote:
> If it still doesn't work on 2.4, it will have to wait until FreeBSD fixes it upstream, and then ... -
05:05 AM Bug #7346 (Rejected): favicon is horrible
- It's a bugtracker for pfSense software
-
01:40 AM Bug #7346 (Rejected): favicon is horrible
- you have a nice responsive design website . one of the major points of a responsive design website is phones and tabl...
-
04:15 AM Bug #5306: textarea fields should have linebreaks sanitized automatically on save
- This is for XML packages:
https://github.com/pfsense/pfsense/pull/3605 -
03:50 AM Bug #7338: ME909u-521 missing serial port
- Jim Pingle wrote:
> That's what a proper discussion will determine.
On doc.pFsense.com this card is supported but... -
02:19 AM Revision c06d1448: Revert addition of region to zone field
-
02:18 AM Revision b2cb7364: revert parsing of config field for region
- 01:59 AM Revision 42565652: Fix parsing "::/0" as "::/128" on OpenVPN IPv6 Tunnel Remote network
-
01:11 AM Revision f51eab94: RAM Disk Settings GUI
- Update notice re: log data loss. The log directory is now also backed up.
Group settings to consolidate.
03/02/2017
-
10:14 PM Revision dc064879: phpsessionmanager, use syslog instead of file_notice
-
08:22 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- Here's a diff on my pfsense fork: https://github.com/pfsense/pfsense/compare/master...jxmx:7206_route53
I don't ha... -
08:08 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- Glad you got it working. There shouldn't be anything coding unsafe with base64. Feel free to look through the signatu...
-
08:01 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- I created new credentials and it worked this time. I'm not sure what went wrong before. Is there any chance that ce...
-
07:59 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- You can use the attached PHP script to test r53.class. I just ran everything through its paces and didn't have any is...
-
07:57 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- NOT THIS ONE
-
04:53 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- I've looked for evidence that the only Route53 region is US-EAST-1 and I've never been able to find a definitive stat...
-
08:39 AM Bug #7206 (New): Authentication Method Used in Bug 6751 Removed by Amazon
-
07:59 PM Bug #7256 (Confirmed): syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
-
07:59 PM Bug #7256: syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- I thought it might be due to it running twice in some cases but even only being run once, for some reason it's not st...
-
03:44 PM Bug #7256: syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- 2.3.3/2.3.4, really anything after adding the chrooted socket commit to syslogd.
https://redmine.pfsense.org/proje... -
03:42 PM Bug #7256: syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- Was this on 2.3.2 or 2.3.3?
It also affects tinc, happens every time it is added or removed on 2.4 - 07:53 PM Revision 956b03cd: Fix 7294 keep full rule description
- Signed-off-by: Phil Davis <phil.davis@inf.org>
(cherry picked from commit 680e15baef76a9c598d52d3f2b9ab498077336a8) -
07:52 PM Revision fc970ca2: Merge pull request #3570 from phil-davis/fw-rule-desc-7294
-
07:50 PM Revision e850b0a3: Add a function to normalize CR and CRLF-style newlines to Unix LF
- See Bug #5306.
(cherry picked from commit 117776e0c01e68a8b65584d86d7b8b56fe75c9d0) -
07:50 PM Feature #7122: Add filters to various dashboard widgets
- Note: The traffic graph widget already had a multi-selector box prior to this feature. That box never got changed to ...
-
11:49 AM Feature #7122: Add filters to various dashboard widgets
- # Interfaces
# Interface Statistics
# Gateways
# System information
# Traffic Graphs
# SMART
I am able ... -
07:49 PM Revision 79215c03: Merge pull request #3576 from doktornotor/patch-7
-
07:37 PM Revision 4485ad31: Merge pull request #3578 from NOYB/Vendor_MAC_Retention_-_Update
-
07:36 PM Revision 230547af: Services - Status Icon - Sort Order
- Make status column sort order work correctly with the icons.
Also refactor get_service_status_icon() output string co... -
07:36 PM Revision 166c38b2: Merge pull request #3597 from NOYB/Services_-_Status_Icon_-_Sort_Order
-
07:33 PM Revision 6029dbd3: Show PPPoE/PPTP/L2TP uptime on the Interfaces widget (Feature #6032)
- (cherry picked from commit dc0f5e46a03e0ea797fb74df03e09c58f44a5c1a)
-
07:32 PM Revision 0b222fea: Merge pull request #3595 from doktornotor/patch-14
-
07:31 PM Revision 293724bc: User Manager - Status Icon - Sort Order
- Make status column sort order work correctly with the icons.
(2.4, 2.3)
(cherry picked from commit 0fdbaca8f16d0424... -
07:31 PM Revision 10115ab7: Merge pull request #3596 from NOYB/User_Manager_-_Status_Icon_-_Sort_Order
-
07:29 PM Revision 1401cc3e: certificatemanager, link certificate to the proper CA after completing the CSR request
- (cherry picked from commit 7fd7fbcff3304285f4407bec2ae62bab7195bcc4)
-
07:29 PM Revision 75c91268: Merge pull request #3586 from PiBa-NL/certificatemanager-csr-calink
-
07:25 PM Revision a1147a30: Fix the pkg_call() and set the timeout to a sane value (Bug #6594)
- (cherry picked from commit 9c91c7bd747074b8cdaa90e8810f0c2df081f72d)
-
07:25 PM Revision a21a36fe: Fix the pkg_call() and set the timeout to a sane value (Bug #6594)
- (cherry picked from commit 9c91c7bd747074b8cdaa90e8810f0c2df081f72d)
-
07:25 PM Revision f19d785f: Merge pull request #3582 from doktornotor/patch-10
-
05:53 PM Bug #7344 (Rejected): Pfsense should be able to PXE boot directly from ISO file
- If it still doesn't work on 2.4, it will have to wait until FreeBSD fixes it upstream, and then we'll pick it up from...
-
05:23 PM Bug #7344 (Rejected): Pfsense should be able to PXE boot directly from ISO file
- Hello,
I set up in my xenserver a "Cifs ISO Library" to make ISOs available for installations. I downloaded the la... -
05:37 PM Bug #7343: On 2.3.3, Updater reports that the latest version is 0.18_1
- I've pushed a fix on pfSense-upgrade 0.19.
pfSense-upgrade was considering its new version as a new firmware versi... -
04:28 PM Bug #7343: On 2.3.3, Updater reports that the latest version is 0.18_1
- Updated example of the homepage widget (previous version exposed PII): http://ookla.d.pr/rHOW
Example of the actual ... -
04:26 PM Bug #7343 (Resolved): On 2.3.3, Updater reports that the latest version is 0.18_1
- On pfSense 2.3.3, we are occasionally seeing that the UI is retrieving the latest version of pfSense as 0.18_1 and do...
-
05:34 PM Revision f708e8b7: Update translation files
-
05:34 PM Bug #7345 (Resolved): nanobsd upgrades still fail bacause of lacking resolv.conf
- As I wrote in a comment to the closed bug #6557, the upgrade procedure still fails, because copying the source file o...
-
05:34 PM Bug #6099: igmpproxy does not recognize upstream interface
- Rai Wol wrote:
> Rai Wol wrote:
> > Just upgraded to 2.4.
> >
> > Interfaces are recognized correctly. So actual... -
11:29 AM Bug #6099: igmpproxy does not recognize upstream interface
- Rai Wol wrote:
> Just upgraded to 2.4.
>
> Interfaces are recognized correctly. So actual bug is fixed.
>
> B... -
12:06 AM Bug #6099: igmpproxy does not recognize upstream interface
- I see the same messages on my system but my streams do not cut out after any time. They are really stable and channel...
-
05:29 PM Revision 75d2dd6c: Regenerate pot
-
04:19 PM pfSense Packages Bug #7342 (Rejected): Acme Certificates option to change the order of certificates is broken
- There is an anchor icon saying it will move the checked certificates to it on click. Clicking the anchor with certif...
-
04:14 PM pfSense Packages Bug #7341 (Resolved): New certificates fail with nsupdate on the first try
- New domains created for ACME fail with the nsupdate method as the nsupdate keys are not created in /tmp/acme/KEYNAME/...
-
04:11 PM pfSense Packages Feature #7340 (Resolved): Acme Client nsupdate interface forces a different key-ID for every domain
- It would be much more convenient for a large number of domains to assign a DNSSEC update-key to the firewall and allo...
-
04:06 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- The problem with the patch mentioned in comment 12 was that it was a kludge for igb(4) only, not a fix for the underl...
-
04:00 PM Feature #7137 (Duplicate): Add support for Sierra MC7455
- Duplicate of #6832
-
02:42 PM Feature #7137: Add support for Sierra MC7455
- Now it works
see: https://redmine.pfsense.org/issues/6832 (the same idProduct)
-
03:41 PM Bug #7336 (Duplicate): syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- How on earth did I miss that one. I'll close this one and update that.
Duplicate of #7256 -
03:32 PM Bug #7336: syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- I filed identical bug about haproxy before - Bug #7256. Yeah, nothing package-specific except for having their own lo...
-
03:05 PM Bug #7336: syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- The status output works fine when there is data. That said, after installing or uninstalling the tinc package, syslog...
-
07:15 AM Bug #7336 (Duplicate): syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- Status page shows no active connections, no info under "Virtual network device statistics, all known nodes, edges and...
-
03:34 PM pfSense Packages Bug #7271: Co-existence of unbound and BIND/named
- The work-round I used back in the days of the pfSense 2.2.x BIND port was to call rndc-confgen with the "-p <control ...
-
03:00 PM Bug #7339 (Rejected): Dyndns RFC2136 client, don't send updates via TCP.
- Hi, when i use dyndns rfc2136 client update, I check "Use TCP instead of UDP", the ouput command nsupdate add correct...
-
02:41 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
- Ah, indeed. It would be great if we can get 6rd support committed to upstream FreeBSD.
-
01:45 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
- this is probably related to freebsd 11 not having support for 6rd. in the current pfsense stable version there is a c...
-
01:41 PM Feature #7327: add working sftp support to sshd daemon
- ok apologies for wasting time on this
-
01:36 PM Feature #7327: add working sftp support to sshd daemon
- Admin has never worked for SCP/SFTP and it's been documented that way for years. Always use root or a different accou...
-
01:33 PM Feature #7327: add working sftp support to sshd daemon
- I had a look and it was missing scp privledges which I added but it had no affect.
Then I found this page
https... -
01:08 PM Feature #7327: add working sftp support to sshd daemon
- More likely it's related to your account settings / privileges / config but that's all things we should discuss on th...
-
01:07 PM Feature #7327: add working sftp support to sshd daemon
- Will leave this as it is, and just keep my local system, patched, if you decide you want to look into it, I can work ...
-
12:58 PM Feature #7327: add working sftp support to sshd daemon
- Those all work here. So perhaps it is a configuration issue or a completely different problem. Let's move this to the...
-
12:55 PM Feature #7327: add working sftp support to sshd daemon
- ok here is output from pfsense sftp client using the default configuration
@root@PFSENSE backup # sftp admin@127.0... -
12:49 PM Feature #7327: add working sftp support to sshd daemon
- filezilla not working at all
Response: fzSftp started, protocol_version=5
Command: keyfile "F:\Users\Chris\My Doc... -
12:45 PM Feature #7327: add working sftp support to sshd daemon
- Jim I should clarify the error comes from pfsense SSHD daemon, the client only reports the error sent from the server...
-
12:23 PM Feature #7327 (Rejected): add working sftp support to sshd daemon
- The current setup works in every scp/sftp client we typically see. scp, filezilla, winscp, ultraedit, etc.
We can'... -
12:18 PM Feature #7327: add working sftp support to sshd daemon
- Well the current system is broken as well. If you can provide an example on how to test ssh tunneling (I dont use ss...
-
12:10 PM Feature #7327: add working sftp support to sshd daemon
- Yeah, the "internal" SFTP thing was completely broken last time I tried that for #7012 - better not touched.
-
11:05 AM Feature #7327: add working sftp support to sshd daemon
- Testing that change, it breaks our chroot mechanism, and breaks the ssh tunnel only user, in both cases they get more...
-
01:33 PM Feature #6032 (Feedback): Show PPPoE uptime on the Dashboard - Interfaces Widget
-
01:32 PM Feature #6032: Show PPPoE uptime on the Dashboard - Interfaces Widget
- PR has been merged, thanks!
-
01:28 PM Bug #6594 (Feedback): Package reinstallation post-config restore hangs if no Internet connectivity
- Pig Monkey wrote:
> Renato Botelho wrote:
> > Which version were you upgrading to?
>
> 2.3.2
It has a fix on ... -
01:27 PM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- Kill Bill wrote:
> Someone test this, perhaps? https://github.com/pfsense/pfsense/pull/3582
>
> Dunno, but it see... -
01:25 PM Revision 877676ee: Use the same cache filename pattern for RFC2136 IPv6 items as used by dyndns
-
01:21 PM Revision 5be33f49: Use | to separate dyndns IPv4 fields on cache file as done by rfc2136 items and for all IPv6 items
-
01:21 PM Revision 474def89: Use the same cache filename pattern for RFC2136 IPv6 items as used by dyndns
-
01:13 PM Revision d51cdd48: Use | to separate dyndns IPv4 fields on cache file as done by rfc2136 items and for all IPv6 items
-
11:26 AM Bug #7323: More user friendly defaults for firewall logs view
- Just verified as well, but a little late to the plate it appears. fresh install of CE from 20170302(https://snapshot...
-
09:38 AM Bug #7323 (Resolved): More user friendly defaults for firewall logs view
- A fresh install has the column active in the firewall log as expected.
-
10:24 AM Bug #7334 (Feedback): SG-1000 Update failure
- Fixed on pfSense-upgrade 0.18
-
10:08 AM Bug #7334: SG-1000 Update failure
- We experienced the same issue today on an APU board. Looks like GUI stopped tracking pfSense-upgrade json and conside...
-
10:07 AM Bug #6750 (Resolved): dhcpleases shouldn't start when DHCP Relay is configured
- Looks good. Input validation prevents the incorrect configuration from happening, and even if the incorrect configura...
-
10:04 AM Bug #7338: ME909u-521 missing serial port
- That's what a proper discussion will determine.
-
09:59 AM Bug #7338: ME909u-521 missing serial port
- Jim Pingle wrote:
> Please post on the forum to discuss and diagnose the problem. The serial port in your log does n... -
09:46 AM Bug #7338 (Rejected): ME909u-521 missing serial port
- Please post on the forum to discuss and diagnose the problem. The serial port in your log does not match the descript...
-
09:38 AM Bug #7338 (Rejected): ME909u-521 missing serial port
- Hi,
before upgrading pfsense, I was using properly Huawei ME909u-521.
pFsense was create for modem port (/dev/cuaU0... -
09:57 AM Bug #4766 (Resolved): "URL Table (IPs)" and "URL (IPs)" do not work when text file is hosted on a fresh install of pfSense
- Works
-
09:55 AM Feature #6743 (Resolved): Packet Capture - Filter MAC
- Confirmed on a snapshot here, too. Thanks for testing!
-
09:27 AM Feature #6743: Packet Capture - Filter MAC
- An initial packet capture was taken over the LAN interface to capture a sample of active MAC addresses on the network...
-
09:52 AM Bug #5976 (Resolved): Load cryptodev as a kernel module
- Works as expected. Upgrading users that did not have aesni enabled will have cryptodev loaded on upgrade or with a ne...
-
09:51 AM pfSense Packages Bug #6748 (Assigned): rrd_fetch_json.php returns html when user is unauthorized (causes "Error: SyntaxError: Unexpected token <")
- This works nicely for Status > Monitoring, a similar error happens on the traffic graph widget and Status > Traffic g...
-
09:49 AM Feature #7011 (Resolved): Retain vendor MAC address at power up
- Works well!
Spoof MAC -> New MAC shows on the interface
Remove spoofed MAC -> Original MAC returns just like we w... -
09:39 AM Bug #7128 (Assigned): system_advanced_network.php - fugly IPv6 over IPv4 input field alignment
- As others noted, the formatting is still not quite right.
-
09:37 AM Bug #7086 (Resolved): stale zfs file systems
- Looks good now, only has a few expected entries.
-
08:37 AM Bug #7273 (Resolved): diag_confbak.php: If a user enters 0 for the number of backups to keep, PHP errors occur
- That is, indeed, the desired result. :-)
Thanks for testing -
08:35 AM Bug #7273: diag_confbak.php: If a user enters 0 for the number of backups to keep, PHP errors occur
- Setting "Backup Count" to zero does not cause any errors visible from the GUI. In fact, it drops all previously stor...
-
08:34 AM Todo #7331 (Resolved): Check OpenVPN server/client option visibility changes per mode
- Confirmed fixed here, too, thanks for testing!
-
08:09 AM Todo #7331: Check OpenVPN server/client option visibility changes per mode
- OpenVPN Client options:
# CRL (Peer Certificate Revocation List?) is not visible when "Server Mode" is set to "Pe... -
08:27 AM Bug #7337: IP Aliases Limited or Not accepting more than 2,000 IPs.
- When I load it in Chrome its cut off in the middle when I have 12 x /24s. I then reloaded it again, and the cut off ...
-
08:24 AM Bug #7337: IP Aliases Limited or Not accepting more than 2,000 IPs.
- I tried with 10 /24 nets = 10 * 256 = 2560 individual entries. It displayed in Firefox 51.0.1, but of course it takes...
-
07:37 AM Bug #7337 (Rejected): IP Aliases Limited or Not accepting more than 2,000 IPs.
- We do not impose any limits on the number of VIPs, but if you "need" that many than you are most likely designing or ...
-
07:28 AM Bug #7337 (Rejected): IP Aliases Limited or Not accepting more than 2,000 IPs.
- To Replicate :
Firewall > Aliases > IP > Add
• Name : Anything
• Description : Anything
• Type : Host(s)
In... -
08:19 AM Bug #7333: RADIUS accounting packets are broken.
- I added some notes to the book and doc wiki articles in question to clarify what options to use.
Thanks! -
08:09 AM Bug #7333: RADIUS accounting packets are broken.
- Brandon lockley wrote:
> Regarding the original issue. I think it may still be a bug because highly doubt that is th... -
03:00 AM Bug #7333: RADIUS accounting packets are broken.
- Regarding the original issue. I think it may still be a bug because highly doubt that is the intended behavior for St...
-
02:42 AM Bug #7333: RADIUS accounting packets are broken.
- @jimp - There are some extremely bad articles about FreeRADIUS, such as one suggesting to install some third-party Sa...
-
05:37 AM Feature #6832: [PATCH] Add the USB ID for the Sierra MC7430
- Thank you very much!
-
04:47 AM Feature #6832: [PATCH] Add the USB ID for the Sierra MC7430
- I've cherry-picked it to RELENG_2_4 and RELENG_2_3
03/01/2017
-
08:49 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- I tried it, but received an error. Here's the log with redactions:...
-
08:01 PM Revision 6dbc42de: Sync up package help links with current packages.
- Many do not yet exist, but can easily be created.
-
07:10 PM Revision d9d8a8f1: Sort help URL list.
-
07:06 PM Revision bff872b9: Update help URLs for base system files, remove old/obsolete files.
-
06:55 PM Bug #7333: RADIUS accounting packets are broken.
- https://doc.pfsense.org/index.php/Using_Captive_Portal_with_FreeRADIUS
The only setting i changed was "Accounting ... -
06:30 PM Bug #7333 (Not a Bug): RADIUS accounting packets are broken.
- What specific settings did you have active before and after? (RADIUS and things like re-authenticate and so on)
An... -
06:18 PM Bug #7333: RADIUS accounting packets are broken.
- Seems this is only an issue when "Accounting updates" is set to Start/Stop (Which is the mode specifically recommende...
-
12:05 AM Bug #7333 (Not a Bug): RADIUS accounting packets are broken.
- Instead of recalculating a users data traffic each minute it seems pfsense is just collecting the data the first minu...
-
06:30 PM Bug #7167 (Resolved): Error creating higher VLAN ID on SG-1000
-
04:41 AM Bug #7167: Error creating higher VLAN ID on SG-1000
- I've tested the new update and it worked as expected. Client connected to Guest Wifi from Airport Extreme worked on V...
-
03:15 PM Feature #7193: NTP process PGRMF
- In my original config I had GPGGA and PGRMF enabled and it seems that it prefers GPGGA then:...
-
04:25 AM Feature #7193: NTP process PGRMF
- Pär Wedin wrote:
> I have the hardware to test this and I have enabled the "Process PGRMF" option, but I don't know ... -
03:08 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- This should definitely be marked as a bug and not a feature.
Has anybody tried the igb driver patch from https://wik... -
03:03 PM Bug #7335: DNS Forwarder exposed internal DNS Information to the outside world
- Hello Mr Pingle,
are you sure about that?
I didnt change the configuration, i just did a update from 2.3.2 to 2... -
12:03 PM Bug #7335 (Not a Bug): DNS Forwarder exposed internal DNS Information to the outside world
- Please post on the forum for discussion. This is a configuration issue, not a bug.
-
12:00 PM Bug #7335 (Not a Bug): DNS Forwarder exposed internal DNS Information to the outside world
- Hello dear devops,
im running pfsense 2.3.3. Im using the DNS Forwarder.
In General Setup - DNS Server Settings ... -
11:22 AM Bug #6099: igmpproxy does not recognize upstream interface
- Just upgraded to 2.4.
Interfaces are recognized correctly. So actual bug is fixed.
But multicast stream still ... -
09:28 AM Bug #6099: igmpproxy does not recognize upstream interface
- Hi,
I can confirm that the bug fix is working (at least for me: IPTV in Germany, no BNG)
Runs since two weeks wit... -
08:46 AM Bug #6099: igmpproxy does not recognize upstream interface
- Can someone confirm its working in 2.4?
Doesn't stop after 3-4 min? -
10:08 AM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- Note I also have the issue with configuring DHCPv6 and RAs and in configuring somme OpenVPN configurations that are i...
-
10:07 AM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- I would also like to see such a feature. My work around currently is to manually create an aliases that contains the...
-
06:58 AM Bug #7334 (Resolved): SG-1000 Update failure
- Upgrade shows Failure notice after although it completes successfully.
Investigation has shown the upgrade script ...
02/28/2017
-
08:29 PM Revision be4acfd1: Fix up some options in OpenVPN that were not showing for the correct modes. Fixes #7331
-
07:28 PM Revision 2c98383f: Add GUI components for loading cryptodev as a module, and upgrade code so users have it on upgrade since it was in-kernel before. Fixes #5976
- Having both aesni and cryptodev loaded at the same time appears to only negatively impact performance, no gains, so a...
-
06:25 PM Revision 88aceb25: In a stock/default config.xml, show firewall rule descriptions in a column. Fixes #7323
- Previous performance and display issues do not appear to be a problem any longer. See https://redmine.pfsense.org/iss...
-
05:35 PM Revision 6aa85955: Finish MAC address matching for packet capture. Implements #6743
-
05:26 PM Bug #5993: dhcp6c not started until an RA received
- The new patches address issues 7145 and 7185. The other issue I was thinking of is 6944 (DHCP no release), but it has...
-
01:02 PM Bug #5993: dhcp6c not started until an RA received
- Definitely no, but the original problem for which this issue was raised has been fixed by a PR that was merged previo...
-
12:15 PM Bug #5993: dhcp6c not started until an RA received
- Daryl, are you saying the marjohn56 patches are no longer needed?
-
12:12 PM Bug #5993: dhcp6c not started until an RA received
- Renato Botelho wrote:
> Not finished yet
This issue has been fixed in both 2.3.3 release and 2.4.0 beta. -
04:16 PM Feature #7332 (Resolved): Provide certificate expiry warning
- Just logged into one of my HP MSM controllers and was warned about certificates that are about to expire. This would ...
-
03:33 PM Feature #7193: NTP process PGRMF
- I have the hardware to test this and I have enabled the "Process PGRMF" option, but I don't know what to look for. Ca...
-
02:40 PM Todo #7331 (Feedback): Check OpenVPN server/client option visibility changes per mode
- Applied in changeset commit:be4acfd167788719d16b795d5491646fd88bd23f.
-
02:30 PM Todo #7331 (Resolved): Check OpenVPN server/client option visibility changes per mode
- Some options are not quite correct on OpenVPN clients and servers. In particular:
OpenVPN Client options that shou... -
01:42 PM Bug #5976: Load cryptodev as a kernel module
- Had to look up POLA :)
In case I wasn't the only one:
https://en.m.wikipedia.org/wiki/Principle_of_least_astonishment -
01:32 PM Bug #5976: Load cryptodev as a kernel module
- I just pushed a GUI change to add it in as a choice next to aesni. Testing revealed no benefit to having both aesni a...
-
12:54 PM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Ah... Sorry!
The interesting Logs are all 04:* ... I somehow missed to truncate the 19:* entries.... -
12:23 PM Bug #7330 (Resolved): IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- On boot all adresses are correctly assigned.
On PPPoe reconnect (by provider or by clicking disconnect and connect i... -
12:37 PM Bug #7323: More user friendly defaults for firewall logs view
- I changed the default value in the stock config.xml rather than trying to do any sort of complicated shuffling of con...
-
12:30 PM Bug #7323 (Feedback): More user friendly defaults for firewall logs view
- Applied in changeset commit:88aceb2573acab8fbc7e4d467e31280f701ba9cd.
-
11:40 AM Feature #6743 (Feedback): Packet Capture - Filter MAC
- Applied in changeset commit:6aa85955fc074d9d35de782c32f7363391b945df.
-
11:33 AM Feature #6743: Packet Capture - Filter MAC
- I'll take this, it wasn't too difficult to implement, I've got a working set of changes to push.
-
09:33 AM Bug #7329 (Closed): DHCP Not Updating DNS
- The DHCP server setting "Register DHCP leases in DNS forwarder" does register the host in the DNS server. However, i...
-
09:24 AM Feature #7327: add working sftp support to sshd daemon
- Ok I will submit later today and for the script that generates.
The client is flashfxp. -
08:43 AM Bug #7328: Allow several connections with the same gateway (no load balancing, but Multi-WAN)
- Actually most of the discussions about it I read end with "discussed hundreds of times" and no real reason. Coming fr...
-
08:38 AM Bug #7328: Allow several connections with the same gateway (no load balancing, but Multi-WAN)
- It is not valid at the operating system level because FreeBSD doesn't support having two interfaces in the same subne...
-
08:35 AM Bug #7328: Allow several connections with the same gateway (no load balancing, but Multi-WAN)
- Why not? What is "valid"? Valid in a technical sense, or valid in a pf-sense, or valid in a "community support" sense?
-
08:25 AM Bug #7328 (Rejected): Allow several connections with the same gateway (no load balancing, but Multi-WAN)
- You cannot have two interfaces on the same subnet. It is not a valid configuration.
-
08:15 AM Bug #7328 (Rejected): Allow several connections with the same gateway (no load balancing, but Multi-WAN)
- I am not sure how load balancing works and it is not my goal to implement. May main goal is to use both of my cable m...
-
08:06 AM pfSense Packages Bug #6305: Quagga problems updating routes / mistakenly showing "kernel"-routes while they are not
- Looks like Zebra sets RTF_PROTO1 flag on the routes it installs in the routing table.
So I assume in order to get... -
06:47 AM Bug #7269 (Not a Bug): syslogd stops logging
-
06:38 AM Bug #7269: syslogd stops logging
- The segfaults occur, when a "clog" file gets truncated like: ...
02/27/2017
-
09:51 PM Revision 82cd6022: phpsessionmanager, this helps starting and committing the php session preventing other requests from being blocked longer than required.
-
07:51 PM Feature #6240: vxlan driver
- +1
-
06:48 PM pfSense Packages Bug #7211: DNS Made Easy ACME script not parsing domain IDs properly
- Should be fixed once https://github.com/pfsense/FreeBSD-ports/pull/318 is pulled.
-
11:39 AM Feature #7327: add working sftp support to sshd daemon
- What client does not work?
It looks like the internal method is preferred now, that line in our config hasn't chan... -
11:31 AM Feature #7327 (Rejected): add working sftp support to sshd daemon
- A very trivial change is required to have sftp support working. The existing code sftp fails in my ftp client.
At... -
11:27 AM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- attaching file again, first one is wrong
-
11:23 AM Bug #7326 (Resolved): Unbound fails to start during rc.wanipchange when using large enough dns lists
- Current pfsense code manually kills unbound, waits just one second and then starts it again, however if unbound doesn...
-
10:28 AM Bug #7323: More user friendly defaults for firewall logs view
- Nice timings. ;) Just for a giggle, I tried with Alix and 2.3.3: the times are ~ 6.5s with 50 lines and ~25s with 500...
-
09:40 AM Bug #7323: More user friendly defaults for firewall logs view
- It is worth noting that the above numbers were with a minimal ruleset, it would be worth repeating the test with a mo...
-
09:34 AM Bug #7323: More user friendly defaults for firewall logs view
- I had initially insisted that option default to off because it was horribly slow on ALIX and other low-end platforms ...
-
02:41 AM Bug #7323 (Resolved): More user friendly defaults for firewall logs view
- One of the 'Display as column' or 'Display as second row' options should be the default. From the forums, it's very m...
-
07:15 AM Bug #5592: fsck sometimes fails to repair filesystem automatically, resulting in Panic: ufs_dirbad bad dir ino ... mangled entry
- There are fixes in 2.3.3 for fsck, see #6340
That is a potentially a different problem from this, however, but hop... -
07:10 AM Bug #5592: fsck sometimes fails to repair filesystem automatically, resulting in Panic: ufs_dirbad bad dir ino ... mangled entry
- Is it fixe now in 2.3.3? Or we again need to run into single user mode in order to run the fsck command?
-
05:45 AM Bug #7325 (Closed): IPsec VPN Phase2 assigned with idem reqid routing a other VPN Phase2
- before create new vpn ipsec :...
-
03:39 AM Bug #7324 (Resolved): DHCPv6 Dynamic DNS hostname
- According to 2.3.3 New Features and Changes it is now possible to force a Dynamic DNS hostname in DHCP/DHCP6 Server ...
- 02:49 AM Revision 9eb0a09c: Merge pull request #3588 from phil-davis/widget-filter-all-fix
- 02:49 AM Revision 7067e174: Fix #7317 Widget Filter All button
-
02:22 AM Revision 1e7aedce: Merge pull request #3589 from phil-davis/patch-12
- 02:13 AM Revision 39079706: Fix #7300 provide default value for ipprotocol for old rules
- 02:13 AM Revision 1877e4d9: Fix #7300 provide default value for ipprotocol for old rules
-
02:13 AM Revision 882d248d: Merge pull request #3573 from phil-davis/patch-9
- 01:38 AM Revision e660ca55: Merge pull request #3581 from phil-davis/patch-11
- 01:22 AM Revision ad4913d7: Merge pull request #3550 from phil-davis/patch-5
-
12:09 AM Revision 446505a9: Services - Status Icon - Sort Order
- Make status column sort order work correctly with the icons.
Also refactor get_service_status_icon() output string co...
02/26/2017
- 10:52 PM Revision 61ea29be: Fix #7299 and other stuff
- As far as I can see, filter_generate_user_rule() is always supposed to be called with 'ipprotocol' set to 'inet' or '...
- 10:52 PM Revision 568b607a: Fix #7299 and other stuff
- As far as I can see, filter_generate_user_rule() is always supposed to be called with 'ipprotocol' set to 'inet' or '...
-
10:51 PM Revision ae6c16ef: Merge pull request #7299 from phil-davis/patch-7
-
09:57 PM Revision 0fdbaca8: User Manager - Status Icon - Sort Order
- Make status column sort order work correctly with the icons.
(2.4, 2.3) -
09:36 PM Revision dc0f5e46: Show PPPoE/PPTP/L2TP uptime on the Interfaces widget (Feature #6032)
-
09:00 PM Bug #7317 (Feedback): Widget Filter All button effects all widgets
- Applied in changeset commit:c8ebd4d088890adab15eec0c1e83c3a6c08cf7c7.
-
12:46 AM Bug #7317: Widget Filter All button effects all widgets
- PR https://github.com/pfsense/pfsense/pull/3588
-
12:43 AM Bug #7317: Widget Filter All button effects all widgets
- Note: This mostly just looks confusing if users notice it.
If the user clicks All and then Save in the current widge... -
12:42 AM Bug #7317 (Resolved): Widget Filter All button effects all widgets
- 1) Add 2 widgets to the dashboard that have the capability to filter the displayed data (e.g. System Information and ...
-
08:20 PM Bug #7300 (Feedback): Error displaying selected ICMP types for old rules without ipprotocol
- Applied in changeset commit:d0e4f6271cae97996fb8495a1578943348780c42.
- 08:05 PM Revision 499ac306: Added help text and field visibility controls for Dreamhost DNS.
- 08:04 PM Revision a71deb5a: Switched API key usage from username to password fields for protection.
- This prevents accidentally leaking the Dreamhost API key to casual
router administrators. -
07:33 PM Revision 7d1b5bd3: Reduce numeric precision in gateways widget to single decimal place (Feature #6841)
-
05:10 PM Bug #7299 (Feedback): Error loading rules for old rule with ICMP type specified
- Applied in changeset commit:da57defa02e49ae76a7d397a772467680d5068b2.
-
04:43 PM Feature #5510: Need a simple way to enable/disable package-installed services
- OK, some update here:
> - a simple tag in the packages service definition pointing to the package configuration va... -
03:37 PM Feature #6032: Show PPPoE uptime on the Dashboard - Interfaces Widget
- Cool idea.
https://github.com/pfsense/pfsense/pull/3595 -
02:33 PM Bug #7322 (Not a Bug): OpenVPN client configuration isn't saved/read well
- Please read the note next to the advanced options box.
!http://i.imgur.com/HBrczJs.png! -
02:28 PM Bug #7322: OpenVPN client configuration isn't saved/read well
- Yeah, it's not saved correctly because https://redmine.pfsense.org/issues/5306
-
02:21 PM Bug #7322 (Not a Bug): OpenVPN client configuration isn't saved/read well
- When I have an OpenVPN server in pfSense 2.3.3 with some clients with their own configuration (like in this image htt...
-
02:31 PM Bug #6967: DH Groups 22, 23, 24 missing from Phase 2 selection GUI
- This change isn't in 2.3.3 but it's in 2.4. It will most likely stay. Even though they are not recommended they might...
-
02:14 PM Feature #7321 (Resolved): DynDNS - Add DreamHost DNS support
- I have been a customer of DreamHost (https://www.dreamhost.com/) for many years with several domains and subdomains. ...
-
02:14 PM Feature #7315 (Duplicate): Certificates exported from Certificate Manager has no password set
-
02:13 PM Bug #7297 (Resolved): system_certmanager.php: Following a link from a user to add a certificate does not present the "Choose an existing certificate" option
-
02:05 PM Feature #773 (Resolved): CODE for remove unnecesary menu items for users with restrictions.
-
07:27 AM Feature #773: CODE for remove unnecesary menu items for users with restrictions.
- Long done, can be closed.
-
02:04 PM Feature #7099 (Resolved): Make breadcrumbs clickable
-
07:34 AM Feature #7099: Make breadcrumbs clickable
- Works.
-
02:04 PM Todo #7160 (Resolved): Mark Required Fields on GUI Pages
-
07:40 AM Todo #7160: Mark Required Fields on GUI Pages
- Works.
-
01:42 PM Bug #7320 (Rejected): OpenVPN Status shows wrong (old) IP
- We show what OpenVPN reports via its management interface. If it's wrong, OpenVPN is reporting it wrong. If you can s...
-
01:05 PM Bug #7320 (Rejected): OpenVPN Status shows wrong (old) IP
- The local Pfsense is OpenVPN server.
On Dashboard and Status->OpenVPN the shown Remote-Host IP is wrong.
I think it... -
01:34 PM Feature #6841: reduce numeric precision in Gateways Widget
- https://github.com/pfsense/pfsense/pull/3594
-
11:34 AM Feature #7318: Dashboard widget filters - provide a "None" option
- PR https://github.com/pfsense/pfsense/pull/3593
-
02:04 AM Feature #7318 (Resolved): Dashboard widget filters - provide a "None" option
- On a system with a lot of interfaces or whatever entries to display in the dashboard widget, the list can be filtered...
- 10:32 AM Revision 54936b49: Fix syntax error in services_wol_edit.php
-
07:01 AM pfSense Packages Bug #7319: Tinc uninstall leaves an entry in the firewall rules tab.
- https://github.com/pfsense/FreeBSD-ports/pull/317
-
05:40 AM pfSense Packages Bug #7319 (Rejected): Tinc uninstall leaves an entry in the firewall rules tab.
- After an uninstall of tinc there's still an entry left in the firewall rules tab.
- 06:44 AM Revision c8ebd4d0: Fix #7317 Widget Filter All button
-
05:22 AM Bug #3445: Proxy URL behaviour for package list - trailing slash
- Apparently no longer an issue due to input validation, the field accepts IP or FQDN only, not URL.
https://github....
02/25/2017
-
04:38 PM Revision 7fd7fbcf: certificatemanager, link certificate to the proper CA after completing the CSR request
-
02:57 PM Revision 6cc58ae8: Add missing $zone variable
-
02:57 PM Revision e3d5c2e9: Add missing $zone variable
-
02:47 PM Feature #4828: Advanced option to show hidden firewall rules in web gui
- I'd like to see this too.
Supposedly there are automatic/invisible rules for passing IPSec, yet my IPSec doesn't w... -
02:45 PM Revision c3fb0119: Update BIND zones when adding static DHCP leases if needed (Bug #3710)
-
02:43 PM Revision a207d2c9: Update BIND zones when adding static DHCP leases if needed (Bug #3710)
- 12:47 PM Revision 57dd76d1: Fix #7316 Alias Edit keep pattern, placeholder, title in sync on all rows
-
08:46 AM Bug #3710: Adding static DHCP leases doesn't cause BIND zones to update
- https://github.com/pfsense/pfsense/pull/3584
-
08:23 AM pfSense Packages Bug #6563: Squid still accepts sha1 certificates
- It's probably much lower now. Since January, all the major browsers warn upon SHA1 certs. Regardless, the ticket sub...
-
03:07 AM pfSense Packages Bug #6563: Squid still accepts sha1 certificates
- Yeah, last time I checked (~Oct/Nov 2016) an estimate was that ~35% of websites were still using SHA1 certificates. O...
-
06:54 AM Bug #7316: Fail Boostrap format port in
- PR https://github.com/pfsense/pfsense/pull/3583
-
05:27 AM Bug #7316: Fail Boostrap format port in
- Pretty sure I already fixed this at least once: https://redmine.pfsense.org/projects/pfsense/repository/revisions/0f1...
-
04:47 AM Bug #7316: Fail Boostrap format port in
- Yes, that field has multiple uses depending if it is an IP, Port or URL alias. It would be nice if the "hover text" c...
-
04:33 AM Bug #7316 (Resolved): Fail Boostrap format port in
- Incorrect Boostrap format port in Firewall / Aliases / Edit
in
2.3.3-RELEASE (amd64)
built on Thu Feb 16 06:5... -
06:36 AM Bug #7297: system_certmanager.php: Following a link from a user to add a certificate does not present the "Choose an existing certificate" option
- Has the option "Choose an existing Certificate" now (2.4.0.b.20170224.1423)
-
05:02 AM Revision 1ea0460f: Remove another leftover
-
03:31 AM Feature #7315: Certificates exported from Certificate Manager has no password set
- Duplicate of Feature #1192
-
03:01 AM Feature #7315 (Duplicate): Certificates exported from Certificate Manager has no password set
- Certificates exported from Certificate Manager has no password set. I can import such certificate in Firefox certific...
02/24/2017
-
11:36 PM Bug #6967: DH Groups 22, 23, 24 missing from Phase 2 selection GUI
- DH Groups 22-24 are inadvisable:
https://wiki.strongswan.org/projects/strongswan/wiki/IKEv2CipherSuites
Did thi... -
11:27 PM pfSense Packages Bug #6563: Squid still accepts sha1 certificates
- I don't actually use squid, but given this week's SHA-1 collision https://shattered.it, I thought I'd ping this ticke...
-
11:21 PM Feature #6842: Package Manager progress bar should indicate overall progress
- I upgraded to the new 2.3.3 today and saw this same "dancing". Was going to file a bug, but I'll just +1 this one. :)
-
11:10 PM Feature #7216: Allow user to choose date display format
- And I can't imagine a firewall admin who would work in anything other than ISO 8601 format. :)
But yeah +1 to this... -
11:06 PM Bug #7186: Unable to use national symbols in password fo ACB package
- It is perhaps noteworthy that US NIST's new password recommendations explicitly state that unicode characters should ...
-
08:58 PM Bug #4061: dhcpd doesn't send client-hostname to peer, breaking DHCP lease registrations w/HA
- Jim Pingle wrote:
> 4.3.5 is in pfSense 2.3.3 and 2.4. Just update and try it.
Ah bummer, I did my testing on 2.3... -
08:37 PM Bug #7314 (New): Discrepancy in ntp monitoring view
- When I go to the Status-monitoring view, and select ntp, there's a discrepancy in the scale and the "hover over" numb...
-
05:20 PM Bug #7299: Error loading rules for old rule with ICMP type specified
- The worst thing is that there are no rules loaded and the pfsense is unusable.
-
04:25 PM Revision 9c91c7bd: Fix the pkg_call() and set the timeout to a sane value (Bug #6594)
-
03:04 PM Bug #7313 (Closed): Crazy behviour of Virtual IP
- Hello,
We are using PFSense cluster in our environment (both nodes are running version 2.3.2-p1).
We have are usi... -
01:08 PM Bug #7312 (Assigned): Trafic Graph Widget Bug
-
12:47 PM Bug #7312 (Not a Bug): Trafic Graph Widget Bug
- I just upgraded to 2.3.3 and noticed that there is an extra interface showing in the traffic graph widget under the D...
- 11:47 AM Revision 00f718d0: Remove unused ntpWidgetUpdateFromServer() from NTP widget
- I don;t see where this is used at all. Nothing seems to break if I remove it.
-
10:56 AM Revision 00a952af: Fix NTP widget to show server time (Issue #7245)
-
10:26 AM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- Someone test this, perhaps? https://github.com/pfsense/pfsense/pull/3582
Dunno, but it seems to me someone has mis... -
06:36 AM pfSense Packages Todo #7311 (Rejected): Lightsquid queries
-
01:57 AM pfSense Packages Todo #7311: Lightsquid queries
- This is a bug tracker, not a support forum. Kindly use https://forum.pfsense.org/ for discussions.
- 04:57 AM Revision 9a3ec9a5: Implemented Dreamhost ISP dynamic DNS updates.
- Dreamhost does not allow direct record updates through their API.
Records must be deleted and then added. Unfortunat... - 04:50 AM Revision b11c8ef6: Added Dreamhost and Dreamhost V6 to list of DYNDNS services.
02/23/2017
-
11:17 PM pfSense Packages Todo #7311 (Rejected): Lightsquid queries
- Hello All,
i have some query in pf sense
I want to see the user’s website visit log by user base. Currently IP... -
09:36 PM Revision 7038116e: Vendor MAC Retention - Update
- Only write if changed or missing.
Vast majority of reboots will not have a change so don't hit the file system with ... -
09:16 PM Bug #4061: dhcpd doesn't send client-hostname to peer, breaking DHCP lease registrations w/HA
- 4.3.5 is in pfSense 2.3.3 and 2.4. Just update and try it.
-
08:52 PM Bug #4061: dhcpd doesn't send client-hostname to peer, breaking DHCP lease registrations w/HA
- It looks like this may have been fixed upstream in version 4.3.5, is this something that could be easily tested? Hap...
-
05:09 PM Revision 69860ee4: Fix #5976: build cryptodev as a module
- 03:45 PM Revision 27bc5848: Fix #7306 Correctly filter log widget entries by interface description
-
02:17 PM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- Renato Botelho wrote:
> Which version were you upgrading to?
2.3.2 -
11:35 AM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- Pig Monkey wrote:
> I was just hit by this as well. In my case I am preparing to replace a device at a remote site. ... -
11:34 AM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- Kevin Wojniak wrote:
> I'm running into this right now. Not a big network guy, just trying to replace our small busi... -
01:04 PM Revision 117776e0: Add a function to normalize CR and CRLF-style newlines to Unix LF
- See Bug #5306.
-
12:28 PM Feature #6743: Packet Capture - Filter MAC
- Jim Pingle wrote:
> This is already partially done, commit:151b4e35eead8d1b1a9ccd1d1c3b3c4fb0e6620a
>
> Though th... -
11:46 AM Feature #6743: Packet Capture - Filter MAC
- This is already partially done, commit:151b4e35eead8d1b1a9ccd1d1c3b3c4fb0e6620a
Though the calls to is_macaddr() c... -
12:18 PM pfSense Packages Bug #7310: Packages pre-deinstall script removes temporary files used by pkg
- Duplicate of Bug #7229.
-
12:11 PM pfSense Packages Bug #7310 (Resolved): Packages pre-deinstall script removes temporary files used by pkg
- Upgrading from 2.3.3 to 2.4 removes Snort from the drop-down.
During the upgrade process I see this:... -
11:20 AM Bug #5976 (Feedback): Load cryptodev as a kernel module
- Applied in changeset commit:69860ee4f5ff9f1e5b87bc6fdcb6dfea66062726.
-
11:16 AM Bug #7309 (Resolved): ZFS - Can't find zroot, error 5
- Using the latest 2.4 factory ADI image.
When rebooting after installing pfSense with ZFS, the file-system isn't ge... -
11:10 AM Bug #7308 (Resolved): ZFS installer - check storage capabilities
- ZFS installer fails on the SG-2220 due to the small size of the internal storage (4 GB). The default swap size in ZFS...
-
11:05 AM Bug #7307 (Closed): ZFS installer - shuts down instead of rebooting
- Using the following image: pfSense-netgate-memstick-ADI-2.4.0-BETA-amd64-latest.img (downloaded today)
When perfor... -
10:53 AM Bug #6370: IPSEC bound to WAN gateway group and Dynamic DNS doesn't to fail back tunnel to WAN on DDNS update
- I too have this issue in 2.3.2. Internet fails back to primary interface but IPsec does not always fail back to prima...
-
10:00 AM Bug #2896: IPsec failover may not fully attach to new interface address
- Im still seeing this issue in 2.3.2 and the "Force IPsec reload on failover" option under advanced ipsec settings is ...
-
09:49 AM Bug #7306: Log widget filter interface selection does not work when interface description is not the default
- PR https://github.com/pfsense/pfsense/pull/3577
This currently does not work on 2.3.3 and 2.4-BETA and I suppose i... -
09:44 AM Bug #7306 (Resolved): Log widget filter interface selection does not work when interface description is not the default
- 1) Put some rules with logging on an interface(s)
2) Change the description of those interface(s) from LAN, WAN OPT1... - 08:54 AM Revision 81b1b44a: Redmine #7301 Put dot after the word break
- Signed-off-by: Phil Davis <phil.davis@inf.org>
-
08:25 AM Bug #6318: IPsec dashboard widget causes GUI failure
- Nick Wenos wrote:
> We are also having what appears to be the same issue running on version 2.3.2 As a side affect ... -
07:23 AM Bug #3681 (Closed): Email notifications don't work with IPv6-only SMTP servers
- 07:01 AM Revision 138e79d4: Redmine #7301 Provide word-break opportunity for dynamic DNS host names
- Signed-off-by: Phil Davis <phil.davis@inf.org>
- 05:49 AM Revision d0e4f627: Fix #7300 provide default value for ipprotocol for old rules
-
05:47 AM Bug #7305: widget "squid antivirus status"
- /usr/local/share/clamav-db is NOT the path to the ClamAV DB for anything but boxes with the /var ramdisk madness. (An...
-
05:18 AM Bug #7305 (Resolved): widget "squid antivirus status"
- the widget is using the old path for clamav db "/var/db/clamav"
you must modify the file /usr/local/www/widgets/widg... -
05:17 AM Bug #5306: textarea fields should have linebreaks sanitized automatically on save
- Is there any plan to finally do something about this, or should I start filing bugs for individual pages, starting wi...
- 04:56 AM Revision da57defa: Fix #7299 and other stuff
- As far as I can see, filter_generate_user_rule() is always supposed to be called with 'ipprotocol' set to 'inet' or '...
-
04:29 AM Bug #6650: Option needed to disable HSTS
- Another thing, if the pfSense GUI is behind a reverse proxy (in my case Nginx) you can't enable HSTS on Nginx as it w...
-
03:53 AM Bug #7265 (Not a Bug): Service dpinger does not start after upgrade from 2.3.3 to 2.4.0-Beta
-
03:40 AM Feature #7304 (Resolved): DHCP: Enable OMAPI Config
- There's currently no method to configure DHCP OMAPI settings other than modifying dhcpd.conf directly.
-
03:16 AM Bug #7303 (New): ipv6 connectivity lost on pfSense reboot
- We get everything working, start up pingers to ipv4 and ipv6, then reboot pfSense. We expect all connectivity to be r...
-
01:05 AM Bug #7301: Dynamic DNS status widget formatting for medium with browser window.
- PR https://github.com/pfsense/pfsense/pull/3574
-
12:24 AM pfSense Packages Bug #7302 (Resolved): Acme AWS/Route 53 DNS Verification fails
- With the shipping package for acme the acme.sh script for DNS verification with AWS has a bug which is essentially ht...
02/22/2017
-
11:57 PM Bug #7301 (Resolved): Dynamic DNS status widget formatting for medium with browser window.
- Long host/domain names do not line wrap causing IP address to be past margin with horizontal scroll bar. Same will p...
-
11:54 PM Bug #7300: Error displaying selected ICMP types for old rules without ipprotocol
- PR https://github.com/pfsense/pfsense/pull/3573
-
11:46 PM Bug #7300 (Resolved): Error displaying selected ICMP types for old rules without ipprotocol
- 1) Upgrade from a config that has an old rule that:
a) does not have 'ipprotocol' in its config (from the days be... -
11:28 PM Bug #7290: Dynamic DNS Widget, RFC2136 entries show red even when the cached IP address is correct
- On 2.3.3
Vertical bar is being used in the cache files as the delimiter. Dnydns and widget are exploding on colon.
... -
10:59 PM Bug #7299: Error loading rules for old rule with ICMP type specified
- https://github.com/pfsense/pfsense/pull/3572 has a more general fix that should catch any other ways that rules from ...
-
10:41 PM Bug #7299: Error loading rules for old rule with ICMP type specified
- https://github.com/pfsense/pfsense/pull/3571 for minimal fix to this particular problem.
-
10:35 PM Bug #7299 (Resolved): Error loading rules for old rule with ICMP type specified
- 1) Have an old config with a rule that specifies Protocol ICMP and ICMP type "Echo Request" (for example)
The old... - 06:17 PM Revision 27d15a21: Fixed typo in $POST/$_POST
- 06:11 PM Revision e35d7d0e: Fixes #7296
- HTML tags not allowed in selector option values
(cherry picked from commit 57f4327a60c0cabf43161a6cfde98479b42a7092)... - 06:11 PM Revision 8dbde62f: Fixes #7296
- HTML tags not allowed in selector option values
(cherry picked from commit 57f4327a60c0cabf43161a6cfde98479b42a7092) -
06:07 PM Revision 88991880: Remove some unused code from diag_command.php.
- 06:06 PM Revision 57f4327a: Fixes #7296
- HTML tags not allowed in selector option values
-
05:31 PM Revision 12e3e735: Correct variable name. Fixes #7297
-
05:19 PM Bug #7265: Service dpinger does not start after upgrade from 2.3.3 to 2.4.0-Beta
- ok, I found the issue with my system and it seems to work again.
As in my previous post described, the issue had to ... -
04:10 PM Revision 49a9421d: Check that DHCP registration isn't enabled for DNS forwarder/resolver when disabling DHCP server
- (cherry picked from commit e83c9b733c86f39a14a874b115f2b8e0adc952e7)
-
04:10 PM Revision 97517b69: Only allow the DHCP registration options to be enabled when DHCP server is enabled as well
- (cherry picked from commit c6d03f09e035806dca8ac3314b41a3eaf523ab3f)
-
04:09 PM Revision 7ff16d90: Only allow the DHCP registration options to be enabled when DHCP server is enabled as well
- (cherry picked from commit 13fca9bcb3fdecfb6f9707e621b49f89569abfd7)
-
04:07 PM Revision 809022b9: Only start dhcpleases if DHCP server is enabled (Bug #6750)
- (cherry picked from commit 3d8b01e8c6392b4177572d540c8160c7e6e071ca)
-
04:07 PM Revision 7386f8a0: Merge pull request #3568 from doktornotor/patch-7
-
03:38 PM Revision 4be90da5: Merge pull request #3546 from NOYB/Vendor_MAC_Retention_Logic_/_Consolidate
- 03:08 PM Revision 680e15ba: Fix 7294 keep full rule description
- Signed-off-by: Phil Davis <phil.davis@inf.org>
- 02:43 PM Revision 17f622b6: Fixed #7203 by visually separating the legend area
- Make legen area fixed rather than AJAX data
-
01:36 PM Revision f38f83cd: vslb.inc - Add missing include, use sigkillbyname()
-
01:05 PM Bug #6318: IPsec dashboard widget causes GUI failure
- We are also having what appears to be the same issue running on version 2.3.2 As a side affect of php-fpm going down...
-
12:46 PM Bug #7298 (Closed): IPv6 on a second interface doesn't work until the router is pinged
- I'm using 6rd for IPv6 and have two LAN interfaces both of them configured to Track WAN interface and each has a uniq...
-
12:42 PM Bug #7296 (Resolved): system_certmanager.php: HTML tags in certificate description drop-down
-
12:41 PM Bug #7296: system_certmanager.php: HTML tags in certificate description drop-down
- Tested via system patches on 2.3.3-R. Looks good here.
-
12:20 PM Bug #7296: system_certmanager.php: HTML tags in certificate description drop-down
- Applied in changeset commit:8dbde62f220234c8fcfe472b97cdba606779bc22.
-
12:13 PM Bug #7296: system_certmanager.php: HTML tags in certificate description drop-down
- HTML tags are not permitted in selector option values. - Removed and replaced with braces.
-
12:10 PM Bug #7296 (Feedback): system_certmanager.php: HTML tags in certificate description drop-down
- Applied in changeset commit:57f4327a60c0cabf43161a6cfde98479b42a7092.
-
11:32 AM Bug #7296 (Confirmed): system_certmanager.php: HTML tags in certificate description drop-down
- Also affects 2.4, but see #7297 first (can't test it without the fix I just pushed for that ticket).
-
11:00 AM Bug #7296 (Resolved): system_certmanager.php: HTML tags in certificate description drop-down
- If you navigate to the Certificate Manager via the User Manager to add a certificate to a user, and select choose an ...
-
12:38 PM Revision aeaf7ad9: Use sigkillbyname() for relayd
-
11:40 AM Bug #7297 (Feedback): system_certmanager.php: Following a link from a user to add a certificate does not present the "Choose an existing certificate" option
- Applied in changeset commit:12e3e735d8e0f6f0256175ad73f07a9fd196d1e9.
-
11:30 AM Bug #7297 (Resolved): system_certmanager.php: Following a link from a user to add a certificate does not present the "Choose an existing certificate" option
- Edit an existing user and click the + to add a certificate and the browser is taken to system_certmanager.php?act=new...
-
11:35 AM Bug #7276: 2.3.3 upgrade does not upgrade
- It's broken even with snapshots. The goddamn thing reliably bombs out during post-"upgrade" reboot on
@pkg: https:... -
11:13 AM Bug #7203 (Resolved): pkg_mgr_installed.php - visually separate the legend
-
11:02 AM Bug #7203: pkg_mgr_installed.php - visually separate the legend
- Works nicely, thanks.
-
08:50 AM Bug #7203: pkg_mgr_installed.php - visually separate the legend
- Applied in changeset commit:17f622b69c9743f7091864fc9977be14ebfff733.
-
08:46 AM Bug #7203 (Feedback): pkg_mgr_installed.php - visually separate the legend
- Legend area changed to alert-info class to distinguish it from the package list
-
10:57 AM pfSense Packages Bug #7191: squid package EN-US grammar errors
- Fixed in 0.4.36
-
10:16 AM Bug #6750 (Feedback): dhcpleases shouldn't start when DHCP Relay is configured
- PR has been merged, thanks
-
09:14 AM Bug #7294: Lenght of description of firewall rules
- PR https://github.com/pfsense/pfsense/pull/3570
-
07:12 AM Bug #7294: Lenght of description of firewall rules
- That's a pf limitation. We prefix user rules with "USER_RULE: " (11 chars) then the description and the total length ...
-
07:07 AM Bug #7294: Lenght of description of firewall rules
- firewall_rules_edit.php
@strncpy($filterent['descr'], $_POST['descr'], 52);@
I wonder why it limits that to 52?
... -
06:54 AM Bug #7294 (Resolved): Lenght of description of firewall rules
- When adding or modifying a firewall rule, the description field accept more characters than are saved, so the descrip...
-
09:09 AM Feature #7181: Add Top and Add Bottom on Seperator
- While this might add some convenience, the same argument could be made for all of the action buttons, and even for mo...
-
09:03 AM Bug #7295 (Resolved): RFC2136 not updating at boot time
- Tracking pppoe interface, is not updating after IP change/reboot.
In logs, after forcing a manual update:... -
04:10 AM Bug #4674: invalid state table entries after WAN IP change
- SIP behind pfSense with changing WAN IP address is with this bug *impossible*.
I must delete every day the old states. -
02:57 AM Bug #6099: igmpproxy does not recognize upstream interface
- Joao Dinis Neves wrote:
> Do you guys know if this is fixed on version 2.3.3.
>
> Thanks.
Read the comment rig... -
02:12 AM Bug #6099: igmpproxy does not recognize upstream interface
- Do you guys know if this is fixed on version 2.3.3.
Thanks. -
02:30 AM pfSense Packages Bug #7293: dns/bind911 requires TCP_RFC7413 in kernel
- Also filed an upstream bug: https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=217288
-
02:08 AM pfSense Packages Bug #7293 (Resolved): dns/bind911 requires TCP_RFC7413 in kernel
- There's a ton of logspam when this kernel option is disabled.
https://forums.freebsd.org/threads/59348/
https://f... -
02:04 AM Bug #6481: loading EAP_RADIUS method failed
- Smallish update 2.3.2-RELEASE-p1 still suffers from the same problem.
-
01:23 AM Revision e83c9b73: Check that DHCP registration isn't enabled for DNS forwarder/resolver when disabling DHCP server
-
12:03 AM Revision c6d03f09: Only allow the DHCP registration options to be enabled when DHCP server is enabled as well
-
12:02 AM Revision 13fca9bc: Only allow the DHCP registration options to be enabled when DHCP server is enabled as well
-
12:00 AM Revision 3d8b01e8: Only start dhcpleases if DHCP server is enabled (Bug #6750)
Also available in: Atom