Activity
From 03/03/2017 to 04/01/2017
04/01/2017
-
11:27 PM Bug #6340: fsck hangs boot in background, fails to produce any action, resulting in broken firewall
- After power cycling an appliance running 2.4.0.b.20170401.1306 with UFS FS for over an hour, dozens of fsck's were tr...
-
11:23 PM Bug #7443 (Resolved): Issues Creating IPv6 Static Mappings
- There are a few issues creating IPv6 static mappings.
When entering the address for IPv4 static mapping, the entir... -
09:36 PM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- On 2.4.0.b.20170401.1306, when a backup from 2.4.0.b.20170328.1156 is restored with no WAN connectivity the attached ...
-
08:14 PM Bug #7075: firewall states show negative value for total bytes processed
- Can not duplicate this behavior in 2.4.0.b.20170401.1306, only positive numbers in the States column
-
08:01 PM Bug #7231: Web UI does not properly remove priq shaping rules when deleting an interface which causes subsequent rule failures without warning in the UI
- On 2.4.0.b.20170401.1306, when attempting to delete an interface with traffic shaping configured, there is a warning ...
-
07:52 PM Bug #7254: Selection from long tab list that uses dropdown does not POST correctly
- Could not reproduce this on 2.4.0.b.20170401.1306 with twelve interfaces configured
-
07:41 PM Bug #7316: Fail Boostrap format port in
- On 2.4.0.b.20170401.1306 when editing a port alias, hovering over the Port field shows 'A port number, port number ra...
-
07:37 PM Bug #7422: Typo in OpenVPN NCP description
- Today's latest snapshot 2.4.0.b.20170401.1306 also does not have the 'z'.
-
07:33 PM Bug #7435: Cannot edit IP address in a host override
- I am not able to reproduce this in DNS Resolver (unbound) on 2.4.0.b.20170401.1306.
-
06:21 PM pfSense Packages Bug #7440: Tinc package WEB GUI not picking up changes made on filesystem
- Ok. Thank you. I can understand it would be difficult to write a parser for these config files, especially since they...
-
06:19 PM pfSense Packages Bug #7440: Tinc package WEB GUI not picking up changes made on filesystem
- Put the settings in the GUI. That's how every part of pfSense works. Manual changes to files will always be overwritt...
-
06:16 PM pfSense Packages Bug #7440: Tinc package WEB GUI not picking up changes made on filesystem
- I understand that this is not the approved way to do things, but now that I have done it, is there any way to get the...
-
06:12 PM pfSense Packages Bug #7440 (Rejected): Tinc package WEB GUI not picking up changes made on filesystem
- That's not how it's meant to work. All settings must go into the GUI, and the filesystem contents are written out fro...
-
05:51 PM pfSense Packages Bug #7440 (Rejected): Tinc package WEB GUI not picking up changes made on filesystem
- I have been setting up a tinc VPN using a pfsense firewall/router as one of the nodes and everything is working fine,...
-
06:05 PM Feature #7442 (New): Suggestions for Diagnostics / ARP Table and Diagnostics / NDP Table
- Add status to NDP Table.
Add delete to NDP Table.
Add ping to ARP Table and NDP Table.
Add selection box so ... -
06:05 PM Feature #7441 (New): Display start/end times for Static Mapping leases on DHCP Leases/DHCPv6 Leases
- Display start and end for static leases. (Even if address is reserved, it's useful to know the status.)
Add ping t... -
02:29 PM pfSense Packages Feature #6651: Loopback interfaces
- +1 for this request. The ability is there as Chris mentioned, but IPs can only be bound to lo0. Additionally, an opti...
03/31/2017
-
01:01 PM Bug #7439 (Closed): IKE_SA (IKEv2) does not rekey on break before make startegy, just issues IKE_DELETE and connection is closed
- h1. 2.4.0-BETA-amd64-20170228-0411
Both MSW 10 and macOS 10.12 does not rekey IKE_SA on _break-before-make_ starte... -
11:02 AM Bug #1819: DNS Resolver Not Registering DHCP Server Specified Domain Name
- I'm also experiencing this bug with 2.3.3-RELEASE (amd64) using Unbound and no BIND. LAN (renamed "LAN1") serves regu...
-
07:51 AM Bug #1819: DNS Resolver Not Registering DHCP Server Specified Domain Name
- With Unbound and the newest release of pfSense ATM (2.3.3-RELEASE-p1 (amd64)) it isn't working for one of four interf...
-
08:14 AM pfSense Packages Bug #7437: Mail Report package 3.1 removed support for STARTTLS
- Is it possible delete or replace attachment here?
Seems like I can edit message, but not delete or replace attached ... -
07:52 AM pfSense Packages Bug #7437: Mail Report package 3.1 removed support for STARTTLS
- Of course, I tested it - see attached screenshot, in this case notifications cease to works as well as reports.
On... -
05:56 AM pfSense Packages Bug #7437: Mail Report package 3.1 removed support for STARTTLS
- I'm telling you what to tick so that you have the mail reports working with STARTTLS without any changes needed in th...
03/30/2017
-
07:20 PM Revision ac24ac6b: ipsec overview, check label exists for interface including disabled ones, tell what was configured if not found.
-
03:49 PM Revision e4e78af3: Don't use usepost on firewall_rules.php for the tabs.
-
09:53 AM pfSense Packages Bug #7437: Mail Report package 3.1 removed support for STARTTLS
- Hi!
It looks like you do not understand the difference between SMTPS and STARTTLS.
If I check "Enable SMTP over... -
06:46 AM pfSense Packages Bug #7437: Mail Report package 3.1 removed support for STARTTLS
- It works just fine on 2.3.3 when you tick the checkbox that you stubbornly refuse to tick for god knows what reason. ...
-
06:04 AM pfSense Packages Bug #7437: Mail Report package 3.1 removed support for STARTTLS
- I am glad it works for you in 2.4, but last I checked 2.3.3-RELEASE-p1 is the current release and it does NOT work th...
-
03:10 AM pfSense Packages Bug #7437: Mail Report package 3.1 removed support for STARTTLS
- I must be speaking Chinese. Tick the "Enable SMTP over SSL/TLS" and it will work. Simple. (The "Enable STARTTLS" thin...
- 04:16 AM Revision 1d3510cf: Add user option to sort interface names
-
03:56 AM Revision 6ff1f0f3: Updated help text to be more accurate as per jim-p suggestion.
03/29/2017
-
07:14 PM pfSense Packages Bug #7437: Mail Report package 3.1 removed support for STARTTLS
- Are we looking at different codebases?
There are two checkboxes on /usr/local/www/system_advanced_notifications.ph... -
06:35 PM pfSense Packages Bug #7437: Mail Report package 3.1 removed support for STARTTLS
- Dmitry Gromov wrote:
> And that is _exactly_ what version 3.1 does - it disables handling of STARTTLS if STARTTLS ch... -
06:13 PM pfSense Packages Bug #7437: Mail Report package 3.1 removed support for STARTTLS
- Hi!
Well, that is kind of strange way to treat the issue, let's not jump to conclusions that fast.
I had a bit ... -
07:37 AM pfSense Packages Bug #7437 (Rejected): Mail Report package 3.1 removed support for STARTTLS
- It was changed because phpmailer changed. It detects STARTTLS support automatically. If it can't, then the server isn...
-
04:49 AM pfSense Packages Bug #7437: Mail Report package 3.1 removed support for STARTTLS
- It was not removed, it's supposed to be used automatically when you tick SSL and the mailserver is advertising STARTT...
-
01:17 AM pfSense Packages Bug #7437 (Rejected): Mail Report package 3.1 removed support for STARTTLS
- I had pfSense configured to send mail reports via FastMail on port 587 with STARTTLS.
All worked great until recent ... -
07:13 PM Revision 2e56abd1: getstats, further cleanup unused code, e.g. removing updateInterfaceStats and updateInterfaces javascript functions
- 06:59 PM Revision d1359d6f: Add hint to web interface that DynDNS will automatically try to fetch the public IP in case the selected interface's IP is private.
-
06:18 PM Revision 804fecdd: pkg_call_plugins put includefile and supported plugins in the normal config.xml so there is no need to parse the package xml for them. this improves performance significantly for several pages like such as 'ipsec overview' and 'openvpn server edit page' which use certificates and gatewaygroups which acquire some information from plugins.
-
03:38 PM pfSense Packages Bug #7438: Squid 0.4.36_2 Remote Cache Parent not working
- Test this: https://github.com/doktornotor/FreeBSD-ports/commit/d2d68063934e1474571e4ef3e0dfb713835b9b22.patch
-
02:16 PM pfSense Packages Bug #7438 (Closed): Squid 0.4.36_2 Remote Cache Parent not working
- We had transparent mode proxy working with a Remote Cache parent working on 0.4.36
When we upgraded to 0.4.36_2 it... -
01:00 PM Revision 392a7045: Adds ability to ignore DHCP offers from multiple servers
- - Forum thread: https://forum.pfsense.org/index.php?topic=124046.msg705100#msg705100
- related dhclient source:
https... -
12:42 PM Revision 1dd19532: Merge pull request #3580 from doktornotor/patch-9
-
11:22 AM Revision 2b1a4a89: load package add-on tabs into config to avoid parsing all installed package xml's, fix tabgroup filter
- (cherry picked from commit bc0661b7b32a99016b9e71b0ece969f6584034c2)
-
11:22 AM Revision fe255e99: Merge pull request #3674 from PiBa-NL/20170326-pkg-tabs
-
11:10 AM Revision edcc5e54: Merge pull request #3676 from PiBa-NL/20170327-cron-dontsaveconfig-unchanged
-
11:04 AM Revision 04142b11: Merge pull request #3680 from phil-davis/write-config-01
-
08:00 AM Bug #7425: dhclient not sending option 77
- I have issued a PR on this: pfsense/FreeBSD-src - Option 77 Additions to dhclient #8
-
07:06 AM Bug #7345 (Feedback): nanobsd upgrades still fail bacause of lacking resolv.conf
- PR has been merged, thanks!
- 01:40 AM Revision ceed56bc: Remove duplicate write_config from diag_dns
03/28/2017
-
08:13 PM Bug #7412: rtsold will not run on VLAN interfaces
- Ok, understood. Thanks for the explanation, I appreciate it. I'll lay low for a season and see how it goes.
-
08:11 PM Bug #7412: rtsold will not run on VLAN interfaces
- No, there is no default gateway because rtsold won't run. DHCPv6 on its own does not handle gateways. It's the same r...
-
08:10 PM Bug #7412: rtsold will not run on VLAN interfaces
- Jim Pingle wrote:
> A VLAN interface for a WAN will not pull an IPv6 address via DHCPv6 with a default configuration... -
08:06 PM Bug #7436 (Duplicate): SG-1000 not installing default gateway on VLAN WAN interface
- Duplicate of #7412
-
08:04 PM Bug #7436 (Duplicate): SG-1000 not installing default gateway on VLAN WAN interface
- I have an SG-1000 with 2.4.0.b.20170328.1156 installed. Comcast residential IPv6, DHCPv6 on the WAN interface gets a...
-
01:49 PM Revision 647f87c4: Update translation files
-
01:45 PM Revision 7ae3056e: Regenerate pot
- 01:11 PM Revision 7abb61ef: Redmine #7435 Fix edit problems due to POST id code
- 01:10 PM Revision ea846d78: Redmine #7435 Fix edit problems due to POST id code
-
01:10 PM Revision f652e61b: Merge pull request #3679 from phil-davis/edit-ip-7435
- 09:58 AM Revision d61ca1d9: Redmine #7435 Fix edit problems due to POST id code
-
08:13 AM Bug #7435 (Feedback): Cannot edit IP address in a host override
- Looks good. I managed to reproduce this late yesterday but left myself a note to check on it this morning again with ...
-
05:26 AM Bug #7435: Cannot edit IP address in a host override
- PR with more stuff and a slightly different way to fix:
https://github.com/pfsense/pfsense/pull/3679
And this bug... -
03:07 AM Bug #7435: Cannot edit IP address in a host override
- PR https://github.com/pfsense/pfsense/pull/3678
-
07:31 AM Bug #7428 (Resolved): Rule with empty port alias causes error loading rules
- Thanks!
03/27/2017
-
11:28 PM Bug #7435 (Resolved): Cannot edit IP address in a host override
- Forum: https://forum.pfsense.org/index.php?topic=127835.0
In either of DNS Forwarder or Resolver:
a) Add some hos... -
10:45 PM Bug #7428: Rule with empty port alias causes error loading rules
- Tested on latest 2.4-BETA and 2.3.4-DEVELOPMENT and this is fixed. Using an empty port alias in a rule causes the rul...
-
08:35 PM Bug #7428: Rule with empty port alias causes error loading rules
- PRs merged:
https://github.com/pfsense/pfsense/pull/3670 - code needed for fix
https://github.com/pfsense/pfsense/p... -
08:29 AM Bug #7428: Rule with empty port alias causes error loading rules
- The fix looks OK to me and the PR fixes the problem, I just want to get at least one more person here to look it over...
-
06:15 PM Revision d0eb6d49: Fix category
-
06:12 PM Revision 489b0946: Exclude Netgate Coreboot Upgrade build from ARM
-
06:08 PM Revision d401a700: Enable Netgate Coreboot Upgrade build
-
06:08 PM Revision 00203af2: Enable Netgate Coreboot Upgrade build
-
06:08 PM Revision 0458596e: Enable Netgate Coreboot Upgrade build
- 05:44 PM Revision eb104fc7: Refactor is_port_or functions
- (cherry picked from commit fe108b671d09cf34a11270e286dcd4c4ce1c0597)
- 05:44 PM Revision 47b91127: Add underscores to is_port* function names
- (cherry picked from commit 593e9fe32d2959cd823fe5da55714ccfb9a0e958)
-
05:43 PM Revision a6aa7d73: Merge pull request #3672 from phil-davis/handle-empty-port-alias-RELENG_2_3_3
- 05:41 PM Revision cd4c3402: Refactor is_port_or functions
- (cherry picked from commit fe108b671d09cf34a11270e286dcd4c4ce1c0597)
- 05:41 PM Revision e4958a8f: Add underscores to is_port* function names
- (cherry picked from commit 593e9fe32d2959cd823fe5da55714ccfb9a0e958)
-
05:38 PM Revision 33cb7cc2: Merge pull request #3671 from phil-davis/handle-empty-port-alias-RELENG_2_3
-
05:24 PM Revision d52aed62: Merge pull request #3677 from phil-davis/handle-empty-port-alias-refactor
-
05:20 PM Revision d90321c0: Correct definition of ports for SMB used by the shaper wizard. Fixes #7434
-
05:20 PM Revision f15da5f3: Correct definition of ports for SMB used by the shaper wizard. Fixes #7434
-
05:20 PM Revision 74d259a6: Merge pull request #3670 from phil-davis/handle-empty-port-alias
-
05:09 PM Revision 02c3646f: Correct definition of ports for SMB used by the shaper wizard. Fixes #7434
- 04:57 PM Revision fe108b67: Refactor is_port_or functions
- 04:30 PM Revision 593e9fe3: Add underscores to is_port* function names
-
12:20 PM Bug #7434 (Feedback): Traffic shaper wizard: SMB choice uses invalid destination port range
- Applied in changeset commit:02c3646f36f84bfe1a65c54c38a05e100e8abd44.
-
12:12 PM Bug #7434: Traffic shaper wizard: SMB choice uses invalid destination port range
- I pushed a fix, but now I'm wondering if we might want some upgrade code to fix the existing broken rules. Since it w...
-
12:05 PM Bug #7434 (Resolved): Traffic shaper wizard: SMB choice uses invalid destination port range
- The ports for SMB used by the traffic shaper are defined in /etc/inc/wizardapp.inc, and they are defined incorrectly....
-
09:45 AM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- Can the devs chime in on this issue please?
Are there other functions in the code that also need to be patched to ... -
09:27 AM pfSense Packages Bug #7431: BIND (9.11-2) Log shortcut needs to be updated.
- Updated to correct Repo (Hpefully) https://github.com/pfsense/FreeBSD-ports/pull/335
-
07:37 AM Bug #6957: CARP arp reply with wrong src mac
- This also seems to have a negative effect on switches the pfSense gateway is not directly connected to. I.e. pfSense ...
-
07:28 AM Bug #7415: favicon is not correctly implemented
- As my humble contribution to the work of this team, i added all other formats in the existing favicon.ico file. Enjoy.
-
07:19 AM Bug #6991 (Resolved): IPv6 traffic hitting a rule with policy routing and NPt fails/disappears
- Looks OK. Traffic hitting rules that failed before the first fix works OK still.
-
07:11 AM Bug #7421: Unresolvable port alias is omitted from rule rather than generating an error
- I'll close this out and check out the other ticket/PR shortly. Thanks!
-
07:06 AM Bug #7433: led and sw bouton do not work in APU2
- See the other ticket, this one is a duplicate.
-
06:50 AM Bug #7433: led and sw bouton do not work in APU2
- hello JIM, Thank you but how I add this fix in pfsense 2.3.3 nanoBSD
-
06:35 AM Bug #7433 (Duplicate): led and sw bouton do not work in APU2
-
05:39 AM Bug #7433: led and sw bouton do not work in APU2
- You already filed this as #7432
Anthony hesnaux wrote:
> Can you help me
Not here. Use https://forum.pfsense.o... -
04:19 AM Bug #7433 (Duplicate): led and sw bouton do not work in APU2
- Hello ALL,
I test to install pfsense(2.3.X) in APU2
but I find a problem with led in front and switch reset bouton.... -
06:36 AM Feature #7432 (Needs Patch): Add drivers for led and sw bouton APU2
- When FreeBSD adds the drivers, we will get them naturally from upstream.
-
01:24 AM Feature #7432 (Needs Patch): Add drivers for led and sw bouton APU2
- Hello ALl,
I test to install pfsense(2.3.X) in APU2
but I find a problem with led in front and switch reset bouton.... -
01:31 AM Bug #1819: DNS Resolver Not Registering DHCP Server Specified Domain Name
- I am having this same exact issue. Has there been any traction on this?
03/26/2017
-
10:54 PM Revision 65b9347b: cron, dont write_config() when nothing changed.
-
03:22 PM Revision 11b98966: ipsec webgui, move building the $iflabels array outside if the loop
-
02:23 PM Revision bc0661b7: load package add-on tabs into config to avoid parsing all installed package xml's, fix tabgroup filter
-
01:43 PM Revision 257dff15: get_stats, optimizations. -dont call unused interface statistics functions -call get_mbuf only once (its netstat call is cpu intensive.) -dont stack multiple pending request in browser if responses are slow.
-
12:01 PM pfSense Packages Bug #7431: BIND (9.11-2) Log shortcut needs to be updated.
- You have submitted this against completely wrong abandoned repo. Any fixes need to go to https://github.com/pfsense/F...
-
11:04 AM pfSense Packages Bug #7431 (Resolved): BIND (9.11-2) Log shortcut needs to be updated.
- The Shortcut to the BIND Logs (on page /pkg_edit.php?xml=bind.xml) currently points to /diag_logs_resolver.php
... - 08:40 AM Revision 0ea3b521: Redmine #7428 Hanlde empty port alias
- 08:40 AM Revision 223ab494: Refactor filter_generate_nested_alias
- 08:39 AM Revision 23eff8bb: Provide functions for checking port range alias combinations
- 08:36 AM Revision cc4bf28e: Redmine #7428 Hanlde empty port alias
- 08:35 AM Revision 756df551: Refactor filter_generate_nested_alias
- 08:34 AM Revision 5b7e3a4c: Provide functions for checking port range alias combinations
- 08:21 AM Revision 7e50d1e7: Redmine #7428 Hanlde empty port alias
- 08:06 AM Revision 810d47c9: Refactor filter_generate_nested_alias
- 07:59 AM Revision 4081ecac: Provide functions for checking port range alias combinations
-
07:28 AM Bug #7430 (New): pfsense-utils.inc - where_is_ipaddr_configured() should account for loopback interface
- At least with @$check_localip = true@, this function should IMNSHO return the lo0 interface when you pass @127.0.0.1@...
-
06:01 AM Bug #7429: DHCP service error greater than 10 on shared network
- This has nothing to do with 10 leases or licensing. Your problem is "Interface igb0 matches multiple shared networks"...
-
05:44 AM Bug #7429 (Rejected): DHCP service error greater than 10 on shared network
- Getting this message:
rc.bootup: The command '/usr/local/sbin/dhcpd -user dhcpd -group _dhcp -chroot /var/dhcpd -cf ... -
04:08 AM Bug #7421: Unresolvable port alias is omitted from rule rather than generating an error
- Changed code works also, and better - it allows port ranges through :)
While testing, I also entered an empty alia... -
03:30 AM Bug #7428: Rule with empty port alias causes error loading rules
- PR https://github.com/pfsense/pfsense/pull/3670
-
03:20 AM Bug #7428 (Resolved): Rule with empty port alias causes error loading rules
- 1) Create a port alias, but do not enter any ports in it (leave it empty)
2) Add a rule that uses that port alias
3...
03/25/2017
-
11:41 PM Bug #7303: ipv6 connectivity lost on pfSense reboot
- i can confirm this problem on 2.4 tired to bring up 3rd tunnel and couldn't but did find this happing too
-
05:44 PM Bug #7427 (Rejected): Fatal error: Allowed memory size of 134217728 bytes exhausted (tried to allocate 127846801 bytes) in /usr/local/www/crash_reporter.php on line 142
- ^ What they said. Discuss on the forum, if there is a bug we can open a more specific ticket with detail.
-
09:18 AM Bug #7427: Fatal error: Allowed memory size of 134217728 bytes exhausted (tried to allocate 127846801 bytes) in /usr/local/www/crash_reporter.php on line 142
- Post on the forum for help. Then later if there is some bug or good change to make to the software it can be opened a...
-
06:57 AM Bug #7427: Fatal error: Allowed memory size of 134217728 bytes exhausted (tried to allocate 127846801 bytes) in /usr/local/www/crash_reporter.php on line 142
- Brother Jonathan wrote:
> The system is currently working fine but it's still bugging me.
It's hardly working fin... -
02:11 AM Bug #7427 (Rejected): Fatal error: Allowed memory size of 134217728 bytes exhausted (tried to allocate 127846801 bytes) in /usr/local/www/crash_reporter.php on line 142
- Good Day
Im new on the pfsense
Everything is work fine until i see this error.
The system is currently working ... - 02:14 AM Revision 51c70350: Update services_dyndns_edit.php
03/24/2017
-
09:33 PM Feature #5851: Add copy action to OpenVPN client / server
- +1
-
08:02 PM Revision 61fe6d83: Merge branch 'master' into patch-18
-
05:59 PM Revision 70cd5c34: Fix handling of port ranges in this validation test. Ticket #7421
-
05:59 PM Revision 0034bbc1: Fix handling of port ranges in this validation test. Ticket #7421
-
05:58 PM Revision dd844c43: Fix handling of port ranges in this validation test. Ticket #7421
-
04:52 PM Bug #6991 (Feedback): IPv6 traffic hitting a rule with policy routing and NPt fails/disappears
- Our initial fix was reverted in favour of the upstream fix. This need to be tested again.
-
04:49 PM Bug #7426 (Resolved): UDP packet drops
- When doing an iperf test outside of pfsense there is a strange packet loss at the start of the test.
UDP packets d... -
03:36 PM Revision 1ae0947a: Show the button to reset CARP demotion status even when the value is negative, and change the reset code to accommodate. Also fixup text in that dialog. Fixes #7424
-
03:36 PM Revision 01dc8395: Show the button to reset CARP demotion status even when the value is negative, and change the reset code to accommodate. Also fixup text in that dialog. Fixes #7424
-
03:35 PM Revision 52a3580a: Show the button to reset CARP demotion status even when the value is negative, and change the reset code to accommodate. Also fixup text in that dialog. Fixes #7424
-
01:03 PM Bug #7421: Unresolvable port alias is omitted from rule rather than generating an error
- There was a problem with this code and validating port ranges. I pushed another fix that should cover that case as well.
-
07:11 AM Bug #7421 (Resolved): Unresolvable port alias is omitted from rule rather than generating an error
- Great, thanks for testing!
-
12:08 PM Revision 2107f0a3: Merge pull request #3669 from phil-davis/remove-z
-
10:50 AM Bug #7424 (Feedback): status_carp.php: Reset Demotion Status button does not appear when the demotion value is negative
- Applied in changeset commit:52a3580a200c9f37f33c2985852e68fc65f3266a.
-
10:22 AM Bug #7424 (Resolved): status_carp.php: Reset Demotion Status button does not appear when the demotion value is negative
- In some cases, through manual user intervention, the value of net.inet.carp.demotion can be negative. The GUI shows a...
-
10:41 AM Bug #7425 (Resolved): dhclient not sending option 77
- Not sure it's a bug, more of something missing. As reported on the forum 2.4 dhclient does not send option 77. This p...
-
09:46 AM Bug #7174 (Duplicate): OpenVPN Server and Client not detecting Hardware Cryto
- The only issue here is actually a duplicate of #5976 - closing.
-
09:32 AM Feature #7383 (Closed): system_certmanager.php?act=new: Add new select option to sign a CSR
-
09:28 AM Feature #7383: system_certmanager.php?act=new: Add new select option to sign a CSR
- Build 2.4.0.b.20170323.1221
I was able to create a signing request and sign it via the UI.
The CSR remained in ... -
08:46 AM Feature #4606: PKI : CA signing external CSR
- i see now, there might be another problem.
currently pfsense cannot handle certificates w/o a private key - so the... -
08:42 AM Bug #7423: Special characters in a password cause problems
- The Captive Portal login page is the default an it is not customized.
-
08:35 AM Bug #7423 (Not a Bug): Special characters in a password cause problems
- Possible related to bug #6688:
When £ (pound) character is used in a password from an Active Directory account and a... -
08:17 AM Bug #7422: Typo in OpenVPN NCP description
- Current version 2.4.0.b.20170323.1013
No 'z' in text. http://imgur.com/vCa9QWo -
07:10 AM Bug #7422 (Feedback): Typo in OpenVPN NCP description
- PR Merged
-
07:58 AM Feature #2358: NAT64 support
- UPVOTE!!!
We are switching several of our subnets from dual-stack to pure IPv6 and NAT64/DNS64 is not optional for u... - 04:27 AM Revision f3e8f7f5: Redmine #7422 remove bogus z at end of words
-
12:27 AM Feature #7182: Break up System Widget on the Dashboard
- Remaining "todo": Traffic Graphs widget code needs to be changed so that it will work with multiple Traffic Graphs wi...
-
12:25 AM Feature #7182: Break up System Widget on the Dashboard
- RELENG_2_3_3 and RELENG_2_3 have a consistent implementation of being able to filter the content displayed in various...
03/23/2017
-
11:36 PM Bug #7422: Typo in OpenVPN NCP description
- My bad, so I will fix, see PR https://github.com/pfsense/pfsense/pull/3669
-
07:46 PM Bug #7422: Typo in OpenVPN NCP description
- https://github.com/pfsense/pfsense
-
06:22 PM Bug #7422 (Resolved): Typo in OpenVPN NCP description
- Under Enable NCP, when you click on blue info sign you get:
"When both peers support NCP and have it enabled, NCP... -
11:29 PM Bug #6367: Long delays with LDAP enabled w/local users during boot at "Synchronizing user settings..."
- I hate to comment on an old issue but I couldn't find one for the "proper fix" as mentioned above. Today my LDAP serv...
-
11:10 PM Bug #7421: Unresolvable port alias is omitted from rule rather than generating an error
- Test:
a) Add an alias and a rule that uses it
b) Backup config
c) Edit config, delete the alias but leave the rule... -
01:30 PM Bug #7421 (Feedback): Unresolvable port alias is omitted from rule rather than generating an error
- Applied in changeset commit:224e1648174e4a27b7f091fe348a81c74bacf23e.
-
01:20 PM Bug #7421 (Resolved): Unresolvable port alias is omitted from rule rather than generating an error
- GUI validation prevents this from happening, but if a port alias is missing from the firewall configuration, a rule u...
-
06:21 PM Revision bf4440b4: File a notice and omit rule(s) using a missing port alias. Fixes #7421
-
06:21 PM Revision 72040e44: File a notice and omit rule(s) using a missing port alias. Fixes #7421
-
06:21 PM Revision 224e1648: File a notice and omit rule(s) using a missing port alias. Fixes #7421
-
04:31 PM Bug #4310: Limiters + HA results in hangs on secondary
- We are not noticing our secondary (which is also a VM) hang. However, our one limited rule traffic ends overnight, s...
- 04:16 PM Revision 360e4f05: Fix display of BIOS only on Sytem Info widget
- 04:16 PM Revision 90ebc7b1: Fix display of BIOS only on Sytem Info widget
-
04:16 PM Revision 6aee3af6: Merge pull request #3668 from phil-davis/fix-display-bios-only
- 04:09 PM Revision 97450eb7: Fix display of BIOS only on Sytem Info widget
-
03:06 PM Revision 9c437b7e: Show BIOS information in the system info widget, if it exists in kenv.
-
03:06 PM Revision 832535ef: Show BIOS information in the system info widget, if it exists in kenv.
-
03:05 PM Revision 7c48e60e: Show BIOS information in the system info widget, if it exists in kenv.
-
04:51 AM Bug #7420 (Closed): ipsec status freezing
- I upgraded a SG-8860 yesterday from 2.3.2_1 to 2.3.3_1 after I applied the bios upgrade.
Unfortunately, now the IP... - 02:02 AM Revision c47e5003: Merge pull request #3666 from phil-davis/sysinfo-widget-all-button-RELENG_2_3_3
- 02:00 AM Revision 92de7fb6: Merge pull request #3665 from phil-davis/sysinfo-widget-all-button-RELENG_2_3
- 01:59 AM Revision de380bff: Merge pull request #3667 from phil-davis/patch-5
-
01:21 AM Bug #7382: DNS Forwarder does not resolve DNS names on first boot
- I can confirm the same behavior. My problem is with Domain Overrides, but I'm assuming the problem is the same.
T...
03/22/2017
-
04:20 PM Bug #7419 (Duplicate): CloudFlare DDNS Not working for wildcard updates
- It is not possible to update the record for a wildcard domain using Cloudflare DDNS, even if the wildcard checkbox is...
-
04:07 PM Feature #7418: Dynamic dns should be sorted interface name
- well looks like interfaces were fixed across gui I have a bunch of gateway groups due to 3 isps added at different ti...
-
12:00 PM Feature #7418: Dynamic dns should be sorted interface name
- No matter how we choose to sort them someone else will probably want them sorted differently. Making the tables thems...
-
11:53 AM Feature #7418: Dynamic dns should be sorted interface name
- System/Routing/Gateway Groups
should be sorted by group name alphabetically also -
11:47 AM Feature #7418 (New): Dynamic dns should be sorted interface name
- Dynamic dns should be sorted interface name
-
01:21 PM Feature #2358: NAT64 support
I would like to see this important functionality-
01:04 PM Feature #7193: NTP process PGRMF
- I'm sorry, I think I was unclear. In my original config I had selected GGA in the “NMEA Sentences” menu, plus ticked ...
-
12:33 PM Todo #7385: Sanitize PHP includes
- I redid the write_config() stuff as a separate PR. If someone provides some ETA for "next QA run", I'll redo the incl...
-
11:07 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- The warning is for continuing to argue/discuss the issue here on redmine. This is not a discussion platform. I've sai...
-
11:03 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- Jim Pingle wrote:
> Consider this a second warning.
A *WARNING*? For what?
With above attitude, thank you for o... -
10:47 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- Discuss it on the forum. Consider this a second warning.
-
10:41 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- Jim Pingle wrote:
> [...] unless the ISC DHCP daemon behavior is fixed.
Then are you suggesting that the manual f... -
10:32 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- Yes, we know all of that. None of that helps the situation. It doesn't contradict anything, and if you read closer yo...
-
10:29 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- Jim Pingle wrote:
> Static mappings express a preference for address assignment and do not prevent other devices fro... -
10:27 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- If I understand right, wiki claims that ISC DHCP will happily lease a fixed-address definition to anyone in case that...
-
08:48 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- We are not that product. The DHCP daemon we use, the ISC DHCP Daemon does not support reservations. Static mappings e...
-
08:42 AM Feature #7407: Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- Jim Pingle wrote:
> You can't static map addresses inside the pool, so this would just confuse users.
There is at... -
10:41 AM Bug #4287: Wrong display for ppp in Interfaces page
- I can't test the patch actually because since then I have changed my 3G usb key to an other huawei one, and there is ...
-
07:11 AM Bug #4287 (Feedback): Wrong display for ppp in Interfaces page
-
10:34 AM Feature #7392: Please allow syncing authorized_keys into config.xml
- Kill Bill wrote:
> What's exactly difficult about CTRL+C, CTRL+V?
it takes more time and it's not just a CTRL-C C... -
07:12 AM Feature #6841 (Feedback): reduce numeric precision in Gateways Widget
-
03:25 AM Feature #6841: reduce numeric precision in Gateways Widget
- Merged.
-
07:12 AM pfSense Packages Bug #7417 (Rejected): Avahi ipv6(disabled) port 5353(local link ipv6) firewall log spam until avahi is stopped for a few secs and then restarted
- Please discuss and diagnose the problem on the forum before opening a bug report with the precise details and specifi...
-
02:40 AM pfSense Packages Bug #7417: Avahi ipv6(disabled) port 5353(local link ipv6) firewall log spam until avahi is stopped for a few secs and then restarted
- This is a bug tracker, use forums for discussions and mystery stories please.
-
07:10 AM Bug #6890 (Feedback): PPP service name error
-
07:09 AM Bug #7399 (Feedback): getserviceproviders.php - lack of sanity checking in foreach()
- 12:44 AM Revision 11daee3f: Bump config rev for widget preference setting changes
- This should have been bumped along with https://github.com/pfsense/pfsense/commit/071d8a610047fe1994c9fa28e339fe93f44...
03/21/2017
-
11:57 PM pfSense Packages Bug #7417: Avahi ipv6(disabled) port 5353(local link ipv6) firewall log spam until avahi is stopped for a few secs and then restarted
- Just a small edit: I just noticed that the spam started again. My guess is its some device on my lan, I will turn off...
-
11:02 PM pfSense Packages Bug #7417 (Rejected): Avahi ipv6(disabled) port 5353(local link ipv6) firewall log spam until avahi is stopped for a few secs and then restarted
- Hi,
I have ipv6 disabled and have not changed anything major changed on my network that has ipv6 enabled. But when ... - 06:01 PM Revision 35481239: System Info Widget enable All button when disable firmware check is set
- If system firmware disablecheck is set, then the click event for the filter "All" button is also not included in the ...
- 05:57 PM Revision a61e8f95: System Info Widget enable All button when disable firmware check is set
- If system firmware disablecheck is set, then the click event for the filter "All" button is also not included in the ...
- 05:43 PM Revision 6a0e66bb: Merge pull request #3664 from phil-davis/gw-widget-RELENG_2_3_3
- 05:30 PM Revision 57a015f9: Fix #7317 Widget Filter All button gateways widget RELENG_2_3
-
05:29 PM Revision 50418f97: Reduce numeric precision in gateways widget to single decimal place (Feature #6841)
- 05:28 PM Revision f3ee7e05: Further internationalization
- 05:28 PM Revision 31a6c8eb: Add missing internationalization
- 05:26 PM Revision 9fcd168b: Revise gateway widget config form
- 05:25 PM Revision 6c067722: Allow hiding of gateways in Gateways Widget
- Sometimes there are gateways that I do not care about, so it is handy to
be able to save some space on the dashboard ... - 05:11 PM Revision 493bdd35: Merge pull request #3663 from doktornotor/patch-7
-
04:48 PM Revision 954de84f: Add reason to write_config() call
-
04:47 PM Revision 2fbc1083: Add reason to write_config() call
-
04:45 PM Revision f832bfe0: Add reason to write_config() call
-
04:44 PM Revision 1c433611: Add reason to write_config() call
-
04:43 PM Revision d3f7f5d5: Add reason to write_config() call
-
04:42 PM Revision 1f372cf0: Add reason to write_config() call
-
04:41 PM Revision d398221a: Add reason to write_config() call
-
04:37 PM Revision 129f3e80: Add reason to write_config() calls
-
04:36 PM Revision 758281f0: Add reason to write_config() calls
-
04:34 PM Revision c90dcce1: Add reason to write_config() calls
-
04:32 PM Revision 2bee7c02: Add reason to write_config() call
-
04:31 PM Revision 3b99e916: Add reason to write_config() call
-
04:29 PM Revision fb1c4986: Add reason to write_config() call
-
04:26 PM Revision 7120557e: Add reason to write_config() calls
-
04:23 PM Revision fbaa7b66: Add reason to write_config() call
-
04:20 PM Revision 68eaa19f: Add reason to write_config() calls
- 02:35 PM Revision 361cb016: Merge pull request #3662 from phil-davis/widget-preferences-upgrade
- 02:34 PM Revision c081000f: Merge pull request #3661 from phil-davis/gw-widget-RELENG_2_3
- 02:34 PM Revision bdaba948: Merge pull request #3660 from phil-davis/patch-5
- 12:35 PM Revision 071d8a61: Upgrade widget settings for multiple copies of widgets
-
12:06 PM Revision d7f9b606: Update translation files
-
11:57 AM Revision 9f1039c2: Regenerate pot
-
10:56 AM Bug #4287: Wrong display for ppp in Interfaces page
- Merged.
-
10:56 AM Bug #6890: PPP service name error
- Merged.
-
10:55 AM Bug #7399: getserviceproviders.php - lack of sanity checking in foreach()
- Merged.
-
10:44 AM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
- This affects both GRE over IPSEC transport and IPSEC tunnel mode carrying a GRE
All traffic exiting the GRE tunnel... - 09:36 AM Revision c8763391: Fix #7317 Widget Filter All button gateways widget RELENG_2_3
-
09:27 AM Revision fdacd72b: Reduce numeric precision in gateways widget to single decimal place (Feature #6841)
- 09:25 AM Revision a3176912: Further internationalization
- 09:24 AM Revision cdfd6c9b: Add missing internationalization
- 09:22 AM Revision faa6d21c: Revise gateway widget config form
-
09:13 AM Feature #7416 (Needs Patch): DHCPv4 client does not support ``supersede`` statement for option 54
- Changes to FreeBSD should first be submitted upstream to FreeBSD.
-
08:55 AM Feature #7416 (Closed): DHCPv4 client does not support ``supersede`` statement for option 54
- The German cable internet provider Unitymedia uses DHCP relays which only answer to broadcasts. Dhclient renews WAN l...
- 08:58 AM Revision f3738015: Allow hiding of gateways in Gateways Widget
- Sometimes there are gateways that I do not care about, so it is handy to
be able to save some space on the dashboard ... -
08:58 AM Bug #7402: Inconsistent use of htmlentities validation checks
- https://github.com/pfsense/pfsense/commit/11800cffd5bd0731596324cd4d26f829bf198174 allows users to put stuff like "&"...
-
08:42 AM Bug #7415 (Resolved): favicon is not correctly implemented
- favicon is implemented as a favicon.ico in the root of the webserver. This is one of the 2 possible methodes and favo...
- 03:22 AM Revision 27d9b6dc: Remove siproxd from globals
- It was accidentally put back by a dodgy merge that missed the commit that removed this line.
03/20/2017
-
10:10 PM Feature #7318: Dashboard widget filters - provide a "None" option
- Above PRs 3652 and 3653 have been merged to master.
- 07:34 PM Revision c6481bdb: Merge pull request #3652 from phil-davis/allow-empty-widgets
- 07:34 PM Revision b3ae18e1: Merge pull request #3653 from phil-davis/widget-filter-none2
- 07:33 PM Revision c3695685: Merge pull request #3658 from phil-davis/multiple-copies-of-widgets-1
- 06:36 PM Revision 9f48e720: Integrate new interfaces widget AJAX
- 05:25 PM Revision 65ff7b82: Merge branch 'master' into multiple-copies-of-widgets-1
- 05:16 PM Revision 6784c0a1: Merge branch 'master' into widget-filter-none2
- 05:13 PM Revision 6432cb56: Merge branch 'master' into allow-empty-widgets
- 04:33 PM Revision 04b80934: Merge pull request #3639 from doktornotor/patch-26
- 04:32 PM Revision ac314828: Merge pull request #3642 from phil-davis/icmp-type-skip-redmine-7372
- 04:30 PM Revision 0cc9d499: Merge pull request #3644 from doktornotor/patch-27
- 04:24 PM Revision 11800cff: Merge pull request #3650 from phil-davis/nat-description
-
02:30 PM pfSense Packages Feature #7414 (New): snort needs automated refresh on ip change
- if pppoe ip changes snort needs refreshed to deal with that ip change would be nice if it happened automatically
-
02:09 PM pfSense Packages Todo #7411: LADVD Devices not wide enough
- Andy Kniveton wrote:
> The output is when run from a shell is fine , but the output is cut off via the web gui in th... -
06:07 AM pfSense Packages Todo #7411 (New): LADVD Devices not wide enough
- The output is when run from a shell is fine , but the output is cut off via the web gui in the top section :-
+GUI... - 02:00 PM Revision 12507f35: Merge pull request #3657 from phil-davis/traffic-graph-widget-filter-none-button
- 02:00 PM Revision 84eb285c: Merge pull request #3656 from phil-davis/traffic-graph-widget-filter-handle-none-to-display
- 01:59 PM Revision 26bb4faf: Merge pull request #3655 from phil-davis/traffic-graph-widget-filter-checkboxes
- 01:53 PM Revision 4c4e7f83: Merge pull request #3649 from doktornotor/patch-31
- 01:53 PM Revision 0d49c912: Merge pull request #3648 from doktornotor/patch-30
- 01:52 PM Revision 44baf803: Merge pull request #3645 from phil-davis/patch-5
- 01:48 PM Revision 9302ff3f: Merge pull request #3643 from phil-davis/disable-alias-popup-in-rules-7381
- 01:41 PM Revision e88ba742: Merge pull request #3634 from doktornotor/patch-23
- 01:40 PM Revision 7dcf0f78: Merge pull request #3633 from doktornotor/patch-22
- 01:37 PM Revision 7452333f: Merge pull request #3563 from NOYB/GitSync_-_Remove_Personalizations
- 01:36 PM Revision 6a3d28f6: Merge pull request #3605 from doktornotor/patch-7
- 01:34 PM Revision 7879c382: Merge pull request #3610 from stilez/patch-57
- 01:32 PM Revision a0259536: Merge pull request #3628 from doktornotor/patch-17
-
01:31 PM Bug #7413 (Resolved): status_dhcpv6_leases.php: Some DHCPv6 leases are not displayed in the GUI
- On status_dhcpv6_leases.php, only about half the leases in my /var/dhcpd/var/db/dhcpd6.leases file are displayed in t...
- 01:31 PM Revision c6ddf837: Merge pull request #3630 from doktornotor/patch-19
- 01:30 PM Revision d07d7ba6: Merge pull request #3632 from doktornotor/patch-21
- 01:28 PM Revision f6585c8a: Merge pull request #3594 from doktornotor/patch-13
- 01:26 PM Revision e471eaaf: Merge pull request #3529 from Chrisc-c-c/Fix-List-Sort-Order
-
12:25 PM Bug #7412 (Resolved): rtsold will not run on VLAN interfaces
- A VLAN interface for a WAN will not pull an IPv6 address via DHCPv6 with a default configuration.
In a default con... -
11:50 AM Revision 95319648: Revert "Lead users with Stable repo set to 2.3.3-RELEASE"
- This reverts commit aa5f397a16e2184d48c7c9cf32580caef735c7b6.
-
11:40 AM Bug #7372 (Feedback): Cannot filter ICMP Type SKIP
- Applied in changeset commit:bea1884125fdd9d8ef58afd97f53516b61adaf29.
- 07:08 AM Revision 0172a197: Redmine 7182 Allow multiple copies of widgets on dashboard
-
06:36 AM Feature #7410: IPSEC multiple dynamic IP remote clients
- If it's possible, it will take some time/thought about how best to handle.
-
01:41 AM Feature #7410 (Closed): IPSEC multiple dynamic IP remote clients
- We are actually running version 2.3.2 using mainly pfsense as a IPSEC VPN server for multiple remote locations.
Remo... -
03:30 AM Bug #4723: Can't forward UDP fragmented packets with scrubbing enabled.
- Luiz Otavio O Souza wrote:
> Richard, which pfSense version are you running ?
Latest 2.3.3_1
03/19/2017
-
10:46 PM Bug #7402: Inconsistent use of htmlentities validation checks
- How about the use of filter_var: http://php.net/manual/en/filter.filters.php
filter_var($value, FILTER_SANIT... -
10:41 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- I think my bug is related too.
https://redmine.pfsense.org/issues/7409 -
09:23 PM Bug #7409: Packets originating from the firewall itself do not enter the proper queue.
- I just posted on the forum now but I believe the rule I am using is sound. I know just because I said I've been usin...
-
09:10 PM Bug #7409 (Rejected): Packets originating from the firewall itself do not enter the proper queue.
- Please post on the forum for discussion. Shaping happens when a packet exits an interface, odds are your floating rul...
-
08:58 PM Bug #7409 (Rejected): Packets originating from the firewall itself do not enter the proper queue.
- I have a 25/10 DSL connection and for well over a year I've been able to setup queues successfully for regular intern...
-
08:16 PM Feature #7406: Ability to clear all dhcp leases at once
- ml 35 wrote:
> Under Status - DHCP Leases I can clear all leases one by one.
> It would be useful if I had a button... -
10:46 AM pfSense Packages Bug #7310: Packages pre-deinstall script removes temporary files used by pkg
- This is not a Snort bug. Beyond already linked #7229, there's another example of pkg being braindead junk here: https...
- 06:51 AM Revision c3b96e93: Redmine #7318 None button for Traffic Graphs Widget filter
- 06:36 AM Revision 575b5c1c: Traffic Graphs Widget handle no items selected for display
- 06:23 AM Revision 6e8777f2: Upgrade code to convert old Traffic Graphs Widget settings
- 06:20 AM Revision 41c9f57e: Convert Traffic Graph Widget to use checkboxes for display selection
- 06:01 AM Revision 605ce9be: Traffic Graphs Widget whitespace
- 05:36 AM Revision fba53b43: Redmine #7318 None button for widget filters
-
04:45 AM Feature #7122: Add filters to various dashboard widgets
- Phillip Davis wrote:
> With the delay in reviewing/merging community-contributed PRs, I have split PR 3602 up into t... -
04:23 AM Feature #7122: Add filters to various dashboard widgets
- With the delay in reviewing/merging community-contributed PRs, I have split PR 3602 up into the various parts that ar...
-
03:58 AM Feature #7318: Dashboard widget filters - provide a "None" option
- Revised code in:
https://github.com/pfsense/pfsense/pull/3652 Handle widgets having no items selected for display
h... - 03:08 AM Revision 405dfaad: Handle widgets having no items selected for display
03/18/2017
-
10:29 PM Feature #7193: NTP process PGRMF
- I also have a Garmin 18x LVC and I've been trying to replicate your setup but I'm not really sure why you needed a fu...
-
02:55 PM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- https://github.com/pfsense/FreeBSD-ports/pull/334
Should be pretty much complete now.
03/17/2017
-
05:48 PM Bug #7380: WAN DHCP Gateway Outside of Subnet Causing Route Issues
- Thanks Jim. Apologies for not linking the diff the first time around.
I've signed the CLA and submitted a pull re... -
03:23 PM Feature #7408 (Duplicate): IGMPPROXY quickleave
-
03:10 PM Feature #7408: IGMPPROXY quickleave
- Duplicate of #3862
-
03:02 PM Feature #7408 (Duplicate): IGMPPROXY quickleave
- Dear pfsense-team,
Can you add the possibility to activate or deactive the quickleave option of the igmpproxy?
ht... -
02:27 PM Feature #7383 (Feedback): system_certmanager.php?act=new: Add new select option to sign a CSR
-
01:08 PM Bug #4723: Can't forward UDP fragmented packets with scrubbing enabled.
- Richard Gate wrote:
> Hi, I've hit this problem with UDP packets for RADIUS authentication when using a pfSense IPSe... -
11:46 AM Bug #4723: Can't forward UDP fragmented packets with scrubbing enabled.
- Hi, I've hit this problem with UDP packets for RADIUS authentication when using a pfSense IPSec tunnel from an AP doi...
-
09:12 AM pfSense Packages Bug #7403: Captive Portal + freeradius2 + MySQL problems with German Umlaut
- https://redmine.pfsense.org/issues/4497
-
09:08 AM pfSense Packages Bug #7403: Captive Portal + freeradius2 + MySQL problems with German Umlaut
- http://lists.freeradius.org/pipermail/freeradius-users/2005-November/004818.html
-
08:36 AM pfSense Packages Bug #7403: Captive Portal + freeradius2 + MySQL problems with German Umlaut
- In the log files it seems all correct:
Mar 17 13:41:05 radiusd 74676 Login incorrect: [guest/müller] (from clie... -
05:02 AM pfSense Packages Bug #7403 (New): Captive Portal + freeradius2 + MySQL problems with German Umlaut
- We have a setup using a Captive Portal and freeradius2 package + MySQL as database for authentication.
The freerad... -
07:40 AM Bug #7396 (Resolved): Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Great, thanks for testing!
-
07:35 AM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Jim Pingle wrote:
> OK, try the later change here on the ticket now ( commit:31b1f1e1 )
This is all good now ! Th... -
06:59 AM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- OK, try the later change here on the ticket now ( commit:31b1f1e1 )
-
07:30 AM Revision 24be73af: review point fixed
-
07:27 AM Revision cfb99f1c: typo
-
07:15 AM Feature #7407 (Rejected): Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- You can't static map addresses inside the pool, so this would just confuse users.
-
07:14 AM Feature #7407 (Rejected): Ability to preserve currently allocated IP address when adding static entries from Status -> DHCP Leases
- I go to "Status -> DHCP Leases"
I click the "+" sign to "Add static mapping" under the "Actions" column
The page ... -
06:04 AM Feature #7406 (Resolved): Ability to clear all dhcp leases at once
- Under Status - DHCP Leases I can clear all leases one by one.
It would be useful if I had a button to also clear all... -
05:57 AM Feature #7405 (New): Ability to add dhcp host reservations from "Diagnostics -> ARP table"
- It can be very useful when you introduce pfsense into a lan where there are lots of static ip addresses.
This way ... - 05:41 AM Revision f95d6bdc: No need to check for HTML in NAT 1to1 or NAT Out descr
- 05:30 AM Revision 58e8a4fd: No need to check for HTML in NAT descr
-
05:23 AM Feature #7392: Please allow syncing authorized_keys into config.xml
- What's exactly difficult about CTRL+C, CTRL+V?
-
04:42 AM Feature #7392: Please allow syncing authorized_keys into config.xml
- ok, can you instead at least add an option to not clear the authorized_keys at reboot? it is really difficult to have...
-
05:22 AM pfSense Packages Bug #7404 (Not a Bug): OpenVPN Client Export with custom DynDNS not working
- When using the OpenVPN Client Export Utility with a custom DynDNS the Host name resolution combobox-value is empty.
... -
04:14 AM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- Forgot to say: Indeed, *Pass* rule will place packets into related queue but it will break traffic.
-
12:56 AM Bug #7402 (New): Inconsistent use of htmlentities validation checks
- Forum: https://forum.pfsense.org/index.php?topic=127350.0
Various pages have a loop through the input parameters (... -
12:23 AM Feature #4632: Support for Multipath TCP (MPTCP)
- when it's in FreeBSD.
03/16/2017
-
10:23 PM Feature #4632: Support for Multipath TCP (MPTCP)
- Not sure where this is in development but this could really help me
so quick googling
http://blog.multipath-tcp.... -
08:46 PM Revision 0d40b2cb: Don't process empty anchors as it could lead to flushing more than intended when cleaning up after relayd. Fixes #7396
-
08:46 PM Revision 3480105f: Don't process empty anchors as it could lead to flushing more than intended when cleaning up after relayd. Fixes #7396
-
08:44 PM Revision 31b1f1e1: Don't process empty anchors as it could lead to flushing more than intended when cleaning up after relayd. Fixes #7396
-
06:05 PM Revision 32e75b43: Run custom deinstall commands during the deinstall phase instead of post-deinstall, otherwise they will never get run. Fixes #7401
-
06:05 PM Revision 54f87601: Run custom deinstall commands during the deinstall phase instead of post-deinstall, otherwise they will never get run. Fixes #7401
-
06:04 PM Revision 59fada5c: Run custom deinstall commands during the deinstall phase instead of post-deinstall, otherwise they will never get run. Fixes #7401
-
03:48 PM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Note that with your patch, tables are not deleted like before. Only our alias table "Trusted" is emptied. Without you...
-
03:44 PM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- I couldn't reproduce that but it gave me another idea of where to look for problems. I'll have another fix pushed her...
-
03:29 PM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Jim Pingle wrote:
> Nothing else should be required but the changes made in the patch.
>
> I can reproduce the pr... -
02:10 PM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Nothing else should be required but the changes made in the patch.
I can reproduce the problem without that fix ap... -
01:54 PM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Jim Pingle wrote:
> That is not the usual way to operate relayd, however. Normally you would not need to stop/start ... -
01:20 PM Bug #7401 (Feedback): custom_php_deinstall_command isn't being run during pkg post-deinstall because info.xml has already been removed by that step.
- Applied in changeset commit:59fada5c1fb57f2896caae895c70dd10ef5d02da.
-
10:58 AM Bug #7401 (Resolved): custom_php_deinstall_command isn't being run during pkg post-deinstall because info.xml has already been removed by that step.
- A bit of a chicken/egg problem here:
The custom_php_deinstall_command function from a package is supposed to be ru... -
11:48 AM Revision c7471240: replace setHelp() on section with staticText() and textual change requested
-
11:46 AM Revision ce348731: Make sure that array exists before using foreach() (Bug #7399)
-
11:45 AM Bug #5993 (Feedback): dhcp6c not started until an RA received
-
11:43 AM Bug #5993: dhcp6c not started until an RA received
- This issue can be closed. It was fixed in 2.3.3 and 2.4.
-
11:34 AM Revision 6485ffb9: Textual change as requested
-
11:32 AM Revision b9304b9a: Textual changes requested
-
11:12 AM Revision ae18c711: Remove input validation since there is no user input here.
-
10:59 AM pfSense Packages Bug #7319 (Rejected): Tinc uninstall leaves an entry in the firewall rules tab.
- The code in the package is OK. Real problem is here: #7401
-
10:22 AM Bug #7400 (Assigned): Traffic Graphs show bad data on 2.3.3_1
-
07:28 AM Bug #7400 (Assigned): Traffic Graphs show bad data on 2.3.3_1
- Hi!
i updated pfsense to version 2.3.3_1
Now, the traffic graph are showing wrong data. On Status/Traffic Graph... -
10:20 AM Bug #7378 (Feedback): pfctl: ix0: driver does not support altq
- Fix committed to RELENG_2_4, RELENG_2_3 and RELENG_2_3_3: https://github.com/pfsense/FreeBSD-src/commit/f2504b01d55b5...
-
09:18 AM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
- Confirmed still not working on 2.4
-
09:14 AM Bug #7145 (Feedback): rc.newwanipv6 running in all cases, even for a renew
-
09:13 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- This is fixed in 2.4. DHCP6C client modified to give REASONS and only call the update script when needed.
-
04:17 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
- Having issues with this in 2.3.3
Every 30 minutes, my IPv6 address is refreshed, causing rc.newwanipv6 to fire on al... -
09:12 AM Todo #6944 (Closed): dhcp6c releasing allocation
-
09:12 AM Bug #7185 (Feedback): DHCP6c SIGTERM, SIGKILL
-
09:10 AM Bug #7185: DHCP6c SIGTERM, SIGKILL
- Close this Issue. DHCP6C has been fixed.
-
09:11 AM pfSense Packages Bug #7390 (Feedback): SquidGuard
- Fix pushed. Will show up shortly in pfSense-pkg-squidGuard version 1.16.1.
-
08:54 AM Bug #7330 (Resolved): IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Fixed by PR
-
03:41 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Fixed - Close this one.
-
08:06 AM pfSense Packages Bug #6763: Squid ClamAv wrong redirect URL
- Solution:
when I installed pfSense with all packages I use, I gave it a domain name.
After some while, I changed th... -
07:33 AM pfSense Packages Bug #7263 (Feedback): FreeRADIUS - complete lack of input validation
-
04:09 AM pfSense Packages Bug #7263: FreeRADIUS - complete lack of input validation
- Merged.
-
06:46 AM Bug #7399: getserviceproviders.php - lack of sanity checking in foreach()
- https://github.com/pfsense/pfsense/pull/3649
-
06:45 AM Bug #7399 (Resolved): getserviceproviders.php - lack of sanity checking in foreach()
- To reproduce:
- Go to Interfaces - Assign - PPPs - Add
- Choose PPP as Like Type
- Select country like Åland Isl... -
06:31 AM Feature #7122: Add filters to various dashboard widgets
- Once the PR has been reviewed (and hopefully merged) the new checkbox format (like other widgets) will be available. ...
-
05:13 AM Feature #7122: Add filters to various dashboard widgets
- James Snell wrote:
> Build 2.4.0.b.20170314.2306 showing a multi-select box for interfaces, was expecting checkboxes... -
04:54 AM Feature #7122: Add filters to various dashboard widgets
- Build 2.4.0.b.20170314.2306 showing a multi-select box for interfaces, was expecting checkboxes.
Cropped screensho... -
06:02 AM Bug #6890: PPP service name error
- Yeah, the input validation makes zero sense, there's no user input there in the first place.
https://github.com/pf... -
05:29 AM Bug #6890: PPP service name error
- Sorry for third answer, just found the service name check
/usr/local/www/interfaces_ppps_edit.php
Line 276
if ... -
05:27 AM Bug #6890: PPP service name error
- Problem is in /usr/local/share/mobile-broadband-provider-info/serviceproviders.xml
Line 3150 contains (),-
<name>... -
05:05 AM Bug #6890: PPP service name error
- Having the same problem. cannot add any ppp connection because it's saying "The service name contains invalid charact...
-
02:13 AM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- I pushed a commit for this (not a PR yet because I think there's more to be done) but in case anyone wants to use thi...
-
01:15 AM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- I confirm this bug. In pfSense 2.4 no matter what you with *Match* floating rules do all traffic is being pushed into...
03/15/2017
-
11:49 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- I too am seeing this bug. Fresh setup of traffic shaping using the wizard simply didn't work. All traffic was being p...
-
07:02 PM Revision 9433cda2: Perform a filter reload after starting relayd so it does not leave the firewall without pf tables. Fixes #7396
-
07:02 PM Revision a8014f46: Perform a filter reload after starting relayd so it does not leave the firewall without pf tables. Fixes #7396
-
07:01 PM Revision 803ca43a: Perform a filter reload after starting relayd so it does not leave the firewall without pf tables. Fixes #7396
-
06:07 PM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- Kill Bill wrote:
> And FYI regarding the OpenVPN: https://redmine.pfsense.org/issues/4331 (IOW, it will never be aut... -
03:30 PM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- And FYI regarding the OpenVPN: https://redmine.pfsense.org/issues/4331 (IOW, it will never be auto-added to localnet ...
-
09:39 AM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- No, it's not, noone touched the relevant code for years.
https://github.com/pfsense/FreeBSD-ports/blame/devel/www... -
09:35 AM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- Kill Bill wrote:
> Look, you need either non-empty local interface, or fill in Allowed Subnets on the ACLs tab. Plea... -
09:28 AM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- Look, you need either non-empty local interface, or fill in Allowed Subnets on the ACLs tab. Please, use forums for d...
-
09:25 AM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- Kill Bill wrote:
> Kindly tick "Allow local network(s) on interface(s)" if you want such ACL.
This is already tic... -
09:23 AM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- Additional information: The pfSense box is running OpenVPN so this may be a problem with this version of squid not be...
-
09:23 AM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
- Kindly tick "Allow local network(s) on interface(s)" if you want such ACL.
-
08:00 AM pfSense Packages Bug #7391 (Not a Bug): 0.4.36_1 localnet ACL missing
- Version 0.4.36_1 of Squid on pfSense 2.3.3 does not provide the "localnet" acl anymore in /usr/local/etc/squid/squid....
-
06:04 PM Feature #7398 (Assigned): Show average value of bandwidth in/out on Dashboard trafic graph
-
05:33 PM Feature #7398 (Assigned): Show average value of bandwidth in/out on Dashboard trafic graph
- Show like the image in attach.
- 06:00 PM Revision 4594038a: Don't display the "export key" icon if there is no key to export. e.g. If hte cert was created from a pasted-in CSR
-
05:01 PM Bug #6993: OpenVPN status error during CARP state transition
- James Webb wrote:
> Running two devices in HA and have stacked one IP Alias onto the CARP IP. If I bind a OpenVPN se... - 04:51 PM Revision 258e3b02: Base64 encode private key
- 04:30 PM Revision 55047259: Add the ability to save a private key with the newly signed cert
- 03:49 PM Revision d520da31: Revised certificate selectors to use refid rather than index
-
03:45 PM pfSense Packages Bug #7390 (Confirmed): SquidGuard
-
06:44 AM pfSense Packages Bug #7390 (Resolved): SquidGuard
- When a @'@ caracter is inserted in a comment, the "filter config" button in "Log" tab no longer works.
Javascript ca... -
03:17 PM Bug #7397 (Resolved): Backport factory.sh changes to 2.3
- Copy recently added factory.sh functionality to 2.3
- 03:08 PM Revision d6107e1a: Deleted CSR key textarea - No longer required
-
02:18 PM Revision 92005dd1: Merge pull request #3515 from marjohn56/master
-
02:18 PM Revision de79e1c5: Merge pull request #3583 from phil-davis/alias-hover-text
-
02:17 PM Revision 08f92b9f: Merge pull request #3457 from stilez/patch-38
- 02:14 PM Revision b078cd59: Revised error handling for CSR signing
-
02:10 PM Bug #7396 (Feedback): Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Applied in changeset commit:803ca43a02863d2086f4affd8c1048c598475bf9.
-
02:03 PM Bug #7396: Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- To me, I have a fix pushed.
-
01:54 PM Bug #7396 (Confirmed): Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Also affects 2.4.x.
That is not the usual way to operate relayd, however. Normally you would not need to stop/star... -
01:32 PM Bug #7396 (Resolved): Stopping and then starting again the load balancer clears out system tables (Bogons, sshlockout, aliases...)
- Hi there :)
This is reproducible on a brand new 2.3.3 or 2.3.3_1 pfsense 64 bits with following simple load balanc... -
02:05 PM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- You can have multiple WANs with different gateways, yes.
You cannot have multiple WANs with the same gateway. If i... -
02:02 PM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- Jim Pingle wrote:
> Yes. And it works by chance, not by design. It's not a configuration we support.
No it works ... -
01:51 PM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- Yes. And it works by chance, not by design. It's not a configuration we support.
-
01:46 PM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- Error Jim Pingle,my Both WAN are PPPoE link in IPVPN MPLS but there are a same gateway
I have 1 link PPPoE (ADS... -
12:25 PM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- It happens to work, that doesn't make it any more valid than if it were two non-PPPoE lines on the same network, just...
-
12:23 PM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- wait I thought multi pppoe worked via your own comments and tests I just ordered a second pppoe ?
https://redmine.... -
11:54 AM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- Having two interfaces on the same network is not a feature we support, and it is not a valid configuration. The probl...
-
11:32 AM Bug #7393: Problem with static route when you have Two WAN with same Gateway
- Hello Jim Pingle,
it's not a system-level limitation because when I add static route in CLi : /root: route add 192.1... -
10:36 AM Bug #7393 (Rejected): Problem with static route when you have Two WAN with same Gateway
- Having two WANs with the same gateway is not a viable configuration. It's an operating system-level limitation, nothi...
-
10:33 AM Bug #7393 (Rejected): Problem with static route when you have Two WAN with same Gateway
- hello all,
We find a problem on pfsense Nanobsd 2.3.2
Hardware : Motherboard ALIX
we have 2 Wan interface with M... -
01:06 PM Feature #4372: dnscrypt support
- +1
-
12:54 PM Feature #6519: SSD TRIM option via GUI
- Jim Pingle wrote:
> No, it is not. The option cannot be changed while the disk is mounted.
Could you add in the ... -
11:04 AM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- Thanks, can start killing some code now. :)
-
10:38 AM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- FYI- I merged that PR, should be good to continue.
-
10:44 AM Feature #7395 (Duplicate): IPv6: Display prefix assigned by ISP
- *PROBLEM STATEMENT*
When using DHCPv6 PD on the WAN interface, there is no easy way to see what prefix the ISP assig... -
10:36 AM Bug #7394 (Resolved): firewall_aliases_edit.php: Renaming an alias after input errors fails to update references
- When renaming an alias the firewall normally checks for references in firewall/nat rules and updates the alias name w...
-
10:28 AM Feature #2358: NAT64 support
- UPVOTE!
I'd also like to voice my support for this integration
-
10:27 AM Feature #2358: NAT64 support
- Joel Whitehouse wrote:
> Would like to see support for NAT64/DNS64 in pfsense. Deployment of DNS64 outside of the g... -
10:08 AM Feature #7392 (Rejected): Please allow syncing authorized_keys into config.xml
- While I could maybe see a script made to import keys there is no way this would be automated in the way you describe....
-
10:05 AM Feature #7392 (Rejected): Please allow syncing authorized_keys into config.xml
- For me it is a bit inconvenient to copy and paste ssh keys into UI.
I am usually doing this using ssh-copy-id whic... -
09:30 AM Bug #7316 (Feedback): Fail Boostrap format port in
- Applied in changeset commit:57dd76d15c66e5cd60839fe4b376153778de8904.
-
09:29 AM Feature #7383: system_certmanager.php?act=new: Add new select option to sign a CSR
- A fix for the Openssl library error is on the way.
Select Method->Sign a Certificate Signing Request
Use the "C... -
08:54 AM Feature #7383 (Assigned): system_certmanager.php?act=new: Add new select option to sign a CSR
- I also get "openssl library returns: error:0906D06C:PEM routines:PEM_read_bio:no start line" when attempting to sign ...
-
08:52 AM Feature #7383: system_certmanager.php?act=new: Add new select option to sign a CSR
- Current Base System 2.4.0.b.20170315.0313
Option not available. What am I missing? Isn't this a later snapshot? ... -
08:27 AM Feature #7383: system_certmanager.php?act=new: Add new select option to sign a CSR
- Build 2.4.0.b.20170314.2306
The option "Sign a Certificate Signing Request" is now present.
Created a signing r... -
06:10 AM Bug #7389 (In Progress): Limiter does not work with transparent proxy
- Good morning the limiter returned to present problems, identical to the other bug already reported and resolved and r...
-
06:05 AM Bug #7345: nanobsd upgrades still fail bacause of lacking resolv.conf
- Great, thank you very much Brett!
-
05:17 AM pfSense Packages Bug #7388: Suricata does not property recognize MTU for PPPOE interfaces
- See this: https://redmine.openinfosecfoundation.org/issues/1556#note-2
-
04:01 AM Todo #7385: Sanitize PHP includes
- Up to pfSense devs. If you prefer, I can do a single PR for all the write_config() stuff, however that shouldn't rot ...
- 03:06 AM Revision d0a8de18: Spelling fix in help text
03/14/2017
-
11:02 PM Revision 915c934b: Sort the interface names.
- No functional change.
-
09:49 PM Todo #7385: Sanitize PHP includes
- @Kill Bill - there are write_config(gettext()) things mixed together with include_once() changes in these PRs.
Would... -
09:25 PM Todo #7385: Sanitize PHP includes
- Thanks for this. Given that JimP and others have a recollection that there is a reason for the seemingly odd includes...
-
05:13 PM Todo #7385: Sanitize PHP includes
- Hmmm well, I obviously left the filter.inc in places where stuff like @filter_configure()@ is being used (talking abo...
-
03:27 PM Todo #7385: Sanitize PHP includes
- I seem to recall shaper.inc being in unexpected places because running a filter reload action fails without it. But t...
-
03:21 PM Todo #7385: Sanitize PHP includes
- Assigned to Steve Beaver, but this looks like it could be a hairball.
-
04:00 AM Todo #7385: Sanitize PHP includes
- Adding some related PRs here:
- https://github.com/pfsense/pfsense/pull/3624
- https://github.com/pfsense/pfsense... -
03:39 AM Todo #7385 (New): Sanitize PHP includes
- Includes are massively wrong across the entire pfSense code.
Sort of a reminder. Please, review functions used in ... -
09:22 PM Bug #7345: nanobsd upgrades still fail bacause of lacking resolv.conf
- I also ran into this issue, which broke my ability to update my NanoBSD 2.3.2_1 box to 2.3.3_1. The box in question ...
-
09:11 PM pfSense Packages Bug #7388 (New): Suricata does not property recognize MTU for PPPOE interfaces
- Due to path MTU discovery (via ICMPv6) issues with some IPv6 TCP traffic I have to manually set MSS to 1452 in the WA...
- 08:56 PM Revision 65d735f0: Improve error detection in Openssl lib
- 06:43 PM Revision 2052d3e2: Added the ability to sign a CSR
-
06:01 PM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- I left the log message just for testing... Shouldn't be included in final code...
The function is_process_running... -
05:35 PM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- Could probably use @is_process_running()@ from util.inc instead of the @exec()@. That debug stuff should certainly be...
-
05:23 PM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- Its a 30x loop in 1 sec increments and breaks on Unbound being fully shutdown.
for ($i=1; $i <= 30; $i++) { -
05:21 PM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- note on my system it needs a lot more than one second to shutdown, probably around 10 seconds due to the over 1 milli...
-
01:49 PM Bug #7326: Unbound fails to start during rc.wanipchange when using large enough dns lists
- The issue with the way pfSense stops Unbound, is that the Unbound service takes longer to shut down when there are ma...
-
04:01 PM Feature #7383: system_certmanager.php?act=new: Add new select option to sign a CSR
- Use a build from after the time the change was made. Your build was made at 0021 hrs, the new code was added at 1300 ...
-
03:59 PM Feature #7383: system_certmanager.php?act=new: Add new select option to sign a CSR
- Current Base System 2.4.0.b.20170314.0021
Option not displayed in Cert. Manager GUI. Checked CAs, Certificates, a... -
02:16 PM Feature #7383 (Feedback): system_certmanager.php?act=new: Add new select option to sign a CSR
- Functionality has been added as requested
https://github.com/pfsense/pfsense/commit/2052d3e2ae3acf5564a460dad91966... -
03:36 PM Feature #7321: DynDNS - Add DreamHost DNS support
- Whoops... I completely missed that the second red flag "CLA Missing" was a reversal.
-
02:28 PM Feature #7321: DynDNS - Add DreamHost DNS support
- The Pull Request should show that I have already completed the CLA. Is there a separate one that I need to complete?
-
02:01 PM Feature #7321: DynDNS - Add DreamHost DNS support
- will need a signed CLA prior to integration.
-
03:34 PM Bug #7232: haproxy_pool_edit.php -- sprintf() too few arguments
- Seems like these changes should be reverted?
In webgui im seeing:... -
02:25 PM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
- Has anyone managed to test on 2.4 yet? Experiencing this issue in 2.3 latest.
-
02:19 PM Bug #7288 (Needs Patch): The field 'Distinguished name Organization' contains invalid characters
- Looks like it may be possible to use UTF-8 but it would require significant work to ensure everything functions prope...
-
02:02 PM pfSense Packages Bug #7319: Tinc uninstall leaves an entry in the firewall rules tab.
- Assigned to Pingle for tracking.
-
01:39 PM Bug #7380: WAN DHCP Gateway Outside of Subnet Causing Route Issues
Assigned to Renato for evaluation.
Actual diff is here:
https://github.com/doransmestad/pfsense/commit/d79a46...-
12:50 PM Bug #7387 (New): New Traffic Graph in dashboard resets inverted view to normal view
- New Traffic Graph in Dashboard resets inverted view to overlapping view when switching tabs between Status-Monitoring...
-
09:30 AM Bug #7386 (Resolved): IPv6 not disabled in mpd.conf w/ IPv6 GUI option set to 'disabled'
- continuing from:
https://forum.pfsense.org/index.php?topic=126849.0
When my ISP (Fairpoint) apparently added some...
03/13/2017
-
04:29 PM Revision 32c38047: Add missing includes
-
04:28 PM Revision 227f3f2d: Fix missing includes
-
04:22 PM Revision fc0f1121: Fix broken includes
-
02:22 PM Bug #7384 (Resolved): DHCPv6 doesn't merge IPv6 prefix with the input submitted in DNS servers field when using Track Interface IPv6 configuration parameter for the LAN interface.
- When using Track Interface as a IPv6 Configuration Type in the LAN interface, the DHCPv6 server doesn't merge the IA_...
-
11:34 AM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- OK, I'll figure something out and do a PR. Need https://github.com/pfsense/FreeBSD-ports/pull/308 merged first before...
-
08:20 AM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- I agree, it could/should be killed for 2.4.
Not that far out, probably a few weeks. -
05:35 AM pfSense Packages Bug #7170: FreeRADIUS built-in certificate manager defaults to MD5 (!!!), no support for SHA2
- Guys, any ETA for 2.4 release (not date, but weeks/months, that sort of thing)? Would be a good opportunity to get ri...
- 11:31 AM Revision fcf29c87: Fix comment typo in firewall_rules.php
- while I notice it
-
10:58 AM Revision d2a919c8: Visually separate the package manager legend area (Bug #7203)
-
08:51 AM Feature #7383 (Closed): system_certmanager.php?act=new: Add new select option to sign a CSR
- Certificate Manager -> Certificates -> Add New: There would be a new select option 'Sign a Certificate Signing Reques...
- 08:26 AM Revision d9058974: Redmine #7381 Disable detail in alias popup
-
06:26 AM Feature #7381: Option to disable alias popups in rules
- Well yes, it's already limited to 10K entries (they are all displayed if you have the patience to scroll down...)
... -
06:20 AM Feature #7381: Option to disable alias popups in rules
- In the 2.2.x days we only let the popup display 30 or so entries which seems saner than making an option. A huge alia...
-
03:32 AM Feature #7381: Option to disable alias popups in rules
- It seems a reasonable thing to me (for those running on crud hardware at either server or client end) and is easy to ...
-
03:19 AM Feature #7381: Option to disable alias popups in rules
- Huh, what kind of horrible HW/browser are you using? Takes about a second on a 10 years old laptop with an alias havi...
-
06:03 AM Bug #7203: pkg_mgr_installed.php - visually separate the legend
- RELENG_2_3 backport - https://github.com/pfsense/pfsense/pull/3644
-
04:11 AM Bug #7382 (Closed): DNS Forwarder does not resolve DNS names on first boot
- "DNS Forwarder (dnsmasq)" service is running at first boot but i am get an error : "dhcpleases Could not deliver sign...
03/12/2017
-
11:24 PM Revision 7d316581: Update interfaces.inc
- Not defined pid file on starting choparp. The pfSense may not kill the program to reconfiguration.
-
10:25 PM Revision 72c34055: Fix Vars for Interface naming
-
08:41 PM Feature #7381 (Resolved): Option to disable alias popups in rules
- An option to disable the popup of the aliases in the rules section would be very handy, hovering over a 20k+ list by ...
-
03:15 PM Bug #7379: Virtual IPs/Proxy ARP: Not defined pid file on starting choparp.
- Yeah, it'd help to determine what's the actual bug before attempting to fix it.
P.S. Please, use GitHub for patche... -
03:05 PM Bug #7379: Virtual IPs/Proxy ARP: Not defined pid file on starting choparp.
- New Bug after applying the patch:
There are several PoxyARP VIPs. Open one of them to edit and change the type to an... -
12:44 PM Bug #7379 (Resolved): Virtual IPs/Proxy ARP: Not defined pid file on starting choparp.
- Not defined pid file on starting choparp. The pfSense may not kill the program to reconfiguration.
@--- interfaces... -
01:47 PM Bug #7380 (Resolved): WAN DHCP Gateway Outside of Subnet Causing Route Issues
- When deploying PFSense in OVH's public cloud, they assign a IPv4 address via DHCP in a /32 subnet. Naturally, with s...
-
01:30 PM Bug #6344: Firewall rules being deleted when separators are added
- I'm no longer seeing this behavior. This issue can be closed.
-
01:23 PM Bug #7249: firewall_rules.php & firewall_nat.php: Replaces underscores with spaces in aliase names
- NOYB NOYB wrote:
> So what is the actual issue that replacing the underscore with space in the displaying of the rul... -
11:03 AM Revision 07c304a5: WAN flap loss of IPv6
- Some hardware is taking too long to set ACCEPT_RTADV on the Interface,
this results in RTSOLD exiting and this not se... - 07:21 AM Revision bea18841: Fix #7372 Cannot filter ICMP Type SKIP
-
06:03 AM Bug #6732: interfaces_ppps_edit.php: L2TP and PPTP WAN-type interface editing has broken input validation
- Can you give some detail of what you are entering. I can't (easily) reproduce it, so maybe there is some unusual/spec...
-
05:42 AM Bug #6732: interfaces_ppps_edit.php: L2TP and PPTP WAN-type interface editing has broken input validation
- It seems that it only works partially.
I just tried to paly around with the @interfaces_ppps_edit.php@-Settings on v... -
03:27 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- It's my thread :)
And yeah, PR https://github.com/pfsense/pfsense/pull/3515 will resolve this one...
Thanks again! -
03:13 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Michael Zieher wrote:
> Greg M wrote:
> > Hi!
> >
> > Very similar issue I think it`s connected: https://forum.p...
03/11/2017
-
03:14 PM Bug #5999: IPv6 IP Alias prevents Track Interface from working with DHCPv6 and RA
- Fixing this would help with the problems discussed in this forum post: https://forum.pfsense.org/index.php?topic=1269...
-
02:50 PM Bug #6233: Bootloop with Alix after 2.3 upgrade
- Norm Sevilla wrote:
> I can confirm the issue on my setup as well, a Negate m1n1wall with pfSense 2.3.3_1 and a Hifn... -
12:38 PM Bug #6233: Bootloop with Alix after 2.3 upgrade
- I can confirm the issue on my setup as well, a Negate m1n1wall with pfSense 2.3.3_1 and a Hifn 7955 crypto accelerato...
-
02:12 PM Bug #6138 (Resolved): Long hostnames overlap the "time" title in the Monitoring graphs
- Thanks, Malcolm. I'll mark this resolved.
-
08:56 AM Bug #6138: Long hostnames overlap the "time" title in the Monitoring graphs
- I've got a reasonably long fqdn hostname (32 characters) and it looks OK now and doesn't overlap.
-
12:59 PM Bug #7378 (Resolved): pfctl: ix0: driver does not support altq
- Motherboard: Supermicro X10SDV-4C-TLN2F
using the onboard NIC: 2 RJ45 10GBase-T ports
2.3.3-RELEASE-p1 (amd64)
Fr... -
11:30 AM Feature #3697: New backup/restore area: Certificates
- Ah yeah, blindly replacing a config section is indeed absolutely no problem... Who cares that the GUI, VPNs and other...
-
11:14 AM Feature #3697: New backup/restore area: Certificates
- OPNsense implemented it and it works like a charm. Few days ago I was prepping a replacement box and I though I would...
-
10:58 AM Feature #3697: New backup/restore area: Certificates
- Dmitriy K wrote:
> It would be nice if we could backup / restore all certificates only.
I don't think so. Imagine... -
07:16 AM Bug #7334 (Assigned): SG-1000 Update failure
- The progress bar issue is another matter. We are waiting for a fix from upstream.
-
01:59 AM pfSense Packages Feature #7377 (Resolved): ACME Certificate DNS-Digitalocean Verification Method
- It would be great to have a DNS verification method for DigitalOcean DNS API that is now natively in GitHub for acme....
03/10/2017
-
11:51 PM Bug #7334: SG-1000 Update failure
- Renato Botelho wrote:
> Fixed on pfSense-upgrade 0.18
I'm still seeing 'failures' part way through the script. S... -
07:03 PM pfSense Packages Feature #7376 (Closed): ACME Package - Please add support Namecheap DNS service
- Please add DNS support in the ACME Package for the Namecheap DNS service provider.
Namecheap API documentation
h... -
06:13 PM Bug #7375 (Assigned): User with restricted privileges can still delete all monitoring/graphing data
-
05:47 PM Bug #7375 (Resolved): User with restricted privileges can still delete all monitoring/graphing data
- I attempted to create a "graph-viewing-only" user account that I could hand out to non-admin users so that they could...
-
11:59 AM Bug #6186: race conditions in service startup
- I've run into this issue as well on my pfSense machines that have ovpn client interfaces set as the outgoing interfac...
-
09:46 AM pfSense Packages Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
- You can take it whereever you want. There's no reference to Snort in the config [1], and no useful information here.
... -
09:43 AM pfSense Packages Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
- I'll take it up with Netgate support if this is the attitude I get here.
Easy to be a dick when you don't use your r... -
09:42 AM pfSense Packages Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
- I'll track this and contact Bill Meeks.
"Kill Bill", please find a way to interact with a more professional tone.... -
09:33 AM pfSense Packages Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
- Like, read what? There is zero information here to determine anything and it has nothing to do with the PBI junk on <...
-
09:16 AM pfSense Packages Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
- Maybe you can take a little different attitude and take time to read what I wrote since I took the time to search the...
-
08:50 AM pfSense Packages Bug #7374: Barnyard2 package has incomplete install when installed as Suricata depedency
- Randy Terbush wrote:
> This seems to be possible duplicate of #3756
No, absolutely not, plus completely unclear ... -
08:12 AM pfSense Packages Bug #7374 (Closed): Barnyard2 package has incomplete install when installed as Suricata depedency
- This seems to be possible duplicate of #3756 which was marked resolved 2 years ago, but still appears to be an issue....
-
07:59 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Hi!
I honestly believe that this one deservers a little higher priority than normal... -
06:45 AM Feature #4606: PKI : CA signing external CSR
- +1 for that rather basic feature!
it should be easy to implement, there is already a similar package, that handles... -
02:40 AM Revision c6c55ee7: Add unknown service for Bug #4287
-
02:37 AM Revision 2e4f5048: Do not report misleading 3G service status (Bug #4287)
- If the ^SIMST or ^SRVST info was never received from the device, report missing/unknown states instead.
-
02:04 AM Revision 8fbe2ea4: status_interfaces.php - fix includes
-
12:54 AM Revision cd1ae328: Adds option to skip adding IPv6 entries in /etc/hosts for LANs
- If a LAN interface's IPv6 configuration is set to Track, and the tracked interface loses connectivity, it can cause c...
-
12:18 AM Revision 5ec2eb9b: Add QinQ interfaces to the list of interfaces not to check (Bug #4669)
03/09/2017
-
08:40 PM Bug #4287: Wrong display for ppp in Interfaces page
- https://github.com/pfsense/pfsense/pull/3639
Cannot see what else could be done here. If it's not reported, it's n... -
07:09 PM Revision 0f1a5f2c: Add reason to write_config() call
-
07:07 PM Revision b290e10e: Add reason to write_config() call
-
06:58 PM Revision 8fcbf879: Update system_update_settings.php
-
06:53 PM Revision 9df2adfc: Add reason to write_config() call
-
06:52 PM Revision a29f2ee6: Add reason to write_config() call
-
06:48 PM Revision 4f36a53c: Add reason to write_config() calls
-
06:41 PM Revision 149816cb: Add reason to write_config() call
-
06:32 PM Revision 3bd33bd3: Add reason to write_config() call
-
06:30 PM Revision fb963e2c: Add reason to write_config() call
-
06:28 PM Revision 437d76fe: Add reason to write_config() call
-
06:26 PM Revision 9d43ef89: Add reason to write_config() call
-
06:24 PM Revision 3f533580: Add reason to write_config() calls
-
06:19 PM Bug #4669: QinQ virtual interfaces available for assignment where they shouldn't be
- Timo Nieminen wrote:
> The patch 1. is missing on 2.3.2-RELEASE-p1. Booting system with QinQ interfaces assigned wil... -
03:47 PM Revision 176026af: Add reason to write_config() call
-
03:44 PM Revision e5b8f4ad: Add reason to write_config() call
-
02:20 PM Revision 0baf52bb: Add reason to write_config() calls
- Replace shell-style comments while here.
-
02:03 PM Revision 5a433494: Add reason to write_config() call
-
01:59 PM Revision 9178eadc: Add reason to write_config() calls
-
01:51 PM Revision 85d1b87e: Add reason to write_config() call
-
01:32 PM Bug #7373 (New): Firewall schedules GUI needs to be redone from scratch
- That thing is seriously horrible, the calendar is confusing like hell plus mostly useless - never heard of anyone sch...
-
01:17 PM Revision 2b359eda: Revert "C2758 is VGA only too"
- This reverts commit 3244266fd8a99a66611334b8ae945de61eb9a0da.
-
01:17 PM Revision f962a59a: Revert "C2758 is VGA only too"
- This reverts commit 0a00b197976e638199ab88b823ec6c75ad9a99b2.
-
01:16 PM Revision 5aa1ac92: Revert "C2758 is VGA only too"
- This reverts commit e4324dcebd54bfc498bffd6d02b0afd7d8c674b9.
-
12:52 PM Revision e4324dce: C2758 is VGA only too
-
12:47 PM Revision 3244266f: C2758 is VGA only too
-
12:46 PM Revision 0a00b197: C2758 is VGA only too
-
11:34 AM Bug #7372: Cannot filter ICMP Type SKIP
- An easier way to keep it would be to use the type number (39) instead of the name. The rule loads fine with 39 instea...
-
03:14 AM Bug #7372: Cannot filter ICMP Type SKIP
- If you want to block all "dodgy" ICMP types, then you should probably block ICMP type numbers that do not have a defi...
-
02:50 AM Bug #7372: Cannot filter ICMP Type SKIP
- Phillip Davis wrote:
> SKIP (type 39) has been deprecated:
> Is there a reason you (or anyone) need to particularly...
03/08/2017
-
10:03 PM Revision 5eab8157: Add missing includes to config.console.inc
-
10:01 PM Bug #7372: Cannot filter ICMP Type SKIP
- I figured it was likely a parser issue when I was narrowing it down to SKIP - I initially tried the types with parent...
-
09:53 PM Bug #7372: Cannot filter ICMP Type SKIP
- Hmmm - pf seems to know about "skip":
https://github.com/pfsense/FreeBSD-src/blob/devel/sbin/pfctl/pfctl_parser.c#L8... -
08:48 PM Bug #7372: Cannot filter ICMP Type SKIP
- No reason for me, just found the bug and reporting it.
-
08:43 PM Bug #7372: Cannot filter ICMP Type SKIP
- SKIP (type 39) has been deprecated:
https://www.iana.org/assignments/icmp-parameters/icmp-parameters.xml#icmp-parame... -
04:19 PM Bug #7372 (Resolved): Cannot filter ICMP Type SKIP
- When adding a rule to filter ICMP traffic of type SKIP, the following error shows under Status / System Logs / System...
-
08:27 PM Revision 19b3f5bc: Add a deprecation notice
-
08:07 PM Revision 4b67b75c: Add error handling to AJAX call
-
07:59 PM Revision d149a316: It's time for 2.3.3-RELEASE-p1
-
07:55 PM Revision a97b8740: Add error handling to AJAX call
-
07:10 PM Revision 7da4e896: Add missing include
-
07:09 PM Revision 8d53c0b9: Add missing include
-
07:08 PM Revision 73acc25d: Add missing include
-
07:07 PM Revision 922273bf: Add missing include
-
07:07 PM Revision e22b3080: Add missing include
-
07:06 PM Revision 096ae765: Add missing include
-
07:06 PM Revision 394bb9d4: Add missing include
-
07:05 PM Revision 43e07671: Add missing include
-
07:04 PM Revision 15c74b5b: Add missing include
-
07:04 PM Revision 0661622a: Add missing include
-
07:03 PM Revision fdd8fafc: Add missing include
-
07:02 PM Revision e2f8257d: Add missing include
-
07:02 PM Revision f5e4ee03: Add missing include
-
07:01 PM Revision b4097bca: Add missing include
-
07:00 PM Revision b51cb63f: Add missing include
-
06:59 PM Revision afb7b75e: Add missing include
-
06:57 PM Revision 059e1bd2: Add missing include
-
06:53 PM Revision e1ac4a84: Remove duplicate pfSenseHeader() function
- Sort includes while here.
-
06:46 PM Revision c35d1294: Relocate pfSenseHeader() function to pfsense-utils.inc
-
06:40 PM Revision bbd36e2d: Relocate pfSenseHeader() function to pfsense-utils.inc
- Sort includes while here.
- 06:36 PM Revision 31c0fa8b: Fix #7317 Widget Filter All button
- (cherry picked from commit 7067e174c27a1fe9b23d13806f1e52ce9bc2aaee)
- 06:35 PM Revision f070cc7a: System Information widget filter gettext()
- (cherry picked from commit f5d762f90924510c097a9065dff135dab01f46f0)
- 06:35 PM Revision a1211630: System Information Widget Filter
- (cherry picked from commit 718b3b0b1b75de09a87866cb37b5a0752643283a)
- 06:34 PM Revision 7df63e98: Fix #7317 Widget Filter All button
- (cherry picked from commit 7067e174c27a1fe9b23d13806f1e52ce9bc2aaee)
- 05:40 PM Revision f3de1be0: Fix #7364 Console assigned VLAN disappears after reboot
- (cherry picked from commit 75a1149e0104561446e6f90f98d98c6c13c52996)
- 05:40 PM Revision 25d8c2ce: Fix #7364 Console assigned VLAN disappears after reboot
- (cherry picked from commit 75a1149e0104561446e6f90f98d98c6c13c52996)
-
05:39 PM Revision 209e95d6: Merge pull request #3626 from phil-davis/trigger-initial-wizard-7364
- 04:55 PM Revision 11a0c763: Fix #7306 Correctly filter log widget entries by interface description
- (cherry picked from commit 27bc5848cfea95f97f70a4fe0c30da6319794a9a)
- 04:55 PM Revision 5bc83b28: Fix #7306 Correctly filter log widget entries by interface description
- (cherry picked from commit 27bc5848cfea95f97f70a4fe0c30da6319794a9a)
-
04:54 PM Revision b25977ab: Merge pull request #3577 from phil-davis/patch-10
-
04:42 PM Revision ceb90928: Use the same cache filename pattern for RFC2136 IPv6 items as used by dyndns
-
04:42 PM Revision 458f5aee: Use | to separate dyndns IPv4 fields on cache file as done by rfc2136 items and for all IPv6 items
-
04:41 PM Revision aa3e0749: Setup XG-154x console to VGA only
-
04:40 PM Revision 57c616e2: Setup XG-154x console to VGA only
-
04:40 PM Revision c7300778: Setup XG-154x console to VGA only
-
04:36 PM Feature #2358: NAT64 support
- Google offers a public DNS64 resolver https://developers.google.com/speed/public-dns/docs/dns64 so if we could get NA...
-
03:06 PM Revision a49317dc: Add AJAX to interfaces widget
- Do some whitespace fixes while here.
-
03:05 PM Revision 37f95208: Remove whirlpool from the list of CA/Cert digest algorithms as it does not work properly. OpenSSL claims it's not valid ("unknown signature algorithm"). Fixes #7370
- While I'm here, stop needlessly repeating the algo list, it's a global in certs.inc, so use that single copy of the l...
-
03:05 PM Revision cfc0d396: Remove whirlpool from the list of CA/Cert digest algorithms as it does not work properly. OpenSSL claims it's not valid ("unknown signature algorithm"). Fixes #7370
- While I'm here, stop needlessly repeating the algo list, it's a global in certs.inc, so use that single copy of the l...
-
03:03 PM Revision 84141846: Remove whirlpool from the list of CA/Cert digest algorithms as it does not work properly. OpenSSL claims it's not valid ("unknown signature algorithm"). Fixes #7370
- While I'm here, stop needlessly repeating the algo list, it's a global in certs.inc, so use that single copy of the l...
-
02:58 PM Revision 505c0863: Fix display of openssl errors when working with CA or certificate entries. Found this while looking into ticket #7370
-
02:58 PM Revision ddfa8daa: Fix display of openssl errors when working with CA or certificate entries. Found this while looking into ticket #7370
-
02:57 PM Revision 5ce9bcf5: Fix display of openssl errors when working with CA or certificate entries. Found this while looking into ticket #7370
-
02:53 PM Bug #7343 (Resolved): On 2.3.3, Updater reports that the latest version is 0.18_1
- 02:34 PM Revision 27c86938: Set new blog URL (https://www.netgate.com/blog/) as default for RSS widget
- (cherry picked from commit 294f14f7897f973f1fa2a1506cfdd9117b5daf65)
-
02:11 PM pfSense Packages Bug #7237: ACME - first table row on certs tab does not autoexpand the fields
- Should get fixed/changed with this: https://github.com/pfsense/FreeBSD-ports/pull/329
-
02:09 PM pfSense Packages Bug #7342: Acme Certificates option to change the order of certificates is broken
- @Sam, thanks for clarifying, should get fixed with this: https://github.com/pfsense/FreeBSD-ports/pull/329
-
12:36 AM pfSense Packages Bug #7342: Acme Certificates option to change the order of certificates is broken
- I found what causes it. If I set the name to be the domain name with "."s eg: test.domain.com it won't let me click ...
-
02:09 PM pfSense Packages Bug #7302 (Resolved): Acme AWS/Route 53 DNS Verification fails
-
02:08 PM pfSense Packages Bug #7302: Acme AWS/Route 53 DNS Verification fails
- I can confirm that 0.1.14 works with AWS.
-
02:02 PM pfSense Packages Bug #7302: Acme AWS/Route 53 DNS Verification fails
- Can you check if 0.1.14 fixes this?
-
02:08 PM pfSense Packages Feature #7340: Acme Client nsupdate interface forces a different key-ID for every domain
- The way the code works now the key name/id is the domain name. While you could copy the key to a bunch of names on th...
-
02:06 PM pfSense Packages Feature #7340: Acme Client nsupdate interface forces a different key-ID for every domain
- Seems to me if you can set 1 update key in bind you can reuse that key in acme package for each domain?
p.s. ive nev... -
01:20 PM Bug #7306 (Resolved): Log widget filter interface selection does not work when interface description is not the default
- works
-
10:55 AM Bug #7306 (Feedback): Log widget filter interface selection does not work when interface description is not the default
- PR has been merged, thanks!
-
01:12 PM Bug #7299 (Resolved): Error loading rules for old rule with ICMP type specified
-
01:12 PM Bug #7300 (Resolved): Error displaying selected ICMP types for old rules without ipprotocol
-
12:39 PM Bug #7301 (Resolved): Dynamic DNS status widget formatting for medium with browser window.
- Works
-
10:53 AM Bug #7301 (Feedback): Dynamic DNS status widget formatting for medium with browser window.
- PR has been merged
-
12:37 PM Bug #7317 (Resolved): Widget Filter All button effects all widgets
- Cherry-picked necessary commits to RELENG_2_3 and RELENG_2_3_3
-
12:11 PM Bug #7354 (Resolved): /etc/rc.initial.password: Expiration date for admin user is not removed when resetting the account
-
12:10 PM Bug #7356 (Resolved): pfsense 2.3.4: TCP State Timeout cannot be higher than 3600s within a rule - global configuration allows higher values
- Works
-
12:08 PM Bug #7370 (Resolved): Whirlpool Digest Algorithm on 2.3.3 and 2.4
- Works
-
09:20 AM Bug #7370 (Feedback): Whirlpool Digest Algorithm on 2.3.3 and 2.4
- Applied in changeset commit:841418461212fd2eb985553122642a5cc758246b.
-
09:05 AM Bug #7370 (Confirmed): Whirlpool Digest Algorithm on 2.3.3 and 2.4
-
05:48 AM Bug #7370 (Resolved): Whirlpool Digest Algorithm on 2.3.3 and 2.4
- CA certificate creation fails when using DA: Whirlpool with any key length from 512 to 16384.
No related errors in s... -
11:52 AM Bug #7357 (Resolved): CloudFlare DDNS Not working for domain-only updates (@ record for domain)
- Confirmed fixed
-
11:50 AM Bug #7364 (Resolved): VLAN disappears after reboot - assigned through shell
- Works
-
11:50 AM Bug #7364 (Feedback): VLAN disappears after reboot - assigned through shell
- Applied in changeset commit:75a1149e0104561446e6f90f98d98c6c13c52996.
-
11:34 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- The previous error was due to a CE patch being applied to a factory image. Renato created a factory patch and I was a...
-
11:20 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- patch fails on 2.3.3 and 2.4
2.3:... -
03:17 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- The initial setup wizard has other stuff for setting interface IPs, DNS servers and so on. So if someone sets their i...
-
02:36 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- Should have looked at your patch first. That is why I say IANAProgrammer.
-
02:34 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- Right.
This is probably not the place for this discussion but if a manual assignment is done in the web menu/CLI p... -
02:19 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- I could reproduce after doing a "reset to factory defaults" in the VM
PR https://github.com/pfsense/pfsense/pull/362... -
12:16 AM Bug #7364: VLAN disappears after reboot - assigned through shell
- I can confirm this using an RCC-VE 2440 and both netgate factory and CE 2.3.3 images.
I believe this is due to run... -
11:14 AM Feature #1181: Allow a way to add protocols (such as udp) to a load balancer
- unfortunately, to have working loadbalanced dns nowadays, you need to balance udp + tcp aswell. see http://www.networ...
-
10:46 AM Bug #7358 (Resolved): XG-1540/1 - wrong console type breaks single-user mode
-
10:45 AM Bug #7358: XG-1540/1 - wrong console type breaks single-user mode
- Fix on commit:aa3e0749204a7f80c4717d86a2d44c4825888543 confirmed to work
-
10:45 AM Bug #7371: pfsense load balancer relayd does not load balance dns with udp+tcp
- please see my last comment in #6870
-
10:44 AM Bug #7371 (Closed): pfsense load balancer relayd does not load balance dns with udp+tcp
- i would have reopened https://redmine.pfsense.org/issues/6870 , but unfortunately i can`t
relayd is unusable in it... -
10:44 AM Bug #7290 (Resolved): Dynamic DNS Widget, RFC2136 entries show red even when the cached IP address is correct
- Fixed by commit:5be33f49c5d5d70d9a11822f77eff3a312b43545 and commit:877676ee199a399ae5495543b080527bd34037f7
-
09:40 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Greg M wrote:
> Hi!
>
> Very similar issue I think it`s connected: https://forum.pfsense.org/index.php?topic=1268... -
09:36 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Martin Wasley wrote:
> Michael Zieher wrote:
> > Ah... Sorry!
> > The interesting Logs are all 04:* ... I somehow ... -
08:00 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Michael Zieher wrote:
> Ah... Sorry!
> The interesting Logs are all 04:* ... I somehow missed to truncate the 19:* ... -
04:57 AM Bug #7330: IPv6 Prefix is deleted on PPPoe reset, but not reapplied.
- Hi!
Very similar issue I think it`s connected: https://forum.pfsense.org/index.php?topic=126828.0 -
09:39 AM Bug #7352: pfSense IPv6 static route is dumped after a WAN flap
- What happens if you just open a page (WAN Interface maybe), click 'save' without changing anything and 'apply'?
-
09:34 AM Bug #7079: ClamAV C-ICAP causing Kernel Panic and System Crash
- Yeah, that'd be the one. OT: The ntopng thing is a disaster, can you bump it to 2.4.2017.01.20_1? It keeps crashing o...
-
09:30 AM Bug #7079: ClamAV C-ICAP causing Kernel Panic and System Crash
- Nothing from that address but I see one at the right time that came in over IPv6 (2001:470:6e prefix). That looks to ...
-
05:20 AM Bug #7079: ClamAV C-ICAP causing Kernel Panic and System Crash
- I just submitted a crash dump related to this (IP: 85.70.xx.xx)
-
08:56 AM Bug #7368: PPPoE uptime incorrect on pfSense reboot
- I'll add some Ajax to the widget. https://github.com/pfsense/pfsense/pull/3628
Otherwise, WFM as said above. -
08:13 AM Bug #7368 (Not a Bug): PPPoE uptime incorrect on pfSense reboot
- It works fine here, too. I have a test VM with two PPPoE WANs and an L2TP WAN and the uptime is correct in the widget...
-
07:46 AM Bug #7368: PPPoE uptime incorrect on pfSense reboot
- The comment on widget was that the widget is working as it should, it's showing the interface uptime be it correct wi...
-
07:36 AM Bug #7368: PPPoE uptime incorrect on pfSense reboot
- Cannot reproduce any such issue. In fact, it's working for multiple users, see #6032. (The widgets uses pretty much t...
-
07:29 AM Bug #7368: PPPoE uptime incorrect on pfSense reboot
- Typically a PPPoE connection should have been established during the reboot and be ready by the time one sees the con...
-
08:42 AM Revision 718cbc2d: New dhcp6c features REASONS and signals
- This PR takes advantage of modifications and additions to dhcp6c.
Firstly, a fix has been made to dhcp6c where the p... - 08:12 AM Revision 75a1149e: Fix #7364 Console assigned VLAN disappears after reboot
-
07:30 AM pfSense Packages Bug #6748: rrd_fetch_json.php returns html when user is unauthorized (causes "Error: SyntaxError: Unexpected token <")
- ...
-
07:09 AM Bug #6870: Load balancer DNS (relayd) can't handle fragmented udp, breaks DNSSEC
- notes from my findings:
1. relay can not do udp layer7 relaying besides "special case" dns
2. despite other inf... -
06:53 AM Feature #3567: Option to disable NTP
- -https://github.com/pfsense/pfsense/pull/3627-
(If someone still wishes to have this feature, feel free to recycle... -
04:15 AM Feature #6032 (Resolved): Show PPPoE uptime on the Dashboard - Interfaces Widget
-
01:00 AM Feature #7369 (Duplicate): user privileges - refine users rights to prevent admins to tamper with other admins accounts but still manage to the configuration
- to prevent admins to mess around with other users admins passwords/accounts/access but still have access to the rest ...
03/07/2017
-
10:52 PM Bug #7364: VLAN disappears after reboot - assigned through shell
- I tried exactly this on a 2.3.3 VM and it works fine - I made em1_vlan42 and it got assigned to LAN and came back aft...
-
09:50 AM Bug #7364 (Resolved): VLAN disappears after reboot - assigned through shell
- When a VLAN interface is created and assigned as the LAN interface through the shell menu, it will disappear from con...
-
08:49 PM pfSense Packages Bug #7342: Acme Certificates option to change the order of certificates is broken
- Maybe a browser cache of old JavaScript for the page? Try force refreshing the page (ctrl-F5) to make sure it is runn...
-
06:11 PM pfSense Packages Bug #7342: Acme Certificates option to change the order of certificates is broken
- I just updated from 0.1.12 to 0.1.14 as it had been updated since I submitted this and verified that it still does no...
-
05:53 PM pfSense Packages Bug #7342 (Rejected): Acme Certificates option to change the order of certificates is broken
- Works here, too.
-
05:02 PM pfSense Packages Bug #7342: Acme Certificates option to change the order of certificates is broken
- Works for me.. Check the box on the second certificate, click the anchor on the first one. After which the second cer...
-
06:43 PM Revision 8724b1ad: Some small improvements to help with ticket #7256
- They don't fix the problem but avoid some pitfalls that could contribute to it.
-
06:25 PM Bug #7368: PPPoE uptime incorrect on pfSense reboot
- PPPoE uptime on reboot is zero. Not exactly sure what "proportion" are you expecting.
-
04:45 PM Bug #7368 (Not a Bug): PPPoE uptime incorrect on pfSense reboot
- PPPoE uptime doesn't immediately reflect the actual uptime once pfSense has been rebooted, seems to be proportional t...
- 06:02 PM Revision de34683a: Redmine #7301 Put dot after the word break
- Signed-off-by: Phil Davis <phil.davis@inf.org>
(cherry picked from commit 81b1b44ad7e4d7abc635b08533359b9df45b54b2) - 06:02 PM Revision b77ddf68: Redmine #7301 Provide word-break opportunity for dynamic DNS host names
- Signed-off-by: Phil Davis <phil.davis@inf.org>
(cherry picked from commit 138e79d42cb1771e3b8fcc727270187f5c7ee7db) -
06:01 PM Revision a095b039: Merge pull request #3574 from phil-davis/wrap-host-domain-names
-
06:01 PM Revision 3aa941d0: Merge pull request #3606 from PiBa-NL/igmp_apply-20170303
-
05:59 PM Revision 96d243a5: Merge pull request #3603 from NOYB/RAM_Disk_Settings_GUI
-
05:33 PM Feature #4826: Allow configuration of multiple phase1 proposals
- That would be great, because currently you have to select the lowest common denominator, which generally results in p...
-
05:33 PM Feature #6242: Use local user datebase for IKEv2 EAP-Charpv2
- +1 from me :)
- 04:50 PM Revision 939e4b6a: Set new blog URL (https://www.netgate.com/blog/) as default for RSS widget
- (cherry picked from commit 294f14f7897f973f1fa2a1506cfdd9117b5daf65)
- 04:49 PM Revision 294f14f7: Set new blog URL (https://www.netgate.com/blog/) as default for RSS widget
-
04:28 PM Feature #6032: Show PPPoE uptime on the Dashboard - Interfaces Widget
- Thanks for adding this, upgraded to 2.4 just to test this and all looks good.
-
02:16 PM Feature #6032: Show PPPoE uptime on the Dashboard - Interfaces Widget
- Lovely, showing uptime on my WAN interface on PPPoE!
-
02:50 PM Revision ad401906: Test fix for hanging check_reload_status
- After killing php-fpm (console opt 16) check_reload_status would sometimes hang, consuming 100% of 1 cpu core. I foun...
-
12:35 PM Bug #7256: syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- Worked on this a bit more but still haven't nailed down the reason. It is executing the command to run syslog, it's j...
-
12:04 PM Bug #7366 (Rejected): 2.3.4: Connections (States) with proto "icmp" show a source and a destination port
- Those are not ports. It's the ICMP request ID.
Example:... -
11:40 AM Bug #7366 (Rejected): 2.3.4: Connections (States) with proto "icmp" show a source and a destination port
- Hi,
as you can see in the screenshot the state has a source and a destination port - both are equal.
Should ICMP ... -
12:01 PM pfSense Packages Feature #7367 (New): Wizard for Squid
- I know its easy to install a Proxy Server but is there a way of having a Wizard to set it up.
Using Hardware spec ... -
11:27 AM Revision b268e2f4: Merge pull request #3623 from doktornotor/patch-24
-
11:24 AM Revision 8901d6e7: Add reason to write_config() call
-
11:23 AM Revision 9460a588: Merge pull request #3615 from doktornotor/patch-17
-
11:22 AM Revision 830cafe8: Add reason to write_config() calls
-
11:22 AM Revision 18e2c82c: Merge pull request #3611 from doktornotor/patch-10
-
11:21 AM Revision 0c12cd8f: Merge pull request #3612 from doktornotor/patch-14
-
11:17 AM Revision ca9a1621: Merge pull request #3622 from doktornotor/patch-23
-
11:16 AM Revision 2ff475b7: Add reasons to write_config() calls
- (cherry picked from commit 919a43a7caa551cb14e72a5cd82ec1629b3a9aa5)
-
11:16 AM Revision 7d41bdb8: Remove unused base_packages variable from globals
- (cherry picked from commit 40f5b3e22effc3319afea306a7d691a5e6934c37)
-
11:16 AM Revision 06321cfb: Remove useless add_base_packages_menu_items() function
- Not really sure what was the idea 7+ years ago, but the code just doesn't make sense now.
(cherry picked from commit ... -
11:16 AM Revision e0b5d158: Merge pull request #3616 from doktornotor/patch-18
-
11:15 AM Revision 1eab8134: Add reason to write_config() call
-
11:14 AM Revision 9f1b6537: Add reason to write_config() call
-
11:14 AM Revision 777a9446: Merge pull request #3619 from phil-davis/write_config_openvpn
-
11:13 AM Revision 2d4422d9: Merge pull request #3618 from doktornotor/patch-20
-
11:12 AM Revision 0308b456: Add reason to write_config() call
-
11:12 AM Revision f6e32e2b: Merge pull request #3617 from doktornotor/patch-19
-
11:12 AM Revision 3b179f61: Merge pull request #3620 from doktornotor/patch-21
-
11:10 AM Revision a4ce26c3: Merge pull request #3621 from doktornotor/patch-22
-
11:05 AM Revision 4734cf7f: Add reason to write_config() call
-
11:01 AM Bug #7276 (Resolved): 2.3.3 upgrade does not upgrade
- I've upgraded internal docs and next time a new version is RELEASED this won't happen anymore
-
10:51 AM Bug #7276: 2.3.3 upgrade does not upgrade
- Now I understood what happened here. RC packages were held at beta.pfsense.org instead of pkg.pfSense.org and this ca...
-
10:42 AM Bug #7276: 2.3.3 upgrade does not upgrade
- just upgrade last nite from 2.3.4 snapshot no problem
-
11:00 AM Revision b525d581: Add reason to write_config() call
-
10:52 AM Revision 16922d7c: Add reason to write_config() call
-
10:50 AM Revision 99124e3a: Add reason to write_config() call
-
10:48 AM Revision fb3a8352: Add reason to write_config() calls
-
10:44 AM Feature #7365 (New): Pass firewall/filter rule set through logging for centralized loggers to key on
- Not sure what the best way to go about this would be but it would be nice to put the filter rule set contents (like w...
-
10:44 AM Revision 18278432: Add reason to write_config() calls
-
10:43 AM pfSense Packages Bug #7310: Packages pre-deinstall script removes temporary files used by pkg
- upgrade from 2.3.4 with snort no problem here
-
10:33 AM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- this also affects 2.3.3 and 2.3.4 moved to 2.4 to get limiters fix
-
08:03 AM pfSense Packages Bug #7319: Tinc uninstall leaves an entry in the firewall rules tab.
- Tough cookies, not a package bug.
-
07:13 AM pfSense Packages Bug #7319: Tinc uninstall leaves an entry in the firewall rules tab.
- Still seerms to leave pkg_tinc in the interface groups.
>>> Installing pfSense-pkg-tinc...
Updating pfSense-core... -
07:03 AM pfSense Packages Bug #7319 (Feedback): Tinc uninstall leaves an entry in the firewall rules tab.
-
07:01 AM pfSense Packages Bug #7319: Tinc uninstall leaves an entry in the firewall rules tab.
- Merged, test with 1.0.28_3 please.
-
07:03 AM Bug #7305 (Feedback): widget "squid antivirus status"
-
07:02 AM Bug #7305: widget "squid antivirus status"
- https://github.com/pfsense/FreeBSD-ports/pull/313 merged.
-
06:58 AM pfSense Packages Bug #7363 (Duplicate): pfsense 2.3.4 - Tinc Package - Interface still visible after uninstallation of package.
-
06:49 AM pfSense Packages Bug #7363: pfsense 2.3.4 - Tinc Package - Interface still visible after uninstallation of package.
- Duplicate of Bug #7319
-
06:38 AM pfSense Packages Bug #7363 (Duplicate): pfsense 2.3.4 - Tinc Package - Interface still visible after uninstallation of package.
- Did an installation of tinc and then did an uninstallation and the interface still remains visible in "Firewall --> R...
-
06:32 AM Feature #7362 (Resolved): Add the default values of the TCP and UDP Timeouts on the WebUI depending on the "Firewall Optimization Options"
- Hello,
when you go to System --> Advanced --> Firewall & NAT then you have the possibility to modify the different... -
06:28 AM Feature #7361 (Duplicate): 2.3.4 - Add possibility to modify UDP (First, Single, Multiple) and TCP Timeouts per rule and not only per global parameter
- Hello,
it would be usefull to have the possibility per rule to modify the Timeout of UDP connections (First, Singl... -
05:09 AM Todo #204: All write_config() statements should include a reason of some sort
- Not sure about bounty, but I did a couple more of them since I find the lack of info about what caused the configurat...
-
04:10 AM Bug #6666: IPV6 Log Spam?
- Thanks, Kill Bill
Rgds
Rick -
02:27 AM Bug #7338: ME909u-521 missing serial port
- Jim Pingle wrote:
> Did you read and try what the second to last post on the thread suggested?
>
> We support the...
03/06/2017
-
09:53 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- I too am seeing this bug
-
09:50 PM Feature #7360 (Duplicate): WebGUI Prevent state table from displaying all states at launch
-
09:43 PM Feature #7360: WebGUI Prevent state table from displaying all states at launch
- Duplicate of #7069
This is already implemented and is present in 2.3.3-RELEASE and 2.4 snapshots.
See Also: Sys... -
08:57 PM Feature #7360 (Duplicate): WebGUI Prevent state table from displaying all states at launch
- Sites with very large state tables make the WebGUI hang until it's done loading.
It should not display all the sta... -
06:37 PM Revision 2a988052: Update translation files
-
06:34 PM Revision f8184cd0: Regenerate pot
-
06:34 PM Revision aa4d7205: Deduplicate code
-
06:34 PM Revision 55f9e4b0: Deduplicate code
-
05:47 PM Revision a3d6987e: Allow CloudFlare DDNS entries to use "@" or "@." for the hostname portion of the domain in the GUI to update the domain's @ record. Then in the backend code, remove that from the FQDN since CloudFlare doesn't like that to be sent explicitly. Fixes #7357
- Fix is confirmed to work by two forum users: https://forum.pfsense.org/index.php?topic=122099.msg699763#msg699763
-
05:47 PM Revision f751b20a: Allow CloudFlare DDNS entries to use "@" or "@." for the hostname portion of the domain in the GUI to update the domain's @ record. Then in the backend code, remove that from the FQDN since CloudFlare doesn't like that to be sent explicitly. Fixes #7357
- Fix is confirmed to work by two forum users: https://forum.pfsense.org/index.php?topic=122099.msg699763#msg699763
-
05:45 PM Revision 6534026b: Allow CloudFlare DDNS entries to use "@" or "@." for the hostname portion of the domain in the GUI to update the domain's @ record. Then in the backend code, remove that from the FQDN since CloudFlare doesn't like that to be sent explicitly. Fixes #7357
- Fix is confirmed to work by two forum users: https://forum.pfsense.org/index.php?topic=122099.msg699763#msg699763
-
05:40 PM Revision a1518c96: Do not enforce a max limit on state timeout when editing a firewall rule. Fixes #7356
-
05:40 PM Revision 858c011d: Do not enforce a max limit on state timeout when editing a firewall rule. Fixes #7356
-
05:40 PM Revision 12210bd4: Do not enforce a max limit on state timeout when editing a firewall rule. Fixes #7356
-
04:04 PM Revision 33b1fa56: While I'm here, fix the case when the admin account has been removed.
-
04:04 PM Revision 33d625f1: While I'm here, fix the case when the admin account has been removed.
-
04:04 PM Revision af1e16c2: While I'm here, fix the case when the admin account has been removed.
-
03:58 PM Revision bdde9bb1: When resetting admin account via /etc/rc.initial.password, Check if the admin account is expired and reset if needed. Fixes #7354
-
03:58 PM Revision 41e32578: When resetting admin account via /etc/rc.initial.password, Check if the admin account is expired and reset if needed. Fixes #7354
-
03:57 PM Revision 9c20c034: When resetting admin account via /etc/rc.initial.password, Check if the admin account is expired and reset if needed. Fixes #7354
-
01:45 PM Bug #7359 (Resolved): Status/OpenVPN Page Sorts Incorrectly
- The bytes sent and byte received columns in the OpenVPN status page sort alphabetically and not by size.
Notes:
R... -
01:34 PM Bug #7358 (Resolved): XG-1540/1 - wrong console type breaks single-user mode
- Single-user mode is not accessible on the XG-1540 and XG-1541 because single-user mode is trying to use the first con...
-
11:50 AM Bug #7357 (Feedback): CloudFlare DDNS Not working for domain-only updates (@ record for domain)
- Applied in changeset commit:6534026bc1b0d9dcc9ac8c85b16d2fc2860db1f1.
-
11:45 AM Bug #7357 (Resolved): CloudFlare DDNS Not working for domain-only updates (@ record for domain)
- Since the CloudFlare DDNS code was changed to split hostname and domain, it is not possible to properly update the @ ...
-
11:50 AM Bug #7356 (Feedback): pfsense 2.3.4: TCP State Timeout cannot be higher than 3600s within a rule - global configuration allows higher values
- Applied in changeset commit:12210bd40d60757e09e09f433f7ce5536f686c97.
-
11:39 AM Bug #7356 (Confirmed): pfsense 2.3.4: TCP State Timeout cannot be higher than 3600s within a rule - global configuration allows higher values
You're right, that should not be limited in that way.
It affects 2.4 as well.
Easy fix, I'll push it momentar...-
11:15 AM Bug #7356 (Resolved): pfsense 2.3.4: TCP State Timeout cannot be higher than 3600s within a rule - global configuration allows higher values
- Hi,
whe I am within a firewall rule and change the "TCP State Timeout" under "Advaced options" within that specifi... -
10:55 AM Bug #7338: ME909u-521 missing serial port
- Did you read and try what the second to last post on the thread suggested?
We support the hardware supported by Fr... -
02:19 AM Bug #7338: ME909u-521 missing serial port
- Jim Pingle wrote:
> That's what a proper discussion will determine.
On forum more people have same problem! Is ke... -
10:32 AM Bug #7355: ME909u-521 missing serial port
- Jim Pingle wrote:
> Duplicate of #7338
>
> Please do not open multiple tickets for the same issue.
please can ... -
10:30 AM Bug #7355 (Rejected): ME909u-521 missing serial port
- Duplicate of #7338
Please do not open multiple tickets for the same issue. -
10:26 AM Bug #7355 (Rejected): ME909u-521 missing serial port
- Hi,
before upgrading pfsense I was using properly Huawei ME909u-521.
pFsense was create for modem port (/dev/cuaU0.... -
10:00 AM Bug #7354 (Feedback): /etc/rc.initial.password: Expiration date for admin user is not removed when resetting the account
- Applied in changeset commit:9c20c0344bda14ee89d27e8cab4a5400262c4ee5.
-
09:57 AM Bug #7354 (Resolved): /etc/rc.initial.password: Expiration date for admin user is not removed when resetting the account
- When resetting the admin password, the /etc/rc.initial.password script checks if the account is disabled and resets t...
-
07:39 AM Feature #7353 (Closed): Openvpn Logins page
- Hello,
i would like to monitor per user when he/she connected/disconnected.
in Pfsense 2.1.5 we used the PPTP L... - 07:28 AM Revision 8725f4a5: Add reason to write_config() calls for OpenVPN
-
01:56 AM Todo #204: All write_config() statements should include a reason of some sort
- By doktornotor:
https://github.com/pfsense/pfsense/pull/3617
https://github.com/pfsense/pfsense/pull/3618
By phi...
03/05/2017
-
09:37 PM Revision bb5b7532: Add reason to write_config() call
-
09:32 PM Revision fddb303a: Add reason to write_config() calls
-
09:20 PM Revision b05c860c: Add reason to write_config() call
-
09:04 PM Bug #7352 (New): pfSense IPv6 static route is dumped after a WAN flap
- In our pfSense setup, we receive a /56 prefix delegation (PD) from our ISP on the WAN. Two of our interfaces track t...
-
09:03 PM Revision 919a43a7: Add reasons to write_config() calls
-
08:23 PM Revision 4fe75c8e: Add reason to write_config() call
-
08:18 PM Revision 32fb5ce7: Add reason to write_config() call
-
08:12 PM Revision 1044256f: Add reason to write_config() calls
-
06:52 PM Revision 40f5b3e2: Remove unused base_packages variable from globals
-
06:51 PM Revision 94503103: Remove useless add_base_packages_menu_items() function
- Not really sure what was the idea 7+ years ago, but the code just doesn't make sense now.
-
05:05 PM Revision ba67d223: Remove unused functions
-
04:32 PM Revision d0bb84f7: Remove dummy config_lock() and config_unlock() functions
- Been no-op for ages (https://github.com/pfsense/pfsense/commit/0027de0a544438f146cfc94f005fd6f4ba9f94d7).
-
04:29 PM Revision 9bfb115b: Remove useless config_lock()/config_unlock() calls
-
04:25 PM Bug #7349 (Rejected): Autocomplete seems to have broken in 2.3.3?
- I can't reproduce it either, even with a rule and alias exactly as stated. +1 for dumping the browser cache and tryin...
-
03:45 AM Bug #7349: Autocomplete seems to have broken in 2.3.3?
- 2.3.3-RELEASE (amd64)
built on Thu Feb 16 06:59:53 CST 2017
FreeBSD 10.3-RELEASE-p16
It all works for me:
- add... -
02:39 AM Bug #7349 (Rejected): Autocomplete seems to have broken in 2.3.3?
- Steps:
After upgrading 2.3.2 to 2.3.3 via GUI, I created a new alias "New_boxes" with two hosts, 192.168.1.5 + 192... -
04:22 PM Bug #7348 (Resolved): Import certificate doesn't verify syntax resulting in loss of web gui
- #1685 is something different.
We already protect against importing such bad combinations on 2.4. You can't import ... -
08:18 AM Bug #7348: Import certificate doesn't verify syntax resulting in loss of web gui
- Duplicate of Bug #1685.
(Note - there's no need for manual messing with config.xml, see the other bug.) -
04:22 PM Bug #1685 (Resolved): Web configurator silently fails when "Private key does not match the certificate public key"
- We already protect against importing such bad combinations on 2.4, that's probably sufficient.
-
04:14 PM Bug #7351: Traffic Shaper on VLan, breaks PFSense Completely does not boot correctly.
- On 2.4 it is. Check the closed issues on 2.4. If you have more questions, post them on the forum.
-
04:11 PM Bug #7351: Traffic Shaper on VLan, breaks PFSense Completely does not boot correctly.
- Jim Pingle wrote:
> Looks the same as #6257. If it's not, it's probably your hardware. Try 2.4, if it doesn't work, ... -
03:50 PM Bug #7351 (Duplicate): Traffic Shaper on VLan, breaks PFSense Completely does not boot correctly.
- Looks the same as #6257. If it's not, it's probably your hardware. Try 2.4, if it doesn't work, we can't fix your har...
-
03:26 PM Bug #7351: Traffic Shaper on VLan, breaks PFSense Completely does not boot correctly.
- This is the device I brought which runs PFSense, http://www.qotom.net/goods-129-QOTOM-Q190G4+4+LAN+Mini+PC.html
Do... -
10:36 AM Bug #7351: Traffic Shaper on VLan, breaks PFSense Completely does not boot correctly.
- Traffic Shaping Type I'm trying to use is HSFC
-
10:34 AM Bug #7351 (Duplicate): Traffic Shaper on VLan, breaks PFSense Completely does not boot correctly.
- Hi Guys,
I've had this issue since 2.3.2 but was waiting to 2.3.3 to see if it gets fixed. It still an issue so I ... -
03:41 PM Bug #6913: install on Hyper-v R2
- Kill Bill wrote:
> Broken again.
>
> https://forum.pfsense.org/index.php?topic=124915.0
Here is some further inf... -
03:27 PM Revision f11ac397: Remove no longer needed split() re-implementation
-
02:43 PM Revision fd7e2c0e: Remove deprecated unused function
- Not used anywhere and deprecated for ages (https://github.com/pfsense/pfsense/commit/fe9afce65fc36f278e18edf8959669de...
-
01:47 PM Bug #7343: On 2.3.3, Updater reports that the latest version is 0.18_1
- Yeah, the answer is still the same. Run @pkg upgrade pfSense-upgrade@ from shell.
-
01:20 PM Bug #7343: On 2.3.3, Updater reports that the latest version is 0.18_1
- I have the XG-1540 with 10GB addon NIC and I'm seeing the same thing as Denny Page
System Information page: !https... -
11:27 AM Revision e22ca5a2: v4 or v6
-
11:25 AM Revision 40e21a7f: change "returned" -> "to return"
-
11:20 AM Revision eb267378: better title
-
11:18 AM Revision de55303c: Clearer narrative for domain override on main resolver config page
-
11:11 AM Revision 619d8ac8: Clearer narrative for host override edit page
-
11:05 AM Revision 51deda53: incorrect escape \
-
10:50 AM Revision 1eb759ab: Clearer narrative for domain override on main resolver config page
-
10:42 AM Revision 638a7947: Clearer narrative for domain override edit page
-
06:46 AM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- Renato Botelho wrote:
> Kill Bill wrote:
> > Someone test this, perhaps? https://github.com/pfsense/pfsense/pull/35... -
06:29 AM Feature #7350: Unbound host/domain override needs better IPv4/IPv6 handling?
- Stilez y wrote:
> * Domain Override should allow a list of IPs rather than just one so a mix of IPv4/IPv6/alternativ... -
05:34 AM Feature #7350 (Duplicate): Unbound host/domain override needs better IPv4/IPv6 handling?
- At the moment the IP for a host or lookup server can be entered as IPv4 or IPv6, but not both, nor can multiple/fallb...
-
12:11 AM Bug #7015 (Resolved): IPsec not working behind NAT
- Fixed (also confirmed by JimP on #6937 which was caused by the same issue).
03/04/2017
-
09:46 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- Applied the patch. It works. Thanks!
-
07:45 PM Revision eddb0131: trafficgraphs, divide bandwidth by time when statistics where gathered to smooth out bumps in the graphs
-
05:11 PM Bug #6937 (Resolved): Inbound traffic on enc0 is not creating a state with mobile IPsec
- Works great on the latest snapshot, thanks!
-
03:11 PM Bug #7348 (Resolved): Import certificate doesn't verify syntax resulting in loss of web gui
- Web GUI doesn't check syntax when importing SSL certificates resulting in loss of web gui.
Steps to reproduce:
1.... -
12:31 PM Bug #7347 (Closed): Config Sync - Breaks on null value
- When setting up config sync on a new box. If a config section is selected, in this example Virtual IPs, but nothing i...
-
09:55 AM Bug #7343: On 2.3.3, Updater reports that the latest version is 0.18_1
- I also see an issue on factory 2.3.3. I see "The system is on a later version than the official release" in the syste...
-
01:51 AM Bug #7343: On 2.3.3, Updater reports that the latest version is 0.18_1
- Hi guys,
I don't know if this is related or not, but thought I'd throw it out.
I have a vm running 2.3.3. I ove... -
01:47 AM Revision 56632443: use right var for zoneid
03/03/2017
-
10:53 PM Bug #6937 (Feedback): Inbound traffic on enc0 is not creating a state with mobile IPsec
- New changes were made to handle this issue. Waiting on JimP comments.
-
10:51 PM Bug #7015 (Feedback): IPsec not working behind NAT
- Fixed in latest update.
-
07:57 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
- Hi guys,
I'm just chiming in to ask for this as well. I'm using Charter's 6rd service and was about to open a tick... -
07:56 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- Pull #3608
-
07:53 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- It helps if I completely reverted the items I changed for the region being added to the zone. Just needed to step awa...
-
04:22 PM Bug #7206: Authentication Method Used in Bug 6751 Removed by Amazon
- Okay I've done more testing with this and I'm getting more random errors that don't make any sense to me. The same co...
-
07:24 PM Revision 1cd02ef7: igmp, fix apply button, remove save button
-
03:40 PM Revision adb19456: Adjust fix for ticket #7294 for 2.3.x, it used a setHelp change that was only valid on 2.4.
-
02:17 PM Todo #6944: dhcp6c releasing allocation
- Close this one.
-
01:16 PM Bug #7339: Dyndns RFC2136 client, don't send updates via TCP.
- Tks Jim.. it is clear now...
-
12:56 PM Bug #7339: Dyndns RFC2136 client, don't send updates via TCP.
- You have broken the update by blocking UDP. It performs the _update_ via TCP, but it performs other parts of the acti...
-
12:45 PM Bug #7339: Dyndns RFC2136 client, don't send updates via TCP.
- Jim:
The packets in the filter log (pfsense 167.61.xxx.xx) shows port 53 UDP output packets insteads TCP.
I make ... -
07:16 AM Bug #7339 (Rejected): Dyndns RFC2136 client, don't send updates via TCP.
- That is an error from your DNS server, not the client.
TCP updates work well from here on 2.3.3.
Search for tha... -
10:15 AM Revision 1008f6fd: Sanitize linebreaks for textarea fields in packages on save (Bug #5306)
-
08:19 AM Bug #7334: SG-1000 Update failure
- I still see a failure on update as the PID file is deleted, but it now happens later in the update process....
-
07:20 AM pfSense Packages Bug #7211 (Resolved): DNS Made Easy ACME script not parsing domain IDs properly
-
12:10 AM pfSense Packages Bug #7211: DNS Made Easy ACME script not parsing domain IDs properly
- I got a notification in my install that 0.1.13 was available and saw that those changes were merged into it. After t...
-
06:08 AM Bug #7344: Pfsense should be able to PXE boot directly from ISO file
- Jim Pingle wrote:
> If it still doesn't work on 2.4, it will have to wait until FreeBSD fixes it upstream, and then ... -
05:05 AM Bug #7346 (Rejected): favicon is horrible
- It's a bugtracker for pfSense software
-
01:40 AM Bug #7346 (Rejected): favicon is horrible
- you have a nice responsive design website . one of the major points of a responsive design website is phones and tabl...
-
04:15 AM Bug #5306: textarea fields should have linebreaks sanitized automatically on save
- This is for XML packages:
https://github.com/pfsense/pfsense/pull/3605 -
03:50 AM Bug #7338: ME909u-521 missing serial port
- Jim Pingle wrote:
> That's what a proper discussion will determine.
On doc.pFsense.com this card is supported but... -
02:19 AM Revision c06d1448: Revert addition of region to zone field
-
02:18 AM Revision b2cb7364: revert parsing of config field for region
- 01:59 AM Revision 42565652: Fix parsing "::/0" as "::/128" on OpenVPN IPv6 Tunnel Remote network
-
01:11 AM Revision f51eab94: RAM Disk Settings GUI
- Update notice re: log data loss. The log directory is now also backed up.
Group settings to consolidate.
Also available in: Atom