Activity
From 05/10/2017 to 06/08/2017
06/08/2017
-
08:12 PM Bug #7605: State Killing on Gateway Success
Another doubt about the same feature. On a multi-wan environment, is it possible to kill the states just of the fai...-
07:26 PM Revision a550ca4e: Change the port list to use the pfSense FreeRADIUS 3.x package instead of freeradius3 directly.
-
06:48 PM pfSense Packages Bug #7617: OpenBGP not restarting on new WAN IP or firewall reload
- I need to withdraw this report, assuming my assessment below is correct. Apologies for any effort wasted on this.
... -
04:44 PM Bug #4310: Limiters + HA results in hangs on secondary
- Has this had any development recently?
This is the primary reason I can't use limiters in my HA setup, and the ass... -
03:21 PM pfSense Packages Bug #7632: CVE-2016-2107 in OpenSSL
- Are you certain that your pfSense installation is current? We ran that same test against a 2.3.4 system with HAProxy ...
-
02:45 PM pfSense Packages Bug #7632: CVE-2016-2107 in OpenSSL
- Sorry, I follow what you are saying now!
The SSLLabs test still says that we are vulnerable when we test the site.... -
02:24 PM pfSense Packages Bug #7632: CVE-2016-2107 in OpenSSL
- We have 2.3.4 in use, hosting a website with HAProxy TLS offload. SSLLabs confirms that it is vulnerable to Oracle P...
-
08:12 AM pfSense Packages Bug #7632 (Rejected): CVE-2016-2107 in OpenSSL
- FreeBSD patches OpenSSL in its own way, relying on the version number is not accurate to determine vulnerabilities.
... -
07:45 AM pfSense Packages Bug #7632 (Rejected): CVE-2016-2107 in OpenSSL
- pfSense 2.3.4 uses OpenSSL 1.0.1s which is vulnerable to CVE-2016-2107 Oracle Padding attack. HAProxy TLS terminatio...
-
01:10 PM Bug #7629: FreeBSD PR affecting pfsense
- An update, I pulled the Freebsd-src from the repo and have actually now compiled the kernel patched and have it runni...
-
12:47 AM Bug #7629: FreeBSD PR affecting pfsense
- another one and again turnstile_broadcast
db:0:kdb.enter.default> bt
Tracing pid 65385 tid 100750 td 0xfffff8001... - 12:23 PM Revision f18475cb: Fix anchor tag location
06/07/2017
-
10:28 PM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
- Just happened to me as well. Brand new SG-2440 from Netgate with 2.3.4 pre-installed. I restored a config from the ol...
-
09:37 PM pfSense Packages Feature #7631: Please allow static IPs be assigned from the DHCP range
- For future readers:
And if you have a bit of address space that you want to use for static IPs in the middle of the ... -
02:33 PM pfSense Packages Feature #7631: Please allow static IPs be assigned from the DHCP range
- Read the link, it's all explained there.
-
02:21 PM pfSense Packages Feature #7631: Please allow static IPs be assigned from the DHCP range
- why in the would all other vendors allow this and no pfSense?
-
02:09 PM pfSense Packages Feature #7631 (Rejected): Please allow static IPs be assigned from the DHCP range
- https://doc.pfsense.org/index.php/Why_can't_I_have_static_mappings_inside_my_DHCP_range
-
02:04 PM pfSense Packages Feature #7631 (Rejected): Please allow static IPs be assigned from the DHCP range
- Currently if a client was selected from the Leases table and a user wants to make an IP static pfSense forces it to b...
-
03:38 PM Revision 88fbd229: Merge pull request #3750 from PiBa-NL/20170606-denyconfigwrite
-
11:23 AM pfSense Packages Bug #7630 (Needs Patch): UEFI Booting
- When trying to boot using UEFI mode, installer hangs at 'Consoles: EFI Consoles'
Using Dell Optiplex 7010 or 9010 ... -
10:35 AM Bug #7584 (Feedback): privileges abuse with page-diagnostics-dns
- PR was merged
-
09:47 AM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- I opened a new ticket for that problem, as the old one (this one) is closed
https://redmine.pfsense.org/issues/7604
... -
09:39 AM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- Just happened to me as well. Brand new SG-2440 from Netgate with 2.3.4 pre-installed. I restored a config from the ol...
06/06/2017
-
09:52 PM Revision 6356e3e8: permissions, log when user tries to save the configuration but has the 'deny config write' permission
-
07:57 PM Bug #7629: FreeBSD PR affecting pfsense
- Affected version is 2.4 built on Wed Mar 15 18:17:17 CDT 2017
FreeBSD 11.0-RELEASE-p8 -
07:56 PM Bug #7629 (Resolved): FreeBSD PR affecting pfsense
- IS it possible to test the patch on a build of PFSense 2.4 which I am willing to test.
The patch is here
https:... -
12:31 PM Revision 5e17c8e3: Change FreeRADIUS3 build options, previous build failed.
-
10:01 AM Bug #7628 (Not a Bug): The IP address must lie in the LAN subnet
- Assigned openvpn interfaces do not work that way. You do not set an IP address on the interface like that, and they d...
-
09:55 AM Bug #7628 (Not a Bug): The IP address must lie in the LAN subnet
- Hello,
I found this was a problem one year ago:
https://redmine.pfsense.org/issues/5651
It however turns out... -
07:38 AM Bug #7627 (Rejected): SG-1000 pfSense 2.4.0-BETA: Unbound domain overides with multiple DNS
- Please post on the forum or mailing list to discuss configuration issues. There is no bug here.
You can define mul... -
07:28 AM Bug #7627 (Rejected): SG-1000 pfSense 2.4.0-BETA: Unbound domain overides with multiple DNS
- Unbound domain overrides configuration does not allow multiple IP.
06/05/2017
-
11:39 PM Bug #6340: fsck hangs boot in background, fails to produce any action, resulting in broken firewall
- I just wanted to add the following, as this was one of the #1 reasons I was nervous about using PFSense.
Before t... -
10:50 PM Feature #7626 (New): Add IPoE support for WAN
- Many ISPs are moving away from PPPoE to IPoE for WAN connectivity. Please add IPoE native support for WAN connections.
-
08:44 PM Revision a8238357: Activate FreeRADIUS3 OS package for dev/testing (no GUI component yet)
-
04:07 PM Revision 9fa31c24: dhcp-relay, replace the dhcprelay specific implementation of get_realinterface_for_destination() by the generic guess_interface_from_ip()
-
03:24 PM Revision de147d3d: Add more checks to eliminate empty config tags in package settings. Fixes #7624
-
01:08 PM Bug #7601: Dynamic DNS - Hostname should not be required for DNS-O-Matic
- Please see the attached trivial patch to make the hostname optional for DNS-O-Matic.
-
11:32 AM Bug #7625 (Resolved): When creating IPv6 firewall rule for single host, netmask improperly displays
- When creating a firewall rule (I tested with a pass rule on WAN):
Address Family: IPv6
Source: Single Host or ali... -
10:30 AM Bug #7624 (Feedback): Empty <config/> tags in package settings are still causing issues
- Applied in changeset commit:de147d3d614c877df2022d85d37256a93047764c.
-
10:10 AM Bug #7624 (Resolved): Empty <config/> tags in package settings are still causing issues
- In some cases, packages can still end up with an empty @<config></config>@ or @<config/>@ tag which leads to problems...
-
08:25 AM Feature #7623: Allow L2TP user passwords to contain special characters
- The validation for L2TP user account passwords is the same as it has been since pfSense 2.0 when it was first added. ...
-
08:16 AM Bug #7611 (Feedback): Diagnostics/Routes ipv6 ( netstat ), causes kernel panic
- I can't seem to reproduce this as stated. I have a system with a GIF tunnel and I can disable/enable its WAN (it's a ...
-
07:36 AM Bug #7615 (Rejected): User / Group Privileges for the "Status: Monitoring" page.
- Maybe your user already has the privilege?
It's there on a normal install. It has to be specific to your installat... -
07:29 AM Bug #7612 (Rejected): No internet access through DHCP unless using static assigned address
- Agreed. DHCP is not broken, at least in general. Post on the forum or mailing list for assistance.
If there is som...
06/03/2017
-
10:55 AM Feature #7321: DynDNS - Add DreamHost DNS support
- Any progress on this? I'd love to use it. Looking at the possibility of combining this with the acme and haproxy pack...
-
09:51 AM Feature #7623 (Resolved): Allow L2TP user passwords to contain special characters
- In older versions of pfSense, special characters (!@#$%^& etc) where allowed in passwords.
Since a while back this... -
07:31 AM Bug #7622 (Resolved): Don't include disabled ipsec phase2 entries on pf table vpn_networks
- PF Table vpn_networks is populated with disabled Phase 2 entries.
This may lead to underperformance if
(a) You ha...
06/02/2017
-
02:04 PM pfSense Packages Feature #7621: OpenVPN Client Export name whens is a windows installer have the same name its a bit confused
- Fixing the sentence:
So, will be like that for Windows Vista, 64 bits: pfSense-udp-1194-prolinx-x64-win6-install.exe -
01:30 PM pfSense Packages Feature #7621 (Resolved): OpenVPN Client Export name whens is a windows installer have the same name its a bit confused
- When you export a OpenVpn files it's not possible distinguished by the name file between win6, x86, x64, xp, etc.
... -
12:52 PM Bug #7620 (Resolved): State table cannot be displayed because lack of PHP memory
- Please see [[https://forum.pfsense.org/index.php?topic=130797.0]]
@
Crash report begins. Anonymous machine infor...
06/01/2017
-
06:19 PM Bug #7606: Using limiters and VLANs on Supermicro Xeon D boards crashes with kernel panic
- I was able to capture the very beginning of the crash, see pic
-
05:46 PM Bug #7606: Using limiters and VLANs on Supermicro Xeon D boards crashes with kernel panic
- I dont think I can provide a crash dump without swap on my build but here are some screencaps of the console once the...
-
01:32 PM Revision 7cdddd8b: Remove memorydisk support
- 01:15 PM Revision 067a2bdf: Improve comment
- 12:58 PM Revision de88f421: Use the section ID as an anchor so that hyperlinks can jump directly to that sectiom
- e.g.: $section = new Form_Section("My section", "a_here");
then: https://firewall/system_somepage.php#a_here -
12:27 PM Bug #7619 (Closed): Enable Enhanced networking on AWS
- https://svnweb.freebsd.org/base?view=revision&revision=293739
https://aws.amazon.com/ec2/instance-types/#enhanced_... -
12:05 PM pfSense Packages Bug #7524: Squid MITM/SSL-Bump broken with Chrome due to missing SAN in generated certificates
- Looks like the Squid developers are getting ready to push v3.5.26, which appears to have a fix for bug 4711:
http:... -
09:32 AM pfSense Packages Bug #7524: Squid MITM/SSL-Bump broken with Chrome due to missing SAN in generated certificates
- Patricio Stegmann wrote:
> I can confirm the bug in pfSense 2.3.4 and the fix on squid issue tracker at http://bugs.... -
08:12 AM Feature #7618 (Resolved): Add support for user-supplied Host-Uniq tag and handle PADM messages in Netgraph PPPoE
- Hi,
can this patch already working be added to pfSense to enable it to deal with custom Host-Uniq tags?
A new input...
05/31/2017
-
08:39 PM pfSense Packages Bug #7617: OpenBGP not restarting on new WAN IP or firewall reload
- Attaching some system and routing logs.
-
06:55 PM pfSense Packages Bug #7617: OpenBGP not restarting on new WAN IP or firewall reload
- A symptom of this is that a table maintained by OpenBGP is not updated after a WAN IP change or firewall reload.
S... -
06:07 PM pfSense Packages Bug #7617 (Closed): OpenBGP not restarting on new WAN IP or firewall reload
- OpenBGP does not reload/restart with other packages when the WAN IP changes or the firewall rules are reloaded.
... -
04:49 PM Bug #7600: Unable to save DNS Resolver settings
- There is validation of DNSBL after each feed is downloaded and parsed.
If you add the include line in /var/unbound/u... -
04:19 PM Bug #7600: Unable to save DNS Resolver settings
- I can reproduce the issue. Load up an assload (technical term) of lists in the pfBlockerNG plugin in the DNSBL Feeds ...
-
02:53 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- Suffering same, any plans this would get fixed soon because converting rules to a pass isn't feasible in my situation...
-
01:49 PM pfSense Packages Bug #7278: Suricata Service - Advanced Configuration Pass-Through not working
- Hi all,
i just run into this bug as i was testing configs for an other feature i'm currently developing for suric... -
01:26 PM Bug #7611: Diagnostics/Routes ipv6 ( netstat ), causes kernel panic
- For easiest reproduction ive found the following settings:
Gif interface with parent:wan ,gifremote: 4.4.4.4 ,gift...
05/30/2017
-
09:47 PM Bug #7615: User / Group Privileges for the "Status: Monitoring" page.
- Well this is interesting.. The file /etc/inc/priv/pfSense-Status_Monitoring.priv.inc is there, but it doesn't show up...
-
08:24 PM Bug #7615: User / Group Privileges for the "Status: Monitoring" page.
- It is there in the list for me, and works when I give it to a user.
Status monitoring is provided in pfSense like a ... -
11:40 AM Bug #7615 (Rejected): User / Group Privileges for the "Status: Monitoring" page.
- I'm not sure if this is a bug or if it needs to be a feature request. I'm was just attempting to make a new pfsense u...
-
07:14 PM pfSense Packages Bug #7616 (Closed): Barnyard2 webui configuration updates result in ****** written to the config for the password
- Any changes to the barnyard configuration page requires that you update the password as well, otherwise ****** is wri...
-
03:31 PM Bug #5413: Reduce disruptions when changing DNS records from DHCP leases in Unbound
- Sadly, I've faced the same problem with Unbound. This issue forced me to use RAM disks. I hope there will be a fix in...
-
06:42 AM Bug #5413: Reduce disruptions when changing DNS records from DHCP leases in Unbound
- Hi all
I'm facing same issue on our pfSense boxes.
We're using unbound and configured dhcp server to update unb... -
11:23 AM Bug #7614 (Resolved): Port forwards where the destination is a network alias can create invalid refection rules if multiple subnets are in that alias.
- For example if the chosen destination is 'WAN net' and there is a VIP on the WAN in the different subnet.
NAT refl... -
10:44 AM Revision 3ca59456: Fix preg_match call without delimiter and also use preg_quote() to variable used in pattern
-
10:44 AM Revision 63cbb655: Fix preg_match call without delimiter and also use preg_quote() to variable used in pattern
-
05:32 AM pfSense Packages Bug #7613: quagga not starting after upgrade - initial boot
- forgot to mention that quagga is mainly used to supply routes over openvpn site2site tunnels
-
03:47 AM pfSense Packages Bug #7613 (Closed): quagga not starting after upgrade - initial boot
- initial boot after upgrade:
* quagga not started, it is upgraded/installed
* service can be started manually by GU...
05/29/2017
-
10:01 PM Bug #7612: No internet access through DHCP unless using static assigned address
- DHCP is not broken in 2.4. There must be another issue in play. Please take this to the forum and post specifics ther...
-
09:46 PM Bug #7612 (Rejected): No internet access through DHCP unless using static assigned address
- Currently running 2.4.0-BETA (amd64) built on Mon May 29 17:12:34 CDT 2017
This issue has persisted since updatin... -
07:06 PM Bug #7611 (Not a Bug): Diagnostics/Routes ipv6 ( netstat ), causes kernel panic
- Diagnostics/Routes ipv6 ( netstat ), causes kernel panic
Several crashdumps uploaded past few hours.. (my ip ends ... -
06:20 PM Revision ce5e2867: Don't create system notices for errors in user-entered ad-hoc PHP (diag_command.php)
- (cherry picked from commit ff4e29fb9d048162f0d4d28b0c3e818ed2c1fd8e)
-
06:20 PM Revision 39dc4fc5: Various updates to PR
- 1) convert echo to print, and add infobox, as requested in PR comments
2) If no identifiable line number, say so
3) E... -
06:20 PM Revision ad6be377: create global for user code dir, in diag_command.php
- Going to try and stop user code generating notices, by putting it in a specific dir which doesn't give notices for sy...
-
06:20 PM Revision 6be84d7f: add comment
- (cherry picked from commit d2d58d6ad1b32e0ccce094bfd247547f353e38ba)
-
06:20 PM Revision 1ca0f7f7: typo
- (cherry picked from commit 4711322b4a6ecedba6a4a11c1f7f04ef8427b46e)
-
06:20 PM Revision 5c1fea17: If user-entered PHP errors out, display the error line in context to help the user
- If the user enters PHP in the command-line page, and it errors out, it's usually a typo or something minor. But the u...
-
06:20 PM Revision 7c2ca154: Merge pull request #3740 from stilez/patch-59
- 06:20 PM Revision b4ff414a: Removed htmlspecialchars when loading leases from config
- (cherry picked from commit 2322e9f3cb6dea9203d63a17c6a27de3a2c6b8bc)
-
06:19 PM Revision d4d9aa66: Merge pull request #3731 from ylecuyer/ylecuyer-patch-1
-
05:50 PM pfSense Packages Bug #7610: Squid use all memory ram.
- I did the update to pfsense 2.3.4 with new verion of squid, but still have the problem, memory used by squid only gro...
-
02:30 PM pfSense Packages Bug #7610: Squid use all memory ram.
- I am using Pfsense version
2.3.3-RELEASE (amd64)
built on Thu Feb 16 06:59:53 CST 2017
FreeBSD 10.3-RELEASE-p... -
02:27 PM pfSense Packages Bug #7610 (Closed): Squid use all memory ram.
- We have this forum https://forum.pfsense.org/index.php?topic=126309.0, and i have the same version of the problem on ...
-
11:28 AM Revision 1ab06215: Update translation files
-
11:25 AM Revision 766084d3: Regenerate pot
-
09:35 AM Bug #7609 (Resolved): NTP Status not parsing all NTP Access Restrictions preventing status display when it is actually allowed
- Status/NTP displays "Statistics unavailable because ntpq and ntpdc queries are disabled in the NTP service settings",...
-
12:00 AM Revision 06d8454b: dhcp-relay, combine clean and fix code for destination interface discovery
05/28/2017
-
02:16 PM Feature #7383: system_certmanager.php?act=new: Add new select option to sign a CSR
- Build 2.4.0.b.20170527.2111
External generated CSR failed with
The following input errors were detected:
•This s... -
01:43 PM Revision 8452bfc2: Code cleanup, and add an info message under widget list
- Minor code cleanup/simplifying. Also many pages have their settings in their built-in settings panel, so the fact tha...
-
09:08 AM pfSense Packages Feature #7608: Captive Portal amount of traffic Account + Free Radius+Mysql
- It is up to the RADIUS server/database to count traffic and decide when to cut the user off, not Captive Portal. Capt...
-
01:47 AM pfSense Packages Feature #7608 (New): Captive Portal amount of traffic Account + Free Radius+Mysql
limitation on amount of traffic does not work when used CP and Free Radiusand and Mysql to gether
It seams...
05/27/2017
-
07:05 PM Bug #7607: Chelsio T4/T5 CXGBE drivers not loaded as ALTq capable in the PfSense UI
- Also tested on 2.3.4 non-functional
-
06:53 PM Bug #7607 (Resolved): Chelsio T4/T5 CXGBE drivers not loaded as ALTq capable in the PfSense UI
- ( Please reference https://redmine.pfsense.org/issues/6830 ) Information below duplicated from this ticket. Testing e...
-
06:45 PM Bug #6830: Chelsio T4/T5 CXGBE drivers not loaded as ALTq capable in the PfSense UI
- Using Chelsio T4 on;
2.4.0-BETA (amd64)
built on Fri May 26 19:15:04 CDT 2017
FreeBSD 11.0-RELEASE-p10
This ... -
01:14 PM Revision ff4e29fb: Don't create system notices for errors in user-entered ad-hoc PHP (diag_command.php)
-
12:49 PM Revision 1155cd63: Various updates to PR
- 1) convert echo to print, and add infobox, as requested in PR comments
2) If no identifiable line number, say so
3) E... -
12:44 PM Revision 8d80a771: create global for user code dir, in diag_command.php
- Going to try and stop user code generating notices, by putting it in a specific dir which doesn't give notices for sy...
05/26/2017
-
07:03 PM pfSense Packages Bug #7555: Snort settings show translation metadata when creating a new interface that is not yet defined
- Jim Pingle wrote:
> You might consider changing "None" to "New Interface" or something like that as otherwise the ta... -
03:45 PM pfSense Packages Bug #7555: Snort settings show translation metadata when creating a new interface that is not yet defined
- You might consider changing "None" to "New Interface" or something like that as otherwise the tab names could be conf...
-
03:44 PM pfSense Packages Bug #7555 (Resolved): Snort settings show translation metadata when creating a new interface that is not yet defined
- This is working in the current package. Thanks!
-
02:56 PM Revision afe8afac: auth_check, faster authentication check while automatically refreshing diag_routes
- (cherry picked from commit 60ba7c7642036deb1001f1862e5c19d465fbdf74)
-
02:55 PM Revision 183c713b: auth_check, move the cmp_page_matches() to its own file so it can be shared by both auth_check.inc and priv.inc
- (cherry picked from commit ddd54e83f28d324a14a13f3f75564e5b53d53c8c)
-
02:55 PM Revision a4c64e37: auth_check lowers cpu usage for checking if the user has permission for the page requested when used in place of guiconfig, especially useful for frequent requests like those made by stats and traffic widgets
- (cherry picked from commit c07071cbcadd1c9de9951d9ba497b73752ee52cc)
-
02:55 PM Revision 2c8c8578: Merge pull request #3728 from PiBa-NL/20170511-fastauth
-
02:54 PM Revision 2c4865e3: Add missing break for cloudflare case
- (cherry picked from commit d900381c9384676462c91c0b2e7e59ec42723237)
-
02:54 PM Revision 543ea703: Integrate various cloudflare changes
- (cherry picked from commit 5ce6ce4b1ad850e70d5a2fe218317b1a1b545907)
-
02:54 PM Revision 8b8fb93d: Merge pull request #3717 from phil-davis/patch-11
-
02:51 PM Revision c2856a97: Enable iprange build
-
01:57 PM Bug #7606: Using limiters and VLANs on Supermicro Xeon D boards crashes with kernel panic
- Installed:
pfSense-CE-2.4.0-BETA-amd64-20170526-0955.iso
Installed on 500GB hard drive. Swap exists.
Proble... -
01:25 PM Bug #7606: Using limiters and VLANs on Supermicro Xeon D boards crashes with kernel panic
- Sorry not sure if this is right place for this but this issue seems almost identical to what I am experiencing on 2.4...
-
12:43 PM Bug #7606 (Feedback): Using limiters and VLANs on Supermicro Xeon D boards crashes with kernel panic
- Please test against a 2.4 snapshot. Attach crash dump data here as well, as the report has very little use without it...
-
12:38 PM Bug #7606 (Resolved): Using limiters and VLANs on Supermicro Xeon D boards crashes with kernel panic
- Confirmed on three different Supermicro Xeon D boards, 1508/1518/1521. With the similarities between these boards t...
-
07:17 AM Bug #7605 (Duplicate): State Killing on Gateway Success
- Hi,
We have the option that the firewall can kill states on gateway failure. This is great in multi-wan environnem... -
04:23 AM Feature #7598: Static IPv6 using IPv4 PPPoE as parent interface
- OK, here's a patch to try. The patch is against today's snapshot.
You'll have a new option when selecting a v6 sta... -
03:42 AM Bug #7604 (Resolved): Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
- I reference Bug #6594 - https://redmine.pfsense.org/issues/6594#change-32802
I left a comment there, but the bug i...
05/25/2017
-
09:38 PM pfSense Packages Bug #7555: Snort settings show translation metadata when creating a new interface that is not yet defined
- This is fixed in Snort GUI package version 3.2.9.3. The value is checked, and if NULL, the string "None" is substitu...
-
08:14 PM Revision 0895c1bd: Activate bandwidthd
-
04:58 PM Revision 597aef5f: Enable aws-sdk-php build
-
04:58 PM Revision d8f58b4f: Enable aws-sdk-php build
-
04:58 PM Revision c57f66ff: Enable aws-sdk-php build
-
01:00 PM Revision d138398d: Activate bandwidthd for testing
-
07:17 AM Bug #6461 (Duplicate): firewall rules lose limiter association when limiter renamed
- Duplicate of #3924
-
07:17 AM Bug #7603 (Duplicate): firewall rule looses limiter refrence when limiter name changed
- Duplicate of #3924
-
07:09 AM Bug #7603 (Duplicate): firewall rule looses limiter refrence when limiter name changed
- suppose u have a firewall rule with up and down limiters set, then when u goto edit the limiter name, the rule looses...
-
04:11 AM Revision d2d58d6a: add comment
-
04:08 AM Revision 4711322b: typo
-
02:22 AM Feature #7598: Static IPv6 using IPv4 PPPoE as parent interface
- I'll post here when I have patches to test. Next week sometime, I have to do some real work for a few days. :)
-
01:12 AM Feature #7602 (New): Auto-Create bootable USB for recovery
- Option to insert a blank USB drive, and create a bootable recovery image on the device.
Possible options to save i... -
12:42 AM Bug #7601 (Resolved): Dynamic DNS - Hostname should not be required for DNS-O-Matic
- Background: DNS-O-Matic allows updates to be sent without a hostname or service specified, in which case all services...
-
12:33 AM Revision d900381c: Add missing break for cloudflare case
05/24/2017
-
04:44 PM Revision f94873b8: Enable iprange build
-
04:43 PM Revision 66916861: Enable iprange build
-
01:36 PM Revision 90f3f556: Activate bandwidthd for testing
-
08:26 AM Bug #7600 (Feedback): Unable to save DNS Resolver settings
- I can't replicate this as stated. There must be some missing detail to reliably replicate it. Please discuss it furth...
-
06:39 AM Revision fd1bd705: If user-entered PHP errors out, display the error line in context to help the user
- If the user enters PHP in the command-line page, and it errors out, it's usually a typo or something minor. But the u...
-
01:23 AM Feature #7598: Static IPv6 using IPv4 PPPoE as parent interface
- Pretty please :)
I have the same dpinger problem :)
05/23/2017
-
10:05 PM Bug #7552 (Rejected): IPFW crashes on load or unload of modules
-
06:58 PM Bug #7552: IPFW crashes on load or unload of modules
- Please close this, seems I made a mistake on how to employ our version of Captive portal, and thought the kldunload o...
-
07:04 PM Revision 7b084fd3: SG-23* serial number is igb0 mac address
-
07:04 PM Bug #7600 (Closed): Unable to save DNS Resolver settings
- https://forum.pfsense.org/index.php?topic=118226.15
I was about to respond to this, currently happening on a 2.3.4... -
04:59 PM Revision 62174481: Merge pull request #3739 from PiBa-NL/20170521-js-versioning
-
04:59 PM Revision 2e294992: Diag DNS disable Add Alias button when host field is changed
- (cherry picked from commit 45eafdbd7b958bd4f9459d90a6a63ff8202eec3b)
-
04:59 PM Revision f8ba7256: Merge pull request #3737 from phil-davis/diag-dns-hide-add-alias-button
- 04:57 PM Revision 12ca33f4: Remove stray debug-code (/tmp/script)
- (cherry picked from commit a29361a2d94eed754255e75d63d511e7889d6c9f)
-
04:57 PM Revision 2470b276: Merge pull request #3729 from znerol/bug/master/tmp-script
-
04:55 PM Revision fbac0f19: Merge pull request #3715 from phil-davis/if-stats-widget-settings
-
04:55 PM Revision 3af287f3: virtualips, ability to sort the table
- (cherry picked from commit 77c53e65fb7d4f40baec5c01a796a637c9cc5034)
-
04:54 PM Revision d6b030d7: Merge pull request #3730 from PiBa-NL/20170517-sort-virtualips
-
04:54 PM Revision 4c4504b1: Make consistent rule information section
- (cherry picked from commit f0dc8b688c2b7d973bc18769579ee8cc6d3d2dad)
-
04:54 PM Revision 6e0474ed: Merge pull request #3732 from phil-davis/rule-created-updated
-
04:52 PM Revision 7c4cfa35: Add download button/function directly on status.php to ease confusion.
- (cherry picked from commit f7a72733f8c482e230e0042a6c65f4935a2b723a)
(cherry picked from commit b44ee60da886ae7eb7862... -
04:52 PM Revision b44ee60d: Add download button/function directly on status.php to ease confusion.
- (cherry picked from commit f7a72733f8c482e230e0042a6c65f4935a2b723a)
-
04:51 PM Revision f7a72733: Add download button/function directly on status.php to ease confusion.
-
04:42 PM Revision eb65e543: pkg_edit, fix empty config tag check
- (cherry picked from commit 6bf2a65086f7664c870a9565b70c39655c2a3dcf)
-
04:42 PM Revision 977d48d2: Merge pull request #3733 from PiBa-NL/20170520-pkgedit-shiftemptyelement
-
04:41 PM Revision e78a436c: Diag DNS fix update alias button text after add alias
- 1) Lookup a name with Diag DNS
2) Press "Add Alias"
The alias is added, but the button still says "Add Alias".
Actua... -
04:41 PM Revision d6f6e63d: Merge pull request #3734 from phil-davis/patch-1
-
04:41 PM Revision f54a3ede: Diag DNS do not show Add Alias if no priv to add alais
- (cherry picked from commit 7fcccc8f09afd7f4a524ff598b43e15d678905eb)
-
04:40 PM Revision 5175d2d8: Merge pull request #3735 from phil-davis/dns-lookup-add-alias
-
04:40 PM Revision 14e90f2e: Diag DNS do not create an empty alias if name does not resolve
- (cherry picked from commit f445385114c43cb46b8188a7cea425648f7647f2)
-
04:39 PM Revision 8c102a4b: Merge pull request #3736 from phil-davis/diag-dns-change-host-add-alias
-
04:13 PM Revision 81de04ae: Add NGID to status.php
- (cherry picked from commit fcc24426ab16b02ffc77bc7c9ee040d76dd987a2)
(cherry picked from commit 2e7f67b274960210ef2d6... -
04:13 PM Revision 2e7f67b2: Add NGID to status.php
- (cherry picked from commit fcc24426ab16b02ffc77bc7c9ee040d76dd987a2)
-
04:12 PM Revision fcc24426: Add NGID to status.php
-
02:10 PM Bug #7599 (Closed): System->Update unavailable in WebGUI after connection failure during update
- Using the WebGUI to update pfsense from 2.3.3_1 to 2.3.4.
During the update process (downloading packages) the netwo... -
01:17 PM Revision b0572bad: Add Bosnian to GUI since it's over 75% translated
-
01:10 PM Revision 7eee170c: Update translation files
-
01:02 PM Revision cd4fd16b: Regenerate pot
-
11:56 AM Bug #7501 (Feedback): Interfaces statistics widget GUI + JSON (2 issues)
- PR has been merged, thanks!
-
11:46 AM Feature #7598 (Resolved): Static IPv6 using IPv4 PPPoE as parent interface
- A strange requirement has come up. When selecting to use Static IPV6 it's not possible to specify using the PPPoE int...
-
09:46 AM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- I'm using the nightly builds (2.4.0.b.20170522.1522 as of right now). I also use gigabit fiber over PPPoE, so I'm ha...
-
08:52 AM Feature #4923: Add LDAP support for RFC2307 style group membership
- This bug is old, and resolved. It works perfectly, and I use it every day. If you have an issue it is different than ...
-
07:10 AM Feature #4923: Add LDAP support for RFC2307 style group membership
- This is not a support system. For help, please post on the forum, mailing list, or use another support method.
05/22/2017
-
11:33 PM pfSense Packages Bug #7595: suricata custom SID Mgmt configuration missing after full system restore
- Appreciate the response, Bill.
It would be good to have an API where packages can mark files/directories for backu... -
09:53 PM pfSense Packages Bug #7595: suricata custom SID Mgmt configuration missing after full system restore
- This is admittedly not optimal, but it is by design (by default). This is because all of the firewall configuration ...
-
10:00 PM pfSense Packages Bug #7578: Suricata -- Removing Hosts from Block Table via Alerts
- I have added this bug report to my list of TODO bug fixes for the next Suricata update.
Bill -
09:04 PM pfSense Packages Bug #7524: Squid MITM/SSL-Bump broken with Chrome due to missing SAN in generated certificates
- Kill Bill wrote:
> Upstream bug: http://bugs.squid-cache.org/show_bug.cgi?id=4711
>
> Also, there were multiple o... -
08:18 PM Revision ce2d9c6e: Fix links to CP MAC management page so they include the zone name. Fixes #7591
-
08:10 PM Revision d80812af: Select "No Authentication" for a portal zone by default, since it is the default behavior, but the GUI requires a value to be set. Fixes #7591
-
07:53 PM Revision bc07c192: Fix options text/display for IPv4 DNS and Verify SSL on DynDNS clients. Fixes #7588
-
07:42 PM Revision 2c1a08a8: Standardize privilege page and sorting between users and groups. Fixes #7587
-
07:34 PM Revision 8abe8272: Add username to display when adding user privileges. Fixes #7586
-
07:29 PM Revision fc1913fe: Provide a useful error message to the user when there is no private CA with which to create a new user certificate. Fixes #7585
-
06:48 PM Revision ec0736af: Fix path to old pftop file in obsolete list. Fixes #7581
-
06:43 PM Revision c07a2b86: Do not offer the 'peak' and 'rate' views for pftop since they only work in interactive mode with cached data, not batch mode like the GUI uses. Fixes #7580
-
06:38 PM Revision 9cf0609b: Remove "size" option from pftop as it does nothing. The "bytes" option is the correct one to use. Fixes #7579
-
06:16 PM Revision 7120ef41: In the OpenVPN wizard, if the user chooses a different auth server type, clear out stored settings so the wizard does not pre-fill bad info. Fixes #7569
-
05:35 PM Revision 919a0f4a: The logic for resolv-retry infinite was always setting it in client mode no matter what the GUI option wanted. Remove the GUI option and clean up the logic so it isn't duplicated. Fixes #7572
-
05:25 PM Revision 473f7ec4: Clarify address assignment behavior in the Tunnel Network fields for openvpn clients and servers. Fixes #7573
-
05:11 PM Revision 85d564f0: Fix help text for route_no_exec. Issue #7575
-
04:35 PM Revision 39fed386: Fix OpenVPN server port validation to disallow "0". 0 is still OK for client port, which is the same meaning as blank/empty. Fixes #7565
-
04:24 PM Revision bc3669e4: Remove references to unused "Address Pool" setting. The address behavior is now determined by the mode, and has been for years. Fixes #7567
-
04:15 PM Revision d44942d3: Remove refs to defunct OpenVPN client manager port. Fixes #7568
-
03:57 PM Revision 0116009a: Fix L2TP section log shortcut. Fixes #7564
-
03:50 PM Revision 5de4b046: Disable internal L2TP users when activating RADIUS, to follow the behavior stated in the GUI. Fixes #7561
-
03:41 PM Revision 11a3e413: Improve L2TP Server DNS input validation. Fixes #7560
-
03:31 PM Revision 45b5afa4: Remove unused WINS code for L2TP. Fixes #7559
-
03:30 PM Bug #7591 (Feedback): services_captiveportal.php suggest default auth_method, and old links
- Applied in changeset commit:d80812af5dafe616e7ea33b3a7ea12413c87bdf4.
-
03:19 PM Bug #7591 (Assigned): services_captiveportal.php suggest default auth_method, and old links
-
03:02 PM Feature #7596 (Rejected): Ting Config
- The mobile provider list is pulled from the FreeBSD port net/mobile-broadband-provider-info/ which in turn gets the l...
-
03:00 PM Bug #7588 (Feedback): missing label for form in services_dyndns_edit
- Applied in changeset commit:bc07c19263afbb43b4e1f8a3ad318a0d6e7ff6fb.
-
02:54 PM Bug #7588 (Assigned): missing label for form in services_dyndns_edit
-
02:58 PM Bug #7584: privileges abuse with page-diagnostics-dns
- The fix in the PR Looks good to me.
-
02:50 PM Todo #7587 (Feedback): sort system_groupmanager_addprivs privileges
- Applied in changeset commit:2c1a08a8a30bb4cd0476af5b45ea25ba0a859af4.
-
02:43 PM Todo #7587 (Assigned): sort system_groupmanager_addprivs privileges
-
02:50 PM Todo #7586 (Feedback): system_usermanager_addprivs show user name
- Applied in changeset commit:8abe82728750782f4adebf8d4336570402a5583d.
-
02:34 PM Todo #7586 (Assigned): system_usermanager_addprivs show user name
-
02:40 PM Bug #7585 (Feedback): system_usermanager.php showcert does nothing
- Applied in changeset commit:fc1913fef29fbc7f90e8e2fe9374b761411f09ae.
-
02:29 PM Bug #7585 (Assigned): system_usermanager.php showcert does nothing
- It will not show anything meaningful unless the firewall has a CA with which it can create/sign user certificates.
... -
02:00 PM Bug #7581 (Feedback): etc/pfSense.obsoletedfiles wrong path for diag_system_pftop.php
- Applied in changeset commit:ec0736af255a8c2b3f158156ef00845ca3c6c4d9.
-
01:47 PM Bug #7581 (Assigned): etc/pfSense.obsoletedfiles wrong path for diag_system_pftop.php
-
01:59 PM Bug #7583 (Needs Patch): pkg_mgr confusing versions
- There isn't enough room in the column headers to label our internal version number "pfSense pkg version" without badl...
-
01:50 PM Todo #7582 (Rejected): diag_dump_states and non-existent IP
- You can also filter for a subnet and kill by that, but it also shows no states. It may not be intuitive, but it's a v...
-
01:50 PM Bug #7580 (Feedback): pftop impossible options in web gui
- Applied in changeset commit:c07a2b866b0d7b9b4fa8a2899e4a20562f9f2f24.
-
01:44 PM Bug #7580 (Assigned): pftop impossible options in web gui
-
01:50 PM Bug #7579 (Feedback): pftop size sort is same as none
- Applied in changeset commit:9cf0609b8b8c8f3104326d883f3d0fac9359a896.
-
01:44 PM Bug #7579: pftop size sort is same as none
- FYI- The man page is wrong on this, then. It appears we originally included it since the man page listed it among the...
-
01:38 PM Bug #7579 (Assigned): pftop size sort is same as none
-
01:33 PM Todo #7577 (Resolved): growl and notification suggestions
- Already has a fix merged on 2.4 so the buttons use the new settings:
https://github.com/pfsense/pfsense/pull/3691 -
01:31 PM Todo #7576 (Needs Patch): invalid sysctl tunables
- I'm not certain there is a good way to do this in a way that wouldn't break other, valid behavior. Working with sysct...
-
01:30 PM Bug #7569 (Feedback): openvpn wizard reused settings cause wrong defaults
- Applied in changeset commit:7120ef411c122e67f6585be13fb89daa9df9a152.
-
01:16 PM Bug #7569 (Assigned): openvpn wizard reused settings cause wrong defaults
-
01:18 PM Bug #7570 (Feedback): openvpn_wizard old error message
- How did you skip creating a certificate? I can't reproduce this error message or condition.
Need more precise inst... -
12:50 PM Bug #7572 (Feedback): openvpn client resolv-retry infinite issues
- Applied in changeset commit:919a0f4a4b8ec00693811d3bfb8cdbc05802da30.
-
12:39 PM Bug #7572 (Assigned): openvpn client resolv-retry infinite issues
- Looks like we can remove it since it's been forced on for clients for some time now (~3 years).
-
12:40 PM Todo #7573 (Feedback): openvpn tunnel networks and "second network address will be assigned"
- Applied in changeset commit:473f7ec48f7510a60ade574ef32b09f4abaa6b9a.
-
12:25 PM Todo #7573 (Assigned): openvpn tunnel networks and "second network address will be assigned"
-
12:12 PM Bug #7575 (Resolved): openvpn client and --route-up
- Yes, it works. route-noexec in OpenVPN tells it not to run the Operating System executable to install routes (e.g. /s...
-
12:07 PM Bug #7574 (Rejected): openvpn ifconfig using IP instead of subnet mask
- It's not that cut and dried.
Point-to-Point modes still use "IP1 IP2" style, which includes Shared Key, SSL/TLS wi... -
12:02 PM Bug #7571 (Rejected): openvpn client shortcut wrongly points to "server" configuration
- That's a quirk of how the shortcut system works. The "related settings" link is filled in to the "main" page for a se...
-
11:50 AM Bug #7565 (Feedback): openvpn and port 0
- Applied in changeset commit:39fed386534d3e7dc6fc248cc6cdf831cf422000.
-
11:36 AM Bug #7565 (Assigned): openvpn and port 0
- Server shouldn't allow 0, but for clients, 0 is the same as blank/empty so that's OK. Needs to reflect the proper ran...
-
11:30 AM Bug #7567 (Feedback): unused openvpn address pool setting?
- Applied in changeset commit:bc3669e4e88cb75eb987ee073a5360f4a69b10b1.
-
11:20 AM Bug #7567 (Assigned): unused openvpn address pool setting?
- The setting isn't required, the backend behavior is determined by the mode now. Safe to remove.
-
11:30 AM Bug #7568 (Feedback): unused openvpn client_mgmt_port ?
- Applied in changeset commit:d44942d3477c609e37794dc31c36fcd5c4435fbb.
-
11:20 AM Bug #7568: unused openvpn client_mgmt_port ?
- Indeed, in "the olden days" we had to run OpenVPN Manager on a Windows client so that unpriv users could use it to st...
-
11:15 AM Bug #7568 (Assigned): unused openvpn client_mgmt_port ?
- It was a part of the OpenVPN Client Export package that was used with the OpenVPNManager add-on. That add-on has been...
-
11:28 AM Bug #7566 (Rejected): need more dh-parameters files or generate it
- On 2.4 the GUI only shows options for files that exist. Click the "i" on the text for the setting and follow the link...
-
11:10 AM Bug #7564 (Feedback): l2tp broken logging shortut
- Applied in changeset commit:0116009a07f7f0f8c25e4306485102b5432676f4.
-
10:57 AM Bug #7564 (Assigned): l2tp broken logging shortut
-
11:10 AM Bug #7561 (Feedback): l2tp turn off local user database
- Applied in changeset commit:5de4b0463871c9077850ab81ea506d5d5a892439.
-
10:49 AM Bug #7561 (Assigned): l2tp turn off local user database
-
11:10 AM Todo #7560 (Feedback): vpn_l2tp.php dns checks
- Applied in changeset commit:11a3e413225b3719c6424b74ed7103f91852ac62.
-
10:40 AM Todo #7560 (Assigned): vpn_l2tp.php dns checks
-
11:10 AM Bug #7559 (Feedback): l2tp wins unused code
- Applied in changeset commit:45b5afa4f4dd978ed9adbd1c0673bca5c861d8b5.
-
10:32 AM Bug #7559 (Assigned): l2tp wins unused code
-
04:21 AM Bug #7597 (Duplicate): DynDNS fail to update after connection lose
Hi,
i experienced some problem with DynDNS update.
When the gateway is down (connection lost) and then come b...
05/21/2017
-
09:54 PM Revision 60ba7c76: auth_check, faster authentication check while automatically refreshing diag_routes
-
09:44 PM Revision d8837d57: webgui, load .js files with ?v=mtime version to prevent using old scripts after updating
-
09:38 PM Revision b920ef36: NAT-1on1, don't write pf rules with wrong or missing from/to information
-
08:22 PM Feature #7596 (Rejected): Ting Config
- When setting up a PPP, it would be great to get Ting as an option for a provider. Thanks.
-
07:07 PM pfSense Packages Bug #6603: pfblockerng's Unbound modifications leave system broken post-config restore
- Ran into this issue today building a new 2.4 snapshot machine.
Is there any reason that /var/unbound/conf.d isn't ... -
07:01 PM pfSense Packages Bug #7595: suricata custom SID Mgmt configuration missing after full system restore
- Sorry, should have filed this under pfSense-Packages.
-
07:00 PM pfSense Packages Bug #7595 (Not a Bug): suricata custom SID Mgmt configuration missing after full system restore
- Decided to try 2.4 today. I first tried building a new ZFS VM and attempted to restore my config to a clean system. ...
-
06:48 PM Bug #7594 (Resolved): "vtnet: driver does not support altq" following upgrade to 2.4 (worked in pfSense 2.3)
- Decided to try 2.4 today so I upgraded a clone of my 2.3.5 snapshot firewall. The upgrade went reasonably well, exce...
-
01:14 PM Feature #7593 (Rejected): Enable FreeBSD 11 pvclock module in 2.4 builds
- FreeBSD brings the pvclock module. According to https://lists.freebsd.org/pipermail/freebsd-arch/2015-January/016587....
-
10:06 AM Bug #7592: SG-1000: Unbound not always restarting properly after changes in /etc/hosts
- I just noticed I overlooked a part after rewording the issue:
"Those cases" on line 2 refers to the successfull on... -
10:02 AM Bug #7592 (Resolved): SG-1000: Unbound not always restarting properly after changes in /etc/hosts
- I'm observing an issue on my SG-1000 (came preloaded with 2.4b, currently running v. 2.4.0.b.20170430.0444) which cau...
-
04:44 AM Revision 45eafdbd: Diag DNS disable Add Alias button when host field is changed
-
04:04 AM Revision f4453851: Diag DNS do not create an empty alias if name does not resolve
-
03:22 AM Revision 7fcccc8f: Diag DNS do not show Add Alias if no priv to add alais
-
03:15 AM Revision 474b2756: Diag DNS fix update alias button text after add alias
- 1) Lookup a name with Diag DNS
2) Press "Add Alias"
The alias is added, but the button still says "Add Alias".
Actua...
05/20/2017
-
10:30 PM Bug #7584: privileges abuse with page-diagnostics-dns
- PR https://github.com/pfsense/pfsense/pull/3735
-
04:10 PM Bug #7584 (Resolved): privileges abuse with page-diagnostics-dns
- my user has
page-diagnostics-dns privilege which provides DNS lookups
but also allowed the user to create an alias
... -
05:22 PM Bug #7591: services_captiveportal.php suggest default auth_method, and old links
- I ended up describing this two ways. It now doesn't accept it (per 0ee22f364ca62b8305ff36447954dacdbc3c3cce)
but pl... -
05:19 PM Bug #7591 (Resolved): services_captiveportal.php suggest default auth_method, and old links
- services_captiveportal.php
If don't select radio button for "Authentication method" it stays empty
so no authentica... -
05:04 PM Bug #7590 (New): diag_edit do not save when nothing to sae (in directory browse view)
- diag_edit.php
if you are browsing directory hiererchy, and enter a filename
and click save, it will write a zero by... -
05:02 PM Bug #7589 (Resolved): ``diag_edit.php`` warning is not cleared after picking non-directory to load
- diag_edit.php will give warning "Loading a directory is not supported."
but after clicking Browse and getting a dire... -
04:48 PM Bug #7588 (Resolved): missing label for form in services_dyndns_edit
- services_dyndns_edit "Verify SSL peer" checkbox
doesn't show its corresponding form label. It is set to "null".
(So... -
04:37 PM Todo #7587 (Resolved): sort system_groupmanager_addprivs privileges
- system_groupmanager_addprivs.php
feature request.
Please sort the list of privileges in the form
like is done in t... -
04:31 PM Todo #7586 (Resolved): system_usermanager_addprivs show user name
- feature request: system_usermanager_addprivs.php
should say what user and fullname is having the privileges added to... -
04:20 PM Bug #7585 (Resolved): system_usermanager.php showcert does nothing
- system_usermanager.php
The checkbox for showcert "Click to create a user certificate"
when adding a new user does n... -
04:08 PM Bug #7583 (Needs Patch): pkg_mgr confusing versions
- pkg_mgr.php
The table shows Version for the package then
the dependencies show same package name with different ver... -
04:03 PM Todo #7582 (Rejected): diag_dump_states and non-existent IP
- diag_dump_states.php
enter a non-existent but valid IP address and will get a Kill States
button but no states list... -
04:01 PM Bug #7581 (Resolved): etc/pfSense.obsoletedfiles wrong path for diag_system_pftop.php
- /etc/pfSense.obsoletedfiles
has wrong path for diag_system_pftop.php
(missing www)
see 1af5edbf04e0e3bbbc55981f6fc... -
03:58 PM Bug #7580 (Resolved): pftop impossible options in web gui
- diag_pftop.php should not have sort options choices of Peak
and Rate since only useful
if have cached information ... -
03:56 PM Bug #7579 (Resolved): pftop size sort is same as none
- diag_pftop.php has "Size" for sorttype which is not a order type
known by pftop. (sort_size_callback in pftop is "By... -
03:35 PM pfSense Packages Bug #7578 (Resolved): Suricata -- Removing Hosts from Block Table via Alerts
- Hi there,
I am running the pfSense 2.4 beta with Suricata 3.2.1_1.
I have noticed that when clicking the leftmo... -
10:35 AM Todo #7577 (Resolved): growl and notification suggestions
- system_advanced_notifications.php has a button to test
growl, but no indication locally (in the GUI) if use... -
10:27 AM Todo #7576 (Needs Patch): invalid sysctl tunables
- system_advanced_sysctl.php allows adding a tunable with
a bogus name (like a space in it or doesn't exist) or bogus ... -
10:19 AM Bug #7575 (Resolved): openvpn client and --route-up
- vpn_openvpn_client.php
Does the route_no_exec feature for "Don't add/remove routes"
even work? I don't see any use ... -
10:16 AM Bug #7574 (Rejected): openvpn ifconfig using IP instead of subnet mask
/etc/inc/openvpn.inc
The openvpn manual says:
Note: Using - -topology subnet changes the interpretation of ...-
10:10 AM Todo #7573 (Resolved): openvpn tunnel networks and "second network address will be assigned"
- vpn_openvpn_client.php
text for Tunnel Networks says "The second network address will be assigned".
It uses openvpn... -
10:04 AM Bug #7572 (Resolved): openvpn client resolv-retry infinite issues
- vpn_openvpn_client.php and /etc/inc/openvpn.inc
Has checkbox to enable "Infinitely resolve server"
but the resolv-r... -
10:01 AM Bug #7571 (Rejected): openvpn client shortcut wrongly points to "server" configuration
- vpn_openvpn_client.php has Related settings shortcut to
vpn_openvpn_server.php
but that is misleading and for norm... -
09:59 AM Bug #7570 (Not a Bug): openvpn_wizard old error message
- openvpn_wizard.xml
skipped creating a cert and when finished it took me back to
select or add a certificate. After... -
09:57 AM Bug #7569 (Resolved): openvpn wizard reused settings cause wrong defaults
- wizards/openvpn_wizard.xml
This is a wizards behavior which can cause confusion or mistake.
A wizard saves its set... -
09:55 AM Bug #7568 (Resolved): unused openvpn client_mgmt_port ?
- vpn_openvpn_server.php
configures client_mgmt_port
but as far as I can tell this number is not used
and the manage... -
09:51 AM Bug #7567 (Resolved): unused openvpn address pool setting?
- vpn_openvpn_server.php
Address Pool
sets pool_enable.
I don't see any code that uses it, like not in /etc/inc/open... -
09:46 AM Bug #7566 (Rejected): need more dh-parameters files or generate it
- /etc/inc/openvpn.inc
used vpn_openvpn_server.php to set dh_length
but only three /etc/dh-parameters.NUM files are a... -
09:25 AM Bug #7565 (Resolved): openvpn and port 0
- openvpn_validate_port() has:
if (empty($value ...
so when passing zero to it complains
(because empty(0) is FAL... -
09:24 AM Bug #7564 (Resolved): l2tp broken logging shortut
- The logging shortcuts for vpn_l2tp.php and vpn_l2tp_users.php
and vpn_l2tp_users_edit.php all go to same:
status_lo... -
09:22 AM Feature #7563 (New): l2tp Suggestion: consider allowing IP/Subnet for the user.
- vpn_l2tp_users.php
Suggestion: consider allowing IP/Subnet for the user.
mtp supports this for restricting to a ran... -
09:21 AM Bug #7562 (Resolved): l2tp remoteip confusion
- in vpn_l2tp.php
Remote address range remoteip is required even if
RADIUS issued IPs radiusissueips is set.
Per v... -
09:19 AM Bug #7561 (Resolved): l2tp turn off local user database
- vpn_l2tp.php says when RADIUS is set "The local user database will
not be used."
and vpn_l2tp_users.php also shows:... -
09:17 AM Todo #7560 (Resolved): vpn_l2tp.php dns checks
- vpn_l2tp.php
recommend confirming that DNS servers l2tp_dns1 and l2tp_dns2
are IP addresses. Check this right in vp... -
09:14 AM Bug #7559 (Resolved): l2tp wins unused code
- vpn_l2tp_configure in /etc/inc/vpn.inc
can use $l2tpcfg['wins'] for NetBIOS name server (NBNS) information
but that... -
09:12 AM Bug #7558 (Resolved): l2tp configure kills and sleeps even if first time
- vpn_l2tp_configure in /etc/inc/vpn.inc
has killbypid and sleep(8) even if starting it for first time.
I suggest it ... -
07:06 AM Bug #6594: Package reinstallation post-config restore hangs if no Internet connectivity
- Hello everybody.
I'm at a customer site today with several branch offices. I sit at the head quarter and prepare thr...
05/19/2017
-
11:11 PM Revision 6bf2a650: pkg_edit, fix empty config tag check
-
04:21 PM Revision 03af3cfd: Use recently added hwaddr field to restore original MAC address
-
03:13 PM Revision 8ce97259: Use recently added hwaddr field to restore original MAC address
-
11:27 AM Revision 97b5bfe3: Use specific branch for gnid
-
08:00 AM Bug #7400: Traffic Graphs show bad data on 2.3.3_1
- Yhea, the scale can confuse. 2.4 have same same results. I need see on my interfaces Bandwidth on Mb/s . This can be...
-
07:55 AM Revision f0dc8b68: Make consistent rule information section
-
12:48 AM Bug #7557: Unbound (DNS Resolver) Domain Overrides need "." at the end to work
- It didn't work for me otherwise.
I want (or more correctly need) to forward DNS-Queries about my local domain to my ...
05/18/2017
- 08:48 PM Revision 2322e9f3: Removed htmlspecialchars when loading leases from config
-
04:53 PM Bug #6099: igmpproxy does not recognize upstream interface
- Rai Wol wrote:
> Can someone confirm its working in 2.4?
>
> Doesn't stop after 3-4 min?
igmproxy_all.zip mad... -
03:11 PM Bug #7256 (Resolved): syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- Working fine on the latest 2.3.x snapshots as well. Closing.
-
03:04 PM Bug #7557: Unbound (DNS Resolver) Domain Overrides need "." at the end to work
- No they don't. (Plus, .local is not valid use case in the first place, reserved for mDNS.)
-
06:42 AM Bug #7557 (Rejected): Unbound (DNS Resolver) Domain Overrides need "." at the end to work
- Adding domain overrides in unbound requires the format "company.local.", DNS Forwarder works with "company.local".
A... - 01:11 PM Revision ee8f5c6a: Improve indenting/readability
-
05:52 AM Feature #7556 (Duplicate): Adding keepalive fields to OpenVPN config rather than forcing defaults
- Duplicate of #3473
05/17/2017
-
11:49 PM Feature #7556 (Duplicate): Adding keepalive fields to OpenVPN config rather than forcing defaults
- "keepalive 10 60" is currently hardcoded into the OpenVPN configs. This simply adds configuration prompts to allow t...
-
06:21 PM Revision 77c53e65: virtualips, ability to sort the table
-
05:24 PM Bug #7400: Traffic Graphs show bad data on 2.3.3_1
- Scale of the graph is in MB/s while on the hosts bandwidth it shows in Mb/s. This accounts for a factor 8 difference....
-
04:16 PM Bug #6642: Cant access certain IP's
- It's a configuration issue, not a bug. Should have been closed sooner. This isn't a support system.
-
04:05 PM Bug #6642: Cant access certain IP's
- Is the issue resolved or why is it closed?
-
03:43 PM Bug #6642 (Closed): Cant access certain IP's
-
03:36 PM Bug #6642: Cant access certain IP's
- Not a firewall issue: http://cloud.wnb.dk/3r410y2N0D3f
- 03:53 PM Revision a828f612: Revert "Updated d3.js and d3pie.js to latest versions"
- This reverts commit 47d4784602466d723a84bb1af6d313c4ba5a0115.
-
03:07 PM Revision 37bcfa60: Backport changes for syslogd handling to fix #7256
- (cherry picked from commit 576cbe26c184734e93f59320d43aeb2e510c9804)
-
03:06 PM Revision 576cbe26: Backport changes for syslogd handling to fix #7256
-
03:04 PM pfSense Packages Bug #7555 (Resolved): Snort settings show translation metadata when creating a new interface that is not yet defined
- A few places in snort call @gettext("{$if_friendly}")@ but that ends up showing translation metadata when it is a new...
-
02:57 PM Revision eb3bee50: Backport syslogd service definition/control to RELENG_2_3. Ticket #4382
- (cherry picked from commit 5917696ded82c3343d52c03b850d4ce564a159b4)
-
02:57 PM Revision 5917696d: Backport syslogd service definition/control to RELENG_2_3. Ticket #4382
-
01:29 PM Feature #7554: Sort list of Virtual-IPs
- Pullrequest send: https://github.com/pfsense/pfsense/pull/3730
-
06:33 AM Feature #7554 (Resolved): Sort list of Virtual-IPs
- If you have a large number of Virtual IPs (VIPs) its very hard to keep track of them. A sort feature would be a great...
-
12:40 PM Bug #7553 (Confirmed): Captive portal on a parent interface blocks traffic on VLAN interfaces too
- This does appear to be the case on 2.3.x and 2.4.x. It used to work, not sure when it stopped.
That said we always... -
03:32 AM Bug #7553 (Resolved): Captive portal on a parent interface blocks traffic on VLAN interfaces too
- Using PfSense 2.3.4, I enabled a captive portal on interface em2. Then, as I needed another interface, I added a tagg...
-
10:20 AM Bug #7256: syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- Applied in changeset commit:576cbe26c184734e93f59320d43aeb2e510c9804.
-
10:09 AM Bug #7256 (Feedback): syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- As far as I've been able to tell, it appears that syslogd will not stay running in the background as a daemon when it...
-
12:28 AM Bug #7256: syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- Seems much better. Reinstalled haproxy a couple of times and syslogd keeps logging. Still wondering what's the real b...
-
10:10 AM Feature #4382 (Resolved): Add syslogd as a service under Status > Services
- This was merged a while ago and works well, now also merged back to RELENG_2_3 and RELENG_2_3_4
-
06:44 AM Feature #7085: Edit Firewall Rules Seperator
- +1! That would be great!
-
01:32 AM pfSense Packages Bug #6736: Snort fails to start after upgrade to 2.3.2-RELEASE
- 2.3.4-RELEASE (amd64)
built on Wed May 03 15:13:29 CDT 2017
FreeBSD 10.3-RELEASE-p19
snort security 3.2.9.2_1...
05/16/2017
-
06:04 PM Revision 72e2fb75: Fix kernel and kernel-debug packages on 11
-
06:04 PM Revision 0b62713f: Revert "Fix kernel and kernel-debug packages on 11"
- This reverts commit 46fff8a576813fa1dfa9a5289f8ca9e05583af3c.
- 05:49 PM Revision b880cf8c: t revert 47d4784602466d723a84bb1af6d313c4ba5a0115qMerge branch 'master' of gitlab.netgate.com:pfsense/pfsense
-
05:22 PM Revision 46fff8a5: Fix kernel and kernel-debug packages on 11
-
04:04 PM pfSense Packages Feature #7535: Snort messages filling System / General. Should have its own log.
- As far as I know, anything pertaining to logging is set to the default. It is set to send alerts to the system log. F...
-
03:30 PM pfSense Packages Feature #7535: Snort messages filling System / General. Should have its own log.
- Do you have it configured to log alerts to the system log? Otherwise, it does not put too much info into the system ...
-
04:03 PM Bug #7552: IPFW crashes on load or unload of modules
- Oi, you're right.
-
04:02 PM Bug #7552: IPFW crashes on load or unload of modules
- Jim Pingle wrote:
> Nowhere in the pfSense source does it ever kldunload ipfw.ko or dummynet.ko.
>
> Is there a w... -
03:27 PM Bug #7552 (Feedback): IPFW crashes on load or unload of modules
-
03:27 PM Bug #7552: IPFW crashes on load or unload of modules
- Nowhere in the pfSense source does it ever kldunload ipfw.ko or dummynet.ko.
Is there a way to replicate this usin... -
03:22 PM Bug #7552 (Rejected): IPFW crashes on load or unload of modules
- https://customercare.netgate.com/requests/show/index/id/20338
Complete kernel crash on Netgate branded servers. ... -
02:48 PM Bug #7256: syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- On the latest 2.4 snapshot I can install and uninstall tinc and haproxy and syslogd never dies, and it appears to rel...
-
02:26 PM Bug #7551 (Resolved): Dynamic IPsec endpoints not added to rule set after WAN down/up
- IPsec endpoint using FQDN as remote IPsec endpoint does not add rules for that endpoint after a single WAN down/up ev...
-
12:51 PM Revision 90429354: Update translation files
-
12:37 PM Todo #7546: d3pie version update
- can this be reverted on master too??
-
12:23 PM Revision 733a641f: Regenerate pot
-
06:58 AM Feature #7550 (Rejected): Free Radius &Mysql
- MySQL server should be run on a separate server or virtualized. This is a firewall, not a database server.
-
06:55 AM Feature #7550 (Rejected): Free Radius &Mysql
,as you Know , MySQL is important for Managing of Users
, lack of Mysql make , users have many problem
on free...
05/15/2017
-
08:54 PM Revision 3a0df77e: Refine some syslogd restarts, add a way to send it a HUP to reload w/o a full restart. Part of ticket #7256
-
08:30 PM Revision ddd54e83: auth_check, move the cmp_page_matches() to its own file so it can be shared by both auth_check.inc and priv.inc
-
07:20 PM Revision 38a47119: Small adjustment to dmesg parsing for CPU package/core count.
- 05:55 PM Revision 203b1110: Only add include section to unbound config when regovpnclients config option is enabled
-
05:41 PM Revision ae764da6: Enable Python support for Unbound. Implements #7549
- 05:40 PM Revision a357737c: Use full paths for more binaries
- 05:33 PM Revision a29361a2: Remove stray debug-code (/tmp/script)
- 04:23 PM Revision 48384795: Clarify checkbox help text
- 04:14 PM Revision bb38fe11: Always use braces around variable names
- 04:10 PM Revision 5d518166: Check whether tmp/config files exist before using/removing them
-
04:03 PM Bug #7256: syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- With commit:3a0df77eebf27d027d512a61dcbf80adefd630c4 I can now install/remove haproxy and tinc without affecting sysl...
-
05:18 AM Bug #7256: syslogd is not running after installing or uninstalling a package with logging (e.g. tinc, haproxy)
- Erm, guys, this is super-annoying. Lost logging on many boxes on recent HAproxy updates without realizing what happen...
- 03:38 PM Revision 035283be: Use full paths for binaries
- 02:28 PM Revision 76258fa4: Remove trailing whitespace
- 02:24 PM Revision e3657e09: When removing old entries, do not take into account new/changed IP
- 02:19 PM Revision f4e8b87a: Ensure that $IP can be used in a file name
- 01:51 PM Revision 58733b40: Validate domain parameter for the learn-address script
-
01:14 PM Revision ad31954e: Merge pull request #3725 from sestary/master
-
01:12 PM Revision 3000b44d: Use is_numeric() to make sure $prefix is not 0
-
01:12 PM Revision 64d2b953: Use is_numeric() to make sure $prefix is not 0
- 01:11 PM Revision fa946568: Fix parsing "::/0" as "::/128" on OpenVPN IPv6 Tunnel Remote network
- (cherry picked from commit 425656522f01ea6fe5f702c4b3b16a628054869e)
-
01:10 PM Revision f5775694: Merge pull request #3604 from enukane/fix/openvpn-ipv6-remote-netmask-0-treated-as-128
-
12:54 PM Revision 6c2f38f4: Enable snmptt package build
-
12:50 PM Feature #7549 (Feedback): Enable Python support in Unbound
- Applied in changeset commit:ae764da6ef91f0e9f440d423dfbdb72f44b33276.
-
12:40 PM Feature #7549 (Resolved): Enable Python support in Unbound
- Unbound has optional Python support, which is not currently enabled. Enabling this option will allow packages such as...
-
12:38 PM Revision df0b717d: Fix net.inet.ip.random_id tunable description (Bug #6087)
- (cherry picked from commit 77408e612de12311d9fd517b2de2de586f4c0ddb)
-
12:38 PM Revision 6605a0c3: Merge pull request #3556 from doktornotor/patch-3
-
12:27 PM Revision 8740bd5e: Request PD even if no interfaces are set to track6 (Bug #4544)
- See https://redmine.pfsense.org/issues/4544#note-4
(cherry picked from commit b0837cebf9836c4cdd5873b3e463f1afb8403811) -
12:27 PM Revision c4d3a133: Merge pull request #3559 from doktornotor/patch-4
-
12:11 PM Bug #6400: assign_interfaces.php issues with large numbers of interfaces
- I'm having the same issue with about 230 VLAN interfaces on 2.3.3.
Assign_Interfaces.php ist not usable and all conf... -
08:59 AM Todo #7507 (Resolved): Investigate and potentially add options for fast-io and sndbuf/rcvbuf tweaks to OpenVPN
- Thanks for testing!
-
12:37 AM Todo #7507: Investigate and potentially add options for fast-io and sndbuf/rcvbuf tweaks to OpenVPN
- we were already using those params as advanced settings till date and now that it appears in GUI it works well, can b...
-
07:54 AM Bug #4544: PD not requested if no interfaces set to track6
- Thanks as well. :)
-
07:28 AM Bug #4544 (Feedback): PD not requested if no interfaces set to track6
- PR has been merged, thanks!
-
05:30 AM Bug #4544: PD not requested if no interfaces set to track6
- Can someone kindly review the PR before it's again too late even for 2.4?
-
07:39 AM Bug #6087 (Feedback): Missmatching description to default value on net.inet.ip.random_id under system tunables
- PR has been merged, thanks!
- 06:23 AM Revision 3c6a58ef: Use braces around shell variables to reduce ambiguity
- 06:18 AM Revision 4f4de341: Only add learn_address script in tun-mode
- 06:18 AM Revision de8d3c07: Specify chroot and directory when testing config, use variables for common paths
- 06:18 AM Revision 0cc17a06: Register CN of OpenVPN clients in DNS Resolver
05/14/2017
- 03:15 PM Revision 2684f8d5: Revert "Updated d3.js and d3pie.js to latest versions"
- This reverts commit 47d4784602466d723a84bb1af6d313c4ba5a0115.
- 03:14 PM Revision b036b5e5: Revert "Updated d3.js and d3pie.js to latest versions"
- This reverts commit 47d4784602466d723a84bb1af6d313c4ba5a0115.
-
10:22 AM Todo #7546: d3pie version update
- Reverted
-
08:11 AM Todo #7546: d3pie version update
- Seems the compatibility check failed.
https://forum.pfsense.org/index.php?topic=130533.0... -
07:50 AM Feature #7529 (Resolved): CPU Type
-
01:12 AM Feature #7529: CPU Type
- works fine now, this can be closed
-
07:49 AM Todo #7545 (Resolved): OpenVPN 2.4.2
-
01:13 AM Todo #7545: OpenVPN 2.4.2
- new snap has upgraded openvpn now and works well, this can be closed
-
12:50 AM pfSense Packages Feature #7548: Add absolute offset stat to NTP monitoring display
- PR https://github.com/pfsense/FreeBSD-ports/pull/355
Has a full refactoring of the code first, then adding this feat...
05/13/2017
-
12:58 PM Revision f8339acf: Fix active AES-NI test. Ticket #7529
-
12:21 PM pfSense Packages Feature #7548: Add absolute offset stat to NTP monitoring display
- PR https://github.com/pfsense/FreeBSD-ports/pull/354 (now closed)
-
12:15 PM pfSense Packages Feature #7548 (Resolved): Add absolute offset stat to NTP monitoring display
- In Status Monitoring, NTP, the graph and stats data below it show the time offset. This varies plus and minus from ze...
-
08:00 AM Feature #7529: CPU Type
- I shuffled that block of code around so much trying to get the wording/formatting right that one slipped by. I pushed...
-
04:33 AM Feature #7529: CPU Type
- Looking at the commit, I think there is an error in functions.inc.php :
the line:
$cpucrypto_active = is_module_loa...
05/12/2017
-
07:09 PM Bug #7352: pfSense IPv6 static route is dumped after a WAN flap
- Michael Zieher wrote:
> What happens if you just open a page (WAN Interface maybe), click 'save' without changing an... -
05:42 PM Revision a84e59a2: Show if a CPU has AES-NI/CPU crypto support even if the module isn't loaded. Implements #7529
-
04:12 PM Bug #7547 (Resolved): Static routes using aliases are not automatically updated when alias content changes
- When adding a new static route into an Alias group the route does not populate until a resave.
Steps to reproduce:
... - 03:37 PM Revision d5530198: Updated d3.js and d3pie.js to latest versions
- Fixed #7546
(cherry picked from commit 47d4784602466d723a84bb1af6d313c4ba5a0115) - 03:35 PM Revision 47d47846: Updated d3.js and d3pie.js to latest versions
- Fixed #7546
-
02:47 PM Bug #4310: Limiters + HA results in hangs on secondary
- Hmmm.... this is very much no not ideal. :( I was going to do this in a new environment as we have soft limits in our...
-
12:50 PM Feature #7529 (Feedback): CPU Type
- Applied in changeset commit:a84e59a27094e3ccc4f13b596ff1bb80e3ae267a.
-
10:37 AM Todo #7546: d3pie version update
- Thanks Steve!
-
10:36 AM Todo #7546 (Resolved): d3pie version update
- Updated as requested
-
10:17 AM Todo #7546: d3pie version update
- Checking for compatibility
-
09:59 AM Todo #7546 (Resolved): d3pie version update
- pfSense has d3pie v0.1.6, while the latest version is 0.2.1
https://github.com/benkeen/d3pie
Can this ... -
09:37 AM Todo #7545: OpenVPN 2.4.2
- Great - I'll be sure to check it out when it's compiled into a snapshot.
Thanks Jim -
09:33 AM Todo #7545: OpenVPN 2.4.2
- I just cherry-picked the OpenVPN 2.4.2 port update commit to the ports branch for pfSense 2.4 snapshots, so the next ...
-
09:29 AM Todo #7545: OpenVPN 2.4.2
- Fantastic - that's great news.
James -
09:28 AM Todo #7545: OpenVPN 2.4.2
- Yep, that's already on our to-do list. It was just updated in the FreeBSD ports tree late last night.
The export p... -
09:26 AM Todo #7545 (Resolved): OpenVPN 2.4.2
- Hi there,
I am unsure whether the pfSense 2.4 version will include the OpenVPN 2.4.2 version or just 2.4. However,... -
09:11 AM Bug #7542 (Rejected): Enter Persistent CARP Maintenance Mode is broken in pfsense 2.4
- It works correctly on 2.3.4 and 2.4, no problems with a proper configuration. You may have something else wrong with ...
-
04:32 AM Bug #7542 (Rejected): Enter Persistent CARP Maintenance Mode is broken in pfsense 2.4
- Just upgraded my pfsense ha-cluster to v2.4. If i try to switch one of my nodes into persistent CARP maintenance mode...
-
06:46 AM pfSense Packages Bug #7543: pfBlockerNG doesn't appear to pull IP block lists that are marked as "OFF" if previously they were enabled
- It's a bug. The update message should reflect the deletion of the IP ranges associated with the list set to "OFF". ...
-
06:38 AM pfSense Packages Bug #7543 (Rejected): pfBlockerNG doesn't appear to pull IP block lists that are marked as "OFF" if previously they were enabled
-
06:25 AM pfSense Packages Bug #7543: pfBlockerNG doesn't appear to pull IP block lists that are marked as "OFF" if previously they were enabled
- Andrew - wrote:
> Please can you confirm whether pfBlockerNG is properly pulling lists of IPs that are changed from ... -
04:39 AM pfSense Packages Bug #7543: pfBlockerNG doesn't appear to pull IP block lists that are marked as "OFF" if previously they were enabled
- If you have various IPv4 lists and set one of them to "ON", but then subsequently set it to "OFF", it appears that pf...
-
04:35 AM pfSense Packages Bug #7543 (Rejected): pfBlockerNG doesn't appear to pull IP block lists that are marked as "OFF" if previously they were enabled
-
06:36 AM Feature #7544 (Rejected): Graphing hits against firewall rules.
- That is not possible, there is no such keyword for pf, and there isn't any viable way for us to handle that on the fi...
-
05:09 AM Feature #7544 (Rejected): Graphing hits against firewall rules.
- In the Extra Options in the filewall rule would it be possible to add the following under Log packets that are handle...
05/11/2017
-
08:57 PM Bug #4723: Can't forward UDP fragmented packets with scrubbing enabled.
- Conducted another test:
(From my workstation 10.3.70.40)
ping 10.11.2.15
ping -l 1500 10.11.2.15
(From my vir... -
08:38 PM Revision 83d2b83a: Allow a wider range of characters to be used in certificate fields, as laid out by RFC 4514. Fixes #7540
-
08:06 PM Revision d777679c: Start sending snapshots to nfs1
-
08:06 PM Revision 7a5b8b4e: Start sending snapshots to nfs1
-
07:53 PM Revision c07071cb: auth_check lowers cpu usage for checking if the user has permission for the page requested when used in place of guiconfig, especially useful for frequent requests like those made by stats and traffic widgets
-
04:03 PM Feature #7541 (New): ZFS Install, add hot spare option
- Since the 2.4 beta installer has the option to setup ZFS, and a lot of parameters, I would like to see the installer ...
-
03:50 PM Todo #7540 (Feedback): Fix ca/cert input validation to allow currently blocked characters
- Applied in changeset commit:83d2b83af9953ecbcc5917d935f077e7dabe8e10.
-
03:33 PM Todo #7540 (Resolved): Fix ca/cert input validation to allow currently blocked characters
- We currently prevent some valid characters from being used in fields such as Organization, such as ".", "!", "~", and...
-
02:27 PM Revision 9c34bf7b: Send files only to NFS1
-
02:26 PM Revision 449a980f: Send files only to NFS1
-
02:15 PM Revision d78520bd: Start sending files to nfs1.nyi
-
02:14 PM Revision a4e8ba01: Start sending files to nfs1.nyi
-
10:27 AM pfSense Packages Bug #7539 (Rejected): OpenVPN dashboard widget shows 1194 for client connections
- We report what OpenVPN's management interface reports. In this case, that is actually the remote client's _source_ po...
-
10:25 AM pfSense Packages Bug #7539 (Rejected): OpenVPN dashboard widget shows 1194 for client connections
- I have never submitted a bug before, but I have noticed this issue now that I have built a second VPN server to play ...
-
01:01 AM Revision 791bdfd5: Merge branch 'master' into if-stats-widget-settings
05/10/2017
- 09:05 PM Revision ed8dbc04: Fix the extra "of" in the help text.
-
07:55 PM Revision 7618a842: Add OpenVPN GUI Option for "sndbuf" and "rcvbuf", using the same value for both. Fixes #7507
-
06:59 PM Revision e9fe3847: Rename Netgate Coreboot Upgrade package directory to better reflect port name
-
06:59 PM Revision c564c8b3: Rename Netgate Coreboot Upgrade package directory to better reflect port name
-
06:56 PM Revision 12d2dedf: Rename Netgate Coreboot Upgrade package directory to better reflect port name
- 06:45 PM Revision 0bbcbe8b: get_pkg_info improve installed_pkgs_only case
- (cherry picked from commit dd6ecfa27246935ca03747162b802fcd4ba36100)
-
06:45 PM Revision 3459c6ec: Merge pull request #3719 from phil-davis/no-packages
-
06:28 PM Revision 6e0bfeb2: Merge pull request #3579 from frankthetank/dyndns_dreamhost
-
06:27 PM Revision c7937601: Merge pull request #3726 from phil-davis/multi-widget-optional
-
06:27 PM Revision dd3f0e7d: Merge pull request #3710 from phil-davis/edit-widget-title1
-
06:24 PM Revision 2df5d9ee: Add OpenVPN GUI option for "fast-io" to clients and servers. Ticket #7507
- Only compatible with UDP modes, and also not compatible with "shaper".
-
03:15 PM Revision 6ee05a88: Add "netstat -nWx" to status.php output
- (cherry picked from commit 6252b47062a3bf2be19a43be480fd0acd56b75d0)
(cherry picked from commit 5479efd16933d28d697b4... -
03:15 PM Revision 5479efd1: Add "netstat -nWx" to status.php output
- (cherry picked from commit 6252b47062a3bf2be19a43be480fd0acd56b75d0)
-
03:14 PM Revision 6252b470: Add "netstat -nWx" to status.php output
-
03:13 PM Todo #7507: Investigate and potentially add options for fast-io and sndbuf/rcvbuf tweaks to OpenVPN
- This seemed safe enough and reports of significant speed increases, especially on SG-1000, made this desirable for 2....
-
03:10 PM Todo #7507 (Feedback): Investigate and potentially add options for fast-io and sndbuf/rcvbuf tweaks to OpenVPN
- Applied in changeset commit:7618a842d54eade58007ab72c751b1f1a900f840.
-
12:37 PM Feature #7537 (Resolved): Include mellanox mlx4 and mlx5 ethernet driver
- Hello Devs,
I know you guys doesn't like infiniband, but since there is a lot of cheap option with mellanox card, ... -
11:35 AM Bug #7536 (Duplicate): <sendpacket> sendmsg on cpsw0: Permission denied
- I noticed the following log entry and I'm not sure what it indicates. This is on an SG-1000. I noticed this because I...
-
11:19 AM pfSense Packages Feature #7535 (New): Snort messages filling System / General. Should have its own log.
- I'm running 2.3.4. Snort is completely burying other messages in System / General. It should have its own log.
-
08:02 AM Bug #7534 (Not a Bug): gif interface with /64 subnet gets configured as /128
- A gif tunnel (with tunnelbroker.net) has been configured with /64 nets in GIF settings, as well as on OPT6 interface ...
-
06:17 AM Bug #7518 (Resolved): Not all language choices show selected text
-
05:19 AM Bug #7518: Not all language choices show selected text
- Fixed - all languages in the drop-down now work,
2.4.0-BETA (amd64)
built on Tue May 09 13:43:38 CDT 2017
FreeBSD ...
Also available in: Atom