Activity
From 07/22/2017 to 08/20/2017
08/20/2017
- 10:52 PM Revision 6380f917: Avoid JS error by always rendering mobile ipsec DIV, even if empty
- (cherry picked from commit 60138edbd4d7740c2d140e0d8fb4c5ee945db9e5)
- 10:51 PM Revision 60138edb: Avoid JS error by always rendering mobile ipsec DIV, even if empty
- 10:40 PM Revision 75863a79: Fixed #7787
- Always make an IPSec mobiles table, even if none have been configured. Prevents JS null value
error message on console -
06:36 PM Bug #7607: Chelsio T4/T5 CXGBE drivers not loaded as ALTq capable in the PfSense UI
- cxl occurs in the array.
-
06:35 PM Bug #7785 (Feedback): jQuery syntax error: unterminated regular expression literal
- Possibly resolved by #7784
-
05:57 PM Bug #7788: Irregular updating of widgets like cpu/uptime on system widget.
- This is a consequence of the central refresh system. It will be adjusted to accommodate multiple copies of the same w...
-
04:01 PM Bug #7788: Irregular updating of widgets like cpu/uptime on system widget.
- Was using:
2.4.0-BETA (amd64)
built on Fri Aug 18 00:32:41 CDT 2017
FreeBSD 11.0-RELEASE-p11 -
03:56 PM Bug #7788 (New): Irregular updating of widgets like cpu/uptime on system widget.
- It tells me cpu usage and uptime at intervals of 2 and 5 seconds. This looks kinda strange for the cpu bar that notab...
-
05:44 PM Bug #7787: IPsec widget, JS error in background when switching tabs, Cannot read property 'style' of null
- If no mobile clients are configured, no mobile DIV was being displayed, hence the null. The DIV is now always generat...
-
03:59 PM Bug #7787: IPsec widget, JS error in background when switching tabs, Cannot read property 'style' of null
- 2.4.0-BETA (amd64)
built on Fri Aug 18 00:32:41 CDT 2017
FreeBSD 11.0-RELEASE-p11 -
03:57 PM Bug #7787: IPsec widget, JS error in background when switching tabs, Cannot read property 'style' of null
- Would you post the exact software version you tested with please?
-
03:26 PM Bug #7787 (Resolved): IPsec widget, JS error in background when switching tabs, Cannot read property 'style' of null
- While changing tabs on the ipsec widget.
With 1 inactive tunnel, and no mobile ipsec configured. I get the following...
08/19/2017
- 05:52 PM Revision 24b20350: Merge branch 'RELENG_2_3_4' of gitlab.netgate.com:pfsense/pfsense into RELENG_2_3_4
- 05:50 PM Revision 6ed79b89: Fixed JSON format in IPSec widet per Kill Bill (Thanks!)
- (cherry picked from commit 2438b40dceaff2a23638be66018f8c9dc46d2e01)
- 05:36 PM Revision 2438b40d: Fixed JSON format in IPSec widet per Kill Bill (Thanks!)
- 05:34 PM Revision c79ab2c0: Fix JSON format for mobile IPSec data per Kill Bill (Thanks!)
- (cherry picked from commit ce3a6cfd365f171f6ffff86024a16dabb26803c8)
- 05:32 PM Revision ce3a6cfd: Fix JSON format for mobile IPSec data per Kill Bill (Thanks!)
-
12:59 PM Bug #7784 (Feedback): IPsec widget breaks dashboard loading
- Updated per your PR. Thank you!
-
08:44 AM Bug #7784: IPsec widget breaks dashboard loading
- OK, it's caused by the mobile tunnel. If you put...
-
08:04 AM Bug #7784: IPsec widget breaks dashboard loading
- Thanks for the information. We have still not been able to reproduce but will keep trying.
The IPSec tab you selec... -
07:45 AM Bug #7784: IPsec widget breaks dashboard loading
- There's just one IPsec tunnel (and mobile IPsec server). I don't think the OS/browser matters. Same thing with Chrome...
-
05:52 AM Bug #7784: IPsec widget breaks dashboard loading
- I am unable to reproduce.
Would you tell me your OS and browser versions please, as well as your current dashboard... -
03:11 AM Bug #7784 (Resolved): IPsec widget breaks dashboard loading
- CPU usage does not finish loading, interface statistics, NTP neither....
-
08:46 AM Feature #7495: Ability to set TTL for local for Unbound host overrides and dhcp leases
- Any traction on this? Would be very nice to be able to set ttl via gui for unbound overrides vs having to use custom...
-
03:42 AM Bug #7786 (Resolved): traffic shaping queue on WAN wont allow total of all child to be 100%
- i was setting up traffic shaping on a sg-1000, i found 2 issues:
firstly on wan i added a qinternet and set it to ... -
03:29 AM Bug #7785 (Resolved): jQuery syntax error: unterminated regular expression literal
- On dashboard, this keeps spamming the browser console over and over again....
08/18/2017
-
07:06 PM Revision 8919a708: Update ppp-linkdown
- Style fix
-
07:05 PM Revision 57b10843: Update ppp-linkdown
- 07:00 PM Revision 97d53173: PPP down script change
- 06:25 PM Revision 3a5b47dd: Interfaces menu "(Assign)" -> "Assigments"
- Add support for menu divider bars
-
01:38 PM Revision d1c9e8f9: Bump to 2.4.1-DEVELOPMENT
-
01:34 PM Revision 1fb9e078: Time to go for 2.4.0-RC
-
01:10 PM Bug #7038 (Resolved): SG-1000 Quagga zebra service fails to start with signal 6 abort
- Fixed with a workaround. We will get back to it at some point.
Mark as resolved for now. -
07:20 AM Bug #7038 (Feedback): SG-1000 Quagga zebra service fails to start with signal 6 abort
- Fixed both quagga and frr
-
01:05 PM Bug #7751 (Resolved): Duplicated traffic graphs
-
01:58 AM Bug #7751: Duplicated traffic graphs
- Thanks guys!
Confirmed working OK on todays snap :) -
12:02 AM Bug #7751 (Feedback): Duplicated traffic graphs
- Yeah, the packets are being counted twice, I overlooked this change.
It will be fixed in tomorrow snapshot.
Tha... -
12:50 PM Feature #7783 (New): Support for hosting VMs on pfSense using bhyve
- Seems like pfSense would make a great host platform for VMs using bhyve.
-
11:40 AM pfSense Packages Bug #7782 (Resolved): FreeRADIUS 3 - temporary FreeRADIUS CA/certificate generated on each package reinstall
- The code is pretty good to avoid user confusion and get things working out of the box, however it should set the conf...
-
11:19 AM Revision 726df7ce: Enable debug when building quagga to fix crash on ARM
-
10:36 AM pfSense Packages Bug #6603: pfblockerng's Unbound modifications leave system broken post-config restore
- Fed up with this issue. It breaks fresh 2.4 installs exactly as noted in the above comment - see https://redmine.pfse...
-
08:29 AM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
- Definitely confirmed as not fixed at all. The easiest way to reproduce is to exploit the pfBNG + unbound bug. Missing...
-
07:49 AM Bug #7701 (Rejected): Shell Command (daemon) Stops Other Services
- OK, I'm closing this since, as stated, it isn't a bug.
If you have a USB NIC problem, you will have to try replica... -
07:47 AM Bug #7701: Shell Command (daemon) Stops Other Services
- Yep, understood, and working round the USB NIC. But the shellcmd issue is only showing up in this case ... change the...
-
07:44 AM Bug #7701: Shell Command (daemon) Stops Other Services
- USB NICs are not suitable for routers. Definitely unrelated to shellcmd.
-
06:45 AM Bug #7701: Shell Command (daemon) Stops Other Services
- More debugging here, it seems to be due to the USB NIC driver ... trying to use it to access the network (at the shel...
-
06:36 AM Bug #7701: Shell Command (daemon) Stops Other Services
- There is literally no info to reproduce the problem, neither here, not on the forum thread.
-
07:29 AM Bug #7500 (Feedback): Upgrade From 2.3.3_p1 to 2.4 Fails (libssl.so.8 not found)
- Whatever happened at this point seems to be fixed now. I did several upgrades last days and all of them worked.
-
07:21 AM Bug #7750 (Feedback): unbound refuses ipv6 queries after reboot
- PR merged
08/17/2017
- 11:05 PM Revision c8dfbcbe: Remove dashboard update period stuff
- 11:04 PM Revision 73b5c257: Revise CPU load display to eliminate sleep in AJAX call
- (cherry picked from commit c4ec696bf9eae3f8dbbad30b2e0804b9bf7de4b6)
- 11:03 PM Revision c4ec696b: Revise CPU load display to eliminate sleep in AJAX call
- 10:36 PM Revision 0588e31a: No longer experimental so comment removed
- (cherry picked from commit 2ef62d38adee7126141c1b54489cd191f59adc54)
- 10:36 PM Revision 2ef62d38: No longer experimental so comment removed
- 10:33 PM Revision d244e201: No longer experimental so comment removed
-
07:03 PM Feature #7781 (New): Please Enable Rule Separators on Manual Outbound NAT
- Rule separators are available in port forwards (firewall_nat.php) but not manual outbound NAT. (/firewall_nat_out.php...
-
06:42 PM Revision 5ba35b98: Add the AWS ena module to MODULES_OVERRIDE list.
-
05:30 PM Revision ea4f7b62: Add Polish to GUI, it's over 75% complete
-
05:18 PM Revision 862415a5: Update translation files
-
05:13 PM Bug #1943: PPPoE won't reconnect after link loss when using vr(4) NICs on certain ISPs only
- I've run into this the other day... 2.3.4-RELEASE-p1 (amd64). I had to go into status -> interfaces and manually cli...
-
05:12 PM Revision e657fb91: Regenerate pot
-
04:51 PM Revision 44a7dbdc: Revert "Enable debug when building quagga to fix crash on ARM"
- This reverts commit 525bc9f1dbb32e7682fdf03e08e7d1bdc75cd53d.
-
04:51 PM Revision b1e20be8: Revert "Enable debug for frr too"
- This reverts commit c694655bb1511c169ff8b0a280c9b34c63e01815.
-
04:49 PM Revision c694655b: Enable debug for frr too
-
04:33 PM Revision 525bc9f1: Enable debug when building quagga to fix crash on ARM
-
03:50 PM Revision 5bd45ea3: Let more ports build on ARM
-
03:24 PM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
- Same issue as above.
Experienced issues with package updates not registering. Tried to run the command from CLI a... - 03:11 PM Revision 57cea206: Widget comment edit
- 03:05 PM Revision acd2f312: Re-write CPU usage calculation to avoid sleep in AJAX call
-
09:10 AM Bug #7779: Traffic crossing a site-to-site OpenVPN tunnel fails to fragment.
- Steve Wheeler wrote:
> In some circumstances traffic crossing an OpenVPN site-to-site tunnel with packets larger tha... -
08:54 AM pfSense Packages Bug #7780 (Closed): Blacklist update doesn't work on Firefox
- When I click in Download it does nothing. It works on Chrome.
Firefox 55.0.1 x86_64 on Arch Linux. -
08:28 AM Bug #7778: DHCP relay not working correctly with bridges
- It started OK, but did it actually function as intended?
-
08:23 AM Bug #7778: DHCP relay not working correctly with bridges
- I have done some testing as requested. The results:
1. Added bridge0 again between the VPN tap interface and lagg0... -
07:10 AM Feature #1904: DHCP server doesn't allow arbitrary config blocks
- I would second that, please add a possibility to add additonal dhcpd.conf options, for example i would like to implem...
08/16/2017
-
09:23 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
- Luiz Souza wrote:
> Can someone provide more info please ?
>
> Is the IPv6 connectivity up but the 6rd gateway is... -
05:08 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
- Can someone provide more info please ?
Is the IPv6 connectivity up but the 6rd gateway is still showing as down or... -
08:14 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
- Ole-Henrik Jakobsen wrote:
> Luiz Souza wrote:
> > Ok, I have committed a couple of new fixes after some tests.
> ... -
08:24 PM Revision 4531456d: Speedup package related calls to get_pkg_info() since now we have a script that update metadata periodically
-
08:24 PM Revision c66d4d95: Speedup package related calls to get_pkg_info() since now we have a script that update metadata periodically
-
08:18 PM Revision cc28e9b1: Speedup package related calls to get_pkg_info() since now we have a script that update metadata periodically
-
06:38 PM Revision 50a7cacc: shaper, hfsc cannot use priority, as such don't show the field in the webgui.
- Also for the other shapers 0 is a valid priority
While fairq causes a error loading rules with a priority above 7 so ... -
06:38 PM Revision 3e30b953: Merge pull request #3795 from PiBa-NL/20170808-hfsc-no-prio
-
06:38 PM Revision 4aa33c95: Some systems - only one that I am aware of, complain that unbound is starting before dchp6 has completed leading to problems, this occurs only on boot.
- Further examination did indeed show that the problem is caused by unbound starting before the dhcp6c - RTSOLD - rc.ne...
-
06:38 PM Revision 2f3ea7ab: Merge pull request #3799 from marjohn56/Unbound-start-delay
-
06:36 PM Revision 1efb0364: Merge pull request #3796 from eyJhb/master
-
04:21 PM pfSense Packages Bug #7756: suricata suricata_check_dir_size_limit() needs to be improved
- This bug is fixed in GUI package version 4.0.0 using the code submitted by the OP.
-
04:17 PM pfSense Packages Bug #7716: Suricata - Barnyard2 webui configuration updates result in base64-encoded value written to the config for the password
- This bug was fixed in GUI package version 3.2.2_3 via a Pull Request submitted by the OP.
-
04:12 PM pfSense Packages Bug #7578: Suricata -- Removing Hosts from Block Table via Alerts
- This bug is fixed in GUI package version 4.0.0.
- 02:40 PM Revision edbca480: Don't automatically update CIDR masks if the selector is disabled
- (cherry picked from commit a379a5ff12b170df3a27e643794e576caf316a44)
- 02:37 PM Revision a379a5ff: DOn't automatically update CIDR masks if the selector is disabled
- 02:34 PM Revision a7c47d85: Fixed #7625
-
02:03 PM Revision 866e537d: Do not use reference to avoid losing data
-
02:03 PM Revision f6b65ad8: Always run additional_config_upgrade() and do it after config is written
-
02:03 PM Revision 38c763aa: Fix indent/space
-
02:03 PM Revision acaafa7f: Check if specific config upgrade code already ran and skip it
-
02:03 PM Revision 4ed2e462: Add a function to be called every time convert_config() runs
-
02:03 PM Revision fb8c533a: Do not use reference to avoid losing data
-
02:03 PM Revision dce4b719: Ignore upgrade_167_to_168() when upgrade_166_to_167() runs, they are both the same
-
02:03 PM Revision dfbc4c22: Always run additional_config_upgrade() and do it after config is written
-
02:03 PM Revision df662ac4: Each item in additional_config_upgrade() must write config after changing it
-
02:03 PM Revision dff8f2bd: Detect old workarounds in config upgrade and deal with them
-
02:03 PM Revision 2c2a18e9: Bring upgrade_166_to_167() to 2.3 world
-
02:03 PM Revision 10ef2b55: Move workaround used to enable pkg metadata update cronjob to a generic mechanism
-
02:03 PM Revision 439baa2a: Check if specific config upgrade code already ran and skip it
-
02:03 PM Revision 3bf669d5: Add a function to be called every time convert_config() runs
-
02:03 PM Revision d3d9b707: Do not use reference to avoid losing data
-
02:03 PM Revision 671e0b7f: Ignore upgrade_167_to_168() when upgrade_166_to_167() runs, they are both the same
-
02:03 PM Revision 54e11642: Always run additional_config_upgrade() and do it after config is written
-
02:03 PM Revision 178cb159: Each item in additional_config_upgrade() must write config after changing it
-
02:03 PM Revision c241a84f: Detect old workarounds in config upgrade and deal with them
-
02:03 PM Revision b32e766a: Bring upgrade_166_to_167() to 2.3 world
-
02:03 PM Revision 9fe2e86a: Move workaround used to enable pkg metadata update cronjob to a generic mechanism
-
02:03 PM Revision 3aef796c: Check if specific config upgrade code already ran and skip it
-
02:03 PM Revision 55b4462a: Add a function to be called every time convert_config() runs
-
12:41 PM Bug #7779: Traffic crossing a site-to-site OpenVPN tunnel fails to fragment.
- Example, ticket 23040
-
12:21 PM Bug #7779 (New): Traffic crossing a site-to-site OpenVPN tunnel fails to fragment.
- In some circumstances traffic crossing an OpenVPN site-to-site tunnel with packets larger that the local network MTU ...
- 12:24 PM Revision 388189cf: Hide dashboard update period control. No longer needed with central refresh system
- (cherry picked from commit 5e024279579ec76486f7cff713eecdb83611ed37)
- 12:24 PM Revision 5e024279: Hide dashboard update period control. No longer needed with central refresh system
- 12:22 PM Revision 6c1f2a1c: Hide dashboard update period control. No longer needed with central refresh system
- 12:14 PM Revision 4d2ed8bc: Convert firewall logs widget to centralized refresh system
- (cherry picked from commit a8c2e827cfeaf74bc99227e087584eefb2c466f2)
- 12:13 PM Revision a8c2e827: Convert firewall logs widget to centralized refresh system
-
12:00 PM Bug #7502: Cannot set router lifetime to 0 in radvd
- I've opened a PR with a fix for this (not including i18n): https://github.com/pfsense/pfsense/pull/3801
- 12:00 PM Revision 0022b113: Convert firewall log widget to centralized refresh system
-
10:54 AM Bug #7592 (Feedback): SG-1000: Unbound not always restarting properly after changes in /etc/hosts
- Can you try this again? There have been several changes to unbound service handling and other areas over the last few...
-
10:52 AM Bug #7309 (Resolved): ZFS - Can't find zroot, error 5
- I haven't had any problems with Factory or CE installers and ZFS in a while now, it all works nicely.
-
10:42 AM Bug #7744 (Resolved): VLAN Priority options cause pf syntax error
- Works, no more syntax errors
-
10:07 AM Bug #7625: When creating IPv6 firewall rule for single host, netmask improperly displays
- That last change has corrected the behavior of CIDR selection for saved IPsec and VIPs, thanks!
-
09:40 AM Bug #7625 (Feedback): When creating IPv6 firewall rule for single host, netmask improperly displays
- Applied in changeset commit:a7c47d85270fcf8c784e6af61ea2fd09f9d4f5ac.
-
08:25 AM Bug #7625: When creating IPv6 firewall rule for single host, netmask improperly displays
- It is also happening for Virtual IP addresses and their CIDR masks
-
08:18 AM Bug #7625 (Confirmed): When creating IPv6 firewall rule for single host, netmask improperly displays
- This has caused a regression, see #7777
In IPsec P2, and presumably other places, a stored IPv4 CIDR mask of /24 i... -
08:39 AM Bug #7775 (Duplicate): When using limiters and transparent proxy at same time downloads aren't being limited
- #7389 is still open and is for the same issue
-
02:31 AM Bug #7775 (Duplicate): When using limiters and transparent proxy at same time downloads aren't being limited
- Tested on:
2.4.0-BETA (amd64)
built on Tue Aug 15 16:03:30 CDT 2017
FreeBSD 11.0-RELEASE-p11
I have my dow... -
08:33 AM Bug #7776 (Not a Bug): IPSec reconnects after changing virtual ip address settings
- If you modify a VIP, is it removed and readded to the interface. That could cause a tunnel attached to that VIP to dr...
-
03:26 AM Bug #7776 (Not a Bug): IPSec reconnects after changing virtual ip address settings
- Hello,
we are using pfSense 2.3.4-RELEASE-p1 with CARP HA.
After deleting, modifying or adding new virtual ip ... -
08:19 AM Bug #7777 (Duplicate): IPsec P2 - Tunnel IPv4 edition form changes remote network mask to /32
- I can confirm the behavior, but this is a regression from the work for #7625 - I put a note there, so this ticket can...
-
04:46 AM Bug #7777 (Duplicate): IPsec P2 - Tunnel IPv4 edition form changes remote network mask to /32
- Each time i am modifying P2 settings (Tunnel IPv4), remote network mask is changed back to /32.
So each time user ch... -
08:06 AM Bug #7778 (Feedback): DHCP relay not working correctly with bridges
- DHCP Relay has been prevented from running on bridges since it was first added to the GUI over 10 years ago. I don't ...
-
07:14 AM Bug #7778 (Resolved): DHCP relay not working correctly with bridges
- I have running a DHCP relay (IPv4) on 4 network interfaces, but it failed to work on 2 of them.
After looking int... -
02:27 AM Bug #7774: No TCP Reply State Established on GRE in IPsec Transport
- Updated both VMs to 2.4-BETA. Same behavior.
-
01:43 AM Bug #7774: No TCP Reply State Established on GRE in IPsec Transport
- Looks very similar to #6637.
-
01:40 AM Bug #7774: No TCP Reply State Established on GRE in IPsec Transport
- Disable IPsec Transport on both sides routing over GRE tunnel.
On Host A1:
$ telnet -4 smtp.gmail.com 587
Tryi... -
01:38 AM Bug #7774 (Duplicate): No TCP Reply State Established on GRE in IPsec Transport
- Reply state not established in pf for TCP connections through GRE tunnel when IPsec transport mode enabled between th...
- 12:18 AM Revision ca23e61e: Revert config version to 15.8 and remove upgrade script
- (cherry picked from commit d800d0f5babe2f6d7bb9a7de8afa709c28e930df)
- 12:17 AM Revision d800d0f5: Revert config version to 15.8 and remove upgrade script
08/15/2017
-
10:27 PM Revision df4c3517: Allow IPv6 RA default router lifetime of 0
- This is a legal value for this field, RFC 4861 section 4.2.
Fixes Redmine #7502. - 08:43 PM Revision b0e52a17: Add thermal_sensors.inc file to obsoleted files list
- (cherry picked from commit ef68bfa699f7fb1c68cb502dbe23ed3546b94b20)
- 08:43 PM Revision ef68bfa6: Add thermal_sensors.inc file to obsoleted files list
- 08:40 PM Revision 3b940f03: COnvert thermal sensor widget to central refresh system
- (cherry picked from commit 032f6a8963a51195946b6a823967d31af5fffbe0)
- 08:40 PM Revision 032f6a89: COnvert thermal sensor widget to central refresh system
- 08:20 PM Revision df8d3033: COnvert dyndns widget to central refresh system
- (cherry picked from commit 5efa7cae2f2df4974c7de19f00fe5b669fb73485)
- 08:19 PM Revision 5efa7cae: COnvert dyndns widget to central refresh system
- 07:54 PM Revision 1fead8ad: Added refresh icon to version display
- (cherry picked from commit b7a42d09d7ef010b34d6570fb5398b4f98f397b2)
- 07:53 PM Revision b7a42d09: Added refresh icon to version display
- 07:32 PM Revision 6e427ced: Add refresh icon to system info widget version display
- (cherry picked from commit 1557953af1d3a47bc508986688f0b285fa2b43e1)
- 07:31 PM Revision 1557953a: Add refresh icon to system info widget version display
- 07:26 PM Revision 27e6d494: Use central refresh system for dyndns widget
-
06:26 PM Revision e0e922da: Refresh cache every 2h when using GUI
-
06:26 PM Revision 987865d1: Make sure pfSense-upgrade return code is obtained instead of tail's one
-
06:26 PM Revision 569e55ae: Unset workaround used to set cronjob on 2.3.x
-
05:54 PM Revision 4ea84711: Refresh cache every 2h when using GUI
-
05:54 PM Revision 36f9a1ad: Refresh cache every 2h when using GUI
- 05:34 PM Revision 1f3ca824: Converted thermal sensor widget to use central refresh system
-
05:25 PM Feature #7773 (Closed): IPSec using IKEv2 with split DNS not using provided domain names
- I am not sure if this is rather a defect than a feature.
I am using IPSec with IKEv2. The VPN connection works gre... -
05:22 PM Revision 427674d9: Make sure pfSense-upgrade return code is obtained instead of tail's one
-
05:22 PM Revision 4e1a3d15: Make sure pfSense-upgrade return code is obtained instead of tail's one
-
04:48 PM Revision 0cb912b6: Add a workaround to register rc.update_pkg_metadata cronjob on 2.3 since config version cannot be bumped
-
04:48 PM Revision 262f5ebe: Add a workaround to register rc.update_pkg_metadata cronjob on 2.3 since config version cannot be bumped
-
04:31 PM Revision f6652784: Show user when pkg metadata was updated
-
04:31 PM Revision 13c9409f: Update cache when GUI successfully update pkg metadata
-
04:31 PM Revision 2d8c45ad: Consider only last output line
-
04:31 PM Revision 62121148: Speedup get_system_pkg_version() considering only installed packages
-
04:31 PM Revision 7f211807: Use cache file to show pfSense version information
-
04:31 PM Revision bf3fccff: Save pkg update return code
-
04:31 PM Revision 998a9d62: Run rc.update_pkg_metadata in background when repository changes
-
04:31 PM Revision df464c21: Remove dead code using in the past to migrate from pfSense-repo-devel to a single pkg called pfSense-repo
-
04:31 PM Revision 159d04ab: Make sure pkg metadata is updated at least once daily. It will be used to speedup GUI parts related to pkg update
-
04:26 PM Revision e65e4744: Show user when pkg metadata was updated
-
04:24 PM Revision 38aca285: Update cache when GUI successfully update pkg metadata
-
04:24 PM Revision aee59012: Consider only last output line
-
04:24 PM Revision de127ba6: Speedup get_system_pkg_version() considering only installed packages
-
04:24 PM Revision 51f9f8c2: Use cache file to show pfSense version information
-
04:24 PM Revision 870dcf67: Save pkg update return code
-
04:24 PM Revision 24ac6985: Run rc.update_pkg_metadata in background when repository changes
-
04:24 PM Revision 59c11dba: Remove dead code using in the past to migrate from pfSense-repo-devel to a single pkg called pfSense-repo
-
04:24 PM Revision 40a5a7d0: Make sure pkg metadata is updated at least once daily. It will be used to speedup GUI parts related to pkg update
- 12:02 PM Revision cabbaf7a: ipsec widget converted to JSON formatted refresh
- 11:45 AM Revision e0890bfd: System info widget prepared for background version checks
- 11:44 AM Revision 8e07e708: System info widget prepared for background version checks
-
10:45 AM pfSense Packages Bug #7766 (Resolved): ACME Package on 2.4 requires pecl-ssh2, which is not in base any longer
- Looks good!
-
07:58 AM Bug #7771 (Resolved): domain missing in reverse lookup of host overrides
- Looks good on the latest snapshot.
-
05:25 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
- Luiz Souza wrote:
> Ok, I have committed a couple of new fixes after some tests.
>
> Thanks for the report.
It...
08/14/2017
- 10:04 PM Revision 2156aa9d: Re-wrote ipsec widgt to return JSON formatted AJAX data
- (cherry picked from commit 067109d9fd64d8958408c7f9aaf30523319be91a)
- 10:02 PM Revision c814bc95: First part of dashboard update system
- (cherry picked from commit 8f3a49d7e9c22af2c97f92007aa23d2a45c8e697)
- 09:48 PM Revision 8dd64719: COmpleted conversion of dashboard widget to ventralized refresh system
- (cherry picked from commit fe0eb5b1112791cf28e98e00757c4645d6b9234a)
- 09:46 PM Revision fe0eb5b1: COmpleted conversion of dashboard widget to ventralized refresh system
- 09:46 PM Revision 067109d9: Re-wrote ipsec widgt to return JSON formatted AJAX data
- 09:46 PM Revision 8f3a49d7: First part of dashboard update system
-
06:17 PM Revision f704d091: Put the FQDN first in /etc/hosts to make dnsmasq happy when reverse resolving hostnames. Make a special exception for localhost. Fixes #7771
- (cherry picked from commit 0e78c2f544ad577234a0a2f87ce2e8caefdfdb77)
(cherry picked from commit de7d6cb87d600c6e093aa... -
06:17 PM Revision de7d6cb8: Put the FQDN first in /etc/hosts to make dnsmasq happy when reverse resolving hostnames. Make a special exception for localhost. Fixes #7771
- (cherry picked from commit 0e78c2f544ad577234a0a2f87ce2e8caefdfdb77)
-
06:16 PM Revision 0e78c2f5: Put the FQDN first in /etc/hosts to make dnsmasq happy when reverse resolving hostnames. Make a special exception for localhost. Fixes #7771
- 05:13 PM Revision 439ae979: Adding widget and login css files
- 05:12 PM Revision 8dce797c: Adding widget and login css files
- 05:06 PM Revision 60d2ae47: Add Netgate Services and Support widget
- (cherry picked from commit 179991b76e7a330a98ea520531551dfd6befb0b3)
- 05:06 PM Revision 179991b7: Add Netgate Services and Support widget
- 04:49 PM Revision 6e22caab: New login design back-ported from 2.4
- (cherry picked from commit 1605d94079fed5822ef1069eee05541d0ebc20ca)
- 04:49 PM Revision 1605d940: New login design back-ported from 2.4
-
03:50 PM Bug #7625: When creating IPv6 firewall rule for single host, netmask improperly displays
- Looks like it broke loading /interfaces.php?if=lan with static ip masks for both IPv4 and IPv6 now defaulting to 32 a...
- 02:38 PM Revision fde09aa8: Revise error page to comply with login page style
-
02:34 PM Bug #7771: domain missing in reverse lookup of host overrides
- It works with your changes, thanks!
-
01:30 PM Bug #7771 (Feedback): domain missing in reverse lookup of host overrides
- Applied in changeset commit:0e78c2f544ad577234a0a2f87ce2e8caefdfdb77.
-
12:35 PM Bug #7771 (Confirmed): domain missing in reverse lookup of host overrides
- I'll take a look at this closer. I changed the order there since it made the code more consistent and it eliminated a...
-
12:46 PM Bug #7768 (Not a Bug): DNS misorder under OpenVPN server configuration
- The order is correct in the OpenVPN configuration and how it is pushed to clients. If your client is choosing a diffe...
-
12:36 PM Bug #7742: 1:1 NAT for IPv6 applies wrong subnet mask to "Single Host"
- -While working through ticket #25935 with Chris Linstruth (from Netgate support) I just observed something very odd o...
-
12:31 PM Bug #7772: Regression of Bug #906
- Found this forum post where someone else had an issue with this from deleting VLAN interfaces as well: https://forum....
-
12:27 PM Bug #7772: Regression of Bug #906
- Please let me know what if any information beyond this you need from me and I will be happy to provide it to help det...
-
12:23 PM Bug #7772 (Resolved): Regression of Bug #906
- I read the bug and it says the interface delete code removes firewall rules and that the bug was resolved back in 201...
-
12:24 PM Bug #7770: php suhosin mdule error in crash report every boot on latest 2.4 snapshot
- they did come back after it was cleared, but I think as you said since it was half a year ago and its gone now on the...
-
12:08 PM Bug #7770 (Resolved): php suhosin mdule error in crash report every boot on latest 2.4 snapshot
- OK. Coming from one that old it's a bit more unpredictable. Some errors are expected due to library changes, PHP may ...
-
11:53 AM Bug #7770: php suhosin mdule error in crash report every boot on latest 2.4 snapshot
- I believe it was in january but it may have been february as I have this image still on my hdd.
pfSense-CE-2.4.0-B... -
11:43 AM Bug #7770 (Feedback): php suhosin mdule error in crash report every boot on latest 2.4 snapshot
- Do you happen to recall which snapshot you were on before that update?
-
11:23 AM Bug #7770: php suhosin mdule error in crash report every boot on latest 2.4 snapshot
- I have since clean installed the latest snapshot and the problem is gone, so it looks like the problem was a failure ...
-
10:52 AM Feature #7746: Proxy NDP
- Looking at "how that package operates":https://github.com/AlexandreFenyo/ndproxy#ndproxy as a KLD and using pfil, I d...
-
09:00 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
- Ok, I have committed a couple of new fixes after some tests.
Thanks for the report. -
08:20 AM Feature #7598 (Resolved): Static IPv6 using IPv4 PPPoE as parent interface
-
04:24 AM Feature #7598: Static IPv6 using IPv4 PPPoE as parent interface
- Resolved
08/13/2017
- 07:36 PM Revision 68c4142e: Merge pull request #3800 from phil-davis/patch-1
-
04:22 PM Feature #7746: Proxy NDP
- It looks like now there is a possible solution of decent quality that can be further built upon to integrate in pfSen...
-
12:13 PM Bug #7771 (Resolved): domain missing in reverse lookup of host overrides
- Add a host override in DNS Forwarder (dnsmasq):
* Host: myhost
* Domain: mydomain
* IP address: 1.2.3.4
Forwa... -
04:36 AM Revision e58d4ccd: Comment typos
08/12/2017
-
03:23 PM Bug #7027: Dynamic DNS dyndns.org no longer updates
- please confirm that dyn.com now requires use of 'client updater key'. this is not an issue with pfsense. a hidden inf...
-
11:21 AM Bug #7770 (Resolved): php suhosin mdule error in crash report every boot on latest 2.4 snapshot
- I updated today to snapshot 20170812.0957
This error persists on every boot as a crash report
@PHP Errors:
[12... -
10:07 AM Feature #7769 (Resolved): DynDNS: Azure integration, update record in Azure (Dynamic DNS Client)
- Hi
I'm woundering if there are anyone (other than me) that are interested in a Dynamic DNS Client for Azure? I'm hav... -
09:52 AM Bug #7751 (Confirmed): Duplicated traffic graphs
- This has happened before in #3314 and was fixed in https://github.com/pfsense/pfsense-tools/commit/ad55e66a3fb817f8e5...
-
05:36 AM Revision ba969e67: Fix a couple of 'route: writing to routing socket: Invalid argument' warnings during the boot.
- Use the correct variable and only add the route when the hostname is resolved (if the remote address is a hostname).
... -
04:21 AM Revision 363a5c4c: Do not run the dpinger when the IPv6 address has the tentative flag even after the timeout.
-
03:55 AM Revision b76e0bae: Disable the DAD on the stf interface. This prevents the dpinger from start.
-
12:57 AM Bug #7768 (Not a Bug): DNS misorder under OpenVPN server configuration
- Hi,
I Believe I have discovered a little bug in the openVPN server config page. When configuring the DNS servers b...
08/11/2017
- 07:30 PM Revision 8150bd51: Fixed #7625
- By:
Separating the source and destination onChange functions
Preventing the mask selector from being automatically up... -
06:59 PM Revision a0678b0b: Build FRR package instead of FRR directly
-
04:02 PM Feature #3718: radvd - enhancement proposal: ability to advertise routes and some fixes - patches attached
- Updated the patch for version 2.3.4.
-
02:38 PM Revision b57a87b3: Refresh metadata before an upgrade
- 02:32 PM Revision 9d14b22c: Spelling :(
-
02:31 PM Bug #7625 (Feedback): When creating IPv6 firewall rule for single host, netmask improperly displays
- Fixed JavaScript in firewall_rules_edit.php and pfSense.js
-
12:26 PM Bug #7625: When creating IPv6 firewall rule for single host, netmask improperly displays
- Steve will handle that
- 02:30 PM Revision 979bbbd4: Improve comments
- 02:24 PM Revision e38ba356: Add AJAX version check
-
01:27 PM Revision cbaf07f4: Show user when pkg metadata was updated
-
12:58 PM Bug #7750: unbound refuses ipv6 queries after reboot
- For the record, this problem is also present in 2.3.x for users of the "do not wait for RA" setting.
-
12:56 PM Bug #7750: unbound refuses ipv6 queries after reboot
- Proposed fix - https://github.com/pfsense/pfsense/pull/3799
-
12:54 PM Bug #7750 (Assigned): unbound refuses ipv6 queries after reboot
-
12:39 PM Bug #7750: unbound refuses ipv6 queries after reboot
- Martin Wasley wrote:
> Commit #3799
This fix works perfectly.
Thank you very much. -
01:47 AM Bug #7750: unbound refuses ipv6 queries after reboot
- Commit #3799
-
12:46 PM Bug #3932: Captive portal with greater than 9000 permanent MAC addresses causes timeout in loading CP
- It really needs to be re-engineered
-
12:42 PM Revision 429091c8: Update cache when GUI successfully update pkg metadata
- 12:27 PM Revision a9ad771b: Change refresh link to icon
-
11:55 AM Revision 474b3a2f: Consider only last output line
-
10:34 AM Feature #7767 (Resolved): OCSP support for OpenVPN server
- It would be great to have a possibility to enable OCSP checking for OpenVPN Server included in pfSense. It seems to b...
-
09:57 AM Bug #6782 (Feedback): pkg update can trigger multiple updates per second
- Many improvements were made to reduce the times pkg checks remote metadata. I looks much better now.
-
09:52 AM pfSense Packages Bug #7766 (Feedback): ACME Package on 2.4 requires pecl-ssh2, which is not in base any longer
- Version 0.1.19 should be fine
-
09:28 AM pfSense Packages Bug #7766: ACME Package on 2.4 requires pecl-ssh2, which is not in base any longer
- Looks like we'll have to make a new port for it since the current pecl-ssh2 is only compatible with php 7+
-
09:02 AM pfSense Packages Bug #7766 (Resolved): ACME Package on 2.4 requires pecl-ssh2, which is not in base any longer
- commit af1ebe36a4787997f37a3cc1c1a9178e86286508 in the FreeBSD-ports repo removed pecl-ssh2 from the list of dependen...
-
09:03 AM pfSense Packages Bug #7208: ACME ftpwebroot doesn't work
- Dmitry Ivanov wrote:
> Fatal error: Call to undefined function pfsense_pkg\acme\ssh2_connect() in /usr/local/pkg/acm... -
12:33 AM pfSense Packages Bug #7208: ACME ftpwebroot doesn't work
- PFSense 2.4.0
ACME 0.1.18
Fatal error: Call to undefined function pfsense_pkg\acme\ssh2_connect() in /usr/local/p... -
07:42 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
- Luiz Souza wrote:
> The 6to4 tunnel regression was fixed in the latest snapshot. 6rd situation has improved too, pl... -
02:17 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
- The 6to4 tunnel regression was fixed in the latest snapshot. 6rd situation has improved too, please retest.
-
06:29 AM Revision 881fb186: Some systems - only one that I am aware of, complain that unbound is starting before dchp6 has completed leading to problems, this occurs only on boot.
- Further examination did indeed show that the problem is caused by unbound starting before the dhcp6c - RTSOLD - rc.ne...
-
01:54 AM Bug #7751: Duplicated traffic graphs
- Hi!
New details posted here: https://forum.pfsense.org/index.php?topic=134506.0
Seems that it is pfSense bug sinc... -
12:13 AM Revision 71d0b5f8: remove old logo from default page
-
12:02 AM pfSense Packages Bug #7729: pfBlockerNG orders NAT licked rules to the bottom of firewall rules
- Fixed in *PR#390*:
https://github.com/pfsense/FreeBSD-ports/pull/390/files
08/10/2017
-
10:25 PM Revision d4fbf5b7: Speedup get_system_pkg_version() considering only installed packages
-
08:26 PM Revision e8f8aeb6: Use cache file to show pfSense version information
-
08:26 PM Revision ca773220: Save pkg update return code
-
08:26 PM Revision c47f209b: Add a protection to prevent ending up with duplicate crontab entry
- 05:57 PM Revision c2e98b94: Revised Netgate Services and Support widget to use AJAX when refreshing the data
- 03:07 PM Revision 94bb17b2: dyndns: changed CloudFlare to Cloudflare - correct spelling
- 02:07 PM Revision 7dfb18da: Update interfaces.php
- Updated as per style guidelines (??) I'm new here, please say if still not right!
- 02:01 PM Revision c2fae874: Update system_update_settings.php
- Tidied the Dashboard update settings text
-
01:50 PM Revision 1371aa1a: Update translation files
-
01:45 PM Revision eb7b4235: Regenerate pot
-
01:45 PM Revision 3cf5ed75: Sort languages alphabetically (in English)
-
01:44 PM Revision 0ced79ef: Add Dutch to GUI, it's over 75% complete
- 01:38 PM Revision ef863b31: Update interfaces.php
- Updated description of "System / Advanced / Firewall & NAT settings"
-
01:31 PM Revision b58c1588: Run rc.update_pkg_metadata in background when repository changes
-
01:29 PM Revision 52e827ac: Remove dead code using in the past to migrate from pfSense-repo-devel to a single pkg called pfSense-repo
-
01:09 PM Revision e506cc8a: Make sure pkg metadata is updated at least once daily. It will be used to speedup GUI parts related to pkg update
- 10:42 AM Revision 5b194e16: dyndns: added password help text for cloudflare
-
08:35 AM Bug #7765 (Duplicate): Openvpn / WebGUI bug ?
- The problem is unrelated to OpenVPN, that's a symptom of the actual bug, which is PHP getting wedged. Already covered...
-
08:15 AM Bug #7765 (Duplicate): Openvpn / WebGUI bug ?
- Hi,
i don´t really know where too look or how to debug my problem.
Six servers are connected to my local network vi... -
07:18 AM pfSense Packages Bug #7764 (Not a Bug): Basic setup of squid + squidguard + ssl interception + transparent proxy produces https://http/* error.
- It has to be something in your settings causing this. I can't reproduce it here. I have a working MITM transparent se...
-
06:23 AM pfSense Packages Bug #7764 (Not a Bug): Basic setup of squid + squidguard + ssl interception + transparent proxy produces https://http/* error.
- Check this serverfault question:
https://serverfault.com/questions/866660/pfsense-squid-https-filtering-error-url-ca... -
02:12 AM Bug #7750: unbound refuses ipv6 queries after reboot
- Patch a921c7da1d1a0529e2f490d3a2d7d19ddfc82036
Commit to main repo will happen once all O.K is given by UK testers.
08/09/2017
-
10:16 PM Bug #7116 (Resolved): a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
-
07:11 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- I can also confirm that the issue seems fixed. Steps taken:
* Deleted all shaping firewall rules
* Deleted traffi... -
05:13 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- I can now see traffic in all of the queues where there should be traffic. It does indeed seem to be fixed. Any chan...
-
04:43 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- Seems to work properly for my test box. Thanks!
-
02:28 PM Bug #7116 (Feedback): a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
- Fixed in the latest snapshot.
- 06:19 PM Revision e78d5940: Ensure the callback function exists before calling
- 03:41 PM Revision 8bf4cf1f: gateway, ntp, and openVPN widgets updated
-
03:34 PM Feature #5112: LDAP support for Captive Portal
- https://github.com/pfsense/pfsense/pull/3117 implementation works on 2.4 BETA 09 Aug 2017
- 03:03 PM Revision 634bb06a: Remove ajax stuff from installed packages widget
- 02:50 PM Revision 67dd6c11: dd system information widget to central refresh system
- Add ability for a widget to specify how often it wants to be updated
-
02:23 PM Bug #7763 (Resolved): IX driver - fails to recognize media type with SFP after link drop
- An issue was discovered by a customer running LAGG on ix0 and ix1 on the XG-2758. If a physical link to one of those ...
- 01:24 PM Revision ec922197: Revise upgrade script to insert support widget at the top of column 2
- Add old support widget to obsolete files list
-
11:28 AM Revision ad950c6e: Update translation files
-
11:12 AM Bug #6318: IPsec dashboard widget causes GUI failure
- Sounds like a fantastic change. Thanks Steve
-
11:08 AM Bug #6318 (Feedback): IPsec dashboard widget causes GUI failure
- I have done a LOT of research into this. I believe that since most dashboard widgets have their own timer, their own ...
-
11:04 AM Revision 00def017: Regenerate pot
-
09:41 AM Todo #7762 (Resolved): Add uid check to pfSense-upgrade and exit unless it is run as uid=0
- Running pfSense-upgrade as a non-root/admin user will produce errors that are not obviously related to lacking privil...
-
07:31 AM Feature #7761 (New): Add a way to match on IPv6 proto=0 (hop-by-hop header extension)
- https://tools.ietf.org/html/draft-ietf-opsec-ipv6-eh-filtering-03#section-3.4.1
> Since this EH is required to be ... - 02:07 AM Revision 4c05e19b: Repair broken AJAX response (POST vs GET)
08/08/2017
- 08:00 PM Revision 60f485ed: interface_statistics widget added to central refresh system
- 07:51 PM Revision 53547a05: Add ipsec widget to new centralized refresh system
-
07:07 PM Revision 41799195: shaper, hfsc cannot use priority, as such don't show the field in the webgui.
- Also for the other shapers 0 is a valid priority
While fairq causes a error loading rules with a priority above 7 so ... - 05:42 PM Revision d7c2f4fe: Experimental centralized widget refresh system
- Used by the interfaces.widget.php widget only for now
-
05:40 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
- Luiz Otavio O Souza wrote:
> The 6rd patch was committed to 2.4 and is available on the latest snapshots. Tests are... -
05:29 PM Bug #7605: State Killing on Gateway Success
- It would be a good idea to have a second option to kill states on recovery to keep working states intact if desired. ...
-
03:22 PM Bug #6099: igmpproxy does not recognize upstream interface
- For the records:
Mr J wrote on https://forum.pfsense.org/index.php?topic=134795.0
> These instructions by james_h... -
01:54 PM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
- Just happened to me, moments ago.
Backup up a 2.3.4 machine (server is unstable) and replaced the server hardware ... -
11:53 AM pfSense Packages Bug #7756: suricata suricata_check_dir_size_limit() needs to be improved
- Thanks! Another user had also submitted a fix for the EVE JSON log rotation issue. I asked him about incorporating ...
-
11:43 AM pfSense Packages Bug #7756: suricata suricata_check_dir_size_limit() needs to be improved
- Filed https://github.com/pfsense/FreeBSD-ports/pull/389
08/07/2017
-
10:59 PM Revision 71783286: make css compatible with newer nvd3 version
-
10:16 PM pfSense Packages Bug #7756: suricata suricata_check_dir_size_limit() needs to be improved
- I'm the volunteer package maintainer for Suricata on pfSense. Thank you for providing a patch to go along with your ...
-
07:32 PM Bug #7412: rtsold will not run on VLAN interfaces
- Has progress been made on this bug? Thanks.
-
06:10 PM Revision 5d336c75: Change IPsec widget tunnel status to handle newer strongSwan childid format. Fixes #7499
- (cherry picked from commit 4de753e52d8bbc732f23f90dd77df1707fbc3912)
-
05:56 PM pfSense Packages Bug #7267: Status Traffic Totals - Stacked Bar - Scale not high enough
- This should be fixed in the newer versions of nvd3. I am attempting to upgrade, but there are some kinks to work out.
- 03:04 PM Revision 2306b30e: Update config version
- 03:01 PM Revision 4918554d: Fix upgrade 166 to 167 script
-
02:28 PM Feature #7760 (Rejected): Reverse FQDN lookop from firewall rule
- The method for tracking hostnames requires aliases. Using them in rules directly is not possible in pf, and rewriting...
-
02:18 PM Feature #7760 (Rejected): Reverse FQDN lookop from firewall rule
- Currently to use a FQDN in a firewall rule you need to add an alias for it. The alias documentation states:
"Hosts ... - 02:19 PM Revision 2348f688: Rename support widget refresh link to match new widget name
- 01:31 PM Revision 640d1b64: pfSense 2.4 setHelp syntax was applied to v 2.3 - arguments should be provided in an array
-
12:59 PM Bug #7759 (Closed): No version control number showing when going to System > Update
- I am currently on 2.4.0.b.20170802.0604
When I goto System > Update it shows the attached picture (just "Warning" ... -
12:51 PM Bug #6099: igmpproxy does not recognize upstream interface
- Some of these reports seem to miss one very important information: which version of IGMP is used.
IMHO igmpproxy d... -
07:13 AM Bug #6099: igmpproxy does not recognize upstream interface
- igmpproxy does indeed work 100% for UK BT TV, BT Sport 4K (IPTV over BT Infinity FTTC/P) in ver. 2.4.0-BETA (Version ...
-
07:08 AM Bug #6099: igmpproxy does not recognize upstream interface
- Please take this discussion to the forum, mailing list, reddit, etc. If it runs for a few minutes then it is absolute...
-
06:35 AM Bug #6099: igmpproxy does not recognize upstream interface
- _
-
03:43 AM Bug #6099: igmpproxy does not recognize upstream interface
- The way I use igmpproxy it works properly. There are many posts above from other people who confirmed that IPTV works...
-
11:47 AM Todo #6885 (Feedback): Add vectorized logo in web interface
- This was fixed in this commit: https://github.com/pfsense/pfsense/commit/b8047a1f1d5e5fb529e716a349f153ea3a78280a
-
11:38 AM Bug #7415 (Feedback): favicon is not correctly implemented
- This was fixed in the following: https://github.com/pfsense/pfsense/commit/e7d63f568c8e3982ee8f39387369778789593075
-
07:22 AM pfSense Packages Bug #7758 (Not a Bug): Error on squid
- That is most likely due to either a compatibility issue with your cipher selection in squid and that site, or with sq...
-
02:08 AM pfSense Packages Bug #7758 (Not a Bug): Error on squid
- I deployed pfsense 2.3.4 and installed Squid 3.5.26. I config squid in transparent mode and enable HTTPS/SSL intercep...
-
06:49 AM Todo #6606 (Resolved): Adapt captive portal to work without multi-instance ipfw
08/06/2017
-
09:47 PM Bug #7750: unbound refuses ipv6 queries after reboot
- This problem is also present in 2.3.4. I had not noticed it previously, because I never attempted to perform nslookup...
-
03:11 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
- I believe a recent change here may have broke 6to4 tunnel on WAN..
https://forum.pfsense.org/index.php?topic=13474... -
03:05 PM Bug #6099: igmpproxy does not recognize upstream interface
- _
-
02:21 PM Bug #6099: igmpproxy does not recognize upstream interface
- Mr J wrote:
> Maybe Luiz Otavio O Souza should just FIX the bug for version 2.40 ????!!!!
Probably its not the be... -
09:24 AM Bug #6099: igmpproxy does not recognize upstream interface
- _
-
12:33 AM Todo #6606: Adapt captive portal to work without multi-instance ipfw
- Spent a few minutes on it. Everything seems to be working again.
08/05/2017
-
11:16 PM Todo #6606: Adapt captive portal to work without multi-instance ipfw
- Will check it out and report back when I get to the house.
-
11:05 PM Todo #6606 (Feedback): Adapt captive portal to work without multi-instance ipfw
- Fixed in the latest snapshots.
-
11:04 PM Bug #7272 (Feedback): 6rd not functioning on 2.4.0-BETA
- The 6rd patch was committed to 2.4 and is available on the latest snapshots. Tests are much appreciate.
-
11:17 AM pfSense Packages Bug #7753 (Not a Bug): "Bypass Proxy for These Source IPs" does not seem to be working anymore
-
10:26 AM pfSense Packages Bug #7753: "Bypass Proxy for These Source IPs" does not seem to be working anymore
- This ticket should be closed. "Bypass Proxy for These Source IPs" works as expected.
-
03:50 AM Bug #7757 (Not a Bug): Auto Config Backup fails to upload unless Default Gateway is up
- Auto Config Backup will not upload when a Secondary WAN is active and the Primary WAN is down and Failover/Load balan...
08/04/2017
- 07:32 PM Revision 43b3e9c3: Force the support widget to show when a user upgrades to this version
-
02:15 PM Revision ba43afdb: Remove .empty files from trusted/revoked directories
-
02:15 PM Revision f48b3573: Remove .empty files from trusted/revoked directories
-
12:29 PM Revision 8494a4f2: Merge pull request #3794 from PiBa-NL/20170803-compact-red-theme-logo
-
11:18 AM pfSense Packages Bug #7756 (Resolved): suricata suricata_check_dir_size_limit() needs to be improved
- The cleanup process in suricata_check_dir_size_limit() is not very optimal. There are a couple issues:
- It immed... -
05:11 AM pfSense Packages Bug #7755 (Closed): Avahi package is not secure by default
- pfSense Avahi Plugin is insecure per default and may at least cause internal information leaking to wrong network zon...
-
03:57 AM Bug #7754 (Not a Bug): Cannot access "WebCfg - OpenVPN: Client Export Utility" without also granting access to "WebCfg - OpenVPN: Servers"
- I tried to create a local group for admins with limited access and I only want that group to be able to export OpenVP...
08/03/2017
-
09:28 PM Revision 6c173a22: Theme Compact-RED, adopt new logo for theme sizing navbar size
-
08:09 PM Bug #6406: Web process becomes unresponsive producing 502 Bad Gateway nginx
- All I have to do to cause this is just leave the dashboard web page open. The problem happens anywhere from 1 hour to...
-
07:01 PM Bug #6406: Web process becomes unresponsive producing 502 Bad Gateway nginx
- Thanks for your offer. I have been working on this issue all week, sadly without getting very far because each diagno...
-
06:51 PM Bug #6406: Web process becomes unresponsive producing 502 Bad Gateway nginx
- pfsense team:
Why is this bug being pushed back to another release yet again to a date that has not been determine... -
07:50 PM Feature #855: Ability to selectively kill states on gateway recovery
- As echoed by others, I'm seeing the same thing for VOIP and other devices which auto negotiate VPN tunnels which main...
-
07:06 PM pfSense Packages Bug #7753 (Not a Bug): "Bypass Proxy for These Source IPs" does not seem to be working anymore
- I used to exclude two IPs using this option for Arlo Pro video cameras (by Netgear) and it used to work fine, but aft...
-
05:30 PM pfSense Packages Bug #7674: Issue Downloading Snort Alert Log Download
- This also appears to affect the downloading of the blocked hosts list. If you press the download button, it thinks a...
-
04:20 PM Revision be76c9d6: update top nav bar logo
-
04:20 PM Revision b8047a1f: change login page logo to svg
-
04:20 PM Revision e8bb8200: remove image from rss widget
-
04:20 PM Revision e7d63f56: update favicon
-
02:11 PM pfSense Packages Bug #7752: Squid 3 reverse proxy - HTTPS==>HTTP fails
- Jim Pingle wrote:
> Using an HTTP backend with an HTTPS frontend works fine in HAProxy if you need it to work right ... -
06:30 AM pfSense Packages Bug #7752 (Feedback): Squid 3 reverse proxy - HTTPS==>HTTP fails
- Using an HTTP backend with an HTTPS frontend works fine in HAProxy if you need it to work right now. The reverse squi...
-
05:53 AM pfSense Packages Bug #7752 (Not a Bug): Squid 3 reverse proxy - HTTPS==>HTTP fails
- I configured the package Squid 3 (version 0.4.37 based on Squid-3.5.26) as reverse proxy.
On my pfSense virtual ma... -
11:27 AM Revision b36b36ee: improve README by full stop and link to github-help
- (cherry picked from commit 47dc4743a81edb0ae316591f63d62767b56f6e69)
-
11:27 AM Revision 1fa79aba: Merge pull request #3793 from ecovillage/master
-
09:28 AM Bug #7751: Duplicated traffic graphs
- It appears to be the same behavior as https://redmine.pfsense.org/issues/3314 that was previously fixed, although I d...
-
12:05 AM Bug #7751 (Resolved): Duplicated traffic graphs
- When using VLANs traffic graph shows doubled traffic for out.
See discussion:https://forum.pfsense.org/index.php?to... -
08:44 AM Revision 47dc4743: improve README by full stop and link to github-help
-
03:48 AM Feature #5112: LDAP support for Captive Portal
- Any chance an implementation as outlined above would make it into upstream? Would be happy to give the implementation...
08/02/2017
-
03:27 PM Bug #7750: unbound refuses ipv6 queries after reboot
- Here is a link to a post on the forum which shows the wireshark capture of the PD process:
[https://forum.pfsense... -
01:54 PM Bug #7750 (Resolved): unbound refuses ipv6 queries after reboot
- This issue first appeared when changes were made to reduce how often unbound restarts. It may have been present befor...
-
11:04 AM Revision 1567f9f1: Update translation files
-
11:00 AM Revision 7b6ef15e: Regenerate pot
-
10:21 AM Bug #7625 (Assigned): When creating IPv6 firewall rule for single host, netmask improperly displays
-
08:26 AM Bug #7625: When creating IPv6 firewall rule for single host, netmask improperly displays
- I have now updated to latest build but unfortunatly it still does not work. (2.4.0-BETA (amd64) built on Wed Aug 02 ...
-
08:04 AM Feature #7749 (Resolved): Support ``0`` CIDR mask for IGMP Proxy networks
- I don't know if this CiDR notation is appropriate from a security point of view. But it appears that you can not setu...
-
02:54 AM Bug #7748 (Resolved): VLAN Priority
- I have a 2.3 and a 2.4 pfSsense system
On both systems I can create a VLAN 832 with Priority 6 (Attachment 1)
...
08/01/2017
-
10:32 PM Feature #7537: Include mellanox mlx4 and mlx5 ethernet driver
- edit : It seems it's supported by the freebsd base : https://www.freebsd.org/releases/11.1R/hardware.html#ethernet
... -
09:10 PM Bug #4494: axge bug - AX88179 chipset (network interface reseting)
- FYI, still happening in v2.4 - but is on the FreeBSD HW compatibility list. Anything I can do to help debug?
Thanks! -
07:57 PM Revision a98daee3: Fix #7625: Auto select '128' as mask for IPv6
-
07:57 PM Revision 036b32b5: Fix #7625: Auto select '128' as mask for IPv6
-
04:03 PM Feature #7747 (New): Minor UI Tweak: Make hitting enter on the console (esp via SSH) should not log you out, but simply redraw the menu
- When you don't have a password set on the console, the net effect is the same anyway. However, over SSH, this is ann...
-
03:40 PM Revision d08c1387: Fix VLAN Priority set pf syntax. Fixes #7744
-
03:13 PM Bug #7430: pfsense-utils.inc - where_is_ipaddr_configured() should account for loopback interface
- It's a subject to be discussed but doesn't make sense to change where_is_ipaddr_configured() this way since it uses g...
-
03:10 PM Bug #7625 (Feedback): When creating IPv6 firewall rule for single host, netmask improperly displays
- Applied in changeset commit:036b32b57e88464d66e6e01e640178f68cf882ec.
-
03:05 PM Feature #6293 (Duplicate): Include 'if_urndis.ko' kernel module for USB network tethering
- Close it in favor of #7467
-
03:05 PM Feature #7467: Add iPhone/Android/Generic USB tethering support
- Generalize the topic to be able to close older tickets
-
03:02 PM Feature #7467: Add iPhone/Android/Generic USB tethering support
- We need to make tests and it's too late for 2.4.0
-
02:59 PM pfSense Packages Bug #7578: Suricata -- Removing Hosts from Block Table via Alerts
- It doesn't depend of a pfSense version and as soon as package is updated will be available for all supported versions
-
01:10 PM Feature #7746: Proxy NDP
- You can already use other types of VIPs to use additional addresses (IP Alias and CARP) just not for giant blocks of ...
-
01:00 PM Feature #7746: Proxy NDP
- I agree that it's horrible. But I still have a valid use case for such a feature because of *someone else's* preexis...
-
12:36 PM Feature #7746 (Rejected): Proxy NDP
- There isn't any such daemon. We've had it come up before and it's not possible at this time, possibly ever. It would ...
-
12:22 PM Feature #7746: Proxy NDP
- I can't find any evidence anywhere (including tcpdump) that "Proxy ARP" VIPs support NDP. I'm assuming they don't, s...
-
12:21 PM Feature #7746 (Rejected): Proxy NDP
- We have "Proxy ARP" VIPs, now we need "Proxy NDP" VIPs to allow pfSense to function with service providers such as OV...
-
12:18 PM Bug #7745: 1:1 NAT is somehow broken for IPv6 (corner case??)
- Hmm. It's 100% trivially reproducible for me. When it's 100% reproducible for me, most of the time it's 100% reprod...
-
11:55 AM Bug #7745: 1:1 NAT is somehow broken for IPv6 (corner case??)
- It shouldn't happen that way, but again, you have not yet identified a specific bug, only a symptom. We need a lot mo...
-
11:51 AM Bug #7745: 1:1 NAT is somehow broken for IPv6 (corner case??)
- If this need to be better documented on the public Wiki, I can make those changes myself. I can't update the officia...
-
11:49 AM Bug #7745: 1:1 NAT is somehow broken for IPv6 (corner case??)
- Perhaps I could have been clearer: the complaint here is that:
- creating a 1:1 NAT entry and then removing it someh... -
11:36 AM Bug #7745 (Not a Bug): 1:1 NAT is somehow broken for IPv6 (corner case??)
- I don't see a bug here. It works just like IPv4. IPv4 1:1 would also fail if you added a mapping for some other IP ad...
-
11:30 AM Bug #7745: 1:1 NAT is somehow broken for IPv6 (corner case??)
- Update: it only breaks when the WAN interface is in the same "subnet" (possibly /64, haven't confirmed the affected p...
-
11:24 AM Bug #7745 (Not a Bug): 1:1 NAT is somehow broken for IPv6 (corner case??)
- Steps to reproduce:
1. configure (e.g.) WAN interface as 2607:5300:79:501:167:114:147:49/56. Configure default gate... -
10:50 AM Bug #7744 (Feedback): VLAN Priority options cause pf syntax error
- Applied in changeset commit:d08c13875483a81b6393f0127abe719e5734dea4.
-
10:40 AM Bug #7744 (Resolved): VLAN Priority options cause pf syntax error
- In FreeBSD 11, the syntax for matching and setting VLAN Priorities changed. See https://reviews.freebsd.org/D6786
...
07/31/2017
-
08:32 PM Revision f4c3483a: rc.gateway_alarm, add syslog message that shows that a alarm was raised/cleared and what the parameters were
- This helps clarify why sometimes services are restarted when reading through the syslogs.
(cherry picked from commit... -
08:32 PM Revision c71df82d: Merge pull request #3762 from PiBa-NL/20170624_gatewayalarm_log
- 08:32 PM Revision 2839bb13: Use correct wording for menu entry "Reset All States" in "System/Advanced Network"
- (cherry picked from commit ee7bdbe69b873544b960c159386971af42cba52d)
- 08:32 PM Revision c5ad7e26: Use correct wording for log output when IP address has changed and states are killed accordingly
- (cherry picked from commit 8e7d47feda1c56715304a3a381fc9495698179fb)
- 08:32 PM Revision 0ffce5fd: Add GUI entry for ip_change_kill_states in Network/Advanced (See #1629)
- (cherry picked from commit 66a405929e61938c036005cca8fde0ba17554a27)
- 08:32 PM Revision ba2500cf: Improve log output when ip_change_kill_states is set.
- (cherry picked from commit a84da2286cc5353b5ce7161aa3d59ccd43ae3868)
-
08:32 PM Revision f3d3a023: Merge pull request #3535 from fernsehkind/Redmine1629
-
08:01 PM Revision 9b18dc1b: Add pt_BR back to GUI since it's over 75% complete
-
07:41 PM Revision d33bdb27: Merge pull request #3774 from phil-davis/sort-if-names-RELENG_2_3
-
07:38 PM Revision ac789c95: ipsec, prevent simultaneous/repeated calling of vpn_ipsec_configure() by /etc/rc.newipsecdns
- (cherry picked from commit 7c6f38e49a2005812e37fe5b365717edc0d5dd44)
-
07:38 PM Revision 23273a9b: Merge pull request #3773 from PiBa-NL/20170703-ipsec-sleep-lock
-
07:37 PM Revision 898d5161: Trafficshaper, show interface names for disabled interfaces, dont just show a kinda 'empty' spot..
- (cherry picked from commit 725aee3f19ea01d48f14e65ac60e4189218b3834)
-
07:37 PM Revision 4b1d0e05: Merge pull request #3784 from PiBa-NL/20170713-shaper-show-disabled-interface-names
-
07:36 PM Revision 8f212c64: Correct typo's as per Jim's request
- (cherry picked from commit 3e86fa9913091ded202854a931fa02320f7fa1a0)
-
07:36 PM Revision 8420b944: Add Option to use static IPV6 over v4 parent ( PPPoE
- A new option when setting a v6 static on the WAN to allow the connection to use the V4 interfaces i.e. PPPoE
(cherr... -
07:36 PM Revision 40f2618c: Merge pull request #3761 from marjohn56/master
-
07:35 PM Revision 024a1db6: Merge pull request #3789 from stilez/patch-69
-
07:35 PM Revision 514233ee: typo
- "Networked" not "network" - "Internet of Things" especially.
(cherry picked from commit d751dee379b37da868efa837df55... -
07:35 PM Revision 23dcfc75: grammar fix
- (cherry picked from commit 94ef78afa96f1870b453fab670754c01c6161665)
-
07:35 PM Revision 83477771: format %1$s etc in help
- (cherry picked from commit ef77e40e0c7b861cc268cd1f0e30600f573b807e)
-
07:35 PM Revision 5c9bc798: Improve the HELP note about what will/won't work if TLD is set to ".local"
- For example, some people won't use mDNS and won't know other things might break; also it's not clear that while ".loc...
-
07:35 PM Revision 76efa197: Merge pull request #3787 from stilez/patch-68
- 07:34 PM Revision a32a2d04: Add support for IPv6 AUTO_LINKLOCAL flag on bridge interfaces
- (cherry picked from commit b060e08c9dd701b56b5163321b5e9a79f90b1f23)
-
07:34 PM Revision 8d478177: Merge pull request #3788 from znerol/feature/master/bridge-ipv6-auto-linklocal
- 07:33 PM Revision 64876ec1: Use attribute rekey_enable as usual but optionally allow to set margintime if rekeying is not disabled
- (cherry picked from commit 376e6f6719e6463913045b233ca90d69254057ff)
- 07:33 PM Revision a69de2f6: Fix indent of if-block
- (cherry picked from commit 9d472f01c31f2b56a95631dcd4f49e4685f55ea6)
- 07:33 PM Revision 8f03bc04: Check if margintime is numeric and smaller than P1 lifetime
- (cherry picked from commit af729f53f3c838f91dffb6368b656ddece527e05)
- 07:33 PM Revision f7c409fe: Hide margintime if rekeying is disabled
- (cherry picked from commit e18ddb38449b6463fabf5782284b206a355dbad7)
- 07:33 PM Revision 04c2c662: Activate RADIUS accounting for mobile ipsec if it was selected on the auth server view
- (cherry picked from commit 1e0442e0612ecd289aa979bc945be0d8ead35f41)
- 07:33 PM Revision 9ca72a77: Add strongswan rekeymargin attribute to vpn ipsec phase1 view
- (cherry picked from commit 9542011684a26e0b1b959d9b56d5fcfc12023893)
-
07:33 PM Revision 39194387: Merge pull request #3770 from hamnur/master
-
07:32 PM Revision ccf8bd86: dhcp6c Advanced Config prefix interface
- Currently, when using dhcp6c advanced configuration the prefix interface is WAN, this is not very useful!
The change... -
07:32 PM Revision 16dec2f3: Merge pull request #3791 from marjohn56/PD-FIX
-
07:29 PM Revision 33048f25: Merge pull request #3585 from PiBa-NL/trafficgraphs-optimize
-
07:24 PM Revision 9d21b366: Merge pull request #3785 from stilez/patch-67
-
05:47 PM Bug #7743 (Not a Bug): Redmine does not allow slection of version 2.3.4_1 in "Affected version" field
- Fixed (but not a bug)
-
05:04 PM Bug #7743 (Not a Bug): Redmine does not allow slection of version 2.3.4_1 in "Affected version" field
- My "Affected version" list goes 2.3, 2.3.3, 2.3.3_1, 2.3.4, 2.4, 2.4.x.
No 2.3.4_1 option is available, although I s... -
05:00 PM Bug #7742: 1:1 NAT for IPv6 applies wrong subnet mask to "Single Host"
- Also, when re-editing that 1:1 NAT rule, the GUI repeatedly resets the prefix length to "31". This, again, breaks al...
-
04:55 PM Bug #7742: 1:1 NAT for IPv6 applies wrong subnet mask to "Single Host"
- (I believe this is why I thought IPv6 NAT was broken in #7740. Not 100% sure. Made enough mistakes today I'm not su...
-
04:54 PM Bug #7742 (Resolved): 1:1 NAT for IPv6 applies wrong subnet mask to "Single Host"
- Adding an IPv6 1:1 NAT entry and choosing "Single Host" produces the resulting rule in /tmp/rules.debug:
binat on ... -
04:45 PM Feature #7741 (Resolved): warn me when shooting myself in the foot with NPt
- When one configures IPv6 NPt (network prefix translation) to use a public prefix that *does* overlap with the interfa...
-
12:41 PM pfSense Packages Feature #7548 (Resolved): Add absolute offset stat to NTP monitoring display
-
12:02 PM pfSense Packages Feature #7548: Add absolute offset stat to NTP monitoring display
- Tested, working (2.4.0.b.20170731.0959)
-
12:39 PM Bug #7740 (Not a Bug): 1:1 NAT field allows IPv6 addresses
- It's allowed because it's valid. Granted it's not as useful and NPt does the same thing, essentially. If it were brok...
-
12:08 PM Bug #7740 (Not a Bug): 1:1 NAT field allows IPv6 addresses
- The 1:1 NAT setup screen allows IPv6 addresses to be entered, even though they do not function. No warnings are emit...
-
12:06 PM Revision 40d2cc71: Update translation files
-
11:49 AM Revision 01115630: Regenerate pot
-
07:51 AM pfSense Packages Bug #7736 (Feedback): Crahs with Quagga OSPF and the latest 2.4 Beta
- I just pushed a fix, give it a try when the package update shows next (0.6.20)
-
03:46 AM Bug #7734: Using opton ia pd0 does not renew prefix and prefix get dropped
- Sorry - was looking for it but forgot about /var/etc:...
07/30/2017
-
12:53 PM Feature #7739 (Rejected): If there is already a gateway, retrieve data from the one that already exists?
- Having the same gateway on more than one interface is not a supported configuration.
-
11:56 AM Feature #7739 (Rejected): If there is already a gateway, retrieve data from the one that already exists?
- Hi,
I have multiple gateway with the same ip and then it can not show them at the same time, but I had to mix with... -
12:14 PM Revision a0bd0a4f: important exclusion - update help text for packets dropped by NIC / offload
- Say that non-promiscuous mode doesn't see packets dropped by NIC.
(promiscuous detection relies mainly on different r... -
11:06 AM Revision 52229047: trafficgraphs, move common code to 1 file, and remove usage of 'localstorage' which shares unwanted changes to graph settings between widget and stats
-
10:58 AM Revision d3fd2bbe: traffic-graphs, optimize retrieval of data every x seconds to reduce spikes in the graphs and load on pfSense
- also cleanup some old code.
-
09:20 AM Feature #7738 (New): Highlight which IPSec (or other VPN) crypto modes are hardware-accelerated in the UI
- I've found it VERY difficult to determine precisely which combinations of ciphers and MACs will be hardware-accelerat...
-
08:39 AM Bug #7737 (New): radvd error message
- Perhaps this is a configuration issue, or a bug introduced during the 2.4 update.
I am now receiving the following... -
07:47 AM pfSense Packages Bug #7736 (Resolved): Crahs with Quagga OSPF and the latest 2.4 Beta
- Crash report begins. Anonymous machine information:
amd64
11.0-RELEASE-p11
FreeBSD 11.0-RELEASE-p11 #193 d...
07/29/2017
-
02:42 AM Bug #7734: Using opton ia pd0 does not renew prefix and prefix get dropped
- If you are still running 2.3 then it's not related at all, 7330 was a 2.4 issues and was fixed and is closed. The iss...
07/28/2017
-
07:54 PM Revision dc5fdeea: notices, background delivery of growl messages and combined mail messages from a queue so that in case of failure the timeout period for connecting does not impact the functionality of the calling scripts themselves
- 1st message is delivered directly after it is queued.
2nd and following messages that are send within a 10 second win... - 07:47 PM Revision f8ac4324: Comment fixes
- 05:59 PM Revision 2f162658: Revise default widget settings to accommodate new support widget name
- 04:58 PM Revision 2304e7b4: Add renamed support widget
-
04:56 PM Revision 1528ee4e: dns, allow deleting last row for "Additional Names for this Host"
- (cherry picked from commit f6cf3687d21c6ca6ba7a25605fafe249f866b439)
-
04:54 PM Revision 3f74acc7: Merge pull request #3783 from PiBa-NL/20170713-dns-delete-last-additional-name
-
02:20 PM Feature #3329: Allow creating "not" rules for IPsec Phase 2
- Example implementation
-
02:16 PM Feature #3329: Allow creating "not" rules for IPsec Phase 2
- This feature wil be really helpful. Lets assume a office firewall connected to a HQ firewall. It serves sub multiple ...
-
02:02 PM Bug #5826: Auto-exclude LAN address feature only works for the LAN interface
- We have the same problem. For my reminder. Configuration is created by /etc/inc/vpn.inc in the following lines
i... -
12:43 PM Feature #7549: Enable Python support in Unbound
- To use python with unbound the module also needs to be enabled in the configuration file with:...
-
11:43 AM Bug #7735 (Not a Bug): Switching to wildcard cert fails until reboot
- Steps to reproduce:
1. manually add the Globalsign CA
2. manually add the AlphaSSL intermediate CA
3. manually add... -
09:32 AM Bug #7734: Using opton ia pd0 does not renew prefix and prefix get dropped
- This might be related to #7330
-
09:31 AM Bug #7734 (New): Using opton ia pd0 does not renew prefix and prefix get dropped
- From my ISP i am getting a vl/rl of 14400 seconds
The prefix is not renewed and is dropped after 4hrs, see below.
... -
09:04 AM Todo #6606 (Assigned): Adapt captive portal to work without multi-instance ipfw
- I'll check it
-
09:02 AM Todo #6606: Adapt captive portal to work without multi-instance ipfw
- I tried this morning and my devices which use to work are still being directed to the logon page. I have a few device...
-
09:03 AM Bug #7733 (Resolved): User Manager deletes non-selected users
- The User Manager seems to delete non-selected (wrong) users when using the 'red' delete button on the bottom of the U...
-
07:05 AM Revision 58a185ae: dhcp6c Advanced Config prefix interface
- Currently, when using dhcp6c advanced configuration the prefix interface is WAN, this is not very useful!
The change... -
05:43 AM Bug #7732 (Not a Bug): Unable to connect remote system after upgrading to the latest version
- This is a bug tracker, not a support system. Please post on the forum, reddit, mailing list, or another support chann...
-
01:06 AM Bug #7732 (Not a Bug): Unable to connect remote system after upgrading to the latest version
- Yesterday I was updated my pfsense to the latest version 2.3.4-RELEASE-p1 (amd64). After upgrading I am able to conne...
07/27/2017
-
05:42 PM Bug #6223: IPsec + OpenBGPD fails with "PF_KEY socket: No buffer space available"
- Jim Pingle wrote:
> Only in that we're making progress on replacing OpenBGPD with FRR
Well that's exciting! I ass... - 04:58 PM Revision 9968e384: Eliminate Gold menu item
- 04:58 PM Revision d85dc363: Rename support widget to "Netgate Services And Support"
-
04:18 PM Revision 3e86fa99: Correct typo's as per Jim's request
-
04:18 PM Revision b7331383: Add Option to use static IPV6 over v4 parent ( PPPoE
- A new option when setting a v6 static on the WAN to allow the connection to use the V4 interfaces i.e. PPPoE
-
12:12 PM pfSense Packages Bug #7729: pfBlockerNG orders NAT licked rules to the bottom of firewall rules
- @BBcan177
Looks like it worked !
Pls make it default. -
11:56 AM pfSense Packages Bug #7729: pfBlockerNG orders NAT licked rules to the bottom of firewall rules
- @BBcan177
Thx for the clue.
What's the proper way to modify /usr/local/pkg/pfblockerng/pfblockerng.inc ?
I made c... -
11:32 AM pfSense Packages Bug #7729: pfBlockerNG orders NAT licked rules to the bottom of firewall rules
- Can you edit */usr/local/pkg/pfblockerng/pfblockerng.inc*
and replace the line (-) with the new line (+):
Line 4... -
11:15 AM Bug #7731 (Duplicate): DynDNS fail to update after connection lose
- Hi,
i experienced some problems with DynDNS update.
When the gateway is down (connection lost) and then come ba... -
08:16 AM Bug #7730: 2.3.4_1 greX: loop detected when hit save on filter rules or interfaces
- to clarify previous cluster sync comment:
If we make the change as described above on secondary the tunnel stays up ... -
07:16 AM Bug #7730 (New): 2.3.4_1 greX: loop detected when hit save on filter rules or interfaces
- upgraded from 2.2.6
anytime we hit save in the GUI for interface or filter rules, even if no change was made, we sta...
07/26/2017
-
11:44 PM pfSense Packages Bug #7729 (Resolved): pfBlockerNG orders NAT licked rules to the bottom of firewall rules
- When I use pfBlockerNG and rules order as this https://snag.gy/yFQa5b.jpg after rules update my NAT linked non-pfBlo...
-
10:25 PM Bug #7723 (Not a Bug): Cannot focus username or password input fields
-
06:45 PM Bug #7723: Cannot focus username or password input fields
- I upgraded to 2.3.4p1 and can no longer reproduce. Thanks!
-
05:08 PM Revision 508a84ed: Enable REDIS option for suricata
-
05:08 PM Revision 6b473757: Enable REDIS option for suricata
-
05:08 PM Revision d1637ec2: Enable REDIS option for suricata
-
03:12 PM Bug #7728: 1:1 NAT: Destination IP Alias not displayed as web link
- image of bad behaviour
-
03:10 PM Bug #7728 (Resolved): 1:1 NAT: Destination IP Alias not displayed as web link
- If you define a 1:1 NAT rule with a destination IP (source/destination match) this destination IP may be an alias. In...
- 02:50 PM Revision 1fea5a2e: Fixed 7128
-
02:37 PM Bug #7629: FreeBSD PR affecting pfsense
- Since JimP has confirmed 2.4.x will move to 11.1 then this bug is effectively resolved "after" that change occurs.
- 02:11 PM Revision 38af638a: Allow recheck on refresh if JSON not available
-
01:44 PM Revision e14c441b: Make rules that deal with IP+MAC pairs to be layer2 only
-
12:30 PM pfSense Packages Bug #7278 (Feedback): Suricata Service - Advanced Configuration Pass-Through not working
- Merged, thanks!
-
12:05 PM Feature #7593 (Rejected): Enable FreeBSD 11 pvclock module in 2.4 builds
- pvclock is not a module, it's a standard piece of the kernel as you can see at original review at https://reviews.fre...
-
11:48 AM Feature #7727: uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- the game in question is "For Honor", but im pretty sure it affects any game that uses peer to peer matchmaking. There...
-
11:46 AM Feature #7727 (Resolved): uPnP fails to properly give out subsequent reservations when multiple gaming systems are playing the same game/using the same port
- It's a bug with pfsense, at least in my eyes (nearly 15 years experience in IT and am a senior security engineer with...
-
11:01 AM Bug #7474: Problems adding gateway from interface edit
- Already in master by PR https://github.com/pfsense/pfsense/pull/3700
So it happens already in 2.4 - no need to push ... -
08:54 AM Bug #7474: Problems adding gateway from interface edit
- Push to 2.4.1
-
10:32 AM Bug #7128 (Resolved): system_advanced_network.php - fugly IPv6 over IPv4 input field alignment
- Looks good now
-
09:52 AM Bug #7128 (Feedback): system_advanced_network.php - fugly IPv6 over IPv4 input field alignment
- Changed layout to use two separate fields + JS hide/show
-
09:09 AM Feature #7549 (Resolved): Enable Python support in Unbound
- Anything we need to do on the OS side is done already, the rest is up to the actual scripts to setup mounts/libraries...
-
08:55 AM Bug #7268 (Feedback): System Info Widget "All" button does not work with "Disable the automatic dashboard auto-update check"
- Merged
-
08:54 AM pfSense Packages Feature #7548 (Feedback): Add absolute offset stat to NTP monitoring display
- Merged, thanks!
-
08:49 AM Todo #6606 (Feedback): Adapt captive portal to work without multi-instance ipfw
- Work is now complete
-
07:16 AM Bug #7724 (Rejected): Captive portal not blocking unauthorized MAC addresses
- This is not a general problem that can be reproduced here, and there is not enough detail in your report to speculate...
-
07:09 AM Bug #6400: assign_interfaces.php issues with large numbers of interfaces
- See also: #7726
-
07:08 AM Bug #7726 (Duplicate): Many VLANS and php-fpm 100%CPU Hangs web gui
- Duplicate of #6400
-
05:43 AM Bug #7726 (Duplicate): Many VLANS and php-fpm 100%CPU Hangs web gui
- This problem was reported some time ago already:
https://forum.pfsense.org/index.php?topic=102607.0
https://forum... -
03:14 AM Feature #1219: Ship DTRACE enabled kernels in the images
- +1
I would not even bother if dtrace kernel was an extra image for pfsense 2.4. -
12:05 AM Bug #7725 (Resolved): Support for iwm
- FreeBSD 11-Current added support for the Intel Dual Band Wireless AC 3160/7260/7265 IEEE 802.11ac network adapters (h...
07/25/2017
-
11:39 PM Bug #7724 (Rejected): Captive portal not blocking unauthorized MAC addresses
- We are using pfSense
Serial: 57625aa6-71ba-11e7-8e29-0800275891eb
Netgate Device ID: f3ad8559b22bd5e94b4d
From... -
09:03 PM Revision 239b15fb: Add some info to HELP text (no code change otherwise)
- NTP background isn't going to be widely known. So provide a bit of info so that it's done properly if someone cares.
... -
06:55 PM Revision f6e6ff31: Restore calls to pfSense_ipfw_table_zerocnt(), it's fixed now
-
05:10 PM Revision f4c867e0: Remove unused parameters
-
05:08 PM Revision 5f6825bb: Do not associate IP and MAC on down table
-
05:04 PM Revision 75395abf: Fix syntax
-
04:56 PM Revision fa6ae0ea: Remove leftover debug
-
04:47 PM Revision 3c4fcd5b: Ressurrect nomacfilter option on CP now IPFW supports combined tables with IP and MAC address
- 02:53 PM Revision b060e08c: Add support for IPv6 AUTO_LINKLOCAL flag on bridge interfaces
-
02:49 PM Revision d751dee3: typo
- "Networked" not "network" - "Internet of Things" especially.
-
02:48 PM Revision 94ef78af: grammar fix
-
02:37 PM Revision ef77e40e: format %1$s etc in help
-
02:33 PM Revision b45746a3: Improve the HELP note about what will/won't work if TLD is set to ".local"
- For example, some people won't use mDNS and won't know other things might break; also it's not clear that while ".loc...
-
02:18 PM Bug #6223: IPsec + OpenBGPD fails with "PF_KEY socket: No buffer space available"
- Only in that we're making progress on replacing OpenBGPD with FRR, which hopefully will not suffer from the same issu...
-
02:14 PM Bug #6223: IPsec + OpenBGPD fails with "PF_KEY socket: No buffer space available"
- Any progress on this?
-
12:21 PM Bug #7723 (Feedback): Cannot focus username or password input fields
- No problems here on Chrome with Android 7.1.2 and Chrome 59.0.3071.125 (Tablet) or Android 7.0 (Droid Turbot 2), in p...
-
11:51 AM Bug #7723 (Not a Bug): Cannot focus username or password input fields
- The username and password input fields cannot be focused when using Chrome on Android.
h2. Steps to reproduce
1... -
12:04 PM Revision b40b4a3e: Re-introduce Captive Portal statistics
-
10:07 AM Bug #4218: Bridge does not have AUTO_LINKLOCAL flag
- PR: https://github.com/pfsense/pfsense/pull/3788 (simple checkbox, does not detect whether or not ipv6 is configured ...
-
06:43 AM Bug #4218: Bridge does not have AUTO_LINKLOCAL flag
- I think this feature could be implemented as follows:
* Provide a new advanced configuration option on the bridge ... -
09:46 AM Bug #7500: Upgrade From 2.3.3_p1 to 2.4 Fails (libssl.so.8 not found)
- See also: #7722
-
09:46 AM Bug #7722 (Duplicate): PHP Startup: Unable to load dynamic library '/usr/local/lib/php/20131226/ssh2.so' - Shared object "libssl.so.7" not found, required by "libssh2.so.1" in Unknown on line 0
- Duplicate of #7500
-
09:33 AM Bug #7722 (Duplicate): PHP Startup: Unable to load dynamic library '/usr/local/lib/php/20131226/ssh2.so' - Shared object "libssl.so.7" not found, required by "libssh2.so.1" in Unknown on line 0
- Upgraded through WebGUI 2.3.4 to 2.4.0-BETA (amd64) everything seems to go smooth except I receive this error...
C... -
06:02 AM Bug #7721 (Closed): NTPd stops using external peers if listening on one interface only in a muliwan setup
- In a multiwan setup, when selecting only one listening interface (eg. LAN), NTPd does not select external peers as th...
07/24/2017
-
09:32 PM Feature #7720 (New): Add general watchdog kernel modules (like ichwd) and watchdogd support in the GUI.
- Per this topic, enabling watchdogd seems to be harder than it should be: https://forum.pfsense.org/index.php?topic=10...
-
03:56 PM Bug #7719 (Resolved): Dynamic DNS updates not working on interface failover
- I realized that dynamic DNS hostnames are not being updated on interface failover. When manually marking a gateway as...
-
11:12 AM Revision eb0a2a94: Update translation files
-
11:04 AM Revision 46b206d7: Regenerate pot
-
10:05 AM Feature #7718 (New): Hostname for Custom DynDNS Updater.
- Hi,
right now I'm using a custom DynDNS service for VPN connectivity. The problem is that you can't set the hostna... -
09:34 AM pfSense Packages Bug #7191 (Resolved): squid package EN-US grammar errors
-
09:29 AM pfSense Packages Bug #7191: squid package EN-US grammar errors
- Also fixed in 0.4.37 so I am sure this bug can be closed now.
-
09:18 AM pfSense Packages Bug #7674: Issue Downloading Snort Alert Log Download
- Ryan Eckenrode wrote:
> I have found that I am no longer able to download the Alert Logs from the snort_alerts.php p... -
03:32 AM Bug #4310: Limiters + HA results in hangs on secondary
- Jose Duarte wrote:
> For those still with problems you can use limiters in HA with any version w/out kernel panic bu...
07/22/2017
-
07:26 AM Feature #7717 (Closed): DNS Resolver update to Unbound-1.6.4 to get RPZ / fastrpz support
- We'll pick it up automatically once it hits the proper ports branches used by 2.3.x and 2.4.x.
-
06:26 AM Feature #7717 (Closed): DNS Resolver update to Unbound-1.6.4 to get RPZ / fastrpz support
- We would like to be able to use Reverse Policy Zones (RPZ) using the "fastrpz" patch which Unbound has included into ...
Also available in: Atom