Project

General

Profile

Activity

From 08/07/2017 to 09/05/2017

09/05/2017

07:31 PM Revision 617bb801: Spell it correct
Renato Botelho
06:51 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
Morten Freberg wrote:
> This does still not work after a reboot.
>
> Although it works until next reboot if you g...
Ole-Henrik Jakobsen
03:51 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
This does still not work after a reboot.
Although it works until next reboot if you go to Interfaces -> WAN and th...
Morten Freberg
03:33 PM Revision d3324e2c: Remove /cf partition and move its content to /cf directory under / partition
Renato Botelho
03:30 PM Revision 37330ae1: Do not call pfSense-upgrade, let user do it
Renato Botelho
01:55 PM Todo #6853 (Feedback): Convert nanobsd installation to full install during upgrade
Instructions to help users migrate their nanobsd to full install are here https://doc.pfsense.org/index.php/Upgrading... Renato Botelho
01:55 PM Todo #4847 (Closed): NanoBSD Image Flash Block Misalignment
nanobsd is dead in 2.4 and future versions Renato Botelho
01:12 PM Revision b9d12420: Add set -e to abort if any of main commands fail
Renato Botelho
12:57 PM Revision 94db81da: Add a script to help users converting nanobsd to full install
Renato Botelho
11:57 AM Bug #7838 (Not a Bug): NAT outbound source using alias always shows /32
When you use an alias, the CIDR drop-down on the NAT page does nothing. Any subnet mask must be specified in a networ... Jim Pingle
11:56 AM pfSense Packages Bug #3342 (Resolved): Missing input validation for MAC addresses
Jim Pingle
11:31 AM Bug #7145: rc.newwanipv6 running in all cases, even for a renew
Are there any plans to have this fixed with a 2.3.* release?
I'm having the same problem (https://forum.pfsense.o...
Rodrigo Ferraz

09/04/2017

09:58 PM Bug #6028: no firewall rules loaded after reboot with invalid ruleset
I wrote this 4 years ago in #3175 Grischa Zengel
02:11 PM Bug #7840 (Resolved): OpenVPN 2.4 Server: Hide Interface when Protocol is Multihome
This is merely cosmetic, but may also help cut down on some confusion.
If "Protocol" is set for "<UDP/TCP> IPv4 an...
Brandon Jackson
02:01 PM Revision e9034b15: Remove /root/force_growfs after use it
Renato Botelho
02:01 PM Revision 5f2cdcf2: Remove /root/force_growfs after use it
Renato Botelho
01:44 PM Bug #7839 (Resolved): IPv6 ICMPv6 Type 3 Code 0 (hop limit exceeded in transit) reply uses wrong address.
Forum post here https://forum.pfsense.org/index.php?topic=136009.0
When pfsense receives a packet with a TTL of 1,...
Brandon Jackson
09:56 AM Bug #7778: DHCP relay not working correctly with bridges
When adding interface that's member of the bridge: yes
When adding the bridge (without it's interfaces): no
Sander Peterse
03:21 AM Bug #7838 (Not a Bug): NAT outbound source using alias always shows /32
Using alias for NAT outbound source network which in our case is a /24 always shows /32 when you edit it again.
If y...
Alexander Lindqvist
02:55 AM Bug #7837: fragmented packets not reassembled over IPSec tunnel
Disabling NAT in the tunnel does not change anything. Florian Apolloner

09/03/2017

03:28 PM Bug #7837 (Duplicate): fragmented packets not reassembled over IPSec tunnel
I am trying to ping a machine over an ipsec tunnel:... Florian Apolloner
04:46 AM pfSense Packages Bug #6378: inline background styles in squidguard package
Someone kindly merge this PR and call it a day. https://github.com/pfsense/FreeBSD-ports/pull/385
It makes things ...
Kill Bill
04:38 AM pfSense Packages Bug #3342: Missing input validation for MAC addresses
Validation has been there for a while.
https://github.com/pfsense/FreeBSD-ports/pull/308
https://github.com/pfsen...
Kill Bill
03:17 AM pfSense Packages Bug #7670: Bind : Serial for slave zone is missing in IHM
I have no idea what's IHM but there's no serial saved in config.xml for slave zones (you cannot even configure it, th... Kill Bill
03:04 AM pfSense Packages Bug #7271: Co-existence of unbound and BIND/named
Test this please.
https://github.com/pfsense/FreeBSD-ports/pull/416
Kill Bill

09/02/2017

06:53 AM pfSense Packages Bug #7836: FreeRADIUS - certain chars in clients shared secret result in broken configuration
https://github.com/pfsense/FreeBSD-ports/pull/415 Kill Bill
06:50 AM pfSense Packages Bug #7836 (Resolved): FreeRADIUS - certain chars in clients shared secret result in broken configuration
See https://forum.pfsense.org/index.php?topic=135980.msg744283#msg744283 and following.
E.g., having a shared secr...
Kill Bill
04:22 AM Bug #7592: SG-1000: Unbound not always restarting properly after changes in /etc/hosts
@Sep 2 02:01:45 dhcpleases kqueue error: unkown
Sep 2 02:01:45 dhcpleases Could not deliver signal HUP to process ...
rub man

09/01/2017

07:55 PM Revision d10d17e8: Revert "Add the AWS ena module to MODULES_OVERRIDE list."
This reverts commit 5ba35b98a3726ab206931cdfa51e3dd23227b7b2. Renato Botelho
07:55 PM Revision 2da8f1b0: Revert "Add the AWS ena module to MODULES_OVERRIDE list."
This reverts commit 5ba35b98a3726ab206931cdfa51e3dd23227b7b2. Renato Botelho
05:15 PM Revision bf6a223c: Use RELENG_2_4_0 for now
Renato Botelho

08/31/2017

03:48 PM Bug #4703 (Closed): Inconsistent availability of direction on CP IP/MAC/hostname passthrough
Anonymous
03:43 PM Bug #4703: Inconsistent availability of direction on CP IP/MAC/hostname passthrough
The direction has been back for over 2 years.
https://github.com/pfsense/pfsense/commit/ef548f9824380d008722870dd1...
Kill Bill
03:32 PM Bug #1875: Captive Portal Voucher Error Messages won´t accept Umlauts
Duplicate of Bug #1454, plus should be a non-issue now that UTF-8 is being used. Kill Bill
03:20 PM Bug #7833: ipfw will not limit download speed - captiveportal
Duplicate of Bug #7813. No idea why https://github.com/pfsense/pfsense/commit/5f6825bbac6373a909651c90e8ca268242f6eed... Kill Bill
08:03 AM Bug #7833 (Resolved): ipfw will not limit download speed - captiveportal
With a fresh snapshot 2.4.0-RC install, only enabled the captiveportal and set a Default download (Kbit/s).
When I l...
Azure it
03:08 PM Revision dee2ecb2: Enable upload mode when rsync'ing snaps or packages
Renato Botelho
03:08 PM Revision 297a7fe4: Enable upload mode when rsync'ing snaps or packages
Renato Botelho
03:07 PM Revision d610e4ba: Enable upload mode when rsync'ing snaps or packages
Renato Botelho
03:07 PM Revision d2dfde1a: Enable upload mode when rsync'ing snaps or packages
Renato Botelho
01:08 PM Revision 9686b337: Use spaces in the write_config() message to prevent text wrapping issues in webGUI
See https://redmine.pfsense.org/issues/6363
(cherry picked from commit 8cb29dac04283045f82303c2ee1d2f772299d238)
Doktor Notor
01:08 PM Revision 529dac21: Merge pull request #3809 from doktornotor/patch-5
Jim Pingle
12:16 PM pfSense Packages Bug #7835: freeradius unit wrong for varusersmaxbandwidthup and varusersmaxbandwidthdown
May I suggest "Enter the maximum bandwidth for download in Kbps" and moving on? Kill Bill
12:09 PM pfSense Packages Bug #7835: freeradius unit wrong for varusersmaxbandwidthup and varusersmaxbandwidthdown
Then we can change the description to say kibibit instead. Changing the multiplier would result in people having an u... Jim Pingle
11:51 AM pfSense Packages Bug #7835: freeradius unit wrong for varusersmaxbandwidthup and varusersmaxbandwidthdown
Jim Pingle wrote:
> There are 1024 bits in a kilobit. Not 1000. I'll fix the "in in" typo.
Freebsd uses 1000 bits...
Azure it
09:36 AM pfSense Packages Bug #7835 (Not a Bug): freeradius unit wrong for varusersmaxbandwidthup and varusersmaxbandwidthdown
There are 1024 bits in a kilobit. Not 1000. I'll fix the "in in" typo. Jim Pingle
09:31 AM pfSense Packages Bug #7835 (Not a Bug): freeradius unit wrong for varusersmaxbandwidthup and varusersmaxbandwidthdown
When we add a new radius user, we can set Maximum Bandwidth Down/Up and in the help we can read:
*Enter the maximum ...
Azure it
11:35 AM Bug #7817: Login CSRF token fail on boot.
Jim Pingle wrote:
> What packages do you have installed? Which dashboard widgets?
>
> I update about a dozen lab ...
John Pettitt
08:04 AM Bug #7817 (Feedback): Login CSRF token fail on boot.
What packages do you have installed? Which dashboard widgets?
I update about a dozen lab systems every day or two ...
Jim Pingle
09:14 AM Bug #7832 (Duplicate): ipv6cp enabled, even with ipv6 disabled
Jim Pingle
09:06 AM Bug #7832: ipv6cp enabled, even with ipv6 disabled
https://redmine.pfsense.org/issues/7822 Michael Kellogg
04:37 AM Bug #7832 (Duplicate): ipv6cp enabled, even with ipv6 disabled
For a ppp(oe) interface, even when ipv6 is disabled the "set bundle enable ipv6cp" line is present and ipv6cp negotia... dean hamstead
09:01 AM Bug #7834 (Resolved): Disabling captiveportal will not flush the ipfw pipes
Disabling captiveportal will not flush the ipfw pipes.
Has we can seen with the commands *ipfw table all list ;echo;...
Azure it
08:37 AM Bug #7825: missing "BACKUP" in CARP status with IPv6
okay. Thanks for the hint. Just to complete this issue: The problem was the synchronization of the "Virtual IP Passwo... Helge Wiethoff
08:12 AM Bug #7825 (Not a Bug): missing "BACKUP" in CARP status with IPv6
OK, so something is amiss in the VIP or interface state on the secondary, but the status page is actually doing all i... Jim Pingle
08:07 AM Bug #7825: missing "BACKUP" in CARP status with IPv6
Jim Pingle wrote:
> Is the status OK on the master node?
Yupp. On the master node everything is fine and the text f...
Helge Wiethoff
07:52 AM Bug #7825 (Feedback): missing "BACKUP" in CARP status with IPv6
I can't reproduce this but the only IPv6-enabled cluster I have handy is on 2.4.0
Is the status OK on the master n...
Jim Pingle
04:56 AM Feature #7812: ZFS handling of autopreplace
ideally, there ought to be a page for managing zfs, like there is for geom mirrors(albiet pretty limited), or at leas... gavin penney

08/30/2017

06:45 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
Anything new on this?
Any log files we can provide with?
Ole-Henrik Jakobsen
06:40 PM Feature #7831: Enable an option to choose how to restart system
Jim Pingle wrote:
> The problem is specific to your hardware and not a general issue. Adding an option for that, whi...
Ole-Henrik Jakobsen
06:14 PM Feature #7831 (Needs Patch): Enable an option to choose how to restart system
The problem is specific to your hardware and not a general issue. Adding an option for that, which would be of no use... Jim Pingle
04:28 PM Feature #7831 (Needs Patch): Enable an option to choose how to restart system
With the current reboot cycle it will just hang at the end, and I tried to disable ACPI and find related settings in ... Ole-Henrik Jakobsen
06:08 PM Revision 389020e3: Use the full CA chain when sending an LDAP SSL query. Fixes #7830
While here, fix a couple more ldap_start_tls() calls that need a preceding @.
(cherry picked from commit ff500c90646...
Jim Pingle
06:07 PM Revision ff500c90: Use the full CA chain when sending an LDAP SSL query. Fixes #7830
While here, fix a couple more ldap_start_tls() calls that need a preceding @. Jim Pingle
01:20 PM Bug #7830 (Feedback): LDAP authentication fails using SSL with intermediate certificates
Applied in changeset commit:ff500c90646c8db5abe77d7efb02c7d191df6902. Jim Pingle
01:05 PM Bug #7830 (Resolved): LDAP authentication fails using SSL with intermediate certificates
When attempting authentication against and LDAP server using SSL/TLS, attempts to bind to the server fail if the serv... Jim Pingle
12:22 PM Revision 52e5efc8: Restore bad login message
(cherry picked from commit 7d7c65c2ffa4bcabccc10d0e3e319afbd979192b) Steve Beaver
12:21 PM Revision 7d7c65c2: Restore bad login message
Steve Beaver
12:15 PM Revision 56de61a7: Restore bad username or password message
(cherry picked from commit ca44a37cad5e905e3a76b6ce862de6ec5d3bcb06) Steve Beaver
12:14 PM Revision ca44a37c: Restore bad username or password message
Steve Beaver
11:02 AM Revision 2b58318b: Unbound Serve expired
Serve expired – Records stay in cache after TTL expires, with a TTL value of 0, if a new lookup is requested the cach... Martin Wasley
07:06 AM Bug #7719: Dynamic DNS updates not working on interface failover
See also: #7101, #7798 Jim Pingle
07:05 AM Bug #7798 (Duplicate): DynDNS client does not update when running on a gateway group.
Duplicate of #7719 Jim Pingle
07:05 AM Bug #7101 (Duplicate): services_dyndns.php not updating via gateway group, ok with the interface
Duplicate of #7719 Jim Pingle
05:39 AM pfSense Packages Bug #7782 (Resolved): FreeRADIUS 3 - temporary FreeRADIUS CA/certificate generated on each package reinstall
Renato Botelho
02:03 AM pfSense Packages Bug #7782: FreeRADIUS 3 - temporary FreeRADIUS CA/certificate generated on each package reinstall
Confirmed fixed, certificate/CA saved in config and no duplicates generated on reinstall. Thanks. Kill Bill
05:39 AM Bug #7827 (Resolved): Clicking "Cancel" while deleting a firewall state will still delete it
Renato Botelho
01:12 AM Bug #7827: Clicking "Cancel" while deleting a firewall state will still delete it
I can confirm this is now fixed. Nano Caiordo

08/29/2017

06:15 PM Revision 6ad9ab93: Fixed #7827
(cherry picked from commit 634d68709128495b22caffef36f9351e3361e2ff) Steve Beaver
06:14 PM Revision 634d6870: Fixed #7827
Steve Beaver
05:09 PM Bug #7719: Dynamic DNS updates not working on interface failover
Yes, it looks like the same root cause to me.
Has anyone from the dev team seen these?
Jorge Albarenque
04:37 PM Bug #7719: Dynamic DNS updates not working on interface failover
Maybe related to Bug #7101?
Problem still present with pfSense 2.3.4-RELEASE-p1 (amd64)
Riccardo Di Sarcina
02:31 PM pfSense Packages Bug #7829 (Confirmed): Unable to expand the "Advanced Server Settings" in ACME certificate edit
OK. I see what you're talking about now.
Those settings do not exist for DNS-Manual. The fact that it displays any...
Jim Pingle
02:14 PM pfSense Packages Bug #7829 (Not a Bug): Unable to expand the "Advanced Server Settings" in ACME certificate edit
Not enough detail here (what "Method" is selected? What + button?)
The only method with a "Key Type" is nsupdate, ...
Jim Pingle
01:49 PM pfSense Packages Bug #7829 (Duplicate): Unable to expand the "Advanced Server Settings" in ACME certificate edit
Under Services\Acme\Certificate options: Edit, under Domain SAN List, clicking on the + icon next to "Key Type..." ap... Bart K
02:28 PM Revision b1655527: Don't print a PHP error if LDAP STARTTLS fails.
(cherry picked from commit b2c7a79c5ff8eefda4b19cf2718056c1ba6c12ca) Jim Pingle
02:27 PM Revision b2c7a79c: Don't print a PHP error if LDAP STARTTLS fails.
Jim Pingle
02:14 PM pfSense Packages Bug #7782 (Feedback): FreeRADIUS 3 - temporary FreeRADIUS CA/certificate generated on each package reinstall
This should, I hope, be fixed with 0.13 of the FreeRADIUS3 package. Jim Pingle
02:07 PM Bug #7828 (Duplicate): Unable to expand the "Advanced Server Settings
Duplicate of #7829 Jim Pingle
01:43 PM Bug #7828: Unable to expand the "Advanced Server Settings
Tested on Firefox 54 and Microsoft Edge 40.15063.0.0 Bart K
01:40 PM Bug #7828: Unable to expand the "Advanced Server Settings
Under Services\Acme\Certificate options: Edit, under Domain SAN List, clicking on the + icon next to "Key Type..." ... Bart K
01:38 PM Bug #7828 (Duplicate): Unable to expand the "Advanced Server Settings
Bart K
01:20 PM Bug #7827: Clicking "Cancel" while deleting a firewall state will still delete it
Applied in changeset commit:634d68709128495b22caffef36f9351e3361e2ff. Anonymous
01:16 PM Bug #7827 (Feedback): Clicking "Cancel" while deleting a firewall state will still delete it
Fixed as requested Anonymous
12:50 PM Bug #7827: Clicking "Cancel" while deleting a firewall state will still delete it
2.4.0-RC (amd64)
built on Tue Aug 29 09:29:29 CDT 2017
Nano Caiordo
12:49 PM Bug #7827 (Resolved): Clicking "Cancel" while deleting a firewall state will still delete it
Hello gents,
On Diagnostic -> States if you click on the bin to delete a firewall state but then you click on Canc...
Nano Caiordo
11:23 AM pfSense Packages Bug #7826 (Rejected): rule to open port 4500 udp for ipsec/ikev2 ignored and blocked
There must be something different about the packet causing it to be dropped. Please post on the forum, list, or reddi... Jim Pingle
11:02 AM pfSense Packages Bug #7826 (Rejected): rule to open port 4500 udp for ipsec/ikev2 ignored and blocked
Hello,
on a pfsense 2.3.4_1 installed on a vm ( vmware ), i create a ikev2 ipsec server.
If i try to connect with...
Domenico De Monte
10:50 AM Bug #7821: GIF does not support broadcast
I found out the issue. I had to:
* change the tunnel IF IPv6 from None to Static
* access the radvd page for the ...
Greg Toombs
07:40 AM Bug #7825 (Not a Bug): missing "BACKUP" in CARP status with IPv6
In status_carp.php the descriptive text ("BACKUP") next to the button is missing within an ipv6 CARP-setup:
!carp-ip...
Helge Wiethoff

08/28/2017

07:54 PM Revision c5ad4704: Update translation files
Renato Botelho
07:54 PM Revision 12e8e8f6: Regenerate pot
Renato Botelho
07:51 PM Revision b8ab4260: Update translation files
Renato Botelho
07:46 PM Revision 8c306fcf: Regenerate pot
Renato Botelho
06:31 PM Bug #7805: dashboard System Information - inconsistent date formats
Much better.
Future enhancement: dashboard selection of locale (e.g. date format DD MMM CCYY instead of MMM DD CCY...
David Burns
11:05 AM Bug #7805 (Feedback): dashboard System Information - inconsistent date formats
Bios date and version check date formats now match other timestamps on the dashboard
Thanks to sjones@netgate.com
Anonymous
09:15 AM Bug #7805: dashboard System Information - inconsistent date formats
We can certainly change the "Version information updated" format. The others will require some research. Anonymous
04:03 PM Revision 5d383489: Partially addresses #7805
Bios date and version check date formats now match other timestamps on the dashboard
(cherry picked from commit fddb...
Steve Beaver
04:02 PM Revision fddb73c7: Partially addresses #7805
Bios date and version check date formats now match other timestamps on the dashboard Steve Beaver
03:47 PM Revision 19b24bcc: Build FRR on 2.3.5 snaps for testing
Jim Pingle
12:52 PM pfSense Packages Bug #7820: 2.4: dnsmasq can no longer handle punycode, compile time options change?
Jim Pingle wrote:
> dnsmasq on 2.4 is compiled with NLS enabled
Hmmmm......
Kill Bill
12:10 PM pfSense Packages Bug #7820: 2.4: dnsmasq can no longer handle punycode, compile time options change?
Jim Pingle wrote:
> dnsmasq on 2.4 is compiled with NLS enabled, which in turn sets up a dependency for IDN2 and use...
Paul Tarsus
09:01 AM pfSense Packages Bug #7820 (Feedback): 2.4: dnsmasq can no longer handle punycode, compile time options change?
dnsmasq on 2.4 is compiled with NLS enabled, which in turn sets up a dependency for IDN2 and uses -DHAVE_LIBIDN2. It ... Jim Pingle
12:00 PM pfSense Packages Feature #7824 (Resolved): [acme / Let's Encrypt] Bump to the latest acme.sh package
Our domain names are managed by Gandi, and we cannot use the Gandi Live API for the verification of the domain name o... S. Debreuil
11:52 AM Bug #7819 (Confirmed): php-fpm crashing
Those pf errors are unlikely to be related.
I can now reproduce the php-fpm crash on two units here. It may be a c...
Jim Pingle
11:22 AM Bug #7819: php-fpm crashing
At one point in the alert section of the UI I also saw this:... Greg Toombs
11:06 AM Bug #7819: php-fpm crashing
1. yes
2....
Greg Toombs
11:03 AM Bug #7819: php-fpm crashing
That 502 gateway timeout error happens when PHP crashes, so that's expected in this problem case. Sometimes it happen... Jim Pingle
09:56 AM Bug #7819: php-fpm crashing
I have updated to the latest snapshot:... Greg Toombs
08:45 AM Bug #7819: php-fpm crashing
If you update to a current snapshot, does it still crash? I can only seem to reproduce this on one system here, but i... Jim Pingle
10:30 AM Revision 745d3779: dyndns: Adding support for ClouDNS (https://www.cloudns.net)
Wagner Sartori Junior
07:28 AM Revision c22d9142: MPD Custom Modem Init
Sven Auhagen
07:15 AM Feature #7823 (Resolved): Pull request: Add support for dynamic DNS provider ClouDNS
Hello,
Would be nice to have cloudns as a dynamic dns provider.
Pull request is done already:
https://github.c...
Wagner Sartori Junior
02:40 AM Revision 8cb29dac: Use spaces in the write_config() message to prevent text wrapping issues in webGUI
See https://redmine.pfsense.org/issues/6363 Doktor Notor

08/27/2017

09:20 PM Bug #6363: AutoConfigBackup Restore Actions column missing due to long XMLRPC sync merge strings in the configuration description
Yeah, you have suggested a fix for an issue that noone could reproduce due to bad description and the screenshots com... Kill Bill
08:21 PM Bug #6363: AutoConfigBackup Restore Actions column missing due to long XMLRPC sync merge strings in the configuration description
Sure,
ACB has a problem displaying messages with long strings of text without spaces.
PFBlocker generates messa...
Brett Merrick
07:58 PM Bug #6363: AutoConfigBackup Restore Actions column missing due to long XMLRPC sync merge strings in the configuration description
Huh? This bug is about ACB. Kill Bill
05:50 PM Bug #6363: AutoConfigBackup Restore Actions column missing due to long XMLRPC sync merge strings in the configuration description
Sorry, latest version and issue still exists:
Looks like the issue might be the list of PFBlocker lists has no spa...
Brett Merrick
08:56 AM Bug #6363 (Resolved): AutoConfigBackup Restore Actions column missing due to long XMLRPC sync merge strings in the configuration description
Jim Pingle
03:13 AM Bug #6363: AutoConfigBackup Restore Actions column missing due to long XMLRPC sync merge strings in the configuration description
As noted above, wraps and works just fine on multiple boxes with Chrome, nothing invisible anywhere. Kill Bill
08:55 PM Bug #7819: php-fpm crashing
... Greg Toombs
08:49 PM Bug #7819: php-fpm crashing
Please post the output of the following commands:... Jim Pingle
08:27 PM Bug #7819: php-fpm crashing
Disabling the interface stats widget did not help. I got another crash:... Greg Toombs
12:39 PM Bug #7819: php-fpm crashing
I don't see any pattern in the URLs. It's crashed with:... Greg Toombs
09:45 AM Bug #7819: php-fpm crashing
Core dump attached Greg Toombs
09:26 AM Bug #7819 (Resolved): php-fpm crashing
This might be a regression of #6813. It mentions some errors that are the same as what I'm seeing:... Greg Toombs
08:03 PM Bug #7822 (Closed): pppoe gui ivp6 set to none still enables in conf
pppoe gui ivp6 set to none still enables in conf
https://forum.pfsense.org/index.php?topic=135802.0
Michael Kellogg
07:50 PM Bug #4455: Router Advertisment Daemon does not add UnicastOnly for OpenVPN interfaces
I filed #7821. Same messages, different version, possibly a different cause. Greg Toombs
07:49 PM Bug #7821 (New): GIF does not support broadcast
This might be related to #4455.
I am seeing the same radvd spam under System / Routing logs:...
Greg Toombs
07:31 PM Bug #7804: System info widget CPU usage not updating in IE. Needs Math.trunc() polyfill.
Need to wait for the next snap. The fix has been applied but not built yet. Anonymous
06:49 PM Bug #7804: System info widget CPU usage not updating in IE. Needs Math.trunc() polyfill.
IE 11.540 issue still present. "Retrieving CPU data" spinning gear. Bart K
03:28 PM Bug #7817: Login CSRF token fail on boot.
OK just updated (screen grabs attached), boot screen came up after update, then waited 30 seconds and tried to login ... John Pettitt
12:56 PM pfSense Packages Bug #7820: 2.4: dnsmasq can no longer handle punycode, compile time options change?
Just noticed this change in dnsmasq 2.77, new in 2.4:
> Remove historic automatic inclusion of IDN support when bu...
Paul Tarsus
12:49 PM pfSense Packages Bug #7820 (Closed): 2.4: dnsmasq can no longer handle punycode, compile time options change?
I've used dnsmasq with a custom hosts file for years, with mappings including the following:
> 0.0.0.0 r7---sn-vgq...
Paul Tarsus
10:51 AM Bug #6813: 2.3.3 built on Fri Sep 23 11:34:50 CDT 2016 - segfaulting processes result in non-functional system
Greg Toombs wrote:
> I'm not using OpenVPN, nor accessing the menu, but I still get a segfault that looks similar to...
Kill Bill
10:46 AM Bug #6813: 2.3.3 built on Fri Sep 23 11:34:50 CDT 2016 - segfaulting processes result in non-functional system
Kill Bill wrote:
> Going to VPN - OpenVPN menu causes php-fpm to segfault.
I'm not using OpenVPN, nor accessing t...
Greg Toombs
08:57 AM pfSense Packages Feature #6436 (Resolved): Add Stunnel binaries to the pfSense repository
Jim Pingle
03:04 AM pfSense Packages Feature #6436: Add Stunnel binaries to the pfSense repository
Merged, can be closed. Kill Bill
08:56 AM pfSense Packages Bug #6948 (Resolved): HAproxy files tab input validation nonsense - impossible to save files
Jim Pingle
03:15 AM pfSense Packages Bug #6948: HAproxy files tab input validation nonsense - impossible to save files
Can be closed. Kill Bill

08/26/2017

06:55 PM Bug #7818 (Duplicate): NTP clock frequency not plotting on monitor graph
Since 2.4 the NTP clock frequency is always plotted as zero rather than the actual frequency on the monitoring graph. John Pettitt
06:53 PM Bug #7817 (Not a Bug): Login CSRF token fail on boot.
When rebooting after an update the initial login works then ajax calls start failing a few seconds later and a re-log... John Pettitt
01:35 PM Feature #3971 (Resolved): IPv6 - Preserve the DUID used for WAN DHCP-PD in the configuration file
Jim Pingle
11:02 AM Feature #3971: IPv6 - Preserve the DUID used for WAN DHCP-PD in the configuration file
Done with https://github.com/pfsense/pfsense/pull/3304, can be closed. Kill Bill
09:40 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
I'm seeing no default route for IPv6 after a reboot until I do another save on the WAN interface.
Larry Rosenman
06:52 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
2.4.0-RC (amd64) and custom hardware
built on Fri Aug 25 18:40:44 CDT 2017
FreeBSD 11.0-RELEASE-p12
net.link.br...
Paal Andreas Lindsetmo
07:45 AM Bug #7816: IPv6 breaks on reboot
Hey, and thanks for the swift reply.
What about the fact that the firewall's WAN interface is unable to ping6 ipv6...
Paal Andreas Lindsetmo
07:17 AM Bug #7816 (Duplicate): IPv6 breaks on reboot
Looks the same as #3965 -- bridges are setup too late for them to be used as a track interface at boot time. Jim Pingle
07:13 AM Bug #7816: IPv6 breaks on reboot
Paal Andreas Lindsetmo wrote:
> My setup:
>
> 2.4.0-RC (amd64) (custom hardware)
> built on Fri Aug 25 18:40:44 ...
Paal Andreas Lindsetmo
07:07 AM Bug #7816 (Duplicate): IPv6 breaks on reboot
My setup:
2.4.0-RC (amd64) (custom hardware)
built on Fri Aug 25 18:40:44 CDT 2017
FreeBSD 11.0-RELEASE-p12
...
Paal Andreas Lindsetmo
06:18 AM Todo #204: All write_config() statements should include a reason of some sort
https://github.com/pfsense/pfsense/pull/3805 (interfaces*.php)
https://github.com/pfsense/pfsense/pull/3806 (firewal...
Kill Bill
03:49 AM Bug #7815 (Closed): IPSec MSS Clamping is matching traffic not related to IPSec
Hello,
IPSec setting "Maximum MSS" (MSS clamping) is acting on traffic that doesn't pass across IPSec, perhaps WAN...
Spike R.D.

08/25/2017

08:41 PM Bug #7802 (Resolved): OpenVPN Server Compression option - misspelling
Jim Pingle
08:11 PM Bug #7802: OpenVPN Server Compression option - misspelling
Fixed.
David Burns
06:13 PM Revision 9b6fbf5a: remove old logo from default page
Jared Dillard
06:13 PM Revision 81c4f647: make css compatible with newer nvd3 version
Jared Dillard
06:12 PM Revision 07ce4d2b: update top nav bar logo
Jared Dillard
06:12 PM Revision e1aea63d: remove image from rss widget
Jared Dillard
06:12 PM Revision 4cbb6a6e: update favicon
Jared Dillard
05:39 PM Revision cd7ae8ba: remove old logo from default page
Jared Dillard
05:39 PM Revision 0b5ed87d: make css compatible with newer nvd3 version
Jared Dillard
05:39 PM Revision 0e11820b: update top nav bar logo
Jared Dillard
05:39 PM Revision 4b518ad0: remove image from rss widget
Jared Dillard
05:39 PM Revision 0408ddb1: update favicon
Jared Dillard
02:45 PM pfSense Packages Bug #7696 (Resolved): Telegraf Package Saving Incorrect Password
Jim Pingle
09:23 AM pfSense Packages Bug #7696: Telegraf Package Saving Incorrect Password
Fixed in 0.3 Kill Bill
02:45 PM pfSense Packages Bug #6603 (Resolved): pfblockerng's Unbound modifications leave system broken post-config restore
Jim Pingle
09:22 AM pfSense Packages Bug #6603: pfblockerng's Unbound modifications leave system broken post-config restore
The above is included in 2.1.1_10. Kill Bill
02:44 PM Bug #7809 (Resolved): Wireless interfaces are not upgraded properly for 2.4.0
Fixed Jim Pingle
01:42 PM pfSense Packages Bug #7797: Squid Reverse Proxy alternating between destinations
Kill Bill wrote:
> As noted on another bug (Bug #7752), the reverse proxy part of Squid is pretty much unmaintained....
Mickael Fouquet
09:35 AM Feature #7814 (Resolved): Unbound serve-expired please add to GU as tickbox
Suggest default to off
Description of feature here, its pretty killer.
serve-expired: <yes or no>
...
Chris Collins
09:31 AM Bug #6406: Web process becomes unresponsive producing 502 Bad Gateway nginx
Having a fair amount of experience myself managing php hosting systems I can offer some thoughts.
On my own pfsens...
Chris Collins
07:31 AM Bug #7813 (Resolved): Missing download statistics on captive portal with MAC filtering enabled
I'm testing the captive portal on 2.4 RC (updated to today) and I noticed that when MAC filtering is enabled the byte... Caio Plumbeo
06:00 AM Todo #6606: Adapt captive portal to work without multi-instance ipfw
EDIT: I created a new bug #7813 Caio Plumbeo
04:57 AM Bug #5319: Error message "No config named" in charon daemon
Bug is still present in 2.3.4-RELEASE-p1. Any news on fixing this? Kilian Ries

08/24/2017

06:44 PM Feature #7812 (New): ZFS handling of autopreplace
This idea was posted on the forum. It doesn't look hard and if an install needs ZFS (not just reinstall + use a saved... Stilez y
06:23 PM Revision 6f4e64ec: Fixed #7811
(cherry picked from commit 0b6c886bd69370842b0137f49add16fde00a0b2f) Steve Beaver
06:22 PM Revision 0b6c886b: Fixed #7811
Steve Beaver
06:20 PM Revision 7bf76c8c: Merge branch 'RELENG_2_4_0' of gitlab.netgate.com:pfsense/pfsense into RELENG_2_4_0
Steve Beaver
06:20 PM Revision c5180b26: Fixed #7811
(cherry picked from commit 1562b46aaaa0e402cb3b253d85aae734d4677dec) Steve Beaver
06:19 PM Revision 1562b46a: Fixed #7811
Steve Beaver
05:33 PM Revision b9a40f9b: I changed the path of egrep
Sven Auhagen
03:53 PM Revision 1e885cfd: Bump config revision, fix comment. Ticket #7809
Jim Pingle
03:53 PM Revision 15cc4eb4: Setup upgrade code for wireless interfaces to the new format needed for 2.4, and switch rc.bootup so the config upgrade happens before a mismatch test, otherwise we can't fix this type of situation. Fixes #7809
Jim Pingle
03:52 PM Revision fc319749: Bump config revision, fix comment. Ticket #7809
Jim Pingle
03:12 PM Bug #7811 (Resolved): Installed pacakges dashboard widget breaks if no packages are installed
Anonymous
01:30 PM Bug #7811: Installed pacakges dashboard widget breaks if no packages are installed
Applied in changeset commit:1562b46aaaa0e402cb3b253d85aae734d4677dec. Anonymous
01:24 PM Bug #7811 (Feedback): Installed pacakges dashboard widget breaks if no packages are installed
Fixed and tested in 2.4, 2.4.0, 2.3 & 2.3.4 Anonymous
01:18 PM Bug #7811 (Resolved): Installed pacakges dashboard widget breaks if no packages are installed
https://forum.pfsense.org/index.php?topic=135637.0 Anonymous
03:11 PM Revision 79ccd1f2: Setup upgrade code for wireless interfaces to the new format needed for 2.4, and switch rc.bootup so the config upgrade happens before a mismatch test, otherwise we can't fix this type of situation. Fixes #7809
Jim Pingle
01:02 PM Bug #7810 (Resolved): openssl/openvpn need to have loaded booth AESNI and cryptodev to accelerate AES operations , but gui alows you load only one at once
[2.4.0-RC][root@castor.ninex.info]/boot/kernel: kldunload cryptodev
[2.4.0-RC][root@castor.ninex.info]/boot/kernel: ...
Grzegorz Krzystek
12:52 PM Revision f82af17a: Fixed #7804 Replace Math.trunc with Math.floor to make IE happy
(cherry picked from commit a1c3244c96b033891136ff2d95be61500a720231) Steve Beaver
12:50 PM Revision a1c3244c: Fixed #7804 Replace Math.trunc with Math.floor to make IE happy
Steve Beaver
12:49 PM Revision 113caa09: Fixed #7804
Replace Math.trunc with Math.floor to make IE happy
(cherry picked from commit ab5a3fa10e8dd2b88219a00ac410cb9ea8a0b...
Steve Beaver
12:48 PM Revision ab5a3fa1: Fixed #7804
Replace Math.trunc with Math.floor to make IE happy Steve Beaver
12:41 PM Bug #5263: Installed Packages widget causes index.php to hang
Steve Beaver wrote:
> Version 2.4 now checks for updates via Ajax and so no longer "hangs" the dashboard.
??!!
...
Kill Bill
12:34 PM Bug #5263: Installed Packages widget causes index.php to hang
Version 2.4 now checks for updates via Ajax and so no longer "hangs" the dashboard. Anonymous
11:44 AM Bug #7808: Dashboard brakes when adding widgets
I don't think there's anything new here. This widget, the dashboard update check and pretty much anything that runs p... Kill Bill
11:32 AM Bug #7808: Dashboard brakes when adding widgets
Sorry, still the same here. I have to reinstall to make it work again. How can I force to reset the GUI configuration... Pablo Trincavelli
09:56 AM Bug #7808 (Feedback): Dashboard brakes when adding widgets
Jim Thompson
09:35 AM Bug #7808: Dashboard brakes when adding widgets

Just tried it on 2.4.0.r.20170823.0033
can't duplicate. please retest with latest version.
Jim Thompson
08:56 AM Bug #7808: Dashboard brakes when adding widgets
Sorry, tested in version 2.4.0_RC Pablo Trincavelli
08:55 AM Bug #7808 (Resolved): Dashboard brakes when adding widgets
Apparently when adding Installed Packages widget, dashboard brakes and it does not update. Also the menu stop working... Pablo Trincavelli
10:52 AM Bug #7785: jQuery syntax error: unterminated regular expression literal
Well that's not a problem. I thought the intent of your latest fix was to have the same code on 2.3 and 2.4; if that'... Kill Bill
10:34 AM Bug #7785: jQuery syntax error: unterminated regular expression literal
I made a mistake. It was fixed as fast as possible and then fixed more comprehensively. Stuff happens.
The codebas...
Anonymous
10:22 AM Bug #7785: jQuery syntax error: unterminated regular expression literal
Steve Beaver wrote:
> Re-written to accommodate old and new refresh systems based on whether register_ajax() functio...
Kill Bill
07:12 AM Bug #7785: jQuery syntax error: unterminated regular expression literal
You are right :( Re-written to accommodate old and new refresh systems based on whether register_ajax() function exists. Anonymous
10:20 AM Bug #7809 (Feedback): Wireless interfaces are not upgraded properly for 2.4.0
Applied in changeset commit:79ccd1f2796059a7a60b865a383dc288662f86b7. Jim Pingle
09:24 AM Bug #7809: Wireless interfaces are not upgraded properly for 2.4.0
Looks like the interface mismatch test comes before the upgrade code, complicating this further. Jim Pingle
08:56 AM Bug #7809 (Resolved): Wireless interfaces are not upgraded properly for 2.4.0
The wireless interface structure changed on FreeBSD 11 (#6770) but there is no upgrade code to convert 2.3.x and olde... Jim Pingle
08:00 AM Bug #7804: System info widget CPU usage not updating in IE. Needs Math.trunc() polyfill.
Applied in changeset commit:ab5a3fa10e8dd2b88219a00ac410cb9ea8a0b5aa. Anonymous
07:53 AM Bug #7804 (Feedback): System info widget CPU usage not updating in IE. Needs Math.trunc() polyfill.
Anonymous
07:18 AM Bug #7804: System info widget CPU usage not updating in IE. Needs Math.trunc() polyfill.
polyfill.js is included by foot.inc so +should+ be available. I will attempt to reproduce. Which version of IE are yo... Anonymous
06:09 AM Bug #7176 (Resolved): IPv6 Monitor IP does not seem to propagate
Thanks! Renato Botelho
01:49 AM Bug #7176: IPv6 Monitor IP does not seem to propagate
2.4.0-RC (amd64)
built on Wed Aug 23 05:47:05 CDT 2017
FreeBSD 11.0-RELEASE-p12
This now seems resolved.
Chris Palmer
06:03 AM Bug #7806 (Rejected): dashboard System Information - inconsistent crypto information
That is by design. The information in the CPU section is specific to the CPU, and shows up even when support for the ... Jim Pingle
04:57 AM Revision 8317f391: As discussed
Sven Auhagen
04:29 AM pfSense Packages Bug #6563: Squid still accepts sha1 certificates
https://github.com/pfsense/FreeBSD-ports/pull/402 since pretty much any decent browser nags about these nowadays. Kill Bill
03:16 AM pfSense Packages Feature #7691: Allow for custom icap services for squid
You can integrate any of them by putting them to _Custom Options (After Auth)_ (or pretty much any of the advanced cu... Kill Bill
02:09 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
Larry Rosenman wrote:
> on my ATT 6RD Dpinger is now happy with
> Version 2.4.0-RC (amd64)
> built on Wed Aug 23...
Ole-Henrik Jakobsen

08/23/2017

11:52 PM Bug #7807 (Duplicate): sg-1000 random reboot when traffic shaping enabled
Based on this discussion https://forum.pfsense.org/index.php?topic=135450.0
When u enable traffic shaping with tho...
Bipin Chandra
11:32 PM Bug #7806 (Rejected): dashboard System Information - inconsistent crypto information
2.4.0-RC (amd64)
built on Wed Aug 23 15:31:27 CDT 2017
FreeBSD 11.0-RELEASE-p12
The pfSense Crypto HW informatio...
David Burns
11:13 PM Bug #7805 (Resolved): dashboard System Information - inconsistent date formats
2.4.0-RC (amd64)
built on Wed Aug 23 15:31:27 CDT 2017
FreeBSD 11.0-RELEASE-p12
Multiple date formats are in use...
David Burns
08:33 PM Bug #7785: jQuery syntax error: unterminated regular expression literal
@sbeaver: I don't think the Squid change was supposed to go to 2.3.4; it badly breaks the dashboard (cannot add/remov... Kill Bill
08:27 PM Revision bfeda194: Fix -U option
Renato Botelho
08:27 PM Revision aef38b28: Fix -U option
Renato Botelho
08:27 PM Revision 730b22f0: Fix -U option
Renato Botelho
08:26 PM Revision 1f6d1861: Fix -U option
Renato Botelho
08:20 PM Bug #7804 (Resolved): System info widget CPU usage not updating in IE. Needs Math.trunc() polyfill.
System info widget CPU usage not updating in IE. Needs Math.trunc() polyfill.
Also affected versions:
2.3.4 (git...
NOYB NOYB
08:16 PM Revision e38c8369: Change default to never upload files and add a new option to do it
Renato Botelho
08:16 PM Revision 25c86b03: Change default to never upload files and add a new option to do it
Renato Botelho
08:14 PM Revision 443e783c: Change default to never upload files and add a new option to do it
Renato Botelho
08:14 PM Revision f6c83d05: Change default to never upload files and add a new option to do it
Renato Botelho
07:51 PM Bug #7504: Info blocks do not work inside a table
Fix with conditional instead of removing. - /usr/local/www/js/pfSenseHelpers.js... NOYB NOYB
07:20 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
on my ATT 6RD Dpinger is now happy with
Version 2.4.0-RC (amd64)
built on Wed Aug 23 15:31:27 CDT 2017
FreeBSD ...
Larry Rosenman
07:54 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
Luiz Souza wrote:
> Yes, this bug has been fixed in the latest snapshot.
>
> Thanks for all the debug and testing...
Ole-Henrik Jakobsen
01:29 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
Yes, this bug has been fixed in the latest snapshot.
Thanks for all the debug and testing.
Luiz Souza
06:37 PM Revision 6257057c: Captive portal: fix idle times in details popup
Explicitly cast $idle_time to integer.
(cherry picked from commit 07df3494bd9a508e568b4ae999369ec8b2d14ec2)
Caio Plumbeo
06:37 PM Revision 701e028a: Captive portal: fix idle times in details popup
Explicitly cast $idle_time to integer.
(cherry picked from commit 07df3494bd9a508e568b4ae999369ec8b2d14ec2)
Caio Plumbeo
06:37 PM Revision 68a2f17f: Captive portal: fix idle times in details popup
Explicitly cast $idle_time to integer.
(cherry picked from commit 07df3494bd9a508e568b4ae999369ec8b2d14ec2)
Caio Plumbeo
06:36 PM Revision c51193a9: Merge pull request #3804 from plumbeo/fix-details-popup
Renato Botelho
06:36 PM Revision 18f786fa: Update system_update_settings.php
Tidied the Dashboard update settings text
(cherry picked from commit c2fae874e64753eb113dc0618927d9042881fd39)
Joseph Reeves
06:36 PM Revision 68e41c4a: Merge pull request #3798 from IknowJoseph/patch-2
Renato Botelho
01:07 PM Feature #7803 (Closed): Include more OpenVPN Options in GUI
It'd be nice to include more of the OpenVPN options in the GUI:
https://community.openvpn.net/openvpn/wiki/Openvpn23...
Clinton Cory
12:54 PM Revision 66f58ded: Correct typo. Fixes #7802
(cherry picked from commit 61a8cc10858e49051a6976ccc7464ec34fd3ffce) Jim Pingle
12:54 PM Revision 61a8cc10: Correct typo. Fixes #7802
Jim Pingle
11:03 AM Revision 07df3494: Captive portal: fix idle times in details popup
Explicitly cast $idle_time to integer. Caio Plumbeo
08:00 AM Bug #7802 (Feedback): OpenVPN Server Compression option - misspelling
Applied in changeset commit:61a8cc10858e49051a6976ccc7464ec34fd3ffce. Jim Pingle
07:41 AM Bug #7802 (Resolved): OpenVPN Server Compression option - misspelling
2.4.0-RC (amd64)
built on Wed Aug 23 05:47:05 CDT 2017
FreeBSD 11.0-RELEASE-p12
Under VPN / OpenVPN / Servers...
David Burns
07:26 AM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
sorry for that than. Wagner Sartori Junior
07:23 AM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
OK, if that fixed it, then it isn't related to the problem originally stated on this ticket, which is for a state iss... Jim Pingle
07:02 AM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
good idea, it did the trick. Wagner Sartori Junior
06:50 AM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
Add a floating rule to block, quick, in the out direction on that WAN (pppoe0) any GRE traffic, then reboot and see i... Jim Pingle
06:18 AM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
# Working
enc0 gre 1.1.1.1 -> 2.2.2.2 MULTIPLE:MULTIPLE
# Not Working
pppoe0 gre 1.1.1.1 -> 2.2.2.2 ...
Wagner Sartori Junior
06:03 AM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
Wagner Sartori Junior wrote:
> I'm on 2.4-RC... if I reset the states, it starts working.
Check your states for t...
Jim Pingle
03:54 AM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
I'm on 2.4-RC... if I reset the states, it starts working. Wagner Sartori Junior
06:05 AM Bug #7015: IPsec not working behind NAT
The GRE parts may belong on that ticket, but this ticket originally did not have anything to do with GRE, someone alo... Jim Pingle
03:54 AM Bug #7015: IPsec not working behind NAT
probably this is a duplicate of #4479 ? Wagner Sartori Junior
06:00 AM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
Vincent Sencil wrote:
> Backup:
> 1. Backup by ticking Skip packages
> 2. Backup the Package Manager only
>
> O...
Kill Bill
05:15 AM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
Backup:
1. Backup by ticking Skip packages
2. Backup the Package Manager only
On the server where you want to re...
Vincent Sencil
05:23 AM Bug #6263: Encryption options for every P2 on a given P1 are written to each P2 individually inside ipsec.conf with multiple P2 entries + split conn entries
Hi,
we had problems with one of our IPSecs. Sometimes it can connect, sometimes not. After a reboot of pfsense, pf...
Cullen Trey

08/22/2017

10:09 PM Feature #7800: Add option for state logging
Already part of 3.0 Jim Thompson
09:13 PM Feature #7800 (New): Add option for state logging
It would be nice to have a facility built in for logging states as they are created. The idea is that for compliance... Joseph Brower
09:17 PM Bug #7801 (Closed): UDP fragments received over IPsec tunnel are not properly reassembled and forwarded
... Chris Linstruth
09:09 PM Feature #2963: Captive Portal MAC authentication request
I would love to see this functionality too. Many apartment complexes are starting to use this and having authenticat... Joseph Brower
08:46 PM Feature #7799 (New): Make an ajax call to toggle logging by clicking on the logging icon next to a rule
i think it would be a great added ux/ui improvement to add a simple toggle for the logging and controlling the disabl... Mike DeVita
08:23 PM Revision 652f8d00: Update translation files
Renato Botelho
08:23 PM Revision c813029f: Regenerate pot
Renato Botelho
07:56 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
Does that mean we can expect a fix before -REL? Larry Rosenman
07:46 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
Luiz duplicated the issue earlier today. Jim Thompson
06:55 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
I'm seeing this still on 2.4.0-RC.
ATT Fiber 6RD:
WAN_6RD
2602:300:c533:1510:: 43.4ms 5.3ms 48% Offline
WAN_DHC...
Larry Rosenman
06:07 PM Bug #7798: DynDNS client does not update when running on a gateway group.
Also see ticket 25792. Steve Wheeler
06:04 PM Bug #7798 (Duplicate): DynDNS client does not update when running on a gateway group.
When a DynDNS client is set to run on a gateway group rather than an interface directly it fails to run the update sc... Steve Wheeler
05:57 PM Revision ad0e8610: Fixed #7787
Always make an IPSec mobiles table, even if none have been configured. Prevents JS null value
error message on consol...
Steve Beaver
05:19 PM Revision 658d1e70: Update translation files
Renato Botelho
05:14 PM Revision 9551cd3e: Regenerate pot
Renato Botelho
04:42 PM pfSense Packages Bug #7438: Squid 0.4.36_2 Remote Cache Parent not working
As noted above, this needs to go to the forums to identify the problem. Kill Bill
04:37 PM Revision 5339da65: Do not exit while running in loop mode
Renato Botelho
04:37 PM Revision de0b7bb6: Do not exit while running in loop mode
Renato Botelho
04:37 PM Revision f9ba59d4: Do not exit while running in loop mode
Renato Botelho
04:37 PM Revision b687d5fa: Do not exit while running in loop mode
Renato Botelho
04:27 PM Revision ba7bc25c: When saving a GIF interface, do not allow the user to enter a subnet directly in the address box. The subnet is determined by the "GIF tunnel subnet" drop-down. Fixes #7789
(cherry picked from commit 6d028dc26c129ce1b0b25551142819772664f1e5)
(cherry picked from commit c7fd6ec9b196b0d7c37d1...
Jim Pingle
04:26 PM Revision df4107ac: When saving a GIF interface, do not allow the user to enter a subnet directly in the address box. The subnet is determined by the "GIF tunnel subnet" drop-down. Fixes #7789
(cherry picked from commit 6d028dc26c129ce1b0b25551142819772664f1e5)
(cherry picked from commit c7fd6ec9b196b0d7c37d1...
Jim Pingle
04:26 PM Revision c7fd6ec9: When saving a GIF interface, do not allow the user to enter a subnet directly in the address box. The subnet is determined by the "GIF tunnel subnet" drop-down. Fixes #7789
(cherry picked from commit 6d028dc26c129ce1b0b25551142819772664f1e5) Jim Pingle
04:26 PM Revision 6d028dc2: When saving a GIF interface, do not allow the user to enter a subnet directly in the address box. The subnet is determined by the "GIF tunnel subnet" drop-down. Fixes #7789
Jim Pingle
04:17 PM pfSense Packages Bug #7674: Issue Downloading Snort Alert Log Download
This problem is fixed in the Snort package update to version 3.2.9.5. This ticket can be closed when the pull reques... Bill Meeks
02:24 PM pfSense Packages Bug #7610: Squid use all memory ram.
This is an upstream bug with no fix and no good workaround for 3.5.x - cf. http://bugs.squid-cache.org/show_bug.cgi?i... Kill Bill
02:07 PM Bug #7787 (Resolved): IPsec widget, JS error in background when switching tabs, Cannot read property 'style' of null
Anonymous
02:06 PM Bug #7787: IPsec widget, JS error in background when switching tabs, Cannot read property 'style' of null
I can confirm the issue is fixed with the change applied. Pi Ba
12:55 PM Bug #7787: IPsec widget, JS error in background when switching tabs, Cannot read property 'style' of null
Yes it will. Anonymous
12:40 PM Bug #7787: IPsec widget, JS error in background when switching tabs, Cannot read property 'style' of null
Will the fix be backported to 2.4.0 ? Pi Ba
06:50 AM Bug #7787 (Feedback): IPsec widget, JS error in background when switching tabs, Cannot read property 'style' of null
Applied in changeset commit:75863a79705fccce21b7e0d0312ce1ef0b0985be. Anonymous
01:55 PM Revision 7d271f91: Actually ready expected value from build.conf after read build.conf
Renato Botelho
01:55 PM Revision 5eb2c7c5: Actually ready expected value from build.conf after read build.conf
Renato Botelho
01:47 PM Revision d02fba0d: Let user defined default arch list in build.conf
Renato Botelho
01:47 PM Revision 21835143: Let user defined default arch list in build.conf
Renato Botelho
01:44 PM Revision 62c14000: Fix hability to build only packages
Renato Botelho
01:43 PM Revision b4b446a6: Fix hability to build only packages
Renato Botelho
01:20 PM pfSense Packages Bug #7797: Squid Reverse Proxy alternating between destinations
As noted on another bug (Bug #7752), the reverse proxy part of Squid is pretty much unmaintained. I'd strongly sugges... Kill Bill
01:09 PM pfSense Packages Bug #7797 (Feedback): Squid Reverse Proxy alternating between destinations
Hello,
It's pretty hard to explain this bug, but it seems to be very old bug. This post explain it perfectly: http...
Mickael Fouquet
01:11 PM Revision 69f77f55: Remove quotes from commands
Renato Botelho
01:11 PM Revision dd90320c: Teach build_snapshots.sh to read exit code of build.sh
Renato Botelho
01:10 PM Revision 3b55caf9: Remove quotes from commands
Renato Botelho
01:10 PM Revision 3ef21629: Teach build_snapshots.sh to read exit code of build.sh
Renato Botelho
01:07 PM Revision 6c816c03: Remove quotes from commands
Renato Botelho
01:07 PM Revision addbce37: Teach build_snapshots.sh to read exit code of build.sh
Renato Botelho
01:05 PM Revision 87c56a10: Remove quotes from commands
Renato Botelho
12:58 PM Revision 08ec32cf: Teach build_snapshots.sh to read exit code of build.sh
Renato Botelho
12:18 PM Revision da058fe4: fixed #7795
By changing var name to no longer conflict with ipsec widget
(cherry picked from commit 3ed475b11dfcb2999a7119598749...
Steve Beaver
12:14 PM Revision 89c32bf2: fixed #7795
By changing var name to no longer conflict with ipsec widget
(cherry picked from commit 3ed475b11dfcb2999a7119598749...
Steve Beaver
12:10 PM Revision bc2772c1: fixed #7795
By changing var name to no longer conflict with ipsec widget
(cherry picked from commit 3ed475b11dfcb2999a7119598749...
Steve Beaver
12:07 PM Revision 3ed475b1: fixed #7795
By changing var name to no longer conflict with ipsec widget Steve Beaver
11:49 AM Bug #7751: Duplicated traffic graphs
I know this has already been closed but I can also confirm that it working properly now. Thanks Luiz/Jared! Scott D
11:46 AM Bug #6862 (Resolved): mode 0444 for /var/etc/cert.crt leads to nginx crit error: 13: Permission denied
PR was merged months ago and the permissions look correct. Jim Pingle
11:40 AM Bug #7789 (Feedback): GIF interface page does not validate IPv6 addresses
Applied in changeset commit:6d028dc26c129ce1b0b25551142819772664f1e5. Jim Pingle
11:25 AM Bug #7789 (Confirmed): GIF interface page does not validate IPv6 addresses
It is validating IPv4/IPv6 addresses but it also happens to also validate subnets as valid addresses. I'll push a fix... Jim Pingle
11:39 AM pfSense Packages Bug #7752: Squid 3 reverse proxy - HTTPS==>HTTP fails
The way the reverse proxy part of the Squid package is written, it will only redirect HTTPS to HTTPS and HTTP to HTTP... Kill Bill
11:39 AM pfSense Packages Bug #7391 (Not a Bug): 0.4.36_1 localnet ACL missing
Jim Pingle
11:31 AM pfSense Packages Bug #7391: 0.4.36_1 localnet ACL missing
As noted in https://redmine.pfsense.org/issues/7391#note-7 the OpenVPN interfaces are not added by design since it ad... Kill Bill
11:37 AM pfSense Packages Bug #7431 (Resolved): BIND (9.11-2) Log shortcut needs to be updated.
Jim Pingle
11:24 AM pfSense Packages Bug #7431: BIND (9.11-2) Log shortcut needs to be updated.
Merged long ago, can be closed. Kill Bill
11:08 AM pfSense Packages Bug #7696: Telegraf Package Saving Incorrect Password
https://github.com/pfsense/FreeBSD-ports/pull/399/ Kill Bill
10:00 AM Bug #7796 (Rejected): IPsec NAT/BINAT not working
It is most likely an issue with your configuration, and this is not a support platform. Please discuss the problem on... Jim Pingle
09:56 AM Bug #7796 (Rejected): IPsec NAT/BINAT not working
Hi,
my setup is the following:
Site A:
Lan: 192.168.100.0/24
Lan_IP: 192.168.100.1
Transfer: 10.2.81.0/24
T...
Kilian Ries
09:15 AM Bug #7611: Diagnostics/Routes ipv6 ( netstat ), causes kernel panic
I can only seem to reproduce this when the same address is used as both the "GIF tunnel local address" and "GIF tunne... Jim Pingle
08:49 AM Bug #7785 (Resolved): jQuery syntax error: unterminated regular expression literal
Anonymous
08:40 AM Bug #7785: jQuery syntax error: unterminated regular expression literal
That worked, thanks. ;) Kill Bill
08:09 AM Bug #7785 (Feedback): jQuery syntax error: unterminated regular expression literal
Widget has been updated to use the new refresh system, and the regex eliminated by exiting the script where required,... Anonymous
05:46 AM Bug #7785 (Assigned): jQuery syntax error: unterminated regular expression literal
Thanks for the update. That explains why I couldn't find it :) I will take care of it today. Anonymous
04:03 AM Bug #7785: jQuery syntax error: unterminated regular expression literal
Steve Beaver wrote:
> Possibly resolved by #7784
Still there with 2.4 RC. This seems like the Squid widget is cau...
Kill Bill
08:47 AM Bug #7795 (Resolved): NTP status widget: d.getSeconds is not a function
Anonymous
08:31 AM Bug #7795: NTP status widget: d.getSeconds is not a function
Steve Beaver wrote:
> Looks like both widgets have a global var called "d". I bet they are stepping on each other.
...
Kill Bill
07:30 AM Bug #7795: NTP status widget: d.getSeconds is not a function
Applied in changeset commit:da058fe4c156e607227f1bac03a3ade42c475115. Anonymous
07:20 AM Bug #7795 (Feedback): NTP status widget: d.getSeconds is not a function
Applied in changeset commit:3ed475b11dfcb2999a71195987495ccf05808127. Anonymous
06:57 AM Bug #7795: NTP status widget: d.getSeconds is not a function
Looks like both widgets have a global var called "d". I bet they are stepping on each other. Would have been a good i... Anonymous
06:22 AM Bug #7795 (Resolved): NTP status widget: d.getSeconds is not a function
Already mentioned in #7784 but creating a separate bug for this.
When you select either the tunnels or the mobile...
Kill Bill
07:59 AM pfSense Packages Feature #7792: FRR pkg pfsense can not wok as ABR with stub areas (no stub area bit)
The "Disable FIB Updates" option is the only GUI control to setup stub areas but it is global, not per interface/netw... Jim Pingle
01:26 AM pfSense Packages Feature #7792 (Resolved): FRR pkg pfsense can not wok as ABR with stub areas (no stub area bit)
Setup pfsense as ABR with several areas and found one does not work properly if one of areas is stub. There are two m... Constantine Kormashev
07:53 AM pfSense Packages Feature #7794 (Assigned): FRR pkg pfsense no metric-type option in OSPF redistribute section of web-interface
The OSPF metric option under Route Maps, "Metric" in the drop-down "Metric Action". The options there are the only op... Jim Pingle
03:14 AM pfSense Packages Feature #7794 (Resolved): FRR pkg pfsense no metric-type option in OSPF redistribute section of web-interface
There is not @metric-type@ option in OSPF redistribute section of web-interface. By default FRR makes redistribution ... Constantine Kormashev
07:40 AM pfSense Packages Feature #7793: FRR pkg pfsense web interface checking for RID is setup in OSPF6 section
The input validation is weak to nonexistent all throughout FRR, it's all on my todo list yet.
As it is made now, i...
Jim Pingle
01:46 AM pfSense Packages Feature #7793 (Resolved): FRR pkg pfsense web interface checking for RID is setup in OSPF6 section
There is not any checking for RID in OSPF6 section in web interface now, but one must be, because in case there is no... Constantine Kormashev
06:50 AM Bug #7324: DHCPv6 Dynamic DNS hostname
Applied in changeset commit:bad77fc0aca53e560710eaa75b3de198d7edb8f3. Jim Pingle
06:50 AM Bug #7728: 1:1 NAT: Destination IP Alias not displayed as web link
Applied in changeset commit:25b82b200de7e846066bef3c6a3918592527763f. Anonymous
05:48 AM Feature #4667 (Closed): DNS Resolver - ability to save/restore cache went missing
Anonymous
03:55 AM Feature #4667: DNS Resolver - ability to save/restore cache went missing
Just close this, this one's better left as-is. Kill Bill
05:47 AM Bug #7784 (Resolved): IPsec widget breaks dashboard loading
Anonymous
03:46 AM Bug #7784: IPsec widget breaks dashboard loading
Works in 2.4 RC. Kill Bill
01:03 AM Feature #7791 (Resolved): include /usr/bin/strings in core pfSense
When viewing logs, or performing troubleshootin from the command line when the WebGUI is not available, it would be u... Royce Williams

08/21/2017

11:11 PM Revision f61d6892: Use devel repo
Renato Botelho
07:35 PM Bug #7176: IPv6 Monitor IP does not seem to propagate
edit to say- shows pending no matter if gateway ip is used to monitor or if a "monitor IP" is chosen. My original r... Chris Palmer
05:40 PM Revision f3800174: Consider RC as RELEASE
Renato Botelho
05:40 PM Revision 47c6eddd: Consider RC as RELEASE
Renato Botelho
05:02 PM Bug #7790 (Resolved): dpinger / code using it, falsely defines a down gateway as up after dpinger gets restarted.
dpinger / code using it, falsely defines a down gateway as up after dpinger gets restarted.
Or maybe the code that u...
Pi Ba
04:38 PM Revision 67fbf7f7: Copy RC to final place
Renato Botelho
04:38 PM Revision 07884635: Copy RC to final place
Renato Botelho
04:22 PM Revision 66c5479c: Force release
Renato Botelho
04:21 PM Revision 131c6c65: Force devel
Renato Botelho
04:03 PM Revision 43f00a68: Use official pkg server
Renato Botelho
04:02 PM Revision c274f0a5: Use official pkg server
Renato Botelho
03:38 PM Revision a8371977: If the user chose to have DDNS Hostnames forced, respect that in the backend code for static map IPv6 hosts. Fixes #7324
(cherry picked from commit bad77fc0aca53e560710eaa75b3de198d7edb8f3)
(cherry picked from commit 50608d158646e32a612f8...
Jim Pingle
03:38 PM Revision d5ff0eb1: If the user chose to have DDNS Hostnames forced, respect that in the backend code for static map IPv6 hosts. Fixes #7324
(cherry picked from commit bad77fc0aca53e560710eaa75b3de198d7edb8f3)
(cherry picked from commit 50608d158646e32a612f8...
Jim Pingle
03:38 PM Revision 50608d15: If the user chose to have DDNS Hostnames forced, respect that in the backend code for static map IPv6 hosts. Fixes #7324
(cherry picked from commit bad77fc0aca53e560710eaa75b3de198d7edb8f3) Jim Pingle
03:37 PM Revision bad77fc0: If the user chose to have DDNS Hostnames forced, respect that in the backend code for static map IPv6 hosts. Fixes #7324
Jim Pingle
02:41 PM Revision 98638326: Eliminate unused functions from functions.inc.php
(cherry picked from commit 0f2d956be7d14f87776727ab476a4e47a51f6646) Steve Beaver
02:40 PM Revision 0f2d956b: Eliminate unused functions from functions.inc.php
Steve Beaver
02:36 PM Revision 908b1996: Backport 2.4 getstats format for ease of maintenance
(cherry picked from commit 96d3d096a3c4c4d4cbc81befde9dbb3977c30a55) Steve Beaver
02:36 PM Revision 96d3d096: Backport 2.4 getstats format for ease of maintenance
Steve Beaver
02:25 PM Revision e3504522: Fix system information widget display order
(cherry picked from commit 135da15564e9efb33044195719e4296e86951d87) Steve Beaver
02:24 PM Revision 135da155: Fix system information widget display order
Steve Beaver
01:28 PM Revision e48f0418: Add a new option to rsync snaps and pkg
Renato Botelho
01:27 PM Revision 9369b633: Add a new option to rsync snaps and pkg
Renato Botelho
01:27 PM Revision 1c46b00d: Add a new option to rsync snaps and pkg
Renato Botelho
01:27 PM Revision 58394710: Add a new option to rsync snaps and pkg
Renato Botelho
01:13 PM Revision b6565b4a: widget comment fix
Steve Beaver
12:30 PM Revision 25b82b20: Fixed #7728
Revised enabled/disabled diplay to match other firewall pages Steve Beaver
12:29 PM Bug #7789 (Resolved): GIF interface page does not validate IPv6 addresses
The following field (and maybe others) seem not to be properly validated:
GIF tunnel local address
GIF tunnel rem...
Greg Toombs
12:20 PM Bug #7015: IPsec not working behind NAT
just found a workaround... reset all the states, and it starts working! Wagner Sartori Junior
12:03 PM Bug #7015: IPsec not working behind NAT
I just upgraded to 2.4.0-RC. My 2.3.4 was working perfectly before that, and after the upgrade immediately after the ... Wagner Sartori Junior
11:49 AM Revision 49409fd8: Add French to GUI
Renato Botelho
11:49 AM Revision c0816149: Update translation files
Renato Botelho
11:49 AM Revision 8c70ff2e: Regenerate pot
Renato Botelho
11:49 AM Revision 2e6e11f4: Add French to GUI
Renato Botelho
11:48 AM Revision a459df1a: Update translation files
Renato Botelho
11:37 AM Revision 7f11560f: Regenerate pot
Renato Botelho
10:39 AM Bug #7324 (Feedback): DHCPv6 Dynamic DNS hostname
Just pushed a fix for this. It will show later today once things get synchronized back up. Jim Pingle
10:37 AM Bug #7324 (Confirmed): DHCPv6 Dynamic DNS hostname
Jim Pingle
07:34 AM Bug #7728 (Feedback): 1:1 NAT: Destination IP Alias not displayed as web link
Added alias pop-over and revised enabled/disabled display Anonymous
07:05 AM Todo #1940: Integrate rSyslogd
Another vote. Gareth Hay
06:54 AM Bug #7784: IPsec widget breaks dashboard loading
Github sync will resume shortly. We are making some changes in anticipation of 2.4 RC and needed to briefly pause it. Anonymous
02:43 AM Bug #7784: IPsec widget breaks dashboard loading
Is this actually committed somewhere? Nowhere on GitHub, no new snapshot either. Kill Bill
05:53 AM Feature #5822: add an interface 'description' that contains the 'friendly' name 'descr' field
Was about to setup a feature request for this.
Can this get into a release as it would be helpful.
Thanks, to D...
Gareth Hay

08/20/2017

10:52 PM Revision 6380f917: Avoid JS error by always rendering mobile ipsec DIV, even if empty
(cherry picked from commit 60138edbd4d7740c2d140e0d8fb4c5ee945db9e5) Steve Beaver
10:51 PM Revision 60138edb: Avoid JS error by always rendering mobile ipsec DIV, even if empty
Steve Beaver
10:40 PM Revision 75863a79: Fixed #7787
Always make an IPSec mobiles table, even if none have been configured. Prevents JS null value
error message on console
Steve Beaver
06:36 PM Bug #7607: Chelsio T4/T5 CXGBE drivers not loaded as ALTq capable in the PfSense UI
cxl occurs in the array.
Jim Thompson
06:35 PM Bug #7785 (Feedback): jQuery syntax error: unterminated regular expression literal
Possibly resolved by #7784 Anonymous
05:57 PM Bug #7788: Irregular updating of widgets like cpu/uptime on system widget.
This is a consequence of the central refresh system. It will be adjusted to accommodate multiple copies of the same w... Anonymous
04:01 PM Bug #7788: Irregular updating of widgets like cpu/uptime on system widget.
Was using:
2.4.0-BETA (amd64)
built on Fri Aug 18 00:32:41 CDT 2017
FreeBSD 11.0-RELEASE-p11
Pi Ba
03:56 PM Bug #7788 (New): Irregular updating of widgets like cpu/uptime on system widget.
It tells me cpu usage and uptime at intervals of 2 and 5 seconds. This looks kinda strange for the cpu bar that notab... Pi Ba
05:44 PM Bug #7787: IPsec widget, JS error in background when switching tabs, Cannot read property 'style' of null
If no mobile clients are configured, no mobile DIV was being displayed, hence the null. The DIV is now always generat... Anonymous
03:59 PM Bug #7787: IPsec widget, JS error in background when switching tabs, Cannot read property 'style' of null
2.4.0-BETA (amd64)
built on Fri Aug 18 00:32:41 CDT 2017
FreeBSD 11.0-RELEASE-p11
Pi Ba
03:57 PM Bug #7787: IPsec widget, JS error in background when switching tabs, Cannot read property 'style' of null
Would you post the exact software version you tested with please?
Anonymous
03:26 PM Bug #7787 (Resolved): IPsec widget, JS error in background when switching tabs, Cannot read property 'style' of null
While changing tabs on the ipsec widget.
With 1 inactive tunnel, and no mobile ipsec configured. I get the following...
Pi Ba

08/19/2017

05:52 PM Revision 24b20350: Merge branch 'RELENG_2_3_4' of gitlab.netgate.com:pfsense/pfsense into RELENG_2_3_4
Steve Beaver
05:50 PM Revision 6ed79b89: Fixed JSON format in IPSec widet per Kill Bill (Thanks!)
(cherry picked from commit 2438b40dceaff2a23638be66018f8c9dc46d2e01) Steve Beaver
05:36 PM Revision 2438b40d: Fixed JSON format in IPSec widet per Kill Bill (Thanks!)
Steve Beaver
05:34 PM Revision c79ab2c0: Fix JSON format for mobile IPSec data per Kill Bill (Thanks!)
(cherry picked from commit ce3a6cfd365f171f6ffff86024a16dabb26803c8) Steve Beaver
05:32 PM Revision ce3a6cfd: Fix JSON format for mobile IPSec data per Kill Bill (Thanks!)
Steve Beaver
12:59 PM Bug #7784 (Feedback): IPsec widget breaks dashboard loading
Updated per your PR. Thank you! Anonymous
08:44 AM Bug #7784: IPsec widget breaks dashboard loading
OK, it's caused by the mobile tunnel. If you put... Kill Bill
08:04 AM Bug #7784: IPsec widget breaks dashboard loading
Thanks for the information. We have still not been able to reproduce but will keep trying.
The IPSec tab you selec...
Anonymous
07:45 AM Bug #7784: IPsec widget breaks dashboard loading
There's just one IPsec tunnel (and mobile IPsec server). I don't think the OS/browser matters. Same thing with Chrome... Kill Bill
05:52 AM Bug #7784: IPsec widget breaks dashboard loading
I am unable to reproduce.
Would you tell me your OS and browser versions please, as well as your current dashboard...
Anonymous
03:11 AM Bug #7784 (Resolved): IPsec widget breaks dashboard loading
CPU usage does not finish loading, interface statistics, NTP neither.... Kill Bill
08:46 AM Feature #7495: Ability to set TTL for local for Unbound host overrides and dhcp leases
Any traction on this? Would be very nice to be able to set ttl via gui for unbound overrides vs having to use custom... JohnPoz _
03:42 AM Bug #7786 (Resolved): traffic shaping queue on WAN wont allow total of all child to be 100%
i was setting up traffic shaping on a sg-1000, i found 2 issues:
firstly on wan i added a qinternet and set it to ...
Bipin Chandra
03:29 AM Bug #7785 (Resolved): jQuery syntax error: unterminated regular expression literal
On dashboard, this keeps spamming the browser console over and over again.... Kill Bill

08/18/2017

07:06 PM Revision 8919a708: Update ppp-linkdown
Style fix Sven Auhagen
07:05 PM Revision 57b10843: Update ppp-linkdown
Sven Auhagen
07:00 PM Revision 97d53173: PPP down script change
Sven Auhagen
06:25 PM Revision 3a5b47dd: Interfaces menu "(Assign)" -> "Assigments"
Add support for menu divider bars Steve Beaver
01:38 PM Revision d1c9e8f9: Bump to 2.4.1-DEVELOPMENT
Renato Botelho
01:34 PM Revision 1fb9e078: Time to go for 2.4.0-RC
Renato Botelho
01:10 PM Bug #7038 (Resolved): SG-1000 Quagga zebra service fails to start with signal 6 abort
Fixed with a workaround. We will get back to it at some point.
Mark as resolved for now.
Luiz Souza
07:20 AM Bug #7038 (Feedback): SG-1000 Quagga zebra service fails to start with signal 6 abort
Fixed both quagga and frr Renato Botelho
01:05 PM Bug #7751 (Resolved): Duplicated traffic graphs
Luiz Souza
01:58 AM Bug #7751: Duplicated traffic graphs
Thanks guys!
Confirmed working OK on todays snap :)
Greg M
12:02 AM Bug #7751 (Feedback): Duplicated traffic graphs
Yeah, the packets are being counted twice, I overlooked this change.
It will be fixed in tomorrow snapshot.
Tha...
Luiz Souza
12:50 PM Feature #7783 (New): Support for hosting VMs on pfSense using bhyve
Seems like pfSense would make a great host platform for VMs using bhyve. Corey Boyle
11:40 AM pfSense Packages Bug #7782 (Resolved): FreeRADIUS 3 - temporary FreeRADIUS CA/certificate generated on each package reinstall
The code is pretty good to avoid user confusion and get things working out of the box, however it should set the conf... Kill Bill
11:19 AM Revision 726df7ce: Enable debug when building quagga to fix crash on ARM
Renato Botelho
10:36 AM pfSense Packages Bug #6603: pfblockerng's Unbound modifications leave system broken post-config restore
Fed up with this issue. It breaks fresh 2.4 installs exactly as noted in the above comment - see https://redmine.pfse... Kill Bill
08:29 AM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
Definitely confirmed as not fixed at all. The easiest way to reproduce is to exploit the pfBNG + unbound bug. Missing... Kill Bill
07:49 AM Bug #7701 (Rejected): Shell Command (daemon) Stops Other Services
OK, I'm closing this since, as stated, it isn't a bug.
If you have a USB NIC problem, you will have to try replica...
Jim Pingle
07:47 AM Bug #7701: Shell Command (daemon) Stops Other Services
Yep, understood, and working round the USB NIC. But the shellcmd issue is only showing up in this case ... change the... Russell Morris
07:44 AM Bug #7701: Shell Command (daemon) Stops Other Services
USB NICs are not suitable for routers. Definitely unrelated to shellcmd. Kill Bill
06:45 AM Bug #7701: Shell Command (daemon) Stops Other Services
More debugging here, it seems to be due to the USB NIC driver ... trying to use it to access the network (at the shel... Russell Morris
06:36 AM Bug #7701: Shell Command (daemon) Stops Other Services
There is literally no info to reproduce the problem, neither here, not on the forum thread. Kill Bill
07:29 AM Bug #7500 (Feedback): Upgrade From 2.3.3_p1 to 2.4 Fails (libssl.so.8 not found)
Whatever happened at this point seems to be fixed now. I did several upgrades last days and all of them worked. Renato Botelho
07:21 AM Bug #7750 (Feedback): unbound refuses ipv6 queries after reboot
PR merged Renato Botelho

08/17/2017

11:05 PM Revision c8dfbcbe: Remove dashboard update period stuff
Steve Beaver
11:04 PM Revision 73b5c257: Revise CPU load display to eliminate sleep in AJAX call
(cherry picked from commit c4ec696bf9eae3f8dbbad30b2e0804b9bf7de4b6) Steve Beaver
11:03 PM Revision c4ec696b: Revise CPU load display to eliminate sleep in AJAX call
Steve Beaver
10:36 PM Revision 0588e31a: No longer experimental so comment removed
(cherry picked from commit 2ef62d38adee7126141c1b54489cd191f59adc54) Steve Beaver
10:36 PM Revision 2ef62d38: No longer experimental so comment removed
Steve Beaver
10:33 PM Revision d244e201: No longer experimental so comment removed
Steve Beaver
07:03 PM Feature #7781 (New): Please Enable Rule Separators on Manual Outbound NAT
Rule separators are available in port forwards (firewall_nat.php) but not manual outbound NAT. (/firewall_nat_out.php... Chris Linstruth
06:42 PM Revision 5ba35b98: Add the AWS ena module to MODULES_OVERRIDE list.
Luiz Souza
05:30 PM Revision ea4f7b62: Add Polish to GUI, it's over 75% complete
Renato Botelho
05:18 PM Revision 862415a5: Update translation files
Renato Botelho
05:13 PM Bug #1943: PPPoE won't reconnect after link loss when using vr(4) NICs on certain ISPs only
I've run into this the other day... 2.3.4-RELEASE-p1 (amd64). I had to go into status -> interfaces and manually cli... caleb reft
05:12 PM Revision e657fb91: Regenerate pot
Renato Botelho
04:51 PM Revision 44a7dbdc: Revert "Enable debug when building quagga to fix crash on ARM"
This reverts commit 525bc9f1dbb32e7682fdf03e08e7d1bdc75cd53d. Renato Botelho
04:51 PM Revision b1e20be8: Revert "Enable debug for frr too"
This reverts commit c694655bb1511c169ff8b0a280c9b34c63e01815. Renato Botelho
04:49 PM Revision c694655b: Enable debug for frr too
Renato Botelho
04:33 PM Revision 525bc9f1: Enable debug when building quagga to fix crash on ARM
Renato Botelho
03:50 PM Revision 5bd45ea3: Let more ports build on ARM
Renato Botelho
03:24 PM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
Same issue as above.
Experienced issues with package updates not registering. Tried to run the command from CLI a...
Adam Best
03:11 PM Revision 57cea206: Widget comment edit
Steve Beaver
03:05 PM Revision acd2f312: Re-write CPU usage calculation to avoid sleep in AJAX call
Steve Beaver
09:10 AM Bug #7779: Traffic crossing a site-to-site OpenVPN tunnel fails to fragment.
Steve Wheeler wrote:
> In some circumstances traffic crossing an OpenVPN site-to-site tunnel with packets larger tha...
Rajko Ray Bogdanovic
08:54 AM pfSense Packages Bug #7780 (Closed): Blacklist update doesn't work on Firefox
When I click in Download it does nothing. It works on Chrome.
Firefox 55.0.1 x86_64 on Arch Linux.
Thiago Coutinho
08:28 AM Bug #7778: DHCP relay not working correctly with bridges
It started OK, but did it actually function as intended? Jim Pingle
08:23 AM Bug #7778: DHCP relay not working correctly with bridges
I have done some testing as requested. The results:
1. Added bridge0 again between the VPN tap interface and lagg0...
Sander Peterse
07:10 AM Feature #1904: DHCP server doesn't allow arbitrary config blocks
I would second that, please add a possibility to add additonal dhcpd.conf options, for example i would like to implem... Roland Kletzing

08/16/2017

09:23 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
Luiz Souza wrote:
> Can someone provide more info please ?
>
> Is the IPv6 connectivity up but the 6rd gateway is...
Ole-Henrik Jakobsen
05:08 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
Can someone provide more info please ?
Is the IPv6 connectivity up but the 6rd gateway is still showing as down or...
Luiz Souza
08:14 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
Ole-Henrik Jakobsen wrote:
> Luiz Souza wrote:
> > Ok, I have committed a couple of new fixes after some tests.
> ...
Ole-Henrik Jakobsen
08:24 PM Revision 4531456d: Speedup package related calls to get_pkg_info() since now we have a script that update metadata periodically
Renato Botelho
08:24 PM Revision c66d4d95: Speedup package related calls to get_pkg_info() since now we have a script that update metadata periodically
Renato Botelho
08:18 PM Revision cc28e9b1: Speedup package related calls to get_pkg_info() since now we have a script that update metadata periodically
Renato Botelho
06:38 PM Revision 50a7cacc: shaper, hfsc cannot use priority, as such don't show the field in the webgui.
Also for the other shapers 0 is a valid priority
While fairq causes a error loading rules with a priority above 7 so ...
Pi Ba
06:38 PM Revision 3e30b953: Merge pull request #3795 from PiBa-NL/20170808-hfsc-no-prio
Renato Botelho
06:38 PM Revision 4aa33c95: Some systems - only one that I am aware of, complain that unbound is starting before dchp6 has completed leading to problems, this occurs only on boot.
Further examination did indeed show that the problem is caused by unbound starting before the dhcp6c - RTSOLD - rc.ne... Martin Wasley
06:38 PM Revision 2f3ea7ab: Merge pull request #3799 from marjohn56/Unbound-start-delay
Renato Botelho
06:36 PM Revision 1efb0364: Merge pull request #3796 from eyJhb/master
Renato Botelho
04:21 PM pfSense Packages Bug #7756: suricata suricata_check_dir_size_limit() needs to be improved
This bug is fixed in GUI package version 4.0.0 using the code submitted by the OP. Bill Meeks
04:17 PM pfSense Packages Bug #7716: Suricata - Barnyard2 webui configuration updates result in base64-encoded value written to the config for the password
This bug was fixed in GUI package version 3.2.2_3 via a Pull Request submitted by the OP. Bill Meeks
04:12 PM pfSense Packages Bug #7578: Suricata -- Removing Hosts from Block Table via Alerts
This bug is fixed in GUI package version 4.0.0. Bill Meeks
02:40 PM Revision edbca480: Don't automatically update CIDR masks if the selector is disabled
(cherry picked from commit a379a5ff12b170df3a27e643794e576caf316a44) Steve Beaver
02:37 PM Revision a379a5ff: DOn't automatically update CIDR masks if the selector is disabled
Steve Beaver
02:34 PM Revision a7c47d85: Fixed #7625
Steve Beaver
02:03 PM Revision 866e537d: Do not use reference to avoid losing data
Renato Botelho
02:03 PM Revision f6b65ad8: Always run additional_config_upgrade() and do it after config is written
Renato Botelho
02:03 PM Revision 38c763aa: Fix indent/space
Renato Botelho
02:03 PM Revision acaafa7f: Check if specific config upgrade code already ran and skip it
Renato Botelho
02:03 PM Revision 4ed2e462: Add a function to be called every time convert_config() runs
Renato Botelho
02:03 PM Revision fb8c533a: Do not use reference to avoid losing data
Renato Botelho
02:03 PM Revision dce4b719: Ignore upgrade_167_to_168() when upgrade_166_to_167() runs, they are both the same
Renato Botelho
02:03 PM Revision dfbc4c22: Always run additional_config_upgrade() and do it after config is written
Renato Botelho
02:03 PM Revision df662ac4: Each item in additional_config_upgrade() must write config after changing it
Renato Botelho
02:03 PM Revision dff8f2bd: Detect old workarounds in config upgrade and deal with them
Renato Botelho
02:03 PM Revision 2c2a18e9: Bring upgrade_166_to_167() to 2.3 world
Renato Botelho
02:03 PM Revision 10ef2b55: Move workaround used to enable pkg metadata update cronjob to a generic mechanism
Renato Botelho
02:03 PM Revision 439baa2a: Check if specific config upgrade code already ran and skip it
Renato Botelho
02:03 PM Revision 3bf669d5: Add a function to be called every time convert_config() runs
Renato Botelho
02:03 PM Revision d3d9b707: Do not use reference to avoid losing data
Renato Botelho
02:03 PM Revision 671e0b7f: Ignore upgrade_167_to_168() when upgrade_166_to_167() runs, they are both the same
Renato Botelho
02:03 PM Revision 54e11642: Always run additional_config_upgrade() and do it after config is written
Renato Botelho
02:03 PM Revision 178cb159: Each item in additional_config_upgrade() must write config after changing it
Renato Botelho
02:03 PM Revision c241a84f: Detect old workarounds in config upgrade and deal with them
Renato Botelho
02:03 PM Revision b32e766a: Bring upgrade_166_to_167() to 2.3 world
Renato Botelho
02:03 PM Revision 9fe2e86a: Move workaround used to enable pkg metadata update cronjob to a generic mechanism
Renato Botelho
02:03 PM Revision 3aef796c: Check if specific config upgrade code already ran and skip it
Renato Botelho
02:03 PM Revision 55b4462a: Add a function to be called every time convert_config() runs
Renato Botelho
12:41 PM Bug #7779: Traffic crossing a site-to-site OpenVPN tunnel fails to fragment.
Example, ticket 23040 Steve Wheeler
12:21 PM Bug #7779 (New): Traffic crossing a site-to-site OpenVPN tunnel fails to fragment.
In some circumstances traffic crossing an OpenVPN site-to-site tunnel with packets larger that the local network MTU ... Steve Wheeler
12:24 PM Revision 388189cf: Hide dashboard update period control. No longer needed with central refresh system
(cherry picked from commit 5e024279579ec76486f7cff713eecdb83611ed37) Steve Beaver
12:24 PM Revision 5e024279: Hide dashboard update period control. No longer needed with central refresh system
Steve Beaver
12:22 PM Revision 6c1f2a1c: Hide dashboard update period control. No longer needed with central refresh system
Steve Beaver
12:14 PM Revision 4d2ed8bc: Convert firewall logs widget to centralized refresh system
(cherry picked from commit a8c2e827cfeaf74bc99227e087584eefb2c466f2) Steve Beaver
12:13 PM Revision a8c2e827: Convert firewall logs widget to centralized refresh system
Steve Beaver
12:00 PM Bug #7502: Cannot set router lifetime to 0 in radvd
I've opened a PR with a fix for this (not including i18n): https://github.com/pfsense/pfsense/pull/3801 John Hood
12:00 PM Revision 0022b113: Convert firewall log widget to centralized refresh system
Steve Beaver
10:54 AM Bug #7592 (Feedback): SG-1000: Unbound not always restarting properly after changes in /etc/hosts
Can you try this again? There have been several changes to unbound service handling and other areas over the last few... Jim Pingle
10:52 AM Bug #7309 (Resolved): ZFS - Can't find zroot, error 5
I haven't had any problems with Factory or CE installers and ZFS in a while now, it all works nicely. Jim Pingle
10:42 AM Bug #7744 (Resolved): VLAN Priority options cause pf syntax error
Works, no more syntax errors Jim Pingle
10:07 AM Bug #7625: When creating IPv6 firewall rule for single host, netmask improperly displays
That last change has corrected the behavior of CIDR selection for saved IPsec and VIPs, thanks! Jim Pingle
09:40 AM Bug #7625 (Feedback): When creating IPv6 firewall rule for single host, netmask improperly displays
Applied in changeset commit:a7c47d85270fcf8c784e6af61ea2fd09f9d4f5ac. Anonymous
08:25 AM Bug #7625: When creating IPv6 firewall rule for single host, netmask improperly displays
It is also happening for Virtual IP addresses and their CIDR masks Jim Pingle
08:18 AM Bug #7625 (Confirmed): When creating IPv6 firewall rule for single host, netmask improperly displays
This has caused a regression, see #7777
In IPsec P2, and presumably other places, a stored IPv4 CIDR mask of /24 i...
Jim Pingle
08:39 AM Bug #7775 (Duplicate): When using limiters and transparent proxy at same time downloads aren't being limited
#7389 is still open and is for the same issue Jim Pingle
02:31 AM Bug #7775 (Duplicate): When using limiters and transparent proxy at same time downloads aren't being limited
Tested on:
2.4.0-BETA (amd64)
built on Tue Aug 15 16:03:30 CDT 2017
FreeBSD 11.0-RELEASE-p11
I have my dow...
Willian Dolence Ribeiro
08:33 AM Bug #7776 (Not a Bug): IPSec reconnects after changing virtual ip address settings
If you modify a VIP, is it removed and readded to the interface. That could cause a tunnel attached to that VIP to dr... Jim Pingle
03:26 AM Bug #7776 (Not a Bug): IPSec reconnects after changing virtual ip address settings
Hello,
we are using pfSense 2.3.4-RELEASE-p1 with CARP HA.
After deleting, modifying or adding new virtual ip ...
N ITOP
08:19 AM Bug #7777 (Duplicate): IPsec P2 - Tunnel IPv4 edition form changes remote network mask to /32
I can confirm the behavior, but this is a regression from the work for #7625 - I put a note there, so this ticket can... Jim Pingle
04:46 AM Bug #7777 (Duplicate): IPsec P2 - Tunnel IPv4 edition form changes remote network mask to /32
Each time i am modifying P2 settings (Tunnel IPv4), remote network mask is changed back to /32.
So each time user ch...
Grzegorz Krzystek
08:06 AM Bug #7778 (Feedback): DHCP relay not working correctly with bridges
DHCP Relay has been prevented from running on bridges since it was first added to the GUI over 10 years ago. I don't ... Jim Pingle
07:14 AM Bug #7778 (Resolved): DHCP relay not working correctly with bridges
I have running a DHCP relay (IPv4) on 4 network interfaces, but it failed to work on 2 of them.
After looking int...
Sander Peterse
02:27 AM Bug #7774: No TCP Reply State Established on GRE in IPsec Transport
Updated both VMs to 2.4-BETA. Same behavior. Chris Linstruth
01:43 AM Bug #7774: No TCP Reply State Established on GRE in IPsec Transport
Looks very similar to #6637. Chris Linstruth
01:40 AM Bug #7774: No TCP Reply State Established on GRE in IPsec Transport
Disable IPsec Transport on both sides routing over GRE tunnel.
On Host A1:
$ telnet -4 smtp.gmail.com 587
Tryi...
Chris Linstruth
01:38 AM Bug #7774 (Duplicate): No TCP Reply State Established on GRE in IPsec Transport
Reply state not established in pf for TCP connections through GRE tunnel when IPsec transport mode enabled between th... Chris Linstruth
12:18 AM Revision ca23e61e: Revert config version to 15.8 and remove upgrade script
(cherry picked from commit d800d0f5babe2f6d7bb9a7de8afa709c28e930df) Steve Beaver
12:17 AM Revision d800d0f5: Revert config version to 15.8 and remove upgrade script
Steve Beaver

08/15/2017

10:27 PM Revision df4c3517: Allow IPv6 RA default router lifetime of 0
This is a legal value for this field, RFC 4861 section 4.2.
Fixes Redmine #7502.
John Hood
08:43 PM Revision b0e52a17: Add thermal_sensors.inc file to obsoleted files list
(cherry picked from commit ef68bfa699f7fb1c68cb502dbe23ed3546b94b20) Steve Beaver
08:43 PM Revision ef68bfa6: Add thermal_sensors.inc file to obsoleted files list
Steve Beaver
08:40 PM Revision 3b940f03: COnvert thermal sensor widget to central refresh system
(cherry picked from commit 032f6a8963a51195946b6a823967d31af5fffbe0) Steve Beaver
08:40 PM Revision 032f6a89: COnvert thermal sensor widget to central refresh system
Steve Beaver
08:20 PM Revision df8d3033: COnvert dyndns widget to central refresh system
(cherry picked from commit 5efa7cae2f2df4974c7de19f00fe5b669fb73485) Steve Beaver
08:19 PM Revision 5efa7cae: COnvert dyndns widget to central refresh system
Steve Beaver
07:54 PM Revision 1fead8ad: Added refresh icon to version display
(cherry picked from commit b7a42d09d7ef010b34d6570fb5398b4f98f397b2) Steve Beaver
07:53 PM Revision b7a42d09: Added refresh icon to version display
Steve Beaver
07:32 PM Revision 6e427ced: Add refresh icon to system info widget version display
(cherry picked from commit 1557953af1d3a47bc508986688f0b285fa2b43e1) Steve Beaver
07:31 PM Revision 1557953a: Add refresh icon to system info widget version display
Steve Beaver
07:26 PM Revision 27e6d494: Use central refresh system for dyndns widget
Steve Beaver
06:26 PM Revision e0e922da: Refresh cache every 2h when using GUI
Renato Botelho
06:26 PM Revision 987865d1: Make sure pfSense-upgrade return code is obtained instead of tail's one
Renato Botelho
06:26 PM Revision 569e55ae: Unset workaround used to set cronjob on 2.3.x
Renato Botelho
05:54 PM Revision 4ea84711: Refresh cache every 2h when using GUI
Renato Botelho
05:54 PM Revision 36f9a1ad: Refresh cache every 2h when using GUI
Renato Botelho
05:34 PM Revision 1f3ca824: Converted thermal sensor widget to use central refresh system
Steve Beaver
05:25 PM Feature #7773 (Closed): IPSec using IKEv2 with split DNS not using provided domain names
I am not sure if this is rather a defect than a feature.
I am using IPSec with IKEv2. The VPN connection works gre...
Oliver Mueller
05:22 PM Revision 427674d9: Make sure pfSense-upgrade return code is obtained instead of tail's one
Renato Botelho
05:22 PM Revision 4e1a3d15: Make sure pfSense-upgrade return code is obtained instead of tail's one
Renato Botelho
04:48 PM Revision 0cb912b6: Add a workaround to register rc.update_pkg_metadata cronjob on 2.3 since config version cannot be bumped
Renato Botelho
04:48 PM Revision 262f5ebe: Add a workaround to register rc.update_pkg_metadata cronjob on 2.3 since config version cannot be bumped
Renato Botelho
04:31 PM Revision f6652784: Show user when pkg metadata was updated
Renato Botelho
04:31 PM Revision 13c9409f: Update cache when GUI successfully update pkg metadata
Renato Botelho
04:31 PM Revision 2d8c45ad: Consider only last output line
Renato Botelho
04:31 PM Revision 62121148: Speedup get_system_pkg_version() considering only installed packages
Renato Botelho
04:31 PM Revision 7f211807: Use cache file to show pfSense version information
Renato Botelho
04:31 PM Revision bf3fccff: Save pkg update return code
Renato Botelho
04:31 PM Revision 998a9d62: Run rc.update_pkg_metadata in background when repository changes
Renato Botelho
04:31 PM Revision df464c21: Remove dead code using in the past to migrate from pfSense-repo-devel to a single pkg called pfSense-repo
Renato Botelho
04:31 PM Revision 159d04ab: Make sure pkg metadata is updated at least once daily. It will be used to speedup GUI parts related to pkg update
Renato Botelho
04:26 PM Revision e65e4744: Show user when pkg metadata was updated
Renato Botelho
04:24 PM Revision 38aca285: Update cache when GUI successfully update pkg metadata
Renato Botelho
04:24 PM Revision aee59012: Consider only last output line
Renato Botelho
04:24 PM Revision de127ba6: Speedup get_system_pkg_version() considering only installed packages
Renato Botelho
04:24 PM Revision 51f9f8c2: Use cache file to show pfSense version information
Renato Botelho
04:24 PM Revision 870dcf67: Save pkg update return code
Renato Botelho
04:24 PM Revision 24ac6985: Run rc.update_pkg_metadata in background when repository changes
Renato Botelho
04:24 PM Revision 59c11dba: Remove dead code using in the past to migrate from pfSense-repo-devel to a single pkg called pfSense-repo
Renato Botelho
04:24 PM Revision 40a5a7d0: Make sure pkg metadata is updated at least once daily. It will be used to speedup GUI parts related to pkg update
Renato Botelho
12:02 PM Revision cabbaf7a: ipsec widget converted to JSON formatted refresh
Steve Beaver
11:45 AM Revision e0890bfd: System info widget prepared for background version checks
Steve Beaver
11:44 AM Revision 8e07e708: System info widget prepared for background version checks
Steve Beaver
10:45 AM pfSense Packages Bug #7766 (Resolved): ACME Package on 2.4 requires pecl-ssh2, which is not in base any longer
Looks good! Jim Pingle
07:58 AM Bug #7771 (Resolved): domain missing in reverse lookup of host overrides
Looks good on the latest snapshot. Jim Pingle
05:25 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
Luiz Souza wrote:
> Ok, I have committed a couple of new fixes after some tests.
>
> Thanks for the report.
It...
Ole-Henrik Jakobsen

08/14/2017

10:04 PM Revision 2156aa9d: Re-wrote ipsec widgt to return JSON formatted AJAX data
(cherry picked from commit 067109d9fd64d8958408c7f9aaf30523319be91a) Steve Beaver
10:02 PM Revision c814bc95: First part of dashboard update system
(cherry picked from commit 8f3a49d7e9c22af2c97f92007aa23d2a45c8e697) Steve Beaver
09:48 PM Revision 8dd64719: COmpleted conversion of dashboard widget to ventralized refresh system
(cherry picked from commit fe0eb5b1112791cf28e98e00757c4645d6b9234a) Steve Beaver
09:46 PM Revision fe0eb5b1: COmpleted conversion of dashboard widget to ventralized refresh system
Steve Beaver
09:46 PM Revision 067109d9: Re-wrote ipsec widgt to return JSON formatted AJAX data
Steve Beaver
09:46 PM Revision 8f3a49d7: First part of dashboard update system
Steve Beaver
06:17 PM Revision f704d091: Put the FQDN first in /etc/hosts to make dnsmasq happy when reverse resolving hostnames. Make a special exception for localhost. Fixes #7771
(cherry picked from commit 0e78c2f544ad577234a0a2f87ce2e8caefdfdb77)
(cherry picked from commit de7d6cb87d600c6e093aa...
Jim Pingle
06:17 PM Revision de7d6cb8: Put the FQDN first in /etc/hosts to make dnsmasq happy when reverse resolving hostnames. Make a special exception for localhost. Fixes #7771
(cherry picked from commit 0e78c2f544ad577234a0a2f87ce2e8caefdfdb77) Jim Pingle
06:16 PM Revision 0e78c2f5: Put the FQDN first in /etc/hosts to make dnsmasq happy when reverse resolving hostnames. Make a special exception for localhost. Fixes #7771
Jim Pingle
05:13 PM Revision 439ae979: Adding widget and login css files
Steve Beaver
05:12 PM Revision 8dce797c: Adding widget and login css files
Steve Beaver
05:06 PM Revision 60d2ae47: Add Netgate Services and Support widget
(cherry picked from commit 179991b76e7a330a98ea520531551dfd6befb0b3) Steve Beaver
05:06 PM Revision 179991b7: Add Netgate Services and Support widget
Steve Beaver
04:49 PM Revision 6e22caab: New login design back-ported from 2.4
(cherry picked from commit 1605d94079fed5822ef1069eee05541d0ebc20ca) Steve Beaver
04:49 PM Revision 1605d940: New login design back-ported from 2.4
Steve Beaver
03:50 PM Bug #7625: When creating IPv6 firewall rule for single host, netmask improperly displays
Looks like it broke loading /interfaces.php?if=lan with static ip masks for both IPv4 and IPv6 now defaulting to 32 a... Pi Ba
02:38 PM Revision fde09aa8: Revise error page to comply with login page style
Steve Beaver
02:34 PM Bug #7771: domain missing in reverse lookup of host overrides
It works with your changes, thanks! Richard van Dijk
01:30 PM Bug #7771 (Feedback): domain missing in reverse lookup of host overrides
Applied in changeset commit:0e78c2f544ad577234a0a2f87ce2e8caefdfdb77. Jim Pingle
12:35 PM Bug #7771 (Confirmed): domain missing in reverse lookup of host overrides
I'll take a look at this closer. I changed the order there since it made the code more consistent and it eliminated a... Jim Pingle
12:46 PM Bug #7768 (Not a Bug): DNS misorder under OpenVPN server configuration
The order is correct in the OpenVPN configuration and how it is pushed to clients. If your client is choosing a diffe... Jim Pingle
12:36 PM Bug #7742: 1:1 NAT for IPv6 applies wrong subnet mask to "Single Host"
-While working through ticket #25935 with Chris Linstruth (from Netgate support) I just observed something very odd o... Adam Thompson
12:31 PM Bug #7772: Regression of Bug #906
Found this forum post where someone else had an issue with this from deleting VLAN interfaces as well: https://forum.... Lance Fogle
12:27 PM Bug #7772: Regression of Bug #906
Please let me know what if any information beyond this you need from me and I will be happy to provide it to help det... Lance Fogle
12:23 PM Bug #7772 (Resolved): Regression of Bug #906
I read the bug and it says the interface delete code removes firewall rules and that the bug was resolved back in 201... Lance Fogle
12:24 PM Bug #7770: php suhosin mdule error in crash report every boot on latest 2.4 snapshot
they did come back after it was cleared, but I think as you said since it was half a year ago and its gone now on the... Chris Collins
12:08 PM Bug #7770 (Resolved): php suhosin mdule error in crash report every boot on latest 2.4 snapshot
OK. Coming from one that old it's a bit more unpredictable. Some errors are expected due to library changes, PHP may ... Jim Pingle
11:53 AM Bug #7770: php suhosin mdule error in crash report every boot on latest 2.4 snapshot
I believe it was in january but it may have been february as I have this image still on my hdd.
pfSense-CE-2.4.0-B...
Chris Collins
11:43 AM Bug #7770 (Feedback): php suhosin mdule error in crash report every boot on latest 2.4 snapshot
Do you happen to recall which snapshot you were on before that update? Jim Pingle
11:23 AM Bug #7770: php suhosin mdule error in crash report every boot on latest 2.4 snapshot
I have since clean installed the latest snapshot and the problem is gone, so it looks like the problem was a failure ... Chris Collins
10:52 AM Feature #7746: Proxy NDP
Looking at "how that package operates":https://github.com/AlexandreFenyo/ndproxy#ndproxy as a KLD and using pfil, I d... Jim Pingle
09:00 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
Ok, I have committed a couple of new fixes after some tests.
Thanks for the report.
Luiz Souza
08:20 AM Feature #7598 (Resolved): Static IPv6 using IPv4 PPPoE as parent interface
Jim Pingle
04:24 AM Feature #7598: Static IPv6 using IPv4 PPPoE as parent interface
Resolved Martin Wasley

08/13/2017

07:36 PM Revision 68c4142e: Merge pull request #3800 from phil-davis/patch-1
Steve Beaver
04:22 PM Feature #7746: Proxy NDP
It looks like now there is a possible solution of decent quality that can be further built upon to integrate in pfSen... Richard van Dijk
12:13 PM Bug #7771 (Resolved): domain missing in reverse lookup of host overrides
Add a host override in DNS Forwarder (dnsmasq):
* Host: myhost
* Domain: mydomain
* IP address: 1.2.3.4
Forwa...
Richard van Dijk
04:36 AM Revision e58d4ccd: Comment typos
Phillip Davis

08/12/2017

03:23 PM Bug #7027: Dynamic DNS dyndns.org no longer updates
please confirm that dyn.com now requires use of 'client updater key'. this is not an issue with pfsense. a hidden inf... Juan G
11:21 AM Bug #7770 (Resolved): php suhosin mdule error in crash report every boot on latest 2.4 snapshot
I updated today to snapshot 20170812.0957
This error persists on every boot as a crash report
@PHP Errors:
[12...
Chris Collins
10:07 AM Feature #7769 (Resolved): DynDNS: Azure integration, update record in Azure (Dynamic DNS Client)
Hi
I'm woundering if there are anyone (other than me) that are interested in a Dynamic DNS Client for Azure? I'm hav...
Erik Hennerfors
09:52 AM Bug #7751 (Confirmed): Duplicated traffic graphs
This has happened before in #3314 and was fixed in https://github.com/pfsense/pfsense-tools/commit/ad55e66a3fb817f8e5... Jared Dillard
05:36 AM Revision ba969e67: Fix a couple of 'route: writing to routing socket: Invalid argument' warnings during the boot.
Use the correct variable and only add the route when the hostname is resolved (if the remote address is a hostname).
...
Luiz Souza
04:21 AM Revision 363a5c4c: Do not run the dpinger when the IPv6 address has the tentative flag even after the timeout.
Luiz Souza
03:55 AM Revision b76e0bae: Disable the DAD on the stf interface. This prevents the dpinger from start.
Luiz Souza
12:57 AM Bug #7768 (Not a Bug): DNS misorder under OpenVPN server configuration
Hi,
I Believe I have discovered a little bug in the openVPN server config page. When configuring the DNS servers b...
James Smith

08/11/2017

07:30 PM Revision 8150bd51: Fixed #7625
By:
Separating the source and destination onChange functions
Preventing the mask selector from being automatically up...
Steve Beaver
06:59 PM Revision a0678b0b: Build FRR package instead of FRR directly
Jim Pingle
04:02 PM Feature #3718: radvd - enhancement proposal: ability to advertise routes and some fixes - patches attached
Updated the patch for version 2.3.4. Marc Posch
02:38 PM Revision b57a87b3: Refresh metadata before an upgrade
Renato Botelho
02:32 PM Revision 9d14b22c: Spelling :(
Steve Beaver
02:31 PM Bug #7625 (Feedback): When creating IPv6 firewall rule for single host, netmask improperly displays
Fixed JavaScript in firewall_rules_edit.php and pfSense.js Anonymous
12:26 PM Bug #7625: When creating IPv6 firewall rule for single host, netmask improperly displays
Steve will handle that Renato Botelho
02:30 PM Revision 979bbbd4: Improve comments
Steve Beaver
02:24 PM Revision e38ba356: Add AJAX version check
Steve Beaver
01:27 PM Revision cbaf07f4: Show user when pkg metadata was updated
Renato Botelho
12:58 PM Bug #7750: unbound refuses ipv6 queries after reboot
For the record, this problem is also present in 2.3.x for users of the "do not wait for RA" setting.
Daryl Morse
12:56 PM Bug #7750: unbound refuses ipv6 queries after reboot
Proposed fix - https://github.com/pfsense/pfsense/pull/3799 Renato Botelho
12:54 PM Bug #7750 (Assigned): unbound refuses ipv6 queries after reboot
Renato Botelho
12:39 PM Bug #7750: unbound refuses ipv6 queries after reboot
Martin Wasley wrote:
> Commit #3799
This fix works perfectly.
Thank you very much.
Daryl Morse
01:47 AM Bug #7750: unbound refuses ipv6 queries after reboot
Commit #3799 Martin Wasley
12:46 PM Bug #3932: Captive portal with greater than 9000 permanent MAC addresses causes timeout in loading CP
It really needs to be re-engineered Renato Botelho
12:42 PM Revision 429091c8: Update cache when GUI successfully update pkg metadata
Renato Botelho
12:27 PM Revision a9ad771b: Change refresh link to icon
Steve Beaver
11:55 AM Revision 474b3a2f: Consider only last output line
Renato Botelho
10:34 AM Feature #7767 (Resolved): OCSP support for OpenVPN server
It would be great to have a possibility to enable OCSP checking for OpenVPN Server included in pfSense. It seems to b... Michael Voetter
09:57 AM Bug #6782 (Feedback): pkg update can trigger multiple updates per second
Many improvements were made to reduce the times pkg checks remote metadata. I looks much better now. Renato Botelho
09:52 AM pfSense Packages Bug #7766 (Feedback): ACME Package on 2.4 requires pecl-ssh2, which is not in base any longer
Version 0.1.19 should be fine Renato Botelho
09:28 AM pfSense Packages Bug #7766: ACME Package on 2.4 requires pecl-ssh2, which is not in base any longer
Looks like we'll have to make a new port for it since the current pecl-ssh2 is only compatible with php 7+ Jim Pingle
09:02 AM pfSense Packages Bug #7766 (Resolved): ACME Package on 2.4 requires pecl-ssh2, which is not in base any longer
commit af1ebe36a4787997f37a3cc1c1a9178e86286508 in the FreeBSD-ports repo removed pecl-ssh2 from the list of dependen... Jim Pingle
09:03 AM pfSense Packages Bug #7208: ACME ftpwebroot doesn't work
Dmitry Ivanov wrote:
> Fatal error: Call to undefined function pfsense_pkg\acme\ssh2_connect() in /usr/local/pkg/acm...
Jim Pingle
12:33 AM pfSense Packages Bug #7208: ACME ftpwebroot doesn't work
PFSense 2.4.0
ACME 0.1.18
Fatal error: Call to undefined function pfsense_pkg\acme\ssh2_connect() in /usr/local/p...
Dmitry Ivanov
07:42 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
Luiz Souza wrote:
> The 6to4 tunnel regression was fixed in the latest snapshot. 6rd situation has improved too, pl...
Ole-Henrik Jakobsen
02:17 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
The 6to4 tunnel regression was fixed in the latest snapshot. 6rd situation has improved too, please retest. Luiz Souza
06:29 AM Revision 881fb186: Some systems - only one that I am aware of, complain that unbound is starting before dchp6 has completed leading to problems, this occurs only on boot.
Further examination did indeed show that the problem is caused by unbound starting before the dhcp6c - RTSOLD - rc.ne... Martin Wasley
01:54 AM Bug #7751: Duplicated traffic graphs
Hi!
New details posted here: https://forum.pfsense.org/index.php?topic=134506.0
Seems that it is pfSense bug sinc...
Greg M
12:13 AM Revision 71d0b5f8: remove old logo from default page
Jared Dillard
12:02 AM pfSense Packages Bug #7729: pfBlockerNG orders NAT licked rules to the bottom of firewall rules
Fixed in *PR#390*:
https://github.com/pfsense/FreeBSD-ports/pull/390/files
BBcan177 .

08/10/2017

10:25 PM Revision d4fbf5b7: Speedup get_system_pkg_version() considering only installed packages
Renato Botelho
08:26 PM Revision e8f8aeb6: Use cache file to show pfSense version information
Renato Botelho
08:26 PM Revision ca773220: Save pkg update return code
Renato Botelho
08:26 PM Revision c47f209b: Add a protection to prevent ending up with duplicate crontab entry
Renato Botelho
05:57 PM Revision c2e98b94: Revised Netgate Services and Support widget to use AJAX when refreshing the data
Steve Beaver
03:07 PM Revision 94bb17b2: dyndns: changed CloudFlare to Cloudflare - correct spelling
eyJhb
02:07 PM Revision 7dfb18da: Update interfaces.php
Updated as per style guidelines (??) I'm new here, please say if still not right! Joseph Reeves
02:01 PM Revision c2fae874: Update system_update_settings.php
Tidied the Dashboard update settings text Joseph Reeves
01:50 PM Revision 1371aa1a: Update translation files
Renato Botelho
01:45 PM Revision eb7b4235: Regenerate pot
Renato Botelho
01:45 PM Revision 3cf5ed75: Sort languages alphabetically (in English)
Renato Botelho
01:44 PM Revision 0ced79ef: Add Dutch to GUI, it's over 75% complete
Renato Botelho
01:38 PM Revision ef863b31: Update interfaces.php
Updated description of "System / Advanced / Firewall & NAT settings" Joseph Reeves
01:31 PM Revision b58c1588: Run rc.update_pkg_metadata in background when repository changes
Renato Botelho
01:29 PM Revision 52e827ac: Remove dead code using in the past to migrate from pfSense-repo-devel to a single pkg called pfSense-repo
Renato Botelho
01:09 PM Revision e506cc8a: Make sure pkg metadata is updated at least once daily. It will be used to speedup GUI parts related to pkg update
Renato Botelho
10:42 AM Revision 5b194e16: dyndns: added password help text for cloudflare
eyJhb
08:35 AM Bug #7765 (Duplicate): Openvpn / WebGUI bug ?
The problem is unrelated to OpenVPN, that's a symptom of the actual bug, which is PHP getting wedged. Already covered... Jim Pingle
08:15 AM Bug #7765 (Duplicate): Openvpn / WebGUI bug ?
Hi,
i don´t really know where too look or how to debug my problem.
Six servers are connected to my local network vi...
Oliver Winkler
07:18 AM pfSense Packages Bug #7764 (Not a Bug): Basic setup of squid + squidguard + ssl interception + transparent proxy produces https://http/* error.
It has to be something in your settings causing this. I can't reproduce it here. I have a working MITM transparent se... Jim Pingle
06:23 AM pfSense Packages Bug #7764 (Not a Bug): Basic setup of squid + squidguard + ssl interception + transparent proxy produces https://http/* error.
Check this serverfault question:
https://serverfault.com/questions/866660/pfsense-squid-https-filtering-error-url-ca...
m m
02:12 AM Bug #7750: unbound refuses ipv6 queries after reboot
Patch a921c7da1d1a0529e2f490d3a2d7d19ddfc82036
Commit to main repo will happen once all O.K is given by UK testers.
Martin Wasley

08/09/2017

10:16 PM Bug #7116 (Resolved): a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
Luiz Souza
07:11 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
I can also confirm that the issue seems fixed. Steps taken:
* Deleted all shaping firewall rules
* Deleted traffi...
Jakub Osika
05:13 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
I can now see traffic in all of the queues where there should be traffic. It does indeed seem to be fixed. Any chan... Greg Siemon
04:43 PM Bug #7116: a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
Seems to work properly for my test box. Thanks! Pi Ba
02:28 PM Bug #7116 (Feedback): a floating 'match' rule on LAN does not put traffic from a broswer on a clientpc into a shaper queue
Fixed in the latest snapshot. Luiz Souza
06:19 PM Revision e78d5940: Ensure the callback function exists before calling
Steve Beaver
03:41 PM Revision 8bf4cf1f: gateway, ntp, and openVPN widgets updated
Steve Beaver
03:34 PM Feature #5112: LDAP support for Captive Portal
https://github.com/pfsense/pfsense/pull/3117 implementation works on 2.4 BETA 09 Aug 2017 Oscar Francia
03:03 PM Revision 634bb06a: Remove ajax stuff from installed packages widget
Steve Beaver
02:50 PM Revision 67dd6c11: dd system information widget to central refresh system
Add ability for a widget to specify how often it wants to be updated Steve Beaver
02:23 PM Bug #7763 (Resolved): IX driver - fails to recognize media type with SFP after link drop
An issue was discovered by a customer running LAGG on ix0 and ix1 on the XG-2758. If a physical link to one of those ... Clinton Cory
01:24 PM Revision ec922197: Revise upgrade script to insert support widget at the top of column 2
Add old support widget to obsolete files list Steve Beaver
11:28 AM Revision ad950c6e: Update translation files
Renato Botelho
11:12 AM Bug #6318: IPsec dashboard widget causes GUI failure
Sounds like a fantastic change. Thanks Steve → luckman212
11:08 AM Bug #6318 (Feedback): IPsec dashboard widget causes GUI failure
I have done a LOT of research into this. I believe that since most dashboard widgets have their own timer, their own ... Anonymous
11:04 AM Revision 00def017: Regenerate pot
Renato Botelho
09:41 AM Todo #7762 (Resolved): Add uid check to pfSense-upgrade and exit unless it is run as uid=0
Running pfSense-upgrade as a non-root/admin user will produce errors that are not obviously related to lacking privil... Jim Pingle
07:31 AM Feature #7761 (New): Add a way to match on IPv6 proto=0 (hop-by-hop header extension)
https://tools.ietf.org/html/draft-ietf-opsec-ipv6-eh-filtering-03#section-3.4.1
> Since this EH is required to be ...
znerol znerol
02:07 AM Revision 4c05e19b: Repair broken AJAX response (POST vs GET)
Steve Beaver

08/08/2017

08:00 PM Revision 60f485ed: interface_statistics widget added to central refresh system
Steve Beaver
07:51 PM Revision 53547a05: Add ipsec widget to new centralized refresh system
Steve Beaver
07:07 PM Revision 41799195: shaper, hfsc cannot use priority, as such don't show the field in the webgui.
Also for the other shapers 0 is a valid priority
While fairq causes a error loading rules with a priority above 7 so ...
Pi Ba
05:42 PM Revision d7c2f4fe: Experimental centralized widget refresh system
Used by the interfaces.widget.php widget only for now Steve Beaver
05:40 PM Bug #7272: 6rd not functioning on 2.4.0-BETA
Luiz Otavio O Souza wrote:
> The 6rd patch was committed to 2.4 and is available on the latest snapshots. Tests are...
Ole-Henrik Jakobsen
05:29 PM Bug #7605: State Killing on Gateway Success
It would be a good idea to have a second option to kill states on recovery to keep working states intact if desired. ... Clinton Cory
03:22 PM Bug #6099: igmpproxy does not recognize upstream interface
For the records:
Mr J wrote on https://forum.pfsense.org/index.php?topic=134795.0
> These instructions by james_h...
Harald Gutmann
01:54 PM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
Just happened to me, moments ago.
Backup up a 2.3.4 machine (server is unstable) and replaced the server hardware ...
chip br
11:53 AM pfSense Packages Bug #7756: suricata suricata_check_dir_size_limit() needs to be improved
Thanks! Another user had also submitted a fix for the EVE JSON log rotation issue. I asked him about incorporating ... Bill Meeks
11:43 AM pfSense Packages Bug #7756: suricata suricata_check_dir_size_limit() needs to be improved
Filed https://github.com/pfsense/FreeBSD-ports/pull/389 Orion Poplawski

08/07/2017

10:59 PM Revision 71783286: make css compatible with newer nvd3 version
Jared Dillard
10:16 PM pfSense Packages Bug #7756: suricata suricata_check_dir_size_limit() needs to be improved
I'm the volunteer package maintainer for Suricata on pfSense. Thank you for providing a patch to go along with your ... Bill Meeks
07:32 PM Bug #7412: rtsold will not run on VLAN interfaces
Has progress been made on this bug? Thanks. mike cross
06:10 PM Revision 5d336c75: Change IPsec widget tunnel status to handle newer strongSwan childid format. Fixes #7499
(cherry picked from commit 4de753e52d8bbc732f23f90dd77df1707fbc3912) Jim Pingle
05:56 PM pfSense Packages Bug #7267: Status Traffic Totals - Stacked Bar - Scale not high enough
This should be fixed in the newer versions of nvd3. I am attempting to upgrade, but there are some kinks to work out. Jared Dillard
03:04 PM Revision 2306b30e: Update config version
Steve Beaver
03:01 PM Revision 4918554d: Fix upgrade 166 to 167 script
Steve Beaver
02:28 PM Feature #7760 (Rejected): Reverse FQDN lookop from firewall rule
The method for tracking hostnames requires aliases. Using them in rules directly is not possible in pf, and rewriting... Jim Pingle
02:18 PM Feature #7760 (Rejected): Reverse FQDN lookop from firewall rule
Currently to use a FQDN in a firewall rule you need to add an alias for it. The alias documentation states:
"Hosts ...
Gunnar -
02:19 PM Revision 2348f688: Rename support widget refresh link to match new widget name
Steve Beaver
01:31 PM Revision 640d1b64: pfSense 2.4 setHelp syntax was applied to v 2.3 - arguments should be provided in an array
Steve Beaver
12:59 PM Bug #7759 (Closed): No version control number showing when going to System > Update
I am currently on 2.4.0.b.20170802.0604
When I goto System > Update it shows the attached picture (just "Warning" ...
Geoffrey Bricker
12:51 PM Bug #6099: igmpproxy does not recognize upstream interface
Some of these reports seem to miss one very important information: which version of IGMP is used.
IMHO igmpproxy d...
Victor Toni
07:13 AM Bug #6099: igmpproxy does not recognize upstream interface
igmpproxy does indeed work 100% for UK BT TV, BT Sport 4K (IPTV over BT Infinity FTTC/P) in ver. 2.4.0-BETA (Version ... Mr J
07:08 AM Bug #6099: igmpproxy does not recognize upstream interface
Please take this discussion to the forum, mailing list, reddit, etc. If it runs for a few minutes then it is absolute... Jim Pingle
06:35 AM Bug #6099: igmpproxy does not recognize upstream interface
_
Mr J
03:43 AM Bug #6099: igmpproxy does not recognize upstream interface
The way I use igmpproxy it works properly. There are many posts above from other people who confirmed that IPTV works... Harald Gutmann
11:47 AM Todo #6885 (Feedback): Add vectorized logo in web interface
This was fixed in this commit: https://github.com/pfsense/pfsense/commit/b8047a1f1d5e5fb529e716a349f153ea3a78280a Jared Dillard
11:38 AM Bug #7415 (Feedback): favicon is not correctly implemented
This was fixed in the following: https://github.com/pfsense/pfsense/commit/e7d63f568c8e3982ee8f39387369778789593075 Jared Dillard
07:22 AM pfSense Packages Bug #7758 (Not a Bug): Error on squid
That is most likely due to either a compatibility issue with your cipher selection in squid and that site, or with sq... Jim Pingle
02:08 AM pfSense Packages Bug #7758 (Not a Bug): Error on squid
I deployed pfsense 2.3.4 and installed Squid 3.5.26. I config squid in transparent mode and enable HTTPS/SSL intercep... Phong Bui-Quang
06:49 AM Todo #6606 (Resolved): Adapt captive portal to work without multi-instance ipfw
Renato Botelho
 

Also available in: Atom