Activity
From 10/11/2017 to 11/09/2017
11/09/2017
-
10:15 PM Bug #8039: Invalid characters in static IP description will not resolve upon correction
- On pfSense-netgate-memstick-ADI-2.4.2-DEVELOPMENT-amd64-20171108-1341 could not reproduce the bad behavior.
-
02:00 PM Bug #8039 (Feedback): Invalid characters in static IP description will not resolve upon correction
- Applied in changeset commit:d70eaff5781015294376b42284e728265c56fd8d.
-
07:00 PM Bug #8077: Filterlog format does not match documentation or RFC spec
- You are of course right, and I am feeling silly. Can't see the wood for the trees.
There is a proper bug report ag... -
04:01 PM Bug #8077: Filterlog format does not match documentation or RFC spec
- And that fact is already noted on the page. Immediately under the line you quoted.
-
04:01 PM Bug #8077 (Not a Bug): Filterlog format does not match documentation or RFC spec
- That is the format of the log in /var/log/filter.log
If it looks different coming across syslogd, that's a differe... -
03:58 PM Bug #8077 (Not a Bug): Filterlog format does not match documentation or RFC spec
- The "documentation of the filterlog format":https://doc.pfsense.org/index.php/Filter_Log_Format_for_pfSense_2.2 indic...
-
04:49 PM Feature #8078 (New): PPPoE Reconnect Wait Time
- When there is an outage (whether accidental or network maintenenace) the PPPoE session will drop. With some ISPs the...
-
03:56 PM Bug #6459 (Resolved): AWS EC2 Instance should skip interface config in setup wizard
-
03:51 PM Bug #6459: AWS EC2 Instance should skip interface config in setup wizard
- Tested ok today.
-
03:49 PM Bug #7856 (Resolved): IPsec status does not show all connected mobile clients
-
03:49 PM Bug #8003 (Resolved): IPsec weirdness with 2.4.1
-
03:46 PM Bug #8063 (Resolved): ZFS installs using MBR or geli end up with an empty /boot due to bootpool not being imported
-
12:28 PM Feature #7823 (Resolved): Pull request: Add support for dynamic DNS provider ClouDNS
-
12:20 PM Bug #7966 (Resolved): Live traffic graphs appear to have sampling errors
-
11:59 AM Bug #7966: Live traffic graphs appear to have sampling errors
- On pfSense-CE-memstick-ADI-2.4.2-DEVELOPMENT-amd64-20171108-1340 gitsync'd to master, the smoothing slider is availab...
-
10:50 AM Bug #7966 (Feedback): Live traffic graphs appear to have sampling errors
- Applied in changeset commit:e00f69c8cd29a58383ac40a8d1e30045449eec14.
-
12:19 PM Bug #7984 (Resolved): restarting syslogd service makes sshlockout_pf process orphans
-
12:14 PM Bug #7984: restarting syslogd service makes sshlockout_pf process orphans
- On pfSense-CE-memstick-ADI-2.4.2-DEVELOPMENT-amd64-20171108-1340 gitsync'd to master, works as expected.
-
11:20 AM Bug #7984 (Feedback): restarting syslogd service makes sshlockout_pf process orphans
- Applied in changeset commit:73568673ebb45bd3c58cdd638a93b754b09cc654.
-
11:09 AM Bug #7984 (Assigned): restarting syslogd service makes sshlockout_pf process orphans
- Yeah I see the problem with the restart case, I'll push a fix shortly.
-
11:26 AM Bug #8043 (Resolved): Cannot enable IPsec Mobile Client Support when the interface is in french
-
11:21 AM Bug #8043: Cannot enable IPsec Mobile Client Support when the interface is in french
- On pfSense-CE-memstick-ADI-2.4.2-DEVELOPMENT-amd64-20171108-1340, set language to French, went to IPSec and checked t...
-
11:25 AM Bug #7786 (Resolved): traffic shaping queue on WAN wont allow total of all child to be 100%
- Looks good here, too.
-
11:13 AM pfSense Packages Bug #7961 (Resolved): JS Error on Status > Monitoring
-
11:09 AM pfSense Packages Bug #7961: JS Error on Status > Monitoring
- on pfSense-CE-memstick-ADI-2.4.2-DEVELOPMENT-amd64-20171108-1340, went to Status > Monitoring clicked on Settings > D...
-
11:11 AM Bug #8076 (New): User can easily apply an unusable interface configuration after restore
- When loading a configuration file from a different device (with other
NICs) to a freshly installed pfSense, it corre... -
11:09 AM Bug #8075 (Rejected): OpenVPN binds to wrong interface with no ip on first interface
- With two WAN interfaces and with an OpenVPN server on each, bound to its
interface, there is a wrong IP assertion in... -
10:57 AM Bug #8032 (Resolved): xmlrpcsync password fails with spaces in password
- Works
-
10:45 AM Bug #7978 (Resolved): IE 11 - Headers of tables almost not visible when no entries made
-
10:11 AM Bug #7307: ZFS installer - shuts down instead of rebooting
- Given that this only happens when using eMMC, and the operator is already present at the hardware to perform the inst...
-
09:58 AM Bug #8074: Captive Portal RADIUS WISPr-Bandwith-Up value used incorrectly creating Limited rules
- Sorry should have set the Affected Version to 2.4.0
-
09:30 AM Bug #8074 (Duplicate): Captive Portal RADIUS WISPr-Bandwith-Up value used incorrectly creating Limited rules
- Since pfSense 2.4.0 and the re-write of Captive Portal, the RADIUS WISPr-Bandwidth-Up value is being used incorrectly...
-
09:14 AM Bug #7969 (Resolved): md5 bgp sessions fail in 2.4.0
- Anything at the OS level appears to be fine now. I am able to establish a BGP peering with TCP MD5 and the latest FRR...
-
08:15 AM Bug #8035 (Resolved): Installed packages widget does not show updates
-
08:11 AM Bug #8069 (Resolved): Services sorting is incorrect in several cases with multi-instance services
-
07:36 AM Bug #8059 (Resolved): /etc/ssl/openssl.cnf in 2.4.0 and 2.4.1 is broken
-
02:51 AM Bug #8073 (New): Traffic inexplicably not going through IPSEC despite (in theory) matching SPs
- I am running a pfSense 2.4.0 twin installation with CARP between the two appliances.
I have been able to successfull...
11/08/2017
-
07:56 PM Bug #8072: Limiter / Queue mask issues?
- EDIT: To clarify. The old method of turning off pfsync and using just the limiters works as expected, however HA is...
-
07:53 PM Bug #8072: Limiter / Queue mask issues?
- Chris Linstruth wrote:
> It looks like you have your in/out directions mixed up.
>
> When you place Limiters on t... -
07:13 PM Bug #8072: Limiter / Queue mask issues?
- And, further, if you want a separate pipe for each IP address you mask on the parent queue and do not set a child que...
-
06:46 PM Bug #8072: Limiter / Queue mask issues?
- It looks like you have your in/out directions mixed up.
When you place Limiters on the LAN interface, the IN direc... -
02:28 PM Bug #8072 (New): Limiter / Queue mask issues?
- After upgrading to 2.4 and then again to 2.4.1, I noticed there is what appears to be a new issue as it applies to us...
-
03:46 PM Bug #8065 (Resolved): A manually configured filesystem layout with a separate /usr fails to properly setup several aspects of the system at boot time
-
03:10 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- Tim Economides wrote:
> Somewhat related issue I've first noticed while working with Quagga and FRR - When working w... -
03:03 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- Jim Pingle wrote:
> I added the flag to the raw config page. Unfortunately, fixing the other bug meant I had to rena... -
02:40 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- I added the flag to the raw config page. Unfortunately, fixing the other bug meant I had to rename the fields so the ...
-
01:33 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- Jim Pingle wrote:
> I just pushed a change to FRR to allow the user to manually choose whether or not they want to u... -
12:51 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- I just pushed a change to FRR to allow the user to manually choose whether or not they want to use setkey entries for...
-
02:06 PM Bug #8022: radvd receives SIGBUS on SG-3100 (ARM)
- Dave I experienced exactly the same thing as you did. I don't know how to fix it. I was only setting up ipv6 for fun ...
-
12:34 PM Bug #8071 (Resolved): DNSimple support for Dynamic DNS no longer working
- It seems that DNSimple has deprecated API v1 so all attempts using the current implementation will fail as unauthoriz...
-
11:46 AM Bug #8070 (Closed): IKEv2 IPSec tunnel under load crashes pfSense when AES-NI is enabled
- I want to refer you to this forumpost: https://forum.pfsense.org/index.php?topic=139146.0
As I said, disabling AES... -
10:37 AM Bug #8039: Invalid characters in static IP description will not resolve upon correction
- The static mapping wouldn't have anything to do with the port forward page.
The error on the port forward page is ... -
10:32 AM Bug #8039: Invalid characters in static IP description will not resolve upon correction
- You will have to mark this as 'could not replicate'. I blasted the installation and will have to try again in the fut...
-
10:25 AM Bug #7995: pfSense Certificate Manager Issues Blank Certificates
- It will appear OK after booting, most tests will look fine then. You have to watch the console during boot time, the ...
-
10:24 AM Bug #7995: pfSense Certificate Manager Issues Blank Certificates
- I'm having the same issue on a freshly upgraded factory configured SG-8860. This happens with my existing CA as well...
-
10:10 AM Bug #8069 (Feedback): Services sorting is incorrect in several cases with multi-instance services
- Applied in changeset commit:258fc75b0995a53997927edc5186b1fe8a5b409e.
-
09:59 AM Bug #8069 (Resolved): Services sorting is incorrect in several cases with multi-instance services
- On services_status.php, services with multiple instances (e.g. openvpn) appear unsorted in the list.
On the servic... -
09:07 AM Bug #8003: IPsec weirdness with 2.4.1
- This has been fixed in 2.4.2 in these commits a65b41a9e455786dd969a1ffcd110fdf195f9031 and 130f3c9266e0b8c626aa6e8991...
-
04:23 AM Bug #8003: IPsec weirdness with 2.4.1
- In my case there are more than 300 tunnels. It is very inconvenient to check which ones work and which ones do not wo...
-
01:14 AM Bug #8003: IPsec weirdness with 2.4.1
- I have the same issue on two SG-8860 in a carp setup upgraded from 2.3.4 to 2.4.0 and then 2.4.1. Seven connected ips...
-
09:07 AM pfSense Packages Bug #8068 (Resolved): Status Traffic Totals package installation is not recorded in config.xml
- The installation of the Status_Traffic_Totals package is not reflected in config.xml, thus it is not present in a bac...
-
08:55 AM pfSense Packages Bug #7487 (Resolved): Status Traffic Totals doesnt persist through reboots.
-
07:12 AM pfSense Packages Bug #8067 (Closed): Avahi can't be stopped from registering on unassigned interfaces
- Related to #7755.
In the settings page for Avahi, the deny interfaces list shows assigned interfaces only.
I ha... -
02:58 AM Bug #8059: /etc/ssl/openssl.cnf in 2.4.0 and 2.4.1 is broken
- Jim Pingle wrote:
> Applied in changeset commit:3414dea15b2f31099ef2ec962c2062ae95080a0e.
Hi Jim,
Thanks for t... -
02:04 AM Bug #8066 (New): Static routes not applied when they go out a interface using carp
- I have a fw that has a /30 configured on one interface and then a separate /30 ip series applied used carp on the int...
11/07/2017
-
11:30 PM Bug #8022: radvd receives SIGBUS on SG-3100 (ARM)
- Leif Huhn wrote:
> Dave I formatted over the memory card, but I bet this would work for you:
>
> http://pkg.freeb... -
01:30 PM Bug #8022: radvd receives SIGBUS on SG-3100 (ARM)
- Dave I formatted over the memory card, but I bet this would work for you:
http://pkg.freebsd.org/FreeBSD:11:armv6/... -
09:40 PM Bug #8024 (Resolved): static ipv6 config allow invalid addresses
-
06:53 PM pfSense Packages Bug #8058: FreeRadius Accounting Bug after upgrade 2.3->2.4
- Now it is happening again...for some reason latest activity in captive portal just stops working for some users.
I r... -
08:02 AM pfSense Packages Bug #8058 (Closed): FreeRadius Accounting Bug after upgrade 2.3->2.4
-
02:58 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- Jim Pingle wrote:
> Could be quagga vs frr, I am testing with frr. I'm still not convinced the second SA is doing an... -
01:40 PM Bug #8065 (Feedback): A manually configured filesystem layout with a separate /usr fails to properly setup several aspects of the system at boot time
- Applied in changeset commit:05871043800e44b40f9d542e5a76f9506259c115.
-
01:28 PM Bug #8065: A manually configured filesystem layout with a separate /usr fails to properly setup several aspects of the system at boot time
- Renato says the patch looks good.
Further testing shows no problems:
- Affected UFS system is OK
- Regular UFS s... -
01:04 PM Bug #8065 (Resolved): A manually configured filesystem layout with a separate /usr fails to properly setup several aspects of the system at boot time
- Choosing a manual installation with a separate /usr slice (ex: boot, /, /usr, /var, swap) fails to setup various aspe...
-
01:06 PM Bug #7995 (Closed): pfSense Certificate Manager Issues Blank Certificates
- After some more digging based on your later e-mail reply, I believe I found the root cause of this. See #8065
Clos... -
08:26 AM Bug #7995: pfSense Certificate Manager Issues Blank Certificates
- I can't seem to replicate that here. I used the exact same inputs you sent via e-mail and it worked as expected on 2....
-
12:37 PM pfSense Packages Bug #8064 (Not a Bug): Freeradius 3 One Time Password (OTP) not working
- It works fine, I just tested it multiple times yesterday and even replied to "your forum thread":https://forum.pfsens...
-
12:30 PM pfSense Packages Bug #8064 (Not a Bug): Freeradius 3 One Time Password (OTP) not working
- Hello,
clean Installation: Pfsense 2.4.1 with freeradius 0.15.2 OTP Google Authentcation is +not+ working
clean I... -
10:05 AM Bug #8049 (Duplicate): MTU stuck at 1280 for gif0 interface
- Looks like a duplicate of #6868
-
10:03 AM Bug #8009 (Duplicate): Can't upgrade from 2.4.0 to 2.4.1
- It's hard to tell due to lack of info, but I'm guessing this is a duplicate of #8063, the symptoms seem to match. If ...
-
09:55 AM Bug #6223: IPsec + OpenBGPD fails with "PF_KEY socket: No buffer space available"
- Mitch Claborn wrote:
> What is the process for switching to FRR? Do I just install the FRR package or is there more ... -
09:53 AM Bug #6223: IPsec + OpenBGPD fails with "PF_KEY socket: No buffer space available"
- What is the process for switching to FRR? Do I just install the FRR package or is there more to it?
-
05:55 AM Bug #6223: IPsec + OpenBGPD fails with "PF_KEY socket: No buffer space available"
- I can confirm that this is still an issue on 2.4.0
Switching to FRR solved this for me. -
09:50 AM Bug #8063 (Feedback): ZFS installs using MBR or geli end up with an empty /boot due to bootpool not being imported
- Applied in changeset commit:635dcc697a5caed4faebab384baa78809cf1c7b5.
-
09:16 AM Bug #8063 (Resolved): ZFS installs using MBR or geli end up with an empty /boot due to bootpool not being imported
- The zfs option in the installer can, in a few possible config paths, end up with a broken /boot. It looks like at lea...
-
08:00 AM pfSense Packages Bug #8062: Fixes to AWS VPC VPN wizard
- Thanks for the code submission! I had to remove those files from this public redmine post because that code is only a...
-
05:48 AM pfSense Packages Bug #8062 (Resolved): Fixes to AWS VPC VPN wizard
- A mixture of bug fixes and featured for the vpc vpn wizard.
h3. Use FRR BGP instead of OpenBGP
OpenBGP currentl... -
05:23 AM Feature #7962: Support for Intel 553 network card
- Hi, having the same issue. I guess the new driver is needed.
Was fixed in FreeNAS already.
https://bugs.freenas.org...
11/06/2017
-
08:47 PM Bug #8022: radvd receives SIGBUS on SG-3100 (ARM)
- Leif Huhn wrote:
> I compiled 2.17 from ports on raspi2 and it runs on the SG-3100 without SIGBUS.
This issue is ... -
07:18 PM Bug #8061: LAN WAN Interfaces missing in Traffichshaper
- Bridges and VLAN interfaces on LAN show up.
a spare interface on the same card shows up
It is just WAN interfaces a... -
07:13 PM Bug #8061: LAN WAN Interfaces missing in Traffichshaper
- on irc someone else had the same issue.
Also worth noting this is i386 -
07:10 PM Bug #8061: LAN WAN Interfaces missing in Traffichshaper
- em0@pci0:0:3:0: class=0x020000 card=0x10128086 chip=0x10108086 rev=0x01 hdr=0x00
vendor = 'Intel Corporation... -
06:46 PM Bug #8061: LAN WAN Interfaces missing in Traffichshaper
- What type of interfaces are those (driver name)?
Perhaps they were supported by the shaper on older versions but t... -
06:38 PM Bug #8061: LAN WAN Interfaces missing in Traffichshaper
- firewall_shaper.php
Firewall / Traffic Shaper / By Interface
(sorry for the typo) -
06:35 PM Bug #8061 (Resolved): LAN WAN Interfaces missing in Traffichshaper
- In 2.3.5 LAN and WAN interface(s) are missing from the list.
see picture attached
If queues are deleted only wa... -
06:40 PM Bug #7936 (Resolved): bridge network interface does not support altq on 2.4.0-RELEASE
-
06:38 PM Bug #7940 (Resolved): disabling LAGG causes system reboot on 2.4
-
06:35 PM Bug #7981 (Resolved): PPP interfaces with a VLAN parent do not work with new VLAN names
-
05:48 PM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- with
2.4.2-DEVELOPMENT (amd64)
built on Mon Nov 06 10:40:15 CST 2017
I confirm there is no more problem wit... -
03:25 PM Bug #8060 (Closed): Incorrect translation to Russian language
- The main page in the "Version" section should be "Получение" instead of "Полчение".
-
03:10 PM Bug #8059 (Feedback): /etc/ssl/openssl.cnf in 2.4.0 and 2.4.1 is broken
- Applied in changeset commit:3414dea15b2f31099ef2ec962c2062ae95080a0e.
-
03:00 PM Bug #8059: /etc/ssl/openssl.cnf in 2.4.0 and 2.4.1 is broken
- I just pushed a fix for this, but a few important points need to be made:
1. The ACME package works fine serving f... -
02:30 PM Bug #8059 (Confirmed): /etc/ssl/openssl.cnf in 2.4.0 and 2.4.1 is broken
- It is not broken, it works fine when you use it in a supported way (read: use the GUI or the ACME package).
Noneth... -
02:02 PM Bug #8059 (Resolved): /etc/ssl/openssl.cnf in 2.4.0 and 2.4.1 is broken
- When using dehydrated (https://github.com/lukas2511/dehydrated) instead of the acme package for requesting LetsEncryp...
-
11:57 AM pfSense Packages Bug #8058: FreeRadius Accounting Bug after upgrade 2.3->2.4
- Okay, after recreated the client and interfaces, this time with "*" instead of the IP of the client, seemed to have w...
-
06:57 AM pfSense Packages Bug #8058 (Closed): FreeRadius Accounting Bug after upgrade 2.3->2.4
- Hi,
I have been using FreeRadius with my captive portal successfully before freeRadius3 and pfsense 2.4
After the... -
09:49 AM Bug #8044 (Resolved): LDAP authentication fails with a globally trusted root CA
-
09:45 AM Bug #8045: Terminal and WebGUI stops responding
- Hi,
I have the same setup running (except nmap and snort).
Today I ran into the same issue.
I have a few of thes... -
08:34 AM Bug #8003: IPsec weirdness with 2.4.1
- Constantine Kormashev wrote:
> Could not reproduce the issue with just one P2 entry. Seems it affects only multiply ... -
05:10 AM Bug #6650 (Resolved): Option needed to disable HSTS
-
03:15 AM Bug #8057 (Closed): don't start dpinger if still one running
- It's the 2nd or 3rd time I see multiple instances of dpinger.
You have a pid file and can check for the process befo...
11/05/2017
-
07:16 PM Feature #8030: Unbound: Add support for DNS over TLS to internal clients
- I was able to get this to work using the following:
#this prevents port 853 tcp from working. Not sure why? Turnin... -
03:42 PM Bug #7426: UDP packet drops
- Tested iperf3 in UDP mode between SG-1000 and SG-2440 (and SG-3100), could not reproduce the bad behavior. Saw a prob...
-
02:47 PM Bug #7786: traffic shaping queue on WAN wont allow total of all child to be 100%
- On pfSense-netgate-uFW-recover-2.4.2-DEVELOPMENT-armv6-20171104-1805 unable to reproduce. Created parent queue for 50...
-
02:31 PM Bug #7975: ESXi 6.5 UEFI boot stops at framebuffer info
- Booting pfSense-CE-2.4.1-RELEASE-amd64.iso on ESXi 6.0.0 Update 3 (Build 5224934) using UEFI mode.
Machine shutdow... -
11:15 AM Bug #8056: Bridge + CARP crashes/freezes pfSense
- More context: https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=200319
This configuration works well on 2.3.3+ (di... -
10:59 AM Bug #8056 (Resolved): Bridge + CARP crashes/freezes pfSense
- Same behavior as the linked bug below: running CARP on a bridge interface and sending any non-trivial amount of traff...
-
08:04 AM Bug #7929 (Resolved): IPSec CA certificate name corrupt if multiple RDNs of the same type are in subject name
-
01:15 AM Bug #7929: IPSec CA certificate name corrupt if multiple RDNs of the same type are in subject name
- 2.4.2 17-11-04 could not reproduce the issue
rightca for latest @/DC=jimp/DC=pw/@
rightca for 2.4.1 @/DC=Array/@
A... -
05:59 AM Bug #8055 (Closed): pfsense GUI accessible over tun interface address from remote network
-
05:08 AM Bug #8055: pfsense GUI accessible over tun interface address from remote network
- INVALID - please close, additional route path advertised by secondary client.
-
02:40 AM Bug #8055 (Closed): pfsense GUI accessible over tun interface address from remote network
- Configuration:
site A pfSense:
lan: 10.76.175.0/24
OpenVPN_TUN: 172.28.10.1/30 (OpenVPN routing 192.168.1.2/32)
... -
01:28 AM Bug #8003: IPsec weirdness with 2.4.1
- Could not reproduce the issue with just one P2 entry. Seems it affects only multiply P2
11/04/2017
-
11:43 PM Bug #6406: Web process becomes unresponsive producing 502 Bad Gateway nginx
- Running for 12+hours, dashboard up, IPSec widget (and many others including pfBlocker) loaded, no issues. (2.4.2.a.20...
-
05:20 PM Bug #8016: 1 pfsense out of several shows 2.4.0 available, not 2.4.1
- Followup notes:
* On the FW with the issue, did update from 2.3.4 to 2.4.0. Success
1) After reboot, Dashboard ... -
04:31 PM Bug #7940: disabling LAGG causes system reboot on 2.4
- could not replicate on 2.4.2.a.20171103.1355, not on HA though.
-
04:13 PM Bug #7856: IPsec status does not show all connected mobile clients
- tested on 2.4.2.a.20171103.1355, not seeing duplicate entries
-
02:17 PM Bug #7594: "vtnet: driver does not support altq" following upgrade to 2.4 (worked in pfSense 2.3)
- Just updated to current and traffic shaping is still working for me. Maybe your queue config is triggering something...
-
01:03 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- Worth noting I have been seeing all of this with openbgpd, so it would be strange if it was specific to routing daemons.
-
01:01 PM Bug #4607: Bridge+CARP crashes/freezes pfSense
- Is the patch for this still included in 2.4? I'm getting freezes that sound eerily similar to the issue described her...
-
11:00 AM Bug #8054: DHCP server accepts trailing dot in domain names, DNS resolver adds another and breaks
- To be clear: this happened with a static lease.
-
10:46 AM Bug #8054 (Resolved): DHCP server accepts trailing dot in domain names, DNS resolver adds another and breaks
- If you add a trailing dot on the domain name in the "domain name" and "domain search list", this is accepted. The DNS...
-
07:41 AM Feature #8028: Unbound: Add advanced option for qname-minimization
- I don't think strict should be an option through the GUI now that I've played with it.
With respect to qname-minim... -
03:17 AM Feature #8028: Unbound: Add advanced option for qname-minimization
- Well if going to add options for the -strict in the gui... Needs to have BIG note on it that it WILL BREAK stuff... N...
-
07:07 AM Bug #6400: assign_interfaces.php issues with large numbers of interfaces
- https://forum.pfsense.org/index.php?topic=137391.msg757023#msg757023
-
04:55 AM Bug #7973: VLAN Priority Set feature in firewall rules is not functioning
- A Pull request has been added address the issue of dhcp6 vlan priority requests
https://github.com/pfsense/pfsen... -
12:19 AM Bug #8053 (Resolved): Firewall Rule IPv6 Gateway Cannot Be Selected
- When there are multiple IPv6 gateways on a system an IPv6 firewall Rule can only be initially created with either the...
11/03/2017
-
09:59 PM Bug #6650: Option needed to disable HSTS
- Tested on pfSense-netgate-memstick-ADI-2.4.2-DEVELOPMENT-amd64-20171103-1355.img, works as expected....
-
04:38 PM Bug #8050: Enabling bridge while interfaces have link freezes console
- This may be an issue on my end, with VMware...it's possible I saw what appeared to be the same issue on the XG-2758 b...
-
04:22 PM Bug #8050: Enabling bridge while interfaces have link freezes console
- PF was disabled during these tests and no IP assigned to the bridge interface. I had a similar problem with 2.3.5...
... -
03:51 PM Bug #8050: Enabling bridge while interfaces have link freezes console
- Same issue with 2.4.1
-
03:32 PM Bug #8050: Enabling bridge while interfaces have link freezes console
- Also may be related to changes here:
https://redmine.pfsense.org/issues/7936 -
03:24 PM Bug #8050 (Closed): Enabling bridge while interfaces have link freezes console
- Installed 2.4.2-DEV CE (snapshot from about an hour ago) on both a VM and XG-2758.
If you try to create a bridge w... -
04:20 PM Bug #8043 (Feedback): Cannot enable IPsec Mobile Client Support when the interface is in french
- Applied in changeset commit:46b9efddca9e78e1eabaf3a849c283f720dc35d7.
-
04:06 PM Bug #8051: XG-2758 - Wrong Interface Assignment
- Confirmed the same issue is present with 2.4.2 factory.
This was not a problem with 2.4.1 -
03:28 PM Bug #8051 (Resolved): XG-2758 - Wrong Interface Assignment
- 2.4.2-DEV CE (latest from an hour or so ago) installed on XG-2758 and the interfaces do not assign as expected.
http... -
03:39 PM Feature #8052 (Rejected): Separate MTU interface values for IPv4 and IPv6
- Some ISPs do not offer IPv6 connetivity yet or offer it via a tunnelling mechanism.
As such, in some cases PMTU di... -
03:14 PM Bug #8046 (Resolved): ntpd erroneously listens on all interfaces
-
08:30 AM Bug #8046 (Feedback): ntpd erroneously listens on all interfaces
- Applied in changeset commit:c2a524405c65f973add431cf18d3efc5c3a8f2ea.
-
02:52 PM Bug #7994 (Resolved): system_certmanager.php: Unable to create a wildcard SAN
-
02:52 PM Bug #7885 (Resolved): Cert. Manager should validate EKUs on importing a certificate authority
-
02:52 PM Bug #7733 (Resolved): User Manager deletes non-selected users
-
02:41 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- Jim Pingle wrote:
> Could be quagga vs frr, I am testing with frr. I'm still not convinced the second SA is doing an... -
02:17 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- Could be quagga vs frr, I am testing with frr. I'm still not convinced the second SA is doing anything to help the si...
-
02:00 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- Jim Pingle wrote:
> I'd be surprised if it was actually working due to that change alone. Maybe you changed somethin... -
01:37 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- I'd be surprised if it was actually working due to that change alone. Maybe you changed something else unrelated to j...
-
01:10 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- Jim Pingle wrote:
> Those changes do seem to be corroborated by the "setkey(8) man page":https://www.freebsd.org/cgi... -
10:57 AM Bug #7969: md5 bgp sessions fail in 2.4.0
- Those changes do seem to be corroborated by the "setkey(8) man page":https://www.freebsd.org/cgi/man.cgi?query=setkey...
-
09:21 AM Bug #7969: md5 bgp sessions fail in 2.4.0
- Tim Economides wrote:
> All - I did some digging and found that when I built MD5 support into Quagga (code which was... -
02:24 PM Bug #8049 (Duplicate): MTU stuck at 1280 for gif0 interface
- This is a bug that appears multiple times in past versions of pfSense. Even though the MTU for the 6in4 interface is...
-
02:14 PM Bug #8048 (Resolved): DHCPv6 Configured for LAN without LAN interface
- Installed the latest 2.4.2-DEV CE snapshot on a VM with a single NIC
At the end of the installer I selected the op... -
01:39 PM Bug #8039: Invalid characters in static IP description will not resolve upon correction
- I attempted to replicate this on a SG-2220 running Factory 2.4.2-DEV box but it seems to work just fine. I used stati...
-
01:03 PM pfSense Packages Bug #8047 (Resolved): XG-2758 - Coreboot Upgrade - Different ROM size
- XG-2758s have 8M and 16M ROMs. There is a J24 jumper to set the coreboot BIOS to either 8M or 16M. By default, the XG...
-
10:40 AM Bug #7929 (Feedback): IPSec CA certificate name corrupt if multiple RDNs of the same type are in subject name
- Applied in changeset commit:7e37da2e9db8dd153e3b8ef2844beb9a9fe24a56.
11/02/2017
-
10:29 PM Bug #8015: IPsec VPN Not Reconnecting until complete reboot
- Not sure we can do much about this in the current architecture.
-
10:20 PM Bug #8022: radvd receives SIGBUS on SG-3100 (ARM)
- Leif Huhn wrote:
> I compiled 2.17 from ports on raspi2 and it runs on the SG-3100 without SIGBUS.
We know the po... -
03:29 PM Bug #8022: radvd receives SIGBUS on SG-3100 (ARM)
- I compiled 2.17 from ports on raspi2 and it runs on the SG-3100 without SIGBUS.
-
02:40 PM Bug #8022: radvd receives SIGBUS on SG-3100 (ARM)
- It looks like the radvd version is fairly old:...
-
06:20 PM Bug #8046 (Resolved): ntpd erroneously listens on all interfaces
- Although I have selected only specific interfaces for ntpd to listen on, the service additionally listens to the wild...
-
04:59 PM Bug #8045 (Closed): Terminal and WebGUI stops responding
- Running a Netgate APU2 with SSD and 4GB RAM. This started after upgrading from 2.3 to 2.4. After a few days, would tr...
-
03:56 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- All - I did some digging and found that when I built MD5 support into Quagga (code which was subsequently used in dev...
-
10:40 AM Bug #7969: md5 bgp sessions fail in 2.4.0
- Downgraded my device back to 2.3.4 after taking the trip out to the DC. Working fine now. Definitely 2.4.x related.
-
01:48 PM Bug #8020 (Duplicate): Can't STARTTLS to LDAP server since 2.4.0
- I ended up making a new issue for this, see #8044 for the fix.
-
01:40 PM Bug #8044 (Feedback): LDAP authentication fails with a globally trusted root CA
- Applied in changeset commit:87c67243c2cab5fd3e51d17df96ed5ac04bff799.
-
01:28 PM Bug #8044 (Resolved): LDAP authentication fails with a globally trusted root CA
- The OpenLDAP client does not automatically look for and trust the global root CA list we have from ca_root_nss, linke...
-
01:30 PM Bug #8003: IPsec weirdness with 2.4.1
- Marcel Kinzel wrote:
> I can confirm the same issue. As someone already mentioned in the pfSense forum (https://foru... -
12:19 PM Feature #8028: Unbound: Add advanced option for qname-minimization
- I have been using the
qname-minimisation: yes
Option via adding it to custom option box for a few days now and h... -
11:20 AM Feature #8028: Unbound: Add advanced option for qname-minimization
- RFC spec here:
https://tools.ietf.org/html/rfc7816
Should this be ignored if forwarding mode is enabled? I don't ... -
12:16 PM Bug #6650 (Feedback): Option needed to disable HSTS
- PR has been merged
-
10:55 AM Bug #7990: SyntaxError: JSON.parse: unexpected character at line 1 column 1 of the JSON data
- Do you know when 2.4.2 stable will be released?
-
08:57 AM Bug #7990: SyntaxError: JSON.parse: unexpected character at line 1 column 1 of the JSON data
- This fix did not make it into 2.4.1 but it is implemented in 2.4.2.
-
06:10 AM Bug #7990: SyntaxError: JSON.parse: unexpected character at line 1 column 1 of the JSON data
- This is still not resolved in 2.4.1 - I am seeing the exact same behavior after upgrading to 2.4.1 !
-
10:30 AM Bug #7786 (Feedback): traffic shaping queue on WAN wont allow total of all child to be 100%
- Applied in changeset commit:fbbd7d2b53492b9d7ce7fb02218de2cdda31ce27.
-
09:34 AM Bug #7940 (Feedback): disabling LAGG causes system reboot on 2.4
- Fixed.
The fix will be available on the next snapshot.
Testing this issue is non trivial, but still, I would ap... -
09:33 AM Bug #7856: IPsec status does not show all connected mobile clients
- Applied in changeset a65b41a9e455786dd969a1ffcd110fdf195f9031.
-
09:31 AM Bug #7856 (Feedback): IPsec status does not show all connected mobile clients
-
09:05 AM Bug #8032 (Feedback): xmlrpcsync password fails with spaces in password
- PR has been merged
-
08:52 AM Bug #7594: "vtnet: driver does not support altq" following upgrade to 2.4 (worked in pfSense 2.3)
- T S wrote:
> I can confirm that Traffic Shaping is broken on VTNET Interfaces.
> If active the Firewall / PortForwa... -
08:46 AM Bug #7933: There were error(s) loading the rules: pfctl: vtnet0: driver does not support altq - The line in question reads [0]:
- Hello,
the issue still exists with the newest 2.4.2 snapshot (tested yesterday).
Virtualized pfsense with virti... -
07:10 AM pfSense Packages Bug #7959 (Not a Bug): Dpinger - Probe Interval
- Please move discussion to a forum thread and if a real bug is found open a ticket with specific data
-
07:00 AM Bug #6459 (Feedback): AWS EC2 Instance should skip interface config in setup wizard
- Applied in changeset commit:bff36903ea4f1ca2615e31e2dd9d6927509df82b.
11/01/2017
-
05:42 PM Bug #8043 (Resolved): Cannot enable IPsec Mobile Client Support when the interface is in french
- Hello,
I set the interface of my pfSense in french. And if I go in "VPN > IPsec > Mobile Clients", check "Enable I... -
12:48 PM Bug #8038 (Rejected): Cannot authenticate via LDAP+SSL in 2.4.1
- Then that's not an intermediate CA. All you need is the root. Having that non-CA in the CA manager is probably the pr...
-
12:36 PM Bug #8038: Cannot authenticate via LDAP+SSL in 2.4.1
- DC1 CA is the Root CA cert of the Domain Controller. DC1 is the certificate of the domain controller signed by the Ro...
-
12:14 PM Bug #8038: Cannot authenticate via LDAP+SSL in 2.4.1
- There must still be something about the chain that isn't quite right, the same test here works perfectly fine using S...
-
12:01 PM Bug #8038: Cannot authenticate via LDAP+SSL in 2.4.1
- I tried everything you suggested but the result is still exactly the same. I attached screenshots of the configuratio...
-
11:09 AM Bug #8038 (Feedback): Cannot authenticate via LDAP+SSL in 2.4.1
- It works for me here with both a standard CA and with an intermediate CA chain on multiple firewalls and against mult...
-
10:38 AM Bug #8037 (Duplicate): status_monitoring.php XSS
- Looking back at #7876 it seems like the same base issue but there were two more potential vectors that needed repair,...
-
09:29 AM Bug #8040 (Confirmed): diag_dns.php - external links to DNSstuff
- From the looks of it, they're having some sort of issue with the site. That server has DNS records but isn't respondi...
-
09:19 AM Bug #8041 (Confirmed): Missing download images for i386 platform
-
01:32 AM Bug #8041 (Resolved): Missing download images for i386 platform
- Hello...
Could some one comment on this issue please...
I need to download an embedded pfsense image for the i386... -
09:17 AM Bug #8042 (Closed): VLAN Priority on dhcpc6c packets is not set. REF #7973
- With the dhcp6c options seems best. In the future, requests for discussion/clarification like this should be on the d...
-
02:40 AM Bug #8042 (Closed): VLAN Priority on dhcpc6c packets is not set. REF #7973
- Although VLAN tagging now works, it does not work for dhcp6c. @jimp suggested to @kwillers that adding a new floating...
10/31/2017
-
09:16 PM Bug #8040 (Resolved): diag_dns.php - external links to DNSstuff
- Links to the external service _private.dnsstuff.com_ appear to be no longer valid.
-
08:03 PM Bug #8039 (Resolved): Invalid characters in static IP description will not resolve upon correction
- I created a few dozen static IPs in the DHCP Server. A handful of those had descriptive names such as "Diedrich's lap...
-
07:34 PM Bug #7940 (Confirmed): disabling LAGG causes system reboot on 2.4
- Ok, I found a way to reproduce this.
It is not really related to lagg, it is a race that happens at interface deta... -
05:45 PM Bug #8038 (Rejected): Cannot authenticate via LDAP+SSL in 2.4.1
- Same exact configuration that had been working previously in 2.3.x but is now not working after I upgraded to 2.4.1. ...
-
05:10 PM Bug #8037 (Duplicate): status_monitoring.php XSS
- If you click the edit icon > display advanced > add view and then enter <script>alert(1)</script> it looks like it do...
-
05:07 PM Bug #7978: IE 11 - Headers of tables almost not visible when no entries made
- Confirmed, loaded the new css in 2.4.1 and is working fine now.
no more scrollbars and headers visible for tables wi... -
04:07 PM Bug #7733: User Manager deletes non-selected users
- Jim Pingle wrote:
> This turned out to the same sort of issue as #7682 (on a different page, however), and a similar... -
01:30 PM Bug #7733 (Feedback): User Manager deletes non-selected users
- Applied in changeset commit:92c27793b4c7f87e89aec3faec5582c17502d6d5.
-
01:17 PM Bug #7733: User Manager deletes non-selected users
- This turned out to the same sort of issue as #7682 (on a different page, however), and a similar fix addressed the pr...
-
03:58 PM Bug #7905 (Confirmed): OpenVPN Authentication Against Backend Stalls All Server Traffic
- I was finally able to confirm the problem, I'm looking at that auth_script plugin now, but it will require some signi...
-
02:30 PM Bug #7994 (Feedback): system_certmanager.php: Unable to create a wildcard SAN
- Applied in changeset commit:70b70f9dd5f52aba4cfb28c3251961ee0b48d359.
-
02:10 PM Bug #7885 (Feedback): Cert. Manager should validate EKUs on importing a certificate authority
- Applied in changeset commit:9e608d7a5215534d2519dc633a46884e2981619d.
-
01:42 PM Bug #8033 (Not a Bug): Certmanager import server certificate ignores purpose server
- "Netscape Certificate Type"/nsCertType has been deprecated for quite some time as a supported certificate attribute (...
-
04:04 AM Bug #8033 (Not a Bug): Certmanager import server certificate ignores purpose server
- When importing a certificate generated with tinyca as server certificate (pem) the server setting gets ignored and in...
-
11:50 AM Feature #8036: Want to run multiple Mobile Client IKEv2 server instances
- There is a minor typo that I seem to be unable to correct. "Neither is possible on iOS." should have been "Neither is...
-
11:48 AM Feature #8036 (New): Want to run multiple Mobile Client IKEv2 server instances
- The Mobile Client IKEv2 server in pfSense should be able to do two things that it presently cannot:
1. Bind to mul... -
10:00 AM Feature #8030: Unbound: Add support for DNS over TLS to internal clients
- Also it would need significantly more logic here than you've shown thus far. For instance, you can't always assume th...
-
09:55 AM Feature #8030: Unbound: Add support for DNS over TLS to internal clients
- I'd like to request that this FR be closed. When I created it I did so because I didn't think it was possible to do t...
-
09:40 AM Bug #8035 (Feedback): Installed packages widget does not show updates
- Applied in changeset commit:9c4e7fd3e155d08911feb0afc527af21d79ce917.
-
07:08 AM Bug #8035 (Resolved): Installed packages widget does not show updates
- https://forum.pfsense.org/index.php?topic=138876.0
-
09:30 AM Bug #8007 (Resolved): Status -> Queues show as (loading) and don't update
-
09:02 AM Bug #8007: Status -> Queues show as (loading) and don't update
- Jim Pingle wrote:
> Applied in changeset commit:2d07b58d8cc2c67fbb701cf2d369691ad3ab0074.
Thank you Jim for fixin... -
08:42 AM Bug #8034 (Rejected): PHP crashes when trying to modify or add NAT rules in pfSense v.2.4.1
- Please post on the forum, reddit, or the mailing list to discuss this in detail before opening a bug report. There ma...
-
05:21 AM Bug #8034 (Rejected): PHP crashes when trying to modify or add NAT rules in pfSense v.2.4.1
- Hello, I'm running pfSense v2.4.1, upgraded from v2.4.0 yesterday.
Every time I try to add or modify a NAT rule in...
10/30/2017
-
08:53 PM Feature #8030: Unbound: Add support for DNS over TLS to internal clients
- Edit: I was able to get this to work. info posted below.
Forum link:
https://forum.pfsense.org/index.php?topic=1... -
05:30 PM Feature #8030: Unbound: Add support for DNS over TLS to internal clients
- I did some more research on this. A simple checkbox that adds the following lines to the config should do the trick:
... -
11:46 AM Feature #8030: Unbound: Add support for DNS over TLS to internal clients
- Also need to add the following lines:
interface: 0.0.0.0@853
interface: ::0@853
The interface address being set ... -
11:43 AM Feature #8030 (Resolved): Unbound: Add support for DNS over TLS to internal clients
- Add support for DNS over TLS to internal clients.
A description of the feature can be found here.
https://dnspri... -
08:51 PM Bug #8022: radvd receives SIGBUS on SG-3100 (ARM)
- Signs are pointing to a corrupt stack. From https://stackoverflow.com/questions/27577179/signal-sigbus-on-a-line-with...
-
08:47 PM Bug #8022: radvd receives SIGBUS on SG-3100 (ARM)
- Admittedly the above isn't terribly useful without symbols.
-
08:38 PM Bug #8022: radvd receives SIGBUS on SG-3100 (ARM)
- I don't know what is happening with gdb but I'm working around it by starting the process before entering gdb.
<pr... -
07:46 PM Bug #8022: radvd receives SIGBUS on SG-3100 (ARM)
- That doesn't seem to be it. -n is actually the option to prevent forking, and in fact gdb is unable to debug any prog...
-
02:22 PM Bug #8022: radvd receives SIGBUS on SG-3100 (ARM)
- Leif Huhn wrote:
> I'm trying to install gdb to debug this but when I run:
>
> pkg add http://pkg.freebsd.org/Fre... -
07:51 PM Bug #8032: xmlrpcsync password fails with spaces in password
- Fix: https://github.com/pfsense/pfsense/pull/3859
-
06:43 PM Bug #8032 (Resolved): xmlrpcsync password fails with spaces in password
- xmlrpcsync fails when there are spaces in the middle of the password. Mentioned this on IRC and got this reponse...
... -
04:37 PM Bug #7936 (Feedback): bridge network interface does not support altq on 2.4.0-RELEASE
- The support for ALTQ is now restored, please check with tomorrow's snapshot.
-
03:23 PM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
- I would like to see support for this added as I have switched my home router to use pfSense and run into the same iss...
-
02:50 PM Bug #8007 (Feedback): Status -> Queues show as (loading) and don't update
- Applied in changeset commit:2d07b58d8cc2c67fbb701cf2d369691ad3ab0074.
-
01:30 PM Bug #8007: Status -> Queues show as (loading) and don't update
- Jim Pingle wrote:
> Aha, when I tested in PRIQ it all worked but it doesn't have root queues like HFSC, I'll check o... -
01:09 PM Bug #8007 (Assigned): Status -> Queues show as (loading) and don't update
- Aha, when I tested in PRIQ it all worked but it doesn't have root queues like HFSC, I'll check on that. Thanks!
-
12:33 PM Bug #8007: Status -> Queues show as (loading) and don't update
- Jim Pingle wrote:
> Applied in changeset commit:63a480cbf6b24d155421c1cd74f1b0409ae945de.
Still displaying (Loadi... -
02:05 PM pfSense Packages Feature #8031 (New): FreeRADIUS copy entry function
- Any chance we could have a copy function for FreeRADIUS Clients, MACs and NAS/Clients.
Something like the firewall... -
12:53 PM Feature #7910: Notification GUI
- I agree that this is a very useful addition and commonly requested.
Being able to see what notification will email... -
11:54 AM Bug #8029 (Duplicate): After upgrade to 2.4.1 from 2.3.4 the vlan interface name changed. But mpd5 not work with new vlan iface format.
- Duplicate of #7981 and already fixed in 2.4.2 snapshots
-
11:38 AM Bug #8029 (Duplicate): After upgrade to 2.4.1 from 2.3.4 the vlan interface name changed. But mpd5 not work with new vlan iface format.
- After upgraded I can not connect to PPPOE server from vlan interface. If I change the vlan interface name back to bge...
-
11:33 AM Bug #8024 (Feedback): static ipv6 config allow invalid addresses
- Fixed.
Please check with tomorrow's snapshot.
Thanks! -
11:30 AM Feature #8028 (Resolved): Unbound: Add advanced option for qname-minimization
- Add support for qname-minimization and maybe qname-minimisation-strict.
This can be implemented in two ways, depen... -
11:26 AM Bug #8001: Invalid FQDN in alias causes alias table to fail *silently*
- More specifically, in this case, the FDQN timed out (DNS didn't respond).
-
09:16 AM Bug #8000 (Resolved): XSS on index.php via widget sequence parameters
-
09:11 AM Bug #7998 (Resolved): XSS in widgetkey parameter of multi-instance dashboard widgets
-
08:40 AM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- Marc-Andre Robert wrote:
> Looking into upgrading to 2.4.2. Is there anyway to update using the ISO and not loose my... -
08:19 AM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- > Version 2.3 and newer
> In 2.3 and newer versions, the update system is pkg-based, changing the available update m... -
05:14 AM Feature #8027 (Closed): Add second password field for validation when doing encrypted config.xml backup
- Currently if we want to encrypt the config.xml file, there is one textbox for password entry. If a typo is made, the...
10/29/2017
-
04:54 PM Feature #6240: vxlan driver
- +1
-
12:48 PM Bug #7979 (Resolved): Error setting limiter over 2GB/s
-
10:56 AM Bug #8010: import cert: "The submitted private key does not match the submitted certificate data"
- That would explain it, but you can't use a password-protected certificate anyhow, so it isn't worth importing.
-
10:00 AM Bug #8010: import cert: "The submitted private key does not match the submitted certificate data"
- Hello again Jim :)
I investigate about my certs and I found the problem: that cert has a password, pfsense doesn't... -
07:00 AM Bug #8024 (Resolved): static ipv6 config allow invalid addresses
- I discovered that the ipv6 static address allows user to insert invalid values and allows saving them. Due to this ot...
10/28/2017
-
11:56 PM Feature #8023: Redirect to FQDM
- Good point.
Would it be acceptable to do all this transparently inside nginx conf leaving the interface as is? If... -
08:16 PM Feature #8023: Redirect to FQDM
- The problem with doing this is that you do not know that the hostname exists in DNS and is working properly.
It wo... -
02:00 PM Feature #8023: Redirect to FQDM
- Possible fix see attached patch
-
01:03 PM Feature #8023 (Closed): Redirect to FQDM
- When "WebGUI redirect" is unchecked from System->Advanced pfsense will redirect requests to http to https.
If you ... -
09:52 PM Bug #8022: radvd receives SIGBUS on SG-3100 (ARM)
- I'm trying to install gdb to debug this but when I run:
pkg add http://pkg.freebsd.org/FreeBSD:11:armv6/release_1/... -
03:54 PM Bug #7973: VLAN Priority Set feature in firewall rules is not functioning
- Jim indeed it was my rule or at least the order that pfSense rules are ordered in rules.debug
Full explanation he... -
09:06 AM Bug #7984: restarting syslogd service makes sshlockout_pf process orphans
- A syslog service 'restart' still leaves the sshlockout_pf running. A 'stop' does end all running sshlockout_pf proces...
-
06:53 AM Todo #8005 (Resolved): Block direct download of .inc files
-
02:49 AM Todo #8005: Block direct download of .inc files
- Could not download one...
-
04:48 AM Bug #8020: Can't STARTTLS to LDAP server since 2.4.0
- Forgot to add, when PfSense attempts to connect on my LDAP server, I see this on the server side:
@TLS: error: acc... -
03:16 AM Bug #8003: IPsec weirdness with 2.4.1
- Got the same with latest 242.
Can see just 1 SPD P2 entry have to see 2 P2 entries
Can see
!bad_spd.png!
Have... -
02:38 AM Bug #7978: IE 11 - Headers of tables almost not visible when no entries made
- The same w/o entries
!ie11_w10_wo_entr.png! -
02:34 AM Bug #7978: IE 11 - Headers of tables almost not visible when no entries made
- Looks fine on latest 2.4.2 win10 ie 11
!ie11_w10.png! -
02:27 AM Bug #7979: Error setting limiter over 2GB/s
- Tried 4096Mb/s looks fine
@00001: 4.096 Gbit/s 0 ms burst 0
q131073 50 sl. 0 flows (1 buckets) sched 65537 ...
10/27/2017
-
09:14 PM Bug #7942 (Resolved): QinQ interfaces never show as active
-
09:13 PM Bug #7594 (Resolved): "vtnet: driver does not support altq" following upgrade to 2.4 (worked in pfSense 2.3)
-
04:03 PM Bug #7594: "vtnet: driver does not support altq" following upgrade to 2.4 (worked in pfSense 2.3)
- Tested and working for me. Thanks!
-
06:12 PM Bug #8022 (Resolved): radvd receives SIGBUS on SG-3100 (ARM)
- Hi,
I just received my first pfsense box, the SG-3100. I tried to setup IPv6 on the LAN and advertise the network ... -
04:11 PM pfSense Packages Bug #7959: Dpinger - Probe Interval
- This would probably be better as a forum discussion...
A probe every 60 seconds is 40,320 bytes per day one-way, 1... -
04:37 AM pfSense Packages Bug #7959: Dpinger - Probe Interval
- Many thanks for your input.
If the size of the packet is only 28 bytes ( 56 bytes calculating the reply as well ) ye... -
04:07 PM Feature #8021 (Rejected): change default mask values for ipv4 to /24 and ipv6 to /64
- There seems to be a few threads where users have issues because mask defaults to /32
Would it be possible when set... -
04:02 PM Bug #8010: import cert: "The submitted private key does not match the submitted certificate data"
- If they don't match, that isn't a valid combination. Are you certain that actually works? Does the modulus of the key...
-
03:33 PM Bug #8010: import cert: "The submitted private key does not match the submitted certificate data"
- Jim Pingle wrote:
> Are you absolutely certain that the certificate and key match?
I just checked and both don't ... -
11:40 AM Bug #7984 (Feedback): restarting syslogd service makes sshlockout_pf process orphans
- Applied in changeset commit:e8f4a96c7dcd0af18eb2d9e95d48f4402d41182d.
-
11:10 AM Bug #8020 (Duplicate): Can't STARTTLS to LDAP server since 2.4.0
- This setup was running fine until my upgrade to 2.4.0 (and 2.4.1). I'm running an OpenLDAP server (on EL6). This LDAP...
-
10:56 AM pfSense Packages Bug #7944 (Feedback): Bind XMLRPC Sync Error
- PR has been merged. Thanks!
-
10:26 AM pfSense Packages Bug #7944: Bind XMLRPC Sync Error
- This also seems to affect 2.4.1 as well.
-
09:48 AM Bug #8012 (Resolved): Parse error: syntax error, unexpected '&&' (T_BOOLEAN_AND) in /etc/inc/util.inc on line 1565
-
09:47 AM Bug #7426 (Feedback): UDP packet drops
- Fixed. Add nmbclusters set to 500000 on SG-1000 and 1000000 on SG-3100.
-
09:00 AM Bug #8019 (Rejected): mobile view 2.4.1
- Config issue.
System > General, change Top Navigation.
If that doesn't help, post on the forum, reddit, or mail... -
08:50 AM Bug #8019 (Rejected): mobile view 2.4.1
- Hello,
the context menu is not scrollable at the mobile view. So it's not possible to reach all funktion. -
08:31 AM Bug #7973: VLAN Priority Set feature in firewall rules is not functioning
- Probably an error in your rules, has to be in a floating rule, on the right interface, quick enabled, outbound direct...
-
08:22 AM Bug #7973: VLAN Priority Set feature in firewall rules is not functioning
- Jim Pingle wrote:
> The "VLAN Prio Set" option on firewall rules is supposed to alter the VLAN priority flag in 802.... -
08:08 AM Bug #7973 (Resolved): VLAN Priority Set feature in firewall rules is not functioning
- Confirmed as fixed, setting a priority is reflected in the traffic on the wire now. Thanks!
-
07:55 AM Bug #8018: Making WAN changes bricks PPPoE config
- Apologies - I accidentally clicked submit too soon.
The problem is that making any change and saving the page will... -
07:55 AM Bug #8018 (Rejected): Making WAN changes bricks PPPoE config
- Not nearly enough detail here for a bug report we can investigate. Please post on the forum, mailing list, or reddit ...
-
07:53 AM Bug #8018 (Rejected): Making WAN changes bricks PPPoE config
- We use a pfSense appliance as firewall at a site with a DSL Internet connection.
IPv6 -
06:25 AM Bug #8017 (Duplicate): Changing VLAN assignments breaks parent LAGG interface
- Duplicate of #7928
-
05:49 AM Bug #7928: LAGG interfaces lose MAC address
- Hi,
I had similar issue with this mb APU1D/T40E, pfsense 2.4.0 fresh install:
all 3 reX interfaces were members in ...
10/26/2017
-
10:48 PM Bug #8017 (Duplicate): Changing VLAN assignments breaks parent LAGG interface
- I updated to 2.4.1 tonight forgetting about the PPPoE over VLAN issue so I started changing my WAN interface and then...
-
07:57 PM Bug #8016 (Closed): 1 pfsense out of several shows 2.4.0 available, not 2.4.1
- 1 firewall out of several shows 2.4.0 update available, not 2.4.1.
I tried changing update setting to Next Major Ver... -
05:50 PM Bug #8015 (Resolved): IPsec VPN Not Reconnecting until complete reboot
- We have multiple IPSec tunnels to our remote sites and Every now and then, some sites will fail to reconnect unless w...
-
04:43 PM Bug #7119: Changing LAGG attributes results in a panic/crash
- Steve Wheeler wrote:
> If it didn't actually panic it's probably that MAC address issue. That should be fixed in 2.4... -
04:24 PM pfSense Packages Bug #7961 (Feedback): JS Error on Status > Monitoring
-
12:36 PM Bug #7979 (Feedback): Error setting limiter over 2GB/s
- Fixed.
The limit is now ~4Gb (4294967295). -
11:53 AM Bug #8013: IPsec MSS clamping value shared for IPv4 and IPv6
- Agree this would be good, but it really wants to be part of FreeBSD (upstream).
I've assigned it, but I don't know... -
10:59 AM Bug #8014 (Resolved): DynDNS wildcard option doesn't work for provider Loopia
- The DynDNS wildcard option doesn't work for provider Loopia.
It seems that this line never results in $this->_dnsW... -
08:06 AM Bug #8003: IPsec weirdness with 2.4.1
During work 32406 I found HTML was rendered fine but click on button does not expand table
<td colspan="10">
<d...-
05:14 AM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- Luiz Souza wrote:
> Diego Henrique Pagani wrote:
> > Luiz Souza wrote:
> > > Fixed in the last 2.4.2 snapshot.
> ... -
04:11 AM Bug #7989 (Feedback): Cannot update Nano from 2.3.4 to 2.3X snapshots
- New versions of pfSense-upgrade force to reinstall itself when version differs from remote repo. It should be enough
-
02:05 AM pfSense Packages Bug #7959: Dpinger - Probe Interval
- Hmm... this doesn't quite make sense to me.
A probe of 28 bytes every 86 seconds seems a minuscule cost. With a lo... -
12:02 AM Bug #8012 (Feedback): Parse error: syntax error, unexpected '&&' (T_BOOLEAN_AND) in /etc/inc/util.inc on line 1565
- Fixed. I'm restarting the builders, the new snapshots will be ready in a few hours.
10/25/2017
-
11:50 PM Bug #8013 (New): IPsec MSS clamping value shared for IPv4 and IPv6
- MSS clamping for IPsec can only be set globally. As a result, a value of 1452 for an IPv4 tunnel (required due to my...
-
11:04 PM Bug #8012 (Resolved): Parse error: syntax error, unexpected '&&' (T_BOOLEAN_AND) in /etc/inc/util.inc on line 1565
- PLATFORM: pfSense-CE-memstick-ADI-2.4.2
VERSION: pfSense: 2.4.2-DEVELOPMENT amd64 Wed Oct 25 18:46:13 CDT 2017
CONT... -
10:42 PM Bug #7594 (Feedback): "vtnet: driver does not support altq" following upgrade to 2.4 (worked in pfSense 2.3)
- Fixed in the next snapshot.
-
06:34 AM Bug #7594: "vtnet: driver does not support altq" following upgrade to 2.4 (worked in pfSense 2.3)
- Hello -- yes, this hit me just now. A bit painful and surprising. For now I deactivated traffic shaping and it seems ...
-
05:42 PM Bug #7119: Changing LAGG attributes results in a panic/crash
- If it didn't actually panic it's probably that MAC address issue. That should be fixed in 2.4.2 snaps now. Please rep...
-
02:17 PM Bug #7119: Changing LAGG attributes results in a panic/crash
- > Was this new ticket opened? When I change LAGG interface settings via the pfSense GUI or a command prompt, my pfSen...
-
01:48 PM Bug #7119: Changing LAGG attributes results in a panic/crash
- Luiz Souza wrote:
> Yes, the messages does not seem related with the original bug (crash at ifconfig laggX destroy).... -
04:45 PM Bug #8010 (Feedback): import cert: "The submitted private key does not match the submitted certificate data"
- Are you absolutely certain that the certificate and key match?
That error can only happen if the public key extrac... -
04:00 PM Bug #8010 (Not a Bug): import cert: "The submitted private key does not match the submitted certificate data"
- Hello, only with 2.4.x (I testing with 2.4.1) I have this error:
The submitted private key does not match the subm... -
04:14 PM Feature #8011 (Rejected): new release notify by email
- We have a release announcement mailing list you can use for this, having the firewall send it would be redundant.
-
04:12 PM Feature #8011 (Rejected): new release notify by email
- available new release notify by email
-
03:57 PM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- Diego Henrique Pagani wrote:
> Luiz Souza wrote:
> > Fixed in the last 2.4.2 snapshot.
>
> I've been using dual-... -
07:55 AM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- Luiz Souza wrote:
> Fixed in the last 2.4.2 snapshot.
I've been using dual-wan PPP connection, and one is working... -
04:10 AM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- Zach Nedwich wrote:
> Luiz Souza wrote:
> > Fixed in the last 2.4.2 snapshot.
>
> I can confirm it is working he... -
02:30 AM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- Luiz Souza wrote:
> Fixed in the last 2.4.2 snapshot.
I can confirm it is working here, thanks for your effort. -
01:02 AM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- honestly that was not cool to change in a minor update. And to release this bug with 2.4.1 since that obviously alrea...
-
03:55 PM Bug #7940: disabling LAGG causes system reboot on 2.4
- Please, can you post the backtrace of this crash ? (or upload the crashdump text file)
I can't reproduce this cras... -
03:49 PM Bug #7928 (Resolved): LAGG interfaces lose MAC address
-
02:35 PM Bug #7928: LAGG interfaces lose MAC address
- Steve Wheeler wrote:
> Confirmed. This appears resolved in 2.4.2.a.20171024.2153
Double-confirmed :) -
08:09 AM Bug #7928: LAGG interfaces lose MAC address
- Confirmed. This appears resolved in 2.4.2.a.20171024.2153
-
03:27 PM Bug #7942 (Feedback): QinQ interfaces never show as active
- A few commits were made to address QinQ general issues.
This issue has to tested again. -
03:25 PM Bug #7973 (Feedback): VLAN Priority Set feature in firewall rules is not functioning
- This issue is fixed.
The fix will be available in tomorrow's snapshot. -
02:40 PM Bug #7978 (Feedback): IE 11 - Headers of tables almost not visible when no entries made
- Applied in changeset commit:5f6eca75e90ca2ee93715818b6b72571e9c2ef9b.
-
01:40 PM Todo #8005 (Feedback): Block direct download of .inc files
- Applied in changeset commit:b1fccd42547201f4dbfe941bcc59c8eac3456364.
-
01:08 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- Definitely seems like it's deeper than the routing daemons. I tried the same config with FRR on 2.3.x and 2.4.x and o...
-
01:08 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- Here is what I see on the lab setup. Both 2.3.4 and 2.4.0.
-
11:04 AM Bug #7969: md5 bgp sessions fail in 2.4.0
- Jim Pingle wrote:
> Terry Zink wrote:
> > Sure thing. Files attached (ip info scrubbed).
>
> Can you also get th... -
10:50 AM Bug #7969: md5 bgp sessions fail in 2.4.0
- Terry Zink wrote:
> Sure thing. Files attached (ip info scrubbed).
Can you also get the output of @setkey -D@ and... -
10:44 AM Bug #7969: md5 bgp sessions fail in 2.4.0
- Sure thing. Files attached (ip info scrubbed).
-
10:29 AM Bug #7969: md5 bgp sessions fail in 2.4.0
- Can someone, please, provide the output of 'ifconfig -v' of affected interfaces, 'kldstat' and 'netstat -sp tcp'.
-
03:02 AM Bug #7969: md5 bgp sessions fail in 2.4.0
- https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=219453
-
12:05 PM Bug #7999 (Resolved): XSS via 'hostname' parameter in diag_dns.php
- works fine now
-
11:37 AM Bug #7856 (Assigned): IPsec status does not show all connected mobile clients
- On 2.4.2 snapshots, at least with an IKEv1 PSK+Xauth connection it's still only showing one connected client at a time.
-
10:00 AM Bug #8007 (Feedback): Status -> Queues show as (loading) and don't update
- Applied in changeset commit:63a480cbf6b24d155421c1cd74f1b0409ae945de.
-
09:47 AM Bug #8007: Status -> Queues show as (loading) and don't update
- The queue names are formed using the underlying interface and this apparently breaks the javascript selection of the ...
-
03:43 AM Bug #8007 (Resolved): Status -> Queues show as (loading) and don't update
- Has the changed of VLAN interface names to use the ‘dotted’ format broken the Queues page, it was fine with 2.4.0 ?
... -
09:32 AM Bug #7995: pfSense Certificate Manager Issues Blank Certificates
- So you used the exact same input on both systems and it worked on one and failed on the other?
Please take screens... -
09:12 AM Bug #7995: pfSense Certificate Manager Issues Blank Certificates
- Hi Jim,
Thanks for taking a look at my issue.
I did a fresh demo install on VirtualBox with 2.4.1. Performed t... -
08:14 AM Bug #8009 (Duplicate): Can't upgrade from 2.4.0 to 2.4.1
- Hi,
I have 2 firewalls with different hardware and updating isn't possible from 2.4.0 (clean install) to 2.4.1.
... -
07:30 AM Bug #8008 (Duplicate): PPPoE with MTU/MRU > 1492 (i.e. 1500) broken in 2.4.0
-
06:56 AM Bug #8008: PPPoE with MTU/MRU > 1492 (i.e. 1500) broken in 2.4.0
- I believe this may actually be the problem https://redmine.pfsense.org/issues/7981
-
06:53 AM Bug #8008: PPPoE with MTU/MRU > 1492 (i.e. 1500) broken in 2.4.0
- should be v 2.4.1.
-
06:45 AM Bug #8008 (Duplicate): PPPoE with MTU/MRU > 1492 (i.e. 1500) broken in 2.4.0
- I have just upgraded to 2.4 and my pppoe interface has stopped working.
My provider requires a larger frame, which... -
06:05 AM Bug #8006 (Duplicate): 2.4.1 PPPoE client on vlan fails to initialise
- Duplicate and already fixed in 2.4.2 snapshots
-
01:34 AM Bug #8006: 2.4.1 PPPoE client on vlan fails to initialise
- Duplicate of Bug #7981.
-
01:10 AM Bug #8006: 2.4.1 PPPoE client on vlan fails to initialise
- to workaround problem i did
sed -i 's/igb0.640/igb0_640/' /conf/config.xml
and reboot.
-
12:56 AM Bug #8006 (Duplicate): 2.4.1 PPPoE client on vlan fails to initialise
- after upgrade to 2.4.1 i lost internet connectivity.
looks like after after vlan naming change something broken
eve...
10/24/2017
-
09:33 PM Todo #8005 (Resolved): Block direct download of .inc files
- If a user tries to directly access a file ending in .inc, the browser will offer to download the file. There are no ....
-
07:16 PM Bug #8003 (Feedback): IPsec weirdness with 2.4.1
- These appear to already be fixed on 2.4.2 and are only cosmetic. They may already be covered by See #6335 and #7856 b...
-
05:47 PM Bug #8003: IPsec weirdness with 2.4.1
- I can confirm the same issue. As someone already mentioned in the pfSense forum (https://forum.pfsense.org/index.php?...
-
05:33 PM Bug #8003: IPsec weirdness with 2.4.1
- Also note....On the picture...Reauth is (-) ... Other side of the tunnel shows 27933 seconds (07:45:33)
Other end of... -
04:37 PM Bug #8003 (Resolved): IPsec weirdness with 2.4.1
- Just upgraded to 2.4.1 and now my IPsec tunnels are in a funky state.
See the attached picture. 2 Tunnels are up and... -
06:39 PM Bug #8004 (New): Error notice for a deleted NAT that had a RULE or an existing NAT which is claimed to have no NAT port...
- for detailed reference please see [[https://forum.pfsense.org/index.php?topic=130090.msg716756#msg716756]]
I can s... -
05:33 PM Bug #7928 (Feedback): LAGG interfaces lose MAC address
- A fix was committed to address this issue, please wait until the next 2.4.2 snapshot is ready and let me know if it d...
-
02:58 AM Bug #7928: LAGG interfaces lose MAC address
- You can also have the problem if you have vlans attached to the lagg interface:
1) create a new vlan
2) assign th... -
05:30 PM Bug #7981 (Feedback): PPP interfaces with a VLAN parent do not work with new VLAN names
- Fixed in the last 2.4.2 snapshot.
-
03:25 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- Currently seeing this same issue. Updated to 2.4.0 from 2.3.x and my AWS Direct Connect sessions broke. AWS Support ...
-
03:10 PM Bug #6099: igmpproxy does not recognize upstream interface
- Was this fixed in 2.4.0? I updated to it but my IGMP Proxy service is not working with the same message of: ...
-
03:00 PM Bug #7998 (Feedback): XSS in widgetkey parameter of multi-instance dashboard widgets
- Applied in changeset commit:e3907730bdcc879f968d5d917ec9ac6567518e58.
-
12:52 PM Bug #7998 (Resolved): XSS in widgetkey parameter of multi-instance dashboard widgets
- Widgets that populate $widgetkey from $_REQUEST are vulnerable to XSS
Test query: /widgets/widgets/interfaces.widg... -
01:30 PM Bug #8000 (Feedback): XSS on index.php via widget sequence parameters
- Applied in changeset commit:7b973ceb6f72e22ee1b335128fb8d7f655c82879.
-
12:56 PM Bug #8000 (Resolved): XSS on index.php via widget sequence parameters
- The widget 'sequence' parameter does not perform sanity checking on the widget instance counter, leading to an XSS as...
-
01:20 PM Bug #7999 (Feedback): XSS via 'hostname' parameter in diag_dns.php
- Applied in changeset commit:43746e1b4ef6fec0e9c915495aa3926a6b97e7a3.
-
12:53 PM Bug #7999 (Resolved): XSS via 'hostname' parameter in diag_dns.php
- On diag_dns.php the 'hostname' parameter is sent back to the user without encoding in a JavaScript block, leading to ...
-
01:16 PM Bug #8002 (Not a Bug): wan not connected, no updates check
- Hello,
I just installed 2.4 and testing it with only opt1 interface: opt1 is lan without internet.
pfsense try to... -
01:00 PM Bug #8001 (Closed): Invalid FQDN in alias causes alias table to fail *silently*
- When you have a FQDN in an alias ans the FQDN does not resolve, the alias table creation will not happen and any othe...
-
12:12 PM Feature #7997: Clear screen before loading rc.initial shell menu
- This is usually a client side issue. You can reset the terminal in screen with Ctrl-A,Z (Ctrl-A, then shift-Z), a 're...
-
12:10 PM Feature #7997: Clear screen before loading rc.initial shell menu
- Forgot to include the screen-shot. Imaged attached here
!!!!!! -
12:09 PM Feature #7997 (Rejected): Clear screen before loading rc.initial shell menu
- I've encountered many instances where screen (or even putty) will output boot information on a single line that's dif...
-
11:54 AM Bug #7996: Unnecessary link tag in login page
- I'm talking about the main login page.
-
11:50 AM Bug #7996 (Resolved): Unnecessary link tag in login page
- Should the <a> & </a> be in the html?
It gives the impression that something will happen if you click on *Login to... -
10:59 AM pfSense Packages Bug #7661: pfBlockerNG doesn't make a rule for Antarctica
- pfBlockerNG is a package. Packages exist independent of versions, they have no target unless there is something versi...
-
10:47 AM pfSense Packages Bug #7661: pfBlockerNG doesn't make a rule for Antarctica
- Still a problem in 2.4
Can't a target version be set so it might get looked at?
-
10:20 AM Bug #7995 (Feedback): pfSense Certificate Manager Issues Blank Certificates
- I can't make this happen on 2.4.0 or 2.4.1 here, I create CA and cert entries multiple times per day when testing thi...
-
09:59 AM Bug #7995 (Closed): pfSense Certificate Manager Issues Blank Certificates
- Strange issue I'm having with the certificate manager in pfSense 2.4.0 release. I can create a certificate authroity...
-
09:51 AM pfSense Packages Bug #7965: freeradius 3 with MySQL
- this problem prevents the upgrade of servers to 2.4
-
09:30 AM Bug #7856 (Feedback): IPsec status does not show all connected mobile clients
- Applied in changeset commit:130f3c9266e0b8c626aa6e8991467bb417ff8fd2.
-
09:02 AM Bug #7978: IE 11 - Headers of tables almost not visible when no entries made
- Assigned to sjones (Has access to IE11)
-
08:23 AM Bug #7994 (Resolved): system_certmanager.php: Unable to create a wildcard SAN
- Trying to create a certificate or CSR with a wildcard in the SAN yields an error. When used as a common name, it is n...
-
08:07 AM Feature #7823 (Feedback): Pull request: Add support for dynamic DNS provider ClouDNS
- PR merged as requested. Thanks!
-
08:02 AM Bug #7980 (Not a Bug): Support widget is displayed in Times New Roman
- An administrator enters HTML formatted text into ProdTrack. That text is displayed exactly as entered on the widget.
... -
07:36 AM pfSense Packages Bug #7993 (Closed): zabbix 3.4 agent
- Hi
The Zabbix agent 3.4.1 won't install on pfsense 2.3.4-RELEASE-p1. It returns:
pfSense-pkg-zabbix-agent34 inst...
10/23/2017
-
09:25 PM Bug #7992: SNMP service causes constant disk activity
- Host Resources appears to be the culprit, and I have an empty CD drive like the related bug.
-
09:14 PM Bug #7992: SNMP service causes constant disk activity
- I'll do some tests to see if it's fixed with #6882 fix.
FYI, the CPU usage was low and swap was 0%. All sys info ... -
09:07 PM Bug #7992 (Duplicate): SNMP service causes constant disk activity
- Most likely a duplicate of #6882 just a different symptom. Give 2.4.1 a try.
-
08:22 PM Bug #7992 (Duplicate): SNMP service causes constant disk activity
- I've only noticed this since upgrading to 2.4
With the SNMP service enabled, but not being used, the disk is const... -
08:17 PM Bug #7209: Something is seriously wrong with firewall aliases
- I think I'm seeing the same problem.
I had an alias that wouldn't update. It is an alias made up of a list of oth... -
05:49 PM Bug #7969: md5 bgp sessions fail in 2.4.0
- I was able to reproduce this on pfsense 2.3.4 vs 2.4.0 w/ fresh installs, running in virtual box w/ an Arista vEOS VM...
-
02:51 PM pfSense Packages Bug #7987: Haproxy Widget: Missing Actions Button
- Thanks Jim, your hint was right! I'm not shure how this could happen (maybe through an update ...) but the admin user...
-
02:10 PM pfSense Packages Bug #7987: Haproxy Widget: Missing Actions Button
- Please discuss the problem on the forum. You probably have unintentionally made a change to your users or groups whic...
-
02:06 PM pfSense Packages Bug #7987: Haproxy Widget: Missing Actions Button
- I'm working as admin in the pfsens gui - that account should have enough privileges, or?
-
07:35 AM pfSense Packages Bug #7987 (Not a Bug): Haproxy Widget: Missing Actions Button
- If the actions column is missing, your user does not have access to "WebCfg - Services: HAProxy package" so it does n...
-
04:02 AM pfSense Packages Bug #7987: Haproxy Widget: Missing Actions Button
- Here is my haproxy configuration:...
-
03:06 AM pfSense Packages Bug #7987: Haproxy Widget: Missing Actions Button
- There is no information to debug your issue, neither here, not on the forums. A cut off screenshot doesn't really cut...
-
02:41 AM pfSense Packages Bug #7987 (Not a Bug): Haproxy Widget: Missing Actions Button
- Hi,
already opened a thread in the pfsense forum some weeks ago:
https://forum.pfsense.org/index.php?topic=1374... -
01:44 PM Bug #7991 (Closed): Bunch of webGUI fixes for 2.3.5
- Before this goes to waste since I cannot see it fixed anywhere... Also see https://forum.pfsense.org/index.php?topic=...
-
01:38 PM Bug #7307: ZFS installer - shuts down instead of rebooting
- This appears to only happen when installing ZFS to eMMC on SG boxes using the ADI image. Installing to SSD reboots no...
-
01:13 PM Bug #6335: Status > IPsec shows both connected and disconnected with Split Connections enabled
- Assigning to sjones since he's been working on other IPsec status issues
-
01:04 PM Bug #6335: Status > IPsec shows both connected and disconnected with Split Connections enabled
- This is apparently also happening with IKEv2. If it turns out to be too much trouble, bump back to 2.4.3
-
01:10 PM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- It wasn't over 1000 VLANs, it was VLAN IDs >1000 (four digit VLAN ID numbers). So if someone used VLAN 1001, 1002, as...
-
01:00 PM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- Jim Pingle wrote:
> NIC drivers with 6 letter names, like mvneta, would break with VLANs >=1000
The ARM thing? Pe... -
12:45 PM Bug #7981 (Confirmed): PPP interfaces with a VLAN parent do not work with new VLAN names
-
12:42 PM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- The VLAN name change was done because NIC drivers with 6 letter names, like mvneta, would break with VLANs >=1000, wh...
-
12:37 PM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- This doesn't work and frankly this is an absolutely horrible change to dump on people in between maintenance versions...
-
08:39 AM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- Having the exact same issue, my ISP provides internet over PPPoE on VLAN 6, worked perfectly until I upgraded to 2.4....
-
03:48 AM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- Renato Botelho wrote:
> Can you please try again when a new snapshot is available? mpd-5.8_3 contains a fix for that... -
12:36 PM Bug #7714 (Resolved): NTP Widget Time Display
- This has already been fixed on 2.4.1
-
12:36 PM pfSense Packages Bug #6748 (Resolved): rrd_fetch_json.php returns html when user is unauthorized (causes "Error: SyntaxError: Unexpected token <")
- This has already been fixed on 2.4.1
-
12:24 PM Bug #7856: IPsec status does not show all connected mobile clients
- Looks like there are a couple systems here I have which don't want to print child SAs with this code in place again. ...
-
11:33 AM Feature #946: Allow aliases to be used to define IPsec phase 2 networks
- Has been over 7 year now, it will be good to have that option?
Is there an update on this? -
08:54 AM Bug #7928: LAGG interfaces lose MAC address
- Have the same issue in my configuration.
-
08:24 AM Bug #7989 (Confirmed): Cannot update Nano from 2.3.4 to 2.3X snapshots
- The difference appears to be in which version of pfSense-repo and pfSense-upgrade are on the box. Depending on the st...
-
07:07 AM Bug #7989: Cannot update Nano from 2.3.4 to 2.3X snapshots
- You have some weird system. It definitely is a choice here, and for others.
https://forum.pfsense.org/index.php?to... -
07:06 AM Bug #7989: Cannot update Nano from 2.3.4 to 2.3X snapshots
- Security/Errata is not a choice there. I have Stable, Development or Next Major Version.
Next major version obvio... -
06:51 AM Bug #7989: Cannot update Nano from 2.3.4 to 2.3X snapshots
- You need to select the Security/Errata only branch in update settings.
-
06:35 AM Bug #7989 (Resolved): Cannot update Nano from 2.3.4 to 2.3X snapshots
- Testing using 2.3.4_1 Nano 64bit CE and trying to update to a 2.3.5 snapshot.
I can see the snapshot reported as a... -
07:24 AM Bug #7990 (Resolved): SyntaxError: JSON.parse: unexpected character at line 1 column 1 of the JSON data
- Yes, this should already be fixed by commit:63f686bde3e95eed8d2223d00e5f6403a5ef2d4c
-
07:07 AM Bug #7990: SyntaxError: JSON.parse: unexpected character at line 1 column 1 of the JSON data
- This was corrected in a recent update. The is in current snapshots and will and will appear in 2.4.1 in the near fut...
-
06:47 AM Bug #7990 (Resolved): SyntaxError: JSON.parse: unexpected character at line 1 column 1 of the JSON data
- I have some traffic graphs on my dashboard and they timeout after some time with the error below:
SyntaxError: JSO... -
07:18 AM Feature #4769: IPv6 support in the Traffic Shaper Wizard
- Is this still accurate? This floating "match" rules are all set for IPv4.
-
07:08 AM Bug #7898: PFsense 2.4 RC 9/28/17 update - Traffic Shaper HFSC Priority field missing
- Okay i tried using CBQ and an alternative to nested Queues and the Queues do not properly calculate bandwidth see bug...
-
05:34 AM Feature #7988 (New): Compact Theme based on Compact-RED with the default theme colors.
- Proposal of new theme compact.
-
03:35 AM Bug #7970: Used Maximum Ram and freeze in new Version
- Hello everyone, my problem may have been resolved.
I had a snapshot before installing the vmware tools package. Afte... -
02:50 AM Bug #7973: VLAN Priority Set feature in firewall rules is not functioning
- Jim Pingle wrote:
> The "VLAN Prio Set" option on firewall rules is supposed to alter the VLAN priority flag in 802....
10/22/2017
-
08:08 PM Feature #7985: Could support Realtek usb wifi on pfsense feature?
- Thank for your reply.
I hope it will add in the feature. -
11:31 AM Feature #7985 (Needs Patch): Could support Realtek usb wifi on pfsense feature?
- If the driver makes it into FreeBSD, we can include the module, but it has to be accepted in FreeBSD first. I don't s...
-
06:52 AM Feature #7985 (Needs Patch): Could support Realtek usb wifi on pfsense feature?
- I use DLINK DWA171A1 wifi usb card.It's use RTL8821AU chipset.But pfsense can't load this driver.
I use usbconfig.I ... -
07:31 PM Bug #7986 (New): WLAN card no longer properly initialized under 2.4.0
- I have installed pfSense on an APU2C4 (bios 4.0.7) with a 32 GiB mSATA and a Compex WLE200NX (Atheros AR9280).
I d... -
05:19 PM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- S
-
11:40 AM Bug #1613 (Resolved): OpenVPN LDAP authentication should not modify mail attribute as login.
-
03:28 AM Bug #1613: OpenVPN LDAP authentication should not modify mail attribute as login.
- This has been configurable for ~4 years; fixed.
https://github.com/pfsense/pfsense/commit/a5cd1c5a4286062b84caf32d... -
11:39 AM Bug #2382 (Resolved): RADIUS attribute Service-Type should not be sent with accounting packets
-
03:46 AM Bug #2382: RADIUS attribute Service-Type should not be sent with accounting packets
- Been removed ages ago, like... 2.1.x
-
11:39 AM Bug #3472 (Resolved): "Diagnostics -> Table -> [large table]" won't show table contents
-
04:25 AM Bug #3472: "Diagnostics -> Table -> [large table]" won't show table contents
- Looks just fine here with ~435K table and 2.4.x
!https://image.prntscr.com/image/d98Fp3uJSvyUYPemD1doIA.png!
(O... -
11:38 AM pfSense Packages Bug #6129 (Resolved): zabbix agent/proxy 2.4 not ported to pfSense 2.3
-
04:59 AM pfSense Packages Bug #6129: zabbix agent/proxy 2.4 not ported to pfSense 2.3
- Fixed with https://github.com/pfsense/FreeBSD-ports/pull/434
-
11:37 AM Bug #7946: 2.4 Package Manager: Does Not List Installed Packages which have been removed from the repository.
- I closed that one out instead, since this one is already setup for the right target.
-
05:02 AM Bug #7946: 2.4 Package Manager: Does Not List Installed Packages which have been removed from the repository.
- Apparently this has already been reported in Bug #6241
-
11:34 AM Bug #6241 (Duplicate): Not all installed packages are shown in PFSense 2.3
- Replaced by #7946
-
11:24 AM Feature #6897 (Duplicate): Use a dedicated favicon for the webConfigurator (one that differs from *.pfsense.org)
- Duplicate of #7415
-
10:58 AM Feature #6897: Use a dedicated favicon for the webConfigurator (one that differs from *.pfsense.org)
- Already done.
https://redmine.pfsense.org/issues/7415
https://github.com/pfsense/pfsense/commit/e7d63f568c8e3982e... -
11:23 AM Feature #6851 (Resolved): System Information Widget
-
11:05 AM Feature #6851: System Information Widget
- Platform has been gone for over a year in 2.4
https://github.com/pfsense/pfsense/commit/3f4a0df92c1fbb72028e5aa1a6... -
10:46 AM Feature #7688: AutoConfigBackup - Info Icon - username only
- I put this to https://github.com/pfsense/FreeBSD-ports/pull/441 (the infoblock seemed like a serious overkill for the...
-
08:00 AM pfSense Packages Bug #6252: Can't access darkstat if webgui is on HTTPS.
- This issue could be be worked around once Bug #6650 is fixed. See https://github.com/pfsense/pfsense/pull/3856 for te...
-
07:30 AM Bug #6650: Option needed to disable HSTS
- Got fed up with this... People who are interested in having HSTS optional kindly test this: https://github.com/pfsens...
-
05:04 AM pfSense Packages Todo #7411: LADVD Devices not wide enough
- Sorry about the original post.
I've attached a few screenshots, 1 from pfSense and the other from Wireshark.
Od... -
12:20 AM Bug #7984: restarting syslogd service makes sshlockout_pf process orphans
- https://github.com/pfsense/pfsense/pull/3855
10/21/2017
-
06:11 PM Bug #7984: restarting syslogd service makes sshlockout_pf process orphans
- b.t.w. Using 2.4.1-RC (amd64)
built on Fri Oct 20 05:49:00 CDT 2017
FreeBSD 11.1-RELEASE-p2 -
06:10 PM Bug #7984 (Resolved): restarting syslogd service makes sshlockout_pf process orphans
- restarting syslogd service makes sshlockout_pf process orphans
When syslogd logs something from auth.info;authpriv... -
01:54 PM Bug #7979: Error setting limiter over 2GB/s
- If you print before the bandwidth too large message you get this....
-
01:47 PM Bug #7979: Error setting limiter over 2GB/s
- ...
-
01:30 PM Bug #7979: Error setting limiter over 2GB/s
- ...
-
11:51 AM pfSense Packages Bug #7836 (Resolved): FreeRADIUS - certain chars in clients shared secret result in broken configuration
-
11:18 AM pfSense Packages Bug #7836: FreeRADIUS - certain chars in clients shared secret result in broken configuration
- Merged.
-
11:51 AM pfSense Packages Bug #6563 (Resolved): Squid still accepts sha1 certificates
-
11:03 AM pfSense Packages Bug #6563: Squid still accepts sha1 certificates
- Merged and fixed.
-
11:41 AM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- Can you please try again when a new snapshot is available? mpd-5.8_3 contains a fix for that
-
11:40 AM Bug #7981 (Feedback): PPP interfaces with a VLAN parent do not work with new VLAN names
- Applied in changeset commit:5b460fef11eb736e99d0df21ff3b53e303745d06.
-
11:38 AM pfSense Packages Bug #7670 (Not a Bug): Bind : Serial for slave zone is missing in IHM
-
11:35 AM pfSense Packages Bug #7670: Bind : Serial for slave zone is missing in IHM
- yes, you are right. you can close it.
-
11:23 AM pfSense Packages Bug #7670: Bind : Serial for slave zone is missing in IHM
- As noted above, this is by design.
-
11:32 AM Bug #7969: md5 bgp sessions fail in 2.4.0
- Do you have "BSD Crypto Device" selected under System > Advanced, Misc tab, for Cryptographic Hardware? If not, selec...
-
11:13 AM pfSense Packages Todo #7411: LADVD Devices not wide enough
- Cannot see anything truncated here with current package in 2.4.x, plus the unformatted mess posted in the bug descrip...
-
08:43 AM pfSense Packages Bug #7983 (Rejected): DHCP on startup
- Please keep support questions on the forum, mailing list, or reddit.
-
02:27 AM pfSense Packages Bug #7983 (Rejected): DHCP on startup
- Hello
I have a APU2C2 Router / Firewall. 3 x Gigabit LAN, Quad Core CPU, 16 GB SSD, 2 GB RAM from Teklager in swe...
10/20/2017
-
09:46 PM Bug #7619 (Closed): Enable Enhanced networking on AWS
- fixed in 2.4
-
09:26 PM Bug #7982 (Duplicate): PPP over VLAN fails
- Duplicate of #7981
-
07:36 PM Bug #7982 (Duplicate): PPP over VLAN fails
- Upgraded to development snapshot 2.4.2.a.20171020.0950 and PPPoE over a VLAN is failing...
-
09:25 PM Bug #7980: Support widget is displayed in Times New Roman
- please have the correct parties educate themselves about fonts.
-
12:26 PM Bug #7980 (Not a Bug): Support widget is displayed in Times New Roman
- The support widget doesn't use the same font as the rest of WebGUI does. I've notice it happen on Windows boxes mostl...
-
08:25 PM Feature #7882: Seperator feature in DHCP Static mapping for this feature
- Assigned to Beaver, so he can do the work (-should be trivial-) or re-assign to Pingle or Jones.
-
08:24 PM Feature #6620: CoDel, FQ-CoDel, PIE and FQ-PIE AQMs
Code is in 11.1 / 2.4.
https://svnweb.freebsd.org/base?view=revision&revision=300779
GUI needs adaptation.
...-
08:13 PM Bug #7979: Error setting limiter over 2GB/s
- That FreeBSD-net posting is 3 years old.
Current code looks better (function: read_bandwidth())
https://svnweb.fr... -
09:16 AM Bug #7979: Error setting limiter over 2GB/s
- signed 32bit int max**
-
09:15 AM Bug #7979 (Resolved): Error setting limiter over 2GB/s
- Setting a bandwidth limiter over unsigned 32bit int max bps seems to fail.
Found initially when I tried to create ... -
07:32 PM Bug #7981: PPP interfaces with a VLAN parent do not work with new VLAN names
- I am having the same issue when trying to dial PPPoE through a VLAN with the new dotted naming convention:...
-
02:03 PM Bug #7981 (Confirmed): PPP interfaces with a VLAN parent do not work with new VLAN names
- Confirmed
-
01:36 PM Bug #7981 (Resolved): PPP interfaces with a VLAN parent do not work with new VLAN names
- Hello,
I Upgraded from 2.4.0 to 2.4.1-RC yesterday, and after the upgrade, the PPPOE interface didn't picked my ... -
11:52 AM Bug #7733: User Manager deletes non-selected users
- I can't reproduce this as stated, the second delete attempt actually does nothing, rather than deleting anything as t...
-
11:49 AM Bug #7789 (Resolved): GIF interface page does not validate IPv6 addresses
-
09:59 AM Bug #6860 (Resolved): Monitoring (RRD) graphs return "unknown" step value
-
09:58 AM Bug #6860 (Closed): Monitoring (RRD) graphs return "unknown" step value
- I can't seem to break it now, but I couldn't reproduce the problem before, either, so it's a tough call on this one. ...
-
09:47 AM Bug #7976 (Resolved): Config History not working when using (dutch) translation
- Works with English and Dutch now
-
06:00 AM Bug #7976 (Feedback): Config History not working when using (dutch) translation
- Applied in changeset commit:9006d84f215c8ea54ecc4bda3296e12aa199824e.
-
05:18 AM Bug #7976 (Resolved): Config History not working when using (dutch) translation
- When using a localised version of the pfSense GUI (Dutch in my case), the diff function between different config vers...
-
09:42 AM Bug #7949 (Resolved): DHCP UEFI file name under pools are ignored
- This looks good
-
09:26 AM pfSense Packages Feature #7824: [acme / Let's Encrypt] Bump to the latest acme.sh package
- Thanks. The request is submitted in github (https://github.com/pfsense/FreeBSD-ports/pull/436)
-
09:06 AM pfSense Packages Feature #7824: [acme / Let's Encrypt] Bump to the latest acme.sh package
- Once the 2.4.x release process winds down I plan on making a pass through the ACME package and adding more providers,...
-
09:02 AM Bug #7942 (Confirmed): QinQ interfaces never show as active
- Apparently this still has some issues:
> Azamat: Created QinQ interface: OPT2 Interface (opt2, igb1_201_666) on SG... -
07:55 AM Bug #7978 (Resolved): IE 11 - Headers of tables almost not visible when no entries made
- I noticed several times in the pfSense GUI that on pages where there no entries yet, the headers of the tables are no...
-
07:41 AM Bug #7977 (New): English text shown in stead of translated text (Routing - Gateway groups - edit)
- In the gateway groups edit page (https://192.168.1.1/system_gateway_groups_edit.php)the text explaining the Link Prio...
-
05:21 AM Bug #6396: 504 gateway time out nginx
- And SSH console freezes after admin login. Firewall works, people can access Internet, but reboot is needed to recove...
-
05:06 AM Bug #6396: 504 gateway time out nginx
- 502 Bad Gateway happened again.
10/19/2017
-
08:09 PM Bug #7975: ESXi 6.5 UEFI boot stops at framebuffer info
- I tested booting other current freebsd and pfsense ISOs.
Both pfsense 2.4.0 and freebsd 11.1 iso did not stop at the... -
07:54 PM Bug #7975 (Resolved): ESXi 6.5 UEFI boot stops at framebuffer info
- Booting the pfSense-CE-2.4.1-RC-amd64-20171019-0852.iso on ESXi 6.5 using EFI bios, the boot stops after showing the ...
-
07:49 PM Bug #7748 (Resolved): VLAN Priority
-
08:58 AM Bug #7748: VLAN Priority
- 2.4.1.a.20171019.0413 seems to have resolved the issue on my end. Thanks everyone.
-
08:09 AM Bug #7748: VLAN Priority
- Corey Doss wrote:
> No luck for me (Google Fiber) on snapshot 2.4.1.a.20171018.1713. Maybe the next available buil... -
07:28 PM Feature #7968 (Resolved): Display NDI on shell menu
-
04:20 AM Feature #7968 (Feedback): Display NDI on shell menu
- Applied in changeset commit:93a3b29649ca500aa17450213d69974e723e6091.
-
04:03 PM pfSense Packages Feature #7824: [acme / Let's Encrypt] Bump to the latest acme.sh package
- I just migrated to pfSense 2.4.0 and the latest acme package 0.1.20. That version bumped to a newer acme.sh version, ...
-
03:19 PM Bug #7966: Live traffic graphs appear to have sampling errors
- Chris Linstruth wrote:
> The Status > Traffic Graphs function and the Traffic Graph widget appear to have a regressi... -
03:07 PM Bug #6318: IPsec dashboard widget causes GUI failure
- There have been some IPsec widget fixes here which may be relevant, since it is so difficult to reproduce, it is diff...
-
03:04 PM pfSense Packages Bug #7923 (Resolved): 502 Bad Gateway and unresponsive OS with 2.4
- A new version of pfBlockerNG has been released containing a fix for this problem.
-
03:03 PM Bug #6406: Web process becomes unresponsive producing 502 Bad Gateway nginx
- There have been some fixes here in the IPsec widget and pfBlocker which may help - moving this forward in case there ...
-
01:00 PM Feature #7974 (New): ZFS RAID Monitor Not available
- pfsense currently has a widget that allow you to see the status of a GEOM Mirror after setting up a GEOM RAID. It wo...
-
11:50 AM Bug #7918: Nightly error reloading rules
- Still present on 2.4.0.
edit: and 2.4.1
edit: and 2.4.2 -
08:11 AM Bug #7927 (Closed): (filterdns), uid 0: exited on signal 11 (core dumped)
-
07:54 AM Bug #7973 (Resolved): VLAN Priority Set feature in firewall rules is not functioning
- The "VLAN Prio Set" option on firewall rules is supposed to alter the VLAN priority flag in 802.1q packets as they le...
-
05:08 AM Bug #7970 (Duplicate): Used Maximum Ram and freeze in new Version
- If you upgrade to 2.4.1 snapshot and keep seeing bsnmpd consuming high CPU please add a comment in #6882 so it can be...
-
02:36 AM Bug #7970: Used Maximum Ram and freeze in new Version
- Hey OP, I was reading into this further and found Bug #6882 https://redmine.pfsense.org/issues/6882 you might find in...
-
02:25 AM Bug #7970: Used Maximum Ram and freeze in new Version
- Sorry for the update spam, before I rebooted it this time I sent an NMI from ESXi and it generated a textdump in /var...
-
02:19 AM Bug #7970: Used Maximum Ram and freeze in new Version
- Hello,
I came to this tracker to look for similar reports to what I am experiencing and this is very similar.
I... -
02:07 AM Bug #7970 (Duplicate): Used Maximum Ram and freeze in new Version
- hi
i am upgrade my PFsense to newer Version . After do it pfsense used all memory (4GB). i am increase to 8GB but to... -
05:04 AM Bug #7972 (Resolved): Captive portals do not synchronize voucher data in both directions
- Hi,
I have a master and slave Captive portals. They synchronized well the data in both directions and immediately ... -
04:56 AM Feature #7971 (New): Allow import, export and synchronization of MACs under Captive Portal service
- Hi,
Would it be possible to implement possibility to allow import/export (e.g. in CSV format) of allowed/disallowe... -
03:19 AM Bug #7426: UDP packet drops
- *An important note*
The issue can be found on:
* sg1k for ordinary data transmission
* 3100 for VPN data transmi... -
02:45 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
- During investigation 27001 found some important things:
# Looks like the issue affects 100BaseTX
# Changing from au... -
01:30 AM Bug #7925: VT race condition panic at boot on ESXi 6.5.0U1 and FreeBSD 11.1 base
- Jim Pingle wrote:
> For reference, at least one person appears to have encountered it on ESX 5.5 as well, though the...
10/18/2017
-
10:09 PM Bug #7969 (Resolved): md5 bgp sessions fail in 2.4.0
- Upgraded to 2.4.0 from 2.3.4 and my bgp sessions which were secured via TCP md5 configurations in openbgpd & the new ...
-
08:50 PM Bug #7748: VLAN Priority
- Luiz Souza wrote:
> Found the regression. Please test the next snapshot.
No luck for me (Google Fiber) on snapsh... -
07:34 PM Bug #7748 (Feedback): VLAN Priority
- Found the regression. Please test the next snapshot.
-
07:06 PM Bug #7927: (filterdns), uid 0: exited on signal 11 (core dumped)
- As of 2.4.1.a.20171018.1438, I am not seeing further reports of a core dump by filterdns.
-
04:37 PM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
- So I just tried again... this must be the most braindead thing ever....
-
03:29 PM Feature #7968 (Resolved): Display NDI on shell menu
- The NDI is displayed in the webGUI but not the shell menu. This forces customers to access the webGUI before they can...
-
02:18 PM Bug #7967 (Not a Bug): LDAP User Naming Attribuite override isn't used in pfSense 2.4
- The LDAP user naming attribute is read from the configuration and CN is not hardcoded, so it can only be from somethi...
-
02:14 PM Bug #7967: LDAP User Naming Attribuite override isn't used in pfSense 2.4
- I have been unable to duplicate this. A configured LDAP server here uses uid and the query is properly-filtered with ...
-
01:33 PM Bug #7967 (Not a Bug): LDAP User Naming Attribuite override isn't used in pfSense 2.4
- Version 2.4 Authentication Servers page, User Naming Attribute is set to something other than CN. In my case the LDA...
-
02:09 PM Bug #7925 (Resolved): VT race condition panic at boot on ESXi 6.5.0U1 and FreeBSD 11.1 base
- I ran some more tests:
kern.vty=sc ADDED to /boot/loader.conf.local: 72 reboots (6 VMs, 12 reboots each), no crash... -
11:50 AM Bug #7925: VT race condition panic at boot on ESXi 6.5.0U1 and FreeBSD 11.1 base
- To rule that out we should setup the kern.vty=sc workaround and continue testing for a bit to see if it still crashes...
-
11:36 AM Bug #7925: VT race condition panic at boot on ESXi 6.5.0U1 and FreeBSD 11.1 base
- Ok, I see now the two different crashes on the OP post.
While I take back part of what I said before, It still doe... -
11:32 AM Bug #7925: VT race condition panic at boot on ESXi 6.5.0U1 and FreeBSD 11.1 base
- The recent crashes seems unrelated to the original crash in VT.
They actually seem to happen quite late in the ker... -
09:23 AM Bug #7925 (Assigned): VT race condition panic at boot on ESXi 6.5.0U1 and FreeBSD 11.1 base
- Ditto, I see a similar crash. I had to reboot 5 VMs a few times before one of them failed.
!Selection_709.png! -
03:38 AM Bug #7925: VT race condition panic at boot on ESXi 6.5.0U1 and FreeBSD 11.1 base
- Tried on 2 different esxi hosts latest 2.4.1 ova rebooted 20 times each VM. Once got error for 2nd VM.
!vm_bug.png... -
12:24 PM pfSense Packages Feature #7657: OpenBGPD local-as feature in neighbors context
- +1 for updating the openbgpd package so that it can support local-as.
Current package version will give me a syn... -
12:04 PM pfSense Packages Bug #7954: Package upgrade/reinstall gets stuck on deinstall if the package-provided service is not running
- Sure, that should work fine
-
12:01 PM pfSense Packages Bug #7954: Package upgrade/reinstall gets stuck on deinstall if the package-provided service is not running
- Jim Pingle wrote:
> Looks like one viable method might be to echo with @&@, capture the pid of that process, sleep f... -
11:39 AM pfSense Packages Bug #7954: Package upgrade/reinstall gets stuck on deinstall if the package-provided service is not running
- Well yes I think there's something broken about c-icap in general, the named pipe (fifo) should vanish once the servi...
-
11:30 AM pfSense Packages Bug #7954: Package upgrade/reinstall gets stuck on deinstall if the package-provided service is not running
- Looks like one viable method might be to echo with @&@, capture the pid of that process, sleep for a moment, and then...
-
11:20 AM pfSense Packages Bug #7954 (Confirmed): Package upgrade/reinstall gets stuck on deinstall if the package-provided service is not running
- OK, that does make a difference. If there are stale PID files it seems to get stuck because "/bin/sh /usr/local/etc/r...
-
10:15 AM pfSense Packages Bug #7954: Package upgrade/reinstall gets stuck on deinstall if the package-provided service is not running
- Jim Pingle wrote:
> I setup squid and enabled clamav, so I have squid, clamav, and c-icap services running. I manual... -
09:37 AM pfSense Packages Bug #7954 (Feedback): Package upgrade/reinstall gets stuck on deinstall if the package-provided service is not running
- I can't seem to replicate this as-is but there could be something I haven't quite triggered yet.
I setup squid and... -
10:00 AM Bug #7953 (Resolved): XMLRPC produces an error when attempting to sync an empty section
- Works now, the last item delete gets synchronized as expected.
-
08:20 AM Bug #7953 (Feedback): XMLRPC produces an error when attempting to sync an empty section
- Applied in changeset commit:2a781563c6acf925a45e74d6c2f72d0e9b4173f9.
-
09:42 AM Bug #7868 (Resolved): bsmtpd hostres feature should not be active when running on esx/proxmox/virtualbox
- After the fix for #6882 this is no longer necessary.
-
09:40 AM Bug #7960 (Resolved): Wirelss WAN can get caught in a configure loop
- This looks good now. After upgrading to the latest snap, I can have a wireless WAN assigned and working, and also edi...
-
09:10 AM Bug #6882 (Resolved): bsnmpd uses all available CPU with hostres module active in some cases
- After importing the FreeBSD patch, this appears to be OK. CPU usage is back to normal, no sign of a memory leak, and ...
-
07:53 AM Bug #7964: Restart openvpn on gateway switching
- perhaps this would help: --remap-usr1 SIGHUP
I don't know how you handle openvpn exactly. Have you send SIGUSR1? At ... -
07:09 AM pfSense Packages Bug #7963 (Not a Bug): Unable to upgrade pfSense v2.3.4-RELEASE to v2.3.4-RELEASE-p1 via web admin site. Clicking 'y' on console continues upgrade successfully.
-
04:11 AM pfSense Packages Bug #7965: freeradius 3 with MySQL
- hmmm.... will this commit fall into the repository? or nothing?
how can I help? -
04:07 AM pfSense Packages Bug #7965: freeradius 3 with MySQL
- There is nothing for testing (beyond reverting that commit). The linked commit is potentially a *source* of the issue...
-
03:37 AM pfSense Packages Bug #7965: freeradius 3 with MySQL
- where its apply for testing?
-
03:03 AM pfSense Packages Bug #7965: freeradius 3 with MySQL
- This commit: https://github.com/pfsense/FreeBSD-ports/commit/eafa6ca5d0b89a3e6a9110dfea8e2a89fe24d245
- The hunk s... -
03:17 AM Bug #7966 (Resolved): Live traffic graphs appear to have sampling errors
- The Status > Traffic Graphs function and the Traffic Graph widget appear to have a regression (#7515 ? ).
The samp... -
02:29 AM Bug #7426: UDP packet drops
- The reason of UDP drop is packet processing slowdown which happens on ARM devices (1k, 3100). I observed ~2-7% for di...
10/17/2017
-
11:58 PM pfSense Packages Bug #7965: freeradius 3 with MySQL
- i use freeradius for Plain MAC Authentication
-
11:54 PM pfSense Packages Bug #7965 (Resolved): freeradius 3 with MySQL
- sorry, I will duplicate issue 7947, BUT i think this is a 100% bug. Please, let's take it seriously.
I'm upgrading... -
09:37 PM Bug #7964: Restart openvpn on gateway switching
- After the PPPoE interface is up, the openvpn clients still use Tier2 and didn't fall back to Tier1.
-
08:32 PM Bug #7964 (New): Restart openvpn on gateway switching
- I have 2 openvpn clients with GW Group configured.
While Tier1 interface (PPPoE) was going down the two openvpn cras... -
06:15 PM pfSense Packages Bug #7963: Unable to upgrade pfSense v2.3.4-RELEASE to v2.3.4-RELEASE-p1 via web admin site. Clicking 'y' on console continues upgrade successfully.
- Steve Tanti wrote:
> Jim Pingle wrote:
> > Be sure to go to System > Update, Update Settings tab. Set the branch to... -
05:57 PM pfSense Packages Bug #7963: Unable to upgrade pfSense v2.3.4-RELEASE to v2.3.4-RELEASE-p1 via web admin site. Clicking 'y' on console continues upgrade successfully.
- Jim Pingle wrote:
> Be sure to go to System > Update, Update Settings tab. Set the branch to Security/Errata Only an... -
05:43 PM pfSense Packages Bug #7963 (Feedback): Unable to upgrade pfSense v2.3.4-RELEASE to v2.3.4-RELEASE-p1 via web admin site. Clicking 'y' on console continues upgrade successfully.
- Be sure to go to System > Update, Update Settings tab. Set the branch to Security/Errata Only and then try again.
-
05:40 PM pfSense Packages Bug #7963 (Not a Bug): Unable to upgrade pfSense v2.3.4-RELEASE to v2.3.4-RELEASE-p1 via web admin site. Clicking 'y' on console continues upgrade successfully.
- When I trigger an upgrade via the web console it hangs stating:
>>> Downloading upgrade packages...
I left it f... -
03:37 PM Bug #7951 (Resolved): WPA2 issue (KRACK)
- Looks good as far as I can see, with hostapd and wpa_supplicant are updated and running as expected.
-
12:27 PM Bug #7951: WPA2 issue (KRACK)
- I've tested with ath0 and run0 as AP and BSS mode, both run the appropriate binaries from ports and appear to be OK.
-
07:08 AM Bug #7951 (Feedback): WPA2 issue (KRACK)
- Start using hostapd / wpa_supplicant from ports on 2.4.1 and 2.3.5. Next round of snapshots should be OK
-
03:03 PM Bug #7953 (Assigned): XMLRPC produces an error when attempting to sync an empty section
- The XMLRPC error is gone but the affected section does not sync when empty.
You can never delete the last virtual ... -
01:19 PM Bug #7953 (Feedback): XMLRPC produces an error when attempting to sync an empty section
- Fix pushed
-
02:19 PM Bug #6954 (Resolved): New installer has no "Quick/Easy" installation option
- The Auto (UFS) behavior with a single drive works well
-
07:28 AM Bug #6954 (Feedback): New installer has no "Quick/Easy" installation option
- Added in 2.4.0 installer already. When Auto (UFS) is selected, if there is only one available disk it's automatically...
-
01:55 PM Feature #7962: Support for Intel 553 network card
- Hi,
could also be easier as this here:
https://lwn.net/Articles/735126/ or in more detail this: https://revie... -
01:16 PM Feature #7962 (Resolved): Support for Intel 553 network card
- Hi,
just tried to get a Intel 553 network card running in pfsense 2.4, but it does not work.
Issue https://red... -
12:30 PM Bug #7868: bsmtpd hostres feature should not be active when running on esx/proxmox/virtualbox
- It looks good with a gitsync, but needs another test once it's in snapshots.
-
07:30 AM Bug #7868 (Feedback): bsmtpd hostres feature should not be active when running on esx/proxmox/virtualbox
- Fix committed to FreeBSD-src and exceptions removed from GUI
-
12:29 PM Bug #7921 (Resolved): Reset All States on WAN IP Change does not stay unchecked when disabled in GUI
- The GUI control properly reflects the state of the option in the configuration, and changes are saved properly.
-
12:26 PM Bug #7939 (Resolved): Voucher test page produces no output
- Testing and expiring works now.
-
12:25 PM Bug #7810 (Resolved): openssl/openvpn need to have loaded booth AESNI and cryptodev to accelerate AES operations , but gui alows you load only one at once
-
12:24 PM Bug #7810: openssl/openvpn need to have loaded booth AESNI and cryptodev to accelerate AES operations , but gui alows you load only one at once
- Verified that the correct combination of aesni.ko and cryptodev.ko are present after a reboot and that cryptodev is o...
-
12:22 PM Todo #7938 (Resolved): Change pfSense-upgrade to use pkg-static instead of pkg
- Looks to me like all of the references in the pfSense-upgrade code now call pkg-static so this is done.
-
12:15 PM Bug #7937 (Resolved): FreeBSD 11 removed legacy ada aliases, some older installs will fail to mount root post-upgrade
- Latest fix did the trick. I can now start with a VM with a legacy style fstab and the upgrade completes and boots up ...
-
10:30 AM Bug #7937 (Feedback): FreeBSD 11 removed legacy ada aliases, some older installs will fail to mount root post-upgrade
- I've added it to pfSense-repo package post-install script
-
12:14 PM Bug #7925: VT race condition panic at boot on ESXi 6.5.0U1 and FreeBSD 11.1 base
- I can't reproduce this on 2.4.1 snapshots but it was so random before that doesn't give me much confidence.
Anyone... -
12:12 PM Feature #7506 (Resolved): Use "auth-retry nointeract" to prevent OpenVPN clients from exiting or attempting to prompt for passwords
- Works
-
12:07 PM Feature #7814 (Resolved): Unbound serve-expired please add to GU as tickbox
- We've tested this a bit and it's working.
-
12:01 PM Feature #7814: Unbound serve-expired please add to GU as tickbox
- Martin informed this has been accepted and merged.
-
07:45 AM Feature #7814 (Feedback): Unbound serve-expired please add to GU as tickbox
-
11:21 AM Bug #7942 (Feedback): QinQ interfaces never show as active
- Please, test again when the next snapshot is ready.
It is fixed and updated to use the same name format as VLANs.
... -
11:11 AM pfSense Packages Feature #7895: Add a script for CARP monitoring to NRPE
- Here is a fixed version, I tested it based on your above output.
It now gives the following result :... -
10:43 AM pfSense Packages Feature #7895: Add a script for CARP monitoring to NRPE
- Ah, I think I see. I did not handle the case of multiple VHIDs on one interface, I will fix it right now.
-
10:11 AM pfSense Packages Feature #7895: Add a script for CARP monitoring to NRPE
- I agree that it would be very helpful if there was a way to monitor carp status via SNMP.
I ran your script on my ... -
11:10 AM Bug #7960 (Feedback): Wirelss WAN can get caught in a configure loop
- Applied in changeset commit:93d3a065260441dcb32fcd69cf4cb806d1021eea.
-
11:04 AM Bug #7960 (Resolved): Wirelss WAN can get caught in a configure loop
- At least with some wireless devices, they send a link up event to the OS when they associate successfully. This trigg...
-
11:06 AM pfSense Packages Bug #7961 (Resolved): JS Error on Status > Monitoring
- If you go to Status > Monitoring click Settings > Display Advanced > add view and then click cancel you get this cons...
-
10:17 AM pfSense Packages Bug #7959 (Not a Bug): Dpinger - Probe Interval
- Dear Team
We are working with WAN satellite connections limited in bandwidth data per month.
The maximum probe inte... -
10:08 AM Bug #7958: Upgrade 2.4.0: IP alias with FQDN doesn't work any more
- OK. Now have a look at the forum.
It looks like filterdns stops working and after a big change a second one will be ... -
08:30 AM Bug #7958: Upgrade 2.4.0: IP alias with FQDN doesn't work any more
- If it ever worked, it was by luck alone.
When I try to resolve www.google.de, I only receive two responses (one I... -
08:27 AM Bug #7958: Upgrade 2.4.0: IP alias with FQDN doesn't work any more
- It was a test with google ...
The point is, that the other address are not shown.
And before update it worked as ... -
08:24 AM Bug #7958: Upgrade 2.4.0: IP alias with FQDN doesn't work any more
- You cannot rely on alias resolution for domains which return random sets of addresses. That will never work properly ...
-
08:23 AM Bug #7958: Upgrade 2.4.0: IP alias with FQDN doesn't work any more
- Some more info:
I'm using Domain Overrides.
I put www.google.de and a host from my Domain Overrides into a table ... -
07:30 AM Bug #7958 (Not a Bug): Upgrade 2.4.0: IP alias with FQDN doesn't work any more
- It works fine here on several firewalls and there is nowhere near enough detail here or on the linked thread to sugge...
-
07:24 AM Bug #7958 (Not a Bug): Upgrade 2.4.0: IP alias with FQDN doesn't work any more
- I'm not alone with this problem so I decide to open a issue an this:
https://forum.pfsense.org/index.php?topic=13817... -
08:47 AM Bug #7856: IPsec status does not show all connected mobile clients
- I did some tests with SG-2220 (2.4.1-DEVELOPMENT (amd64)) and IPsec widget was on Dashboard, but there wasn't any IPs...
-
07:45 AM Bug #7748: VLAN Priority
- Downgraded last night to 2.3.4, packets are now being properly tagged again. Here are some examples:...
-
06:58 AM Feature #7957 (New): GUI theme - separate "colour" from "compact/normal" in theme dropdown
- At the moment one can choose themes such as normal, dark, and compact-RED.
There is also a colour selector with a wi... -
06:36 AM Feature #7956: Favicon able to match GUI colour setting?
- Sample favicons attached
-
06:19 AM Feature #7956 (New): Favicon able to match GUI colour setting?
- I'm finding that with multiple pfSense routers in use, choosing the right tab in the browser would be a lot easier if...
-
05:50 AM Bug #7955 (Closed): Upgrade in 2.4 GUI appears to fail when it actually succeeded (no D/L completion or reboot message, or sign of completion)
- In previous versions, when upgrading, the activity textbox displays what's happening. At the end it said something li...
10/16/2017
-
06:07 PM Bug #7951: WPA2 issue (KRACK)
- Fixes for KRACK now in FreeBSD Ports tree: https://github.com/freebsd/freebsd-ports/commit/e0ec9d45b57b88487440141915...
-
10:08 AM Bug #7951 (Resolved): WPA2 issue (KRACK)
- We need to import the FreeBSD fixes for wpa_supplicant and hostapd related to the recently-disclosed key reinsertion ...
-
05:43 PM Bug #6455: Can't delete Virtual IP "referenced by a least one gateway" if gateway outside interface subnet
- Thanks! Just ran into this and changed the mast to /32 and I was then able to delete it. I thought it was a 2.4.0 bug...
-
03:42 PM Bug #7884 (Resolved): Unbound refusing non-recursive/iterative queries even from localhost
-
03:34 PM Bug #7884: Unbound refusing non-recursive/iterative queries even from localhost
- On pfSense-netgate-memstick-ADI-2.4.1-DEVELOPMENT-amd64-20171016-1127.img "dig google.com +trace" and "drill -T googl...
-
03:28 PM pfSense Packages Bug #7871 (Resolved): Add squid validation for selected CA when MITM is enabled
- Great, thanks for testing!
-
03:22 PM pfSense Packages Bug #7871: Add squid validation for selected CA when MITM is enabled
- Looks good here, only usable CAs are being offered in the Squid GUI with 0.4.42. Thanks!
-
11:19 AM pfSense Packages Bug #7871 (Feedback): Add squid validation for selected CA when MITM is enabled
- OK I added two different sets of protection:
1. Input validation to warn if a user selected a CA without a private... -
03:20 PM pfSense Packages Bug #7954 (Confirmed): Package upgrade/reinstall gets stuck on deinstall if the package-provided service is not running
- So you have a package and the service is not running. Trying to upgrade/reinstall produces the following:...
-
02:55 PM Bug #7953 (Resolved): XMLRPC produces an error when attempting to sync an empty section
- When attempting to sync an empty section (e.g. VIPs are set to sync, but no VIPs are defined), the following error is...
-
01:20 PM Bug #7810 (Feedback): openssl/openvpn need to have loaded booth AESNI and cryptodev to accelerate AES operations , but gui alows you load only one at once
- Applied in changeset commit:f96376a378211155181a02a053cbb7ff9a700056.
-
10:34 AM Bug #7810: openssl/openvpn need to have loaded booth AESNI and cryptodev to accelerate AES operations , but gui alows you load only one at once
- There is still some debate as to whether or not this is even necessary or would ever help, but it should be simple to...
-
01:12 PM pfSense Packages Bug #7947 (Rejected): freeRadius 3 on pfSense 2.4 not work
- There isn't enough really to go on here, please start a forum thread so we can discuss and diagnose the issue. Also, ...
-
12:57 AM pfSense Packages Bug #7947: freeRadius 3 on pfSense 2.4 not work
- i edit /usr/local/etc/raddb/sites-enabled/default
i comment:... -
12:42 AM pfSense Packages Bug #7947: freeRadius 3 on pfSense 2.4 not work
- i use EAP section
and freeRadius2 worked in 2.3.4
2.4 + FR3 = not worked -
12:30 PM Feature #7506 (Feedback): Use "auth-retry nointeract" to prevent OpenVPN clients from exiting or attempting to prompt for passwords
- Applied in changeset commit:a69a9182278bab4843f3215a1b484f9452558884.
-
12:18 PM pfSense Packages Feature #7945 (Resolved): NET-SNMP - Flooding log entries
- Great, thanks for testing!
-
12:06 PM pfSense Packages Feature #7945: NET-SNMP - Flooding log entries
- Jim Pingle wrote:
> I just pushed a fix for this, it will show up shortly to install.
Updated and tested. Looks g... -
07:49 AM pfSense Packages Feature #7945 (Feedback): NET-SNMP - Flooding log entries
- I just pushed a fix for this, it will show up shortly to install.
-
11:43 AM Bug #7946: 2.4 Package Manager: Does Not List Installed Packages which have been removed from the repository.
- It seems to be anything it can't validate against the current repository (offline or online). It should list them all...
-
11:41 AM Bug #7946: 2.4 Package Manager: Does Not List Installed Packages which have been removed from the repository.
- Well yes, the inability to produce/take into account any offline results is indeed a bug.
-
07:54 AM Bug #7946: 2.4 Package Manager: Does Not List Installed Packages which have been removed from the repository.
- It may still be a bug though. The package is indeed gone from the server-side database but it's still installed local...
-
11:35 AM pfSense Packages Bug #7941 (Not a Bug): ntop-ng. Unable to reach web page
- This was an issue with the rules on that one system and not a problem with ntopng.
-
08:19 AM pfSense Packages Bug #7941 (Feedback): ntop-ng. Unable to reach web page
- I see those errors here but it appears they happen during install or boot when it gets stopped/started a couple times...
-
11:16 AM pfSense Packages Bug #7952 (Closed): OpenVPN export package for Windows flagged by a few AV's
- We have received a report that exported OpenVPN client package is flagged by a few AV's.
https://forum.pfsense.or... -
09:40 AM Bug #7896 (Feedback): picture_widget.php
- Applied in changeset commit:dc91c9490a61c374b4358a3a328019f3e0e150ab.
-
09:10 AM Bug #7714: NTP Widget Time Display
- Applied in changeset commit:7f9b448ff7d926c4c5b69ada8625e728c3f5c715.
-
09:00 AM Bug #7714 (Feedback): NTP Widget Time Display
- Applied in changeset commit:893b609111be502233a7a4ad6804fff1e4779a03.
-
08:04 AM Bug #7940: disabling LAGG causes system reboot on 2.4
- That does look almost identical to #7119, we should check to see if those patches need any adjustments for FreeBSD 11.1.
-
07:54 AM Bug #7917: GUI shows "There are no packages currently installed" when repos are unreachable
- See also: #7946
-
07:40 AM Bug #7921 (Feedback): Reset All States on WAN IP Change does not stay unchecked when disabled in GUI
- Applied in changeset commit:5fce3e8e905c3a2029475293cf760ee2c2a51074.
-
07:38 AM Bug #7948 (Rejected): pfsense 2.4 fall in black screen on ESXI 6.5
- Please start a new thread on the forum with was much detail as possible. There is not enough to go by here, and some ...
-
01:12 AM Bug #7948 (Rejected): pfsense 2.4 fall in black screen on ESXI 6.5
- after upgrade from 2.3.4 pfsense periodically fall in black screen
you can enter letters from the keyboard, but th... -
07:22 AM pfSense Packages Bug #7950 (Feedback): Quagga not displaying status messages on 2.4-rel
- It's working fine here. Are all of the daemons running?
Does running one of the status commands at the CLI work?
<... -
06:59 AM pfSense Packages Bug #7950 (Closed): Quagga not displaying status messages on 2.4-rel
- See attached screenshot. Quagga is working but no status messages are displayed.
-
06:40 AM Bug #6860 (Feedback): Monitoring (RRD) graphs return "unknown" step value
- PR has been merged
-
06:20 AM pfSense Packages Bug #7935 (Feedback): FFR doesn't save prefix lists to bgpd.conf
- PR has been merged
-
06:00 AM Bug #7949 (Feedback): DHCP UEFI file name under pools are ignored
- Applied in changeset commit:9d775c7500e1ba09417e106f2ddc81b2cc8e67dc.
-
05:47 AM Bug #7949 (Resolved): DHCP UEFI file name under pools are ignored
- DHCP Server has places to define 3 files for netboot (BIOS, UEFI 32 and UEFI 64). When these options are configured i...
10/15/2017
-
11:54 PM Bug #7946: 2.4 Package Manager: Does Not List Installed Packages which have been removed from the repository.
- Not a bug.
https://forum.pfsense.org/index.php?topic=133280.0 -
07:09 PM Bug #7946 (Resolved): 2.4 Package Manager: Does Not List Installed Packages which have been removed from the repository.
- Upon upgrading to pfSense 2.4, I was unable to perform the recommended approach to move from freeradius 2.x to 3.x be...
-
11:00 PM pfSense Packages Bug #7947 (Rejected): freeRadius 3 on pfSense 2.4 not work
- Afrer upgrade pfsense to 2.4 and install freeradius v3 -- freeRadius not execute....
-
05:13 PM Bug #6882: bsnmpd uses all available CPU with hostres module active in some cases
- I don't see any mention about memory leaks here but this might be related.
https://forum.pfsense.org/index.php?topic... -
10:41 AM Bug #6882: bsnmpd uses all available CPU with hostres module active in some cases
- Just found this bug report after chasing down the issue on my office's pfsense install that was upgraded to 2.4.
I... -
05:11 PM pfSense Packages Feature #7945 (Resolved): NET-SNMP - Flooding log entries
- Please make a better solution for the NET-SNMP logging. Currently it floods the Genereal Log Entries (System Logs / S...
-
03:44 PM pfSense Packages Bug #7944 (Resolved): Bind XMLRPC Sync Error
- After upgrading to pfsense 2.4.0 syncing Bind is not possible anymore. Each time I update the config I get the follow...
-
02:00 PM Feature #7943 (Resolved): Overflow scrolling for top navigation drop-down menus in Fixed mode
- Some resolutions (16:9 on laptops) don't have the vertical height to display all drop down menu items on items such a...
-
01:30 PM Bug #7942: QinQ interfaces never show as active
- ...
-
01:10 PM Bug #7942 (Resolved): QinQ interfaces never show as active
- In a fresh 2.4 install QinQ interfaces always show in Status > Interfaces as down even when the parent interface show...
-
12:52 PM pfSense Packages Bug #7941 (Not a Bug): ntop-ng. Unable to reach web page
- After installing and enabling ntop-ng with default settings in 2.4 it is not possible to reach the data display page ...
-
10:32 AM Bug #7937 (Assigned): FreeBSD 11 removed legacy ada aliases, some older installs will fail to mount root post-upgrade
- The code itself appears to work but it doesn't get triggered unless you start to run the upgrade from the CLI, stop w...
-
01:40 AM Bug #7940 (Resolved): disabling LAGG causes system reboot on 2.4
- It looks very similar to this - https://redmine.pfsense.org/issues/7119
When Lagg interface goes down:
<6>carp:...
10/14/2017
-
09:10 PM Bug #7939 (Feedback): Voucher test page produces no output
- Applied in changeset commit:0b2d15478ee375c5bb9bde82ac493e1ea38d2eb6.
-
08:58 PM Bug #7939: Voucher test page produces no output
- Affects both status_captiveportal_test.php and status_captiveportal_expire.php
-
08:50 PM Bug #7939 (Resolved): Voucher test page produces no output
- The voucher test page does nothing when a value is submitted.
-
04:57 PM Feature #6754 (Duplicate): Use of aliases in OpenVPN configuration
- Duplicate of #2668
-
03:50 PM Feature #6754: Use of aliases in OpenVPN configuration
- Requested on forums also: https://forum.pfsense.org/index.php?topic=137852.0
-
03:49 PM Feature #2668: Support aliases in OpenVPN local/remote/tunnel network fields
- Requested on forums also: https://forum.pfsense.org/index.php?topic=137852.0
-
03:38 PM Bug #6882: bsnmpd uses all available CPU with hostres module active in some cases
- Judging by some responses on the forum it can also happen on bare metal, not just VMs. The exact conditions are uncle...
-
02:44 PM Bug #6882: bsnmpd uses all available CPU with hostres module active in some cases
- Please either fix the underlying issue if possible. Or at least commit this workaround that seems to be needed for mo...
-
11:20 AM pfSense Packages Bug #7932: 2.4.0 & Snort 3.2.9.5_1 Pass Lists
- No, it's not directly a Snort issue. It appears to be something that was perhaps inadvertently introduced when the t...
-
03:43 AM pfSense Packages Bug #7932: 2.4.0 & Snort 3.2.9.5_1 Pass Lists
- Cheers guys, it does disapear after moving pfSense.mo pfSense.mo.old
So not a Snort issue then. -
07:04 AM Bug #6223: IPsec + OpenBGPD fails with "PF_KEY socket: No buffer space available"
- Michael OBrien wrote:
> Is there a reason you're moving this to 2.4.2, or you just need confirmation that it's good ...
10/13/2017
-
09:52 PM Bug #6223: IPsec + OpenBGPD fails with "PF_KEY socket: No buffer space available"
- Jim Pingle wrote:
> FYI- FRR is now available for 2.4, 2.3.5 (snapshots), and 2.3.4 users. Internal tests show that ... -
03:42 PM Bug #6882: bsnmpd uses all available CPU with hostres module active in some cases
- Looks Like KVM has the same issue btw. I am running 2.4.1-DEVELOPMENT (amd64)
built on Fri Oct 13 12:32:36 CDT 2017... -
09:32 AM Bug #6882: bsnmpd uses all available CPU with hostres module active in some cases
- It looks like there is actually a patch for FreeBSD now which might help: https://bugs.freebsd.org/bugzilla/show_bug....
-
03:02 PM Bug #7931 (Duplicate): Error: SyntaxError: Unexpected token < in JSON at position 0
-
10:57 AM Bug #7931: Error: SyntaxError: Unexpected token < in JSON at position 0
- This one is actually a duplicate of Bug #6748 and I'm still seeing this randomly.
-
02:30 PM pfSense Packages Bug #7932: 2.4.0 & Snort 3.2.9.5_1 Pass Lists
- Bill Meeks wrote:
> Andy Kniveton wrote:
> UPDATE- an empty string is the cause, now to find out why ???
>
> Bi... -
02:09 PM pfSense Packages Bug #7932: 2.4.0 & Snort 3.2.9.5_1 Pass Lists
- Andy Kniveton wrote:
> Ah I don't have an Assigned Alias, so it displays the txt regardless of what ever the locale ... -
12:29 PM pfSense Packages Bug #7932: 2.4.0 & Snort 3.2.9.5_1 Pass Lists
- Ah I don't have an Assigned Alias, so it displays the txt regardless of what ever the locale is set to.
Just creat... -
12:22 PM pfSense Packages Bug #7932: 2.4.0 & Snort 3.2.9.5_1 Pass Lists
- I've upgraded from 2.3.4-p1 to 2.4.0 and not changed the locale. it's using the default English I guess as I've not s...
-
10:23 AM pfSense Packages Bug #7932: 2.4.0 & Snort 3.2.9.5_1 Pass Lists
- I am so far unable to reproduce this problem in my virtual machine test environment. What language/locale is your fi...
-
09:46 AM pfSense Packages Bug #7932: 2.4.0 & Snort 3.2.9.5_1 Pass Lists
- Thanks for the report. I will look into the problem.
Bill -
12:10 PM pfSense Packages Bug #7923: 502 Bad Gateway and unresponsive OS with 2.4
- This is definitely due to a locking issue with file access in the index.php file for pfBlocker DNSBL. Not sure why it...
-
10:50 AM Bug #7748: VLAN Priority
- Hey, I'm one of those users thanks for putting this in the queue for 2.4.1.
I did a real quick tcpdump looking for... -
09:35 AM Bug #7748: VLAN Priority
- Apparently this negatively impacts users on Google Fiber
https://forum.pfsense.org/index.php?topic=137916.msg754579#... -
10:48 AM pfSense Packages Bug #7935: FFR doesn't save prefix lists to bgpd.conf
- There is a pending PR for this, https://github.com/pfsense/FreeBSD-ports/pull/417
We'll be reviewing PRs shortly n... -
10:44 AM Bug #7937 (Feedback): FreeBSD 11 removed legacy ada aliases, some older installs will fail to mount root post-upgrade
- pfSense-upgrade version 0.27_2 on 2.3.x and 0.34 on 2.4.x check for /dev/adN under /etc/fstab and call "/usr/local/sb...
-
07:50 AM Bug #7937 (Resolved): FreeBSD 11 removed legacy ada aliases, some older installs will fail to mount root post-upgrade
- Some upgrade attempts are failing to mount root after the kernel is upgraded to FreeBSD 11.x due to ada disk driver c...
-
10:43 AM Todo #7938 (Feedback): Change pfSense-upgrade to use pkg-static instead of pkg
- pfSense-upgrade version 0.27_2 on 2.3.x and 0.34 on 2.4.x are changed
-
09:16 AM Todo #7938 (Resolved): Change pfSense-upgrade to use pkg-static instead of pkg
- pfSense-upgrade should use pkg-static internally, rather than pkg, to avoid issues with major version upgrades, poten...
-
10:37 AM Feature #1557: Add the Interface descriptions to the OS interface descriptions
- Hi there,
This would be a great feature for those who use Zabbix or similar.
Thanks
Gareth -
09:12 AM Bug #7928: LAGG interfaces lose MAC address
- Can confirm, this is new behavior and I am able to duplicate it per Steve's steps at a client site. The secondary fir...
-
08:50 AM Bug #7925: VT race condition panic at boot on ESXi 6.5.0U1 and FreeBSD 11.1 base
- For reference, at least one person appears to have encountered it on ESX 5.5 as well, though the majority of users ar...
-
07:07 AM Bug #7936 (Confirmed): bridge network interface does not support altq on 2.4.0-RELEASE
- I thought we had another entry for bridge already but today I don't see it. So I reopened this and changed the subjec...
-
03:00 AM Bug #7916: There were error(s) loading the rules: pfctl: ix0: driver does not support altq - The line in question reads [0]: | Intel X520-DA2
- Same problem on 2.4.0!
-
01:22 AM Bug #4310: Limiters + HA results in hangs on secondary
- Sander Naudts wrote:
> Why not change target version to 2.9.9... sorry just little frustrating that this doesn't get...
10/12/2017
-
11:42 PM Bug #6882: bsnmpd uses all available CPU with hostres module active in some cases
- It should be noted that when upgrading, if the host resources MIB was already selected BEFORE the upgrade, it will re...
-
09:51 PM Bug #7936: bridge network interface does not support altq on 2.4.0-RELEASE
- That is true, but all interfaces assigned to bridge0 are igbx, will retest tomorrow
-
09:13 PM Bug #7936 (Rejected): bridge network interface does not support altq on 2.4.0-RELEASE
- bridge0 is not igbX.
-
09:07 PM Bug #7936 (Resolved): bridge network interface does not support altq on 2.4.0-RELEASE
- The bridge interface is currently not being built with altq support enabled. This leads to a situation where the user...
-
07:28 PM pfSense Packages Bug #7935 (Resolved): FFR doesn't save prefix lists to bgpd.conf
- Prefix lists referenced in route-maps or directly do not work with bgp when created using the webui. Have to copy the...
-
05:47 PM Bug #7925: VT race condition panic at boot on ESXi 6.5.0U1 and FreeBSD 11.1 base
- For information, the same problem occurs in Workstation 12.5.7 (build 5813279), vm hardware version 11.
It happened ... -
09:18 AM Bug #7925: VT race condition panic at boot on ESXi 6.5.0U1 and FreeBSD 11.1 base
- For anyone experiencing this crash in the meantime, adding @kern.vty=sc@ to @/boot/loader.conf.local@ is confirmed to...
-
04:38 PM Feature #7934: format support phone# for international use
- Assigned to sdavis. This is a server-side issue
-
04:10 PM Feature #7934 (New): format support phone# for international use
- In the new 2.4.0 release, the Netgate Services and Support dashboard gadget shows the phone# to call. (Good idea, bt...
-
02:47 PM Feature #7643: Send notification when boot completed
- I also think that would be very useful function.
-
02:26 PM Bug #7933: There were error(s) loading the rules: pfctl: vtnet0: driver does not support altq - The line in question reads [0]:
- Doesn't make a difference, still the same bug on the same version. If it was closed, you might have a point but it's ...
-
02:23 PM Bug #7933: There were error(s) loading the rules: pfctl: vtnet0: driver does not support altq - The line in question reads [0]:
- Maybe, but the bugs remains on release 2.4.0-RELEASE (amd64), that was for 2.4 BETA and 2.4 RC.
-
02:18 PM Bug #7933 (Duplicate): There were error(s) loading the rules: pfctl: vtnet0: driver does not support altq - The line in question reads [0]:
- Duplicate of #7594
-
02:03 PM Bug #7933: There were error(s) loading the rules: pfctl: vtnet0: driver does not support altq - The line in question reads [0]:
- To let you now my configuration was working nice on 2.3.4-RELEASE-p1
-
02:01 PM Bug #7933 (Duplicate): There were error(s) loading the rules: pfctl: vtnet0: driver does not support altq - The line in question reads [0]:
- After a clean installation to have zfs filesystem, I restored my configuration, and there is no internet connection c...
-
02:19 PM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
- Michael OBrien wrote:
> Any chance 2.4.0, with the FreeBSD 11.1 ipsec changes, may resolve this?
Just loaded up 2... -
12:03 PM pfSense Packages Bug #7932: 2.4.0 & Snort 3.2.9.5_1 Pass Lists
- https://forum.pfsense.org/index.php?topic=137921.0
-
12:02 PM pfSense Packages Bug #7932: 2.4.0 & Snort 3.2.9.5_1 Pass Lists
- Please also post that in the IDS/IPS board of the forum so the package maintainer has a higher chance of seeing it:
... -
11:53 AM pfSense Packages Bug #7932 (Resolved): 2.4.0 & Snort 3.2.9.5_1 Pass Lists
- The following appears under Assigned Alias header :-
Project-Id-Version: PACKAGE VERSION Report-Msgid-Bugs-To: POT... -
11:48 AM Bug #7931 (Not a Bug): Error: SyntaxError: Unexpected token < in JSON at position 0
- Most likely it was old/cached data in your browser and the refresh let it pick up new copies. We have added some prot...
-
11:46 AM Bug #7931: Error: SyntaxError: Unexpected token < in JSON at position 0
- After a refresh the error is gone btw
-
11:44 AM Bug #7931 (Duplicate): Error: SyntaxError: Unexpected token < in JSON at position 0
- After Upgrading to 2.4.0 this error is shown in the Traffic Graph Widget on the Dashboard
@Error: SyntaxError: Une... -
11:15 AM Feature #7930 (Rejected): Upgrade notification
- Sending an e-mail notification for that from the firewall itself isn't really a good idea. There are many other ways ...
-
11:13 AM Feature #7930 (Rejected): Upgrade notification
- It would be nice if there was some sort of alerting or notification when pfSense has a new upgrade available (via ema...
-
10:55 AM Bug #4310: Limiters + HA results in hangs on secondary
- We expected to have more time before 2.4.1 but we need to have it out in a week or so, there isn't time to get to thi...
-
10:53 AM Bug #4310: Limiters + HA results in hangs on secondary
- Why not change target version to 2.9.9... sorry just little frustrating that this doesn't get fixed.
-
10:36 AM Feature #7926: limit clog -f look-back size
- You'd be surprised, there are a number of them out there on CF, USB sticks and the like, and some of them have opted ...
-
10:33 AM Feature #7926: limit clog -f look-back size
- Thanks, Jim. That would be a perfectly acceptable solution, with a whole bunch of side benefits.
Especially since I... -
10:28 AM Bug #7786: traffic shaping queue on WAN wont allow total of all child to be 100%
- i think this requires some php code changes only as the web gui doesnt allow, the shaper itself is fine with it when ...
-
09:46 AM Bug #7786: traffic shaping queue on WAN wont allow total of all child to be 100%
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
10:23 AM Bug #7474 (Resolved): Problems adding gateway from interface edit
-
10:09 AM Bug #4031: Notifications mail bomb in some gateway failure circumstances
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
10:02 AM Bug #6420 (Resolved): Monitoring graphs last sample being zero
-
10:01 AM Feature #7823: Pull request: Add support for dynamic DNS provider ClouDNS
- conflict is fixed.
-
09:46 AM Feature #7823: Pull request: Add support for dynamic DNS provider ClouDNS
- The PR has conflicts that need resolved.
Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated. -
09:55 AM Bug #7079: ClamAV C-ICAP causing Kernel Panic and System Crash
- This should be re-tested on 2.4.0-RELEASE, the newer FreeBSD 11.1 base has a patch for that crash, I believe. Also it...
-
09:52 AM Bug #7213 (Feedback): Hyper-V install, no disk found
- Please retry this on 2.4.0-RELEASE which uses a FreeBSD 11.1 base and it has several fixes for Hyper-V.
-
09:51 AM Bug #7412: rtsold will not run on VLAN interfaces
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:51 AM Bug #7413: status_dhcpv6_leases.php: Some DHCPv6 leases are not displayed in the GUI
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:51 AM Bug #7425: dhclient not sending option 77
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:49 AM Bug #7439: IKE_SA (IKEv2) does not rekey on break before make startegy, just issues IKE_DELETE and connection is closed
- There is a new version of strongSwan on 2.4.0-RELEASE, please make this is still happening there.
Moving target to 2... -
09:48 AM Feature #7467: Add iPhone/Android/Generic USB tethering support
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:48 AM Bug #7469: local_sync_accounts() slowness can trigger GUI/XMLRPC failures with many accounts
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:47 AM Bug #7480: pkg framework - textarea on rowhelperfield errors
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:47 AM Bug #7481: pkg-framework - rowhelper ignores <advancedfield/>
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:47 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:47 AM Bug #7605: State Killing on Gateway Success
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:47 AM Feature #7623: Allow L2TP user passwords to contain special characters
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:46 AM Bug #7714: NTP Widget Time Display
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:46 AM Todo #7762: Add uid check to pfSense-upgrade and exit unless it is run as uid=0
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:46 AM Bug #7774: No TCP Reply State Established on GRE in IPsec Transport
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:46 AM Bug #7801: UDP fragments received over IPsec tunnel are not properly reassembled and forwarded
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:46 AM Bug #7856: IPsec status does not show all connected mobile clients
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:46 AM Feature #7882: Seperator feature in DHCP Static mapping for this feature
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:46 AM Bug #7885: Cert. Manager should validate EKUs on importing a certificate authority
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
09:46 AM Bug #7905: OpenVPN Authentication Against Backend Stalls All Server Traffic
- Moving target to 2.4.2 as we need 2.4.1 sooner than anticipated.
-
06:31 AM Feature #7321 (Resolved): DynDNS - Add DreamHost DNS support
-
01:43 AM Bug #7929 (Resolved): IPSec CA certificate name corrupt if multiple RDNs of the same type are in subject name
- When the CA certificate subject is converted to OSF style, but multiple RDN components of the same type are in the su...
10/11/2017
-
07:27 PM Feature #7321: DynDNS - Add DreamHost DNS support
- OK - I do see that it made it into the 2.4.0 Git branch. I didn't see it listed at https://redmine.pfsense.org/versi...
-
06:08 PM Bug #7928 (Resolved): LAGG interfaces lose MAC address
- LAGG interfaces lose their MAC address, normally inherited from the first member, if all links are disconnected and t...
-
03:03 PM Bug #7927 (Closed): (filterdns), uid 0: exited on signal 11 (core dumped)
- #Problem:
With 2.4, and also with 2.4.1, I am seeing frequent error messages
> kernel: pid 12918 (filterdns),... -
02:21 PM Bug #7015: IPsec not working behind NAT
- The problem I reported above occurs when the Phase 2 IPv6 Tunnel "Local Network" is set to "LAN subnet", and therefor...
-
12:57 PM Feature #7926: limit clog -f look-back size
- The way clog reads the records it has to figure out where the start is and then unwind it from there, so it doesn't e...
-
12:47 PM Feature #7926: limit clog -f look-back size
- FWIW, I'm thinking of "tail -f"'s behaviour, where it only tail's the last ~10 lines (I think most implementations de...
-
12:44 PM Feature #7926 (Closed): limit clog -f look-back size
- I've configured the system log files to be substantially larger than normal, in order to get some reasonable retentio...
-
12:51 PM Bug #7925 (Feedback): VT race condition panic at boot on ESXi 6.5.0U1 and FreeBSD 11.1 base
- The fix is already merge and will be available on next snapshot.
-
09:21 AM Bug #7925 (Resolved): VT race condition panic at boot on ESXi 6.5.0U1 and FreeBSD 11.1 base
- Some users occasionally encounter a panic during OS hardware detection on 2.4 running under ESXi 6.5.0 U1 (Build 6765...
-
12:24 PM pfSense Packages Bug #7923: 502 Bad Gateway and unresponsive OS with 2.4
- If it's happening on 2.4.0 and started around that time, it's likely related to the FreeBSD 11.1 change and not the I...
-
10:53 AM pfSense Packages Bug #7923: 502 Bad Gateway and unresponsive OS with 2.4
- Jim Pingle wrote:
> The affected code was on 2.4.0 for a couple days but is no longer there now. Current 2.4.0-RC sn... -
10:35 AM pfSense Packages Bug #7923: 502 Bad Gateway and unresponsive OS with 2.4
- The affected code was on 2.4.0 for a couple days but is no longer there now. Current 2.4.0-RC snapshots and the actua...
-
10:28 AM pfSense Packages Bug #7923: 502 Bad Gateway and unresponsive OS with 2.4
- Jim Pingle wrote:
> At the moment, the only change in 2.4.1 that isn't in 2.4.0 that might be relevant is #7856
>
... -
07:13 AM pfSense Packages Bug #7923: 502 Bad Gateway and unresponsive OS with 2.4
- At the moment, the only change in 2.4.1 that isn't in 2.4.0 that might be relevant is #7856
And since we already k... -
06:21 AM pfSense Packages Bug #7923 (Resolved): 502 Bad Gateway and unresponsive OS with 2.4
- Multiple users complaining that following the infamous 502 Bad Gateway, they eventually are unable to do anything wit...
-
08:36 AM Bug #7924 (Rejected): DHCP Server fails to start after updating to 2.4.0.r.20171009.1758
- You must have upgraded to a snapshot that was broken before that one. You'll need to fix your local installation manu...
-
08:29 AM Bug #7924 (Rejected): DHCP Server fails to start after updating to 2.4.0.r.20171009.1758
- After upgrading to 2.4.0.r.20171009.1758, the DHCP server fails with the following error message:
Can't attach int... -
07:17 AM Bug #7856 (Assigned): IPsec status does not show all connected mobile clients
- It looks like this change caused a regression, see #7923
Also one person on the forum reported that the status bre... -
02:21 AM Bug #7272: 6rd not functioning on 2.4.0-BETA
- I can confirm that my issue has been fixed (Altibox Norway ISP). Thank you very much!
Also available in: Atom