Project

General

Profile

Activity

From 12/09/2017 to 01/07/2018

01/07/2018

04:29 PM Feature #8187: Gateways, allow for configuring a gatewaygroup as the default gateway. #3781
Progress: 100% Pi Ba
02:26 PM Bug #8263 (New): Cannot create a nonlinear `Link Share` service curve because of: "the sum of the child bandwidth higher than parent"
*Problem:*
* Cannot create a nonlinear service curve using `m1` and `d` variables with HFSC Scheduler. Traffic shape...
Tom Misztur

01/06/2018

07:16 PM Revision 77a6cafb: Change get_interface_subnet() to use configured value if available.
Pi Ba
06:33 PM Revision 10a8b5ee: openvpn, fix the ifconfig ip1 ip2 when subnet /31 is used
Pi Ba
06:27 PM Feature #8262: Make each prefix flags configurable separately.
Currently all additional prefixes added to be advertised by radvd inherit flags from the general interface radvd conf... Jupiter Vuorikoski
06:22 PM Feature #8262 (New): Make each prefix flags configurable separately.
Jupiter Vuorikoski
05:14 PM pfSense Packages Feature #8232: different ssl options based on the sni name
Much better, I'll start the functional testing! Zoltan Beck
09:13 AM pfSense Packages Feature #8232: different ssl options based on the sni name
Added commit to remove the double section.
URL: https://github.com/pfsense/FreeBSD-ports/pull/491/commits/83ae379cda...
Pi Ba
09:00 AM pfSense Packages Feature #8232: different ssl options based on the sni name
Ah um no sorry. Fix will be added shortly. p.s. are you on IRC #pfSense channel? on freenode Maybe we could talk there. Pi Ba
08:38 AM pfSense Packages Feature #8232: different ssl options based on the sni name
Thank you for your help, I installed as you mentioned. I don't know if it works as expected, but on every frontend I ... Zoltan Beck
12:49 PM Bug #8261: OpenVPN tunnel network handled incorrectly with a /31 tunnel network
Is fixed by: https://github.com/pfsense/pfsense/pull/3895 Pi Ba
12:17 PM Bug #8261 (Resolved): OpenVPN tunnel network handled incorrectly with a /31 tunnel network
When defining the tunnel network to be used in an openvpn site-to-site tunnel, if you define a /31 network, the confi... Jupiter Vuorikoski
04:49 AM Feature #7861: Make "Descriptive name" of certificates editable
Is there any chance you will add this feature? Is there anything I can do?
Lars Möller
Lars Möller
12:07 AM Bug #8250: Captive Portal XMLRPC does not use the custom port configured.
** it is not a bug **
Louis Casambre

01/05/2018

09:54 PM Revision 34c3aeac: Encode rangedescr before display in firewall_schedules.php. Fixes #8259
(cherry picked from commit 2f7d3a1f3c9b00a815037e1f4b8a88c938a8f42d) Jim Pingle
09:54 PM Revision cc646dfa: Encode rangedescr before display in firewall_schedules.php. Fixes #8259
(cherry picked from commit 2f7d3a1f3c9b00a815037e1f4b8a88c938a8f42d) Jim Pingle
09:54 PM Revision 55ea766a: Encode rangedescr before display in firewall_schedules.php. Fixes #8259
(cherry picked from commit 2f7d3a1f3c9b00a815037e1f4b8a88c938a8f42d) Jim Pingle
09:53 PM Revision 2f7d3a1f: Encode rangedescr before display in firewall_schedules.php. Fixes #8259
Jim Pingle
09:42 PM Revision 88be34ad: Fix foreach error on hosts that have no dyndns entries.
Jim Pingle
09:37 PM pfSense Packages Bug #8260: Status Traffic Totals is not restored when restoring a backup
Jim Pingle wrote:
> Duplicate of #8068
woops, searched for it but didn't find that one, sorry...
Tobias H
09:23 PM pfSense Packages Bug #8260 (Duplicate): Status Traffic Totals is not restored when restoring a backup
Duplicate of #8068 Jim Pingle
09:09 PM pfSense Packages Bug #8260 (Duplicate): Status Traffic Totals is not restored when restoring a backup
When you do a backup and restore it then the plugin "Status_Traffic_Totals" is missing. Configuration of the plugin a... Tobias H
04:52 PM Bug #8165: Fragmented at source IPv6 packets (UDP + ICMP Ping) are not forwarded / v2.4.2 AMD64
Just wanted to file a METOO on this where it seems to be causing issues with IPv6 and UDP especially where we saw it ... Kevin A McGrail
04:00 PM Bug #8259 (Feedback): Range description is not encoded in firewall_schedule.php
Applied in changeset commit:2f7d3a1f3c9b00a815037e1f4b8a88c938a8f42d. Jim Pingle
03:53 PM Bug #8259 (Resolved): Range description is not encoded in firewall_schedule.php
On firewall_schedule.php the rangedescr for time ranges is not encoded before display. However, an invalid entry cann... Jim Pingle
02:58 PM Revision e3c0d75e: Update the Copyright notice for pfSense.
Luiz Souza
02:47 PM pfSense Packages Bug #8258 (Resolved): BIND responds with SERVFAIL when adding/changing records if 'allow-update' is configured for a zone
When a proper functioning bind server is running fine for a zone with 'allow-update' enabled for local-nets it is pos... Marco Verleun
02:45 PM Revision 5391d05c: Sort package entries, remove unused packages (elinks, asterisk).
Luiz Souza
01:50 PM Revision 51796ced: Small cosmetic fix.
Luiz Souza
01:44 PM Revision b8f91b7c: Update the Copyright notice for pfSense.
Luiz Souza
12:56 PM pfSense Packages Feature #7706 (Feedback): Add option to write certificate to the filesystem after renew
This is implemented in ACME package version 0.1.34, though it could use additional testing to ensure it's working in ... Jim Pingle
11:02 AM pfSense Packages Feature #7519 (Resolved): Add support for --listen-v6 to ACME standalone webserver
This is implemented in the ACME package version 0.1.33, for HTTP and TLS standalone entries there is now a checkbox t... Jim Pingle
08:33 AM pfSense Packages Feature #7340 (Resolved): Acme Client nsupdate interface forces a different key-ID for every domain
In ACME package version 0.1.32 there is a separate Key name field which can be used to override the default key name ... Jim Pingle
08:33 AM pfSense Packages Bug #8118 (Resolved): Note default key name when using RFC 2136
In ACME package version 0.1.32 there is a separate Key name field which can be used to override the default key name,... Jim Pingle

01/04/2018

07:27 PM Revision 31bb3fb6: Merge pull request #3893 from JoeriCapens/ddns-rfc2136-algorithm-choice
Jim Pingle
06:49 PM Feature #8257: pfSense Diagnostics -> Packet Capture support for loopback interface
In particular, in order to debug a problem I was having with the HAProxy and Acme packages (#7519), I ultimately ende... Chaos215 Bar2
06:47 PM Feature #8257 (Resolved): pfSense Diagnostics -> Packet Capture support for loopback interface
I can't overstate how useful the GUI Packet Capture feature is for debugging all variety of networking issues, but it... Chaos215 Bar2
06:43 PM pfSense Packages Feature #7519: Add support for --listen-v6 to ACME standalone webserver
Another +1.
I'm using HAProxy to allow multiple hosts behind a router to issue Let's Encrypt certificates, using H...
Chaos215 Bar2
06:28 PM Bug #8249: pid 77785 (php-fpm), uid 0, was killed: out of swap space
The number of widgets doesn't really matter, only 1 will be refreshed every second..
Could use ab or wrk for a secon...
Pi Ba
12:20 PM Bug #8249: pid 77785 (php-fpm), uid 0, was killed: out of swap space
I can't seem to reproduce this here. I have a box with 2GB of RAM and a 14 dashboard widgets loaded and it never goes... Jim Pingle
04:29 PM Revision a58b6915: Backport changes regarding login page
This commit improves consistency and prevents bugs by:
1) Not displaying the login CSS file in the theme list
2) Ensu...
NewEraCracker
01:43 PM Feature #8244: Add Dynamic DNS RFC 2136 Client server key algorithm choice
PR Merged Jim Pingle
01:40 PM Feature #8244 (Feedback): Add Dynamic DNS RFC 2136 Client server key algorithm choice
Applied in changeset commit:ab1112eed9c14f95d32469755c17dc067f903e61. Joeri Capens
10:31 AM Bug #8255 (Resolved): Login page color not honoured
The fix was already in the repo for 2.3.6, I cherry-picked commit:1b2c6dd943e90acd25f00f9539aa606bdf26712f back to RE... Jim Pingle
12:12 AM Bug #8255 (Resolved): Login page color not honoured
Login page color is not honoured and it defaults to default blue always Bipin Chandra
06:37 AM Bug #8256 (Resolved): IPv6 IP Alias VIP not added to Interface Network Macros
Hi,
I opened this Forum post thinking that the issue is with CARP VIP, but later on I figured it out that it's act...
Rabi Hanna
04:43 AM pfSense Packages Bug #8194: BIND fails to respond after interface goes down
Just a quick note: As an alternate workaround, I attempted to run the DNS Resolver as the primary DNS server, forward... Chaos215 Bar2
03:14 AM pfSense Packages Bug #8194: BIND fails to respond after interface goes down
Is there anything I can do to help diagnose and/or workaround this issue? This is kind of a showstopper for using the... Chaos215 Bar2

01/03/2018

04:23 PM Feature #7671: Gateway Monitoring Via Custom Script or Telnet.
Well that script didn't really seem to work... New Script attached. Sends emails via smtp to address configured on no... Bridgetowermedia IT
01:28 PM Bug #8124: username/password not used by proxy support
Jim Pingle wrote:
> There was a FreeBSD bug about that, see #6949, but that's been fixed for a while now. If the pro...
O 71
09:43 AM pfSense Packages Bug #8254 (Resolved): BIND, Register DHCP static mappings and Subzones
If BIND is configured so that it has master zones for example.com and sub.example.com
(assuming proper delegation fr...
name name
06:54 AM Bug #8253 (Rejected): Corrupt video during 2.4.x install on Dell Wyse thin client with AMD Radeon HD 6250
*Problem:*
While installing version 2.4.2 via USB key onto a Wyse D50D or D90D, the video is corrupt from the bootlo...
Ronnie Last

01/02/2018

08:49 PM Revision c0305bb8: Add keyalgorithm input validation.
Joeri Capens
08:49 PM Revision 16f8df9a: Delete keytype field from config, remove unnecessary file cleanup.
Joeri Capens
06:32 PM pfSense Packages Feature #8232: different ssl options based on the sni name
Patches are based on top of haproxy-devel package 0.54_2 to apply them do the following:
-Install 'System Patches'...
Pi Ba
05:19 PM pfSense Packages Feature #8232: different ssl options based on the sni name
Can you please give us steps how to install this version on pfsense 2.4.2-RELEASE-p1? Zoltan Beck
05:20 PM Bug #8247: When in bridge / transparent mode, pfSense blocks UDP/4500 & ESP traffic regardless of origin
In the days since I created this bug, I continue to observe pfSense filtering out inbound return UDP traffic unless e... Travis McMurry
04:50 PM Revision 5340fd2f: Change how SANs are generated from the CN, considering that not all CNs will produce a valid SAN. Fixes #8252
(cherry picked from commit e562fca2e6b7a2ffbbdfe748f769a8cde9e116dc) Jim Pingle
04:49 PM Revision e562fca2: Change how SANs are generated from the CN, considering that not all CNs will produce a valid SAN. Fixes #8252
Jim Pingle
03:56 PM Revision a6c87161: Do not make a bypasslan IPsec config block when it should be disable/empty. Fixes #8239
(cherry picked from commit fbdf0a084da239ca785360106b3dd8d1390223cf) Jim Pingle
03:56 PM Revision 6a20a5bd: Do not make a bypasslan IPsec config block when it should be disable/empty. Fixes #8239
(cherry picked from commit fbdf0a084da239ca785360106b3dd8d1390223cf) Jim Pingle
03:56 PM Revision 5437463a: Do not make a bypasslan IPsec config block when it should be disable/empty. Fixes #8239
(cherry picked from commit fbdf0a084da239ca785360106b3dd8d1390223cf) Jim Pingle
03:55 PM Revision fbdf0a08: Do not make a bypasslan IPsec config block when it should be disable/empty. Fixes #8239
Jim Pingle
02:24 PM Feature #4899: Additional BOOTP/DHCP Options should allow a force option
Code for consideration should be submitted as a Github pull request. Anonymous
02:01 PM Feature #4899: Additional BOOTP/DHCP Options should allow a force option
Moving this feature request back to the top of the stack. The creator did all the leg work to implement this, why not... Charles Taylor
11:00 AM Bug #8252 (Feedback): Automatic SAN code for certificates does not work properly with additional SANs when the CN contains a space
Applied in changeset commit:e562fca2e6b7a2ffbbdfe748f769a8cde9e116dc. Jim Pingle
10:44 AM Bug #8252 (Resolved): Automatic SAN code for certificates does not work properly with additional SANs when the CN contains a space
When making a certificate, if there is a space in the CN the automatic code that copies the CN to a SAN fails to make... Jim Pingle
10:10 AM Bug #8239 (Feedback): If IPsec bypasslan is enabled while the LAN interface is disabled, all traffic bypasses IPsec
Applied in changeset commit:fbdf0a084da239ca785360106b3dd8d1390223cf. Jim Pingle
09:57 AM Bug #8239 (Confirmed): If IPsec bypasslan is enabled while the LAN interface is disabled, all traffic bypasses IPsec
Jim Pingle

01/01/2018

07:05 PM Bug #8249: pid 77785 (php-fpm), uid 0, was killed: out of swap space
For a easy reproduction do the following:
-Configure dashboard with 1 widget like the "Interfaces" widget.
(It also...
Pi Ba
08:32 AM pfSense Packages Bug #8251: Captiveportal + FreeRadius "Last activity" resets to Session start
I also get these errors when the times reset, but I'm not certain if they're related yet. I have reported them all vi... Frotty Zaoldyeck
08:20 AM pfSense Packages Bug #8251 (Feedback): Captiveportal + FreeRadius "Last activity" resets to Session start
Hi again.
I still have the exact same problem I reported before since moving to 2.4: https://redmine.pfsense.org/iss...
Frotty Zaoldyeck

12/31/2017

07:29 PM Bug #8250 (Closed): Captive Portal XMLRPC does not use the custom port configured.
WebGUI is configured to use https through port 8080. However when synchronizing changes to the captive portal the fo... Louis Casambre
06:39 PM Bug #8201: 502 gateway issues Increase FPM process availability in high ram systems
I 'think' this caused a new issue..: https://redmine.pfsense.org/issues/8249 Pi Ba
06:25 PM Bug #8249 (Resolved): pid 77785 (php-fpm), uid 0, was killed: out of swap space
My pfSense box is running out of memory while it should have plenty to do what it does.
2.4.3-DEVELOPMENT (amd64) ...
Pi Ba
09:37 AM pfSense Packages Feature #8232: different ssl options based on the sni name
Can you try and test https://github.com/pfsense/FreeBSD-ports/pull/491 ?
It should allow crt-list to be used. This s...
Pi Ba
09:12 AM Bug #8248 (Closed): Pfsense hangs - non pingable when removing traffic shaper from interface(s)
When implementing traffic shaping codelq to my WAN and LAN interfaces works fine when setting it initially. The probl... John Beaudoin

12/30/2017

10:08 PM Bug #8247: When in bridge / transparent mode, pfSense blocks UDP/4500 & ESP traffic regardless of origin
sorry about the trailing open-ended sentence. should have edited it out. :) Travis McMurry
09:59 PM Bug #8247 (Not a Bug): When in bridge / transparent mode, pfSense blocks UDP/4500 & ESP traffic regardless of origin
I'm not sure what mechanism is in play, but this is a VPN-specific issue. Forum Post:
https://forum.pfsense.org/i...
Travis McMurry
06:21 PM Feature #8246: Allow reordering of interfaces/stats on the dashboard
Thanks, wasn't aware of that feature. Good enough for my needs (ability to have WANs first would be ideal but this is... Eduard Rozenberg
04:07 PM Feature #8246 (Bogus): Allow reordering of interfaces/stats on the dashboard
System > General, Interfaces Sort, check "Sort Alphabetically". Jim Pingle
12:25 PM Feature #8246 (Bogus): Allow reordering of interfaces/stats on the dashboard
It would be really great to be able to change the order of the interfaces showing in dashboard widgets "Interfaces" a... Eduard Rozenberg
12:43 PM Bug #8129: NTP Status -> Server time value incorrect for timezone Asia/Kolkata
I haven't tested yet but the change looks good, thanks! Eduard Rozenberg

12/29/2017

08:11 PM Todo #8245: use delayed compression for sshd
... Art Manion
08:08 PM Todo #8245 (Resolved): use delayed compression for sshd
FreeBSD default sshd config is "compression delayed". [1] This defends against vulnerabilities like CVE-2016-10012 [2... Art Manion
02:58 PM Revision 48a6bb92: Update language selections
Steve Beaver

12/28/2017

11:24 PM Revision 0ccfd70e: Remove old dnssec-keygen style files during upgrade
Joeri Capens
11:01 PM Revision ab1112ee: Add RFC 2136 Client key algorithm choice. Implements #8244
Joeri Capens
10:46 PM Revision 16c260fa: Use consistent variable order, remove unused variable.
Joeri Capens
10:43 PM Revision 7ca8845b: Replace Dynamic DNS dnssec-keygen style files with simpler ddns-confgen style file.
Joeri Capens
07:07 PM Revision 34300d73: Correct sethelp call on firewall_rules_edit.php, Fixes #8242
Jim Pingle
05:45 PM Feature #8244: Add Dynamic DNS RFC 2136 Client server key algorithm choice
PR: https://github.com/pfsense/pfsense/pull/3893 Joeri Capens
04:31 PM Feature #8244 (Resolved): Add Dynamic DNS RFC 2136 Client server key algorithm choice
Just like #6621, the Dynamic DNS RFC 2136 Client settings require a HMAC-MD5 key, there's no other algorithm choice. Joeri Capens
01:20 PM Bug #8242 (Feedback): Unable to edit firewall rules
Applied in changeset commit:34300d739bfd7968e7e693f2a6302d49203ef4d0. Jim Pingle
01:09 PM Bug #8242: Unable to edit firewall rules
Looks like this was a 2.4-ism that got picked back into RELENG_2_3. I pushed a fix that keeps the formatting. Jim Pingle
08:21 AM Feature #8243 (New): Sync dashboard settings over xmlrpc
I'd like to see pfsense being able to sync it's dashboard settings within a firewall cluster by config sync, making i... net core
08:06 AM pfSense Packages Todo #8241 (Rejected): Update ntopng to 3.2.2017.12.06
We'll get it automatically when we pull in the next quarterly ports branch, no need to go out of our way for every ve... Jim Pingle
02:21 AM Feature #8240: code source bouton "Save" et "Apply change "
Hey Jim,
Thanks for your quick answer, ok i will post my ask in the forum.
Have a nice day for all
Mehdi BENLAKHAL

12/27/2017

05:30 PM Bug #8242: Unable to edit firewall rules
Was found on 2.3.6.a.20171227.0928, and 'target version' should be set to 2.3.6 if possible. (that can only be change... Pi Ba
05:01 PM Bug #8242 (Resolved): Unable to edit firewall rules
Upon trying to edit firewall rules an error was presented
Catchable fatal error: Argument 2 passed to Form_Input:...
Stephen Dorrington
05:00 PM pfSense Packages Todo #8241 (Rejected): Update ntopng to 3.2.2017.12.06
There's a new release of ntopng on the FreshPorts tree: https://www.freshports.org/net/ntopng/
Please can it be p...
Andrew -
03:34 PM Feature #8240 (Bogus): code source bouton "Save" et "Apply change "
Please post support or development questions on the forum, mailing list, or reddit.
The forum has a "French board"...
Jim Pingle
10:52 AM Feature #8240 (Bogus): code source bouton "Save" et "Apply change "
Bonjour,
je suis en train de modifier le fichier config.xml de pfsense depuis un script python pour ajouter des vl...
Mehdi BENLAKHAL
02:39 PM Revision f0584e6d: Merge pull request #3887 from JoeriCapens/dhcp-ddns-algorithm-choice
Steve Beaver
01:32 PM Revision 662096bb: Add missing $cpzone declaration. Fixes #8238
(cherry picked from commit 918ef12c73364f28fe19891e9d13f57f454c897c) Jim Pingle
01:32 PM Revision 918ef12c: Add missing $cpzone declaration. Fixes #8238
Jim Pingle
10:22 AM Bug #8239 (Resolved): If IPsec bypasslan is enabled while the LAN interface is disabled, all traffic bypasses IPsec
If IPsec bypasslan is enabled while the LAN interface is disabled, all traffic bypasses IPsec because it makes an SPD... Jim Pingle
08:50 AM Feature #6621 (Feedback): Permit DHCP Server Dynamic DNS server key algorithm type selection and use
Applied in changeset commit:534d7d6996854ed5f2521e7a796fb79aaacd176c. Joeri Capens
07:41 AM Todo #8237: Import netstat kresolve_list() fix from stable/11 to improve performance on some platforms
So far, so good. I no longer see a netstat process hanging around in top while watching the dashboard, the CPU usage ... Jim Pingle
07:40 AM Bug #8238 (Feedback): A global definition for $cpconfig is missing ...
Applied in changeset commit:918ef12c73364f28fe19891e9d13f57f454c897c. Jim Pingle
02:14 AM Bug #8238 (Resolved): A global definition for $cpconfig is missing ...
https://forum.pfsense.org/index.php?topic=141900.0 => [Captive Portal] Blocking a Previously White-listed MAC Doesn't... Gertjan KROEB

12/26/2017

08:22 AM Todo #8237 (Feedback): Import netstat kresolve_list() fix from stable/11 to improve performance on some platforms
Done. Let me know if I broke something. Luiz Souza
07:15 AM Todo #8237 (Resolved): Import netstat kresolve_list() fix from stable/11 to improve performance on some platforms
When viewing the dashboard on certain platforms, such as the SG-1000, the calls to netstat to gather data can be slow... Jim Pingle
01:26 AM Feature #8236: Ability to configure "forward-first" and "forward-host" options for more robust domain overrides in DNS Resolver
Possibly scratch the request for "forward-first" unless the implementer is very familiar with its behavior. In testin... Chaos215 Bar2

12/25/2017

11:43 PM Feature #8236 (New): Ability to configure "forward-first" and "forward-host" options for more robust domain overrides in DNS Resolver
It would be great to have the option to configure both forward-first (a simple checkbox) and forward-host (perhaps an... Chaos215 Bar2
05:40 AM pfSense Packages Bug #8115: After update 2.3.4_1-> 2.4.0 ospf over gre looks broken
workaround was :
MTU settings for GRE interfaces
new 2.4 version MTU 1376
old 2.3.4 version MTU 1400
in this ...
Konstantin Pobudzey
03:48 AM Bug #4310: Limiters + HA results in hangs on secondary
Lars Jorgensen wrote:
> Sander Naudts wrote:
> > Why not change target version to 2.9.9... sorry just little frustr...
Eero Volotinen

12/23/2017

11:59 AM Bug #8235: The browser must support cookies to login
Hello Scott,
Your symptoms are quite strange. Cookies are working in general since years in PFsense.
This should be...
Phil Keep
11:23 AM Bug #8235 (Not a Bug): The browser must support cookies to login
I updated pfsense to use secure socket that utilizes port 443 to login as the adminstrator. Upon attempting to login ... Scott Phillips

12/22/2017

10:02 PM pfSense Packages Feature #8210: DHCP servers do not automatically advertise interface IP as DNS server with BIND enabled
Filed #8234 against core pfSense. Chaos215 Bar2
09:55 PM pfSense Packages Feature #8210: DHCP servers do not automatically advertise interface IP as DNS server with BIND enabled
That's not true at all. All you need is a check-box to say "advertise interface IP as DNS server". Chaos215 Bar2
10:01 PM Feature #8234 (Rejected): DHCP server should be able to advertise interface IP automatically even with alternative DNS service
The text below the "DNS servers" fields on the DHCP server configuration reads "Leave blank to use the system default... Chaos215 Bar2
02:42 PM Revision 5a1ee50e: ipsec, multiple phase1 ciphers, make use of 'repeatable' group
Pi Ba
12:58 PM Revision 22dbacd0: ipsec, allow configuration of multiple ike phase1 encryption ciphers (algo/bits/hash/dh)
this is useful for mobile users that need to connect with different operating systems. This way there is no need to f... Pi Ba
12:46 PM Bug #8233 (New): NAT reflection back to originating host broken when using FQDN-based IP aliases
It appears NAT reflection is slightly broken when targeted at an IP alias which is defined via FQDN (rather than IP a... Chaos215 Bar2
02:35 AM pfSense Packages Feature #8232 (New): different ssl options based on the sni name
We have a strange issue with one of our sites on https and Android/Chrome, based on our research and big help of Pi B... Zoltan Beck

12/21/2017

08:56 PM Feature #7281: OpenVPN: Add support for IPv6 dynamic prefix selection
Actually, turns out that IPv4 addresses are actually preferred over ULA by most OSs, so connections don't use v6 when... Corey Boyle
07:26 PM Bug #8231 (Resolved): Undefined function while restoring config from older version
While restoring a 2.1.x config to a fresh 2.4.2 install, it fails with:
PHP Fatal error: Call to undefined function...
Massimo Maggi
05:56 PM pfSense Packages Feature #8228: HAProxy ssl verify none
Basically same way you open a bug, just set the Tracker option to 'Feature' which is actually the same as you did for... Pi Ba
05:15 PM pfSense Packages Feature #8228: HAProxy ssl verify none
Thank you one more time, how/where can I open a feature request? :) Zoltan Beck
01:09 PM pfSense Packages Feature #8228: HAProxy ssl verify none
-Yes buying a extra IP would work could point the example2.com there and have a Frontend specifically for that.
-Oth...
Pi Ba
07:31 AM pfSense Packages Feature #8228: HAProxy ssl verify none
Thank you very much for your help, now it's clear what happens, but still I have something unclear.
So we have two...
Zoltan Beck
04:50 PM Revision facd8c53: Fix the unnecessary 'RAM Disk has settings has changed' reboot every time the miscellaneous settings are saved.
Luiz Souza
04:29 PM Revision f50bb07e: Revert "Fix a bug in interfaces.php that will cause a failure on first 'Save' of 'OPT1' with some hardware configurations."
This reverts commit 373513a56140215c93282252186a938b7cefcf47. Luiz Souza
03:20 PM Revision 2737a09d: Merge pull request #3881 from marjohn56/Increase-FPM-process-availability-in-high-ram-systems
Steve Beaver
03:19 PM Revision 6b54c8a4: Merge pull request #3792 from PiBa-NL/20170731-status_queues-realtime
Steve Beaver
03:19 PM Revision 07127d13: Merge pull request #3867 from dennypage/master
Steve Beaver
03:18 PM Revision c93231e1: Merge pull request #3866 from PiBa-NL/20171104-pkg-reinstallmissingpackage
Steve Beaver
02:48 PM Revision f53d18a6: Merge pull request #3891 from miken32/patch-1
Steve Beaver
02:02 PM pfSense Packages Bug #8213: acl src file not populated from alias
Basically current haproxy package only supports static ip/subnet aliases.
Workaround available here (Thanks Jerry ...
Pi Ba
12:48 PM pfSense Packages Bug #6449: Email Reports not wait a long command end to send the report.
can close this issue ,
I had forgotten that ticket ..
tested today with pfsense 2.4.3 daily build and work .
...
Luis Couto

12/20/2017

03:16 PM pfSense Packages Feature #8230 (New): telegraf automatic input plugins configuration for enabled pfsense package
Telegraf configuration should be updated for input plugins when corresponding pfSense packages are enabled (e.g. hapr... Nicolas Marot
01:34 PM pfSense Packages Feature #8216: Add prometheus output for telegraf
it is no more than listening on port 9126 on lan interface, but while disabling any other outputs client. Nicolas Marot
01:08 PM pfSense Packages Feature #8228: HAProxy ssl verify none
I think we have a problem with the word 'ALL' here.
Don't configure a CA to check client certificates against if y...
Pi Ba
12:58 PM pfSense Packages Feature #8228: HAProxy ssl verify none
But if I use the options like on the screenshot attached, then the pfsense makes the following config:
/var/etc/ha...
Zoltan Beck
12:56 PM pfSense Packages Feature #8228: HAProxy ssl verify none
"Leave all these options empty" Pi Ba
12:52 PM pfSense Packages Feature #8228: HAProxy ssl verify none
sorry but I think we are talking about different things. So if I use the options like on the screenshot attached, the... Zoltan Beck
11:07 AM pfSense Packages Feature #8228 (Rejected): HAProxy ssl verify none
Jim Pingle
11:07 AM pfSense Packages Feature #8228: HAProxy ssl verify none
p.s.
If you don't want to use client certificates, then just don't configure any of the options related to that.?
Pi Ba
10:40 AM pfSense Packages Feature #8228: HAProxy ssl verify none
"If set to 'none', client certificate is not requested. *This is the default.*"
As it is the default you don't nee...
Pi Ba
10:04 AM pfSense Packages Feature #8228 (Rejected): HAProxy ssl verify none
Dear All,
I've a strange issue with HAProxy serving HTTPS pages and phones with Android/Chrome. THe issue is the...
Zoltan Beck
12:16 PM pfSense Packages Bug #7755: Avahi package is not secure by default
Furthermore, today i sniffed on our branch office`s openvpn Interfaces just to find, that mDNS/bonjour traffic from t... Roland Kletzing
11:13 AM pfSense Packages Bug #8229: syslog-ng stops parsing logs after logrotate run
I see that syslog-ng 3.13.2 has been released. Perhaps an update is in order. Orion Poplawski
11:12 AM pfSense Packages Bug #8229 (Closed): syslog-ng stops parsing logs after logrotate run
I'm having trouble on one of my three pfsense boxes with syslog-ng stopping processing logfiles after the logrotate r... Orion Poplawski
07:52 AM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
I can confirm that 2.4.2_1 is still affected. So for now, its not possible to do site to site IPSec tunnel (except in... Daniel Berteaud
07:18 AM Bug #8227: Pfsense - Schedules service
This is not a platform for discussion and diagnosis, take the topic to the forum, mailing list, or reddit for assista... Jim Pingle
07:17 AM Bug #8227: Pfsense - Schedules service
https://drive.google.com/file/d/1Qj2-4Tk3roiPP0aA0ASeYiJCoI9dyPuU/view?usp=drivesdk Tobias Müllauer
07:17 AM Bug #8227: Pfsense - Schedules service
Jim Pingle wrote:
> Schedules are working fine, more likely some input on the page is not correct or it's not being ...
Tobias Müllauer
07:11 AM Bug #8227 (Not a Bug): Pfsense - Schedules service
Schedules are working fine, more likely some input on the page is not correct or it's not being used properly (e.g. y... Jim Pingle
07:09 AM Bug #8227 (Not a Bug): Pfsense - Schedules service
Hi.
I have some trubbel to sett up Schedules in Pfsense 2.4.2-RELEASE (amd64)
built on Mon Nov 20 08:12:56 CST ...
Tobias Müllauer
07:12 AM Bug #8223 (Resolved): Cannot delete vlan, I get redirected to an empty page
Jim Pingle
07:11 AM Bug #8222 (Resolved): When trying to add another OPT interface, it's replacing the last existing one
Jim Pingle

12/19/2017

09:51 PM Bug #8222: When trying to add another OPT interface, it's replacing the last existing one
Using
2.4.3-DEVELOPMENT (amd64)
built on Tue Dec 19 18:22:48 CST 2017
FreeBSD 11.1-RELEASE-p6
I can say ...
Alexandre Paradis
09:51 PM Bug #8223: Cannot delete vlan, I get redirected to an empty page
Using
2.4.3-DEVELOPMENT (amd64)
built on Tue Dec 19 18:22:48 CST 2017
FreeBSD 11.1-RELEASE-p6
I can say ...
Alexandre Paradis
05:56 PM Bug #8206 (Resolved): Hosted Openappid rules - syntax error
Jim Pingle
05:07 PM Bug #8206: Hosted Openappid rules - syntax error
Renato Botelho wrote:
> Should be fixed now
Sorry for the delayed confirmation but, as I'm sure you know by now, ...
Lance Fogle
11:17 AM Bug #6447: Interface allows dynamic gateway to be deleted
this is rather confusing - i stumbled above some "_dhcp" postfixed gateway entry and was not able to get rid of it - ... Roland Kletzing
05:49 AM Bug #8226 (Resolved): Pass-through MAC automatic additions adds duplicate
When a user has multiple browser tabs open before logging into the captive portal. Each 'll show the captive portal l... Sander Naudts
04:14 AM Feature #8168: strongswan dhcp option
Lars Pedersen wrote:
> Would be nice to have the dhcp plugin for strongswan in pfsense. This feature could be useful...
Lars Pedersen

12/18/2017

05:28 PM Revision 11f89751: allow for timezones with half hour increments i.e. asia/kolkata
Stephen Jones
05:23 PM Revision 5946477f: Fixed #8129 Updated to show timezones that have half hour increments i.e. asia/kolkata
Stephen Jones
01:55 PM Revision e34c96a3: Revert "Merge pull request #3868 from loonylion/master"
Caused issues reported in https://redmine.pfsense.org/issues/8223
This reverts commit 74c55258b21ada7a542965c2470fbaa...
Steve Beaver
01:39 PM Revision 32edd5dd: Optimze ICMP description processing
Steve Beaver
01:31 PM Revision 609ef335: Fixes #8219
Escape single quotes when they arise from ICMP description translations Steve Beaver
11:30 AM Bug #8129 (Feedback): NTP Status -> Server time value incorrect for timezone Asia/Kolkata
Applied in changeset commit:5946477f65f0f7a20504833ac156419875ac2b2b. Anonymous
11:20 AM Bug #8165: Fragmented at source IPv6 packets (UDP + ICMP Ping) are not forwarded / v2.4.2 AMD64
Just realised the packet capture example was truncated by one character. Here's what it should look like:
16:56:5...
Mike Nichols
10:52 AM Bug #8222: When trying to add another OPT interface, it's replacing the last existing one
I have revered the OPT naming code to vanilla pfSense; if this bug still occurs it's caused by something else. Peter Schofield
08:00 AM Bug #8222 (Feedback): When trying to add another OPT interface, it's replacing the last existing one
This was likely a problem introduced during a recent pull request merge: https://github.com/pfsense/pfsense/pull/3868... Jim Pingle
10:52 AM Bug #8223: Cannot delete vlan, I get redirected to an empty page
This should now be fixed; I corrected the broken reference. Peter Schofield
08:07 AM Bug #8223 (Feedback): Cannot delete vlan, I get redirected to an empty page
Jim Pingle
07:56 AM Bug #8223: Cannot delete vlan, I get redirected to an empty page
PR reverted. Anonymous
07:49 AM Bug #8223: Cannot delete vlan, I get redirected to an empty page
Yes. let's back out that PR. Anonymous
07:09 AM Bug #8223 (New): Cannot delete vlan, I get redirected to an empty page
That page doesn't exist, but there is a reference to it: https://github.com/pfsense/pfsense/blob/master/src/usr/local... Jim Pingle
06:52 AM Bug #8223 (Closed): Cannot delete vlan, I get redirected to an empty page
Unable to reproduce
There is no interfaces_vlan_new_prof.php page in pfSense
Suggest you discuss on the forum.
Anonymous
10:09 AM Feature #7281: OpenVPN: Add support for IPv6 dynamic prefix selection
I'm actually using a ULA range for the IPv6 Tunnel Network, so that doesn't need to change, but the IPv6 Local networ... Corey Boyle
09:04 AM Feature #7281: OpenVPN: Add support for IPv6 dynamic prefix selection
I would love to see this as well. Corey Boyle
09:53 AM Bug #8003: IPsec weirdness with 2.4.1
I am also having similar problems on 2.4.2.
One end shows connected, the other end shows disconnected. And - the pfS...
Mitch Claborn
09:49 AM Bug #7420: ipsec status freezing
I am also having this problem with 2.4.2.
Command line doesn't help either:
swanctl --list-sas
connecting to ...
Mitch Claborn
09:47 AM Bug #8225 (Not a Bug): wrong gateway/monitor address for OpenVPN IPv6 gateway?
After configuring a remote access OVPN server, with IPv6 address for the tunnel network and the local network, the au... Corey Boyle
07:40 AM Bug #8219: No gateway groups on french language
Applied in changeset commit:609ef33537e10e6faef38bbbeb16e477384a4503. Anonymous
07:32 AM Bug #8219 (Feedback): No gateway groups on french language
Corrected by escaping single quote characters when they arise in ICMP descriptions. Anonymous

12/17/2017

09:55 PM pfSense Packages Feature #8224: Add "OU" field to FreeRADIUS page
Javier Ramirez wrote:
> FreeRADIUS will attempt to *compare* this cert (with an OU) to the details provided in FreeR...
Javier Ramirez
09:51 PM pfSense Packages Feature #8224 (New): Add "OU" field to FreeRADIUS page
It's possible to have FreeRADIUS validate the server/client cert against the CA. However, there's no place in the GUI... Javier Ramirez
10:11 AM Bug #8221 (Not a Bug): config xml downloads with incorrect creation date on macOS 10.13.
Definitely not anything in pfSense. There is nothing on the firewall that sets a date/time for the backup except for ... Jim Pingle
04:39 AM Bug #8221: config xml downloads with incorrect creation date on macOS 10.13.
I think this is actually a problem with the Synology NAS where I store my router XML files. Looks like they have a b... Ashley Harvey
12:29 AM Bug #8221 (Not a Bug): config xml downloads with incorrect creation date on macOS 10.13.
I haven't tested this thoroughly, but when downloading my config files, the date stamp is in the filename and is corr... Ashley Harvey
02:02 AM Bug #8223 (Resolved): Cannot delete vlan, I get redirected to an empty page
The page I get redirected is : https://192.168.5.2/interfaces_vlan_new_prof.php
404 Not Found
nginx
Using ...
Alexandre Paradis
01:59 AM Bug #8222 (Resolved): When trying to add another OPT interface, it's replacing the last existing one
Using
2.4.3-DEVELOPMENT (amd64)
built on Fri Dec 15 09:33:08 CST 2017
FreeBSD 11.1-RELEASE-p6
I cannot ...
Alexandre Paradis
12:44 AM Revision c56471a7: Fixes #7413: Some DHCPv6 leases are not displayed in the GUI
. Better handling/parsing of ISC dhcpv6 leases file and removal of unnecessary properties.
. Experimental Pools/failo...
Anders Lind

12/16/2017

09:46 PM Bug #8220 (Resolved): UI does not allow multiple MAC for same DHCP address
The UI does not allow multiple MAC addresses to be assigned the same DHCP address, even when using different hostname... Doug Fultz
07:41 PM Bug #7413: status_dhcpv6_leases.php: Some DHCPv6 leases are not displayed in the GUI
I have added a PR here: https://github.com/pfsense/pfsense/pull/3892
and updated https://forum.pfsense.org/index.php...
Anders Lind
05:41 PM Bug #8219 (Resolved): No gateway groups on french language
When in the french language is displayed there is no gateway group options on firewall interface rules. Chris Macmahon
11:11 AM Bug #8217: Traffic Graph widget can not handle more than 4 interfaces
Ok, it was a bug in the javascript file traffic-graphs.js line #332
I just had to hide the widget (-) .. reload t...
Mubarak Alrashidi
10:04 AM Bug #8217 (Resolved): Traffic Graph widget can not handle more than 4 interfaces
If there is more than 4 (four) interfaces, the Traffic Graph widget won't show the statistics graph. Mubarak Alrashidi
10:12 AM Bug #8218 (Duplicate): Changing an interface name will break the manual created gateway-group
If a gateway-group is created. then change the name of an interface which is a member of that gateway-group. will bre... Mubarak Alrashidi
07:54 AM pfSense Packages Feature #8216 (New): Add prometheus output for telegraf
Please consider adding prometheus output as output choice for telegraf Nicolas Marot
07:39 AM Bug #8215: rcvif is NULL in ip6_forward - possible regression in 2.4
I'd like to build a replacement kernel with the change so we can get our VPN working again. Is there a specific guide... Lih Wei Chia
07:37 AM Bug #8215 (Closed): rcvif is NULL in ip6_forward - possible regression in 2.4
[Bug re-created after previous one was accidentally closed by staff]
Hi, I'm facing random crashes after upgrading...
Lih Wei Chia
04:31 AM pfSense Packages Bug #8214 (Resolved): HOME_NET includes all locally attached Networks
When selecting a passlist to define the HOME_NET the HOME_NET always contains the locally attached networks of all in... Julian Wecke

12/15/2017

11:42 PM Revision e5c4b4fc: Fix input field help texts
Joeri Capens
07:04 PM Revision 9ad6899e: make inputs a bit wider for fahrenheit
Michael Newton
06:23 PM Revision e5d14da2: address comments
Michael Newton
06:21 PM Revision 7620b362: fix copy/paste error
Michael Newton
06:11 PM Revision 8b09ec18: update label on unit change
also ensure unit labels can be internationalized, and fix some whitespace Michael Newton
05:55 PM Revision bc63503b: Moving this code to PHP for i18n
Michael Newton
05:42 PM Revision cb7bef9d: don't change thresholds to F until after passing to Javascript
Michael Newton
04:28 PM pfSense Packages Bug #8213 (New): acl src file not populated from alias
Trying to use an alias as frontend ACL source IP filter. Alias (7 hosts) resolves correctly in pfSense, HAProxy conf... Jerry Fath
03:32 PM Revision abe217af: Merge pull request #3890 from JoeriCapens/master
Steve Beaver
03:24 PM Feature #7671: Gateway Monitoring Via Custom Script or Telnet.
Alright script is done, its pretty basic, See attached. Took Brendon's advice and used the Mark gateway as down optio... Bridgetowermedia IT
01:51 PM pfSense Packages Bug #8212 (Not a Bug): Ipsec overwiew
Please post on the forum, mailing list, or reddit to discuss your problem. It is unlikley you have a bug based on the... Jim Pingle
01:47 PM pfSense Packages Bug #8212 (Not a Bug): Ipsec overwiew
Hi
At some point I had some IpSec VPNs configured and I deleted them because they were no longer needed, those VPN...
Vincent Romero
10:49 AM pfSense Packages Feature #8211 (Resolved): ACME cron job <- log activity
Please log ACME's cron activity in the system log (normal and error outputs) so we know that there's any issue with i... robi robi
09:40 AM Bug #6319 (Feedback): DHCP6 DDNS tsig key missing from dhcpv6.conf for reverse zone
Applied in changeset commit:0e13a3a63b28a0b8dc4b86543adaf0506ab1d17c. Joeri Capens
04:55 AM Bug #8206 (Feedback): Hosted Openappid rules - syntax error
Should be fixed now Renato Botelho
12:43 AM Bug #8206: Hosted Openappid rules - syntax error
Renato knows. Jim Thompson
01:16 AM Bug #8061: LAN WAN Interfaces missing in Traffichshaper
I am also confirming this issue on 2.3.5 and now 2.3.5_p1.
We have 22 affected units and they are all using the ig...
Josh Chilcott

12/14/2017

09:58 PM pfSense Packages Feature #8210 (Rejected): DHCP servers do not automatically advertise interface IP as DNS server with BIND enabled
That would require coding support for the BIND package in the base system, which isn't going to happen. If you want t... Jim Pingle
09:32 PM pfSense Packages Feature #8210 (Rejected): DHCP servers do not automatically advertise interface IP as DNS server with BIND enabled
The text on the DNS Servers field of the DHCP server configuration pages reads "Leave blank to use the system default... Chaos215 Bar2
08:35 PM Revision 78347c9b: Add a missing return when no NIC is found.
Luiz Souza
07:27 PM Revision 87d2f8cd: Abort the initial interface setup when no interfaces are found.
Luiz Souza
11:57 AM pfSense Packages Bug #8209 (Closed): Suricat Inline netmap bad packet errors
Using PFsense 2.4.2 and Suricata 4.0.1_1 I using Inline mode, I see errors like this appearing in the system log rath... Stan Masterson
08:27 AM Bug #6223 (Closed): IPsec + OpenBGPD fails with "PF_KEY socket: No buffer space available"
It's still broken with FreeBSD 11.x and OpenBGPD and it's unclear if that combination will be fixed upstream.
If y...
Jim Pingle

12/13/2017

09:55 PM Bug #8208 (Resolved): Restoring a config in 2.4.2 with 2.3.X Security/Errata Only repo selected breaks PHP
After attempting to repair repos for a failed upgrade, config was exported from 2.3.4-P1 and imported to a fresh inst... Paighton Bisconer
09:23 PM Bug #8056: Bridge + CARP crashes/freezes pfSense
Happens on both e1000 drivers and virtio drivers.
Harry Coin
09:22 PM Bug #8056: Bridge + CARP crashes/freezes pfSense
This is observed on pfsense running in a QEMU/KVM host running Ubuntu/"artful". Harry Coin
01:43 PM Bug #8056: Bridge + CARP crashes/freezes pfSense
PF deadlocks once every 3 hours or so. There's a process holding a lock (carp lock, bridge lock)? which then I thin... Harry Coin
01:40 PM Bug #8056: Bridge + CARP crashes/freezes pfSense
Confirmed. For detail, see this.
https://redmine.pfsense.org/issues/8145
Harry Coin
08:29 PM Revision 207abc3e: spelling!
Michael Newton
01:43 PM Revision 352612a2: Use correct repo path for i386
Renato Botelho
01:41 PM Revision ec308151: Use correct repo path for i386
Renato Botelho
10:47 AM Bug #8207 (New): 2.4 cannot boot as a Xen VM with more than 7 NICs
2.4 does not seem to be able to boot when running as a VM under Xen when the guest is assigned more than 7 NICs. Boo... Michael Reardon
06:28 AM Revision 3f3641a4: "Save" user selection for DUID type
It proved confusing for users who entered a DUID as a certain type to
see the resulting DUID file displayed as a "Raw...
kang tastic
04:00 AM Revision 7955bcce: Remove endianness checking
all pfSense builds are little-endian kang tastic

12/12/2017

10:43 PM Revision 34d4ffe9: update convenience functions
Michael Newton
10:42 PM Revision b807b8cc: update threshold values dynamically
otherwise problems occur with saving wrong values when switching between C/F Michael Newton
09:38 PM Revision 5d73b032: more accurate progress bar display
we only use Fahrenheit for display, don't change the values! Michael Newton
09:02 PM Revision 7578d907: show ºF on updates via javascript
Michael Newton
08:19 PM Revision 1532881e: initial display of temperature in ºF
still need to update javascript Michael Newton
07:41 PM Revision 8405ebed: account for thresholds and bar width in ºF
global variables are really really ugly, this should be wrapped in an anonymous function Michael Newton
07:30 PM Revision 9b6b13e6: Fix build_snapshots.sh -n
Renato Botelho
07:30 PM Revision 0f4ed832: Fix build_snapshots.sh -n
Renato Botelho
07:24 PM Revision 188d7f19: display/enter thresholds in ºF as well
Michael Newton
06:58 PM Revision 090a9f12: fix copy/paste error
Michael Newton
06:53 PM Revision 7e1b79e6: provide temperature in Fahrenheit
Also resolve some indent issues, restrict live updates to temperature value only (not unit text) Michael Newton
06:38 PM Revision b8810db7: checkbox for option to display Fahrenheit
Michael Newton
05:41 PM Bug #8206: Hosted Openappid rules - syntax error
This was originally posted in the forum at https://forum.pfsense.org/index.php?topic=141319.0 Lance Fogle
05:39 PM Bug #8206 (Resolved): Hosted Openappid rules - syntax error
There is currently no community knowledge of who the "volunteer maintainer" is for the file hosted at http://files.pf... Lance Fogle
03:48 PM Feature #8205: Allow display of temperature in Fahrenheit
https://github.com/pfsense/pfsense/pull/3891 Michael Newton
01:54 PM Feature #8205 (Resolved): Allow display of temperature in Fahrenheit
For the dashboard temperature sensor widget, Americans should be able to use their strange units.
Working on a pul...
Michael Newton
03:12 PM Revision bea1ef64: Add new CONTRIBUTING file and Pull Request template
Jim Pingle
10:20 AM Bug #8204 (Not a Bug): unbound returning funny ip instead of nothing
It would appear that either you have forwarding mode on and your upstream server returns its own address instead of N... Jim Pingle
10:19 AM Bug #8204: unbound returning funny ip instead of nothing
please close the ticket. Problem ist DNS of Provider. Tom Mü-Ko
10:18 AM Bug #8204: unbound returning funny ip instead of nothing
close Tom Mü-Ko
10:06 AM Bug #8204 (Not a Bug): unbound returning funny ip instead of nothing
where I ask unbount on pfSense for an IP, i.e. 1.1.1.1 it returns 62.138.239.45, 62.138.238.45:... Tom Mü-Ko
07:30 AM Bug #8201: 502 gateway issues Increase FPM process availability in high ram systems
PR: https://github.com/pfsense/pfsense/pull/3881 Jim Pingle
02:51 AM Bug #8201 (Duplicate): 502 gateway issues Increase FPM process availability in high ram systems
To reduce chance of nginx gateway error when interacting with FPM backend, this patch does the following, starts up e... Martin Wasley
07:28 AM Bug #8200: Set VLAN priority on on dhcp6c packets
Referencing by number won't automatically create a link between Github and Redmine, you'll have to use the entire URL... Jim Pingle
02:47 AM Bug #8200: Set VLAN priority on on dhcp6c packets
PR #3862 Martin Wasley
02:41 AM Bug #8200 (Resolved): Set VLAN priority on on dhcp6c packets
dhcp6c packets are not being tagged with VLAN priority.
Pull request issued:
PR 3862
Martin Wasley
07:22 AM Feature #8191: IPv6 - Support for configuring multiple DUID types
PR: https://github.com/pfsense/pfsense/pull/3889 Jim Pingle
05:10 AM pfSense Packages Feature #8203 (Resolved): pfSense-pkg-suricata: extended eve output selectable headers
If the extended eve output is selected suircate gets configured to log all possible http headers. This might be too m... Julian Wecke
03:45 AM Revision fffb9eed: Code cleanup
Add a check to Copy DUID button on system_advanced_network.php kang tastic
03:09 AM Feature #8202 (Resolved): Captive portal: add support for setting traffic quotas
Pull request #3453 on github https://github.com/pfsense/pfsense/pull/3453
Add support for traffic quotas to captiv...
Caio Plumbeo
02:11 AM pfSense Packages Bug #8194: BIND fails to respond after interface goes down
* "Any configuration changes…" Chaos215 Bar2
01:44 AM pfSense Packages Bug #8194 (Closed): BIND fails to respond after interface goes down
2.4.2-RELEASE with BIND 9.11_9 on SG-4860
Steps to reproduce:
1) Install pfSense 2.4.2-RELEASE and the BIND packa...
Chaos215 Bar2
02:05 AM pfSense Packages Feature #8199 (New): Support reordering and/or sort alphabetically across BIND package
The BIND package has many lists (ACLs, Views, Zones, Zone Domain records, etc.) whose order seems to be fixed permane... Chaos215 Bar2
01:57 AM pfSense Packages Feature #8198 (Resolved): pfSense-pkg-LCDproc: Add a link status screen for each interface
see pull request: https://github.com/pfsense/FreeBSD-ports/pull/377 Christian Schwamborn
01:56 AM pfSense Packages Bug #8197 (Resolved): BIND UI fails to properly update zone with inline DNSSEC signing enabled
2.4.2-RELEASE with BIND 9.11_9 on SG-4860
Steps to reproduce:
1) Install pfSense 2.4.2-RELEASE and the BIND packa...
Chaos215 Bar2
01:56 AM pfSense Packages Feature #8196 (Resolved): pfSense-pkg-LCDproc: add a shutdown/reboot control menu
see pull request: https://github.com/pfsense/FreeBSD-ports/pull/376 Christian Schwamborn
01:47 AM pfSense Packages Bug #8195 (Closed): BIND packages launches two instances of /usr/local/sbin/named on boot
2.4.2-RELEASE with BIND 9.11_9 on SG-4860
With the BIND package installed and enabled, I see two identical "/usr/l...
Chaos215 Bar2
12:22 AM pfSense Packages Bug #8193: Cellular Package Update
https://github.com/pfsense/FreeBSD-ports/pull/414 Sven Auhagen
12:21 AM pfSense Packages Bug #8193 (Resolved): Cellular Package Update
Hi,
this is the ticker for a PR for a larger update to the cellular package.
The main changes are:
Add a fixed...
Sven Auhagen

12/11/2017

08:51 PM Bug #8192 (New): dpinger - Change in ISP link-local IPv6 address drops connectivity
When connecting via PPPoE on a DSL connection, the IPv6 link-local address on an ISP's router may change periodically... Kristopher Kolpin
08:09 PM Feature #7596: Ting Config
to update this issue, i have pushed the Ting apn settings to upstream and should be added soon. wesley jackson
07:57 PM Feature #8191: IPv6 - Support for configuring multiple DUID types
Sorry about Post 1, I typo'd the type numbers. Post 2 is correct. kang tastic
07:55 PM Feature #8191: IPv6 - Support for configuring multiple DUID types
There are currently four types of DUID (DHCP Unique Identifier) defined in IETF RFCs - DUID-LLT, DUID-EN, and DUID-LL... kang tastic
06:33 PM Feature #8191 (Resolved): IPv6 - Support for configuring multiple DUID types
There are currently four types of DUID (DHCP Unique Identifier) defined in IETF RFCs - DUID-LLT, DUID-EN, and DUID-LL... kang tastic
07:06 PM Bug #8122: openvpn client is unable to use OTP (temporary) passwords
PR implementing this feature https://github.com/pfsense/pfsense/pull/3877 Sorin Sbarnea
06:27 PM pfSense Packages Bug #8189: JavaScript does not work to disable/enable form elements
https://github.com/pfsense/FreeBSD-ports/pull/489
Not sure how this got assigned to me when I created it, hopefull...
Michael Newton
03:47 PM pfSense Packages Bug #8189 (Resolved): JavaScript does not work to disable/enable form elements
There's some ancient DOM Level 0 code present, and it does not work. This should be updated to use jQuery. Will uploa... Michael Newton
05:37 PM Revision 5ab3724d: Make necessary changes to pkg_chroot() use correct ABI/ALTABI information
Renato Botelho
05:37 PM Revision 00717e03: Define build repo to be used during build process
Renato Botelho
05:37 PM Revision 27d23b73: Make necessary changes to pkg_chroot() use correct ABI/ALTABI information
Renato Botelho
05:37 PM Revision 013e93a6: Define build repo to be used during build process
Renato Botelho
05:36 PM Revision a76b4810: Make necessary changes to pkg_chroot() use correct ABI/ALTABI information
Renato Botelho
05:36 PM Revision dbd615c4: Define build repo to be used during build process
Renato Botelho
04:59 PM Revision c0ccf138: Use correct format for altabi
Renato Botelho
04:44 PM Revision c7d6a5f5: Replace %%ARCH%% by arch
Renato Botelho
04:29 PM Revision 96dc3579: Make necessary changes to pkg_chroot() use correct ABI/ALTABI information
Renato Botelho
04:02 PM pfSense Packages Feature #8190 (Resolved): Enhance RRD_Summary package with historical reporting
RRD_Summary should allow display of available historical data beyond current and previous month. Created PR https://... John Silva
03:55 PM Revision e0b28058: Bootstrap pkg from 2.3 repo
Renato Botelho
03:51 PM Feature #8187: Gateways, allow for configuring a gatewaygroup as the default gateway. #3781
PR: https://github.com/pfsense/pfsense/pull/3781 Jim Pingle
03:33 PM Feature #8187 (Resolved): Gateways, allow for configuring a gatewaygroup as the default gateway. #3781
Gateways, allow for configuring a gatewaygroup as the default gateway.
-Avoid changing routes by just visiting a web...
Pi Ba
03:43 PM pfSense Packages Feature #8188 (Resolved): Support response policy zones in bind package
An RPZ "selectively intercepts DNS resolution for known-malicious network assets including domain names, IP addresses... Michael Newton
03:35 PM Revision 8dfe6ef4: Use 2.3 repo during build process
Renato Botelho
03:30 PM Feature #8186 (Resolved): ipsec, allow configuration of multiple ike phase1 encryption ciphers #3711
ipsec, allow configuration of multiple ike phase1 encryption ciphers (algo/bits/hash/dh)
this is useful for mobile...
Pi Ba
03:29 PM Bug #8185 (Resolved): status_queues, provide 'realtime' statistics #3792
status_queues, provide 'realtime' statistics
-retrieve 'current' numbers from pfSense
not using qstats provides t...
Pi Ba
03:27 PM Feature #8184 (Resolved): pppoe, allow configuring pppoe on a carp interface so its only active on the master #3830
pppoe, allow configuring pppoe on a carp interface so its only active on the master
https://github.com/pfsense/pfsen...
Pi Ba
03:26 PM Bug #8183 (Resolved): pkg, fix, reinstall missing package #3866
change the reference from install_package(.) as this function does not exist.
https://github.com/pfsense/pfsense/pul...
Pi Ba
03:13 PM Bug #8182: Support shutdown scripts in /usr/local/etc/rc.d
Associated PR is https://github.com/pfsense/pfsense/pull/3867 Denny Page
03:12 PM Bug #8182 (Resolved): Support shutdown scripts in /usr/local/etc/rc.d
Support shutdown scripts in /usr/local/etc/rc.d. This allows packages to take critical shutdown actions such as UPS p... Denny Page
03:12 PM pfSense Packages Feature #8181: Quagga OSPF failover mechanism takes too much time to converge in HA environments
[[https://github.com/pfsense/FreeBSD-ports/pull/413#issuecomment-336879042]] Tim Economides
03:11 PM pfSense Packages Feature #8181 (Resolved): Quagga OSPF failover mechanism takes too much time to converge in HA environments
In order to improve uptime in HA environments, we developed a mechanism to dynamically change OSPF interface costs on... Tim Economides
02:43 PM Feature #5112: LDAP support for Captive Portal
Another potential PR: https://github.com/pfsense/pfsense/pull/3640 Jim Pingle
02:30 PM Feature #6621: Permit DHCP Server Dynamic DNS server key algorithm type selection and use
PR: https://github.com/pfsense/pfsense/pull/3887 Jim Pingle
02:29 PM Bug #6319 (New): DHCP6 DDNS tsig key missing from dhcpv6.conf for reverse zone
New PR: https://github.com/pfsense/pfsense/pull/3890 Jim Pingle
01:30 PM Revision 9a22bd60: It's time for 2.4.2-RELEASE-p1
Renato Botelho
01:29 PM Revision c6fbc61a: It's time for 2.3.5-RELEASE-p1
Renato Botelho
11:25 AM Feature #7671: Gateway Monitoring Via Custom Script or Telnet.
Interesting.
There is a "Mark Gateway as Down" option in the GUI. If you could figure out how to script that flag...
Brendon Baumgartner
10:55 AM Feature #7671: Gateway Monitoring Via Custom Script or Telnet.
Well it seems that the man behind the curtain of support says that this isn't possible... I refuse to accept that thi... Bridgetowermedia IT
09:29 AM pfSense Packages Bug #8180 (Closed): syslog-ng default log file
The main problem is that default log file produced by syslog-ng is never handled according rules mentioned under Gene... Miroslav Dvorak
07:18 AM Bug #8172 (Resolved): Patch to make ping_hosts.sh faster and avoid carp deadlock
Jim Pingle
07:18 AM Bug #8116 (Resolved): status_graph.php: Premature session termination when monitoring live traffic graphs
Jim Pingle
07:10 AM Bug #8175 (Not a Bug): DNS server not updated correctly
Sounds like a configuration or procedural issue. Post on the forum, mailing list, or reddit and discuss the problem t... Jim Pingle

12/10/2017

09:27 PM Bug #8179 (Resolved): Incorrect reverse DNS zone in DHCP server config for non-octet-aligned subnet mask
I have a DHCP server running on pfSense 2.4.2 on an interface with subnet 172.24.208.0 and subnet mask 255.255.254.0.... Chaos215 Bar2
12:04 AM Revision 7e3bdbaa: Set default key algorithm to hmac-md5
Joeri Capens

12/09/2017

09:36 PM Revision 0e13a3a6: Fix #6319 again by adding missing dns-servers
Joeri Capens
07:48 PM Feature #8178: Allow setting attributes for form elements in package XML
Good suggestions. The package manager XML thing is something of a nightmare to work on, but this might not be too bad.
Anonymous
07:01 PM Feature #8178 (New): Allow setting attributes for form elements in package XML
I'd like to suggest a couple of enhancements that would make package interfaces easier to work with when enhancing th... Michael Newton
07:03 PM Bug #8177: "../xsl/package.xsl" is referenced in package XML files but not on the firewall
Hit 'create' too soon by mistake. Anyhow:
cron.xml, arping.xml, shellcmd.xml, etc. etc. make reference to ../xsl/...
Harry Coin
06:58 PM Bug #8177 (New): "../xsl/package.xsl" is referenced in package XML files but not on the firewall
Harry Coin
06:52 PM Bug #8176 (New): ../schema/packages.dtd -- referenced in *xml, but missing?
Nearly every xml file in the packages collection includes
<!DOCTYPE packagegui SYSTEM "../schema/packages.dtd">
H...
Harry Coin
06:43 PM Bug #8174: DNS server option in wireless missing
The title should be: "DHCP server option in wireless missing" instead of "DNS server option in wireless missing", unf... h s
06:39 PM Bug #8174 (Not a Bug): DNS server option in wireless missing
You have a configuration issue, not a bug. Post on the forum, reddit, or mailing list for assistance. Jim Pingle
06:35 PM Bug #8174 (Not a Bug): DNS server option in wireless missing
I am using the Pfsense 2.4 with a wireless card.
The dhcp server (enable or disable) option is not available in th...
h s
06:41 PM Bug #8175 (Not a Bug): DNS server not updated correctly
I am using the Pfsense 2.4 with a wireless card.
I had to setup the settings of the wireless interface, but when c...
h s
11:31 AM Bug #7425: dhclient not sending option 77
Is this still planned for 2.4.3 ? Kev Willers
05:44 AM Feature #8173: dhcp6c - RAW Options
Sorry, that's not looking at what I have written... the keyword is raw-option in the config, not RAW. Martin Wasley
05:38 AM Feature #8173 (New): dhcp6c - RAW Options
The lack of available options in dhcp6c prevents pfSense from being used with certain ISPs.
For example, Orange Fr...
Martin Wasley
02:16 AM Revision 64b9d133: Support for configuring additional DUID types
dhcp6c stores the entirety of the OPTION_CLIENTID option in DHCPv6 datagrams in
its DUID file (named dhcp6c_duid), ex...
kang tastic
 

Also available in: Atom