Activity
From 02/16/2018 to 03/17/2018
03/17/2018
-
09:06 PM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
- Ermal says there is code in Darwin that addresses this.
-
07:44 PM Feature #8376 (Rejected): please allow dashes in alias names
- currently, characters in alias names are restricted to "a-z, A-Z, 0-9 and _". this is annoying because it's common t...
- 07:22 PM Revision a7e859b8: fixed code style
-
03:46 PM Bug #8375 (Duplicate): email session encryption fails in a private ca environment
- when configuring email notifications, and enabling encryption, message notifications fail if the certificate provided...
-
03:37 PM Todo #8374 (Rejected): email notification settings should not require password confirmation
- the email notification settings page [system -> advanced -> notifications -> e-mail], system_advanced_notifications.p...
-
03:28 PM Feature #8373 (Duplicate): please provide a mechanism to add certificates to the system's root certificate store
- the system root certificate store [/usr/local/share/certs/ca-root-nss.crt] includes a default set of certificates, bu...
-
03:21 PM Feature #8372 (New): add gui setting to adjust refresh rate for dynamic firewall logs
- status -> system logs -> firewall -> dynamic view [status_logs_filter_dynamic.php] appears to refresh approximately e...
- 02:47 PM Revision d038a5dd: Don't read picture file if it does not exist
03/16/2018
- 07:22 PM Revision 12b8f3c9: Don't read picture file if it does not exist
- 04:30 PM Revision 7c0e431a: avoid firwall rules for proxyarp addresses
-
02:07 PM Revision 29c52724: Add 2.4.3-RC repo conf
-
02:07 PM Revision 727e8b11: Add 2.4.3-RC repo conf
-
02:07 PM Revision 72fcd11a: Add 2.4.3-RC repo conf
-
02:07 PM Revision 663c7586: Add 2.4.3-RC repo conf
-
02:07 PM Revision 5c1132bf: Add 2.4.3-RC repo conf
-
02:00 PM Revision 5366c4bc: Initial steps for 2.4.3-RC
-
01:44 PM Revision b6c92510: Bump version to 2.4.4-DEVELOPMENT
-
01:36 PM Feature #8371 (Assigned): Reduce config.xml size by removing picture widget images to file system
- Upgraded with a picture in the widget and it was broken after the upgrade. No sign of the image in /conf/
Missing ... -
12:54 PM Feature #8371: Reduce config.xml size by removing picture widget images to file system
- new VM, setup picture, downloaded a backup. reset to factory defaults, restored backup, no Image in the widget: Scree...
-
10:51 AM Feature #8371 (Resolved): Reduce config.xml size by removing picture widget images to file system
- Images now saved in /conf
Upgrade_config function writes any images out to file system and truncates the config.xml ... - 01:23 PM Revision 1f0bbb13: Revise picture widget to store image on file system, not in XML config
- 01:20 PM Revision 9099582c: Merge branch 'master' of gitlab.netgate.com:pfsense/pfsense
- 01:08 PM Revision ee28e293: Revise picture widget to store inamge on file system, not in XML config
-
01:05 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- I will but I was hoping that pfSense people would also push FreeBSD on it, since I'm sure they have a much stronger a...
-
12:46 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- Since this is a missing feature in FreeBSD networking, you should lobby there for it to be addressed, not here:
ht... -
12:34 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- Now that the Spectre and Meltdown patches are coming out on various OSes this becomes even more critical to fix becau...
-
10:27 AM Bug #8290 (Resolved): filter.inc, make filter_expand_alias_array() return consistent results between first and second call.
- The part of this that was broken in pfSense is OK now, but it looks like haproxy will need to implement its own funct...
-
10:26 AM Bug #8333 (Resolved): Dynamic DNS updates may fail when using a gateway group as the interface when the default route is down
- Tested and working.
03/15/2018
-
06:35 PM Revision feeb0581: Make our rc ready for recently introduced exit code in fsck
- Inspired by: https://svnweb.freebsd.org/base?view=revision&revision=331015
-
04:38 PM Revision 1b20a4a6: Apply microcode update on boot
-
11:56 AM Feature #8370 (Closed): Add port number to predefined port drop-down list in NAT Rules
- Hi
I'm missing the port numbers for the predefined ports when creating a NAT rule.
When creating a firewall rul... -
11:55 AM Bug #8364 (Closed): Multiple IPsec child SA entries
- This appears to have been triggered by a DNS issue, so if there is any problem it is likely the same as #7413.
-
06:58 AM Bug #8208 (Resolved): Restoring a config in 2.4.2 with 2.3.X Security/Errata Only repo selected breaks PHP
-
12:43 AM Revision 0afa4c70: Really fix the typo now.
-
12:38 AM Revision a90f678d: Fix a typo.
03/14/2018
-
11:19 PM Revision 023a911b: Bump up the default config.xml version.
-
11:18 PM Revision f6bf385e: Add a placeholder for a factory update.
-
10:13 PM Bug #8208: Restoring a config in 2.4.2 with 2.3.X Security/Errata Only repo selected breaks PHP
- 2.3.4 Config with 2.3.X Errata Repo restored to 2.4 systems will break.
2.3.4 Config with 2.4.X Repo restored to 2.4... -
10:08 PM Revision 792b62ec: Add cpuctl module to allow updates to the CPU microcode.
-
10:06 PM Revision 392608c8: Sort the module list.
- 01:50 PM Revision f9b1c128: Fix case where $_POST['if'] == 0 in sprint_info_box()
-
12:51 PM Bug #8056 (Feedback): Bridge + CARP crashes/freezes pfSense
- This issue seems to be fixed (again) in my local tests.
Please check with tomorrow's snapshot. -
12:50 PM Bug #8368: Cannot log into webConfigurator from Firefox/Linux after fresh install
- Until it's proven to be a bug on pfSense (after discussion on the forum, subreddit, etc) then it doesn't belong here....
-
12:38 PM Bug #8368: Cannot log into webConfigurator from Firefox/Linux after fresh install
- I would agree about this being a client side issue if logins were to fail for every web site I visit. However, this i...
-
12:08 PM Feature #6457: Allow ability to configure AWS EC2 AMI via userdata
- A means of running a shell script in some manner as root at first launch would be helpful, a la `fetch -o - $USER_SCR...
03/13/2018
-
11:41 PM Bug #8369 (Rejected): Setting password complexity
- This kind of thing should be discussed on the actual forum at https://forum.pfsense.org, on the pfSense subreddit, or...
-
11:30 PM Bug #8369 (Rejected): Setting password complexity
- Hi All,
This is my first post on this forum, not very sure this is the right page I have to mention this topic.
... -
08:09 PM Bug #8368 (Rejected): Cannot log into webConfigurator from Firefox/Linux after fresh install
- There is no such problem with pfSense itself. That is a client side issue.
-
07:21 PM Bug #8368: Cannot log into webConfigurator from Firefox/Linux after fresh install
- Since this is a live system (on which I rely for Internet access), I cannot easily reproduce the issue with the same ...
-
07:16 PM Bug #8368 (Rejected): Cannot log into webConfigurator from Firefox/Linux after fresh install
- To reproduce:
* Install pfSense 2.4.2 from scratch.
* Assign interfaces, configure an IP address and DHCP server ... -
05:54 PM Bug #8367 (Resolved): Traffic Graph widget shows Inverse view, even when Inverse is set to Off.
- Tested in 2.4.3.a.20180313.0000.
When setting the Traffic Graph widget for Inverse=Off, the graph still displays i... -
01:49 PM pfSense Packages Feature #8203 (Resolved): pfSense-pkg-suricata: extended eve output selectable headers
-
01:46 PM pfSense Packages Feature #8203: pfSense-pkg-suricata: extended eve output selectable headers
- This feature has been implemented using code submitted by a package contributer. This issue can be closed.
Bill -
01:35 PM pfSense Packages Bug #7932 (Resolved): 2.4.0 & Snort 3.2.9.5_1 Pass Lists
-
01:31 PM pfSense Packages Bug #7932: 2.4.0 & Snort 3.2.9.5_1 Pass Lists
- This issue has been resoved in the 3.2.9.6 Snort package versions. The bogus text was coming from an attempt to use ...
-
01:24 PM pfSense Packages Feature #8362: Snort and Suricata Package - Allow for changing URLs, Ports, and Protocols to allow for local Repo of Signature Updates
- I will look at adding this feature to both packages. It would likely be just a text box where the admin could enter ...
-
01:21 PM pfSense Packages Feature #8311 (Rejected): Suricata persistent blocks
- Agreed, Bill. It's not worth the trouble to make them persist.
-
01:20 PM pfSense Packages Feature #8311: Suricata persistent blocks
- This is not going to happen as there is no need for all the necessary overhead persisting blocks would require. If S...
-
07:50 AM Bug #8364: Multiple IPsec child SA entries
- James Dekker wrote:...
-
05:54 AM Bug #8333: Dynamic DNS updates may fail when using a gateway group as the interface when the default route is down
- Well. I setup new one 2440 with latest 2.4.3 And 2 GW with Active/Passive GW group. Looks like DDNS should work becau...
-
05:46 AM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
- For reference, the upstream bug opened by Eric: https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=226411
-
01:08 AM Feature #336: Option to create lagg under assign interfaces
- +1
Just bumped into the need to do a fresh install of a LAGG+VLAN setup and could not do it via CLI.
03/12/2018
-
11:44 PM pfSense Packages Bug #8366: Avahi: "Publish DNS Servers" option does nothing
- https://github.com/pfsense/FreeBSD-ports/pull/504
-
11:39 PM pfSense Packages Bug #8366 (Resolved): Avahi: "Publish DNS Servers" option does nothing
- The "Publish DNS Servers" option is not being used when generating the avahi config which causes the DNS servers to a...
-
10:24 PM Revision a55718c8: Fix #8208
- When restoring backup, delete packages not present in new config.xml
-
10:24 PM Revision 8552be10: Ticket #8208
- When restoring backup, set default pkg repository
-
10:23 PM Revision 747b31dc: Ticket #8208
- When restoring backup, do not call pfSense-upgrade on boot
-
10:22 PM Revision 1bedcacc: Do not call get_pkg_info() when it's not going to be used
-
10:22 PM Revision fa5e9db2: Respect default repo
-
10:22 PM Revision b870f03d: Deduplicate build_repo_list() and get_repo_name()
-
07:31 PM Revision e00529a8: Fix miniupnpd build option name for pf.
-
07:30 PM Revision 424a4d37: Fix miniupnpd build option name for pf.
-
05:30 PM Bug #8208 (Feedback): Restoring a config in 2.4.2 with 2.3.X Security/Errata Only repo selected breaks PHP
- Applied in changeset commit:a55718c848d8534ba0e0dc87dd50a027aad64512.
-
01:49 PM Todo #6647: Enable Additional Security Headers
- We have our own internal controls to handle refererring URLS, so that header isn't desirable.
Reading about X-XSS-... -
08:19 AM Bug #6319 (Resolved): DHCP6 DDNS tsig key missing from dhcpv6.conf for reverse zone
-
08:18 AM Feature #6621 (Resolved): Permit DHCP Server Dynamic DNS server key algorithm type selection and use
-
08:18 AM Bug #8106 (Resolved): dhcp6c lock files not removed after unclean shutdown when using "Do not wait for an RA" on IPv6 WAN interface
-
08:08 AM Bug #4310 (Resolved): Limiters + HA results in hangs on secondary
- Confirmed working by multiple tests and users.
-
08:06 AM Bug #8360 (Resolved): pf rules occasionally contain "!/" where the WAN network/netmask should be
-
06:37 AM Bug #7600: Unable to save DNS Resolver settings
- I have also just faced this problem on my 2.3.5-RELEASE-p1 (i386) nanobsd (2g). Interesting is, that adding Host Over...
03/11/2018
-
08:49 AM Feature #8365 (Resolved): Button to copy rules from one interface to another
- Hello,
I just wanted to request a feature that i think is very helpful and almost necessary to have. I recently ad...
03/10/2018
-
04:57 PM Bug #8364: Multiple IPsec child SA entries
- ...
-
03:30 PM Bug #8364 (Closed): Multiple IPsec child SA entries
- Current Base System 2.4.3.a.20180309.1836
Connecting IPSec creates multiple ChildSA's:
Shell Output - ipsec sta... -
01:02 PM pfSense Packages Bug #8340: Status_Traffic_Totals Error
- An update note:
If I go into the package settings and disable graphing, then re-enable it, the problem appears sol... -
04:45 AM Bug #8363 (Closed): OpenVPN Client Has Needs to be restarted after pfsense restart to be connectable
- Hi,
This is a weird bug I encountered in last couple of the dev 2.4.3 builds.
The openvpn client interface at b... -
12:19 AM Bug #8360: pf rules occasionally contain "!/" where the WAN network/netmask should be
- Unable to duplicate after testing most of the day, multiple versions, multiple rule changes and configurations, multi...
03/09/2018
-
07:30 PM Revision c7500634: Fix one more IGMP ref. Fixes #8356
-
07:15 PM Revision ca5270b6: Correct variable reference for IGMP proxy enable in upgrade code. Fixes #8356
-
01:55 PM Feature #8356 (Resolved): igmp, Add option to disable the igmp service
-
01:54 PM Feature #8356: igmp, Add option to disable the igmp service
- Works as expected. With the checkbox unchecked, igmp proxy is disabled and not running. With the checkbox checked, ig...
-
01:30 PM Feature #8356 (Feedback): igmp, Add option to disable the igmp service
- Applied in changeset commit:ca5270b6540f374ea63fff912807a07ce2ef99eb.
-
01:11 PM Feature #8356 (New): igmp, Add option to disable the igmp service
-
01:06 PM Feature #8356: igmp, Add option to disable the igmp service
- With igmp proxy configured on 2.4.2(or p1), upgrade to 2.4.3 (running 2.4.3.a.20180308.1837 here). The config keeps i...
-
11:54 AM Bug #8048: DHCPv6 Configured for LAN without LAN interface
- Hit this on 2.4.3.a.20180308.1837. Workaround works.
-
08:51 AM Todo #7762 (Resolved): Add uid check to pfSense-upgrade and exit unless it is run as uid=0
- Works
-
04:53 AM Todo #7762 (Feedback): Add uid check to pfSense-upgrade and exit unless it is run as uid=0
- It was already fixed in commit ee4701adf85a6b5cb2f8d37f5fdeb7a5668eb674 almost a month ago. I forgot to update the ti...
-
07:52 AM pfSense Packages Feature #8362 (Closed): Snort and Suricata Package - Allow for changing URLs, Ports, and Protocols to allow for local Repo of Signature Updates
- We should have the ability to change the URLs, ports, and protocols used (perhaps even include option for SCP/SFTP) s...
-
07:33 AM Feature #8191 (Resolved): IPv6 - Support for configuring multiple DUID types
-
07:31 AM pfSense Packages Bug #8141 (Resolved): ACB uploads a version several times each second/minute when CaptivePortal is active.
-
02:54 AM pfSense Packages Bug #8141: ACB uploads a version several times each second/minute when CaptivePortal is active.
- Tested on Current Base System 2.4.3.a.20180308.0950
Confirmed no issues with users in captive portal creating ACB ... -
12:50 AM Revision 46ffb68f: Migrate firewall rules to create_interface_list()
-
12:31 AM Revision 82f3fd5f: Add support for interface groups in nat rules.
03/08/2018
-
06:44 PM Feature #3882: Add OUI database to the base system, remove dependency on nmap
- Why not reuse this: https://code.wireshark.org/review/gitweb?p=wireshark.git;a=blob_plain;f=manuf;hb=HEAD the license...
-
05:49 PM Feature #8191: IPv6 - Support for configuring multiple DUID types
- The different DUID types also appear to be formatted and stored in config.xml correctly for each respective option.
... - 05:04 PM Revision 1dfb84de: Merge pull request #3911 from PiBa-NL/20180304-igmp-disable
-
02:52 PM Bug #7772 (Assigned): Regression of Bug #906
-
02:52 PM Bug #7972 (Resolved): Captive portals do not synchronize voucher data in both directions
-
02:51 PM Bug #8266 (Resolved): Bogus error message occurs on killing OPenVPN connection
-
02:42 PM Todo #6998: Create a port for simplepie to keep it updated and use modular version
- This will be a larger factor when it is time for PHP 7
-
02:41 PM Revision 2e08a646: Add sanity check to rule passing out from host to ensure it does not have a blank destination subnet. Fixes #8360
-
02:32 PM Feature #8356 (Feedback): igmp, Add option to disable the igmp service
- PR has been merged
-
02:26 PM Bug #8302 (Resolved): traffic_graphs.widget.php potential XSS via settings
-
01:45 PM Bug #8302: traffic_graphs.widget.php potential XSS via settings
- On 2.4.2 CE, added traffic graph widget to dash, set refresh interval to 1s, saved, backed up config and edited the c...
-
01:13 PM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
- G Black wrote:
> At the moment booting appears to stop with this error, hit Ctrl+C to break out of the process
> ... -
11:51 AM Bug #8300 (Resolved): diag_system_activity.php: Potential XSS due to encoding of process output
-
11:40 AM Bug #8300: diag_system_activity.php: Potential XSS due to encoding of process output
- Running
grep -r '<script>alert(1)</script>' /
from shell on 2.4.2 generated an alert on Diag > System Activity... -
09:50 AM Bug #8360 (Feedback): pf rules occasionally contain "!/" where the WAN network/netmask should be
- Applied in changeset commit:2e08a64666620c8e0dd28eb7c14393bee7b2bfa8.
-
08:43 AM Feature #7769: DynDNS: Azure integration, update record in Azure (Dynamic DNS Client)
- I have a working prototype for Azure DNS in my fork:
The updated files are /etc/inc/dyndns.class, /etc/inc/services.... -
06:15 AM Bug #7502 (Resolved): Cannot set router lifetime to 0 in radvd
-
05:06 AM Bug #7502: Cannot set router lifetime to 0 in radvd
- Tested router lifetime configuration under services_router_advertisements.php
2.4.2_p1 return an error message
2... -
06:14 AM Bug #8129 (Resolved): NTP Status -> Server time value incorrect for timezone Asia/Kolkata
-
02:19 AM Bug #8129: NTP Status -> Server time value incorrect for timezone Asia/Kolkata
- Tested under 2.4.3
Dashboard: Current date/time Thu Mar 8 13:48:09 IST 2018
NTP Status Widget: Server Time 13:48... -
06:14 AM Bug #8219 (Resolved): No gateway groups on french language
03/07/2018
-
10:37 PM Bug #8219: No gateway groups on french language
- Confirmed not working in 2.4.2-p1, confirmed working on Système de base actuel 2.4.3.a.20180224.1931
Can be closed -
01:35 PM pfSense Packages Bug #8352 (Resolved): Write certificates to file system after renew not working for ACME v2
- Thanks for testing!
-
01:34 PM pfSense Packages Bug #8352: Write certificates to file system after renew not working for ACME v2
- Jim Pingle wrote:
> Fixed in ACME package version 0.2.3
I updated my package and confirmed this is resolved.
The... -
07:57 AM pfSense Packages Bug #8352 (Feedback): Write certificates to file system after renew not working for ACME v2
- Fixed in ACME package version 0.2.3
-
07:38 AM pfSense Packages Bug #8352 (Assigned): Write certificates to file system after renew not working for ACME v2
- This was a bug upstream in acme.sh that only affects ACME v2. After processing the certificates, the script unintenti...
-
12:07 PM Bug #8360 (Assigned): pf rules occasionally contain "!/" where the WAN network/netmask should be
- Attached patch should fix it, waiting for confirmation before committing.
-
09:40 AM Feature #8361 (Resolved): Add entered name to captive portal status and logs
- When using the captive portal with "Authentication: None", it would be useful to log the name the person enters in th...
-
07:57 AM pfSense Packages Bug #8354 (Feedback): ACME: period at end of key name breaks dns validation method
- Fixed in ACME package version 0.2.3
-
07:23 AM Bug #8335: System hang with LACP downlink to UniFi switch
- Mike Pastore wrote:
> Jeff Wischkaemper wrote:
> > I have an HP unmanaged switch on the LAN side of the network
> ...
03/06/2018
-
11:40 PM Bug #8335: System hang with LACP downlink to UniFi switch
- Jeff Wischkaemper wrote:
> I have an HP unmanaged switch on the LAN side of the network
Can you try a different s... -
07:06 PM Bug #8360 (Resolved): pf rules occasionally contain "!/" where the WAN network/netmask should be
- Very similar to #2883
I have been unable to duplicate this but have seen enough tickets/forum posts to warrant a l... -
03:27 PM Bug #7774: No TCP Reply State Established on GRE in IPsec Transport
- For what it is worth, I have reproduced this on stock 12-CURRENT.
-Eric -
03:26 PM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
- For what it is worth, I have reproduced this on stock 12-CURRENT.
-Eric -
11:26 AM Revision c99ac306: Sort poudriere_bulk
-
11:25 AM Revision 517c146f: Enable devel/gdb build
-
09:46 AM Feature #7495: Ability to set TTL for local for Unbound host overrides and dhcp leases
- Nothing? This came up in a thread again someone asking how to modify this.
https://forum.pfsense.org/index.php?top...
03/05/2018
-
11:01 PM Bug #7972: Captive portals do not synchronize voucher data in both directions
- Tested on 2.4.3.a.20180305.1550
Was able to sync expired vouchers in both directions, resolved. -
07:13 PM Revision 9c9fa4e2: igmp, Add option to disable the igmp service, bump global.inc version
-
01:06 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- Not as of a couple of months ago. I contacted pfSense tech support (since I was using their hardware) and was basica...
-
03:56 AM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
- Took me a while to land on this issue. I'm facing similar issues not being able to utilize my full PPPoE WAN speed. U...
-
11:30 AM Bug #8359 (Not a Bug): Packets from phase1 bound to CARP VIP do not have the right source address
- It is working fine here sourcing from a CARP VIP, you likely have some other configuration error causing this (like u...
-
10:33 AM Bug #8359 (Not a Bug): Packets from phase1 bound to CARP VIP do not have the right source address
- Hello,
I have a cluster with one member having a wan IP of 192.168.0.1. I have configured a CARP VIP of 192.168.0.10... -
11:09 AM Revision 768fb19e: fix log link
- (cherry picked from commit 9aa103bac303899471ac71205f0bc078f0718939)
-
11:09 AM Revision 7849c2f8: Merge pull request #3910 from PiBa-NL/20180304-fix-log-link
-
11:08 AM Revision 600bb470: Merge pull request #3909 from luckman212/setup-wiz-patch-1
-
02:48 AM Bug #8357 (Resolved): Static mapping of dhcp leases on bridge interfaces links to the real interface.
- Hello everyone,
I've just discovered pfsense and it's such a great tool that i decided to replace my old dd-wrt ro...
03/04/2018
-
03:49 PM Revision 6b3e3bc5: igmp, Add option to disable the igmp service
-
03:39 PM Revision 9aa103ba: fix log link
-
09:47 AM Feature #8356 (Resolved): igmp, Add option to disable the igmp service
- Add option to disable the igmp service
https://github.com/pfsense/pfsense/pull/3911 -
01:25 AM Bug #8355 (Not a Bug): Upgrades and packages unavailable after upgrade from 2.3.3_1 to 2.3.4_1
- I was running PFSense 2.3.2 and via the Dashboard, opted to upgrade to the release presented: 2.3.3_1. It wound up u...
03/03/2018
-
09:24 PM pfSense Packages Bug #8354 (Resolved): ACME: period at end of key name breaks dns validation method
- If a key name contains a period at the end, the DNS validation method fails with an error. When I looked at the DNS k...
-
03:27 PM Revision 3ef5904e: small addition to augment jim-p's 58a2ba621c390362170aa2e377e4b41c8fdce1c6
-
02:07 PM Bug #8335: System hang with LACP downlink to UniFi switch
- I'm experiencing similar symptoms (pfSense hanging frequently), though with different hardware. My configuration hang...
03/02/2018
-
08:41 PM Revision 58a2ba62: Fix quoting on rc.bootup conf_path changes
-
07:01 PM Revision 3614c7da: Force the configuration reload after the initial interface assignment.
- Also, always save the assign_complete status.
-
04:04 PM Revision 7ae13d1f: Fix the loader settings for the console on SG-2320 and SG-2340.
-
03:55 PM Bug #7413 (Resolved): status_dhcpv6_leases.php: Some DHCPv6 leases are not displayed in the GUI
- Works fine now
-
03:42 PM Revision 20f8233d: Replace some hardcoded paths.
-
02:23 PM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
- I didn't realize this was a huge issue, but I have a workaround for this.
At the moment booting appears to stop w... -
10:29 AM Bug #7153 (Resolved): pkg-utils.inc - register_all_installed_packages() does not handle packages that are missing XML
- Works great now, thanks!
-
07:00 AM Bug #7153 (Feedback): pkg-utils.inc - register_all_installed_packages() does not handle packages that are missing XML
- It was missing to enable install / deinstall scripts, which are responsible to call PHP code that registers it on the...
-
09:46 AM Bug #8353 (Resolved): Some automated rules are missing tracking IDs
- Works fine
03/01/2018
-
03:43 PM Revision 7c1aa62b: Add missing firewall rule tracker info to automatically generated rules. Fixes #8353
-
03:42 PM Revision 74afe67c: Add tracking to enableallowallwan and change to single rule. Ticket #8353
-
02:41 PM Bug #7153 (Assigned): pkg-utils.inc - register_all_installed_packages() does not handle packages that are missing XML
- The files look like they are all there but I am still not getting a @<package>@ tag in config.xml for Status_Traffic_...
-
09:50 AM Bug #8353 (Feedback): Some automated rules are missing tracking IDs
- Applied in changeset commit:7c1aa62bc3890faa8a617a6ea734c703a088c602.
-
09:20 AM Bug #8353 (Resolved): Some automated rules are missing tracking IDs
- Rules created or edited by users (and any rule before config rev 10.7) have a tracking ID added for correlating log e...
-
07:29 AM pfSense Packages Bug #8351 (Duplicate): cosmetic: populated field entries in challenge method display in expandable preview even when not selected
- Duplicate of #7829
-
07:29 AM pfSense Packages Bug #8352 (Not a Bug): Write certificates to file system after renew not working for ACME v2
- I have tried it on several systems running 0.2.1 and they all work fine, must be something in your specific setup. Pl...
02/28/2018
-
10:36 PM pfSense Packages Bug #8352 (Resolved): Write certificates to file system after renew not working for ACME v2
- Using v2 acme servers, acme 0.2.1 package on 2.4.2-RELEASE-p1
Checking the box:
Write ACME certificates to /conf/a... -
10:31 PM pfSense Packages Bug #8351 (Duplicate): cosmetic: populated field entries in challenge method display in expandable preview even when not selected
I discovered this by trying to get namecheap to work and seeing if their API address worked in the RFC 2136 challen...-
10:19 PM pfSense Packages Feature #7706: Add option to write certificate to the filesystem after renew
- Jim Pingle wrote:
> Works fine
This appears to be a regression in 0.2.1
With the box checked, no files are act... -
10:10 PM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
- Can someone confirm whether or not this bug explains the following situation?
I have a GRE tunnel set up between O... -
10:01 PM Feature #6240: vxlan driver
- +1
-
05:27 PM Bug #6186: race conditions in service startup
- > The more immediate issue is after removing the "exit if booting" check from rc.newwanip(v6) in 2.3, which fixed a v...
-
04:51 PM Bug #7153 (Feedback): pkg-utils.inc - register_all_installed_packages() does not handle packages that are missing XML
- Raady for testing, fix committed in https://github.com/pfsense/FreeBSD-ports/commit/100f4c861366158d7abfd92e945a7a993...
-
02:19 PM Bug #7905: OpenVPN Authentication Against Backend Stalls All Server Traffic
- PR is at https://github.com/pfsense/pfsense/pull/3908
-
10:48 AM Feature #8348 (Resolved): Add firewall rule tracker ID display to rule list and rule edit page
- Works as expected
-
09:02 AM Todo #8350 (Resolved): Remove clog in favor of standard syslogd or syslogd alternative with rotation via newsyslog or logrotate
- Maintaining clog patches and dealing with clog file format/output is cumbersome and not a strict requirement now that...
-
08:28 AM pfSense Packages Bug #8305 (Resolved): acme: "Key Size" value is not passed to acme.sh
- Great, thanks for testing!
-
08:22 AM pfSense Packages Bug #8305: acme: "Key Size" value is not passed to acme.sh
- Jim Pingle wrote:
> It's available on 2.4.2 right now, in ACME package version 0.2.1.
>
> You will need to create... -
07:35 AM pfSense Packages Bug #8305: acme: "Key Size" value is not passed to acme.sh
- It's available on 2.4.2 right now, in ACME package version 0.2.1.
You will need to create a new certificate entry ... -
12:30 AM pfSense Packages Bug #8305: acme: "Key Size" value is not passed to acme.sh
- Jim Pingle wrote:
> Fix committed, will show up in 2.4.3 snaps first, next time the other branches get an ACME updat... -
07:32 AM Bug #7995: pfSense Certificate Manager Issues Blank Certificates
- Highly unlikely that it's the same issue. Post on the forum, pfSense subreddit, or mailing list to discuss and diagno...
-
04:29 AM Bug #7995: pfSense Certificate Manager Issues Blank Certificates
- Hi, sorry to necro but this bug still seems to exist in 2.4.2p1.
User Certifactes meant for OpenVPN I just issued ... -
05:19 AM Feature #7275: Add help text for DNS Made Easy
- Phillip Davis wrote:
> Mentioning the Pull Request is good enough. I usually paste the whole link to it, like this:
...
02/27/2018
-
04:56 PM Bug #8056: Bridge + CARP crashes/freezes pfSense
- Simon Kristensen wrote:
> I just upgrade my pfsense from 2.3.4-p1 to 2.4.2-Release-p1.
> Now I also have the same i... -
03:34 PM Feature #8349 (New): Show the actual numerical information (upload/download speeds) in the traffic graph dashboard widget
- Hello,
I think that, besides the on hover showed info, it would be useful to have the actual numerical information... -
02:14 PM Revision 9c17359f: Add tracker ID to firewall rule list and edit page. Implements #8348
-
12:01 PM pfSense Packages Bug #8305 (Feedback): acme: "Key Size" value is not passed to acme.sh
- Fix committed, will show up in 2.4.3 snaps first, next time the other branches get an ACME update it will work there,...
-
11:48 AM pfSense Packages Bug #8305: acme: "Key Size" value is not passed to acme.sh
- Turns out this is a quirk in acme.sh and not our code, but I put in a fix on our version since it isn't certain it's ...
-
08:20 AM Feature #8348 (Feedback): Add firewall rule tracker ID display to rule list and rule edit page
- Applied in changeset commit:9c17359f3e5fdb88c900beae19aaaafdf2f25041.
-
08:06 AM Feature #8348 (Resolved): Add firewall rule tracker ID display to rule list and rule edit page
- The firewall log output prominently displays the tracker ID and description for a rule, but there is no easy way to c...
02/26/2018
-
09:24 PM Revision 003d4152: Merge remote-tracking branch 'upstream/master'
- Refresh work on bug 7905
-
08:30 PM Revision e85af34b: Resolves #7905
- Minor correction to the script header. Also switches back to printf
instead of echo -n for more broad base compatibil... -
03:41 PM Bug #7905: OpenVPN Authentication Against Backend Stalls All Server Traffic
- I've corrected the issue. The problem was caused by the fact that the plugin was stealing the original signal handler...
-
12:47 PM Revision b8963db6: Fix #7972
- Rework the way Captive Portal vouchers are synchronized on HA:
- When voucher use is enabled on primary, do the same... -
12:38 PM Bug #7958: Upgrade 2.4.0: IP alias with FQDN doesn't work any more
- Hi,
I am also having the same issue, and it's quite annoying...
In my case, filterdns keeps running but in a "dumb"... -
12:10 PM Bug #8347 (Not a Bug): NAT with Multiple OpenVPN interfaces
- Config issue. You need to assign the interfaces so the NAT rules only apply to the one interface you intend, not all ...
-
12:07 PM Bug #8347 (Not a Bug): NAT with Multiple OpenVPN interfaces
- We have router with 2 OpenVPN instances:
* server for connecting clients
* client to remote location which connect... -
08:48 AM pfSense Packages Bug #8251: Captiveportal + FreeRadius "Last activity" resets to Session start
- Still an issue. I noticed that with "Interim" accounting mode, the "Last Activity" seems to work.
However simultane... -
07:00 AM Bug #7972 (Feedback): Captive portals do not synchronize voucher data in both directions
- Applied in changeset commit:b8963db6fc4ab59aae673f229b76495e85cb3b46.
-
04:32 AM Bug #8056: Bridge + CARP crashes/freezes pfSense
- I just upgrade my pfsense from 2.3.4-p1 to 2.4.2-Release-p1.
Now I also have the same issue.
Any news on this, Lu...
02/25/2018
-
07:03 AM Revision 9a18ac7a: Rename the variables on the rest of DHCP functions.
-
06:55 AM Revision dfb6db7a: Remove some dead code, rename variables.
- This function is not consumed only by WAN, so use more neutral names to avoid any assumptions.
-
06:39 AM Bug #6400 (Closed): assign_interfaces.php issues with large numbers of interfaces
-
06:39 AM Bug #7308 (Resolved): ZFS installer - check storage capabilities
-
12:28 AM Revision 130fe575: Fix my broken code, continue would not work from another loop.
02/24/2018
-
11:05 PM Bug #6400: assign_interfaces.php issues with large numbers of interfaces
- Retested With CE 2.4.3.a.20180224.1921 memstick installer and the interface names changed to match the NIC driver bei...
-
10:17 PM Bug #6400: assign_interfaces.php issues with large numbers of interfaces
- Tried logging out, WebGUI hung. Tried console menu options 11/16 to get the WebGUI back to no avail.
-
09:59 PM Bug #6400: assign_interfaces.php issues with large numbers of interfaces
- With the attached config's (1000-interface-config.xml) interfaces restored to 2.4.3.a.20180224.1542 running with 4G m...
-
10:33 PM Bug #7308: ZFS installer - check storage capabilities
- Tested with pfSense-CE-2.4.3-DEVELOPMENT-amd64-20180224-1921.iso and got the attached error with 2G memory, 4G storag...
-
08:22 PM Revision 40a530a1: Filter vm.pmap.pti entries on loader.conf when necessary.
- https://forum.pfsense.org/index.php?topic=144390.msg786182#msg786182
02/23/2018
-
09:30 PM Revision 93e287df: Merge remote-tracking branch 'upstream/master'
-
09:26 PM Revision db30293e: Bug 7905 - Auth Script & Openvpn Config
- Replaces the current auth-user-pass-verify directive with the new plugin
call in the config-file generation code.
Al... -
05:59 PM Revision 26a38669: Add GUI support to display and set the PTI state.
-
04:11 PM Bug #7905: OpenVPN Authentication Against Backend Stalls All Server Traffic
- Note that the event_wait signal, the MULTI_sva, and the WARNING do not appear if the auth request fails.
-
04:10 PM Bug #7905: OpenVPN Authentication Against Backend Stalls All Server Traffic
- I'm really close to having this working on the 2.4.2-RELEASE code base, however, I'm running into an issue and I'm ho...
-
07:39 AM Feature #8346 (New): Allow pfSense to act as an IPsec VPN client
- It would be useful to let pfSense act as a VPN client itself and let it share a mobile style VPN connection to a remo...
02/22/2018
-
07:50 PM pfSense Packages Feature #8345 (Resolved): pfSense-pkg-softflowd: Added additional options now available in softflowd-0.9.9_1
- See pull request: https://github.com/pfsense/FreeBSD-ports/pull/501
---
Updated package version to 1.2.3
Inc... -
05:59 PM Revision e0ed03f3: Update translation files
-
05:07 PM Revision 37e9cfbd: Regenerate pot
-
01:49 PM Bug #8056: Bridge + CARP crashes/freezes pfSense
- I also have exactly the same issue on netgate appliances 8860. I first thought it is a hardware problem and migrated ...
-
12:51 PM Revision 789cb7f5: Merge pull request #3892 from al-right/master
-
11:26 AM Revision 0152ee69: Enable build of net-mgmt/pfSense-pkg-lldpd
-
11:25 AM Revision 20c85efd: Enable build of net-mgmt/pfSense-pkg-lldpd
-
10:08 AM Bug #8337 (Resolved): System Authservers page Authentication Containers field should be marked required
- Field is marked required now
-
10:08 AM Bug #8338 (Resolved): Wrong LDAP host is reported when testing system auth server settings
- Prints the correct server now
-
06:52 AM Bug #7413 (Feedback): status_dhcpv6_leases.php: Some DHCPv6 leases are not displayed in the GUI
- PR has been merged
02/21/2018
- 08:26 PM Revision 40fd222c: Merge pull request #3906 from phil-davis/system_authservers-authentication-containers-01
- 08:26 PM Revision e8f6e66e: Merge pull request #3907 from phil-davis/auth-server-test-output-01
-
03:17 PM pfSense Packages Feature #7706 (Resolved): Add option to write certificate to the filesystem after renew
- Works fine
-
03:10 PM Todo #8331 (Resolved): Update Copyright Year on GUI Login page
-
03:08 PM pfSense Packages Bug #8339 (Resolved): quagga: ospfd crashes with assertion since upgrade to quagga-1.2.3
- Everyone should have 1.2.4 now
-
03:05 PM Bug #8337 (Feedback): System Authservers page Authentication Containers field should be marked required
- PR is at https://github.com/pfsense/pfsense/pull/3906 and has been merged
-
03:05 PM Bug #8338 (Feedback): Wrong LDAP host is reported when testing system auth server settings
- PR is at https://github.com/pfsense/pfsense/pull/3907 and has been merged
-
11:53 AM Bug #8344 (Not a Bug): zfs mountroot still broken in 2.4.3.a.20180221.0835
- Current snapshots are fine with zfs. Most likely your last update from before this snapshot wiped that out, not the c...
-
11:41 AM Bug #8344: zfs mountroot still broken in 2.4.3.a.20180221.0835
- (might also have eaten load_dummynet, for the folks who have active limiters)
-
11:38 AM Bug #8344 (Not a Bug): zfs mountroot still broken in 2.4.3.a.20180221.0835
- loos' recent commit hosed loader.conf; systems fail reboot at mountroot> b/c opensolaris & zfs ko's don't get loaded....
-
07:29 AM Feature #7321: DynDNS - Add DreamHost DNS support
- Dreamhost is not an option in the ACME package. However, I was able to get around this by using the "standalone HTTP ...
-
03:39 AM Feature #8289: OpenVPN - configurable username as common name
- Greg M wrote:
> Hi!
>
> See here: https://forum.pfsense.org/index.php?topic=136533.msg778977#msg778977
>
> The...
02/20/2018
-
04:34 PM Feature #7321: DynDNS - Add DreamHost DNS support
- @corey I saw your note about adding this to the ACME package. Were you able to do this? I did not see Dreamhost in th...
-
03:24 PM Bug #8341: NAT Port forwarding issues (port collision from internal host)
- Tried to reproduce in lab. Not successful. Some additional factor must be involved.
-
09:54 AM Bug #8341: NAT Port forwarding issues (port collision from internal host)
- Jim Pingle wrote:
>the only time you'd have a collision is if you forward a port and both the local source port, loc... -
07:17 AM Bug #8341 (Rejected): NAT Port forwarding issues (port collision from internal host)
- There isn't a way to automatically detect or predict that scenario to prevent it.
Outbound NAT uses random ports a... -
04:37 AM Bug #8341 (Rejected): NAT Port forwarding issues (port collision from internal host)
- I think this should be omitted by design:
Found following constellation who troubled me for many hours:
PortNAT: ... -
12:25 PM pfSense Packages Bug #8339: quagga: ospfd crashes with assertion since upgrade to quagga-1.2.3
- We're aware, we'll have it updated soon.
In the meantime, consider switching to the FRR package. -
11:58 AM pfSense Packages Bug #8339: quagga: ospfd crashes with assertion since upgrade to quagga-1.2.3
- quagga 1.2.4 with the fix has been released:
https://savannah.nongnu.org/forum/forum.php?forum_id=9099
https://www.... -
11:12 AM Bug #8336: ESXi 6.5u1 displays superfluous error message with Netgate OVA iamge
- Confirming that it occurs (as expected) in 2.4.2_1. Warning text does not change.
-
10:30 AM Bug #7735 (Not a Bug): Switching to wildcard cert fails until reboot
-
10:28 AM Bug #7735: Switching to wildcard cert fails until reboot
- I've been unable to reproduce this in the 2.4 stream, so please close either with CAN'T REPRODUCE or FIXED IN 2.4 (or...
-
09:04 AM Bug #8343 (Resolved): Gateway Routes (Default Routes) not removed in Kernel when removed from GUI
- When I disable the Gateway (default) in System > Routing > Gateways it is still visible as a static route in Diagnost...
-
08:25 AM Bug #7308 (Feedback): ZFS installer - check storage capabilities
- Changed installer to request more space to install on ZFS
02/19/2018
-
05:43 PM pfSense Packages Bug #8340 (Rejected): Status_Traffic_Totals Error
- While checking in on my traffic totals using the Status_Traffic_Totals package I've gotten an error that I can't fix....
-
04:21 PM Revision e6e7b00c: Trim domain for learned DNS entries. Ticket #6847
- If the CN is already an FQDN on the given domain, this prevents the
domain from being present in the record twice (e.... -
03:33 PM pfSense Packages Bug #8339 (Resolved): quagga: ospfd crashes with assertion since upgrade to quagga-1.2.3
- Hi, ospfd crashes with an assertion since I upgraded to 1.2.3 (upgraded Quagga_OSPF to 0.6.20_2):...
-
01:26 PM Bug #7469 (Resolved): local_sync_accounts() slowness can trigger GUI/XMLRPC failures with many accounts
-
11:44 AM Bug #8298 (Resolved): OpenVPN Wizard protocol defaults to "UDP IPv4 and IPv6 on all interfaces" causing problems
- Wizard now has all of the current protocol choices and defaults to the correct selection (UDP on IPv4 only).
-
11:30 AM Bug #8261 (Resolved): OpenVPN tunnel network handled incorrectly with a /31 tunnel network
- Tunnel networks are calculated properly with /31 now
-
10:53 AM Bug #8125 (Resolved): gateway 502 errors proposed fix for high ram systems
- Parameters are changing with RAM size as expected, seems to work OK.
-
10:52 AM Bug #7772: Regression of Bug #906
- Steve Beaver wrote:
> Can you provide simple steps to reproduce please?
I eventually fixed the issue of the left ... -
10:24 AM Feature #6847 (Resolved): Register CN of OpenVPN clients in DNS Resolver
- Seems to work OK but needed a minor tweak in the script, see commit:e6e7b00c5c
-
09:36 AM Feature #8205 (Resolved): Allow display of temperature in Fahrenheit
- Works
-
08:24 AM Feature #6886 (Resolved): Allow Dual-Stack IPSec VPN
- Tested and working
-
08:24 AM Feature #8186 (Resolved): ipsec, allow configuration of multiple ike phase1 encryption ciphers #3711
-
08:08 AM Bug #4310: Limiters + HA results in hangs on secondary
- Fabrizio Pappolla wrote:
> Before open a new ticket, i will try here since the error looks really similar. My pfSens... -
05:29 AM Bug #4310: Limiters + HA results in hangs on secondary
- Before open a new ticket, i will try here since the error looks really similar. My pfSense got bootloop, the problem ...
-
12:25 AM Revision ab105bf8: Do not wipe the existing file contents. Return the actual data.
02/18/2018
-
10:14 PM Revision d0490bd0: Merge branch 'master' of github.com:pdemonaco/pfsense
- Because I did something out of order?
-
10:13 PM Revision 4e74cced: Bug 7905 - Minor Tweaks
- Switched to printf over echo to ensure strict POSIX compliance. Also
added some comments regarding the source of two ... -
10:13 PM Revision b27ae464: Bug 7905 - New Auth Script
- Initial pass at new auth script which will be called by an openvpn
plugin. See https://github.com/pdemonaco/auth-scri... -
01:03 AM Revision 5a29b7d6: Bug 7905 - Minor Tweaks
- Switched to printf over echo to ensure strict POSIX compliance. Also
added some comments regarding the source of two ... -
12:55 AM Revision 1ed23afb: Bug 7905 - New Auth Script
- Initial pass at new auth script which will be called by an openvpn
plugin. See https://github.com/pdemonaco/auth-scri...
02/17/2018
-
07:39 PM Revision 56b72761: Fix the variable name.
- Pointy-hat to: me
-
11:40 AM Revision 34925626: Report correct auth server host when testing LDAP auth server
-
10:47 AM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
- I've just come across this bug now. Most.. infuriating .. nonsense. In my case I have a working WAN, but you can't se...
-
10:36 AM Revision 5520839e: Mark authentication containers label as required field
-
05:33 AM Bug #8338 (Resolved): Wrong LDAP host is reported when testing system auth server settings
- To reproduce:
1) Add a few authentication servers (some Radius, at least 1 LDAP that is not the first entry in the l... -
04:40 AM Bug #8337 (Resolved): System Authservers page Authentication Containers field should be marked required
- Actually the box for entering the container data has the "background" text "*Containers"
02/16/2018
-
10:10 PM Bug #7469: local_sync_accounts() slowness can trigger GUI/XMLRPC failures with many accounts
- Tested on Current Base System 2.4.3.a.20180216.1415
Syncing 106 users and adding a 107th took maybe two seconds, n... -
10:50 AM Bug #7469 (Feedback): local_sync_accounts() slowness can trigger GUI/XMLRPC failures with many accounts
- Applied in changeset commit:dc3bc1f8c9f5040762953b38df499ea5f86d13d5.
-
09:58 PM Feature #8186: ipsec, allow configuration of multiple ike phase1 encryption ciphers #3711
- Tested on 2.4.3.a.20180216.1415, works as expected.
-
06:16 PM Bug #8266: Bogus error message occurs on killing OPenVPN connection
- tested on 2.4.3.a.20180216.1415, no error.
-
04:54 PM Bug #8336: ESXi 6.5u1 displays superfluous error message with Netgate OVA iamge
- Oops. Can someone fix my typo in the title, please?
-
04:53 PM Bug #8336 (Closed): ESXi 6.5u1 displays superfluous error message with Netgate OVA iamge
- No functional impact.
When pfSense-CE-2.4.2-RELEASE-amd64.ova is deployed and booted on an ESXi 6.5u1 host, the VM... -
04:42 PM Revision dc3bc1f8: Fix #7469
- Sort users / groups alphabetically on config.xml
-
04:42 PM Revision 90510875: Be more verbose about users/groups sync
-
04:10 PM Revision f7aafd45: Fix typo
-
02:04 PM Bug #8335 (New): System hang with LACP downlink to UniFi switch
- I have an RCC-VE 2440 (2015) with igb1 and igb2 aggregated into lagg0 and connected to a UniFi switch. UniFi supports...
-
01:49 PM Bug #8334: Forwarding broadcast through firewall can cause broadcast storm
- All that I understood, the part I think was a bug was it continuing to accept the packet on the WAN interface when th...
-
01:47 PM Bug #8334 (Not a Bug): Forwarding broadcast through firewall can cause broadcast storm
- The firewall in this case does not have any knowledge that the packet is broadcast. It does not know the subnet direc...
-
01:34 PM Bug #8334 (Not a Bug): Forwarding broadcast through firewall can cause broadcast storm
- I had a secondary IP on a windows system to test connectivity to a proprietary system. When it was added to windows,...
-
01:31 PM Feature #8205 (Feedback): Allow display of temperature in Fahrenheit
- PR was merged back in December
-
01:25 PM Feature #8191 (Feedback): IPv6 - Support for configuring multiple DUID types
- PR was merged a month ago
-
01:16 PM Bug #8261 (Feedback): OpenVPN tunnel network handled incorrectly with a /31 tunnel network
- PR was merged two weeks ago
-
01:12 PM Bug #8333 (Resolved): Dynamic DNS updates may fail when using a gateway group as the interface when the default route is down
- When the interface of a Dynamic DNS entry is set to a gateway group and the default route is down, the update may fai...
-
08:19 AM Bug #8231 (Resolved): Undefined function while restoring config from older version
-
07:35 AM Todo #6647: Enable Additional Security Headers
- While I am by no means an expert on what specific headers are appropriate... And the webgui really should be limited ...
Also available in: Atom