Project

General

Profile

Activity

From 08/08/2018 to 09/06/2018

09/06/2018

04:38 PM pfSense Packages Feature #8878 (Resolved): Propagate user's description field into QR code for FreeRADIUS
Hi,
it is often desirable (esp. when you have more than one identity added in your Google Auth mobile app) to dist...
Juraj Lutter
04:27 PM Bug #8877 (In Progress): VTI P2 can trigger an endless loop trying to form a P2 ID
Yeah the mobile case is still a bit undefined. I can shut that down as well. I'm not sure that is feasible since VTI ... Jim Pingle
04:14 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
i could configure vti on a 'normal' site-to-site vpn so perhaps its just a 'user issue' :) if so then sorry for the n... Pi Ba
04:06 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
Perhaps the issue was that i made my mobile-ipsec P2 use vti.. perhaps that does not actually make sense to do.?. it ... Pi Ba
03:35 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
I haven't tried setting one up this way but if someone were to have incorrectly selected something like "LAN Network"... Jim Pingle
03:07 PM Bug #8877 (Feedback): VTI P2 can trigger an endless loop trying to form a P2 ID
I can maybe see how some combination may lead to a loop here but I can't seem to make it happen on any of mine.
So...
Jim Pingle
03:05 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
Its about the vti and it looping around. see screenshot of a stacktrace. Pi Ba
02:34 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
I suspect it would have done the same for any other additional interface you add there and VTI was a coincidence. May... Jim Pingle
02:29 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
agreed that the lines don't 'directly' point to vti.. however only when i enable 'that' interface its runs for a minu... Pi Ba
02:22 PM Bug #8877 (Not a Bug): VTI P2 can trigger an endless loop trying to form a P2 ID
That doesn't look like it would have anything to do with VTI. The lines you reference are quite different, one is a g... Jim Pingle
02:03 PM Bug #8877 (Resolved): VTI P2 can trigger an endless loop trying to form a P2 ID
Enabling a vti OPT1 interface throws me the following errors after a minute while processing the 'apply' button.. lik... Pi Ba
03:00 PM Bug #8001: Invalid FQDN in alias causes alias table to fail *silently*
possibly related bug: https://redmine.pfsense.org/issues/8758 → luckman212
03:00 PM Bug #8758: filterdns stops working on a regular basis.
Ok, I've done that. For anyone else who wants an easy way, I made a patch that you can add via System Patches:
https...
→ luckman212
02:34 PM Bug #8527 (Feedback): VLANs losing parent interface on LAGG change
Waiting the next -RC build. Luiz Souza
07:14 AM Todo #6647: Enable Additional Security Headers
Fixed the subject to be more general since this is covering more than just CSP at this point.
We had someone askin...
Jim Pingle

09/05/2018

09:26 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
You were probably kidding, but my ISP will propose exactly this (40 gig) in 2-3 years ... at least that's the plan.
...
Alexandre Paradis
04:03 PM Bug #8876 (Feedback): status_gateway_groups.php: PHP error when there is no gateways array
Fix committed, will be in snaps when they are running again. Jim Pingle
03:08 PM Bug #8876 (Resolved): status_gateway_groups.php: PHP error when there is no gateways array
... Jim Pingle
12:15 PM Feature #6742: OAuth2 authentication for OpenVPN (and for FreeRadius)
+1 on my side as well. We need this in order to properly implement VPN/IPSec/FreeRadius for our remote workers to int... Patrick Monfette
04:03 AM Feature #8737: Let users configure PPPoE multilink over single link
Confirm option existing in GUI and in device config
!option.png!...
Constantine Kormashev
12:56 AM Bug #8875 (Duplicate): Separator in DHCP Server
Hi. Having a seperator in DHCP Server would be nice to allocate ip addresses like in Firewall Rules. Elvin Mammadov

09/04/2018

09:43 PM Bug #6263: Encryption options for every P2 on a given P1 are written to each P2 individually inside ipsec.conf with multiple P2 entries + split conn entries
PJ Goodwin wrote:
> Looked into this and the attached patch appears to fix the issue in 2.4.2. The comparable chang...
PJ Goodwin
02:44 PM Bug #8806 (Resolved): HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
Anonymous
02:25 PM Bug #8806: HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
Working correctly on the last snapshot
This issue can be marked as resolved.
A FL
09:05 AM Bug #8806: HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
Applied in changeset commit:7cab6335bb56d2ac372a195719be28c55b2cb252. Renato Botelho
09:01 AM Bug #8806 (Feedback): HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
Renato Botelho
02:41 PM Bug #8874 (Not a Bug): IPSEC Phase 2 Duplicated
It's unlikely that is the cause of your problem. Please keep this kind of guesswork/debugging on the forum until a sp... Jim Pingle
02:38 PM Bug #8874 (Not a Bug): IPSEC Phase 2 Duplicated
We detect some network issues between some sites. Look at IPSEC status, we can see some of our tunnels with Phase 2 d... Alan Santos
02:36 PM pfSense Packages Bug #8873 (Feedback): PHP7 warning in squidguard
Fix pushed. 824d08577196346be0e7d24d925bf3338208bd89
also cherry-picked to 2.4.4 3c1f879caabe7f9059e0a0143689d2d0b3c...
Anonymous
11:15 AM pfSense Packages Bug #8873 (Resolved): PHP7 warning in squidguard
[02-Sep-2018 21:00:29 Etc/UTC] PHP Warning: Use of undefined constant GIF_BODY - assumed 'GIF_BODY' (this will throw... Anonymous
02:31 PM pfSense Packages Bug #8872: PHP7 error in squid
Cherry-picked to 2.4.4 as well d47455c16c985d3d98fea422855a0dc7bf78c657 Anonymous
02:28 PM pfSense Packages Bug #8872 (Feedback): PHP7 error in squid
Fix Pushed 90c367bf2f2fcd61ed631bd3c4fd6634a253b5d6. Anonymous
11:14 AM pfSense Packages Bug #8872 (Resolved): PHP7 error in squid
[02-Sep-2018 21:45:02 Etc/UTC] PHP Fatal error: Uncaught Error: Call to undefined function split() in /usr/local/pkg... Anonymous
01:47 PM Bug #8758: filterdns stops working on a regular basis.
Luke Hamburg wrote:
> I have definitely hit this one - yes it is hard to reproduce. But, if I hit it again, is it wo...
Renato Botelho
01:09 PM Bug #8758: filterdns stops working on a regular basis.
I have definitely hit this one - yes it is hard to reproduce. But, if I hit it again, is it worth sending any sort of... → luckman212
09:10 AM Bug #8758: filterdns stops working on a regular basis.
Currently unable to reproduce Anonymous
01:31 PM Feature #8160: Accomodate both RADIUS and pool IP addresses in IPsec
Implementation PR: https://github.com/pfsense/pfsense/pull/3976 Louis C
10:37 AM Bug #8721 (Resolved): DHCP High Availability - Statis assignement Issue on BackUP machine
Constantine Kormashev
10:35 AM Bug #8721: DHCP High Availability - Statis assignement Issue on BackUP machine
It works well on latest... Constantine Kormashev
10:18 AM Bug #8499: IPv6 fragment logging causes panic in some circumstances
Looks like this is PPPoE related issue. I do not see problem with fragmented IPv6 and logging on Ethernet IPv6 forwar... Constantine Kormashev
09:34 AM Bug #8499: IPv6 fragment logging causes panic in some circumstances
I've never been able to replicate that locally. It's going to be very difficult to test. Steve Wheeler
09:59 AM Bug #8863 (Resolved): amdtemp.ko module failed to load
Fixed... Renato Botelho
09:10 AM Bug #8863: amdtemp.ko module failed to load
Applied in changeset commit:2eeeec06d7b8d719a8913c69095675a695305918. Renato Botelho
09:04 AM Bug #8863 (Feedback): amdtemp.ko module failed to load
Renato Botelho
02:51 AM pfSense Packages Bug #8871: Suricata: input not validated properly in suricata_rulesets.php results in wrong argument passed to in_array()
Forgot to set Category -> Suricata.
Running b0703dcab3c(RELENG_2_4_4) (snapshot) with latest Suricata package availa...
L H
02:50 AM pfSense Packages Bug #8871 (Resolved): Suricata: input not validated properly in suricata_rulesets.php results in wrong argument passed to in_array()
Spotted this today:... L H

09/03/2018

02:29 PM Bug #8870 (Resolved): Webgui incorrectly reports "The system is on the latest version".
In some circumstances the dashboard can report that the system is on the latest version when in fact the pkg system i... Steve Wheeler
01:25 PM Bug #8721: DHCP High Availability - Statis assignement Issue on BackUP machine
Applied in changeset commit:7fead243f9e6238e0098ea2bdc3c992fa071efeb. Renato Botelho
01:17 PM Bug #8721 (Feedback): DHCP High Availability - Statis assignement Issue on BackUP machine
Renato Botelho
01:18 PM Bug #8806 (In Progress): HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
Renato Botelho
07:20 AM Bug #8866: cleaning backup cache can take VERY long
It does load/parse them to check that they are valid so it can clean out invalid/broken configurations.
It's behav...
Jim Pingle
01:36 AM Bug #8866: cleaning backup cache can take VERY long
You were right as in i increased that setting. By a lot. We edit config quite often, so 30 backups wasn't feasible an... Militades Sunfire

09/02/2018

10:35 PM pfSense Packages Feature #8869: HAproxy should use RFC 7919 DH parameter files
It should not let you use a self-generated DH parameter file, but use the stock system DH parameter files which are f... Jim Pingle
10:20 PM pfSense Packages Feature #8869 (New): HAproxy should use RFC 7919 DH parameter files
It would be really nice to have a UI option to generate a custom DH parameter file for HAproxy to use.
The origina...
Stéphane Lapie
06:33 AM Bug #8192: dpinger - Change in ISP link-local IPv6 address drops connectivity
One is for DHCPv6, one is for PPPoE. They could be different problems, they could be the same problem, needs more res... Jim Pingle
12:00 AM Bug #8192: dpinger - Change in ISP link-local IPv6 address drops connectivity
Is this a dupe of #8136? → luckman212

09/01/2018

03:57 PM Feature #8867: interfaces_vlan_edit.php does not display proper interface aliases
Jim Pingle wrote:
> That is because VLANs are a child of the physical interface, not an assigned interface. The assi...
Xan Lorimer
02:43 PM Feature #8867 (Not a Bug): interfaces_vlan_edit.php does not display proper interface aliases
That is because VLANs are a child of the physical interface, not an assigned interface. The assignments and descripti... Jim Pingle
11:20 AM Feature #8867 (Confirmed): interfaces_vlan_edit.php does not display proper interface aliases
On /interfaces_vlan_edit.php (Interfaces>Assignments>VLANs>Add), when the parent interface drop-down list is clicked,... Xan Lorimer
02:44 PM Todo #8860 (Resolved): Change status.php to use "ifconfig -va" for more detail
Jim Pingle
01:11 PM Todo #8860: Change status.php to use "ifconfig -va" for more detail
On 2.4.4.a.20180831.2010, looks good.
Network-Intefaces shows module information for SFP+...
Anonymous
01:20 PM Bug #8868 (Not a Bug): multiple php errors on update
Installed Current Factory System: 2.4.3_1
Added packages: Squid, squidguard, lightsquid, pfblockerng, and Snort
...
Chris Macmahon
07:59 AM Bug #8859 (Resolved): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
Jim Pingle
04:12 AM Bug #8859: VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
On Fri Aug 31 20:10:51 EDT 2018:
Created P2 with VTI remote network, then changed it to remote address - changes a...
Vladimir Lind
07:50 AM Bug #8866 (Not a Bug): cleaning backup cache can take VERY long
By default it only keeps 30 backups. There is no way it would have as many files as you state without being manually ... Jim Pingle
04:26 AM Bug #8866 (Not a Bug): cleaning backup cache can take VERY long
Hi,
my pfSense is running on rather sparse CPU ressources (Atom N2800). Rebooting takes up to 30 minutes (actually c...
Militades Sunfire
05:47 AM Bug #8857 (Resolved): PHP error when saving on vpn_ipsec_settings.php
Anonymous
04:58 AM Bug #8857: PHP error when saving on vpn_ipsec_settings.php
Reset sg2440 Fri Aug 31 20:10:51 EDT 2018 to factory and then opened vpn_ipsec_settings.php, clicked "save" - no erro... Vladimir Lind

08/31/2018

10:40 PM pfSense Docs Correction #8865 (Rejected): Feedback on Networking Concepts — IPv6 — IPv6 Subnetting
*Page:* https://www.netgate.com/docs/pfsense/book/network/ipv6-subnets.html
*Feedback:*
IPv6 Subnet Table
IPv6 ...
Rick Coats
04:59 PM Bug #8864: SSH Guard Sensitivity/Whitelist on 2.4.4
Sorry I meant to put 2.4.4.a.20180831.0830 in the topic after 'SSH Guard on 2.4.4.a.20180831.0830' Zachary McGibbon
04:58 PM Bug #8864 (Resolved): SSH Guard Sensitivity/Whitelist on 2.4.4
I am running 2.4.4.a.20180831.0830 and noticed that my Icinga monitoring started to show issues with SSH. When I loo... Zachary McGibbon
03:09 PM Bug #8863 (Resolved): amdtemp.ko module failed to load
amdtemp.ko module failed to load with the following error message
KLD amdtemp.ko: depends on amdsmn - not availabl...
Cédric Caron
02:49 PM Bug #8856 (Resolved): IPsec not starting and getting PHP error
Jim Pingle
02:07 PM Bug #8856: IPsec not starting and getting PHP error
Yes, fsck fixed IPsec issue, now it works, thank you.
** Last Mounted on /
** Root file system
** Phase 1 - Chec...
Vladimir Lind
08:25 AM Bug #8856 (Feedback): IPsec not starting and getting PHP error
Applied in changeset commit:b5a4633f9ffeb365aba1d8b451f3638b37452b23. Jim Pingle
08:06 AM Bug #8856 (In Progress): IPsec not starting and getting PHP error
I see some room for improvement in that area of the code, but that error appears to come from a disk issue.
Speaki...
Jim Pingle
01:23 AM Bug #8856 (Resolved): IPsec not starting and getting PHP error
on SG3100 Thu Aug 30 00:38:38 EDT 2018
Crash report begins. Anonymous machine information:
arm
11.2-RELEASE-p...
Vladimir Lind
11:52 AM pfSense Docs Correction #8862 (Resolved): [feedback form] Include configuration examples for IPv6 WANs
*Page:* https://docs.netgate.com/pfsense/en/latest/interfaces/configure-ipv6.html
*Feedback:* Examples would be ni...
Jared Dillard
11:09 AM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
Repeated the same test with installed squid, bind packages - all good, no delay's in bootup. Vladimir Lind
10:03 AM Feature #8861 (Resolved): Show SFP module details on ``status_interfaces.php``
Looking at the output of @ifconfig -v@, there is more info we could be showing on status_interfaces.php.
At a mini...
Jim Pingle
09:55 AM Todo #8860 (Feedback): Change status.php to use "ifconfig -va" for more detail
Applied in changeset commit:836ee3aaca674a84dec47dce9a1183b98352ba4f. Jim Pingle
09:47 AM Todo #8860 (Resolved): Change status.php to use "ifconfig -va" for more detail
@ifconfig -v@ will return more info than the @ifconfig@ alone. For @ix(4)@ interfaces it will print information about... Jim Pingle
09:15 AM Bug #8859 (Feedback): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
Applied in changeset commit:da54e84ae79328a87b4a319239bb1b14d7ed2ce6. Jim Pingle
09:10 AM Bug #8859 (In Progress): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
Jim Pingle
09:09 AM Bug #8859 (Resolved): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
Some equipment that supports VTI requires the remote address be set to a network and not the default address, or else... Jim Pingle
09:05 AM Bug #8858 (Feedback): IPsec VTI cleanup can accidentally remove valid interfaces
Applied in changeset commit:74e4543842c47efda37e3b078b8e5cc3f54ce9ba. Jim Pingle
08:56 AM Bug #8858 (In Progress): IPsec VTI cleanup can accidentally remove valid interfaces
Jim Pingle
08:56 AM Bug #8858 (Resolved): IPsec VTI cleanup can accidentally remove valid interfaces
Then code that cleans up deleted/disabled IPsec VTI interfaces can, with certain configurations, delete a valid inter... Jim Pingle
07:35 AM Bug #8857 (Feedback): PHP error when saving on vpn_ipsec_settings.php
Applied in changeset commit:463b52b606d98b72cbaeb2f6d3c348689106c414. Jim Pingle
07:28 AM Bug #8857 (In Progress): PHP error when saving on vpn_ipsec_settings.php
Jim Pingle
07:26 AM Bug #8857 (Resolved): PHP error when saving on vpn_ipsec_settings.php
From a fresh install with no IPsec configuration, clicking Save on vpn_ipsec_settings.php gives a PHP error:... Jim Pingle
05:36 AM pfSense Packages Bug #8790 (Resolved): getting PHP error regarding HAproxy pkg
Anonymous
02:08 AM pfSense Packages Bug #8790: getting PHP error regarding HAproxy pkg
Hi!
All OK, thanks!
Greg M

08/30/2018

09:53 PM pfSense Packages Bug #8829: Keep settings checkbox under Global Settings does not behave as expected
On a fresh install of 2.4.4.a.20180830.1356, when snort 3.2.9.7_2 is installed the output is :... Anonymous
09:30 PM pfSense Packages Bug #8829 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
Anonymous
09:17 PM pfSense Packages Bug #8829: Keep settings checkbox under Global Settings does not behave as expected
On version 3.2.9.7_2, installed suricata, configured some settings, unchecked the Keep settings checkbox, uninstalled... Anonymous
11:37 AM pfSense Packages Bug #8829 (Feedback): Keep settings checkbox under Global Settings does not behave as expected
This should now work as expected. c5d12ed2814f7ed5c002fb71fae6d992708bc4f9
Snort version 3.2.9.7_2
Anonymous
09:49 PM pfSense Packages Bug #8828 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
Anonymous
09:49 PM pfSense Packages Bug #8828: Keep settings checkbox under Global Settings does not behave as expected
On a fresh install of 2.4.4.a.20180830.1356, when suricata 4.0.13_8 is installed the output is :... Anonymous
05:50 PM pfSense Packages Bug #8828: Keep settings checkbox under Global Settings does not behave as expected
On version 4.0.13_8, installed suricata, configured some settings, unchecked the Keep settings checkbox, uninstalled ... Anonymous
11:17 AM pfSense Packages Bug #8828 (Feedback): Keep settings checkbox under Global Settings does not behave as expected
Anonymous
11:17 AM pfSense Packages Bug #8828: Keep settings checkbox under Global Settings does not behave as expected
I found that the code to remove the package forgot to use 'write_config()' after removing the Suricata configurations... Anonymous
04:49 PM pfSense Packages Bug #8670: HAProxy PHP error
This issues with haproxy should be fixed with current 0.59_11 version. If not please let me know the exact error you ... Pi Ba
04:47 PM pfSense Packages Bug #8790: getting PHP error regarding HAproxy pkg
Should be fixed with current 0.59_11 version. If not please let me know the exact error you get and when that happens. Pi Ba
04:47 PM pfSense Packages Bug #8833: haproxy getarraybyref error
Should be fixed with current 0.59_11 version. If not please let me know the exact error you get and when that happens. Pi Ba
09:39 AM Bug #8767 (Resolved): ID handling problem with DNS Forwarder host override management
Anonymous
08:43 AM Feature #8855 (Rejected): View Description field on widget for OpenVPN
Hi!!!
Its useful add on widget for OpenVpN, view the description field too , for get information about a user when c...
Luis Garcia
07:59 AM Bug #8850 (Resolved): Packages that start on sync are started multiple times at boot
Jim Pingle
07:45 AM Bug #8850 (Feedback): Packages that start on sync are started multiple times at boot
Applied in changeset commit:880107d21f5e69201ba810d553d948ca9009f70d. Jim Pingle
07:39 AM Bug #8850: Packages that start on sync are started multiple times at boot
Looks like one line of the fix didn't make it into the final commit. Will push a correction momentarily after re-test... Jim Pingle
07:59 AM pfSense Packages Bug #8620 (Resolved): arpwatch database page is not accessible
Jim Pingle
07:59 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
Gitsynced, retested - now looks good, no arpwatch duplicated processes Vladimir Lind
07:51 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
OK to test again after a gitsync or an update to a snapshot which includes my last commit on #8850 Jim Pingle
07:40 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
Looks like one line of my commit is missing, will push a correction momentarily. The package is OK, the problem is on... Jim Pingle
04:44 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
Yup, seeing the same on Wed Aug 29 19:26:24 EDT 2018 with pfSense-pkg-arpwatch-0.1.1:
root 37039 0.0 0.3 ...
Vladimir Lind
07:20 AM Bug #8726 (Resolved): Lack of input validation on custom GUI/dashboard settings leads to potential XSS
Jim Pingle
06:56 AM Todo #8851 (Resolved): Change default CA/Cert action to "Create an internal..."
Jim Pingle
06:56 AM Todo #8851: Change default CA/Cert action to "Create an internal..."
On factory 2.4.4.a.20180830.0038, SG-3100
Click System -> Cert. Manager, CAs
Default selection is 'Create an i...
Chris Macmahon

08/29/2018

11:33 PM Bug #8726: Lack of input validation on custom GUI/dashboard settings leads to potential XSS
On 2.4.4.a.20180829.1926, tried a XSS injection example as the dashboardcolumns value in the pfSense config.xml, relo... Anonymous
11:16 PM Bug #8845 (Resolved): Recompile PHP with a larger value of FD_SETSIZE.
Anonymous
11:15 PM Bug #8845: Recompile PHP with a larger value of FD_SETSIZE.
On 2.4.4.a.20180829.1926, ... Anonymous
08:43 PM pfSense Packages Bug #7661: pfBlockerNG doesn't make a rule for Antarctica
I just tried the latest pfBlockerNG and the is has NOT been resolved!
Please re-open the bug.
Stuart Wyatt
08:25 PM pfSense Packages Bug #8620: arpwatch database page is not accessible
On 2.4.4.a.20180829.1926 (gitsync'd to master) with arpwatch version 0.1.1,
Seeing one instance of arpwatch for ea...
Anonymous
02:10 PM pfSense Packages Bug #8620 (Feedback): arpwatch database page is not accessible
Should be improved by https://github.com/pfsense/FreeBSD-ports/commit/aa78e490fe92d5640a742bbe77012a5ba626b084 but th... Jim Pingle
07:45 PM Todo #8851: Change default CA/Cert action to "Create an internal..."
On 2.4.4.a.20180829.1429 (gitsync'd to master), looks good. Create CA/Cert is the default behavior now. Anonymous
03:05 PM Todo #8851 (Feedback): Change default CA/Cert action to "Create an internal..."
Applied in changeset commit:b0a5c280a407ac26af2e6f055ac1049304034672. Jim Pingle
02:58 PM Todo #8851 (Resolved): Change default CA/Cert action to "Create an internal..."
When the certificate manager was first created, the most common user action was to import and not create. We are long... Jim Pingle
04:35 PM pfSense Docs Correction #8854 (Resolved): [feedback form] Define Broadcast Domain and switch loops
*Page:* https://docs.netgate.com/pfsense/en/latest/network/broadcast-domains.html
*Feedback:* The section tells w...
Jared Dillard
04:32 PM pfSense Docs Correction #8853 (Resolved): [feedback form] Explain what 0:0 means
*Page:* https://www.netgate.com/docs/pfsense/book/monitoring/firewall-states-gui.html
*Feedback:* What does 0:0 me...
Jared Dillard
04:30 PM pfSense Docs Correction #8852 (Resolved): Clarify purpose of "Client Identifier" in DHCP static mapping
*Page:* https://docs.netgate.com/pfsense/en/latest/services/dhcp/ipv4.html
*Feedback:* I am unclear about "Client ...
Jared Dillard
03:23 PM Bug #8518: Rule Error On Upgrade 2.4.3 -> 2.4.3-p1
Steffen Wagner wrote:
> the above commands fixed it for me as well. An official patch for p1 would be good!
Can y...
Jesse Alexander
03:03 PM Bug #8767: ID handling problem with DNS Forwarder host override management
Fixed the illegal string offset error described above. bc91bdffcefd009f4716cce59eab231c2245fb18
I did not notice a...
Anonymous
02:58 PM Bug #8850 (Resolved): Packages that start on sync are started multiple times at boot
Tested with arpwatch installing fresh, configuring and multiple reboots Anonymous
01:34 PM Bug #8850: Packages that start on sync are started multiple times at boot
For an example of the change to make on packages, see https://github.com/pfsense/FreeBSD-ports/commit/aa78e490fe92d56... Jim Pingle
01:30 PM Bug #8850 (Feedback): Packages that start on sync are started multiple times at boot
Applied in changeset commit:5d4f49000654fae594144abc36fe8a588a028510. Jim Pingle
01:19 PM Bug #8850 (In Progress): Packages that start on sync are started multiple times at boot
Jim Pingle
01:19 PM Bug #8850 (Resolved): Packages that start on sync are started multiple times at boot
When @/etc/rc.start_packages@ is run, for example at boot time, it performs a package sync with @sync_package()@ and ... Jim Pingle
11:40 AM Feature #8849 (Duplicate): DHCP Custom configuration
I would suggest a field so we can use additional settings. There is the possibility of making several subnet with use... Thiago Gomes
09:44 AM Bug #7089: Opposite of + or - is occurring when selecting time zone
The description and behavior are correct for POSIX style zones. See note 9 above. The "Etc/GMT+4" zone means 4 hours ... Jim Pingle
09:34 AM Bug #7089: Opposite of + or - is occurring when selecting time zone
Although the description tells how it works, the GMTs are wrong.
The correct GMTs are "+" (before GMT) and "-" (af...
Filipe Teixeira
09:40 AM Bug #8138 (Resolved): Option <spoofmac> is ignored on interfaces without hwaddr
Tested on a VM with CE:
2.4.4-DEVELOPMENT (amd64)
built on Wed Aug 29 00:38:57 EDT 2018
FreeBSD 11.2-RELEASE-p2
...
Anonymous
09:34 AM Bug #8848: GMT timezones reversed
Although the description tells how it works, the GMT's on web interface are wrong.
The correct GMTs are "+" (befor...
Filipe Teixeira
09:21 AM Bug #8848 (Rejected): GMT timezones reversed
The descriptions of the zones make this very clear, they explain the behavior and whether or not they are ahead of or... Jim Pingle
09:10 AM Bug #8848 (Rejected): GMT timezones reversed
On System > General Setup, timezones GMT[+-]X are reversed.
If set GMT-4 on web interface, it apllies GMT+4 on sys...
Filipe Teixeira
08:08 AM Feature #8644 (Resolved): IPsec mobile clients DNS enhancement
I check this Bug on old 2.4.4.a.20180801.0114: DNS from /VPN/IPsec/Mobile Clients menu was set up into '/var/etc/ipse... Azamat Khakimyanov
07:34 AM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
Greg M wrote:
> I am on:
> 2.4.4-DEVELOPMENT (amd64)
> built on Wed Aug 29 00:38:57 EDT 2018
> FreeBSD 11.2-RELEA...
Renato Botelho
06:32 AM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
I am on:
2.4.4-DEVELOPMENT (amd64)
built on Wed Aug 29 00:38:57 EDT 2018
FreeBSD 11.2-RELEASE-p2
The system is ...
Greg M
05:34 AM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
Greg M wrote:
> Hi!
>
> Installed, when I open it:
>
> Fatal error: Uncaught Error: Call to undefined function...
Renato Botelho
01:13 AM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
Hi!
Installed, when I open it:
Fatal error: Uncaught Error: Call to undefined function pfsense_pkg\acme\getarra...
Greg M
01:14 AM pfSense Packages Bug #8790: getting PHP error regarding HAproxy pkg
Same here.
Haproxy is not installed after this error and services are down.
Greg M

08/28/2018

09:55 PM pfSense Packages Bug #8620: arpwatch database page is not accessible
I'm interested in a fix for this as well. On 2.4.3-p1 I have the same issues -- multiple emails and nothing in the da... Dallas Haselhorst
05:45 PM Bug #8847 (Resolved): IPsec status "Show Child SA entries" button only expands and never collapses
I am using version 2.4.4, I noticed that in ipsec status when clicking (+) Show child SA entries is shown the details... Marcio Gomes
05:29 PM Feature #2358: NAT64 support
Another upvote. At some point in the future we're going to start having needs for v6-only networks. For some of the... Sean Harlow
04:51 PM Bug #8837 (Resolved): PHP error when creating alias URL Table (IPs)
Anonymous
04:26 PM Bug #8837: PHP error when creating alias URL Table (IPs)
This commit seems to have solved the issue. Steve Harrington
03:35 PM Bug #8837: PHP error when creating alias URL Table (IPs)
The `[] operator not supported` error should be fixed in the next snap.
0a906fcc2e120e7dd290ce7faac1ba14a24f731b
Anonymous
03:55 PM Bug #8683 (Resolved): Unable to add GIF interface (Hurricane Electric IPv6)
Tested on 2.4.4-DEVELOPMENT (amd64)
built on Tue Aug 28 08:43:43 EDT 2018
FreeBSD 11.2-RELEASE-p2
Was able to...
Anonymous
09:03 AM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
Result for @gre@ also looks good. Jim Pingle
08:52 AM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
... Anonymous
03:22 PM Bug #8824 (Resolved): is_numeric() on PHP 7 no longer validates hexadecimal values
Tested on: 2.4.4-DEVELOPMENT (amd64)
built on Tue Aug 28 08:43:43 EDT 2018
FreeBSD 11.2-RELEASE-p2
Haven't ...
Anonymous
03:12 PM Bug #8823 (Resolved): Dashboard Crash
Tested on 2.4.4-DEVELOPMENT (amd64)
built on Tue Aug 28 08:43:43 EDT 2018
FreeBSD 11.2-RELEASE-p2
No crashes ...
Anonymous
02:58 PM pfSense Packages Feature #8613 (Feedback): pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
PR merged, should be ready for testing shortly Jim Pingle
02:47 PM Bug #8726: Lack of input validation on custom GUI/dashboard settings leads to potential XSS
As long as it doesn't lead to an XSS it should be OK. Try using a typical XSS injection string and then going to a pa... Jim Pingle
02:43 PM Bug #8726: Lack of input validation on custom GUI/dashboard settings leads to potential XSS
Tested the above inputs webguicss, webguifixedmenu, webguihostnamemenu, and dashboardcolumns. and was not able to use... Anonymous
01:25 PM Bug #8845 (Feedback): Recompile PHP with a larger value of FD_SETSIZE.
Applied in changeset commit:4f03ad7a36b6c2f9060f059f167a491b06739acf. Renato Botelho
01:18 PM Bug #8845 (In Progress): Recompile PHP with a larger value of FD_SETSIZE.
Renato Botelho
02:19 AM Bug #8845 (Resolved): Recompile PHP with a larger value of FD_SETSIZE.
Crash report begins. Anonymous machine information:
amd64
11.2-RELEASE-p2
FreeBSD 11.2-RELEASE-p2 #72 9d6b703bf...
Chris Linstruth
01:12 PM Bug #8842 (Not a Bug): pfSense-pkg-aws-wizard-php72 sticks during install
In order to be able to install any of the PHP72 related packages you must upgrade to a PHP 7.2 based 2.4.4 snapshot. Renato Botelho
11:11 AM Feature #6384: Allow IPSEC P1 to have 2 peer remote gateway IP addresses to allow VPN failover faster without requiring DDNS
Your right. On our side we have our own IPs and BGP with FRR. But our Customers have only one IP from each ISP. Not i... Manfred Bongard
07:51 AM Feature #6384: Allow IPSEC P1 to have 2 peer remote gateway IP addresses to allow VPN failover faster without requiring DDNS
With 2.4.4 you can use routed IPsec and a routing protocol like OSPF or BGP to accomplish failover. You can build an ... Jim Pingle
07:45 AM Feature #6384: Allow IPSEC P1 to have 2 peer remote gateway IP addresses to allow VPN failover faster without requiring DDNS
Cloud is needed more and there is a reliable VPN connection very important. For this case a quick switch on failure i... Manfred Bongard
09:57 AM Bug #8519: pfSense update from the webGUI fails
All of my hosts that had issues before appear to be OK when upgrading from snaps from early yesterday to the latest a... Jim Pingle
07:43 AM Bug #8758 (In Progress): filterdns stops working on a regular basis.
Renato Botelho
06:12 AM Bug #8758: filterdns stops working on a regular basis.
Jim Pingle wrote:
> I had this happen on my edge firewall which is running a snapshot from earlier this week. The pf...
Renato Botelho
07:43 AM Feature #1337 (Assigned): VLANs with different MAC address than parent interface
Renato Botelho
07:08 AM Feature #1337 (In Progress): VLANs with different MAC address than parent interface
Renato Botelho
07:15 AM Todo #8810 (Closed): HA sync : Vouchers sync settings should be moved to System->High Avaliablity
Jim Pingle
06:41 AM Todo #8810: HA sync : Vouchers sync settings should be moved to System->High Avaliablity
@jimp you can close this A FL
04:47 AM Bug #8846 (Resolved): Misleading error message when adding/editing static routes which use a gateway on a disabled interface
I was adding static route on disabled interface and got the following message:... Mario Harjac
01:00 AM Feature #8173: dhcp6c - RAW Options
The improvement request https://redmine.pfsense.org/issues/8173 is essential for IPv6 authentication for Orange (Fran... frederic lubrano

08/27/2018

10:07 PM pfSense Packages Bug #8844: PFBlockerNG-Dev
https://www.reddit.com/r/PFSENSE/comments/9a9o8k/php_pfblockerng_related_crashing_in_244development/e4trgk9/
https...
BBcan177 .
10:28 AM pfSense Packages Bug #8844 (Duplicate): PFBlockerNG-Dev
Version: pfBlockerNG-devel 2.2.5_10
When enabling GeoIP the selection goes back to 'disabled'.
Firewall -> pfB...
Chris Macmahon
06:14 PM Bug #8838 (Resolved): PHP warning when creating an OpenVPN client with invalid setting
Anonymous
06:14 PM Bug #8838: PHP warning when creating an OpenVPN client with invalid setting
On 2.4.4.a.20180827.1735, cannot reproduce. Anonymous
06:50 AM Bug #8838: PHP warning when creating an OpenVPN client with invalid setting
Applied in changeset commit:ce04950d94bab271a9904a8bd8cbbe40d7a7d718. Anonymous
06:43 AM Bug #8838 (Feedback): PHP warning when creating an OpenVPN client with invalid setting
Anonymous
02:37 PM Bug #8758: filterdns stops working on a regular basis.
Sounds good! → luckman212
02:30 PM Bug #8758: filterdns stops working on a regular basis.
It is at https://github.com/pfsense/FreeBSD-ports/blob/devel/net/filterdns/files/filterdns.c but Renato is already lo... Jim Pingle
02:17 PM Bug #8758: filterdns stops working on a regular basis.
Agree it's less than ideal. But until a proper fix can be found a kludge might be safer than nothing, since aliases n... → luckman212
02:00 PM Bug #8758: filterdns stops working on a regular basis.
That's a rather ugly hack/kludge and it would be better to find out why it's failing and fix it directly. Jim Pingle
01:58 PM Bug #8758: filterdns stops working on a regular basis.
Hmm. In that case, how about we add some tests to the alias edit php functions to query pfctl directly after a save a... → luckman212
01:54 PM Bug #8758: filterdns stops working on a regular basis.
That is a possible side effect. You can kill the @filterdns@ daemon and then trigger a filter reload from *Status > F... Jim Pingle
01:51 PM Bug #8758: filterdns stops working on a regular basis.
Would this affect IP alias lists getting "stuck" and not updating? I ran into this last week - editing an Alias, adde... → luckman212
01:47 PM Bug #8758: filterdns stops working on a regular basis.
Anonymous
01:42 PM Bug #8519: pfSense update from the webGUI fails
I had several hitting this in my lab but only just now getting them onto snaps which included the latest fix. Let's g... Jim Pingle
01:42 PM Bug #8519 (Resolved): pfSense update from the webGUI fails
Renato Botelho
01:30 PM Bug #8519: pfSense update from the webGUI fails
Not seen any update issues for a few snaps now on a number of boxes. Steve Wheeler
01:27 PM Bug #8683 (Feedback): Unable to add GIF interface (Hurricane Electric IPv6)
Anonymous
01:26 PM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
Steve is working on this one Renato Botelho
11:37 AM pfSense Packages Feature #8835 (Rejected): FreeRADIUS Package - Don't store passwords as cleartext in users file
Even if they were encrypted before being put in there, they are still in plain text in @config.xml@. If you don't lik... Jim Pingle
10:49 AM Bug #7547: Static routes using aliases are not automatically updated when alias content changes

Also, when you delete a subnet from the alias editing and saving the static alias route doesn't remove the route.
...
Dave Kobel
10:28 AM Feature #5997: Captive Portal - Create more then 1024 vouchers once
"Bogus" is a closed/resolved status. It's already been dealt with. Jim Pingle
09:35 AM Feature #5997: Captive Portal - Create more then 1024 vouchers once
Is there any action from Netgate team requested here?
Can this ticket be marked as resolved?
A FL
09:21 AM Feature #2358: NAT64 support
TRIPLE UPVOTE! Dmitriy K
09:00 AM Feature #1191 (Closed): Enable dynamic VLAN assignment at Captive Portal
Jim Pingle
08:59 AM Feature #1191: Enable dynamic VLAN assignment at Captive Portal
Well, what you are describing is a VLAN-Based captive portal.
There are two kinds of Captive portals in the world:...
A FL
08:23 AM Bug #8842: pfSense-pkg-aws-wizard-php72 sticks during install
Looks like this affects all pkgs I got PHP crashes and errors for any pkg install process. Pkgs were installed proper... Constantine Kormashev
08:16 AM Bug #8842: pfSense-pkg-aws-wizard-php72 sticks during install
Uninstall finished well, but there were some errors during the process, see attachment. Constantine Kormashev
08:12 AM Bug #8842 (Not a Bug): pfSense-pkg-aws-wizard-php72 sticks during install
I tried to install pfSense-pkg-aws-wizard-php72 for 244 factory built on Wed May 30 14:47:02 EDT 2018 FreeBSD 11.2-BE... Constantine Kormashev
07:41 AM Feature #8841: Floating rules : add interface column
Indeed it has limitations.
Maybe this could be an on/off feature letting people liberty to activate it depending on...
Alexandre DULCHE
07:17 AM Feature #8841: Floating rules : add interface column
This is not entirely feasible because the floating rule could apply to dozens of interfaces and trying to print them ... Jim Pingle
07:15 AM Feature #8841 (Duplicate): Floating rules : add interface column
To allow an easier management of floating rules : add the colum inyertrface in the floating rules tab.
For now, AFAI...
Alexandre DULCHE
07:13 AM Feature #8840 (Duplicate): Copy multiples rules from one interface to another
Create a new button on firewall rules tab allowing to copy multiple firewall rules from one interface to another :
...
Alexandre DULCHE
07:11 AM pfSense Packages Bug #8839 (Duplicate): 2.4.4 Squid/ClamAV C-ICAP 0.5.x not starting
Duplicate of #8832 Jim Pingle
06:31 AM pfSense Packages Bug #8839 (Duplicate): 2.4.4 Squid/ClamAV C-ICAP 0.5.x not starting
Workaround:
https://forum.netgate.com/topic/133774/2-4-x-squid-clamav-fix-for-c-icap-0-5-x-not-starting
Thomas D
07:10 AM pfSense Packages Bug #8832: c-icap for Squid 5.1 on 2.4.4 Developer not starting
See also: https://forum.netgate.com/topic/133774/2-4-x-squid-clamav-fix-for-c-icap-0-5-x-not-starting Jim Pingle
06:23 AM pfSense Packages Bug #8790 (Assigned): getting PHP error regarding HAproxy pkg
On 2.4.4.a.20180801.0114 when I installed HAproxy I caught the same crash report.
But on 2.4.4.a.20180826.1232 whe...
Azamat Khakimyanov
06:18 AM Feature #8173: dhcp6c - RAW Options
Hello,
view patch https://github.com/opnsense/dhcp6c
his is the WIDE-DHCPv6 client maintained by the OPNsense...
frederic lubrano
05:23 AM Bug #8767: ID handling problem with DNS Forwarder host override management
I tried to reproduce this issue on 2.4.2:
- I added more then 120 DNS Forwarder host overrides
- I didn't see issue...
Azamat Khakimyanov

08/26/2018

11:58 PM Bug #8519: pfSense update from the webGUI fails
Can't reproduce in VM from 2.4.3 CE to 2.4.3_1, or 2.4.3_1 to 2.4.4 latest snapshot. Is there a specific device, desi... Anonymous
11:00 PM Bug #8838 (Resolved): PHP warning when creating an OpenVPN client with invalid setting
On a recent 2.4.4 snapshot visit VPN > OpenVPN > Client > Add, change Server mode to "Peer to Peer ( Shared Key )" an... Anonymous
12:09 PM Bug #8837: PHP error when creating alias URL Table (IPs)
I applied the changes, and I'm still receiving the following PHP error. It looks like the fix got rid of the count() ... Steve Harrington
11:35 AM Bug #8837: PHP error when creating alias URL Table (IPs)
Applied in changeset commit:d6d46650d207cf0d37a2551a8a73a83aaf804672. Anonymous
11:31 AM Bug #8837 (Feedback): PHP error when creating alias URL Table (IPs)
Anonymous
11:30 AM Bug #8837 (In Progress): PHP error when creating alias URL Table (IPs)
Anonymous
11:15 AM Bug #8837 (Resolved): PHP error when creating alias URL Table (IPs)
I was trying to follow the procedure described here to create a Netflix ipv6 alias.
https://forum.netgate.com/topi...
Steve Harrington
10:10 AM Bug #8813 (Resolved): User login through proxy only logs proxy IP address, not X-Forwarded-For
On current 2.4.4-DEV (20180825) I'm able to see "X-Forwarded-For" option when remote client behind proxy connects to ... Azamat Khakimyanov
07:53 AM pfSense Packages Feature #8836 (New): Define ldap group vlan assignment in users file
There should be a solution to configure vlan-id's for ldap groups.
Something like this: http://lists.freeradius.or...
vistalba none
07:49 AM pfSense Packages Feature #8835 (Rejected): FreeRADIUS Package - Don't store passwords as cleartext in users file
If a user is created in the FreeRadius GUI the password is stored as cleartext in "/usr/local/etc/raddb/users".
Th...
vistalba none
05:09 AM Bug #8822 (Resolved): HTTP_REFERER check fails after changing interface IP address
I checked on 2.4.3_p1 - I saw HTTP_REFERER check fails after changing interface IP address
Then I checked it on 2.4....
Azamat Khakimyanov

08/25/2018

09:38 PM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
Same issue as Frederick described - I can't seem to be able to effectively block inter-vlan traffic for IPv6 as the a... Lukas Kuzmiak
05:53 PM Feature #1337: VLANs with different MAC address than parent interface
James Dekker [6:49 PM]
With SG-5100 and XG-2758 on `2.4.4.a.20180824.1144` (which isn't the *latest* build, but shou...
Anonymous
03:32 PM Bug #8834 (Resolved): NAT > NPt address fields do not match the hover text
Anonymous
03:32 PM Bug #8834: NAT > NPt address fields do not match the hover text
On 2.4.4.a.20180825.0917 (gitsync'd to master) looks good. Hover text accurately reflects the description (shown in t... Anonymous
03:25 PM Bug #8834 (Feedback): NAT > NPt address fields do not match the hover text
Applied in changeset commit:c1004c847324888fff7252607384f7f39926e815. Jim Pingle
03:08 PM Bug #8834 (Resolved): NAT > NPt address fields do not match the hover text
Visit Firewall > NAT > NPt, click add, hover over each Address field.
Notice that the first Address field descri...
Anonymous
02:58 PM Feature #8812 (Resolved): Add "Select All" to Firewall/NAT rule lists
Anonymous
02:58 PM Feature #8812: Add "Select All" to Firewall/NAT rule lists
Select all works as expected on Firewall > NAT > Port Forward/1:1/Outbound/NPt and at Firewall > Rules on 2.4.4.a.201... Anonymous
08:16 AM Feature #8812 (Feedback): Add "Select All" to Firewall/NAT rule lists
Rule table given ID so selectall control can find it Anonymous
08:05 AM Feature #8812 (Assigned): Add "Select All" to Firewall/NAT rule lists
Steve Wheeler
08:04 AM Feature #8812: Add "Select All" to Firewall/NAT rule lists
The control is now present on NAT rules but does not seem to actually function. Clicking 'select all' does not select... Steve Wheeler
02:26 PM pfSense Packages Bug #8796 (Resolved): Enabling Automatic SID State Management causes php warning
Went to Suricata, went to SID management, Enable Automatic SID State Management, no error displayed
Current Base Sy...
Chris Macmahon
02:06 PM Bug #8801 (Resolved): OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
tested on image 2.4.4.a.20180825.0917 this is no longer happening,
Using the OpenVPN wizard as described in this i...
Chris Macmahon
02:05 PM Bug #7425 (Resolved): dhclient not sending option 77
Anonymous
02:04 PM Bug #7425: dhclient not sending option 77
On 2.4.4.a.20180824.1144, DHCP option 77 (user-class) is sent successfully. Anonymous
11:19 AM Bug #8816 (Resolved): User login does not record the authentication source
Anonymous
11:18 AM Bug #8816: User login does not record the authentication source
On 2.4.4.a.20180825.0917, when the user logs in, the dashboard and console indicate the IP of the user logging in and... Anonymous
10:38 AM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
As i understood from Intel specification on various chipsets, non-ip traffic like pppoe can't be hashed for RSS to wo... Sebastian Foss
09:08 AM pfSense Packages Bug #8833: haproxy getarraybyref error
fix kinda pending.. but discussion raised is delaying it being pulled.
https://github.com/pfsense/FreeBSD-ports/pull...
Pi Ba
07:03 AM pfSense Packages Bug #8833 (Resolved): haproxy getarraybyref error
On update to latest snapshot HA Proxy service fails to start.
Fatal error: Cannot redeclare getarraybyref() (previ...
Chris Macmahon
07:42 AM Feature #8817 (Resolved): Display login info in System Information widget
Looks good to me in:... Steve Wheeler

08/24/2018

08:41 PM pfSense Packages Bug #8825: Unable to activate any of the GeoIP blocking lists - keeps getting reset to disabled with PHP errors
This will be fixed in the next pfBlockerNG-devel v2.2.5_11 once its merged.
https://github.com/pfsense/FreeBSD-por...
BBcan177 .
07:30 PM pfSense Packages Bug #8832 (Resolved): c-icap for Squid 5.1 on 2.4.4 Developer not starting
See: https://forum.netgate.com/topic/133774/2-4-x-squid-clamav-fix-for-c-icap-0-5-x-not-starting.
Verified his fix w...
Juan Abonia
06:07 PM Bug #8831 (Closed): Radvd causes latency spikes
As already mentioned in this thread https://forum.netgate.com/topic/123554/new-latency-every-30-seconds-with-2-4-2-ca... Flole Systems
05:59 PM pfSense Packages Bug #8830 (Resolved): Automatic flowbit resolution setting does not match description
On 2.4.4.a.20180824.1624, install snort (version 3.2.9.7_1), visit Global Settings, enable some rulesets, visit Updat... Anonymous
04:37 PM pfSense Packages Bug #8716 (Resolved): Suricata package does not survive pfSense upgrade.
Steve Wheeler
04:37 PM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
Tested on ARM and x86. Looks good, Suricata running correctly after reboot.
pfSense-base: 2.4.4.a.20180823.1619 ->...
Steve Wheeler
04:06 PM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
I have done upgrade at SG-3100 to 2.4.4.a.20180824.1144 base system. Suricata has survived. Danilo Zrenjanin
04:23 PM pfSense Packages Bug #8829 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
On 2.4.4.a.20180824.0955, install Snort, visit Services > Snort. Go to the Global Settings tab, enable some rulesets,... Anonymous
04:16 PM pfSense Packages Bug #8828 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
On 2.4.4.a.20180824.0955, install Suricata, visit Services > Suricata. Go to the Global Settings tab, enable some rul... Anonymous
04:01 PM pfSense Packages Bug #8799 (Resolved): Automatic flowbit resolution setting does not match description
Anonymous
04:01 PM pfSense Packages Bug #8799: Automatic flowbit resolution setting does not match description
On suricata 4.0.13_17, works as expected. Anonymous
03:17 PM Bug #8721: DHCP High Availability - Statis assignement Issue on BackUP machine
Jim Pingle
03:16 PM Bug #8527: VLANs losing parent interface on LAGG change
Jim Pingle
03:15 PM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
Jim Pingle
03:15 PM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
This also affects GRE interfaces Jim Pingle
12:40 PM pfSense Packages Bug #8827 (New): Squidguard: ACL redirect modes 'redirect' and 'err page' send unresolvable URLs to the client.
Squid running in bump mode. Though that should not affect this.
When configuring Common or Group ACLs or applying ...
Steve Wheeler
06:02 AM Bug #8826 (Closed): PHP7: ACB error at upgrade.
Anonymous
12:00 AM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
ix driver seems to be affected also :
dev.ix.0.queue1.rx_packets: 67
dev.ix.0.queue1.tx_packets: 4107155
dev.ix....
Alexandre Paradis

08/23/2018

08:03 PM Bug #3124 (Resolved): portal_reply_page called twice in specific circumstance
Jim Pingle
03:53 PM Bug #3124: portal_reply_page called twice in specific circumstance
Working fine for me with vouchers & with Authentication Server
This issue can be marked as resolved !
A FL
02:11 PM Bug #3124 (Feedback): portal_reply_page called twice in specific circumstance
PR merged Renato Botelho
08:02 PM Feature #3136 (Closed): Captive Portal Increment Id
Jim Pingle
03:54 PM Feature #3136: Captive Portal Increment Id
@jimP this can be closed A FL
08:02 PM Feature #7707 (Resolved): Captive Portal - Radius Time out configuration field
Jim Pingle
03:56 PM Feature #7707: Captive Portal - Radius Time out configuration field
https://github.com/pfsense/pfsense/pull/3640 fixes this
This issue can be marked as resolved
A FL
07:07 PM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
We probably need to test this across an upgrade where the suricata package version doesn't change to be sure. Steve Wheeler
05:04 PM pfSense Packages Bug #8716 (Feedback): Suricata package does not survive pfSense upgrade.
Chris Macmahon
05:04 PM pfSense Packages Bug #8716 (Resolved): Suricata package does not survive pfSense upgrade.
Chris Macmahon
06:58 AM pfSense Packages Bug #8716 (Feedback): Suricata package does not survive pfSense upgrade.
Added a call to ldconfig start on suricata startup script. It should be enough to make sure libraries cache will be u... Renato Botelho
06:54 PM Bug #8826 (Feedback): PHP7: ACB error at upgrade.
That's already been fixed but the fix didn't make it into a factory snapshot until after the image you're on. Next on... Jim Pingle
06:34 PM Bug #8826 (Closed): PHP7: ACB error at upgrade.
Upgrading pfSense-kernel-pfSense-SG-3100 from 2.4.4.a.20180822.1157 to 2.4.4.a.20180823.1533... Steve Wheeler
04:34 PM pfSense Packages Bug #8251: Captiveportal + FreeRadius "Last activity" resets to Session start
Thanks for the reply Augustin.
I'm still having this issue, perhaps I will try your idea when I upgrade the next tim...
Frotty Zaoldyeck
04:29 PM pfSense Packages Bug #8251: Captiveportal + FreeRadius "Last activity" resets to Session start
This issue is likely comming from the way pfSense and FreeRadius are talking to each other when performing accounting... A FL
04:30 PM pfSense Packages Bug #8825 (Resolved): Unable to activate any of the GeoIP blocking lists - keeps getting reset to disabled with PHP errors
pfSense version 2.4.4.a.20180822.1157
pfBlockerNG-Deve version 2.2.5_10
Attempting to enable *any* of the GeoIP c...
George Phillips
02:32 PM pfSense Packages Bug #8797 (Resolved): Visiting Flow/Stream causes a php error to be be shown
Confirmed, looks good in latest suricata package version. Anonymous
02:17 PM pfSense Packages Bug #8797: Visiting Flow/Stream causes a php error to be be shown
I have tested this issue at SG-4860 | 2.4.4.a.20180823.0720 base system. I can confirm that php warning doesn't appea... Danilo Zrenjanin
02:29 PM pfSense Packages Bug #8798 (Resolved): Visiting App Parsers causes a php error to be be shown
Anonymous
02:28 PM pfSense Packages Bug #8798: Visiting App Parsers causes a php error to be be shown
Looks good in the latest version of suricata. Anonymous
02:20 PM Bug #8138: Option <spoofmac> is ignored on interfaces without hwaddr
Applied in changeset commit:2c1d7c12fa4f41a69d6c9267a34b1b767a1da522. Renato Botelho
02:11 PM Bug #8138 (Feedback): Option <spoofmac> is ignored on interfaces without hwaddr
Renato Botelho
02:11 PM Feature #1337 (Feedback): VLANs with different MAC address than parent interface
Renato Botelho
02:08 PM Feature #1337: VLANs with different MAC address than parent interface
Renato Botelho
01:51 PM pfSense Packages Bug #8799 (Feedback): Automatic flowbit resolution setting does not match description
This should be fixed now. 53261ab40f32f234e3432e15f5633f149b36863d
Version 4.0.13_7
Anonymous
01:08 PM pfSense Packages Bug #8799 (In Progress): Automatic flowbit resolution setting does not match description
Anonymous
12:42 PM pfSense Packages Bug #8799: Automatic flowbit resolution setting does not match description
On a fresh install of pfSense-CE-memstick-2.4.4-DEVELOPMENT-amd64-20180823-0720, install suricata (version 4.0.13_5),... Anonymous
01:27 PM Bug #8800 (Resolved): Interface group member cannot be deleted, after it's been disabled
Anonymous
01:27 PM Bug #8800: Interface group member cannot be deleted, after it's been disabled
On 2.4.4.a.20180823.0720, the disabled interface is still shown in the interface group, rather than removed. Anonymous
12:08 PM Bug #8590: sshd does not allow agent forwarding
@ssbarnea@ please resubmit your PR to the master branch A FL
10:29 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
Its been two months now.. are there any news? Sven L
09:01 AM pfSense Packages Bug #8795: PHP issues - illegal string; undef modules; init modules
Yes it does. Most of the work that is specific to 2.4.4, particularly accommodating PHP7, has been added to the -deve... Anonymous
08:58 AM pfSense Packages Bug #8795: PHP issues - illegal string; undef modules; init modules
pfB still shows latest as 2.1.4_8?
maybe your update hasn't pushed to be visible yet.
does pfB-devel work witho...
ROB VANHOOREN

08/22/2018

10:12 PM pfSense Packages Bug #7661: pfBlockerNG doesn't make a rule for Antarctica
Why was this resolved? There are still no Antartica rules generated when selecting items that have a number > 0 on t... Stuart Wyatt
08:25 PM pfSense Packages Bug #7661 (Resolved): pfBlockerNG doesn't make a rule for Antarctica
Jim Pingle
08:24 PM pfSense Packages Bug #7661: pfBlockerNG doesn't make a rule for Antarctica
This can be closed BBcan177 .
10:11 PM pfSense Packages Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
I'm not sure what you mean by "interfaces available". The problem is that there are no options for the L2TP interfac... Stuart Wyatt
08:16 PM pfSense Packages Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
I am not sure this needs an option? Aren't the interfaces available? BBcan177 .
08:22 PM pfSense Packages Bug #8318: PFBlockerNG removes alias file when using advanced inverted rule
Please report back if this issue can be closed. Thanks! BBcan177 .
08:14 PM pfSense Packages Bug #8651: another php error (broke stable pfBng)
This should be fixed in the latest pfBlockerNG version. BBcan177 .
08:14 PM pfSense Packages Bug #8699: 3x PHP in pfblockerng.inc (912/915/4687)
This should be fixed in the latest pfBlockerNG version. BBcan177 .
08:12 PM pfSense Packages Bug #8795: PHP issues - illegal string; undef modules; init modules
Please update to the latest pfBlockerNG version, and preferably pfBlockerNG-devel and report back if this repeats. BBcan177 .
08:09 PM pfSense Packages Bug #8811: in pfblockerng when change Rule Order generates duplicate all rules.
Please update to pfBlockerNG-devel and report back if the same issue repeats. BBcan177 .
12:22 PM pfSense Packages Bug #8799 (Feedback): Automatic flowbit resolution setting does not match description
Fix Pushed: c5901e3e38a7cefdc46f74734586f2f4b868a33f
The checkbox should now default to being checked.
Anonymous
11:52 AM pfSense Packages Bug #8799 (In Progress): Automatic flowbit resolution setting does not match description
Anonymous
10:22 AM pfSense Packages Bug #8790 (Feedback): getting PHP error regarding HAproxy pkg
Anonymous
10:22 AM pfSense Packages Bug #8790 (In Progress): getting PHP error regarding HAproxy pkg
Anonymous
10:15 AM Bug #8823: Dashboard Crash
Applied in changeset commit:e8d4004cb491c0eb87edff4db2508d0adcebd465. Anonymous
10:09 AM Bug #8823 (Feedback): Dashboard Crash
Hard to imagine how this error could be triggered in normal operation, but a file_exists check has been added just in... Anonymous
10:12 AM Feature #8644 (Feedback): IPsec mobile clients DNS enhancement
PR Merged Anonymous
09:58 AM Bug #8824 (Feedback): is_numeric() on PHP 7 no longer validates hexadecimal values
interfaces.php is fixed in commit:b6f6210a220bb206fd22ac34b306f007afedb01f -- I can now set a prefix ID of %0%, %1%, ... Jim Pingle
09:31 AM Bug #8824: is_numeric() on PHP 7 no longer validates hexadecimal values
Jim Pingle
09:31 AM Bug #8824 (Resolved): is_numeric() on PHP 7 no longer validates hexadecimal values
http://php.net/manual/en/function.is-numeric.php
> 7.0.0 Strings in hexadecimal (e.g. 0xf4c3b00c) notation are no...
Jim Pingle

08/21/2018

03:25 PM Bug #8800 (Feedback): Interface group member cannot be deleted, after it's been disabled
Applied in changeset commit:7dc56c76972cc3d7834572c9d676e3f729f45ad6. Anonymous
01:32 PM Bug #8800 (In Progress): Interface group member cannot be deleted, after it's been disabled
Anonymous
02:57 PM pfSense Packages Bug #8631 (Feedback): syslog-ng - logrotate incorrectly configured to rotate TLS key
Fix pushed, will be up shortly in syslog-ng v 1.15_1 Jim Pingle
02:45 PM Bug #8823 (Resolved): Dashboard Crash
Crash report begins. Anonymous machine information:
amd64
11.2-RELEASE-p2
FreeBSD 11.2-RELEASE-p2 #77 d5d0b259d...
Brian Caouette
01:54 PM Bug #7425 (Feedback): dhclient not sending option 77
It is now possible to set the VLAN Priority for DHCP requests (the same way that is done in DHCPv6).
Please test w...
Luiz Souza
01:40 PM Bug #7425 (In Progress): dhclient not sending option 77
Luiz Souza
01:35 PM Bug #7425 (Feedback): dhclient not sending option 77
Anonymous
01:30 PM Bug #8822 (Feedback): HTTP_REFERER check fails after changing interface IP address
Applied in changeset commit:5b93a1f4d1069200ad0a530d4c56edf877d1721d. Jim Pingle
01:18 PM Bug #8822: HTTP_REFERER check fails after changing interface IP address
Jim Pingle
01:14 PM Bug #8822 (Resolved): HTTP_REFERER check fails after changing interface IP address
If you access the GUI from the LAN and change the LAN interface IP address, then after changing the interface IP addr... Jim Pingle
11:08 AM pfSense Packages Bug #8796 (Feedback): Enabling Automatic SID State Management causes php warning
Fix pushed d4e48c1aefc9cf254a3883bbd49933831a995212
Version: 4.0.13_4
Anonymous
09:23 AM pfSense Packages Bug #8796 (In Progress): Enabling Automatic SID State Management causes php warning
Anonymous
11:08 AM Bug #3124: portal_reply_page called twice in specific circumstance
The bug reported by Constantine happens when "Add MAC addresses as pass-through" is checked but "include username in ... A FL
06:31 AM Bug #3124: portal_reply_page called twice in specific circumstance
Jim Pingle
02:39 AM Bug #3124: portal_reply_page called twice in specific circumstance
Constantine Kormashev wrote:
> I do not see the issue with doubling message, but see 2 different MACs which use the ...
A FL
01:26 AM Bug #3124: portal_reply_page called twice in specific circumstance
I do not see the issue with doubling message, but see 2 different MACs which use the same voucher... Constantine Kormashev
11:07 AM pfSense Packages Bug #8797 (Feedback): Visiting Flow/Stream causes a php error to be be shown
Fix pushed d4e48c1aefc9cf254a3883bbd49933831a995212
Version: 4.0.13_4
Anonymous
09:26 AM pfSense Packages Bug #8797: Visiting Flow/Stream causes a php error to be be shown
Anonymous
11:07 AM pfSense Packages Bug #8798 (Feedback): Visiting App Parsers causes a php error to be be shown
Fix pushed d4e48c1aefc9cf254a3883bbd49933831a995212
Version: 4.0.13_4
Anonymous
09:25 AM pfSense Packages Bug #8798: Visiting App Parsers causes a php error to be be shown
Anonymous
11:04 AM Bug #8803 (Resolved): PHP errors thrown in traffic shaper wizard multi
Anonymous
10:27 AM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Updated to the latest snap shot this morning and retested. The traffic shaper wizard now works as expected with no ... Matthew Deets
08:56 AM Bug #8803: PHP errors thrown in traffic shaper wizard multi
I have retested and don't see any problems. Since I pushed the update in two commits an hour apart, it is possible yo... Anonymous
01:09 AM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Verified with the latest snapshot that all steps are able to be completed in the traffic shaper wizard with no PHP er... Matthew Deets
10:07 AM Todo #8821 (Resolved): Remove Growl Notifications
Growl appears to be abandoned upstream. No updates in ~5 years, and few if any users on pfSense.
At this point it ...
Jim Pingle
10:00 AM Bug #8667 (Resolved): VU#857035 - IKE Protocol Vulnerability
Everything I'm reading says it can't be fixed in implementations since it's a protocol flaw. At this point I believe ... Jim Pingle
09:26 AM Bug #8805 (Resolved): Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
This appears to be working now. With vouchers disabled, I can load the login page and there is only username/password... Jim Pingle
01:33 AM Bug #8805: Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
Do not observe the issue, new roll is active after creation without additional actions. Constantine Kormashev
09:13 AM Bug #8138: Option <spoofmac> is ignored on interfaces without hwaddr
Code is not changing any interface that doesn't have `hwaddr` item. I'm working on a fix to save original mac address... Renato Botelho
05:58 AM Bug #8138 (In Progress): Option <spoofmac> is ignored on interfaces without hwaddr
Renato Botelho
09:05 AM Feature #8817 (Feedback): Display login info in System Information widget
Applied in changeset commit:80dbe344983666310a762ceab1520d578e3f2722. Jim Pingle
06:25 AM Feature #8817: Display login info in System Information widget
Actually if it shows "(/)" after the name I'd say that isn't fine. Somehow the authentication source is entirely empt... Jim Pingle
01:46 AM Feature #8817 (Resolved): Display login info in System Information widget
Feature works fine:
User admin@172.21.41.249 (/)
Constantine Kormashev
08:29 AM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
In a similar vein, but a bit different: it's also important to be able to have multiple <code class=text>id-assoc pd ... Zachary Hill
06:47 AM Feature #8812 (Feedback): Add "Select All" to Firewall/NAT rule lists
Control has been added to all NAT pages Anonymous
01:43 AM Feature #8812 (Assigned): Add "Select All" to Firewall/NAT rule lists
Constantine Kormashev
01:43 AM Feature #8812: Add "Select All" to Firewall/NAT rule lists
New feature works fine for:
@firewall_nat.php@
@firewall_rules.php@
But does not exist for:
@firewall_nat_1to1....
Constantine Kormashev
05:58 AM pfSense Packages Bug #8716 (In Progress): Suricata package does not survive pfSense upgrade.
Renato Botelho

08/20/2018

08:41 PM Bug #8820 (New): System/Advanced/Misc - "Do not kill connections when schedule expires" UN-checked still leaves existing connections open.
Orignal bug, marked as resolved but seems to be only partially resolved.
https://redmine.pfsense.org/issues/3558
...
Jesse Dunn
06:07 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Please confirm that this change eliminates the PHP error messages. The Wizard should now test to see if a required $c... Anonymous
06:00 PM Bug #8803 (Feedback): PHP errors thrown in traffic shaper wizard multi
Applied in changeset commit:a34bab9f4b93091e147bcae18b79e6349c60496c. Anonymous
05:10 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
The offending command is: $thisvar = &$config['ezshaper']['step4']['enable']; Anonymous
04:52 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Sorry, forgot to mention the step… If I check enable for step 3 The “penalty box” and press “next“, that’s where th... Matthew Deets
04:49 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Thanks for the extra detail. I was able to reproduce this after your clarification. Anonymous
04:46 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Just to be clear, the error(s) that I encountered which I thought perhaps could be a bug, occurred if any checkbox i... Matthew Deets
04:42 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Steve, Were you able to get through the entire shaper wizard with no errors when selecting to prioritize other prot... Matthew Deets
03:59 PM Bug #8803 (Feedback): PHP errors thrown in traffic shaper wizard multi
I am unable to reproduce this.
New VM running "out of the box" pfSense 2.4.4 snapshot from today
Number of wan ...
Anonymous
03:46 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Anonymous
03:07 PM Bug #8818: Thermal Sensor
This is on the APU4 Brian Caouette
03:06 PM Bug #8818 (Resolved): Thermal Sensor
Sensor widget is stucking in updating loop since 2.4.4 but worked fine in 2.4.3 Brian Caouette
02:55 PM Bug #8801 (Feedback): OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
Applied in changeset commit:1ec79365df1315b51542ec7344e4161d29e6b17f. Jim Pingle
02:53 PM Bug #8801: OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
Fix for this is coming. It affected more than just the OpenVPN wizard. The OpenVPN wizard, cert manager, and User Man... Jim Pingle
01:25 PM Bug #8519 (Feedback): pfSense update from the webGUI fails
Applied in changeset commit:b3cd2eb41666e8c2e35c5ea1d2dea0862d12e6c8. Renato Botelho
01:01 PM Bug #8815: IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
I have replicated this in em(4) and re(4) (on an APU) but not on mvneta(4).
All on the latest 2.4.4 snapshot.
Steve Wheeler
12:02 PM Bug #8815 (New): IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
When an interface loses link the IPv4 addresses, including VIPs, can disappear from the interface. If the link is dow... Jim Pingle
12:45 PM Feature #8817 (Feedback): Display login info in System Information widget
Applied in changeset commit:0fa7e6bfb5c8dfd07d9f5cf65c834d38d6198393. Jim Pingle
12:29 PM Feature #8817: Display login info in System Information widget
Jim Pingle
12:27 PM Feature #8817 (Resolved): Display login info in System Information widget
Add support to the system information widget to show the login name and source for the currently logged in GUI user v... Jim Pingle
12:45 PM Bug #8816 (Feedback): User login does not record the authentication source
Applied in changeset commit:d629601ab0a8a27a3b799062e16596c7683610bf. Jim Pingle
12:29 PM Bug #8816: User login does not record the authentication source
Jim Pingle
12:06 PM Bug #8816 (Resolved): User login does not record the authentication source
When a user logs in, there is no indication if the user logged in locally or from a remote authentication source. Kno... Jim Pingle
12:45 PM Bug #8813 (Feedback): User login through proxy only logs proxy IP address, not X-Forwarded-For
Applied in changeset commit:d629601ab0a8a27a3b799062e16596c7683610bf. Jim Pingle
09:11 AM Bug #8813: User login through proxy only logs proxy IP address, not X-Forwarded-For
Jim Pingle
09:11 AM Bug #8813 (Resolved): User login through proxy only logs proxy IP address, not X-Forwarded-For
When a user logs into the GUI through a proxy, only the proxy IP address is logged. If the HTTP request headers inclu... Jim Pingle
11:50 AM Bug #8805 (Feedback): Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
Applied in changeset commit:619e1950fdd96b606d3bbe8125476ea76a6190d0. Anonymous
11:08 AM Bug #8805 (In Progress): Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
Anonymous
01:02 AM Bug #8805: Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
login *template (sorry for my spelling) A FL
10:24 AM Bug #8814 (Rejected): After changing WAN CARP VIP Outbound NAT rules don't import new value but stay with old one and need to be changed manually
I created HA cluster on 2.4.3_p1 and after changing WAN CARP VIP Outbound NAT rules don't import new value. So I lost... Azamat Khakimyanov
08:41 AM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
Still seeing this. On ARM for example:... Steve Wheeler
07:42 AM Bug #3124 (Feedback): portal_reply_page called twice in specific circumstance
PR https://github.com/pfsense/pfsense/pull/3972 has been merged. Renato Botelho
07:10 AM Feature #8812: Add "Select All" to Firewall/NAT rule lists
Applied in changeset commit:e969408dc18a109c224da3feef4bcc69626f25dd. Anonymous
07:01 AM Feature #8812 (Feedback): Add "Select All" to Firewall/NAT rule lists
Anonymous
06:29 AM Feature #8812: Add "Select All" to Firewall/NAT rule lists
Not a bug, but a feature request. That page has not had a select all mechanism that I could see. Checked back to 2.1. Jim Pingle
02:34 AM Feature #8812 (Resolved): Add "Select All" to Firewall/NAT rule lists
pfSense does not have select all (Firewall -> Rules).
cannot select all rows in firewall rules.
imagine firewall ru...
reza mansoorpour
02:30 AM pfSense Packages Bug #8811 (Resolved): in pfblockerng when change Rule Order generates duplicate all rules.
in pfblockerng when change Rule Order generates duplicate all firewall rules. reza mansoorpour

08/19/2018

05:53 PM Bug #8807: HA sync : files voucher_{$cpzone}.cfg and voucher_{$cpzone}.public are not created on save in /var/save when enabling vouchers on master.
Ooops
I meant these two files are not created on *salve in */var/etc
and also despite public and private keys b...
A FL
05:21 AM Bug #8807 (Resolved): HA sync : files voucher_{$cpzone}.cfg and voucher_{$cpzone}.public are not created on save in /var/save when enabling vouchers on master.
When HA and vouchers are enabled, vouchers can't be used on the slave because the files used by @/usr/local/bin/vouch... A FL
05:43 PM Todo #8810: HA sync : Vouchers sync settings should be moved to System->High Avaliablity
Oh
My bad then...
I didn't understand the point of this feature. I appologize.
you could close this todo then.
A FL
03:16 PM Todo #8810: HA sync : Vouchers sync settings should be moved to System->High Avaliablity
These options are with the vouchers because they have to be setup on the secondary and not the primary. The secondary... Jim Pingle
06:25 AM Todo #8810: HA sync : Vouchers sync settings should be moved to System->High Avaliablity
related to #8420 A FL
05:50 AM Todo #8810 (Closed): HA sync : Vouchers sync settings should be moved to System->High Avaliablity
When using High Avaliablity, some inconsistant logs are displayed... A FL
05:29 PM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
Made a PR that 'kinda' incorporates this.. A little different than proposed though. It now supports a different chall... Pi Ba
03:24 PM Bug #8806: HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
I wonder if this might be the same root cause as #8721
An XMLRPC sync used to trigger filter_configure via XMLRPC ...
Jim Pingle
05:11 AM Bug #8806 (Resolved): HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
When a CP zone is enabled, slave does not start the captive portal (despite "enabled" setting appear checked on the s... A FL
03:15 PM Bug #7553: Captive portal on a parent interface blocks traffic on VLAN interfaces too
I just tested on two old release (x64-2.1-RELEASE and i386-2.1.5-RELEASE. That's the only deprecated release i could ... A FL
03:02 PM Bug #8768 (Resolved): IP Aliases with CARP VIP parent need reinitialized after interface event
Jim Pingle
10:51 AM Bug #8768: IP Aliases with CARP VIP parent need reinitialized after interface event
Do not observe the issue with IPAlias on CARP after interface down/up via un/plug cable aliases are able to handle tr... Constantine Kormashev
03:01 PM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
The package is there, but what we need is more functional testing. We need to make sure not only that RADIUS authenti... Jim Pingle
10:57 AM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
It seems ok on latest 244
*php72-pear-Auth_RADIUS-1.1.0_4 PEAR wrapper classes for the RADIUS PECL*
Constantine Kormashev
05:57 AM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
root: pkg info | grep RADIUS
hostapd-2.6_1 IEEE 802.11 AP, IEEE 802.1X/WPA/WPA2/EAP/RADIUS Authenti...
Chris Macmahon
02:56 PM Bug #8791 (Resolved): Default IPv6 rules do not allow some devices to perform router or neighbor discovery
Jim Pingle
11:16 AM Bug #8791: Default IPv6 rules do not allow some devices to perform router or neighbor discovery
Can see rules:... Constantine Kormashev
02:55 PM Bug #8782 (Resolved): Custom dyndns issue: username and password is not sent
Jim Pingle
11:28 AM Bug #8782: Custom dyndns issue: username and password is not sent
Can see creds in HTTP request:
!screen.png!
Packets in .cap file
Constantine Kormashev
12:44 PM Bug #7532 (Resolved): SG-1000 autonegotiation 10baseT speed and duplex
Chris Macmahon
12:44 PM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
This looks fixed on image Current Base System 2.4.4.a.20180819.0052:
2.4.4-DEVELOPMENT][root@pfSense.localdomain]/...
Chris Macmahon
11:13 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
FreeBSD pf1k.lab 11.2-RELEASE-p2 FreeBSD 11.2-RELEASE-p2 #60 da8baa0ffd8(factory-RELENG_2_4_4): Sun Aug 19 01:19:48 E... Constantine Kormashev
12:23 PM Bug #8603: PPP WANs do not work on VLANs on current snapshots
Solved on 2.4.4.a.20180818.2240.
Thanks for fixing this bug.
Enzo Laroche
09:33 AM Bug #8527 (Assigned): VLANs losing parent interface on LAGG change
Constantine Kormashev
09:31 AM Bug #8527: VLANs losing parent interface on LAGG change
I am able to reproduce the issue on VM with latest dev factory
VLANs have not parent after changing MTU to 9000 on...
Constantine Kormashev
05:55 AM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
CE test base xml, and images attached.
base image: https://snapshots.pfsense.org/amd64/pfSense_master/installer/pf...
Chris Macmahon
05:45 AM Bug #8809 (Resolved): HA sync : changing a voucher roll on master does not reset active tickets on slave.
Changing the number of tickets in an existing roll is supposed to reset active tickets by flushing the active voucher... A FL
05:23 AM Bug #8808 (Resolved): HA sync : When a captiveportal zone is deleted, deletion is not done on the slave.
Deleting a captiveportal zone on master does not delete the captiveportal on the slave. A FL
05:09 AM Bug #8805 (Resolved): Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
Clicking on "save" button of the voucher page does not enable vouchers on the login page.
you currently need to clic...
A FL
01:57 AM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Tested both the multi network and dedicated traffic shaper wizards and it appears that this issue is still occurring... Matthew Deets

08/18/2018

07:19 PM Bug #8804 (New): Netgate SG-1000 PPPoE Keepalives not prioritized, internet drops
Hello, I have the Netgate SG-1000 and have Zen VDSL2+ internet in the UK. I have 80Mbps down, 20Mbps up. I am current... Tony Lloyd
03:45 PM Feature #8793 (Resolved): Captive Portal HTML Design and Usability Improvements
On 2.4.4.a.20180817.2128, works as expected. Anonymous
06:22 AM Feature #8793: Captive Portal HTML Design and Usability Improvements
Just tested the new changes...It seems fine :)
Maybe i would set a @text-align:center;@ instead of a @text-align:...
A FL
11:28 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
Thanks Dmitry!
The fix is committed, I'll send the instructions.
Luiz Souza
06:12 AM Bug #7532 (Feedback): SG-1000 autonegotiation 10baseT speed and duplex
Dmitry Vakhrushev
06:11 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
Hi Luiz!
Would you provide instruction to upload the commit?
devel-11 branch?
Thanks,
-Dmitry
Dmitry Vakhrushev
06:07 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
Steve Wheeler, thank you for the idea with switch issue.
This solution resolve issue with transmit (TX) clocking (in...
Dmitry Vakhrushev
10:49 AM Bug #8803 (Resolved): PHP errors thrown in traffic shaper wizard multi
When attempting to save changes in order to proceed to the next step in the wizard following prioritizing VoIP, the ... Matthew Deets
09:10 AM Bug #8603: PPP WANs do not work on VLANs on current snapshots
I can confirm this too. Many thanks Dirk Steingäßer
07:23 AM Bug #8603 (Resolved): PPP WANs do not work on VLANs on current snapshots
It's working on the latest snapshot, PPPoE connected, interface is up and passing traffic. Thanks! Jim Pingle
08:01 AM Feature #3136: Captive Portal Increment Id
I would vote for a "reject"/"won't fix".
What you want is to update pfSense settings using a script, which is comp...
A FL
07:59 AM Bug #8801: OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
Jim Pingle
12:15 AM Bug #8801 (Resolved): OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
Go to System Cert Manager > CAs and make a new CA. Go to VPN > OpenVPN and click Wizards. On the first step choose lo... Anonymous
05:55 AM Feature #8802 (Rejected): DNS Resolver cannot use host alias for IP Address
https://<pfsense>/services_unbound_host_edit.php
The "Host Override Options" "IP Address" option should accept host ...
Lars Hupfeldt Nielsen
05:25 AM Bug #8792 (Resolved): OpenVPN wizard PHP error
Chris Macmahon
01:30 AM Bug #8792: OpenVPN wizard PHP error
UPD.
If you create CA without Country Code (left it as NONE) and in wizard trying to create new server certificate, ...
Denis Karpushin
12:31 AM Bug #8792: OpenVPN wizard PHP error
Created bunch of tunnels with wizard. Used internal server certificates and faced no issue. Denis Karpushin
04:24 AM Bug #8434: Chelsio T4/T5 CXGBE drivers not loaded as ALTq capable in the PfSense UI

2.4.4-DEVELOPMENT (amd64)
built on Fri Aug 17 20:20:38 EDT 2018
FreeBSD 11.2-RELEASE-p2
Still dead. :(
Justin Smith
03:36 AM Bug #8767: ID handling problem with DNS Forwarder host override management
On 2.4.4 Fri Aug 17 21:29:09 EDT 2018
When testing host edit/delete actions with host overrides in dns forwarder w...
Vladimir Lind
03:15 AM Bug #6237 (Resolved): RADVD, Route Information Option type 24, Multiple IPv6 gateways
Vladimir Lind
03:15 AM Bug #6237: RADVD, Route Information Option type 24, Multiple IPv6 gateways
On 2.4.3-p1:
Enabled RA, set Router Priority to Low (also tested with High and Normal):
radvd.conf left unchang...
Vladimir Lind
02:41 AM Feature #7769 (Resolved): DynDNS: Azure integration, update record in Azure (Dynamic DNS Client)
On 2.4.4 Fri Aug 17 21:29:09 EDT 2018:
Azure DynDNS client present for both IPv4/v6 - configured it with fake acco...
Vladimir Lind
02:37 AM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
On 2.4.4 Fri Aug 17 21:29:09 EDT 2018:
Shell Output - pkg info | grep RADIUS
freeradius3-3.0.17 Fre...
Vladimir Lind
02:31 AM Bug #8714 (Resolved): error in services_dhcpv6.php after clicking on Save button in case RA was not setup before enabling DHCPv6
On 2.4.4 Fri Aug 17 21:29:09 EDT 2018:
Created new interface, assigned ipv6, enabled, then verified both dhcp6 and...
Vladimir Lind
02:07 AM Bug #8527: VLANs losing parent interface on LAGG change
I can't replicate also - created 3 vlan's on a top of Lagg, assigned vlan's and Lagg interfaces, enabled, assigned IP... Vladimir Lind
01:35 AM Bug #8437 (Resolved): invalid outbound nat rules written when using ipv6 rules on interfaces that also have ipv4 adresses..
On 2.4.3-p1:
nat on $LAN_VLAN11 from 2607:fd48:300::/56 to any -> 192.168.51.1/32 port 1024:65535
On 2.4.4 Fri...
Vladimir Lind
01:22 AM Bug #7604 (Resolved): Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
On SG4860 2.4.4 build Tue Aug 14 16:55:58 EDT 2018 - restored config.xml, disabled WAN facing switchport, device boot... Vladimir Lind
12:17 AM pfSense Packages Bug #8798: Visiting App Parsers causes a php error to be be shown
screenshot Anonymous
12:16 AM Bug #8800: Interface group member cannot be deleted, after it's been disabled
screenshots. Anonymous

08/17/2018

11:58 PM Bug #8527: VLANs losing parent interface on LAGG change
Following the same steps as Luiz, I am also unable to recreate the issue on 2.4.4.a.20180817.2020. Anonymous
09:00 AM Bug #8527 (Feedback): VLANs losing parent interface on LAGG change
I can't reproduce this, tested on 2.4.3 and 2.4.4.
Steps:
1 - Create LAGG;
2 - Add VLANs to LAGG;
3 - Edit LA...
Luiz Souza
11:48 PM Bug #8800 (Resolved): Interface group member cannot be deleted, after it's been disabled
On 2.4.4.a.20180817.2020, make a VLAN, assign it as an interface, add the interface to a interface group. Edit the in... Anonymous
11:35 PM pfSense Packages Bug #8799 (Resolved): Automatic flowbit resolution setting does not match description
On 2.4.4.a.20180817.2020, install suricata (version 4.0.13_3), add an interface, visit the Categories tab and see tha... Anonymous
11:24 PM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
Install 2.4.4.a.20180810.1914 recovery snapshot for SG-3100. Install Suricata, enable some sources, update, add and e... Anonymous
11:38 AM pfSense Packages Bug #8716 (Feedback): Suricata package does not survive pfSense upgrade.
I couldn't reproduce this issue. Steve, do you still see issues when upgrade? Renato Botelho
11:04 PM pfSense Packages Bug #8798 (Resolved): Visiting App Parsers causes a php error to be be shown
On 2.4.4.a.20180817.2128, install suricata (version 4.0.13_3), add an interface, visit the WAN App Parsers tab, the p... Anonymous
11:01 PM pfSense Packages Bug #8797 (Resolved): Visiting Flow/Stream causes a php error to be be shown
On 2.4.4.a.20180817.2128, install suricata (version 4.0.13_3), add an interface, visit the Flow/Stream tab, the php w... Anonymous
10:53 PM pfSense Packages Bug #8796 (Resolved): Enabling Automatic SID State Management causes php warning
On 2.4.4.a.20180817.2128, install suricata (version 4.0.13_3), go to Services > Suricata > SID Mgmt, check the box to... Anonymous
05:11 PM pfSense Packages Bug #8795 (Closed): PHP issues - illegal string; undef modules; init modules
pfS latest (2.4.4.a.20180817.1117) has PHP broken for pfBng v2.1.4_8
thanks,
R.

-----
Crash report begi...
ROB VANHOOREN
03:17 PM Feature #8793: Captive Portal HTML Design and Usability Improvements
I Just tested the changes, the second authentication is working well.
However i faced another issue : @$PORTAL_MES...
A FL
12:34 PM Feature #8793: Captive Portal HTML Design and Usability Improvements
I just found out it does unselect using cmd+click on mac. So perhaps it is not an issue I just didn't know how to uns... Anonymous
12:23 PM Feature #8793: Captive Portal HTML Design and Usability Improvements
(Edit : Sorry my comment was off topic. You was probably referring to the login HTML page, not to the WebGUI settings... A FL
10:38 AM Feature #8793: Captive Portal HTML Design and Usability Improvements
I re-integrated the changes for the second authentication type for the login. # 15064e4fbffaf89b340f7df5c13bb5143d769... Anonymous
07:21 AM Feature #8793: Captive Portal HTML Design and Usability Improvements
One comment on the initial commit points out that the new HTML (accidentally?) removed the secondary authentication s... Jim Pingle
07:19 AM Feature #8793 (Resolved): Captive Portal HTML Design and Usability Improvements
The Captive Portal HTML/CSS is very dated and could use an update, plus it's difficult to customize for new users unf... Jim Pingle
01:43 PM Feature #8794 (Resolved): NTP authentication support
NIST 800.53, specifically CM-6, requires network devices sync their time source using authenticated NTP. I'd like to ... Tod L
01:41 PM Feature #1599 (Duplicate): Browser detection for captive portal
Jim Pingle
10:16 AM Bug #8603 (Feedback): PPP WANs do not work on VLANs on current snapshots
I missed one branch while I was cherry-picking this fix. It will be available on next CE snapshot. Luiz Souza
08:38 AM Bug #8603: PPP WANs do not work on VLANs on current snapshots
This still does not appear to be working, my PPPoE on VLAN test still fails. The @ng_ether_attach@ error is gone, but... Jim Pingle
08:20 AM Bug #8519: pfSense update from the webGUI fails
Since that last commit, systems that were not experiencing problems before now fail to track the updates. They print ... Jim Pingle
07:19 AM Bug #8138: Option <spoofmac> is ignored on interfaces without hwaddr
Renato Botelho
06:54 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
>> in this doc: https://www.ti.com/lit/ug/spruh73p/spruh73p.pdf
>> AM335x TRM
>14.3.6 RGMII Interface
>>The CPRG...
Dmitry Vakhrushev
05:50 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
Therefore receiving by SG-1000 is working on 10Mb and transmitting isn't working. Dmitry Vakhrushev
05:48 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
I checked the clocks on PHY.
GTX_CLK (which output from AM3358)
> when 1Gb is set = 125MHz,
> when 100Mb ~ 25MHz
...
Dmitry Vakhrushev
06:50 AM Bug #3124 (In Progress): portal_reply_page called twice in specific circumstance
Renato Botelho
01:38 AM pfSense Plus Bug #8600 (Resolved): "snmpd SIOCGIFDESCR (e6000sw0port1): Device not configured"
Vladimir Lind
01:38 AM pfSense Plus Bug #8600: "snmpd SIOCGIFDESCR (e6000sw0port1): Device not configured"
Tested on latest snap on 3100 and 7100 - looks good, thanks! Vladimir Lind

08/16/2018

05:14 PM Feature #1599: Browser detection for captive portal
Duplicate of #8793 + Fixed in Changeset https://github.com/pfsense/pfsense/commit/748372bc76d4f1794115204b13cf8cdef08... A FL
03:59 PM Bug #7423: Special characters in a password cause problems
The issue was reproducible with Microsoft IAS server on old Windows server 2003 but now we have updated the OS to Win... Davide Cottignoli
02:40 PM Bug #7423 (Not a Bug): Special characters in a password cause problems
It's entirely possible the changes to the underlying RADIUS code helped here. There was a similar problem in the past... Jim Pingle
02:36 PM Bug #7423: Special characters in a password cause problems
It's not a captiveportal issue.
Radius Auth is working fine with £ in the username and/or in the user password. I...
A FL
01:34 PM Bug #8499 (Feedback): IPv6 fragment logging causes panic in some circumstances
I committed our old fix for now, once the kp@ fix on the PR is tested I'll apply his fix.
Please check with the ne...
Luiz Souza
01:33 PM Bug #8499 (In Progress): IPv6 fragment logging causes panic in some circumstances
Luiz Souza
01:21 PM pfSense Plus Bug #8600 (Feedback): "snmpd SIOCGIFDESCR (e6000sw0port1): Device not configured"
The warning is now silenced.
Please test with the next snapshot.
Luiz Souza
01:07 PM Feature #5112 (Resolved): LDAP support for Captive Portal
Jim Pingle
01:06 PM Feature #5112: LDAP support for Captive Portal
I confirm that LDAP is working correctly now
This issue can be marked as resolved
A FL
12:03 PM Bug #8789 (Resolved): Warning on Captiveportal settings page, following recent changes
Jim Pingle
12:01 PM Bug #8789: Warning on Captiveportal settings page, following recent changes
Pull request is working, warning is gone.
This issue can be marked as resolved
A FL
05:46 AM Bug #8789 (Feedback): Warning on Captiveportal settings page, following recent changes
PR merged Renato Botelho
05:34 AM Bug #8789 (In Progress): Warning on Captiveportal settings page, following recent changes
Renato Botelho
10:45 AM Bug #8792 (Feedback): OpenVPN wizard PHP error
Applied in changeset commit:82a3d3e9a8e73896f9da02f77742ca8389b1dc83. Jim Pingle
10:36 AM Bug #8792 (In Progress): OpenVPN wizard PHP error
Jim Pingle
10:36 AM Bug #8792 (Resolved): OpenVPN wizard PHP error
In certain cases the OpenVPN wizard can result in a PHP error when selecting a server certificate:... Jim Pingle
08:44 AM Bug #8667: VU#857035 - IKE Protocol Vulnerability
The details of this issue have been publicly announced by CERT: https://www.kb.cert.org/vuls/id/857035
See also:
...
Jim Pingle
08:00 AM Bug #8791 (Feedback): Default IPv6 rules do not allow some devices to perform router or neighbor discovery
Applied in changeset commit:75cf92ffe93c7ea71cd5b432c369860b6e66a0d3. Jim Pingle
07:42 AM Bug #8791 (In Progress): Default IPv6 rules do not allow some devices to perform router or neighbor discovery
Jim Pingle
07:42 AM Bug #8791 (New): Default IPv6 rules do not allow some devices to perform router or neighbor discovery
Jim Pingle
07:37 AM Bug #8791 (Resolved): Default IPv6 rules do not allow some devices to perform router or neighbor discovery
"RFC 4861":https://tools.ietf.org/html/rfc4861#section-4.1 states in section 4.1 that during neighbor discovery a dev... Jim Pingle
07:12 AM Feature #5827 (Duplicate): Captive portal login facebook
Jim Pingle
02:09 AM Feature #5827: Captive portal login facebook
Duplicate of #3377 A FL
07:12 AM Feature #2599 (Closed): Captive Portal autologin function better than MAC passthrough
Jim Pingle
02:55 AM Feature #2599: Captive Portal autologin function better than MAC passthrough
Multiple things here :
A Pass-Trough MAC address is a MAC address that will bypass the captiveportal. Therefore...
A FL
05:31 AM Feature #852 (Rejected): Add Captive Portal default realm
Renato Botelho
03:19 AM Feature #852: Add Captive Portal default realm
It can already be done by creating a custom login page with some javascript on it... A FL
12:20 AM pfSense Packages Bug #8790 (Resolved): getting PHP error regarding HAproxy pkg
On 2.4.4 buildtime - Tue Aug 14 16:55:58 EDT 2018
Crash report begins. Anonymous machine information:
amd64
1...
Vladimir Lind

08/15/2018

05:45 PM Bug #8655 (Resolved): Radius Accounting updates are not sent in a particular situation
Jim Pingle
04:18 PM Bug #8655: Radius Accounting updates are not sent in a particular situation
I confirm that the fix is working. Accounting updates are now sent when using latest snapshot.
This issue can be...
A FL
05:45 PM Feature #8361 (Resolved): Add entered name to captive portal status and logs
Jim Pingle
04:12 PM Feature #8361: Add entered name to captive portal status and logs
I confirm that the fix is working. Name of the user is now recorded in captiveportal status and logs on last snapshot... A FL
05:44 PM Feature #3686 (Resolved): Distinguish services when sending authentication request to RADIUS server
Jim Pingle
03:55 PM Feature #3686: Distinguish services when sending authentication request to RADIUS server
I confirm that the fix is working.
@NAS-Identifier@ now has a value based on the service that triggered a RADIUS re...
A FL
05:44 PM Feature #8788 (Resolved): Disable compression by default for OpenVPN
Jim Pingle
03:49 PM Feature #8788: Disable compression by default for OpenVPN
On 2.4.4.a.20180815.1003 (gitsync'd to master), OpenVPN (server and client) default to "Disable Compression, retain c... Anonymous
03:25 PM Feature #8788 (Feedback): Disable compression by default for OpenVPN
Applied in changeset 3892257442d732c601c9f5e889327fb59d375437. Jim Pingle
03:13 PM Feature #8788 (In Progress): Disable compression by default for OpenVPN
Jim Pingle
02:18 PM Feature #8788 (Resolved): Disable compression by default for OpenVPN
In light of the voracle attack, this feature request is to disable compression by default for OpenVPN in pfSense. Anonymous
05:43 PM Feature #4294 (Resolved): Add additonal option to RADIUS Called-Station-Id value
Jim Pingle
03:52 PM Feature #4294: Add additonal option to RADIUS Called-Station-Id value
I confirm that the fix is working.
@Called-Station-ID@ and @Calling-Station-ID@ are now following RFC3580 (see http...
A FL
03:21 PM Bug #8789: Warning on Captiveportal settings page, following recent changes
Pull request here : https://github.com/pfsense/pfsense/pull/3971 A FL
03:17 PM Bug #8789 (Resolved): Warning on Captiveportal settings page, following recent changes
I got a warning while testing new Captive Portal settings.... A FL
03:11 PM Bug #8707: New PHP Error [/etc/inc/gwlb.inc]
Maybe I spoke too soon? This is simply nutty...
So, everything was working, and I went to change the monitor ip o...
Tyler L
12:40 PM Bug #8707 (Resolved): New PHP Error [/etc/inc/gwlb.inc]
I'll mark this resolved for now then. If you can manage to reproduce it again, let us know. Jim Pingle
12:33 PM Bug #8707: New PHP Error [/etc/inc/gwlb.inc]
I can buy that reasoning, considering the pita that the php7 upgrade has appeared to be with bugs.
After I posted,...
Tyler L
11:50 AM Bug #8707: New PHP Error [/etc/inc/gwlb.inc]
It's entirely possible that the underlying bug was fixed between the original report and now, and that this was a sid... Jim Pingle
11:46 AM Bug #8707: New PHP Error [/etc/inc/gwlb.inc]
Well, this is wackado. I replaced gwlb.inc with a fresh new repo copy and restarted php-fpm, and proceeded to start ... Tyler L
10:57 AM Bug #8707: New PHP Error [/etc/inc/gwlb.inc]
That gw group also includes wan as [5], I'm not sure why it didn't show for you? They are dynamic though and are all... Tyler L
07:51 AM Bug #8707: New PHP Error [/etc/inc/gwlb.inc]
The only potential problem there that I see is that one of your gateway groups consists entirely of gateways that are... Jim Pingle
02:00 PM Bug #8782 (Feedback): Custom dyndns issue: username and password is not sent
PR Merged Jim Pingle
01:35 PM Bug #8787 (Closed): vmware Appliance OVA template creates VMs that VEEAM cannot backup and restore successfully
We have discontinued the OVA so there won't be any opportunity to fix this.
Installing from ISO is the correct pat...
Jim Pingle
12:56 PM Bug #8787 (Closed): vmware Appliance OVA template creates VMs that VEEAM cannot backup and restore successfully
Affected version: every version we've tested so far, at least as far back as ~2.2.0, right through current 2.4 releas... Adam Thompson
01:33 PM Bug #4479: Firewall rules won't match GRE interface after applying IPSEC transport encryption on GRE tunnel
Interested to know why do you (or pfSense) think this is not a high priority.
On my point of view (that I know doe...
Wagner Sartori Junior
01:12 PM Bug #8138 (New): Option <spoofmac> is ignored on interfaces without hwaddr
Anonymous
09:01 AM Bug #8138 (In Progress): Option <spoofmac> is ignored on interfaces without hwaddr
Anonymous
12:56 PM pfSense Packages Bug #8785 (Resolved): Fail config authentication on squid
Renato Botelho
12:35 PM pfSense Packages Bug #8785 (Feedback): Fail config authentication on squid
Applied in changeset pfsense:commit:3a6273a960ea42c03a54ea0bf6002d4df4b5a696. Renato Botelho
12:44 PM Bug #8783 (Resolved): Saving Captive Portal Zone removes Captive Portal rules
This is working now. After saving the correct rules are still present. Thanks! Jim Pingle
08:56 AM Bug #8783 (Feedback): Saving Captive Portal Zone removes Captive Portal rules
An update has been made to the pfSense PHP module to correct another issue. It is likely to have fixed this one too.
...
Anonymous
11:56 AM Bug #8745 (Resolved): Adding a bridge generates a crash report.
Anonymous
11:56 AM Bug #8745: Adding a bridge generates a crash report.
On 2.4.4.a.20180815.1003, cannot reproduce. Anonymous
07:55 AM Bug #8745: Adding a bridge generates a crash report.
Applied in changeset commit:71de53e3203095e3a1b99baf8d27bfb63814b9b8. Anonymous
07:50 AM Bug #8745 (Feedback): Adding a bridge generates a crash report.
Anonymous
07:47 AM Bug #8745 (In Progress): Adding a bridge generates a crash report.
Anonymous
11:53 AM Bug #8744 (Resolved): Re-configuring an enabled captiveportal cause ipfw to drop all traffic, pfSense_ipfw_tables_list() is to blame (PHP 7 related?)
Renato Botelho
11:29 AM Bug #8744: Re-configuring an enabled captiveportal cause ipfw to drop all traffic, pfSense_ipfw_tables_list() is to blame (PHP 7 related?)
I confirm, it's fixed.
This can be marked as resolved.
A FL
08:31 AM Bug #8744 (Feedback): Re-configuring an enabled captiveportal cause ipfw to drop all traffic, pfSense_ipfw_tables_list() is to blame (PHP 7 related?)
Fix should be in the next snapshot.
Thanks for your detective work. It made finding this issue a great deal easier!
Anonymous
08:24 AM Bug #8744 (In Progress): Re-configuring an enabled captiveportal cause ipfw to drop all traffic, pfSense_ipfw_tables_list() is to blame (PHP 7 related?)
Anonymous
11:52 AM Feature #8772 (Resolved): Add GUI option for async crypto
Anonymous
11:51 AM Feature #8772: Add GUI option for async crypto
On 2.4.4.a.20180814.1656, enabling "Use asynchronous mode to parallelize multiple cryptography jobs" shows a noticeab... Anonymous
09:29 AM pfSense Packages Bug #8779: PHP7: Cron package. PHP Warnings
Looks good in package 0.3.7_3. No warnings seen. Steve Wheeler
09:12 AM pfSense Packages Feature #6022: Consider MLVPN for bonded VPN
any news?
we would also really love to have this!
IT IGP
09:09 AM Bug #8660 (Resolved): php undef constant breaks suricata
PR merged Renato Botelho
08:29 AM Bug #8660 (In Progress): php undef constant breaks suricata
Renato Botelho
07:07 AM Bug #8660 (Feedback): php undef constant breaks suricata
Too early closed - still errors.
Thu Aug 02 10:54:34 EDT 2018
Crash report begins. Anonymous machine informat...
Vladimir Lind
09:09 AM pfSense Packages Bug #8754 (Resolved): PHP7: Suricata Package, various php warnings
PR merged Renato Botelho
08:29 AM pfSense Packages Bug #8754 (In Progress): PHP7: Suricata Package, various php warnings
Renato Botelho
08:28 AM pfSense Packages Bug #8754 (New): PHP7: Suricata Package, various php warnings
Renato Botelho
09:08 AM pfSense Packages Bug #8781 (Resolved): Suricata PHP error in 2.4.4 snapshot
PR merged Renato Botelho
08:28 AM pfSense Packages Bug #8781 (In Progress): Suricata PHP error in 2.4.4 snapshot
Renato Botelho
08:52 AM Bug #8603 (Feedback): PPP WANs do not work on VLANs on current snapshots
Fix upstreamed and merged to 2.4.4 branch.
https://svnweb.freebsd.org/base?view=revision&revision=337844
Luiz Souza
07:55 AM Bug #8367 (Resolved): Traffic Graph widget shows Inverse view, even when Inverse is set to Off.
Looks like, this Bug was solved.
On 2.4.3_p1 I see this Bug, but on 2.4.4-DEV everything works fine: with Inverse ...
Azamat Khakimyanov
07:10 AM Feature #8786: Wireguard VPN
That won't happen until they make a secure, stable, and audited release. See https://forum.netgate.com/topic/132375/i... Jim Pingle
01:14 AM Feature #8786 (Resolved): Wireguard VPN
Hi
Please integrate wireguard VPN wireguard.com
Thx
Stefan Bühler
12:57 AM pfSense Packages Bug #8718 (Resolved): PHP Warning: Illegal string offset 'config' in /usr/local/pkg/net-snmp.inc on line 403
On 2.4.4 Tue Aug 14 16:55:58 EDT 2018 repeated steps - _install net-snmp package, visit Services > SNMP (NET-SNMP)... Vladimir Lind
12:50 AM Bug #8750 (Resolved): DNS Rebinding check fails to block IPv6 representation of IPv4 addresses in Unbound
On 2.4.3-p1:
Shell Output - nslookup net10.rebindtest.com
Server: 127.0.0.1
Address: 127.0.0.1#53
Non-author...
Vladimir Lind

08/14/2018

09:02 PM Bug #8489: DHCPv6 Client Failure to Initialize with "Do not wait for RA"
I'm disappointed this bug is being punted. On the forum, I offered my system (via teamviewer) if anyone wants to take... Daryl Morse
08:47 PM Bug #8707: New PHP Error [/etc/inc/gwlb.inc]
And ye shall receive. Note that VPN2 (opt6) is the gateway and interface that's disabled.
Tyler L
01:40 PM Bug #8707: New PHP Error [/etc/inc/gwlb.inc]
Nothing in there seems like it should cause any issues. I'm wondering if maybe you have a stray empty gateway tag in ... Jim Pingle
03:28 PM Bug #8472: IPsec with "Split connections" enabled (multiple P2's) - new added P2's are not coming up (between two pfsense's 2.4.3)
I can sort of reproduce this but not exactly in the way described. For example, if you stop and start (not restart) I... Jim Pingle
03:23 PM Bug #8744: Re-configuring an enabled captiveportal cause ipfw to drop all traffic, pfSense_ipfw_tables_list() is to blame (PHP 7 related?)
Sorry, the two mentioned URL above are not correct anymore due to recent captiveportal.inc changes on master.
Here...
A FL
01:44 PM Bug #8744: Re-configuring an enabled captiveportal cause ipfw to drop all traffic, pfSense_ipfw_tables_list() is to blame (PHP 7 related?)
Possibly related to #8783 Jim Pingle
03:17 PM pfSense Packages Bug #8785 (Resolved): Fail config authentication on squid
When configuring squid for ldap authentication the same does not accept in the 'Authentication Prompt' field accents ... Arthur Henrique Favoreto
03:12 PM pfSense Packages Bug #8784 (Not a Bug): Falha na Configuração de autenticação do Squid
Please open a new one in english. Renato Botelho
03:11 PM pfSense Packages Bug #8784 (Not a Bug): Falha na Configuração de autenticação do Squid
Ao configurar o squid para autenticação com ldap o mesmo não aceita no campo "Athentication Prompt" acentos do tipo c... Arthur Henrique Favoreto
01:47 PM Bug #8655 (Feedback): Radius Accounting updates are not sent in a particular situation
PR merged Renato Botelho
01:47 PM Feature #3686 (Feedback): Distinguish services when sending authentication request to RADIUS server
PR merged Renato Botelho
01:47 PM Feature #8361 (Feedback): Add entered name to captive portal status and logs
PR merged Renato Botelho
01:47 PM Feature #4294 (Feedback): Add additonal option to RADIUS Called-Station-Id value
PR merged Renato Botelho
01:47 PM Feature #5112 (Feedback): LDAP support for Captive Portal
PR merged Renato Botelho
01:44 PM Bug #8783: Saving Captive Portal Zone removes Captive Portal rules
Possibly related to #8744 Jim Pingle
01:35 PM Bug #8783: Saving Captive Portal Zone removes Captive Portal rules
Anonymous
01:26 PM Bug #8783 (Resolved): Saving Captive Portal Zone removes Captive Portal rules
When saving a Captive Portal zone, the rules disappear. Only way I've seen to bring them back is a reboot. After savi... Jim Pingle
01:22 PM pfSense Packages Bug #8779 (Resolved): PHP7: Cron package. PHP Warnings
Anonymous
01:21 PM pfSense Packages Bug #8670 (Assigned): HAProxy PHP error
Anonymous
11:24 AM Bug #8519 (Feedback): pfSense update from the webGUI fails
We were able to reproduce it and a fix was pushed at commit:1d8cd2215b2a0131f69d2879f77c01204b7928c5 Renato Botelho
10:55 AM pfSense Packages Bug #8780 (Feedback): Apcupsd PHP errors in 2.4.4 snapshot
Errors relevant to apcupsd are now fixed in commit:6b631073482b (apcupsd pkg version 0.3.91_4)
Tested and working,...
Jim Pingle
09:15 AM pfSense Packages Bug #8780: Apcupsd PHP errors in 2.4.4 snapshot
I'll take this, I need to look over the UPS packages anyhow. Jim Pingle
09:44 AM Bug #8782 (Resolved): Custom dyndns issue: username and password is not sent
I tried to use a custom DynDNS provider, one that I host myself but whose API is a clone of dyndns.org and I was surp... Alexis Bezverkhyy
09:02 AM Feature #8775: Use SRV record for LDAP Authentication
Thank you for the thoughtful response. I'll submit the feature to php-ldap! fw admin

08/13/2018

05:49 PM pfSense Packages Bug #8781 (Resolved): Suricata PHP error in 2.4.4 snapshot
Suricata gave the following error when upgrading from 2.4.3 to 2.4.4,
Crash report begins. Anonymous machine info...
Rajil Saraswat
02:33 PM Feature #8052 (Rejected): Separate MTU interface values for IPv4 and IPv6
If you have a 6in4 tunnel with a lower MTU, then the lower MTU would go on the 6in4 tunnel, not the pfSense WAN. The ... Jim Pingle
10:03 AM Bug #8413: Virtual IP on PPPOE interface no longer working with 2.4.3
Same (error in log) happening here, but already on version 2.4.1-RELEASE (amd64) . PPOE-interface with virtual IPs (v... Felix Wolfsteller
08:43 AM Bug #6938: DNS with OpenVPN gateway specified is routed through wrong interface. 2.4 regression.
OK, that seems to be a workable solution.
Adding "8.8.8.8/32, 8.8.4.4/32" to "IPv4 Remote network(s)", results in ...
Gavin Stewart
08:20 AM Bug #6938: DNS with OpenVPN gateway specified is routed through wrong interface. 2.4 regression.
That isn't a bug. You can't use static routes (like DNS server gateway selection) with OpenVPN.
If you want to rou...
Jim Pingle
08:08 AM Bug #6938: DNS with OpenVPN gateway specified is routed through wrong interface. 2.4 regression.
This issue persists with pfSense 2.4.3_1 openvpn-2.4.4_1.
It has not been resolved as in bug #6883.
DNS servers...
Gavin Stewart
08:32 AM pfSense Packages Bug #8780 (Resolved): Apcupsd PHP errors in 2.4.4 snapshot
I did an upgrade from 2.4.3 to 2.4.4 and recieved a bunch of errors for APCUPSD,
Crash report begins. Anonymous m...
Rajil Saraswat

08/12/2018

08:21 AM pfSense Packages Bug #8779: PHP7: Cron package. PHP Warnings
There's a PR for this at https://github.com/pfsense/FreeBSD-ports/pull/549 Jim Pingle
08:15 AM pfSense Packages Bug #8779 (Resolved): PHP7: Cron package. PHP Warnings
In Cron package version 0.3.7_2... Steve Wheeler
08:07 AM Feature #4354: Allow dpinger to ping more than one destination for a gateway.
At the risk of bumping a closed topic, I have an edge use case that could be considered if a gateway monitoring daemo... David Gessel

08/11/2018

03:45 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
It is highly unlikely we'd be able to dedicate any resources toward adding this feature internally. Jim Pingle
03:39 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
Jim Pingle wrote:
> If you'd like to configure that, you can set it as a system tunable under *System > Advanced*,...
Matthew Staver
02:24 PM Feature #1933 (Resolved): Support for interface groups in NAT screens
Anonymous
02:24 PM Feature #1933: Support for interface groups in NAT screens
On 2.4.4.a.20180810.1552, was able to create an Interface Group, then a NAT Port Forward using the newly created Inte... Anonymous
10:39 AM Bug #8477: Gateway latency, units used inconsistently.
Before this gets closed out, can the PR 32 for the dpinger.c update get merged as well so everything is consistent (ms)? → luckman212
08:29 AM Bug #8477 (Resolved): Gateway latency, units used inconsistently.
Vladimir Lind
08:29 AM Bug #8477 (Confirmed): Gateway latency, units used inconsistently.
Tested on 2.4.4-DEVELOPMENT (arm) built on Thu Aug 02 10:54:34 EDT 2018
Looks good.
GW log:
Aug 10 14:25:12...
Vladimir Lind
08:37 AM Bug #8680 (Resolved): PHP7: Adding a static gateway on an interface when none are already defined causes errors.
Created a gateway and then set it on an interface with "none" gateway - applied successfully
Tested on 2.4.4-DEVEL...
Vladimir Lind
08:37 AM Bug #8766 (Resolved): Improve IPsec encryption and hash warnings
Chris Macmahon
08:37 AM Bug #8766: Improve IPsec encryption and hash warnings
The following notes are now on the ipsec p1 page:
Note: Blowfish, 3DES, CAST128, MD5, SHA1, and DH groups 1, 2, 22...
Chris Macmahon
08:33 AM Feature #8101 (Resolved): Filter loop prevention
Got warning on 2.4.4-DEVELOPMENT (arm) built on Fri Aug 10 19:14:45 EDT 2018 when creating alias 'test_alias' with v... Vladimir Lind
08:21 AM Bug #8660 (Resolved): php undef constant breaks suricata
Vladimir Lind
08:20 AM Bug #8660 (Confirmed): php undef constant breaks suricata
Looks good on 2.4.4-DEVELOPMENT (arm) built on Thu Aug 02 10:54:34 EDT 2018 Vladimir Lind
07:08 AM Feature #8777 (Duplicate): DHCPD - WebGUI Permit Classes and Matches If
Permit from pfsense dhcp server gui to assign pools with classes and match if statements. For example for vendor-clas... Abraham Fernandez
05:51 AM pfSense Packages Bug #8491: ACME: DNS-Luadns not working
Issue still exists in Version 0.3.1_1. Anonymous

08/10/2018

04:14 PM pfSense Packages Bug #8749: OSPF6 nssa not working
Update:
It doesn't seem like FRR supports the NSSA area type. In fact, according to the documentation, it looks like...
Marc Planquart
03:15 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
We have set it to @deferred@ in the past on i386 to avoid a crash it otherwise encountered, but we do not explicitly ... Jim Pingle
02:58 PM Feature #8775: Use SRV record for LDAP Authentication
pfSense is at the mercy of the PHP LDAP module here, which itself uses OpenLDAP.
There isn't a way I could see to ...
Jim Pingle
10:57 AM Bug #8071: DNSimple support for Dynamic DNS no longer working
PR URL: https://github.com/pfsense/pfsense/pull/3946 Jim Pingle
07:38 AM Bug #8071 (Feedback): DNSimple support for Dynamic DNS no longer working
PR merged Jim Pingle
10:37 AM pfSense Packages Bug #8751: FRR prefix lists issues
To re-create the problem, I entered a network with a prefix of X, a minimum prefix equal to X and a maximum prefix eq... Marc Planquart
07:40 AM pfSense Packages Bug #8751: FRR prefix lists issues
If the UI validation is wrong that could still be a bug. What did it allow you to enter incorrectly, and where? It wo... Jim Pingle
06:21 AM pfSense Packages Bug #8751: FRR prefix lists issues
I found the issue. This is not a bug but more a UI validation issue.
When things are entered as expected by FRR, it ...
Marc Planquart
07:39 AM pfSense Packages Bug #8756 (Feedback): Add check_swap to nrpe package
PR merged Jim Pingle
07:38 AM Bug #8437 (Feedback): invalid outbound nat rules written when using ipv6 rules on interfaces that also have ipv4 adresses..
PR merged Jim Pingle

08/09/2018

06:26 PM Feature #8775 (New): Use SRV record for LDAP Authentication
Maybe it is me, but, using an SRV record to resolve to either SSL or TLS LDAP server doesn't work. IMO, this would p... fw admin
03:57 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
There has been a flurry of activity on this freebsd bug post. It sounds like the issue is a hardware limitation in t... Matthew Staver
01:01 PM pfSense Packages Bug #8774 (Resolved): Whitelist ALC type not supported by ssl_bump
The general purpose whitelist (@/var/squid/acl/whitelist.acl@) uses a @dstdom_regex@ ACL. @dstdomain@ ACLs do not wor... Ortwin Angermeier
12:48 PM pfSense Docs New Content #8773 (Closed): Add VPN Throughput Tuning info
Need to add a page to the docs about VPN throughput tuning
Example info that needs to go on the page:
* Use AES-N...
Jim Pingle
09:12 AM Bug #8758: filterdns stops working on a regular basis.
I had this happen on my edge firewall which is running a snapshot from earlier this week. The pf tables with entries ... Jim Pingle
09:00 AM Bug #7801: UDP fragments received over IPsec tunnel are not properly reassembled and forwarded
Hi,
I have a similar issue with fragmented packets send/received over IPsec tunnel.
Finally, I manage to update _/...
Franciszek Koltuniuk
08:20 AM Bug #8519 (Resolved): pfSense update from the webGUI fails
System was running a modified version. Renato Botelho
05:47 AM Bug #8736: default gateway not working after upgrade to 2.4.3-RELEASE-p1
Wow, it feels to you like support request? Well the border between that and bug report is nonexistant, so I undertsta... david ricar

08/08/2018

05:13 PM Bug #8618: 2.4.4 *possible bug* with Intel C3858 and Interface Auto-Detection on 10Gb interfaces
Clinton Cory wrote:
> This appears to be working now.
Thank you for helping get this Ironed out for the new platf...
Kevin Boatswain
05:10 PM Bug #8618 (Closed): 2.4.4 *possible bug* with Intel C3858 and Interface Auto-Detection on 10Gb interfaces
This appears to be working now. Clinton Cory
01:19 PM Bug #8618 (Ready To Test): 2.4.4 *possible bug* with Intel C3858 and Interface Auto-Detection on 10Gb interfaces
2.4.4 pfSense installer will enable OPT IX interfaces by default rather than just assigning the IX interface to OPT*
...
Clinton Cory
03:05 PM Feature #8772 (Feedback): Add GUI option for async crypto
Applied in changeset commit:912445421161939847112a21ae1114269dc4b882. Jim Pingle
02:54 PM Feature #8772 (Resolved): Add GUI option for async crypto
We pulled in patches for net.inet.ipsec.async_crypto which allows multi-threading for IPsec crypto jobs, but there is... Jim Pingle
02:15 PM Bug #8757 (Resolved): PHP Warning: A non-numeric value encountered in /etc/inc/shaper.inc on line 467
Pi Ba wrote:
> The error no longer happens on 2.4.4-DEVELOPMENT (amd64) built on Wed Aug 08 12:58:30 EDT 2018
> So ...
Jim Pingle
12:53 PM Bug #8757: PHP Warning: A non-numeric value encountered in /etc/inc/shaper.inc on line 467
The error no longer happens on 2.4.4-DEVELOPMENT (amd64) built on Wed Aug 08 12:58:30 EDT 2018
So in that regard it ...
Pi Ba
01:24 PM Bug #8707: New PHP Error [/etc/inc/gwlb.inc]
After more days of running, you sir are accurate, my idea is a non-start fail but you knew that. :)
With your patc...
Tyler L
11:15 AM Bug #8771: OpenVPN "custom options" box in GUI loses CR/LF (linefeeds) on save/reload meaning that OpenVPN then fails to start
Ok thanks - though semicolon in OpenVPN conf files designates a comment. Anyone cutting and pasting options and comm... Andrew -
11:08 AM Bug #8771 (Not a Bug): OpenVPN "custom options" box in GUI loses CR/LF (linefeeds) on save/reload meaning that OpenVPN then fails to start
The CR/LF inconsistency is why the custom options must be separated by a semicolon (@;@) and *not* a CR/LF. This is s... Jim Pingle
11:05 AM Bug #8771 (Not a Bug): OpenVPN "custom options" box in GUI loses CR/LF (linefeeds) on save/reload meaning that OpenVPN then fails to start
Apologies if I've missed it, but I couldn't see this issue has already been reported.
If you enter multiple custom...
Andrew -
08:44 AM Bug #8759: Apply changes cause openVpn Client disconnect to OpenVpn Server
Ok solved,
I have unchecked "State Killing on Gateway Failure" in system > Advanced > Miscellanous.
I have a backup...
Tomas Modenese
04:58 AM Bug #8759: Apply changes cause openVpn Client disconnect to OpenVpn Server
Ok , I managed to fix the Sync error, but the Site to Site still restart after "apply changes"
I have other 3 firewa...
Tomas Modenese
08:25 AM Bug #8770 (New): QinQ interfaces always show as active
In current 2.4.4 snapshots QinQ interface always appear to be UP and show carrier even when the parent interface (and... Steve Wheeler
08:17 AM Bug #8446 (Resolved): QinQ interfaces are assigned incorrectly
Steve Wheeler
07:26 AM pfSense Packages Feature #8769: Allow FreeRADIUS users to change their own Passwords and Pins
Changed title and other info -- this would need to be a new feature in the FreeRADIUS package and not a part of the b... Jim Pingle
07:17 AM pfSense Packages Feature #8769: Allow FreeRADIUS users to change their own Passwords and Pins
Please correct spelling of FreeRadius in title NCATS LAB
06:52 AM pfSense Packages Feature #8769: Allow FreeRADIUS users to change their own Passwords and Pins
Also request confirmation fields for password, pins and the like. NCATS LAB
06:43 AM pfSense Packages Feature #8769 (New): Allow FreeRADIUS users to change their own Passwords and Pins
Request ability to have Group Permissions which allow a regular radius user (not privileged) to change their own pass... NCATS LAB
06:38 AM Feature #3329: Allow creating "not" rules for IPsec Phase 2
Strongly Request feature.
We just lost a lot of time because this isn't implemented on SG-4860s.
On our REMOT...
NCATS LAB
05:58 AM pfSense Packages Bug #8580 (Closed): HAProxy produces intermittent 504 errors and sR–
Renato Botelho
02:56 AM pfSense Packages Bug #8580: HAProxy produces intermittent 504 errors and sR–
The newest pfSense HAProxy package installs 1.7.11 now. Can this be closed now? → luckman212
05:58 AM Bug #3720 (Resolved): Captive portal on httpS redirect to a http page
Renato Botelho
02:49 AM Bug #3720: Captive portal on httpS redirect to a http page
As this was a bug 4 years ago, I think it is fixed now because I also don't have the issue anymore in the latest vers... Sander Naudts
 

Also available in: Atom