Project

General

Profile

Activity

From 08/18/2018 to 09/16/2018

09/16/2018

11:14 PM Bug #8907 (Resolved): wizard.php - $field['type'] - "Select" doesn't have the attribute "Size" defined
The file wizard.php - $field['type'] option "Select" doesn't have the attribute "Size" defined.
From:...
BBcan177 .
10:33 PM pfSense Packages Bug #8903: pfBlockerNG: PHP error
Posted two PR to fix these issues and add other improvements.
https://github.com/pfsense/FreeBSD-ports/pull/567
h...
BBcan177 .
08:11 PM pfSense Packages Bug #8903: pfBlockerNG: PHP error
Steve, Are you sure this is not from pfBlockerNG-devel?
https://github.com/pfsense/FreeBSD-ports/blob/devel/net/pf...
BBcan177 .
01:07 PM pfSense Packages Bug #8903: pfBlockerNG: PHP error
This error looks to be triggering an unrequired config update:... Steve Wheeler
10:51 AM pfSense Packages Bug #8903: pfBlockerNG: PHP error
Sorry clipped the line in the copy there. Actual warning is:... Steve Wheeler
10:50 AM pfSense Packages Bug #8903 (Resolved): pfBlockerNG: PHP error
Seeing this on a clean install of pfSense-2.4.4.r.20180914.1530 and restoring an existing config.... Steve Wheeler
02:45 PM Bug #8905 (Resolved): status_logs_settings.php PHP errors on 2.4.4 snapshots
Info:
Working on testing the latest snapshots and I'm unable to add remote syslog on 2.4.4 snapshot (pfSense-2.4.4...
Jason Unovitch
01:08 PM pfSense Packages Bug #8904 (Resolved): Shellcmd: pfBlocker's earlyshellcmd is being removed at boot
The Shellcmd package is incorrectly removing the pfBlocker early shellcmd entry at each boot.... Steve Wheeler
08:16 AM pfSense Packages Bug #8902: HAproxy package not use custom DNS for lookup on apply new config
Pi Ba wrote:
> Hmm, i suppose your right.
>
> You could add below to the 'global advanced pass thru', that should...
DRago_Angel [InV@DER]
07:48 AM pfSense Packages Bug #8902: HAproxy package not use custom DNS for lookup on apply new config
Hmm, i suppose your right.
You could add below to the 'global advanced pass thru', that should solve the issue.
<...
Pi Ba
06:02 AM pfSense Packages Bug #8902 (New): HAproxy package not use custom DNS for lookup on apply new config
Package Version:
haproxy-devel net 0.59_9
Package Dependencies:
haproxy-devel-1.8.13 
cat /etc/version
2.4.3...
DRago_Angel [InV@DER]
07:54 AM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
Well, I made some tests :
h2. Basic RADIUS auth (Diag > Auth test)
-> Good (working correctly)
h2. GUI RADI...
A FL
02:53 AM Bug #8880 (Feedback): [PHP7] warning on system_gateways.php and extra item in gateways table
Keep it open until checking on next build, which contains current patch. Constantine Kormashev
01:04 AM Bug #8880 (Resolved): [PHP7] warning on system_gateways.php and extra item in gateways table
Constantine Kormashev
12:38 AM Bug #8880 (Assigned): [PHP7] warning on system_gateways.php and extra item in gateways table
Latest 14 Sep RC snapshot does not contain commit @a155dc5ec2278e0a344afa221127b8503d4e225e@ with this patch. But iss... Constantine Kormashev

09/15/2018

10:22 PM pfSense Packages Bug #8900: pfBlockerNG
Fixed: https://github.com/pfsense/FreeBSD-ports/pull/567 BBcan177 .
04:05 PM pfSense Packages Bug #8900 (Resolved): pfBlockerNG
Crash report begins. Anonymous machine information:
Current Base System 2.4.4.r.20180914.1544
amd64
11.2-RELE...
Chris Macmahon
03:43 PM Bug #8502: main (top) menu items do not drop down in some cases
ran arpping package 1.2.2_1, executed ping to mac, hover menu's don't populate, no crash recorded
ran package iperf ...
Chris Macmahon
02:53 PM pfSense Packages Bug #8899 (Resolved): AWS-ipsec error
2.4.4-RC (amd64)
built on Fri Sep 14 15:45:39 EDT 2018
FreeBSD 11.2-RELEASE-p3
Factory install aws-wizard: F...
Chris Macmahon
11:57 AM Bug #7892: AutoConfigBackup status reported incorrectly
This seems to be presenting in another way also, where System Log will show a successful backup, despite the backup n... Anonymous
09:20 AM pfSense Packages Feature #8523: make cookie inserted by haproxy secure
I've added a bunch of cookie options.. Does it work for you? Pi Ba
09:19 AM pfSense Packages Bug #8508: Haproxy: Selecting mode tcp with SSL in backend does not activate SSL in the server config
The server configuration now allows separate activation of ssl for regular traffic and for health-checks. That should... Pi Ba
07:02 AM pfSense Packages Bug #8670 (Resolved): HAProxy PHP error
Chris Macmahon
07:02 AM pfSense Packages Bug #8670: HAProxy PHP error
I am no longer seeing these errors.
Chris Macmahon

09/14/2018

08:01 PM Revision 9c614946: Always pass the $local variabled to load_loader_conf(), it makes the code easier to read.
(cherry picked from commit 1ef4cbdbb03791f5c3541df44da5a61d00db6e46) Luiz Souza
08:01 PM Revision 6b3bff74: Sync the know variables with factory.
(cherry picked from commit fe7523cbbdee119bf71abb93009f44a9f8e47963) Luiz Souza
08:01 PM Revision f8d1fe02: Filter properly the know variables in loader.conf.
The know variables should be used as prefix not as literals.
(cherry picked from commit 21bacf010021d34012f6869ce1d5...
Luiz Souza
07:59 PM Revision 1ef4cbdb: Always pass the $local variabled to load_loader_conf(), it makes the code easier to read.
Luiz Souza
07:58 PM Revision fe7523cb: Sync the know variables with factory.
Luiz Souza
07:53 PM Revision 21bacf01: Filter properly the know variables in loader.conf.
The know variables should be used as prefix not as literals. Luiz Souza
12:08 PM Bug #8893 (New): Outbound NAT page unnecessarily strips underscores from alias names
You are right that one page is inconsistent with the rest. They should all be done the same way. Not going to hold ba... Jim Pingle
11:35 AM Bug #8896 (Not a Bug): Static routes are not added after reboot
I can't reproduce this. I setup a GRE interface and static routes, rebooted 10 times and every time the routes were t... Jim Pingle
01:35 AM Bug #8896 (Not a Bug): Static routes are not added after reboot
Hello,
Version tested: 2.4.3-RELEASE-p1 (amd64)
Steps to reproduce:
1. Add a GRE tunnel
2. Add some static ro...
Dmitriy K
11:28 AM Revision 9a904de8: Fix #8895: Increase FD_SETSIZE to 3172 on lang/php72
Renato Botelho
11:28 AM Revision 352d4978: Fix #8895: Increase FD_SETSIZE to 3172 on lang/php72
Renato Botelho
07:44 AM Bug #8897 (Not a Bug): RADIUS WebUI login with RADIUS does not work
RADIUS auth works fine when configured correctly. The subject is incorrect, or at least misleading. It works with the... Jim Pingle
04:19 AM Bug #8897 (Not a Bug): RADIUS WebUI login with RADIUS does not work
Hi all,
I setup FreeRADIUS as a RADIUS server and try to login to the WebUI then.
It is not working since the retur...
Peter Baumann
06:35 AM Todo #8898 (Resolved): Update strongswan to 5.7.1
Update strongswan to 5.7.0 Renato Botelho
06:33 AM Bug #8845: Recompile PHP with a larger value of FD_SETSIZE.
Rajil Saraswat wrote:
> I am seeing the same crash on pfSense-CE-memstick-2.4.4-DEVELOPMENT-amd64-20180904-1004.img ...
Renato Botelho
06:30 AM Bug #8895 (Feedback): You MUST recompile PHP with a larger value of FD_SETSIZE. It is set to 2048, but you have descriptors numbered at least as high as 2161.
Applied in changeset commit:352d49787dc5742ea53dd81ff82fef5f37b246db. Renato Botelho
12:08 AM Revision 42c05989: Underscores never hurt nobody
Also, i18n → luckman212

09/13/2018

10:31 PM Bug #8895 (Resolved): You MUST recompile PHP with a larger value of FD_SETSIZE. It is set to 2048, but you have descriptors numbered at least as high as 2161.
Deleted issue #8894. This is similar to #8845 but insists on 3172, not 2048. Chris Linstruth
08:58 PM Bug #8893: Outbound NAT page unnecessarily strips underscores from alias names
The change above substitutes '_' with '_<wbr>' which is the same method used on other NAT pages. The '<wbr>' signals ... → luckman212
08:50 PM Bug #8893 (Not a Bug): Outbound NAT page unnecessarily strips underscores from alias names
It's done deliberately to avoid long aliases preventing wrapping. #7249 Jim Pingle
08:13 PM Bug #8893 (Resolved): Outbound NAT page unnecessarily strips underscores from alias names
I notice that underscores are being replaced with spaces in alias names on Firewall > NAT > Outbound.
It's not consi...
→ luckman212
08:26 PM Bug #8892 (Resolved): 2.3.5_2 does not offer update to 2.4.4-RC
Renato Botelho
07:59 PM Bug #8892: 2.3.5_2 does not offer update to 2.4.4-RC
Tested 2.3.5_2 -> 2.4.4-RC without any manual intervention. Looks good. Anonymous
01:41 PM Bug #8892 (Feedback): 2.3.5_2 does not offer update to 2.4.4-RC
pfSense-upgrade 0.51 (2.4.x) and 0.27_14 (2.3.5) are fixed Renato Botelho
01:29 PM Bug #8892: 2.3.5_2 does not offer update to 2.4.4-RC
After selecting stable 2.4.x updates:... Jim Pingle
01:26 PM Bug #8892 (Resolved): 2.3.5_2 does not offer update to 2.4.4-RC
A user on 2.3.5, who upgrades to 2.3.5_2, then tries to upgrade to 2.4.4-RC is not able to see 2.4.4-RC.
Even on t...
Anonymous
07:04 PM Feature #1189: Gateway: Multiple monitor ips
Openwrt mwan3 package has multiple monitors which can be tracked, https://wiki.openwrt.org/doc/howto/mwan3#interface_... Rajil Saraswat
10:55 AM Feature #1189: Gateway: Multiple monitor ips
Just going to add to the chorus here.
We encountered routing issues (their side, whole country affected) with one ...
Blaine Palmer
05:45 PM Bug #8845: Recompile PHP with a larger value of FD_SETSIZE.
I am seeing the same crash on pfSense-CE-memstick-2.4.4-DEVELOPMENT-amd64-20180904-1004.img running on Supermicro C35... Rajil Saraswat
10:24 AM Bug #8876 (Resolved): status_gateway_groups.php: PHP error when there is no gateways array
Can't reproduce any errors on gateway status in the latest RC build, even without @<gateway></gateway>@ tags in the c... Jim Pingle
10:22 AM Bug #8889 (Resolved): Setup Wizard PHP error when LAN has no DHCP configuration
Fix tests OK with a gitsync to RELENG_2_4_4, but the fix is not yet in the RC images, will be in -RELEASE. Jim Pingle
09:08 AM Bug #8891 (Resolved): PHP error with an empty CRL
Fixed on latest RC snap. Jim Pingle
09:07 AM Bug #8880 (Resolved): [PHP7] warning on system_gateways.php and extra item in gateways table
Blank entries are not displayed on current RC snap and they do not cause PHP errors. Jim Pingle
09:05 AM Bug #8877 (Resolved): VTI P2 can trigger an endless loop trying to form a P2 ID
Invalid combinations mentioned here are rejected on current RC snap Jim Pingle
09:03 AM Bug #8858 (Resolved): IPsec VTI cleanup can accidentally remove valid interfaces
Can't reproduce on RC snap on the same box where it happened previously. Looks good. Jim Pingle
08:45 AM Feature #8737 (Resolved): Let users configure PPPoE multilink over single link
Jim Pingle
08:44 AM pfSense Packages Bug #8631 (Resolved): syslog-ng - logrotate incorrectly configured to rotate TLS key
Jim Pingle
08:44 AM Bug #8499: IPv6 fragment logging causes panic in some circumstances
Still waiting on someone that can reproduce it to confirm if it still happens. May be fixed, but we won't know for ce... Jim Pingle
08:42 AM Bug #8071 (Resolved): DNSimple support for Dynamic DNS no longer working
No feedback after a month, we do not have accounts there to test. Assuming it's OK based on lack of complaints. Jim Pingle

09/12/2018

07:57 PM Revision 4868ef35: Initialize DHCP settings in setup wizard. Fixes #8889
Rather than assume they are present, create the arrays before use.
(cherry picked from commit 7c15c19d76eac725c42133...
Jim Pingle
07:46 PM Revision 7c15c19d: Initialize DHCP settings in setup wizard. Fixes #8889
Rather than assume they are present, create the arrays before use. Jim Pingle
07:37 PM Bug #8890: Register DHCP leases in the DNS Resolver has no effect
Also content in /var/unbound/dhcpleases_entries.conf stays unchanged after uncheck the boxes and save, so unbound can... Ender L
07:34 PM Bug #8890: Register DHCP leases in the DNS Resolver has no effect
Jim Pingle wrote:
> Those directives are always present. The contents of those files are what matter.
OK, I looke...
Ender L
02:58 PM Bug #8890 (Not a Bug): Register DHCP leases in the DNS Resolver has no effect
Those directives are always present. The contents of those files are what matter. Jim Pingle
02:48 PM Bug #8890 (Not a Bug): Register DHCP leases in the DNS Resolver has no effect
uncheck "DHCP Registration" and "Static DHCP" in WebGUI doesn't change unbound's behavior.
@# Static host entries...
Ender L
06:17 PM Revision 3d9d84d4: Fix a PHP erorr when a CRL has no certificates
(cherry picked from commit d9064f0b92452daeaf0cb7f0a0e74561f246ed5b) Jim Pingle
06:16 PM Revision d9064f0b: Fix a PHP erorr when a CRL has no certificates
Jim Pingle
05:31 PM Bug #8888: Memory Leak/loop 99% used Ramdisk band aid.
You should post in the forums.
Something else is wrong with your setup, this affects only you, thus us in the commun...
Anonymous
11:24 AM Bug #8888: Memory Leak/loop 99% used Ramdisk band aid.
Jim Pingle wrote:
> Looks like it's all configuration issues there, not a memory leak, but there is not enough detai...
Steven Nowak
10:47 AM Bug #8888 (Not a Bug): Memory Leak/loop 99% used Ramdisk band aid.
Looks like it's all configuration issues there, not a memory leak, but there is not enough detail to call it a bug by... Jim Pingle
10:01 AM Bug #8888: Memory Leak/loop 99% used Ramdisk band aid.
Sorry those screen shot above turned out like crap
Better one's.
[[https://ibb.co/fMe2X9]]
[[https://ibb.co/mUUf...
Steven Nowak
09:46 AM Bug #8888 (Not a Bug): Memory Leak/loop 99% used Ramdisk band aid.
I am Ruining 2.4.3-p1. I have tried every thing from No Plugins, to Ramdisk Via var. I can Control it if I running a ... Steven Nowak
03:38 PM Bug #8891 (Resolved): PHP error with an empty CRL
If a CRL contains no certificates, a PHP error appears in the contents of the page... Jim Pingle
02:50 PM Bug #8889 (Feedback): Setup Wizard PHP error when LAN has no DHCP configuration
Applied in changeset commit:7c15c19d76eac725c42133012488cb97e4dcd885. Jim Pingle
02:44 PM Bug #8889 (Resolved): Setup Wizard PHP error when LAN has no DHCP configuration
If you remove LAN and then add it back, then run the Setup Wizard, a PHP error will result.
Removing the LAN remov...
Jim Pingle
11:40 AM Bug #8868: multiple php errors on update
Upgrading to 2.4.4-RC from Sept 11, the php errors are still present.
https://netgate.slack.com/files/U32BGSZBP/FC...
Anonymous

09/11/2018

08:16 PM Bug #8868: multiple php errors on update
A while ago I added a code on pfSense-upgrade to cleanup crash report when PHP major version changes. I couldn't repr... Renato Botelho
08:14 PM Bug #8868: multiple php errors on update
Steve Wheeler wrote:
> Still seeing one of those PHP warning updating to todays image:
>
> [...]
This one shou...
Renato Botelho
05:42 PM Bug #8868: multiple php errors on update
Still seeing one of those PHP warning updating to todays image:... Steve Wheeler
07:44 PM Revision cf669325: Fix typo
(cherry picked from commit 3b55fc639cdea2be20d55113055fd511ba193866) Jim Pingle
07:44 PM Revision 3b55fc63: Fix typo
Jim Pingle
06:59 PM Revision aaf6d7a6: Update translation files
Renato Botelho
06:59 PM Revision b9f02588: Regenerate pot
Renato Botelho
06:55 PM Revision 834b671f: Update translation files
Renato Botelho
06:51 PM Revision 8c5817a9: Regenerate pot
Renato Botelho
05:18 PM pfSense Packages Bug #8887: Squid Proxy Interface not assignee to IPv6
For fix this issue maybe better not add IP at all if look to documentation: http://www.squid-cache.org/Versions/v3/3.... DRago_Angel [InV@DER]
05:06 PM pfSense Packages Bug #8887 (Resolved): Squid Proxy Interface not assignee to IPv6
Package Version:
squid www 0.4.43_1
Package Dependencies:
squid-3.5.27_3
cat /etc/version
2.4.3-RELEASE
c...
DRago_Angel [InV@DER]
03:20 PM Todo #8886 (Not a Bug): Update downloads page once hybrid iso/img installers are implemented
Once hybrid iso/img installers are implemented, we can remove the ISO and just have the hybrid memstick option for t... Jared Dillard
02:37 PM Bug #8815 (New): IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
Luiz Souza
02:37 PM Bug #8815: IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
Luiz Souza
02:29 PM pfSense Packages Bug #8885: HAProxy "Log hostname parameter broke local syslog
Package Version:
haproxy-devel net 0.59_9
Package Dependencies:
haproxy-devel-1.8.13 

cat /etc/version
2.4....
DRago_Angel [InV@DER]
02:14 PM pfSense Packages Bug #8885 (Closed): HAProxy "Log hostname parameter broke local syslog
DRago_Angel [InV@DER]
01:41 PM pfSense Packages Bug #8670 (Feedback): HAProxy PHP error
Jim Pingle
10:57 AM Bug #8859 (New): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
Needs more thought/testing than we'll have time for to make 2.4.4. There are workarounds on the linked forum thread f... Jim Pingle
06:05 AM Bug #8859 (Feedback): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
Applied in changeset commit:59c2e21d4f903ebaed3af861aeecab9b7e94d037. Jim Pingle
07:53 AM Bug #8883: Default route order set in Routing not honored
Though, as food for thought: ... Jaime Geiger
07:46 AM Bug #8883: Default route order set in Routing not honored
Thanks for your time. I'll just keep the changes locally. Jaime Geiger
07:45 AM Bug #8883: Default route order set in Routing not honored
It may appear to "work" for you but it is not a general fix that will work across all platforms, and may not behave c... Jim Pingle
07:29 AM Bug #8883: Default route order set in Routing not honored
I have created a fix (above) so clearly there can be something done in your code. The fix does not break current conf... Jaime Geiger
07:20 AM Bug #8883 (Not a Bug): Default route order set in Routing not honored
Having two interfaces in the same subnet is not supported, nor is having two interfaces with the same gateway.
The...
Jim Pingle
07:16 AM Bug #8883: Default route order set in Routing not honored
I propose the following fix on /etc/int/system.inc line 755:... Jaime Geiger
06:20 AM Bug #8883: Default route order set in Routing not honored
this is on amd64, by the way. Jaime Geiger
06:20 AM Bug #8883 (Not a Bug): Default route order set in Routing not honored
I have two interfaces:
- xn0: 10.0.0.253, gateway 10.0.0.1 (WAN)
- xn1: 10.0.0.254, gateway 10.0.0.1 (WAN2)
If I...
Jaime Geiger
06:05 AM Bug #8880: [PHP7] warning on system_gateways.php and extra item in gateways table
Applied in changeset commit:a155dc5ec2278e0a344afa221127b8503d4e225e. Anonymous
06:05 AM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
Applied in changeset commit:885cf6a751f076f43fa89167ba2a79f779244f1b. Jim Pingle
06:05 AM Bug #8876: status_gateway_groups.php: PHP error when there is no gateways array
Applied in changeset commit:b54a1af45c5add4e57253bfa0b562dadf3ae10f7. Jim Pingle

09/10/2018

08:31 PM Bug #8882 (Incomplete): Interface assignments lost on reboot
I'm running pfsense in AWS and I'm trying to route out of xn1 (second interface) instead of xn0 (using it as a sync i... Jaime Geiger
07:00 PM Revision a155dc5e: Fixed #8880
Steve Beaver
06:58 PM Revision ccabd09f: Merge branch 'master' of gitlab.netgate.com:pfsense/pfsense
Steve Beaver
03:57 PM Revision 6ae28bc3: Revert "Default VTI remote to Address but allow it to change. Fixes #8859"
This reverts commit da54e84ae79328a87b4a319239bb1b14d7ed2ce6. Jim Pingle
03:57 PM Revision 59c2e21d: Revert "Default VTI remote to Address but allow it to change. Fixes #8859"
This reverts commit da54e84ae79328a87b4a319239bb1b14d7ed2ce6. Jim Pingle
02:01 PM Bug #8880 (Feedback): [PHP7] warning on system_gateways.php and extra item in gateways table
Anonymous
06:33 AM Bug #8880: [PHP7] warning on system_gateways.php and extra item in gateways table
Configs for reproducing bug _only Netgate has access_ https://drive.google.com/file/d/1N8hgWGgN4ccwUB0ldBpjGQFZdRo96m... Constantine Kormashev
06:24 AM Bug #8880 (Resolved): [PHP7] warning on system_gateways.php and extra item in gateways table
244-RC... Constantine Kormashev
01:21 PM Bug #8815 (In Progress): IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
Anonymous
01:21 PM Bug #8815: IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
Anonymous
12:51 PM pfSense Packages Bug #8139: LADVD not working on LAGG interfaces
Based on the discussion in the repo (https://github.com/sspans/ladvd/issues/36), the FreeBSD port has been updated: h... Tom Cosmos
10:57 AM Bug #8859 (In Progress): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
This apparently fails despite previous reports of manual edits working. See
https://forum.netgate.com/post/788458
...
Jim Pingle
04:37 AM pfSense Packages Feature #8232: different ssl options based on the sni name
Hi Pi Ba,
looks like this patch not work with the most recent version of pfsense 2.4.3 P1. Can you check please?...
Zoltan Beck

09/09/2018

06:37 PM pfSense Packages Bug #8139: LADVD not working on LAGG interfaces
The creator of the LADVD package is saying this is likely fixed in his 1.1.2 implementation, and PFSense is still usi... Tom Cosmos
08:06 AM Bug #8527: VLANs losing parent interface on LAGG change
I still saw this issue on 2.4.4.r.20180905.2249 Azamat Khakimyanov

09/08/2018

11:15 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
Should have something up on Monday to try with gitsync at least, hopefully an RC as well. Jim Pingle
03:36 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
Okay thanks. So wait for a RC build now or gitsync to test.? Seems snapshots don't get updated a.t.m. . Pi Ba
03:16 PM pfSense Packages Bug #8139: LADVD not working on LAGG interfaces
Created issue to track in official repo:
https://github.com/sspans/ladvd/issues/36
Tom Cosmos

09/07/2018

04:29 PM Bug #8870: Webgui incorrectly reports "The system is on the latest version".
Yep I hit this one a couple of days ago, on whatever snap was latest as of 9/5
pkg goes braindead in some way if t...
→ luckman212
01:32 PM pfSense Packages Bug #8103 (Resolved): squid monitor using hard coded logs location
Jim Pingle
01:30 PM pfSense Packages Bug #8103: squid monitor using hard coded logs location
Issue can be closed, already merged on GitHub
https://github.com/pfsense/FreeBSD-ports/commit/b7c4da7878f8da6169c5...
Nano Caiordo
12:11 PM Revision 2ee829ae: Prevent a user from selecting VTI for mobile IPsec. Fixes #8877
(cherry picked from commit 885cf6a751f076f43fa89167ba2a79f779244f1b) Jim Pingle
12:10 PM Revision 885cf6a7: Prevent a user from selecting VTI for mobile IPsec. Fixes #8877
Jim Pingle
09:14 AM Feature #8879: DHCP options ADD force options
pfSense uses ISC DHCPD for DHCP, not dnsmasq. ISC DHCPD doesn't have a way to force an option in quite that same mann... Jim Pingle
09:11 AM Feature #8879 (New): DHCP options ADD force options
DHCP server offer the possiblilty to add DHCP options.
Maybe add for options the possibility to force the options (w...
jonathan MANTOVANI
07:13 AM Bug #8877 (Feedback): VTI P2 can trigger an endless loop trying to form a P2 ID
I just pushed another bit of input validation to prevent VTI from being selected on mobile IPsec. That should hopeful... Jim Pingle

09/06/2018

09:57 PM Revision af656615: Changes on the parent interfaces will create new interfaces and the existing VLANs needs to be redone.
Ticket #8527
(cherry picked from commit 6fd6b8536b80316caf0f3b9221ed6af0b3453571)
Luiz Souza
09:55 PM Revision 6fd6b853: Changes on the parent interfaces will create new interfaces and the existing VLANs needs to be redone.
Ticket #8527 Luiz Souza
08:32 PM Revision 39504035: IPsec VTI requires a manually specified network/address. Issue #8877
Prevent a user from selecting an interface macro like "LAN Network"
which cannot be used with VTI since it does not w...
Jim Pingle
08:32 PM Revision 02af1494: IPsec VTI requires a manually specified network/address. Issue #8877
Prevent a user from selecting an interface macro like "LAN Network"
which cannot be used with VTI since it does not w...
Jim Pingle
04:38 PM pfSense Packages Feature #8878 (Resolved): Propagate user's description field into QR code for FreeRADIUS
Hi,
it is often desirable (esp. when you have more than one identity added in your Google Auth mobile app) to dist...
Juraj Lutter
04:27 PM Bug #8877 (In Progress): VTI P2 can trigger an endless loop trying to form a P2 ID
Yeah the mobile case is still a bit undefined. I can shut that down as well. I'm not sure that is feasible since VTI ... Jim Pingle
04:14 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
i could configure vti on a 'normal' site-to-site vpn so perhaps its just a 'user issue' :) if so then sorry for the n... Pi Ba
04:06 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
Perhaps the issue was that i made my mobile-ipsec P2 use vti.. perhaps that does not actually make sense to do.?. it ... Pi Ba
03:35 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
I haven't tried setting one up this way but if someone were to have incorrectly selected something like "LAN Network"... Jim Pingle
03:07 PM Bug #8877 (Feedback): VTI P2 can trigger an endless loop trying to form a P2 ID
I can maybe see how some combination may lead to a loop here but I can't seem to make it happen on any of mine.
So...
Jim Pingle
03:05 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
Its about the vti and it looping around. see screenshot of a stacktrace. Pi Ba
02:34 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
I suspect it would have done the same for any other additional interface you add there and VTI was a coincidence. May... Jim Pingle
02:29 PM Bug #8877: VTI P2 can trigger an endless loop trying to form a P2 ID
agreed that the lines don't 'directly' point to vti.. however only when i enable 'that' interface its runs for a minu... Pi Ba
02:22 PM Bug #8877 (Not a Bug): VTI P2 can trigger an endless loop trying to form a P2 ID
That doesn't look like it would have anything to do with VTI. The lines you reference are quite different, one is a g... Jim Pingle
02:03 PM Bug #8877 (Resolved): VTI P2 can trigger an endless loop trying to form a P2 ID
Enabling a vti OPT1 interface throws me the following errors after a minute while processing the 'apply' button.. lik... Pi Ba
04:27 PM Revision 1884979a: Fix a PHP error when upgrading gateways
(cherry picked from commit bd670efef4c642ebb03b844ef0c38258740a37a1) Jim Pingle
04:27 PM Revision bd670efe: Fix a PHP error when upgrading gateways
Jim Pingle
03:00 PM Bug #8001: Invalid FQDN in alias causes alias table to fail *silently*
possibly related bug: https://redmine.pfsense.org/issues/8758 → luckman212
03:00 PM Bug #8758: filterdns stops working on a regular basis.
Ok, I've done that. For anyone else who wants an easy way, I made a patch that you can add via System Patches:
https...
→ luckman212
02:34 PM Bug #8527 (Feedback): VLANs losing parent interface on LAGG change
Waiting the next -RC build. Luiz Souza
07:14 AM Todo #6647: Enable Additional Security Headers
Fixed the subject to be more general since this is covering more than just CSP at this point.
We had someone askin...
Jim Pingle

09/05/2018

09:26 PM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
You were probably kidding, but my ISP will propose exactly this (40 gig) in 2-3 years ... at least that's the plan.
...
Alexandre Paradis
08:17 PM Revision 7d80bbbe: Init gateway group array before use. Fixes #8876
(cherry picked from commit b54a1af45c5add4e57253bfa0b562dadf3ae10f7) Jim Pingle
08:17 PM Revision b54a1af4: Init gateway group array before use. Fixes #8876
Jim Pingle
04:03 PM Bug #8876 (Feedback): status_gateway_groups.php: PHP error when there is no gateways array
Fix committed, will be in snaps when they are running again. Jim Pingle
03:08 PM Bug #8876 (Resolved): status_gateway_groups.php: PHP error when there is no gateways array
... Jim Pingle
12:15 PM Feature #6742: OAuth2 authentication for OpenVPN (and for FreeRadius)
+1 on my side as well. We need this in order to properly implement VPN/IPSec/FreeRadius for our remote workers to int... Patrick Monfette
04:03 AM Feature #8737: Let users configure PPPoE multilink over single link
Confirm option existing in GUI and in device config
!option.png!...
Constantine Kormashev
02:58 AM Revision 577afc43: Fix default repo
Renato Botelho
12:56 AM Bug #8875 (Duplicate): Separator in DHCP Server
Hi. Having a seperator in DHCP Server would be nice to allocate ip addresses like in Firewall Rules. Elvin Mammadov

09/04/2018

09:43 PM Bug #6263: Encryption options for every P2 on a given P1 are written to each P2 individually inside ipsec.conf with multiple P2 entries + split conn entries
PJ Goodwin wrote:
> Looked into this and the attached patch appears to fix the issue in 2.4.2. The comparable chang...
PJ Goodwin
04:28 PM Revision 569b8f21: Use proper variables on pkg repos
Renato Botelho
04:26 PM Revision 3a00b1b2: Rename 2.4.4-RC repo to pfSense-repo-244
Renato Botelho
04:26 PM Revision 3c5d8241: Rename 2.4.4-RC repo to pfSense-repo-244
Renato Botelho
04:25 PM Revision 7241fea9: Rename 2.4.4-RC repo to pfSense-repo-244
Renato Botelho
04:24 PM Revision e500235b: Fix branches
Renato Botelho
04:00 PM Revision 74fefca1: Add 2.4.4-RC repository
Renato Botelho
03:59 PM Revision 3cdfaf4e: Welcome pfSense 2.4.4-RC
Renato Botelho
03:58 PM Revision 834c6697: Bump version to 2.4.5-DEVELOPMENT and add 2.4.4 RC repository
Renato Botelho
02:44 PM Bug #8806 (Resolved): HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
Anonymous
02:25 PM Bug #8806: HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
Working correctly on the last snapshot
This issue can be marked as resolved.
A FL
09:05 AM Bug #8806: HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
Applied in changeset commit:7cab6335bb56d2ac372a195719be28c55b2cb252. Renato Botelho
09:01 AM Bug #8806 (Feedback): HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
Renato Botelho
02:41 PM Bug #8874 (Not a Bug): IPSEC Phase 2 Duplicated
It's unlikely that is the cause of your problem. Please keep this kind of guesswork/debugging on the forum until a sp... Jim Pingle
02:38 PM Bug #8874 (Not a Bug): IPSEC Phase 2 Duplicated
We detect some network issues between some sites. Look at IPSEC status, we can see some of our tunnels with Phase 2 d... Alan Santos
02:36 PM pfSense Packages Bug #8873 (Feedback): PHP7 warning in squidguard
Fix pushed. 824d08577196346be0e7d24d925bf3338208bd89
also cherry-picked to 2.4.4 3c1f879caabe7f9059e0a0143689d2d0b3c...
Anonymous
11:15 AM pfSense Packages Bug #8873 (Resolved): PHP7 warning in squidguard
[02-Sep-2018 21:00:29 Etc/UTC] PHP Warning: Use of undefined constant GIF_BODY - assumed 'GIF_BODY' (this will throw... Anonymous
02:31 PM pfSense Packages Bug #8872: PHP7 error in squid
Cherry-picked to 2.4.4 as well d47455c16c985d3d98fea422855a0dc7bf78c657 Anonymous
02:28 PM pfSense Packages Bug #8872 (Feedback): PHP7 error in squid
Fix Pushed 90c367bf2f2fcd61ed631bd3c4fd6634a253b5d6. Anonymous
11:14 AM pfSense Packages Bug #8872 (Resolved): PHP7 error in squid
[02-Sep-2018 21:45:02 Etc/UTC] PHP Fatal error: Uncaught Error: Call to undefined function split() in /usr/local/pkg... Anonymous
02:03 PM Revision 2eeeec06: Fix #8863: Add missing kernel module amdsmn, required by amdtemp
Renato Botelho
01:56 PM Revision 7cab6335: Fix #8806: Configure captive portal on secondary identical as master HA node
Renato Botelho
01:47 PM Bug #8758: filterdns stops working on a regular basis.
Luke Hamburg wrote:
> I have definitely hit this one - yes it is hard to reproduce. But, if I hit it again, is it wo...
Renato Botelho
01:09 PM Bug #8758: filterdns stops working on a regular basis.
I have definitely hit this one - yes it is hard to reproduce. But, if I hit it again, is it worth sending any sort of... → luckman212
09:10 AM Bug #8758: filterdns stops working on a regular basis.
Currently unable to reproduce Anonymous
01:31 PM Feature #8160: Accomodate both RADIUS and pool IP addresses in IPsec
Implementation PR: https://github.com/pfsense/pfsense/pull/3976 Louis C
10:37 AM Bug #8721 (Resolved): DHCP High Availability - Statis assignement Issue on BackUP machine
Constantine Kormashev
10:35 AM Bug #8721: DHCP High Availability - Statis assignement Issue on BackUP machine
It works well on latest... Constantine Kormashev
10:18 AM Bug #8499: IPv6 fragment logging causes panic in some circumstances
Looks like this is PPPoE related issue. I do not see problem with fragmented IPv6 and logging on Ethernet IPv6 forwar... Constantine Kormashev
09:34 AM Bug #8499: IPv6 fragment logging causes panic in some circumstances
I've never been able to replicate that locally. It's going to be very difficult to test. Steve Wheeler
09:59 AM Bug #8863 (Resolved): amdtemp.ko module failed to load
Fixed... Renato Botelho
09:10 AM Bug #8863: amdtemp.ko module failed to load
Applied in changeset commit:2eeeec06d7b8d719a8913c69095675a695305918. Renato Botelho
09:04 AM Bug #8863 (Feedback): amdtemp.ko module failed to load
Renato Botelho
02:51 AM pfSense Packages Bug #8871: Suricata: input not validated properly in suricata_rulesets.php results in wrong argument passed to in_array()
Forgot to set Category -> Suricata.
Running b0703dcab3c(RELENG_2_4_4) (snapshot) with latest Suricata package availa...
L H
02:50 AM pfSense Packages Bug #8871 (Resolved): Suricata: input not validated properly in suricata_rulesets.php results in wrong argument passed to in_array()
Spotted this today:... L H

09/03/2018

06:17 PM Revision 7fead243: Fix #8721: Call proper filter_configure function from this class
Renato Botelho
02:29 PM Bug #8870 (Resolved): Webgui incorrectly reports "The system is on the latest version".
In some circumstances the dashboard can report that the system is on the latest version when in fact the pkg system i... Steve Wheeler
01:25 PM Bug #8721: DHCP High Availability - Statis assignement Issue on BackUP machine
Applied in changeset commit:7fead243f9e6238e0098ea2bdc3c992fa071efeb. Renato Botelho
01:17 PM Bug #8721 (Feedback): DHCP High Availability - Statis assignement Issue on BackUP machine
Renato Botelho
01:18 PM Bug #8806 (In Progress): HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
Renato Botelho
07:20 AM Bug #8866: cleaning backup cache can take VERY long
It does load/parse them to check that they are valid so it can clean out invalid/broken configurations.
It's behav...
Jim Pingle
01:36 AM Bug #8866: cleaning backup cache can take VERY long
You were right as in i increased that setting. By a lot. We edit config quite often, so 30 backups wasn't feasible an... Militades Sunfire

09/02/2018

10:35 PM pfSense Packages Feature #8869: HAproxy should use RFC 7919 DH parameter files
It should not let you use a self-generated DH parameter file, but use the stock system DH parameter files which are f... Jim Pingle
10:20 PM pfSense Packages Feature #8869 (New): HAproxy should use RFC 7919 DH parameter files
It would be really nice to have a UI option to generate a custom DH parameter file for HAproxy to use.
The origina...
Stéphane Lapie
06:33 AM Bug #8192: dpinger - Change in ISP link-local IPv6 address drops connectivity
One is for DHCPv6, one is for PPPoE. They could be different problems, they could be the same problem, needs more res... Jim Pingle
12:00 AM Bug #8192: dpinger - Change in ISP link-local IPv6 address drops connectivity
Is this a dupe of #8136? → luckman212

09/01/2018

03:57 PM Feature #8867: interfaces_vlan_edit.php does not display proper interface aliases
Jim Pingle wrote:
> That is because VLANs are a child of the physical interface, not an assigned interface. The assi...
Xan Lorimer
02:43 PM Feature #8867 (Not a Bug): interfaces_vlan_edit.php does not display proper interface aliases
That is because VLANs are a child of the physical interface, not an assigned interface. The assignments and descripti... Jim Pingle
11:20 AM Feature #8867 (Confirmed): interfaces_vlan_edit.php does not display proper interface aliases
On /interfaces_vlan_edit.php (Interfaces>Assignments>VLANs>Add), when the parent interface drop-down list is clicked,... Xan Lorimer
02:44 PM Todo #8860 (Resolved): Change status.php to use "ifconfig -va" for more detail
Jim Pingle
01:11 PM Todo #8860: Change status.php to use "ifconfig -va" for more detail
On 2.4.4.a.20180831.2010, looks good.
Network-Intefaces shows module information for SFP+...
Anonymous
01:20 PM Bug #8868 (Not a Bug): multiple php errors on update
Installed Current Factory System: 2.4.3_1
Added packages: Squid, squidguard, lightsquid, pfblockerng, and Snort
...
Chris Macmahon
07:59 AM Bug #8859 (Resolved): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
Jim Pingle
04:12 AM Bug #8859: VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
On Fri Aug 31 20:10:51 EDT 2018:
Created P2 with VTI remote network, then changed it to remote address - changes a...
Vladimir Lind
07:50 AM Bug #8866 (Not a Bug): cleaning backup cache can take VERY long
By default it only keeps 30 backups. There is no way it would have as many files as you state without being manually ... Jim Pingle
04:26 AM Bug #8866 (Not a Bug): cleaning backup cache can take VERY long
Hi,
my pfSense is running on rather sparse CPU ressources (Atom N2800). Rebooting takes up to 30 minutes (actually c...
Militades Sunfire
05:47 AM Bug #8857 (Resolved): PHP error when saving on vpn_ipsec_settings.php
Anonymous
04:58 AM Bug #8857: PHP error when saving on vpn_ipsec_settings.php
Reset sg2440 Fri Aug 31 20:10:51 EDT 2018 to factory and then opened vpn_ipsec_settings.php, clicked "save" - no erro... Vladimir Lind

08/31/2018

10:40 PM pfSense Docs Correction #8865 (Rejected): Feedback on Networking Concepts — IPv6 — IPv6 Subnetting
*Page:* https://www.netgate.com/docs/pfsense/book/network/ipv6-subnets.html
*Feedback:*
IPv6 Subnet Table
IPv6 ...
Rick Coats
08:02 PM Revision b9c2164c: Revert "Attempt to re-enable Telegraf for armv6"
This reverts commit 46043cbc5a1dd205bcbe53cc31341d27ac06276e. Renato Botelho
07:35 PM Revision 46043cbc: Attempt to re-enable Telegraf for armv6
Renato Botelho
04:59 PM Bug #8864: SSH Guard Sensitivity/Whitelist on 2.4.4
Sorry I meant to put 2.4.4.a.20180831.0830 in the topic after 'SSH Guard on 2.4.4.a.20180831.0830' Zachary McGibbon
04:58 PM Bug #8864 (Resolved): SSH Guard Sensitivity/Whitelist on 2.4.4
I am running 2.4.4.a.20180831.0830 and noticed that my Icinga monitoring started to show issues with SSH. When I loo... Zachary McGibbon
03:09 PM Bug #8863 (Resolved): amdtemp.ko module failed to load
amdtemp.ko module failed to load with the following error message
KLD amdtemp.ko: depends on amdsmn - not availabl...
Cédric Caron
02:49 PM Bug #8856 (Resolved): IPsec not starting and getting PHP error
Jim Pingle
02:07 PM Bug #8856: IPsec not starting and getting PHP error
Yes, fsck fixed IPsec issue, now it works, thank you.
** Last Mounted on /
** Root file system
** Phase 1 - Chec...
Vladimir Lind
08:25 AM Bug #8856 (Feedback): IPsec not starting and getting PHP error
Applied in changeset commit:b5a4633f9ffeb365aba1d8b451f3638b37452b23. Jim Pingle
08:06 AM Bug #8856 (In Progress): IPsec not starting and getting PHP error
I see some room for improvement in that area of the code, but that error appears to come from a disk issue.
Speaki...
Jim Pingle
01:23 AM Bug #8856 (Resolved): IPsec not starting and getting PHP error
on SG3100 Thu Aug 30 00:38:38 EDT 2018
Crash report begins. Anonymous machine information:
arm
11.2-RELEASE-p...
Vladimir Lind
02:47 PM Revision 836ee3aa: Change status.php to use "ifconfig -v". Implements #8860
Jim Pingle
02:26 PM Revision d145caa8: Revise async_crypto setting
Steve Beaver
02:12 PM Revision da54e84a: Default VTI remote to Address but allow it to change. Fixes #8859
Jim Pingle
02:08 PM Revision d08e8255: Make async_crypto explicit enabled/disabled rather than current isset
Steve Beaver
01:54 PM Revision 74e45438: Move IPsec VTI interface cleanup list. Fixes #8858
Generate the cleanup list before the P1 loop but after the initial
interface configuration.
Jim Pingle
01:22 PM Revision b5a4633f: Use safe_mkdir() for IPsec dirs. Fixes #8856
Simplifies the process of making IPsec dirs, though it may not correct
the original reported issue since that appears...
Jim Pingle
12:29 PM Revision 463b52b6: Initialize IPsec logging array before use. Fixes #8857
Jim Pingle
11:52 AM pfSense Docs Correction #8862 (Resolved): [feedback form] Include configuration examples for IPv6 WANs
*Page:* https://docs.netgate.com/pfsense/en/latest/interfaces/configure-ipv6.html
*Feedback:* Examples would be ni...
Jared Dillard
11:09 AM Bug #7604: Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
Repeated the same test with installed squid, bind packages - all good, no delay's in bootup. Vladimir Lind
10:03 AM Feature #8861 (Resolved): Show SFP module details on ``status_interfaces.php``
Looking at the output of @ifconfig -v@, there is more info we could be showing on status_interfaces.php.
At a mini...
Jim Pingle
09:55 AM Todo #8860 (Feedback): Change status.php to use "ifconfig -va" for more detail
Applied in changeset commit:836ee3aaca674a84dec47dce9a1183b98352ba4f. Jim Pingle
09:47 AM Todo #8860 (Resolved): Change status.php to use "ifconfig -va" for more detail
@ifconfig -v@ will return more info than the @ifconfig@ alone. For @ix(4)@ interfaces it will print information about... Jim Pingle
09:15 AM Bug #8859 (Feedback): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
Applied in changeset commit:da54e84ae79328a87b4a319239bb1b14d7ed2ce6. Jim Pingle
09:10 AM Bug #8859 (In Progress): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
Jim Pingle
09:09 AM Bug #8859 (Resolved): VTI: Some third-party vendors require rightsubnet to have a mask for VTI, rather than address
Some equipment that supports VTI requires the remote address be set to a network and not the default address, or else... Jim Pingle
09:05 AM Bug #8858 (Feedback): IPsec VTI cleanup can accidentally remove valid interfaces
Applied in changeset commit:74e4543842c47efda37e3b078b8e5cc3f54ce9ba. Jim Pingle
08:56 AM Bug #8858 (In Progress): IPsec VTI cleanup can accidentally remove valid interfaces
Jim Pingle
08:56 AM Bug #8858 (Resolved): IPsec VTI cleanup can accidentally remove valid interfaces
Then code that cleans up deleted/disabled IPsec VTI interfaces can, with certain configurations, delete a valid inter... Jim Pingle
07:35 AM Bug #8857 (Feedback): PHP error when saving on vpn_ipsec_settings.php
Applied in changeset commit:463b52b606d98b72cbaeb2f6d3c348689106c414. Jim Pingle
07:28 AM Bug #8857 (In Progress): PHP error when saving on vpn_ipsec_settings.php
Jim Pingle
07:26 AM Bug #8857 (Resolved): PHP error when saving on vpn_ipsec_settings.php
From a fresh install with no IPsec configuration, clicking Save on vpn_ipsec_settings.php gives a PHP error:... Jim Pingle
05:36 AM pfSense Packages Bug #8790 (Resolved): getting PHP error regarding HAproxy pkg
Anonymous
02:08 AM pfSense Packages Bug #8790: getting PHP error regarding HAproxy pkg
Hi!
All OK, thanks!
Greg M

08/30/2018

09:53 PM pfSense Packages Bug #8829: Keep settings checkbox under Global Settings does not behave as expected
On a fresh install of 2.4.4.a.20180830.1356, when snort 3.2.9.7_2 is installed the output is :... Anonymous
09:30 PM pfSense Packages Bug #8829 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
Anonymous
09:17 PM pfSense Packages Bug #8829: Keep settings checkbox under Global Settings does not behave as expected
On version 3.2.9.7_2, installed suricata, configured some settings, unchecked the Keep settings checkbox, uninstalled... Anonymous
11:37 AM pfSense Packages Bug #8829 (Feedback): Keep settings checkbox under Global Settings does not behave as expected
This should now work as expected. c5d12ed2814f7ed5c002fb71fae6d992708bc4f9
Snort version 3.2.9.7_2
Anonymous
09:49 PM pfSense Packages Bug #8828 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
Anonymous
09:49 PM pfSense Packages Bug #8828: Keep settings checkbox under Global Settings does not behave as expected
On a fresh install of 2.4.4.a.20180830.1356, when suricata 4.0.13_8 is installed the output is :... Anonymous
05:50 PM pfSense Packages Bug #8828: Keep settings checkbox under Global Settings does not behave as expected
On version 4.0.13_8, installed suricata, configured some settings, unchecked the Keep settings checkbox, uninstalled ... Anonymous
11:17 AM pfSense Packages Bug #8828 (Feedback): Keep settings checkbox under Global Settings does not behave as expected
Anonymous
11:17 AM pfSense Packages Bug #8828: Keep settings checkbox under Global Settings does not behave as expected
I found that the code to remove the package forgot to use 'write_config()' after removing the Suricata configurations... Anonymous
05:53 PM Revision 255eae76: Remove sshguard and fail2ban
Renato Botelho
05:51 PM Revision b89270b7: Fix #7694: Replace sshlockout_pf by sshguard
Renato Botelho
04:49 PM pfSense Packages Bug #8670: HAProxy PHP error
This issues with haproxy should be fixed with current 0.59_11 version. If not please let me know the exact error you ... Pi Ba
04:47 PM pfSense Packages Bug #8790: getting PHP error regarding HAproxy pkg
Should be fixed with current 0.59_11 version. If not please let me know the exact error you get and when that happens. Pi Ba
04:47 PM pfSense Packages Bug #8833: haproxy getarraybyref error
Should be fixed with current 0.59_11 version. If not please let me know the exact error you get and when that happens. Pi Ba
12:41 PM Revision 880107d2: Missing line to fix #8850
Jim Pingle
09:39 AM Bug #8767 (Resolved): ID handling problem with DNS Forwarder host override management
Anonymous
08:43 AM Feature #8855 (Rejected): View Description field on widget for OpenVPN
Hi!!!
Its useful add on widget for OpenVpN, view the description field too , for get information about a user when c...
Luis Garcia
07:59 AM Bug #8850 (Resolved): Packages that start on sync are started multiple times at boot
Jim Pingle
07:45 AM Bug #8850 (Feedback): Packages that start on sync are started multiple times at boot
Applied in changeset commit:880107d21f5e69201ba810d553d948ca9009f70d. Jim Pingle
07:39 AM Bug #8850: Packages that start on sync are started multiple times at boot
Looks like one line of the fix didn't make it into the final commit. Will push a correction momentarily after re-test... Jim Pingle
07:59 AM pfSense Packages Bug #8620 (Resolved): arpwatch database page is not accessible
Jim Pingle
07:59 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
Gitsynced, retested - now looks good, no arpwatch duplicated processes Vladimir Lind
07:51 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
OK to test again after a gitsync or an update to a snapshot which includes my last commit on #8850 Jim Pingle
07:40 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
Looks like one line of my commit is missing, will push a correction momentarily. The package is OK, the problem is on... Jim Pingle
04:44 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
Yup, seeing the same on Wed Aug 29 19:26:24 EDT 2018 with pfSense-pkg-arpwatch-0.1.1:
root 37039 0.0 0.3 ...
Vladimir Lind
07:20 AM Bug #8726 (Resolved): Lack of input validation on custom GUI/dashboard settings leads to potential XSS
Jim Pingle
06:56 AM Todo #8851 (Resolved): Change default CA/Cert action to "Create an internal..."
Jim Pingle
06:56 AM Todo #8851: Change default CA/Cert action to "Create an internal..."
On factory 2.4.4.a.20180830.0038, SG-3100
Click System -> Cert. Manager, CAs
Default selection is 'Create an i...
Chris Macmahon

08/29/2018

11:33 PM Bug #8726: Lack of input validation on custom GUI/dashboard settings leads to potential XSS
On 2.4.4.a.20180829.1926, tried a XSS injection example as the dashboardcolumns value in the pfSense config.xml, relo... Anonymous
11:16 PM Bug #8845 (Resolved): Recompile PHP with a larger value of FD_SETSIZE.
Anonymous
11:15 PM Bug #8845: Recompile PHP with a larger value of FD_SETSIZE.
On 2.4.4.a.20180829.1926, ... Anonymous
08:43 PM pfSense Packages Bug #7661: pfBlockerNG doesn't make a rule for Antarctica
I just tried the latest pfBlockerNG and the is has NOT been resolved!
Please re-open the bug.
Stuart Wyatt
08:25 PM pfSense Packages Bug #8620: arpwatch database page is not accessible
On 2.4.4.a.20180829.1926 (gitsync'd to master) with arpwatch version 0.1.1,
Seeing one instance of arpwatch for ea...
Anonymous
02:10 PM pfSense Packages Bug #8620 (Feedback): arpwatch database page is not accessible
Should be improved by https://github.com/pfsense/FreeBSD-ports/commit/aa78e490fe92d5640a742bbe77012a5ba626b084 but th... Jim Pingle
07:59 PM Revision b0a5c280: Set default new CA/Cert action to Create Internal. Implements #8851
Jim Pingle
07:45 PM Todo #8851: Change default CA/Cert action to "Create an internal..."
On 2.4.4.a.20180829.1429 (gitsync'd to master), looks good. Create CA/Cert is the default behavior now. Anonymous
03:05 PM Todo #8851 (Feedback): Change default CA/Cert action to "Create an internal..."
Applied in changeset commit:b0a5c280a407ac26af2e6f055ac1049304034672. Jim Pingle
02:58 PM Todo #8851 (Resolved): Change default CA/Cert action to "Create an internal..."
When the certificate manager was first created, the most common user action was to import and not create. We are long... Jim Pingle
06:24 PM Revision 5d4f4900: Allow packages to opt out of a forced start. Fixes #8850
If a package performs its own service start during its sync process,
then add <starts_on_sync/> to its service defini...
Jim Pingle
04:35 PM pfSense Docs Correction #8854 (Resolved): [feedback form] Define Broadcast Domain and switch loops
*Page:* https://docs.netgate.com/pfsense/en/latest/network/broadcast-domains.html
*Feedback:* The section tells w...
Jared Dillard
04:32 PM pfSense Docs Correction #8853 (Resolved): [feedback form] Explain what 0:0 means
*Page:* https://www.netgate.com/docs/pfsense/book/monitoring/firewall-states-gui.html
*Feedback:* What does 0:0 me...
Jared Dillard
04:30 PM pfSense Docs Correction #8852 (Resolved): Clarify purpose of "Client Identifier" in DHCP static mapping
*Page:* https://docs.netgate.com/pfsense/en/latest/services/dhcp/ipv4.html
*Feedback:* I am unclear about "Client ...
Jared Dillard
03:23 PM Bug #8518: Rule Error On Upgrade 2.4.3 -> 2.4.3-p1
Steffen Wagner wrote:
> the above commands fixed it for me as well. An official patch for p1 would be good!
Can y...
Jesse Alexander
03:03 PM Bug #8767: ID handling problem with DNS Forwarder host override management
Fixed the illegal string offset error described above. bc91bdffcefd009f4716cce59eab231c2245fb18
I did not notice a...
Anonymous
02:58 PM Bug #8850 (Resolved): Packages that start on sync are started multiple times at boot
Tested with arpwatch installing fresh, configuring and multiple reboots Anonymous
01:34 PM Bug #8850: Packages that start on sync are started multiple times at boot
For an example of the change to make on packages, see https://github.com/pfsense/FreeBSD-ports/commit/aa78e490fe92d56... Jim Pingle
01:30 PM Bug #8850 (Feedback): Packages that start on sync are started multiple times at boot
Applied in changeset commit:5d4f49000654fae594144abc36fe8a588a028510. Jim Pingle
01:19 PM Bug #8850 (In Progress): Packages that start on sync are started multiple times at boot
Jim Pingle
01:19 PM Bug #8850 (Resolved): Packages that start on sync are started multiple times at boot
When @/etc/rc.start_packages@ is run, for example at boot time, it performs a package sync with @sync_package()@ and ... Jim Pingle
02:26 PM Revision bc91bdff: Fixes #8767 PHP7 syntax error
Stephen Jones
11:40 AM Feature #8849 (Duplicate): DHCP Custom configuration
I would suggest a field so we can use additional settings. There is the possibility of making several subnet with use... Thiago Gomes
09:44 AM Bug #7089: Opposite of + or - is occurring when selecting time zone
The description and behavior are correct for POSIX style zones. See note 9 above. The "Etc/GMT+4" zone means 4 hours ... Jim Pingle
09:34 AM Bug #7089: Opposite of + or - is occurring when selecting time zone
Although the description tells how it works, the GMTs are wrong.
The correct GMTs are "+" (before GMT) and "-" (af...
Filipe Teixeira
09:40 AM Bug #8138 (Resolved): Option <spoofmac> is ignored on interfaces without hwaddr
Tested on a VM with CE:
2.4.4-DEVELOPMENT (amd64)
built on Wed Aug 29 00:38:57 EDT 2018
FreeBSD 11.2-RELEASE-p2
...
Anonymous
09:34 AM Bug #8848: GMT timezones reversed
Although the description tells how it works, the GMT's on web interface are wrong.
The correct GMTs are "+" (befor...
Filipe Teixeira
09:21 AM Bug #8848 (Rejected): GMT timezones reversed
The descriptions of the zones make this very clear, they explain the behavior and whether or not they are ahead of or... Jim Pingle
09:10 AM Bug #8848 (Rejected): GMT timezones reversed
On System > General Setup, timezones GMT[+-]X are reversed.
If set GMT-4 on web interface, it apllies GMT+4 on sys...
Filipe Teixeira
08:08 AM Feature #8644 (Resolved): IPsec mobile clients DNS enhancement
I check this Bug on old 2.4.4.a.20180801.0114: DNS from /VPN/IPsec/Mobile Clients menu was set up into '/var/etc/ipse... Azamat Khakimyanov
07:34 AM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
Greg M wrote:
> I am on:
> 2.4.4-DEVELOPMENT (amd64)
> built on Wed Aug 29 00:38:57 EDT 2018
> FreeBSD 11.2-RELEA...
Renato Botelho
06:32 AM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
I am on:
2.4.4-DEVELOPMENT (amd64)
built on Wed Aug 29 00:38:57 EDT 2018
FreeBSD 11.2-RELEASE-p2
The system is ...
Greg M
05:34 AM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
Greg M wrote:
> Hi!
>
> Installed, when I open it:
>
> Fatal error: Uncaught Error: Call to undefined function...
Renato Botelho
01:13 AM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
Hi!
Installed, when I open it:
Fatal error: Uncaught Error: Call to undefined function pfsense_pkg\acme\getarra...
Greg M
01:14 AM pfSense Packages Bug #8790: getting PHP error regarding HAproxy pkg
Same here.
Haproxy is not installed after this error and services are down.
Greg M

08/28/2018

09:55 PM pfSense Packages Bug #8620: arpwatch database page is not accessible
I'm interested in a fix for this as well. On 2.4.3-p1 I have the same issues -- multiple emails and nothing in the da... Dallas Haselhorst
08:24 PM Revision 47979f66: Update translation files
Renato Botelho
08:18 PM Revision b2347104: Regenerate pot
Renato Botelho
07:30 PM Revision 45fbd1bd: Fix Minnowboard Turbot model names. SG-2320 -> MBT-2220, SG-2340 -> MBT-4220
Renato Botelho
07:06 PM Revision 0a906fcc: fixes #8837 part 2, initialize as array instead of string for PHP7
Stephen Jones
06:18 PM Revision 4f03ad7a: Fix #8845: Increase PHP FD_SETSIZE
Renato Botelho
05:45 PM Bug #8847 (Resolved): IPsec status "Show Child SA entries" button only expands and never collapses
I am using version 2.4.4, I noticed that in ipsec status when clicking (+) Show child SA entries is shown the details... Marcio Gomes
05:29 PM Feature #2358: NAT64 support
Another upvote. At some point in the future we're going to start having needs for v6-only networks. For some of the... Sean Harlow
04:51 PM Bug #8837 (Resolved): PHP error when creating alias URL Table (IPs)
Anonymous
04:26 PM Bug #8837: PHP error when creating alias URL Table (IPs)
This commit seems to have solved the issue. Steve Harrington
03:35 PM Bug #8837: PHP error when creating alias URL Table (IPs)
The `[] operator not supported` error should be fixed in the next snap.
0a906fcc2e120e7dd290ce7faac1ba14a24f731b
Anonymous
03:55 PM Bug #8683 (Resolved): Unable to add GIF interface (Hurricane Electric IPv6)
Tested on 2.4.4-DEVELOPMENT (amd64)
built on Tue Aug 28 08:43:43 EDT 2018
FreeBSD 11.2-RELEASE-p2
Was able to...
Anonymous
09:03 AM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
Result for @gre@ also looks good. Jim Pingle
08:52 AM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
... Anonymous
03:49 PM Revision 6a2461f0: Bug was fixed in pfsense module and this code is no longer needed so removing.
Stephen Jones
03:22 PM Bug #8824 (Resolved): is_numeric() on PHP 7 no longer validates hexadecimal values
Tested on: 2.4.4-DEVELOPMENT (amd64)
built on Tue Aug 28 08:43:43 EDT 2018
FreeBSD 11.2-RELEASE-p2
Haven't ...
Anonymous
03:12 PM Bug #8823 (Resolved): Dashboard Crash
Tested on 2.4.4-DEVELOPMENT (amd64)
built on Tue Aug 28 08:43:43 EDT 2018
FreeBSD 11.2-RELEASE-p2
No crashes ...
Anonymous
02:58 PM pfSense Packages Feature #8613 (Feedback): pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
PR merged, should be ready for testing shortly Jim Pingle
02:47 PM Bug #8726: Lack of input validation on custom GUI/dashboard settings leads to potential XSS
As long as it doesn't lead to an XSS it should be OK. Try using a typical XSS injection string and then going to a pa... Jim Pingle
02:43 PM Bug #8726: Lack of input validation on custom GUI/dashboard settings leads to potential XSS
Tested the above inputs webguicss, webguifixedmenu, webguihostnamemenu, and dashboardcolumns. and was not able to use... Anonymous
01:25 PM Bug #8845 (Feedback): Recompile PHP with a larger value of FD_SETSIZE.
Applied in changeset commit:4f03ad7a36b6c2f9060f059f167a491b06739acf. Renato Botelho
01:18 PM Bug #8845 (In Progress): Recompile PHP with a larger value of FD_SETSIZE.
Renato Botelho
02:19 AM Bug #8845 (Resolved): Recompile PHP with a larger value of FD_SETSIZE.
Crash report begins. Anonymous machine information:
amd64
11.2-RELEASE-p2
FreeBSD 11.2-RELEASE-p2 #72 9d6b703bf...
Chris Linstruth
01:12 PM Bug #8842 (Not a Bug): pfSense-pkg-aws-wizard-php72 sticks during install
In order to be able to install any of the PHP72 related packages you must upgrade to a PHP 7.2 based 2.4.4 snapshot. Renato Botelho
12:43 PM Revision 57639ced: $wancfg is not a reference to $config. Set $random_mac properly on config and break long lines while here
Renato Botelho
12:41 PM Revision 4cd8424a: Revert ticket #1337
FreeBSD is not happy with simple set VLAN to use a different MAC
address. Revert it for now and prevent users to chan...
Renato Botelho
11:11 AM Feature #6384: Allow IPSEC P1 to have 2 peer remote gateway IP addresses to allow VPN failover faster without requiring DDNS
Your right. On our side we have our own IPs and BGP with FRR. But our Customers have only one IP from each ISP. Not i... Manfred Bongard
07:51 AM Feature #6384: Allow IPSEC P1 to have 2 peer remote gateway IP addresses to allow VPN failover faster without requiring DDNS
With 2.4.4 you can use routed IPsec and a routing protocol like OSPF or BGP to accomplish failover. You can build an ... Jim Pingle
07:45 AM Feature #6384: Allow IPSEC P1 to have 2 peer remote gateway IP addresses to allow VPN failover faster without requiring DDNS
Cloud is needed more and there is a reliable VPN connection very important. For this case a quick switch on failure i... Manfred Bongard
09:57 AM Bug #8519: pfSense update from the webGUI fails
All of my hosts that had issues before appear to be OK when upgrading from snaps from early yesterday to the latest a... Jim Pingle
07:43 AM Bug #8758 (In Progress): filterdns stops working on a regular basis.
Renato Botelho
06:12 AM Bug #8758: filterdns stops working on a regular basis.
Jim Pingle wrote:
> I had this happen on my edge firewall which is running a snapshot from earlier this week. The pf...
Renato Botelho
07:43 AM Feature #1337 (Assigned): VLANs with different MAC address than parent interface
Renato Botelho
07:08 AM Feature #1337 (In Progress): VLANs with different MAC address than parent interface
Renato Botelho
07:15 AM Todo #8810 (Closed): HA sync : Vouchers sync settings should be moved to System->High Avaliablity
Jim Pingle
06:41 AM Todo #8810: HA sync : Vouchers sync settings should be moved to System->High Avaliablity
@jimp you can close this A FL
04:47 AM Bug #8846 (Resolved): Misleading error message when adding/editing static routes which use a gateway on a disabled interface
I was adding static route on disabled interface and got the following message:... Mario Harjac
01:00 AM Feature #8173: dhcp6c - RAW Options
The improvement request https://redmine.pfsense.org/issues/8173 is essential for IPv6 authentication for Orange (Fran... frederic lubrano

08/27/2018

10:07 PM pfSense Packages Bug #8844: PFBlockerNG-Dev
https://www.reddit.com/r/PFSENSE/comments/9a9o8k/php_pfblockerng_related_crashing_in_244development/e4trgk9/
https...
BBcan177 .
10:28 AM pfSense Packages Bug #8844 (Duplicate): PFBlockerNG-Dev
Version: pfBlockerNG-devel 2.2.5_10
When enabling GeoIP the selection goes back to 'disabled'.
Firewall -> pfB...
Chris Macmahon
06:14 PM Bug #8838 (Resolved): PHP warning when creating an OpenVPN client with invalid setting
Anonymous
06:14 PM Bug #8838: PHP warning when creating an OpenVPN client with invalid setting
On 2.4.4.a.20180827.1735, cannot reproduce. Anonymous
06:50 AM Bug #8838: PHP warning when creating an OpenVPN client with invalid setting
Applied in changeset commit:ce04950d94bab271a9904a8bd8cbbe40d7a7d718. Anonymous
06:43 AM Bug #8838 (Feedback): PHP warning when creating an OpenVPN client with invalid setting
Anonymous
05:23 PM Revision ab1ef772: Start building fail2ban
Renato Botelho
03:58 PM Revision 2456ecc9: Fix some integer assumptions with calculate_ipv6_delegation_length()
Jim Pingle
02:37 PM Bug #8758: filterdns stops working on a regular basis.
Sounds good! → luckman212
02:30 PM Bug #8758: filterdns stops working on a regular basis.
It is at https://github.com/pfsense/FreeBSD-ports/blob/devel/net/filterdns/files/filterdns.c but Renato is already lo... Jim Pingle
02:17 PM Bug #8758: filterdns stops working on a regular basis.
Agree it's less than ideal. But until a proper fix can be found a kludge might be safer than nothing, since aliases n... → luckman212
02:00 PM Bug #8758: filterdns stops working on a regular basis.
That's a rather ugly hack/kludge and it would be better to find out why it's failing and fix it directly. Jim Pingle
01:58 PM Bug #8758: filterdns stops working on a regular basis.
Hmm. In that case, how about we add some tests to the alias edit php functions to query pfctl directly after a save a... → luckman212
01:54 PM Bug #8758: filterdns stops working on a regular basis.
That is a possible side effect. You can kill the @filterdns@ daemon and then trigger a filter reload from *Status > F... Jim Pingle
01:51 PM Bug #8758: filterdns stops working on a regular basis.
Would this affect IP alias lists getting "stuck" and not updating? I ran into this last week - editing an Alias, adde... → luckman212
01:47 PM Bug #8758: filterdns stops working on a regular basis.
Anonymous
01:42 PM Bug #8519: pfSense update from the webGUI fails
I had several hitting this in my lab but only just now getting them onto snaps which included the latest fix. Let's g... Jim Pingle
01:42 PM Bug #8519 (Resolved): pfSense update from the webGUI fails
Renato Botelho
01:30 PM Bug #8519: pfSense update from the webGUI fails
Not seen any update issues for a few snaps now on a number of boxes. Steve Wheeler
01:34 PM Revision 10f9a4a9: Escape arguments when relinquishing a DHCP lease. Fixes #8843
(cherry picked from commit 57183ac45c0bfd5acf92c99e30c52bb2ca9417f9) Jim Pingle
01:34 PM Revision 57183ac4: Escape arguments when relinquishing a DHCP lease. Fixes #8843
Jim Pingle
01:32 PM Revision daedcb94: Escape arguments when relinquishing a DHCP lease. Fixes #8843
(cherry picked from commit c45cac34db914f175dc3cbfed8119d08d08aa519) Jim Pingle
01:31 PM Revision c45cac34: Escape arguments when relinquishing a DHCP lease. Fixes #8843
Jim Pingle
01:27 PM Bug #8683 (Feedback): Unable to add GIF interface (Hurricane Electric IPv6)
Anonymous
01:26 PM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
Steve is working on this one Renato Botelho
12:27 PM Revision b4e2567f: Fix extra braces
Steve Beaver
11:42 AM Revision ce04950d: Fixed #8838
Steve Beaver
11:37 AM pfSense Packages Feature #8835 (Rejected): FreeRADIUS Package - Don't store passwords as cleartext in users file
Even if they were encrypted before being put in there, they are still in plain text in @config.xml@. If you don't lik... Jim Pingle
10:49 AM Bug #7547: Static routes using aliases are not automatically updated when alias content changes

Also, when you delete a subnet from the alias editing and saving the static alias route doesn't remove the route.
...
Dave Kobel
10:28 AM Feature #5997: Captive Portal - Create more then 1024 vouchers once
"Bogus" is a closed/resolved status. It's already been dealt with. Jim Pingle
09:35 AM Feature #5997: Captive Portal - Create more then 1024 vouchers once
Is there any action from Netgate team requested here?
Can this ticket be marked as resolved?
A FL
09:21 AM Feature #2358: NAT64 support
TRIPLE UPVOTE! Dmitriy K
09:00 AM Feature #1191 (Closed): Enable dynamic VLAN assignment at Captive Portal
Jim Pingle
08:59 AM Feature #1191: Enable dynamic VLAN assignment at Captive Portal
Well, what you are describing is a VLAN-Based captive portal.
There are two kinds of Captive portals in the world:...
A FL
08:23 AM Bug #8842: pfSense-pkg-aws-wizard-php72 sticks during install
Looks like this affects all pkgs I got PHP crashes and errors for any pkg install process. Pkgs were installed proper... Constantine Kormashev
08:16 AM Bug #8842: pfSense-pkg-aws-wizard-php72 sticks during install
Uninstall finished well, but there were some errors during the process, see attachment. Constantine Kormashev
08:12 AM Bug #8842 (Not a Bug): pfSense-pkg-aws-wizard-php72 sticks during install
I tried to install pfSense-pkg-aws-wizard-php72 for 244 factory built on Wed May 30 14:47:02 EDT 2018 FreeBSD 11.2-BE... Constantine Kormashev
07:41 AM Feature #8841: Floating rules : add interface column
Indeed it has limitations.
Maybe this could be an on/off feature letting people liberty to activate it depending on...
Alexandre DULCHE
07:17 AM Feature #8841: Floating rules : add interface column
This is not entirely feasible because the floating rule could apply to dozens of interfaces and trying to print them ... Jim Pingle
07:15 AM Feature #8841 (Duplicate): Floating rules : add interface column
To allow an easier management of floating rules : add the colum inyertrface in the floating rules tab.
For now, AFAI...
Alexandre DULCHE
07:13 AM Feature #8840 (Duplicate): Copy multiples rules from one interface to another
Create a new button on firewall rules tab allowing to copy multiple firewall rules from one interface to another :
...
Alexandre DULCHE
07:11 AM pfSense Packages Bug #8839 (Duplicate): 2.4.4 Squid/ClamAV C-ICAP 0.5.x not starting
Duplicate of #8832 Jim Pingle
06:31 AM pfSense Packages Bug #8839 (Duplicate): 2.4.4 Squid/ClamAV C-ICAP 0.5.x not starting
Workaround:
https://forum.netgate.com/topic/133774/2-4-x-squid-clamav-fix-for-c-icap-0-5-x-not-starting
Thomas D
07:10 AM pfSense Packages Bug #8832: c-icap for Squid 5.1 on 2.4.4 Developer not starting
See also: https://forum.netgate.com/topic/133774/2-4-x-squid-clamav-fix-for-c-icap-0-5-x-not-starting Jim Pingle
06:23 AM pfSense Packages Bug #8790 (Assigned): getting PHP error regarding HAproxy pkg
On 2.4.4.a.20180801.0114 when I installed HAproxy I caught the same crash report.
But on 2.4.4.a.20180826.1232 whe...
Azamat Khakimyanov
06:18 AM Feature #8173: dhcp6c - RAW Options
Hello,
view patch https://github.com/opnsense/dhcp6c
his is the WIDE-DHCPv6 client maintained by the OPNsense...
frederic lubrano
05:23 AM Bug #8767: ID handling problem with DNS Forwarder host override management
I tried to reproduce this issue on 2.4.2:
- I added more then 120 DNS Forwarder host overrides
- I didn't see issue...
Azamat Khakimyanov

08/26/2018

11:58 PM Bug #8519: pfSense update from the webGUI fails
Can't reproduce in VM from 2.4.3 CE to 2.4.3_1, or 2.4.3_1 to 2.4.4 latest snapshot. Is there a specific device, desi... Anonymous
11:00 PM Bug #8838 (Resolved): PHP warning when creating an OpenVPN client with invalid setting
On a recent 2.4.4 snapshot visit VPN > OpenVPN > Client > Add, change Server mode to "Peer to Peer ( Shared Key )" an... Anonymous
04:30 PM Revision d6d46650: Fixed #8837
Steve Beaver
12:09 PM Bug #8837: PHP error when creating alias URL Table (IPs)
I applied the changes, and I'm still receiving the following PHP error. It looks like the fix got rid of the count() ... Steve Harrington
11:35 AM Bug #8837: PHP error when creating alias URL Table (IPs)
Applied in changeset commit:d6d46650d207cf0d37a2551a8a73a83aaf804672. Anonymous
11:31 AM Bug #8837 (Feedback): PHP error when creating alias URL Table (IPs)
Anonymous
11:30 AM Bug #8837 (In Progress): PHP error when creating alias URL Table (IPs)
Anonymous
11:15 AM Bug #8837 (Resolved): PHP error when creating alias URL Table (IPs)
I was trying to follow the procedure described here to create a Netflix ipv6 alias.
https://forum.netgate.com/topi...
Steve Harrington
10:10 AM Bug #8813 (Resolved): User login through proxy only logs proxy IP address, not X-Forwarded-For
On current 2.4.4-DEV (20180825) I'm able to see "X-Forwarded-For" option when remote client behind proxy connects to ... Azamat Khakimyanov
07:53 AM pfSense Packages Feature #8836 (New): Define ldap group vlan assignment in users file
There should be a solution to configure vlan-id's for ldap groups.
Something like this: http://lists.freeradius.or...
vistalba none
07:49 AM pfSense Packages Feature #8835 (Rejected): FreeRADIUS Package - Don't store passwords as cleartext in users file
If a user is created in the FreeRadius GUI the password is stored as cleartext in "/usr/local/etc/raddb/users".
Th...
vistalba none
05:09 AM Bug #8822 (Resolved): HTTP_REFERER check fails after changing interface IP address
I checked on 2.4.3_p1 - I saw HTTP_REFERER check fails after changing interface IP address
Then I checked it on 2.4....
Azamat Khakimyanov

08/25/2018

09:38 PM Feature #6626: Support for IPv6 firewall entries with dynamic delegated prefix and static host address
Same issue as Frederick described - I can't seem to be able to effectively block inter-vlan traffic for IPv6 as the a... Lukas Kuzmiak
08:20 PM Revision c1004c84: Add missing break in IpAddress form class. Fixes #8834
Jim Pingle
05:53 PM Feature #1337: VLANs with different MAC address than parent interface
James Dekker [6:49 PM]
With SG-5100 and XG-2758 on `2.4.4.a.20180824.1144` (which isn't the *latest* build, but shou...
Anonymous
03:32 PM Bug #8834 (Resolved): NAT > NPt address fields do not match the hover text
Anonymous
03:32 PM Bug #8834: NAT > NPt address fields do not match the hover text
On 2.4.4.a.20180825.0917 (gitsync'd to master) looks good. Hover text accurately reflects the description (shown in t... Anonymous
03:25 PM Bug #8834 (Feedback): NAT > NPt address fields do not match the hover text
Applied in changeset commit:c1004c847324888fff7252607384f7f39926e815. Jim Pingle
03:08 PM Bug #8834 (Resolved): NAT > NPt address fields do not match the hover text
Visit Firewall > NAT > NPt, click add, hover over each Address field.
Notice that the first Address field descri...
Anonymous
02:58 PM Feature #8812 (Resolved): Add "Select All" to Firewall/NAT rule lists
Anonymous
02:58 PM Feature #8812: Add "Select All" to Firewall/NAT rule lists
Select all works as expected on Firewall > NAT > Port Forward/1:1/Outbound/NPt and at Firewall > Rules on 2.4.4.a.201... Anonymous
08:16 AM Feature #8812 (Feedback): Add "Select All" to Firewall/NAT rule lists
Rule table given ID so selectall control can find it Anonymous
08:05 AM Feature #8812 (Assigned): Add "Select All" to Firewall/NAT rule lists
Steve Wheeler
08:04 AM Feature #8812: Add "Select All" to Firewall/NAT rule lists
The control is now present on NAT rules but does not seem to actually function. Clicking 'select all' does not select... Steve Wheeler
02:26 PM pfSense Packages Bug #8796 (Resolved): Enabling Automatic SID State Management causes php warning
Went to Suricata, went to SID management, Enable Automatic SID State Management, no error displayed
Current Base Sy...
Chris Macmahon
02:06 PM Bug #8801 (Resolved): OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
tested on image 2.4.4.a.20180825.0917 this is no longer happening,
Using the OpenVPN wizard as described in this i...
Chris Macmahon
02:05 PM Bug #7425 (Resolved): dhclient not sending option 77
Anonymous
02:04 PM Bug #7425: dhclient not sending option 77
On 2.4.4.a.20180824.1144, DHCP option 77 (user-class) is sent successfully. Anonymous
01:17 PM Revision fa8ea43e: Fixed #8812
Steve Beaver
11:19 AM Bug #8816 (Resolved): User login does not record the authentication source
Anonymous
11:18 AM Bug #8816: User login does not record the authentication source
On 2.4.4.a.20180825.0917, when the user logs in, the dashboard and console indicate the IP of the user logging in and... Anonymous
10:38 AM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
As i understood from Intel specification on various chipsets, non-ip traffic like pppoe can't be hashed for RSS to wo... Sebastian Foss
09:08 AM pfSense Packages Bug #8833: haproxy getarraybyref error
fix kinda pending.. but discussion raised is delaying it being pulled.
https://github.com/pfsense/FreeBSD-ports/pull...
Pi Ba
07:03 AM pfSense Packages Bug #8833 (Resolved): haproxy getarraybyref error
On update to latest snapshot HA Proxy service fails to start.
Fatal error: Cannot redeclare getarraybyref() (previ...
Chris Macmahon
07:42 AM Feature #8817 (Resolved): Display login info in System Information widget
Looks good to me in:... Steve Wheeler

08/24/2018

08:41 PM pfSense Packages Bug #8825: Unable to activate any of the GeoIP blocking lists - keeps getting reset to disabled with PHP errors
This will be fixed in the next pfBlockerNG-devel v2.2.5_11 once its merged.
https://github.com/pfsense/FreeBSD-por...
BBcan177 .
07:30 PM pfSense Packages Bug #8832 (Resolved): c-icap for Squid 5.1 on 2.4.4 Developer not starting
See: https://forum.netgate.com/topic/133774/2-4-x-squid-clamav-fix-for-c-icap-0-5-x-not-starting.
Verified his fix w...
Juan Abonia
06:07 PM Bug #8831 (Closed): Radvd causes latency spikes
As already mentioned in this thread https://forum.netgate.com/topic/123554/new-latency-every-30-seconds-with-2-4-2-ca... Flole Systems
05:59 PM pfSense Packages Bug #8830 (Resolved): Automatic flowbit resolution setting does not match description
On 2.4.4.a.20180824.1624, install snort (version 3.2.9.7_1), visit Global Settings, enable some rulesets, visit Updat... Anonymous
04:37 PM pfSense Packages Bug #8716 (Resolved): Suricata package does not survive pfSense upgrade.
Steve Wheeler
04:37 PM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
Tested on ARM and x86. Looks good, Suricata running correctly after reboot.
pfSense-base: 2.4.4.a.20180823.1619 ->...
Steve Wheeler
04:06 PM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
I have done upgrade at SG-3100 to 2.4.4.a.20180824.1144 base system. Suricata has survived. Danilo Zrenjanin
04:23 PM pfSense Packages Bug #8829 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
On 2.4.4.a.20180824.0955, install Snort, visit Services > Snort. Go to the Global Settings tab, enable some rulesets,... Anonymous
04:16 PM pfSense Packages Bug #8828 (Resolved): Keep settings checkbox under Global Settings does not behave as expected
On 2.4.4.a.20180824.0955, install Suricata, visit Services > Suricata. Go to the Global Settings tab, enable some rul... Anonymous
04:01 PM pfSense Packages Bug #8799 (Resolved): Automatic flowbit resolution setting does not match description
Anonymous
04:01 PM pfSense Packages Bug #8799: Automatic flowbit resolution setting does not match description
On suricata 4.0.13_17, works as expected. Anonymous
03:17 PM Bug #8721: DHCP High Availability - Statis assignement Issue on BackUP machine
Jim Pingle
03:16 PM Bug #8527: VLANs losing parent interface on LAGG change
Jim Pingle
03:15 PM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
Jim Pingle
03:15 PM Bug #8683: Unable to add GIF interface (Hurricane Electric IPv6)
This also affects GRE interfaces Jim Pingle
01:55 PM Revision da8817a6: Enable sshguard build
Renato Botelho
12:40 PM pfSense Packages Bug #8827 (New): Squidguard: ACL redirect modes 'redirect' and 'err page' send unresolvable URLs to the client.
Squid running in bump mode. Though that should not affect this.
When configuring Common or Group ACLs or applying ...
Steve Wheeler
11:46 AM Revision 085748d2: Perople were misunderstanding "hint" so changed it to "identifier"
Steve Beaver
11:27 AM Revision 572e46a2: PHP7 fixes: Use of undefined constants
Renato Botelho
06:02 AM Bug #8826 (Closed): PHP7: ACB error at upgrade.
Anonymous
12:00 AM Feature #4821: PPPoE WANs do not take full advantage of NIC driver queues for receiving traffic
ix driver seems to be affected also :
dev.ix.0.queue1.rx_packets: 67
dev.ix.0.queue1.tx_packets: 4107155
dev.ix....
Alexandre Paradis

08/23/2018

08:03 PM Bug #3124 (Resolved): portal_reply_page called twice in specific circumstance
Jim Pingle
03:53 PM Bug #3124: portal_reply_page called twice in specific circumstance
Working fine for me with vouchers & with Authentication Server
This issue can be marked as resolved !
A FL
02:11 PM Bug #3124 (Feedback): portal_reply_page called twice in specific circumstance
PR merged Renato Botelho
08:02 PM Feature #3136 (Closed): Captive Portal Increment Id
Jim Pingle
03:54 PM Feature #3136: Captive Portal Increment Id
@jimP this can be closed A FL
08:02 PM Feature #7707 (Resolved): Captive Portal - Radius Time out configuration field
Jim Pingle
03:56 PM Feature #7707: Captive Portal - Radius Time out configuration field
https://github.com/pfsense/pfsense/pull/3640 fixes this
This issue can be marked as resolved
A FL
07:10 PM Revision 2c1d7c12: Implement #1335:
Let VLANs to have a different MAC address than its parent.
While here also fixes #8138 and do not ignore <spoofmac> ...
Renato Botelho
07:08 PM Revision cca5b9ef: Do not let users change QinQ mac address
Renato Botelho
07:07 PM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
We probably need to test this across an upgrade where the suricata package version doesn't change to be sure. Steve Wheeler
05:04 PM pfSense Packages Bug #8716 (Feedback): Suricata package does not survive pfSense upgrade.
Chris Macmahon
05:04 PM pfSense Packages Bug #8716 (Resolved): Suricata package does not survive pfSense upgrade.
Chris Macmahon
06:58 AM pfSense Packages Bug #8716 (Feedback): Suricata package does not survive pfSense upgrade.
Added a call to ldconfig start on suricata startup script. It should be enough to make sure libraries cache will be u... Renato Botelho
06:54 PM Bug #8826 (Feedback): PHP7: ACB error at upgrade.
That's already been fixed but the fix didn't make it into a factory snapshot until after the image you're on. Next on... Jim Pingle
06:34 PM Bug #8826 (Closed): PHP7: ACB error at upgrade.
Upgrading pfSense-kernel-pfSense-SG-3100 from 2.4.4.a.20180822.1157 to 2.4.4.a.20180823.1533... Steve Wheeler
04:34 PM pfSense Packages Bug #8251: Captiveportal + FreeRadius "Last activity" resets to Session start
Thanks for the reply Augustin.
I'm still having this issue, perhaps I will try your idea when I upgrade the next tim...
Frotty Zaoldyeck
04:29 PM pfSense Packages Bug #8251: Captiveportal + FreeRadius "Last activity" resets to Session start
This issue is likely comming from the way pfSense and FreeRadius are talking to each other when performing accounting... A FL
04:30 PM pfSense Packages Bug #8825 (Resolved): Unable to activate any of the GeoIP blocking lists - keeps getting reset to disabled with PHP errors
pfSense version 2.4.4.a.20180822.1157
pfBlockerNG-Deve version 2.2.5_10
Attempting to enable *any* of the GeoIP c...
George Phillips
02:32 PM pfSense Packages Bug #8797 (Resolved): Visiting Flow/Stream causes a php error to be be shown
Confirmed, looks good in latest suricata package version. Anonymous
02:17 PM pfSense Packages Bug #8797: Visiting Flow/Stream causes a php error to be be shown
I have tested this issue at SG-4860 | 2.4.4.a.20180823.0720 base system. I can confirm that php warning doesn't appea... Danilo Zrenjanin
02:29 PM pfSense Packages Bug #8798 (Resolved): Visiting App Parsers causes a php error to be be shown
Anonymous
02:28 PM pfSense Packages Bug #8798: Visiting App Parsers causes a php error to be be shown
Looks good in the latest version of suricata. Anonymous
02:20 PM Bug #8138: Option <spoofmac> is ignored on interfaces without hwaddr
Applied in changeset commit:2c1d7c12fa4f41a69d6c9267a34b1b767a1da522. Renato Botelho
02:11 PM Bug #8138 (Feedback): Option <spoofmac> is ignored on interfaces without hwaddr
Renato Botelho
02:11 PM Feature #1337 (Feedback): VLANs with different MAC address than parent interface
Renato Botelho
02:08 PM Feature #1337: VLANs with different MAC address than parent interface
Renato Botelho
01:51 PM pfSense Packages Bug #8799 (Feedback): Automatic flowbit resolution setting does not match description
This should be fixed now. 53261ab40f32f234e3432e15f5633f149b36863d
Version 4.0.13_7
Anonymous
01:08 PM pfSense Packages Bug #8799 (In Progress): Automatic flowbit resolution setting does not match description
Anonymous
12:42 PM pfSense Packages Bug #8799: Automatic flowbit resolution setting does not match description
On a fresh install of pfSense-CE-memstick-2.4.4-DEVELOPMENT-amd64-20180823-0720, install suricata (version 4.0.13_5),... Anonymous
01:27 PM Bug #8800 (Resolved): Interface group member cannot be deleted, after it's been disabled
Anonymous
01:27 PM Bug #8800: Interface group member cannot be deleted, after it's been disabled
On 2.4.4.a.20180823.0720, the disabled interface is still shown in the interface group, rather than removed. Anonymous
12:42 PM Revision fe57dfe0: Remove not used 'Copy my MAC' button code
Renato Botelho
12:08 PM Bug #8590: sshd does not allow agent forwarding
@ssbarnea@ please resubmit your PR to the master branch A FL
12:00 PM Revision 6a8b4eff: Merge pull request #3974 from Augustin-FL/patch-passthrough
Renato Botelho
11:35 AM Revision 3b47e50d: Update translation files
Renato Botelho
11:28 AM Revision 9a05155b: Regenerate pot
Renato Botelho
11:19 AM Revision d0e7c107: Merge pull request #3973 from PiBa-NL/20180821-getarraybyref
Renato Botelho
10:29 AM pfSense Packages Bug #8620: arpwatch database page is not accessible
Its been two months now.. are there any news? Sven L
09:01 AM pfSense Packages Bug #8795: PHP issues - illegal string; undef modules; init modules
Yes it does. Most of the work that is specific to 2.4.4, particularly accommodating PHP7, has been added to the -deve... Anonymous
08:58 AM pfSense Packages Bug #8795: PHP issues - illegal string; undef modules; init modules
pfB still shows latest as 2.1.4_8?
maybe your update hasn't pushed to be visible yet.
does pfB-devel work witho...
ROB VANHOOREN

08/22/2018

10:12 PM pfSense Packages Bug #7661: pfBlockerNG doesn't make a rule for Antarctica
Why was this resolved? There are still no Antartica rules generated when selecting items that have a number > 0 on t... Stuart Wyatt
08:25 PM pfSense Packages Bug #7661 (Resolved): pfBlockerNG doesn't make a rule for Antarctica
Jim Pingle
08:24 PM pfSense Packages Bug #7661: pfBlockerNG doesn't make a rule for Antarctica
This can be closed BBcan177 .
10:11 PM pfSense Packages Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
I'm not sure what you mean by "interfaces available". The problem is that there are no options for the L2TP interfac... Stuart Wyatt
08:16 PM pfSense Packages Todo #8332: pfBlockerNG doesn't include L2TP interface in outbound floating rules
I am not sure this needs an option? Aren't the interfaces available? BBcan177 .
08:22 PM pfSense Packages Bug #8318: PFBlockerNG removes alias file when using advanced inverted rule
Please report back if this issue can be closed. Thanks! BBcan177 .
08:14 PM pfSense Packages Bug #8651: another php error (broke stable pfBng)
This should be fixed in the latest pfBlockerNG version. BBcan177 .
08:14 PM pfSense Packages Bug #8699: 3x PHP in pfblockerng.inc (912/915/4687)
This should be fixed in the latest pfBlockerNG version. BBcan177 .
08:12 PM pfSense Packages Bug #8795: PHP issues - illegal string; undef modules; init modules
Please update to the latest pfBlockerNG version, and preferably pfBlockerNG-devel and report back if this repeats. BBcan177 .
08:09 PM pfSense Packages Bug #8811: in pfblockerng when change Rule Order generates duplicate all rules.
Please update to pfBlockerNG-devel and report back if the same issue repeats. BBcan177 .
04:38 PM Revision c3c79c8b: Fix syntax and use unlink_if_exists()
Renato Botelho
03:12 PM Revision cb8443e4: Merge pull request #3965 from Hobby-Student/master
Steve Beaver
03:08 PM Revision e8d4004c: Fixed #8823
Steve Beaver
02:32 PM Revision b6f6210a: Use ctype_xdigit() instead of is_numeric() to validate hex. Issue #8824
Jim Pingle
12:22 PM pfSense Packages Bug #8799 (Feedback): Automatic flowbit resolution setting does not match description
Fix Pushed: c5901e3e38a7cefdc46f74734586f2f4b868a33f
The checkbox should now default to being checked.
Anonymous
11:52 AM pfSense Packages Bug #8799 (In Progress): Automatic flowbit resolution setting does not match description
Anonymous
10:22 AM pfSense Packages Bug #8790 (Feedback): getting PHP error regarding HAproxy pkg
Anonymous
10:22 AM pfSense Packages Bug #8790 (In Progress): getting PHP error regarding HAproxy pkg
Anonymous
10:15 AM Bug #8823: Dashboard Crash
Applied in changeset commit:e8d4004cb491c0eb87edff4db2508d0adcebd465. Anonymous
10:09 AM Bug #8823 (Feedback): Dashboard Crash
Hard to imagine how this error could be triggered in normal operation, but a file_exists check has been added just in... Anonymous
10:12 AM Feature #8644 (Feedback): IPsec mobile clients DNS enhancement
PR Merged Anonymous
09:58 AM Bug #8824 (Feedback): is_numeric() on PHP 7 no longer validates hexadecimal values
interfaces.php is fixed in commit:b6f6210a220bb206fd22ac34b306f007afedb01f -- I can now set a prefix ID of %0%, %1%, ... Jim Pingle
09:31 AM Bug #8824: is_numeric() on PHP 7 no longer validates hexadecimal values
Jim Pingle
09:31 AM Bug #8824 (Resolved): is_numeric() on PHP 7 no longer validates hexadecimal values
http://php.net/manual/en/function.is-numeric.php
> 7.0.0 Strings in hexadecimal (e.g. 0xf4c3b00c) notation are no...
Jim Pingle

08/21/2018

09:44 PM Revision 62ed56dc: Add the GUI support to set the VLAN Priority for the DHCP requests.
Ticket #7425 Luiz Souza
08:31 PM Revision 20588aac: Automatically store username of the MAC created pass-through
A FL
08:18 PM Revision 7dc56c76: Fixes #8800 Interfaces will show up in the group edit page even if disabled so they can be removed
Stephen Jones
06:19 PM Revision 5b93a1f4: Handle HTTP_REFERER better when changing IP addr. Fixes #8822
Fall back to probing active interface addresses rather than config.xml to allow changed addresses that have not yet b... Jim Pingle
03:25 PM Bug #8800 (Feedback): Interface group member cannot be deleted, after it's been disabled
Applied in changeset commit:7dc56c76972cc3d7834572c9d676e3f729f45ad6. Anonymous
01:32 PM Bug #8800 (In Progress): Interface group member cannot be deleted, after it's been disabled
Anonymous
02:57 PM pfSense Packages Bug #8631 (Feedback): syslog-ng - logrotate incorrectly configured to rotate TLS key
Fix pushed, will be up shortly in syslog-ng v 1.15_1 Jim Pingle
02:55 PM Revision 52152e62: Redact lightsquid pw in status output. Fixes #8819
Jim Pingle
02:45 PM Bug #8823 (Resolved): Dashboard Crash
Crash report begins. Anonymous machine information:
amd64
11.2-RELEASE-p2
FreeBSD 11.2-RELEASE-p2 #77 d5d0b259d...
Brian Caouette
01:56 PM Revision 80dbe344: Add a missed case for auth source detection. Fixes #8817
Jim Pingle
01:54 PM Bug #7425 (Feedback): dhclient not sending option 77
It is now possible to set the VLAN Priority for DHCP requests (the same way that is done in DHCPv6).
Please test w...
Luiz Souza
01:40 PM Bug #7425 (In Progress): dhclient not sending option 77
Luiz Souza
01:35 PM Bug #7425 (Feedback): dhclient not sending option 77
Anonymous
01:30 PM Bug #8822 (Feedback): HTTP_REFERER check fails after changing interface IP address
Applied in changeset commit:5b93a1f4d1069200ad0a530d4c56edf877d1721d. Jim Pingle
01:18 PM Bug #8822: HTTP_REFERER check fails after changing interface IP address
Jim Pingle
01:14 PM Bug #8822 (Resolved): HTTP_REFERER check fails after changing interface IP address
If you access the GUI from the LAN and change the LAN interface IP address, then after changing the interface IP addr... Jim Pingle
11:45 AM Revision 4ad34942: Add "select all" control to remaining NAT pages
Steve Beaver
11:08 AM pfSense Packages Bug #8796 (Feedback): Enabling Automatic SID State Management causes php warning
Fix pushed d4e48c1aefc9cf254a3883bbd49933831a995212
Version: 4.0.13_4
Anonymous
09:23 AM pfSense Packages Bug #8796 (In Progress): Enabling Automatic SID State Management causes php warning
Anonymous
11:08 AM Bug #3124: portal_reply_page called twice in specific circumstance
The bug reported by Constantine happens when "Add MAC addresses as pass-through" is checked but "include username in ... A FL
06:31 AM Bug #3124: portal_reply_page called twice in specific circumstance
Jim Pingle
02:39 AM Bug #3124: portal_reply_page called twice in specific circumstance
Constantine Kormashev wrote:
> I do not see the issue with doubling message, but see 2 different MACs which use the ...
A FL
01:26 AM Bug #3124: portal_reply_page called twice in specific circumstance
I do not see the issue with doubling message, but see 2 different MACs which use the same voucher... Constantine Kormashev
11:07 AM pfSense Packages Bug #8797 (Feedback): Visiting Flow/Stream causes a php error to be be shown
Fix pushed d4e48c1aefc9cf254a3883bbd49933831a995212
Version: 4.0.13_4
Anonymous
09:26 AM pfSense Packages Bug #8797: Visiting Flow/Stream causes a php error to be be shown
Anonymous
11:07 AM pfSense Packages Bug #8798 (Feedback): Visiting App Parsers causes a php error to be be shown
Fix pushed d4e48c1aefc9cf254a3883bbd49933831a995212
Version: 4.0.13_4
Anonymous
09:25 AM pfSense Packages Bug #8798: Visiting App Parsers causes a php error to be be shown
Anonymous
11:04 AM Bug #8803 (Resolved): PHP errors thrown in traffic shaper wizard multi
Anonymous
10:27 AM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Updated to the latest snap shot this morning and retested. The traffic shaper wizard now works as expected with no ... Matthew Deets
08:56 AM Bug #8803: PHP errors thrown in traffic shaper wizard multi
I have retested and don't see any problems. Since I pushed the update in two commits an hour apart, it is possible yo... Anonymous
01:09 AM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Verified with the latest snapshot that all steps are able to be completed in the traffic shaper wizard with no PHP er... Matthew Deets
10:07 AM Todo #8821 (Resolved): Remove Growl Notifications
Growl appears to be abandoned upstream. No updates in ~5 years, and few if any users on pfSense.
At this point it ...
Jim Pingle
10:00 AM Bug #8667 (Resolved): VU#857035 - IKE Protocol Vulnerability
Everything I'm reading says it can't be fixed in implementations since it's a protocol flaw. At this point I believe ... Jim Pingle
09:26 AM Bug #8805 (Resolved): Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
This appears to be working now. With vouchers disabled, I can load the login page and there is only username/password... Jim Pingle
01:33 AM Bug #8805: Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
Do not observe the issue, new roll is active after creation without additional actions. Constantine Kormashev
09:13 AM Bug #8138: Option <spoofmac> is ignored on interfaces without hwaddr
Code is not changing any interface that doesn't have `hwaddr` item. I'm working on a fix to save original mac address... Renato Botelho
05:58 AM Bug #8138 (In Progress): Option <spoofmac> is ignored on interfaces without hwaddr
Renato Botelho
09:05 AM Feature #8817 (Feedback): Display login info in System Information widget
Applied in changeset commit:80dbe344983666310a762ceab1520d578e3f2722. Jim Pingle
06:25 AM Feature #8817: Display login info in System Information widget
Actually if it shows "(/)" after the name I'd say that isn't fine. Somehow the authentication source is entirely empt... Jim Pingle
01:46 AM Feature #8817 (Resolved): Display login info in System Information widget
Feature works fine:
User admin@172.21.41.249 (/)
Constantine Kormashev
08:29 AM Bug #6880: Multiple DHCP6 WAN connections leads to multiple dhcp6c clients
In a similar vein, but a bit different: it's also important to be able to have multiple <code class=text>id-assoc pd ... Zachary Hill
06:47 AM Feature #8812 (Feedback): Add "Select All" to Firewall/NAT rule lists
Control has been added to all NAT pages Anonymous
01:43 AM Feature #8812 (Assigned): Add "Select All" to Firewall/NAT rule lists
Constantine Kormashev
01:43 AM Feature #8812: Add "Select All" to Firewall/NAT rule lists
New feature works fine for:
@firewall_nat.php@
@firewall_rules.php@
But does not exist for:
@firewall_nat_1to1....
Constantine Kormashev
05:58 AM pfSense Packages Bug #8716 (In Progress): Suricata package does not survive pfSense upgrade.
Renato Botelho
12:47 AM Revision 1e0016bb: Make config_array_from_str() function more general
Steve Beaver
12:19 AM Revision 19a99203: Fixed #8803
Steve Beaver

08/20/2018

11:15 PM Revision a436447f: add getarraybyref() utility function for general use (used also to avoid php7 'Cannot create references to/from string offsets' messages)
PiBa-NL
10:52 PM Revision a34bab9f: Fixed #8803
Don't attempt to access $config elements that don't exist. PHP7 doesn't like it Steve Beaver
09:29 PM Revision 966835f8: Only show the DHCP6 VLAN Priority settings for VLAN interfaces.
Luiz Souza
08:41 PM Bug #8820 (New): System/Advanced/Misc - "Do not kill connections when schedule expires" UN-checked still leaves existing connections open.
Orignal bug, marked as resolved but seems to be only partially resolved.
https://redmine.pfsense.org/issues/3558
...
Jesse Dunn
07:49 PM Revision 1ec79365: Certs: Fix CA subject assumptions. Fixes #8801
Several areas made assumptions about the number and order of CA subject
fields that were no longer correct after issu...
Jim Pingle
06:31 PM Revision 73a4e6cd: Declare variable out of loop
Renato Botelho
06:17 PM Revision 96d05f1d: Try to run upgrade script 3 times
Renato Botelho
06:17 PM Revision b3cd2eb4: Fix #8519
- Remove possible leftover sockfile before call pfSense-upgrade
- Wait until sockfile exists while process is still r...
Renato Botelho
06:17 PM Revision d93b5695: Remove leftover
Renato Botelho
06:17 PM Revision 84c703ca: Make sure to use string starting at __RC= position
Renato Botelho
06:13 PM Revision 545d0b46: on arm and arm64 machines, set kern.shutdown.secure_halt = 1
the arm systems leave enough running after halt to forward packets.
this is a bad thing. on arm systems, set this sys...
David Cornejo
06:07 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Please confirm that this change eliminates the PHP error messages. The Wizard should now test to see if a required $c... Anonymous
06:00 PM Bug #8803 (Feedback): PHP errors thrown in traffic shaper wizard multi
Applied in changeset commit:a34bab9f4b93091e147bcae18b79e6349c60496c. Anonymous
05:10 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
The offending command is: $thisvar = &$config['ezshaper']['step4']['enable']; Anonymous
04:52 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Sorry, forgot to mention the step… If I check enable for step 3 The “penalty box” and press “next“, that’s where th... Matthew Deets
04:49 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Thanks for the extra detail. I was able to reproduce this after your clarification. Anonymous
04:46 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Just to be clear, the error(s) that I encountered which I thought perhaps could be a bug, occurred if any checkbox i... Matthew Deets
04:42 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Steve, Were you able to get through the entire shaper wizard with no errors when selecting to prioritize other prot... Matthew Deets
03:59 PM Bug #8803 (Feedback): PHP errors thrown in traffic shaper wizard multi
I am unable to reproduce this.
New VM running "out of the box" pfSense 2.4.4 snapshot from today
Number of wan ...
Anonymous
03:46 PM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Anonymous
05:51 PM Revision a5fd107d: Do not use gettext() on default LAN interface name
Renato Botelho
05:38 PM Revision 0fa7e6bf: Add logged in user to Dashboard sysinfo widget. Implements #8817
Jim Pingle
05:38 PM Revision d629601a: User login source & proxy fwd addr to user data. Fixes #8813 Fixes #8816
While here, use this info more consistently across log messages and
places where user info is recorded when making ch...
Jim Pingle
04:43 PM Revision 619e1950: Fixes #8805 Refresh captive portal zone when vouchers are changed to regenerate captive portal login page
Stephen Jones
03:22 PM Revision dee5b2b7: Revise T&C text area height
Steve Beaver
03:07 PM Bug #8818: Thermal Sensor
This is on the APU4 Brian Caouette
03:06 PM Bug #8818 (Resolved): Thermal Sensor
Sensor widget is stucking in updating loop since 2.4.4 but worked fine in 2.4.3 Brian Caouette
02:57 PM Revision 6c87555b: Merge branch 'master' of gitlab.netgate.com:pfsense/pfsense
Steve Beaver
02:55 PM Bug #8801 (Feedback): OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
Applied in changeset commit:1ec79365df1315b51542ec7344e4161d29e6b17f. Jim Pingle
02:53 PM Bug #8801: OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
Fix for this is coming. It affected more than just the OpenVPN wizard. The OpenVPN wizard, cert manager, and User Man... Jim Pingle
02:49 PM Revision f4eadf36: Fix startup syntax error
Steve Beaver
02:48 PM Revision bd79529b: Fix syntax
Renato Botelho
01:25 PM Bug #8519 (Feedback): pfSense update from the webGUI fails
Applied in changeset commit:b3cd2eb41666e8c2e35c5ea1d2dea0862d12e6c8. Renato Botelho
01:01 PM Bug #8815: IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
I have replicated this in em(4) and re(4) (on an APU) but not on mvneta(4).
All on the latest 2.4.4 snapshot.
Steve Wheeler
12:02 PM Bug #8815 (New): IP addresses are removed from interfaces when link is lost and either IPv4 or IPv6 is dynamic
When an interface loses link the IPv4 addresses, including VIPs, can disappear from the interface. If the link is dow... Jim Pingle
12:45 PM Feature #8817 (Feedback): Display login info in System Information widget
Applied in changeset commit:0fa7e6bfb5c8dfd07d9f5cf65c834d38d6198393. Jim Pingle
12:29 PM Feature #8817: Display login info in System Information widget
Jim Pingle
12:27 PM Feature #8817 (Resolved): Display login info in System Information widget
Add support to the system information widget to show the login name and source for the currently logged in GUI user v... Jim Pingle
12:45 PM Bug #8816 (Feedback): User login does not record the authentication source
Applied in changeset commit:d629601ab0a8a27a3b799062e16596c7683610bf. Jim Pingle
12:29 PM Bug #8816: User login does not record the authentication source
Jim Pingle
12:06 PM Bug #8816 (Resolved): User login does not record the authentication source
When a user logs in, there is no indication if the user logged in locally or from a remote authentication source. Kno... Jim Pingle
12:45 PM Bug #8813 (Feedback): User login through proxy only logs proxy IP address, not X-Forwarded-For
Applied in changeset commit:d629601ab0a8a27a3b799062e16596c7683610bf. Jim Pingle
09:11 AM Bug #8813: User login through proxy only logs proxy IP address, not X-Forwarded-For
Jim Pingle
09:11 AM Bug #8813 (Resolved): User login through proxy only logs proxy IP address, not X-Forwarded-For
When a user logs into the GUI through a proxy, only the proxy IP address is logged. If the HTTP request headers inclu... Jim Pingle
12:00 PM Revision e969408d: Added "select all" control
Fixed #8812 Steve Beaver
11:50 AM Bug #8805 (Feedback): Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
Applied in changeset commit:619e1950fdd96b606d3bbe8125476ea76a6190d0. Anonymous
11:08 AM Bug #8805 (In Progress): Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
Anonymous
01:02 AM Bug #8805: Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
login *template (sorry for my spelling) A FL
10:45 AM Revision e2328f89: Merge pull request #3972 from Augustin-FL/patch-passthrough
Renato Botelho
10:24 AM Bug #8814 (Rejected): After changing WAN CARP VIP Outbound NAT rules don't import new value but stay with old one and need to be changed manually
I created HA cluster on 2.4.3_p1 and after changing WAN CARP VIP Outbound NAT rules don't import new value. So I lost... Azamat Khakimyanov
08:41 AM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
Still seeing this. On ARM for example:... Steve Wheeler
07:42 AM Bug #3124 (Feedback): portal_reply_page called twice in specific circumstance
PR https://github.com/pfsense/pfsense/pull/3972 has been merged. Renato Botelho
07:10 AM Feature #8812: Add "Select All" to Firewall/NAT rule lists
Applied in changeset commit:e969408dc18a109c224da3feef4bcc69626f25dd. Anonymous
07:01 AM Feature #8812 (Feedback): Add "Select All" to Firewall/NAT rule lists
Anonymous
06:29 AM Feature #8812: Add "Select All" to Firewall/NAT rule lists
Not a bug, but a feature request. That page has not had a select all mechanism that I could see. Checked back to 2.1. Jim Pingle
02:34 AM Feature #8812 (Resolved): Add "Select All" to Firewall/NAT rule lists
pfSense does not have select all (Firewall -> Rules).
cannot select all rows in firewall rules.
imagine firewall ru...
reza mansoorpour
02:30 AM pfSense Packages Bug #8811 (Resolved): in pfblockerng when change Rule Order generates duplicate all rules.
in pfblockerng when change Rule Order generates duplicate all firewall rules. reza mansoorpour

08/19/2018

05:53 PM Bug #8807: HA sync : files voucher_{$cpzone}.cfg and voucher_{$cpzone}.public are not created on save in /var/save when enabling vouchers on master.
Ooops
I meant these two files are not created on *salve in */var/etc
and also despite public and private keys b...
A FL
05:21 AM Bug #8807 (Resolved): HA sync : files voucher_{$cpzone}.cfg and voucher_{$cpzone}.public are not created on save in /var/save when enabling vouchers on master.
When HA and vouchers are enabled, vouchers can't be used on the slave because the files used by @/usr/local/bin/vouch... A FL
05:43 PM Todo #8810: HA sync : Vouchers sync settings should be moved to System->High Avaliablity
Oh
My bad then...
I didn't understand the point of this feature. I appologize.
you could close this todo then.
A FL
03:16 PM Todo #8810: HA sync : Vouchers sync settings should be moved to System->High Avaliablity
These options are with the vouchers because they have to be setup on the secondary and not the primary. The secondary... Jim Pingle
06:25 AM Todo #8810: HA sync : Vouchers sync settings should be moved to System->High Avaliablity
related to #8420 A FL
05:50 AM Todo #8810 (Closed): HA sync : Vouchers sync settings should be moved to System->High Avaliablity
When using High Avaliablity, some inconsistant logs are displayed... A FL
05:29 PM pfSense Packages Feature #8613: pfSense-pkg-acme: acme_certificates_edit.php - Add support for --challenge-alias acme.sh flag
Made a PR that 'kinda' incorporates this.. A little different than proposed though. It now supports a different chall... Pi Ba
03:24 PM Bug #8806: HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
I wonder if this might be the same root cause as #8721
An XMLRPC sync used to trigger filter_configure via XMLRPC ...
Jim Pingle
05:11 AM Bug #8806 (Resolved): HA sync : Starting captiveportal doesn't fire ipfw rules on slave, even if HA is enabled.
When a CP zone is enabled, slave does not start the captive portal (despite "enabled" setting appear checked on the s... A FL
03:15 PM Bug #7553: Captive portal on a parent interface blocks traffic on VLAN interfaces too
I just tested on two old release (x64-2.1-RELEASE and i386-2.1.5-RELEASE. That's the only deprecated release i could ... A FL
03:02 PM Bug #8768 (Resolved): IP Aliases with CARP VIP parent need reinitialized after interface event
Jim Pingle
10:51 AM Bug #8768: IP Aliases with CARP VIP parent need reinitialized after interface event
Do not observe the issue with IPAlias on CARP after interface down/up via un/plug cable aliases are able to handle tr... Constantine Kormashev
03:01 PM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
The package is there, but what we need is more functional testing. We need to make sure not only that RADIUS authenti... Jim Pingle
10:57 AM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
It seems ok on latest 244
*php72-pear-Auth_RADIUS-1.1.0_4 PEAR wrapper classes for the RADIUS PECL*
Constantine Kormashev
05:57 AM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
root: pkg info | grep RADIUS
hostapd-2.6_1 IEEE 802.11 AP, IEEE 802.1X/WPA/WPA2/EAP/RADIUS Authenti...
Chris Macmahon
02:56 PM Bug #8791 (Resolved): Default IPv6 rules do not allow some devices to perform router or neighbor discovery
Jim Pingle
11:16 AM Bug #8791: Default IPv6 rules do not allow some devices to perform router or neighbor discovery
Can see rules:... Constantine Kormashev
02:55 PM Bug #8782 (Resolved): Custom dyndns issue: username and password is not sent
Jim Pingle
11:28 AM Bug #8782: Custom dyndns issue: username and password is not sent
Can see creds in HTTP request:
!screen.png!
Packets in .cap file
Constantine Kormashev
12:44 PM Bug #7532 (Resolved): SG-1000 autonegotiation 10baseT speed and duplex
Chris Macmahon
12:44 PM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
This looks fixed on image Current Base System 2.4.4.a.20180819.0052:
2.4.4-DEVELOPMENT][root@pfSense.localdomain]/...
Chris Macmahon
11:13 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
FreeBSD pf1k.lab 11.2-RELEASE-p2 FreeBSD 11.2-RELEASE-p2 #60 da8baa0ffd8(factory-RELENG_2_4_4): Sun Aug 19 01:19:48 E... Constantine Kormashev
12:23 PM Bug #8603: PPP WANs do not work on VLANs on current snapshots
Solved on 2.4.4.a.20180818.2240.
Thanks for fixing this bug.
Enzo Laroche
09:33 AM Bug #8527 (Assigned): VLANs losing parent interface on LAGG change
Constantine Kormashev
09:31 AM Bug #8527: VLANs losing parent interface on LAGG change
I am able to reproduce the issue on VM with latest dev factory
VLANs have not parent after changing MTU to 9000 on...
Constantine Kormashev
05:55 AM pfSense Packages Bug #8716: Suricata package does not survive pfSense upgrade.
CE test base xml, and images attached.
base image: https://snapshots.pfsense.org/amd64/pfSense_master/installer/pf...
Chris Macmahon
05:45 AM Bug #8809 (Resolved): HA sync : changing a voucher roll on master does not reset active tickets on slave.
Changing the number of tickets in an existing roll is supposed to reset active tickets by flushing the active voucher... A FL
05:23 AM Bug #8808 (Resolved): HA sync : When a captiveportal zone is deleted, deletion is not done on the slave.
Deleting a captiveportal zone on master does not delete the captiveportal on the slave. A FL
05:09 AM Bug #8805 (Resolved): Enabling vouchers on the captive portal voucher page does not regenerate captiveportal login template
Clicking on "save" button of the voucher page does not enable vouchers on the login page.
you currently need to clic...
A FL
01:57 AM Bug #8803: PHP errors thrown in traffic shaper wizard multi
Tested both the multi network and dedicated traffic shaper wizards and it appears that this issue is still occurring... Matthew Deets

08/18/2018

07:19 PM Bug #8804 (New): Netgate SG-1000 PPPoE Keepalives not prioritized, internet drops
Hello, I have the Netgate SG-1000 and have Zen VDSL2+ internet in the UK. I have 80Mbps down, 20Mbps up. I am current... Tony Lloyd
03:45 PM Feature #8793 (Resolved): Captive Portal HTML Design and Usability Improvements
On 2.4.4.a.20180817.2128, works as expected. Anonymous
06:22 AM Feature #8793: Captive Portal HTML Design and Usability Improvements
Just tested the new changes...It seems fine :)
Maybe i would set a @text-align:center;@ instead of a @text-align:...
A FL
11:28 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
Thanks Dmitry!
The fix is committed, I'll send the instructions.
Luiz Souza
06:12 AM Bug #7532 (Feedback): SG-1000 autonegotiation 10baseT speed and duplex
Dmitry Vakhrushev
06:11 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
Hi Luiz!
Would you provide instruction to upload the commit?
devel-11 branch?
Thanks,
-Dmitry
Dmitry Vakhrushev
06:07 AM Bug #7532: SG-1000 autonegotiation 10baseT speed and duplex
Steve Wheeler, thank you for the idea with switch issue.
This solution resolve issue with transmit (TX) clocking (in...
Dmitry Vakhrushev
10:49 AM Bug #8803 (Resolved): PHP errors thrown in traffic shaper wizard multi
When attempting to save changes in order to proceed to the next step in the wizard following prioritizing VoIP, the ... Matthew Deets
09:10 AM Bug #8603: PPP WANs do not work on VLANs on current snapshots
I can confirm this too. Many thanks Dirk Steingäßer
07:23 AM Bug #8603 (Resolved): PPP WANs do not work on VLANs on current snapshots
It's working on the latest snapshot, PPPoE connected, interface is up and passing traffic. Thanks! Jim Pingle
08:01 AM Feature #3136: Captive Portal Increment Id
I would vote for a "reject"/"won't fix".
What you want is to update pfSense settings using a script, which is comp...
A FL
07:59 AM Bug #8801: OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
Jim Pingle
12:15 AM Bug #8801 (Resolved): OpenVPN Wizard, User Manager, Cert Manager will place CA CN in the Country Code field of a Certificate
Go to System Cert Manager > CAs and make a new CA. Go to VPN > OpenVPN and click Wizards. On the first step choose lo... Anonymous
05:55 AM Feature #8802 (Rejected): DNS Resolver cannot use host alias for IP Address
https://<pfsense>/services_unbound_host_edit.php
The "Host Override Options" "IP Address" option should accept host ...
Lars Hupfeldt Nielsen
05:25 AM Bug #8792 (Resolved): OpenVPN wizard PHP error
Chris Macmahon
01:30 AM Bug #8792: OpenVPN wizard PHP error
UPD.
If you create CA without Country Code (left it as NONE) and in wizard trying to create new server certificate, ...
Denis Karpushin
12:31 AM Bug #8792: OpenVPN wizard PHP error
Created bunch of tunnels with wizard. Used internal server certificates and faced no issue. Denis Karpushin
04:24 AM Bug #8434: Chelsio T4/T5 CXGBE drivers not loaded as ALTq capable in the PfSense UI

2.4.4-DEVELOPMENT (amd64)
built on Fri Aug 17 20:20:38 EDT 2018
FreeBSD 11.2-RELEASE-p2
Still dead. :(
Justin Smith
03:36 AM Bug #8767: ID handling problem with DNS Forwarder host override management
On 2.4.4 Fri Aug 17 21:29:09 EDT 2018
When testing host edit/delete actions with host overrides in dns forwarder w...
Vladimir Lind
03:15 AM Bug #6237 (Resolved): RADVD, Route Information Option type 24, Multiple IPv6 gateways
Vladimir Lind
03:15 AM Bug #6237: RADVD, Route Information Option type 24, Multiple IPv6 gateways
On 2.4.3-p1:
Enabled RA, set Router Priority to Low (also tested with High and Normal):
radvd.conf left unchang...
Vladimir Lind
02:41 AM Feature #7769 (Resolved): DynDNS: Azure integration, update record in Azure (Dynamic DNS Client)
On 2.4.4 Fri Aug 17 21:29:09 EDT 2018:
Azure DynDNS client present for both IPv4/v6 - configured it with fake acco...
Vladimir Lind
02:37 AM Todo #7024: Replace copy of radius.inc by pear-Auth_RADIUS
On 2.4.4 Fri Aug 17 21:29:09 EDT 2018:
Shell Output - pkg info | grep RADIUS
freeradius3-3.0.17 Fre...
Vladimir Lind
02:31 AM Bug #8714 (Resolved): error in services_dhcpv6.php after clicking on Save button in case RA was not setup before enabling DHCPv6
On 2.4.4 Fri Aug 17 21:29:09 EDT 2018:
Created new interface, assigned ipv6, enabled, then verified both dhcp6 and...
Vladimir Lind
02:07 AM Bug #8527: VLANs losing parent interface on LAGG change
I can't replicate also - created 3 vlan's on a top of Lagg, assigned vlan's and Lagg interfaces, enabled, assigned IP... Vladimir Lind
01:35 AM Bug #8437 (Resolved): invalid outbound nat rules written when using ipv6 rules on interfaces that also have ipv4 adresses..
On 2.4.3-p1:
nat on $LAN_VLAN11 from 2607:fd48:300::/56 to any -> 192.168.51.1/32 port 1024:65535
On 2.4.4 Fri...
Vladimir Lind
01:22 AM Bug #7604 (Resolved): Bug #6594 is not resolved: Waiting for Internet connection to update pkg metadata and finish package reinstallation
On SG4860 2.4.4 build Tue Aug 14 16:55:58 EDT 2018 - restored config.xml, disabled WAN facing switchport, device boot... Vladimir Lind
12:17 AM pfSense Packages Bug #8798: Visiting App Parsers causes a php error to be be shown
screenshot Anonymous
12:16 AM Bug #8800: Interface group member cannot be deleted, after it's been disabled
screenshots. Anonymous
 

Also available in: Atom